offline
- dragana81
- Novi MyCity građanin
- Pridružio: 02 Apr 2011
- Poruke: 14
|
Nekad kad pisem na fejsu mnogo mi kasne slova a i kamera mi se nekad sama ukljucuje. Da li mi mozete pomoci ili da okacim temu na drugo mesto?
Pouzdano znam da me neko spijunira kako da se zastitim?
OTL logfile created on: 27.10.2011 15:10:22 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\dragana\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
4,00 Gb Total Physical Memory | 2,58 Gb Available Physical Memory | 64,68% Memory free
7,99 Gb Paging File | 5,50 Gb Available in Paging File | 68,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 451,07 Gb Total Space | 391,25 Gb Free Space | 86,74% Space Free | Partition Type: NTFS
Drive E: | 29,73 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive Y: | 14,65 Gb Total Space | 6,89 Gb Free Space | 47,01% Space Free | Partition Type: NTFS
Computer Name: DRAGANA-PC | User Name: dragana | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011.10.27 15:09:36 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\dragana\Downloads\OTL.exe
PRC - [2011.09.27 20:59:40 | 000,180,332 | ---- | M] () -- C:\dell\Log.exe
PRC - [2011.09.27 20:58:58 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011.07.01 21:04:31 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2011.06.01 22:44:15 | 001,546,640 | ---- | M] (Bandoo Media, inc) -- C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\datamngrUI.exe
PRC - [2011.05.25 16:55:00 | 001,221,520 | ---- | M] (Bandoo Media Inc.) -- C:\PROGRA~2\Bandoo\BndCore.exe
PRC - [2011.05.25 16:54:58 | 001,617,296 | ---- | M] (Bandoo Media Inc.) -- C:\PROGRA~2\Bandoo\Bandoo.exe
PRC - [2011.04.30 13:42:53 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2011.04.23 22:17:26 | 001,994,936 | ---- | M] (Sensible Vision ) -- C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayAlert.exe
PRC - [2011.04.23 22:17:26 | 000,098,488 | ---- | M] (Sensible Vision ) -- C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayMon.exe
PRC - [2011.04.23 22:17:08 | 002,412,728 | ---- | M] (Sensible Vision ) -- C:\Program Files (x86)\Sensible Vision\Fast Access\FAService.exe
PRC - [2011.02.25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
PRC - [2011.01.25 15:14:08 | 001,802,472 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe
PRC - [2011.01.25 15:14:08 | 001,534,184 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\stage_secondary.exe
PRC - [2011.01.17 17:37:42 | 011,322,880 | ---- | M] (OpenOffice.org) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
PRC - [2011.01.17 17:37:42 | 011,314,688 | ---- | M] (OpenOffice.org) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
PRC - [2011.01.13 21:54:26 | 000,464,856 | ---- | M] (SoftThinks - Dell) -- C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe
PRC - [2011.01.13 21:42:12 | 003,811,648 | ---- | M] (SoftThinks - Dell) -- C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe
PRC - [2011.01.13 21:39:32 | 000,783,680 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
PRC - [2011.01.13 21:37:02 | 000,705,856 | ---- | M] (SoftThinks SAS) -- C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
PRC - [2011.01.10 15:22:55 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010.09.14 05:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2010.09.14 05:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2010.02.09 20:34:00 | 001,807,680 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
PRC - [2009.12.04 12:36:33 | 008,078,704 | ---- | M] (mquadr.at software engineering and consulting GmbH, web: mquadr.at, mail: office@mquadr.at) -- C:\Program Files (x86)\A1 Dashboard\Dashboard.exe
PRC - [2009.10.15 10:10:28 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2009.07.17 18:08:00 | 000,237,568 | ---- | M] (Alcor Micro Corp.) -- C:\Program Files (x86)\Multimedia Card Reader(6366)\ShwiconXP6366.exe
PRC - [2009.05.21 15:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe
PRC - [2009.05.21 15:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe
========== Modules (No Company Name) ==========
MOD - [2011.10.14 02:16:25 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\1049a76b3de293df726d380932215c91\System.Management.ni.dll
MOD - [2011.10.14 02:16:22 | 002,297,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\dd56ffc9d534de278c79420dcce058a4\System.Core.ni.dll
MOD - [2011.10.14 01:46:20 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\07cdef1a740151932dcf161f3306bd9c\PresentationFramework.Aero.ni.dll
MOD - [2011.10.14 01:46:13 | 001,840,640 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\a512243ee9900e621fb8cd990a9c679d\System.Web.Services.ni.dll
MOD - [2011.10.14 01:45:55 | 014,339,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\70e2ca33ffa52c743285dc5b4910a229\PresentationFramework.ni.dll
MOD - [2011.10.14 01:45:42 | 012,433,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6e592e424a204aafeadbe22b6b31b9db\System.Windows.Forms.ni.dll
MOD - [2011.10.14 01:45:36 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b2cfd85528a27eb71dc41d8067359a1\System.Drawing.ni.dll
MOD - [2011.10.14 01:45:34 | 012,234,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\7c94a121334aeca7553c7f01290740f0\PresentationCore.ni.dll
MOD - [2011.10.14 01:45:25 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d7a64c28cf0c90e6c48af4f7d6f9ed41\WindowsBase.ni.dll
MOD - [2011.10.14 01:45:20 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\130ad4d9719e566ca933ac7158a04203\System.Xml.ni.dll
MOD - [2011.10.14 01:45:17 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\2d5bcbeb9475ef62189f605bcca1cec6\System.Configuration.ni.dll
MOD - [2011.10.14 01:45:16 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\abab08afa60a6f06bdde0fcc9649c379\System.ni.dll
MOD - [2011.10.14 01:45:11 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\a1a82db68b3badc7c27ea1f6579d22c5\mscorlib.ni.dll
MOD - [2011.09.27 20:59:40 | 000,180,332 | ---- | M] () -- C:\dell\Log.exe
MOD - [2011.09.27 20:58:58 | 001,015,256 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\js3250.dll
MOD - [2011.05.25 16:55:28 | 001,524,112 | ---- | M] () -- C:\Windows\SysWOW64\bandoolmx.dll
MOD - [2011.05.25 16:49:18 | 002,127,872 | ---- | M] () -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\ffox@bandoo.com\components\FFPlugin.dll
MOD - [2011.04.23 22:18:10 | 000,100,208 | ---- | M] () -- C:\Windows\SysWOW64\FAIEExtension.dll
MOD - [2011.04.23 22:17:32 | 000,062,136 | ---- | M] () -- C:\Windows\SysWOW64\FAib.dll
MOD - [2011.04.23 22:16:44 | 000,250,552 | ---- | M] () -- C:\Windows\SysWOW64\FACrashRpt.dll
MOD - [2011.03.02 19:49:57 | 006,053,536 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2011.02.19 20:35:06 | 000,985,088 | ---- | M] () -- C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
MOD - [2011.01.25 15:14:08 | 001,802,472 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe
MOD - [2011.01.25 15:14:08 | 001,534,184 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\stage_secondary.exe
MOD - [2011.01.25 15:10:24 | 002,225,664 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\QtCore4.dll
MOD - [2011.01.25 15:10:22 | 016,124,416 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\libumajin.dll
MOD - [2011.01.25 15:10:22 | 007,938,048 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\QtGui4.dll
MOD - [2011.01.13 21:42:02 | 000,025,920 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\SftBRCCPiped.dll
MOD - [2011.01.13 21:39:32 | 000,783,680 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
MOD - [2011.01.13 21:37:50 | 000,079,168 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\zlib1.dll
MOD - [2011.01.13 21:37:26 | 000,075,072 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STRegistry.dll
MOD - [2011.01.13 21:37:24 | 000,111,936 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STPE.dll
MOD - [2011.01.13 21:37:20 | 000,121,152 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STNLS.dll
MOD - [2011.01.13 21:37:18 | 000,128,320 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll
MOD - [2011.01.13 21:37:14 | 000,234,816 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STFiles.dll
MOD - [2011.01.13 21:37:04 | 000,025,920 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STBRCCServCLR.dll
MOD - [2011.01.13 21:36:50 | 001,123,648 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\LibXml2.dll
MOD - [2010.11.13 02:08:41 | 000,315,392 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
MOD - [2010.11.05 03:58:50 | 000,212,992 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.resources\2.0.0.0_de_b77a5c561934e089\System.resources.dll
MOD - [2010.02.09 20:34:00 | 001,807,680 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
MOD - [2010.02.09 20:34:00 | 000,365,888 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\de\DataSafeOnline.resources.dll
MOD - [2010.02.09 20:34:00 | 000,275,776 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbShared.dll
MOD - [2010.02.09 20:34:00 | 000,152,896 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbShared.XmlSerializers.dll
MOD - [2010.02.09 20:34:00 | 000,095,552 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbUI.dll
MOD - [2010.02.09 20:34:00 | 000,062,784 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\de\SdbShared.resources.dll
MOD - [2010.02.09 20:34:00 | 000,058,688 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\BalloonWindow.dll
MOD - [2010.02.09 20:34:00 | 000,046,400 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\de\SdbUI.resources.dll
MOD - [2010.02.09 20:34:00 | 000,017,728 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\cpputils.dll
MOD - [2009.10.15 10:10:28 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
MOD - [2009.07.30 09:54:55 | 000,540,672 | ---- | M] () -- C:\Program Files (x86)\A1 Dashboard\resetregistry.dll
MOD - [2009.07.14 19:58:23 | 000,249,856 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.resources\3.0.0.0_de_31bf3856ad364e35\PresentationFramework.resources.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2010.09.22 19:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2010.07.06 04:22:30 | 000,007,168 | ---- | M] (Microsoft) [Auto | Running] -- C:\Program Files\Dell\OSD\DellOSDservice.exe -- (DellOSDservice)
SRV:64bit: - [2010.06.20 13:35:44 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010.02.02 21:13:10 | 000,048,128 | ---- | M] (Dell Inc.) [Auto | Running] -- C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE -- (wltrysvc)
SRV - [2011.07.01 21:04:31 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011.05.25 16:54:58 | 001,617,296 | ---- | M] (Bandoo Media Inc.) [Auto | Running] -- C:\PROGRA~2\Bandoo\Bandoo.exe -- (Bandoo Coordinator)
SRV - [2011.04.30 13:42:53 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011.04.23 22:17:08 | 002,412,728 | ---- | M] (Sensible Vision ) [Auto | Running] -- C:\Program Files (x86)\Sensible Vision\Fast Access\FAService.exe -- (FAService)
SRV - [2011.02.28 19:44:14 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011.02.25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011.01.13 21:37:02 | 000,705,856 | ---- | M] (SoftThinks SAS) [Auto | Running] -- C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE -- (SftService)
SRV - [2010.09.14 05:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2010.09.14 05:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2010.08.24 21:27:20 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010.08.24 21:15:00 | 000,016,680 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\514\g2aservice.exe -- (GoToAssist)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.09.18 11:54:20 | 000,169,312 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor8.0)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.05.21 15:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) [Auto | Running] -- C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe -- (sprtsvc_DellSupportCenter) SupportSoft Sprocket Service (DellSupportCenter)
SRV - [2007.05.31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007.05.31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011.07.01 21:04:32 | 000,123,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2011.07.01 21:04:32 | 000,088,288 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.09.23 01:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2010.09.14 05:45:52 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2010.09.14 05:45:50 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2010.09.14 05:45:48 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2010.09.14 05:45:44 | 000,760,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2010.07.15 01:17:58 | 000,033,792 | ---- | M] (Nuvoton Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nuviocir_win7_x64.sys -- (nuviocir)
DRV:64bit: - [2010.06.24 00:10:56 | 000,344,680 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010.06.20 17:20:54 | 006,858,240 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2010.06.20 13:02:04 | 000,264,192 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010.04.07 15:57:08 | 000,073,784 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010.04.07 15:57:08 | 000,028,728 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.03.24 08:13:00 | 000,371,072 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVerPola.sys -- (AVerPola)
DRV:64bit: - [2010.03.10 09:33:52 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:64bit: - [2010.02.02 21:13:08 | 000,022,520 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcm42rly.sys -- (BCM42RLY)
DRV:64bit: - [2010.02.02 21:13:08 | 000,020,984 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcmvwl64.sys -- (BcmVWL)
DRV:64bit: - [2010.02.02 21:13:06 | 003,058,168 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2009.07.24 15:52:14 | 000,114,560 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbdev.sys -- (hwusbdev)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 02:09:50 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2009.07.09 10:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008.09.25 02:36:14 | 000,238,848 | ---- | M] (Sensible Vision ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\facap.sys -- (FACAP)
DRV:64bit: - [2008.03.17 12:06:14 | 000,115,328 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:64bit: - [2008.01.22 16:11:40 | 000,119,296 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ewusbnet.sys -- (ewusbnet)
DRV:64bit: - [2006.11.01 19:51:00 | 000,151,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\URLSearchHook: {26647ca4-a2a7-4eac-8a72-761aa9141de7} - C:\Program Files (x86)\www.Freeware-download.com\tbwww..dll (Conduit Ltd.)
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = g.uk.msn.com/USCON/8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = search.conduit.com?SearchSource=10&ctid=CT2325506
IE - HKCU\..\URLSearchHook: {26647ca4-a2a7-4eac-8a72-761aa9141de7} - C:\Program Files (x86)\www.Freeware-download.com\tbwww..dll (Conduit Ltd.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0: C:\Program Files (x86)\Virtual Earth 3D\ [2010.08.24 21:02:02 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0: C:\Program Files (x86)\Virtual Earth 3D\ [2010.08.24 21:02:02 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fassoxpcom@sensiblevision.com: C:\Program Files (x86)\Sensible Vision\Fast Access\xpcom_fasso\ [2011.06.26 08:49:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.23\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.09.27 20:58:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.23\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.09.27 20:58:59 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\ffox@bandoo.com: C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles/bbb66dxe.default\extensions\ffox@bandoo.com [2011.06.26 13:32:12 | 000,000,000 | ---D | M]
[2011.06.26 13:30:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dragana\AppData\Roaming\Mozilla\Extensions
[2011.02.03 23:32:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dragana\AppData\Roaming\Mozilla\Extensions\{SbX-136198-9783706830751-stu10}
[2011.10.26 16:19:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions
[2011.09.24 21:55:47 | 000,000,000 | ---D | M] (www.Freeware-download.com Community Toolbar) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\{26647ca4-a2a7-4eac-8a72-761aa9141de7}
[2011.03.03 14:00:12 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2011.06.26 13:30:19 | 000,000,000 | ---D | M] (Searchqu Toolbar) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\{99079a25-328f-4bd4-be04-00955acaa0a7}
[2011.09.24 21:55:46 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\engine@conduit.com
[2011.06.26 13:32:12 | 000,000,000 | ---D | M] (Bandoo for Firefox) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\ffox@bandoo.com
[2011.06.26 13:30:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2011.03.03 13:59:36 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011.02.02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010.12.03 20:14:08 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2010.12.03 20:14:08 | 000,002,344 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2010.12.03 20:14:08 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2011.06.26 13:30:15 | 000,002,501 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\SearchResults.xml
[2010.12.03 20:14:08 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2010.12.03 20:14:08 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2:64bit: - BHO: (UrlHelper Class) - {A40DC6C5-79D0-4ca8-A185-8FF989AF1115} - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll (Bandoo Media, inc)
O2:64bit: - BHO: (Face recognition web login for FastAccess) - {DA5BCE70-D057-4D63-943D-5F3927EC59F1} - C:\Program Files (x86)\Sensible Vision\Fast Access\x64\FAIESSO.dll (Sensible Vision )
O2 - BHO: (www.Freeware-download.com Toolbar) - {26647ca4-a2a7-4eac-8a72-761aa9141de7} - C:\Program Files (x86)\www.Freeware-download.com\tbwww..dll (Conduit Ltd.)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll ()
O2 - BHO: (UrlHelper Class) - {A40DC6C5-79D0-4ca8-A185-8FF989AF1115} - C:\PROGRA~2\WI3C8A~1\Datamngr\IEBHO.dll (Bandoo Media, inc)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Face recognition web login for FastAccess) - {DA5BCE70-D057-4D63-943D-5F3927EC59F1} - C:\Program Files (x86)\Sensible Vision\Fast Access\FAIESSO.dll (Sensible Vision )
O2 - BHO: (BandooIEPlugin Class) - {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - C:\Program Files (x86)\Bandoo\Plugins\IE\ieplugin.dll (Bandoo Media Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (www.Freeware-download.com Toolbar) - {26647ca4-a2a7-4eac-8a72-761aa9141de7} - C:\Program Files (x86)\www.Freeware-download.com\tbwww..dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll ()
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4:64bit: - HKLM..\Run: [Broadcom Wireless Manager UI] C:\Programme\Dell\DW WLAN Card\WLTRAY.EXE (Dell Inc.)
O4:64bit: - HKLM..\Run: [DellStage] C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe ()
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [DATAMNGR] C:\PROGRA~2\WI3C8A~1\Datamngr\DATAMN~1.EXE (Bandoo Media, inc)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe ()
O4 - HKLM..\Run: [DellSupportCenter] C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKLM..\Run: [Desktop Disc Tool] c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [FAStartup] File not found
O4 - HKLM..\Run: [FATrayAlert] C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayMon.exe (Sensible Vision )
O4 - HKLM..\Run: [ShwiconXP6366] c:\Program Files (x86)\Multimedia Card Reader(6366)\ShwiconXP6366.exe (Alcor Micro Corp.)
O4 - HKLM..\Run: [StartCCC] c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [UCam_Menu] C:\Program Files (x86)\Dell\Dell TouchCam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [EPSON SX410 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFCE.EXE /FU "C:\Windows\TEMP\E_S116F.tmp" /EF "HKCU" File not found
O4 - HKLM..\RunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe (Dell)
O4 - HKLM..\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe (Softthinks)
O4 - Startup: C:\Users\dragana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0A3B2AF6-91FF-4EE9-87FB-1CEFFADDC95F}: NameServer = 194.48.139.254 194.48.124.200
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dll) - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dll (Bandoo Media, inc)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll) - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll (Bandoo Media, inc)
O20 - AppInit_DLLs: (c:\progra~2\wi3c8a~1\datamngr\datamngr.dll) -c:\progra~2\wi3c8a~1\datamngr\datamngr.dll (Bandoo Media, inc)
O20 - AppInit_DLLs: (c:\progra~2\wi3c8a~1\datamngr\iebho.dll) -c:\progra~2\wi3c8a~1\datamngr\iebho.dll (Bandoo Media, inc)
O20 - AppInit_DLLs: (c:\progra~2\bandoo\bndhook.dll) -c:\progra~2\bandoo\bndhook.dll (Discordia Limited)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll) - File not found
O20 - Winlogon\Notify\FastAccess: DllName - (C:\Program Files (x86)\Sensible Vision\Fast Access\FALogNot.dll) - C:\Program Files (x86)\Sensible Vision\Fast Access\FALogNot.dll ()
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.) - E:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2009.12.04 06:15:00 | 000,000,047 | R--- | M] () - E:\AUTORUN.INF -- [ CDFS ]
O32 - Unable to obtain root file information for disk Y:\
O33 - MountPoints2\{7dd4214f-50e2-11e0-a1a2-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{7dd4214f-50e2-11e0-a1a2-806e6f6e6963}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{a55f7d07-4db6-11e0-86ff-00a0c6000000}\Shell - "" = AutoRun
O33 - MountPoints2\{a55f7d07-4db6-11e0-86ff-00a0c6000000}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{d25a6277-4dab-11e0-8ce3-001e101f8924}\Shell - "" = AutoRun
O33 - MountPoints2\{d25a6277-4dab-11e0-8ce3-001e101f8924}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{d25a62a0-4dab-11e0-8ce3-001e101f8924}\Shell - "" = AutoRun
O33 - MountPoints2\{d25a62a0-4dab-11e0-8ce3-001e101f8924}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{d25a62ab-4dab-11e0-8ce3-001e101f8924}\Shell - "" = AutoRun
O33 - MountPoints2\{d25a62ab-4dab-11e0-8ce3-001e101f8924}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{fa1af997-2ed8-11e0-be3d-5cac4c27d523}\Shell - "" = AutoRun
O33 - MountPoints2\{fa1af997-2ed8-11e0-be3d-5cac4c27d523}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{fa1af9ab-2ed8-11e0-be3d-5cac4c27d523}\Shell - "" = AutoRun
O33 - MountPoints2\{fa1af9ab-2ed8-11e0-be3d-5cac4c27d523}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.10.27 11:06:27 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{24E9C9F2-77AA-4B5B-B5A6-FDC0CE351124}
[2011.10.27 06:58:30 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F8E6171C-BB43-42F6-9F0F-162B44DF3C71}
[2011.10.27 06:57:27 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{835FC27F-C770-4162-BDD7-C3D4B65F12A6}
[2011.10.26 21:13:44 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B1BA7867-8004-4A85-BB76-180E5B52CF64}
[2011.10.26 21:12:41 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{0D4F74B0-60BA-4FC1-AB1B-2A994CE02159}
[2011.10.26 11:00:43 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{61A45E6F-EA37-4FE4-B664-BB1A02D49493}
[2011.10.26 10:57:10 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{065DBB33-ED72-484F-BD54-35512C43500C}
[2011.10.26 10:19:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{79AB206B-9F41-4582-B033-2007236EEFF0}
[2011.10.25 21:45:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{89549C18-F677-4044-B4A4-0E3E557A70AC}
[2011.10.25 21:45:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{DC354935-7F75-4C17-A71D-59CD1A087B80}
[2011.10.25 20:11:27 | 001,150,584 | ---- | C] (Web Deals Interactive LLC) -- C:\Users\dragana\Desktop\dropdowndealssetup-silentinstaller.exe
[2011.10.25 20:10:46 | 000,414,368 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011.10.25 20:10:44 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2011.10.25 20:10:09 | 000,000,000 | -H-D | C] -- C:\Windows\AxInstSV
[2011.10.24 20:11:11 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9F358AA1-7475-4A5F-A6DB-B6E06CE4393F}
[2011.10.24 20:10:38 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{89A4C1F6-45A1-408B-A669-2C3D36D12F6F}
[2011.10.24 07:30:12 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B6E316E5-DACC-4330-BCDB-37571D2C3329}
[2011.10.23 19:15:04 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{00BB8C20-A5D0-45D1-BB75-C66AAA4909A5}
[2011.10.23 19:15:01 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{61C766BA-3052-4DB7-89EA-3DDB112ABB0E}
[2011.10.23 14:05:05 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{DD93E9DB-3598-468C-9C33-806D36C7FDA3}
[2011.10.22 11:21:49 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{2FA5ADC9-2982-4A27-899E-381145BCDB67}
[2011.10.21 23:21:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8E18FF33-46A8-46F5-A78E-6B4FF43769BC}
[2011.10.21 12:10:03 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{DAA6E841-C59F-4C82-95E5-3A5AA3D6A36C}
[2011.10.21 12:09:29 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{E45E5155-5232-41EC-9AA3-F817A56C7483}
[2011.10.21 08:36:55 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{32E40919-D10F-4BF0-8BB9-93D170D12811}
[2011.10.21 08:36:22 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A057C665-DC46-4429-9523-B83A9575F520}
[2011.10.21 07:29:26 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{372D5A7A-C5BE-4E2E-A7FB-EC343D824CE1}
[2011.10.21 07:28:53 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9DB9E503-E2B8-46A0-83A5-8F4051BADBB3}
[2011.10.19 21:39:45 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{0AECDB14-4945-40E8-82EB-140AD5E0E741}
[2011.10.19 14:59:23 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F2015696-A724-473E-86D2-A6D4219A2FE2}
[2011.10.19 11:07:17 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{AC819B3D-3196-4ABE-870E-59AAC5E03A22}
[2011.10.18 23:07:16 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{3F603846-E8DA-4B8C-8FB6-56A74A64D6E3}
[2011.10.18 18:26:03 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{1DC025F4-4F05-4D44-BA19-F2913E3245D7}
[2011.10.18 18:24:30 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EADD96FF-4AFD-4F32-B190-677DD99205AD}
[2011.10.18 08:36:52 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{023574C3-84A8-4A4B-A764-083E61D0163F}
[2011.10.17 20:36:52 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{42ECB8B5-6DC4-4E77-AC8A-79A872B9F532}
[2011.10.16 18:32:11 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8D9D0151-20E0-482D-8F94-DA5FE987D629}
[2011.10.16 18:31:38 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{32C469B0-0B1B-41EE-904B-77D960CC7A65}
[2011.10.15 20:24:36 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{74836DB2-D886-4F8B-9BD5-D07994D7AD3A}
[2011.10.15 20:24:03 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8B1E0013-D524-4877-8EE7-D9F01A3D30AF}
[2011.10.15 20:10:25 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{10BDD3E9-5490-4EAA-A311-BBDA82C4C1BD}
[2011.10.15 20:09:22 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{BCB99BED-C4E4-4AB7-959C-ADF32CA71CCB}
[2011.10.14 21:44:31 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F4884368-B3C4-456E-9506-9E7CFB70612C}
[2011.10.14 21:43:58 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{86966DC3-575D-4D25-BFE5-FDAC4FBD0534}
[2011.10.14 01:42:36 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F2C879AF-8B85-4B42-9D2C-56995470CA54}
[2011.10.14 01:41:34 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{10AE7D7D-8A58-49EE-9D32-5638AFFD242D}
[2011.10.13 21:16:49 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{214DDDC0-EC08-4ACB-B02F-16CB4289D4EE}
[2011.10.13 11:40:49 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011.10.13 11:40:49 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011.10.13 11:40:48 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011.10.13 11:40:48 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011.10.13 11:40:47 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2011.10.13 11:40:47 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2011.10.13 11:40:47 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011.10.13 11:40:35 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll
[2011.10.13 11:40:35 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2011.10.13 11:40:35 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011.10.13 11:40:34 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2011.10.13 11:40:20 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleacc.dll
[2011.10.13 11:40:19 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011.10.13 09:16:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{583DFB26-54D5-40CF-978B-9F445D089D7B}
[2011.10.13 09:13:32 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F72A357A-253B-41D6-BFE7-19DEAF74DD68}
[2011.10.13 07:37:59 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{6109C7F7-BEA2-4600-AB53-189EC17872BE}
[2011.10.13 07:36:56 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CAA4C01D-4A86-4F23-9D86-695EC7086A7A}
[2011.10.11 11:46:08 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{06C9E7BB-DC94-4EC5-884E-E687E5207A54}
[2011.10.11 11:45:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{787DFD8E-30CF-4624-B9CC-B3F116E80C31}
[2011.10.11 07:36:17 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{D8788CBA-7069-45D9-95EA-83BB53A0DDDE}
[2011.10.11 07:35:44 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F34F9D62-4739-44F2-AA47-1C249BDAB7B8}
[2011.10.10 15:14:58 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EF0FE76C-A81D-4B9A-9016-96092AE517EA}
[2011.10.10 15:14:26 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{98B7209E-4636-4033-9980-C4D5DA023EB6}
[2011.10.10 14:07:02 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8E28CB4B-5183-43F7-96FF-996B0E2739A3}
[2011.10.10 14:00:02 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{0820AA9B-63C4-4E93-961B-8D9C6CD9CD69}
[2011.10.10 13:44:01 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{90F97AC9-585A-4B3B-9197-DD6A6F4A601D}
[2011.10.09 22:43:12 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{D073A68F-1DF7-4539-AAFC-153DCA0FCCF7}
[2011.10.09 22:42:09 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{C4820ECE-AC28-4292-BE94-60B0E688C76C}
[2011.10.09 21:24:16 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{C9ECD729-EDAE-40B8-8602-2F56E2AAB9E4}
[2011.10.09 21:23:12 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9898FEBE-AF61-4B66-B368-16B1D6AF16ED}
[2011.10.09 17:22:28 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{D8D9205C-216D-47C4-AA6D-9320A3D145E4}
[2011.10.09 17:16:06 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{E0B0B62F-1607-4415-9301-90CD884997E8}
[2011.10.09 17:15:33 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9DA51CA7-AF44-46E1-8E06-9EAC64FCA3F7}
[2011.10.09 12:26:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A54FCE83-FBC9-412C-AE74-49D8AF4FBCA6}
[2011.10.09 12:14:08 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{86F62CE0-13F3-49D8-9F9B-BD1E6F7CABE0}
[2011.10.09 12:11:34 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{03C9CB1B-CA88-4820-8D10-68482A089388}
[2011.10.09 11:59:04 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{286A9194-A301-4A41-B553-4200BD49E38A}
[2011.10.09 11:58:02 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{233F4BCB-35F3-4A71-90D5-6D0350E22DBC}
[2011.10.09 11:49:33 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EB0FC773-CD1B-4D5F-9C3D-71C49C1BE83C}
[2011.10.09 11:48:00 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8C986CEB-3098-4E4D-87F1-75E09C13DC6D}
[2011.10.09 07:51:37 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{19974557-4E92-42D4-8D45-839F459A08B7}
[2011.10.08 15:27:04 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{E8201336-54F5-47D7-8A3E-347A634373FE}
[2011.10.08 11:27:26 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{4EF65B9E-F85A-40FE-877F-078547561351}
[2011.10.08 11:26:53 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EE2C0552-CE51-4207-A0E0-0E70FDC00858}
[2011.10.08 09:25:18 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9044FFB5-8322-4D13-A797-8ED585FB6D26}
[2011.10.08 09:24:15 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{7FC799E5-E246-441D-889F-9BDD5BDF57FA}
[2011.10.07 22:42:19 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CC2DD0D6-E27C-4888-A96B-3513013AB450}
[2011.10.07 22:39:46 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{10313056-366F-4917-BEF6-AE15880F16A0}
[2011.10.07 20:23:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{1C935433-B03C-4DED-B0FF-8713663C9AAB}
[2011.10.07 20:23:44 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CE49A977-A795-427D-B997-03A12CA5E701}
[2011.10.06 20:32:23 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F6CF81BE-9EC4-4A9D-8C1F-A79A5DFC7A7F}
[2011.10.06 20:31:20 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9DA0F995-4964-47DF-B4CB-59885D660AD2}
[2011.10.06 16:01:13 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{5EA01D84-4942-417D-831E-7E629756AD69}
[2011.10.06 16:00:40 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CA2E81D2-E525-44EE-89E8-8A442C5B1DC5}
[2011.10.06 15:47:00 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B4EAA12F-5C4B-413A-8A02-01C260D4A194}
[2011.10.06 15:46:27 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{05AFE881-F5DE-49E6-B79B-832EDE2231F2}
[2011.10.06 15:30:55 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A4F78E8D-83C5-42A4-8447-7C21CB292B6C}
[2011.10.06 15:29:52 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{DF5B9F1E-A416-40C5-A63F-660DBD95B2BD}
[2011.10.05 23:51:53 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{042342AF-3C7A-4C17-B0F8-6206E3813E38}
[2011.10.05 23:51:20 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{AB26F731-1348-4A96-A5F5-88B4752E61F9}
[2011.10.05 22:02:16 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{566CFFD8-F025-4A34-A3B3-21D6EB2E0284}
[2011.10.05 22:01:43 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{5A02B95C-DF02-4A6C-9F0D-2E4C0E54567E}
[2011.10.05 12:53:32 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{7357DB94-416B-42F8-8ED8-52DA086BD144}
[2011.10.05 12:52:10 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A5CC72CF-53F1-47E9-8925-5460F856387D}
[2011.10.03 22:00:32 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{FEE70F59-CEBC-45C2-BE4B-31A49E56463E}
[2011.10.03 21:59:30 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{06997C52-58C7-4490-8D1F-BBC998298AFF}
[2011.10.03 21:47:53 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B0D90983-E2F5-430A-A7F9-2AA0C3C07F3E}
[2011.10.03 21:47:19 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{11345BEB-FDF7-4600-951C-CE221D1F9D8B}
[2011.10.03 21:39:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{6B1BCB57-DDEF-45C5-AB8E-2E34911477EA}
[2011.10.03 21:38:32 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{51EC0B7B-78ED-483E-951C-D84BE8123EE7}
[2011.10.03 21:30:01 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8BECAA41-919E-4A70-98AB-F7B3F22E1B6A}
[2011.10.03 21:29:27 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{BEA7B5D4-E823-4063-B27B-12777C0F44B6}
[2011.10.03 21:05:42 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{039393CB-0B8F-4F65-BA97-70BDEBE3C42F}
[2011.10.03 21:05:10 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A69F0403-B1B6-4233-B9CB-984B41F7D3AE}
[2011.10.03 20:56:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B034B4AA-0E41-4884-B8CD-1F8EB77C1345}
[2011.10.03 20:55:40 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{478CAF6F-D5E4-49BB-8DBA-00305DE6FA38}
[2011.10.03 16:21:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A81CBF2A-8E26-44D7-806D-613E3B89368D}
[2011.10.03 16:20:41 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{75032EA1-1F00-4B31-8FF2-85C0214650DE}
[2011.10.03 15:54:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{11E6D46D-B337-48DF-9DFE-8AA984CDD25A}
[2011.10.03 15:53:45 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9CF45D6D-E622-45A2-8C3D-0B0F69E57B19}
[2011.10.02 23:47:19 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{37824565-5A06-4769-878B-A38C4B19716A}
[2011.10.02 23:46:46 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8CB19F7E-C184-4A86-8C67-F07608DC29CF}
[2011.10.02 21:06:54 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9F0D2CEB-790E-4E0F-8D9C-6E1537EE4A2A}
[2011.10.02 21:06:21 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{49166C2B-E856-4EE6-9692-D24D92E971EB}
[2011.10.02 00:38:20 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{C5082E35-EFA2-4B6E-B20D-2EB495B815CE}
[2011.10.02 00:37:45 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{42FD6AE0-79E9-4915-BDDC-B501213A9A65}
[2011.10.01 20:23:46 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{459C80DF-44E3-4F6B-A52C-EA359FEF1C43}
[2011.10.01 20:23:13 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{47FA02AF-A636-4136-94F6-0D745519FDCA}
[2011.10.01 09:35:17 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{20CD51DC-AC9D-48C3-91E7-A0FCE674B355}
[2011.10.01 09:34:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9B00DEF9-B48E-4213-86E5-FA7D6060D3A8}
[2011.09.30 23:10:18 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{827A096F-9F14-4AB6-A119-E0FA0541DF99}
[2011.09.30 22:56:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{5411578A-2D2D-4C34-806A-ABCE006625DE}
[2011.09.30 22:56:02 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EC35CE39-309C-4303-831B-3251718DBEB4}
[2011.09.30 12:30:58 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{FB79F8EA-605E-4CD7-8970-A75BCCAE922D}
[2011.09.30 12:30:25 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{7548B4AF-B445-40E0-ACC0-BD79F2491252}
[2011.09.30 12:28:33 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{3724181A-4F84-45FD-82DD-788FA2C1503E}
[2011.09.29 09:20:26 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A04F5F28-104D-4EDE-9995-0A433DBEA554}
[2011.09.29 07:23:05 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{2905DA8A-4E90-4C90-81E8-6A2AC6252FC1}
[2011.09.29 07:21:04 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{C1609748-CC0F-4642-967E-006C505EDBEC}
[2011.09.28 10:43:06 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8CC2F2D8-23EE-4493-9E7A-AC01D8AA95E0}
[2011.09.28 07:37:01 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{08393D37-0FEA-42B3-BCF6-FA21ED39C590}
[2011.09.28 07:35:58 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8688328D-702C-408A-A5BF-974B8D7C2F3A}
[2011.09.27 21:50:17 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{94283720-DAD0-4260-A68F-784CB057B7BA}
[2011.09.27 21:47:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B06755F9-CA88-4D8B-8474-446E78FB9780}
[2011.09.27 21:41:16 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{D01DF9E7-64AA-470B-B3AA-05382C93F75F}
[2011.09.27 20:58:45 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CB0CFFA9-F435-4F9A-87A9-151729A83851}
========== Files - Modified Within 30 Days ==========
[2011.10.27 15:13:43 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.10.27 15:13:43 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.10.27 14:28:53 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.10.27 10:54:31 | 3218,042,880 | -HS- | M] () -- C:\hiberfil.sys
[2011.10.25 20:11:45 | 001,150,584 | ---- | M] (Web Deals Interactive LLC) -- C:\Users\dragana\Desktop\dropdowndealssetup-silentinstaller.exe
[2011.10.25 20:11:40 | 005,155,328 | ---- | M] () -- C:\Users\dragana\Desktop\windowsdefender_1.1.1593.msi
[2011.10.25 20:10:46 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011.10.14 01:39:48 | 000,298,216 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011.10.14 01:33:48 | 001,521,074 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.10.14 01:33:48 | 000,654,536 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2011.10.14 01:33:48 | 000,616,418 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.10.14 01:33:48 | 000,130,150 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2011.10.14 01:33:48 | 000,106,540 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
========== Files Created - No Company Name ==========
[2011.10.25 20:11:27 | 005,155,328 | ---- | C] () -- C:\Users\dragana\Desktop\windowsdefender_1.1.1593.msi
[2011.06.26 13:32:10 | 001,524,112 | ---- | C] () -- C:\Windows\SysWow64\bandoolmx.dll
[2011.04.23 22:18:10 | 000,100,208 | ---- | C] () -- C:\Windows\SysWow64\FAIEExtension.dll
[2011.04.23 22:17:32 | 000,062,136 | ---- | C] () -- C:\Windows\SysWow64\FAib.dll
[2011.04.23 22:16:44 | 000,250,552 | ---- | C] () -- C:\Windows\SysWow64\FACrashRpt.dll
[2011.02.08 14:37:32 | 000,111,932 | ---- | C] () -- C:\Windows\SysWow64\EPPICPrinterDB.dat
[2011.02.08 14:37:32 | 000,031,053 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern131.dat
[2011.02.08 14:37:32 | 000,027,417 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern121.dat
[2011.02.08 14:37:32 | 000,026,154 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern1.dat
[2011.02.08 14:37:32 | 000,024,903 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern3.dat
[2011.02.08 14:37:32 | 000,021,390 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern5.dat
[2011.02.08 14:37:32 | 000,020,148 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern2.dat
[2011.02.08 14:37:32 | 000,011,811 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern4.dat
[2011.02.08 14:37:32 | 000,004,943 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern6.dat
[2011.02.08 14:37:32 | 000,001,146 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_DU.dat
[2011.02.08 14:37:32 | 000,001,139 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_PT.dat
[2011.02.08 14:37:32 | 000,001,139 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_BP.dat
[2011.02.08 14:37:32 | 000,001,136 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_ES.dat
[2011.02.08 14:37:32 | 000,001,129 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_FR.dat
[20
|