%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programfiler
Drive C: | 11,84 Gb Total Space | 2,19 Gb Free Space | 18,52% Space Free | Partition Type: NTFS
Drive D: | 76,68 Gb Total Space | 1,09 Gb Free Space | 1,42% Space Free | Partition Type: NTFS
Drive E: | 3,94 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Drive F: | 123,04 Gb Total Space | 1,69 Gb Free Space | 1,37% Space Free | Partition Type: NTFS
Drive G: | 3,70 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Drive H: | 534,43 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive J: | 98,00 Gb Total Space | 5,74 Gb Free Space | 5,86% Space Free | Partition Type: NTFS
Drive L: | 599,52 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: SKYLINEPOWER | User Name: Jonas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012.04.11 05:36:39 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jonas\Skrivebord\OTL.exe
PRC - [2012.04.09 22:28:49 | 001,224,176 | ---- | M] (Google Inc.) -- C:\Programfiler\Google\Chrome\Application\chrome.exe
PRC - [2012.03.29 12:44:02 | 001,161,072 | ---- | M] (Lavasoft Limited) -- J:\Programfiler\Ad-Aware Antivirus\AdAwareService.exe
PRC - [2012.03.29 12:43:58 | 020,670,304 | ---- | M] (Lavasoft Limited) -- J:\Programfiler\Ad-Aware Antivirus\AdAware.exe
PRC - [2011.10.21 11:09:36 | 000,198,032 | ---- | M] (Lavasoft) -- C:\Documents and Settings\All Users\Programdata\Ad-Aware Browsing Protection\adawarebp.exe
PRC - [2011.05.17 18:35:56 | 002,804,280 | ---- | M] (Sunbelt Software) -- J:\Programfiler\Ad-Aware Antivirus\Engine\SBAMSvc.exe
PRC - [2011.05.10 14:10:58 | 003,459,712 | ---- | M] (AVAST Software) -- C:\Programfiler\Alwil Software\Avast5\AvastUI.exe
PRC - [2011.05.10 14:10:57 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Programfiler\Alwil Software\Avast5\AvastSvc.exe
PRC - [2007.10.22 19:06:30 | 000,753,664 | ---- | M] (GIGABYTE TECHNOLOGY CO., LTD.) -- C:\Programfiler\GIGABYTE\Common\GNConfig.exe
PRC - [2005.10.31 17:50:38 | 001,298,432 | ---- | M] () -- C:\Programfiler\Jensen Scandinavia\AirLink_6554_Utility\ZDWlan.exe
PRC - [2005.10.27 12:00:22 | 000,299,008 | ---- | M] (Creative Technology Ltd) -- C:\Programfiler\Creative\Shared Files\CamTray.exe
PRC - [2004.08.22 17:05:02 | 000,081,920 | ---- | M] (DAEMON'S HOME) -- J:\Programfiler\D-Tools\daemon.exe
PRC - [2004.08.04 03:03:32 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004.07.01 12:23:32 | 000,067,584 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE
========== Modules (No Company Name) ==========
MOD - [2012.04.11 20:18:39 | 001,755,136 | ---- | M] () -- C:\Programfiler\Alwil Software\Avast5\defs\12041101\algo.dll
MOD - [2012.04.11 08:02:40 | 001,755,136 | ---- | M] () -- C:\Programfiler\Alwil Software\Avast5\defs\12041100\algo.dll
MOD - [2012.04.09 22:28:48 | 000,444,400 | ---- | M] () -- C:\Programfiler\Google\Chrome\Application\18.0.1025.152\ppgooglenaclpluginchrome.dll
MOD - [2012.04.09 22:28:46 | 003,915,248 | ---- | M] () -- C:\Programfiler\Google\Chrome\Application\18.0.1025.152\pdf.dll
MOD - [2012.04.09 22:27:21 | 000,122,880 | ---- | M] () -- C:\Programfiler\Google\Chrome\Application\18.0.1025.152\avutil-51.dll
MOD - [2012.04.09 22:27:20 | 000,220,672 | ---- | M] () -- C:\Programfiler\Google\Chrome\Application\18.0.1025.152\avformat-53.dll
MOD - [2012.04.09 22:27:19 | 001,747,456 | ---- | M] () -- C:\Programfiler\Google\Chrome\Application\18.0.1025.152\avcodec-53.dll
MOD - [2012.04.09 21:42:11 | 008,743,584 | ---- | M] () -- C:\Programfiler\Google\Chrome\Application\18.0.1025.152\gcswf32.dll
MOD - [2012.03.29 12:44:18 | 002,180,968 | ---- | M] () -- J:\Programfiler\Ad-Aware Antivirus\ThreatWork.dll
MOD - [2012.02.05 13:41:50 | 000,181,616 | ---- | M] () -- J:\Programfiler\Ad-Aware Antivirus\Engine\Definitions\libMachoUniv.dll
MOD - [2012.02.05 13:41:48 | 000,210,288 | ---- | M] () -- J:\Programfiler\Ad-Aware Antivirus\Engine\Definitions\libBase64.dll
MOD - [2011.01.19 11:20:14 | 000,308,560 | ---- | M] () -- J:\Programfiler\Ad-Aware Antivirus\Engine\vipre.dll
MOD - [2006.07.12 15:36:36 | 001,167,360 | ---- | M] () -- C:\Programfiler\GIGABYTE\Common\acAuth.dll
MOD - [2005.10.31 17:50:38 | 001,298,432 | ---- | M] () -- C:\Programfiler\Jensen Scandinavia\AirLink_6554_Utility\ZDWlan.exe
MOD - [2005.06.08 15:36:46 | 000,045,056 | ---- | M] () -- C:\Programfiler\Jensen Scandinavia\AirLink_6554_Utility\ZDWlan.dll
MOD - [2005.06.07 15:56:50 | 000,208,896 | ---- | M] () -- C:\Programfiler\Jensen Scandinavia\AirLink_6554_Utility\dot1x_dll.dll
MOD - [2004.08.22 17:04:56 | 000,069,120 | ---- | M] () -- C:\WINDOWS\daemon.dll
MOD - [2004.08.04 03:03:18 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2004.03.05 15:00:58 | 000,155,648 | ---- | M] () -- C:\Programfiler\Jensen Scandinavia\AirLink_6554_Utility\ssleay32.dll
MOD - [2004.03.05 15:00:26 | 000,827,392 | ---- | M] () -- C:\Programfiler\Jensen Scandinavia\AirLink_6554_Utility\libeay32.dll
MOD - [2003.12.30 21:52:00 | 000,007,168 | ---- | M] () -- J:\Programfiler\D-Tools\Plugins\Images\bw5mount.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- C:\Programfiler\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc)
SRV - [2012.03.29 12:44:02 | 001,161,072 | ---- | M] (Lavasoft Limited) [Auto | Running] -- J:\Programfiler\Ad-Aware Antivirus\AdAwareService.exe -- (Ad-Aware Service)
SRV - [2012.02.29 08:50:48 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Programfiler\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2011.05.29 09:11:28 | 000,366,640 | ---- | M] (Malwarebytes Corporation) [Disabled | Stopped] -- J:\Programfiler\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011.05.17 18:35:56 | 002,804,280 | ---- | M] (Sunbelt Software) [Auto | Running] -- J:\Programfiler\Ad-Aware Antivirus\Engine\SBAMSvc.exe -- (SBAMSvc)
SRV - [2011.05.10 14:10:57 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Programfiler\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2008.05.30 12:32:16 | 000,572,416 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Programfiler\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2006.10.26 20:49:34 | 000,441,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programfiler\Fellesfiler\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2006.10.26 14:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programfiler\Fellesfiler\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - [2004.10.22 04:24:18 | 000,073,728 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Programfiler\Fellesfiler\InstallShield\Driver\1050\Intel 32\IDriverT.exe -- (IDriverT)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\usbser_lowerflt.sys -- (upperdev)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Jonas\LOKALE~1\Temp\GPU-Z.sys -- (GPU-Z)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2012.04.11 05:27:52 | 000,026,400 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hitmanpro36.sys -- (hitmanpro35)
DRV - [2011.11.20 20:29:40 | 000,239,168 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2011.07.15 23:55:55 | 000,101,720 | ---- | M] (Sunbelt Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\SBREDrv.sys -- (SBRE)
DRV - [2011.05.29 09:11:20 | 000,022,712 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011.05.11 16:26:04 | 000,074,968 | ---- | M] (Sunbelt Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\sbapifs.sys -- (sbapifs)
DRV - [2011.05.11 16:26:04 | 000,021,592 | ---- | M] (Sunbelt Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\sbaphd.sys -- (sbaphd)
DRV - [2011.05.10 14:03:44 | 000,307,928 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011.05.10 14:02:37 | 000,049,240 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011.05.10 14:02:25 | 000,102,616 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2011.05.10 13:59:56 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011.05.10 13:59:37 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011.04.18 19:17:46 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011.04.18 19:12:58 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011.04.05 17:35:20 | 000,332,248 | ---- | M] (Sunbelt Software, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\SbFw.sys -- (SbFw)
DRV - [2011.04.05 17:35:20 | 000,212,568 | ---- | M] (Sunbelt Software, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\sbtis.sys -- (SbTis)
DRV - [2011.04.05 17:35:20 | 000,094,040 | ---- | M] (Sunbelt Software, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sbhips.sys -- (sbhips)
DRV - [2011.02.08 09:14:22 | 000,069,208 | ---- | M] (Sunbelt Software, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SbFwIm.sys -- (SBFWIMCLMP)
DRV - [2011.02.08 09:14:22 | 000,069,208 | ---- | M] (Sunbelt Software, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SbFwIm.sys -- (SBFWIMCL)
DRV - [2007.09.17 15:53:26 | 000,021,632 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2007.07.28 17:10:18 | 000,483,968 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rt61.sys -- (RT61)
DRV - [2006.04.01 17:16:44 | 000,162,176 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\V0260Vid.sys -- (V0260VID)
DRV - [2005.06.17 08:57:24 | 000,276,992 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZD1211U.sys -- (ZD1211U(ZyDAS)) Jensen Scandinavia AirLink 6554(ZyDAS)
DRV - [2005.06.08 18:44:20 | 000,020,608 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BRGSp50.sys -- (BRGSp50)
DRV - [2004.10.25 13:40:58 | 000,017,664 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ZDPSp50.sys -- (ZDPSp50)
DRV - [2004.08.22 16:31:48 | 000,005,248 | ---- | M] ( ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\d347prt.sys -- (d347prt)
DRV - [2004.08.22 16:31:10 | 000,155,136 | ---- | M] ( ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\d347bus.sys -- (d347bus)
DRV - [2004.08.04 00:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2004.07.01 08:49:00 | 000,626,977 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2004.04.13 14:14:12 | 000,070,144 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtlnicxp.sys -- (RTL8023xp)
DRV - [2004.02.24 05:08:52 | 000,400,384 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS)
DRV - [2002.09.16 18:14:32 | 000,004,228 | ---- | M] (PowerQuest Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\PQNTDRV.sys -- (PQNTDrv)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://toolbar.ask.c...15&gct=&gc=1&q=
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://toolbar.ask.c...15&gct=&gc=1&q=
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://search.live.com/sphome.aspx
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
http://search.live.com/sphome.aspx
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://search.live.com
IE - HKCU\..\URLSearchHook: {37483b40-c254-4a72-bda4-22ee90182c1e} - C:\Programfiler\NCH_EN\prxtbNCH_.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Programfiler\AskSearch\bin\DefaultSearch.dll ()
IE - HKCU\..\SearchScopes,DefaultScope = {AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
IE - HKCU\..\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}: "URL" =
http://search.condui...&ctid=CT2801948
IE - HKCU\..\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}: "URL" =
http://toolbar.ask.c...m=1&toolbar=VZ2
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Programfiler\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Programfiler\Microsoft Silverlight\3.0.40624.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Programfiler\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Programfiler\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Programfiler\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Programfiler\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
[2009.11.23 07:20:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jonas\Programdata\Mozilla\Extensions
[2009.11.23 07:20:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jonas\Programdata\Mozilla\Extensions\mozswing@mozswing.org
[2011.12.01 00:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jonas\Programdata\Mozilla\Firefox\Profiles\lb40b5i1.default\extensions
[2010.11.14 18:13:44 | 000,000,000 | ---D | M] (uTorrentBar Toolbar) -- C:\Documents and Settings\Jonas\Programdata\Mozilla\Firefox\Profiles\lb40b5i1.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
[2011.12.01 00:22:49 | 000,000,000 | ---D | M] (Facemoods) -- C:\Documents and Settings\Jonas\Programdata\Mozilla\Firefox\Profiles\lb40b5i1.default\extensions\ffxtlbr@Facemoods.com
[2008.10.11 14:25:02 | 000,000,000 | ---D | M] (No name found) -- C:\Programfiler\Mozilla Firefox\extensions
[2008.03.26 19:14:04 | 000,066,208 | ---- | M] (Joost Technologies B.V. ) -- C:\Programfiler\mozilla firefox\plugins\npJoostPlugin.dll
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Programfiler\Google\Chrome\Application\18.0.1025.152\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Programfiler\Google\Chrome\Application\18.0.1025.152\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Programfiler\Google\Chrome\Application\18.0.1025.152\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.5.5 (Enabled) = C:\Programfiler\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.5.5 (Enabled) = C:\Programfiler\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.5.5 (Enabled) = C:\Programfiler\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.5.5 (Enabled) = C:\Programfiler\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.5.5 (Enabled) = C:\Programfiler\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.5.5 (Enabled) = C:\Programfiler\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.5.5 (Enabled) = C:\Programfiler\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Programfiler\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Programfiler\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Programfiler\Windows Media Player\npdsplay.dll
CHR - plugin: Adobe Acrobat (Disabled) = J:\Programfiler\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Programfiler\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Java Platform SE 6 U31 (Enabled) = C:\Programfiler\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Programfiler\Microsoft Silverlight\3.0.40624.0\npctrl.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Programfiler\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
CHR - Extension: YouTube = C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: DealScout = C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\Google\Chrome\User Data\Default\Extensions\mpmfjcpampmdgkjfjbjfloolnfojlogf\2.1.11.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2007.08.15 19:51:37 | 000,000,722 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Fellesfiler\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Programfiler\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (NCH EN Toolbar) - {37483b40-c254-4a72-bda4-22ee90182c1e} - C:\Programfiler\NCH_EN\prxtbNCH_.dll (Conduit Ltd.)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\BitComet\tools\BitCometBHO.dll (BitComet)
O2 - BHO: (CescrtHlpr Object) - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Programfiler\facemoods.com\facemoods\1.4.17.11\bh\facemoods.dll (facemoods.com BHO)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Påloggingshjelp for Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programfiler\Fellesfiler\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programfiler\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Programfiler\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (NCH EN Toolbar) - {37483b40-c254-4a72-bda4-22ee90182c1e} - C:\Programfiler\NCH_EN\prxtbNCH_.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (facemoods Toolbar) - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Programfiler\facemoods.com\facemoods\1.4.17.11\facemoodsTlbr.dll (facemoods.com)
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (NCH EN Toolbar) - {37483B40-C254-4A72-BDA4-22EE90182C1E} - C:\Programfiler\NCH_EN\prxtbNCH_.dll (Conduit Ltd.)
O4 - HKLM..\Run: [Ad-Aware Antivirus] J:\Programfiler\Ad-Aware Antivirus\AdAwareLauncher.exe (Lavasoft Limited)
O4 - HKLM..\Run: [Ad-Aware Browsing Protection] C:\Documents and Settings\All Users\Programdata\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft)
O4 - HKLM..\Run: [avast5] C:\Programfiler\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [DAEMON Tools-1033] J:\Programfiler\D-Tools\daemon.exe (DAEMON'S HOME)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
O4 - HKCU..\Run: [Creative WebCam Tray] C:\Programfiler\Creative\Shared Files\CamTray.exe (Creative Technology Ltd)
O4 - HKCU..\Run: [MsnMsgr] "C:\Programfiler\Windows Live\Messenger\MsnMsgr.Exe" /background File not found
O4 - Startup: C:\Documents and Settings\All Users\Start-meny\Programmer\Oppstart\AirLink 6554 Utility.lnk = C:\Programfiler\Jensen Scandinavia\AirLink_6554_Utility\ZDWlan.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start-meny\Programmer\Oppstart\Gigabyte Wireless Utility.lnk = C:\Programfiler\GIGABYTE\Common\GNConfig.exe (GIGABYTE TECHNOLOGY CO., LTD.)
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Download all links using BitComet - D:\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Download all videos using BitComet - D:\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Download link using &BitComet - D:\BitComet\BitComet.exe (www.BitComet.com)
O9 - Extra Button: Blogg dette - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : &Blogg dette i Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - Reg Error: Key error. File not found
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programfiler\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programfiler\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O16 - DPF: {41564D57-9980-0010-8000-00AA00389B71}
http://download.micr...01F/wmvadvd.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.ma...r/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_31)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 193.213.112.4 130.67.15.198
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0615F7D7-CDD6-4A7F-A591-B039D42FBD56}: DhcpNameServer = 193.213.112.4 130.67.15.198
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programfiler\Fellesfiler\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programfiler\Fellesfiler\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programfiler\Fellesfiler\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programfiler\Fellesfiler\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programfiler\Fellesfiler\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programfiler\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programfiler\Fellesfiler\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\WINDOWS\system32\__c009777C.dat) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007.07.07 20:18:23 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2005.02.25 18:24:46 | 000,000,051 | R--- | M] () - E:\autorun.inf -- [ UDF ]
O32 - AutoRun File - [2007.07.06 01:08:41 | 000,000,044 | R--- | M] () - G:\AUTORUN.INF -- [ UDF ]
O32 - AutoRun File - [2007.11.12 19:26:00 | 000,304,944 | R--- | M] (Juice Games) - G:\AutoRun.exe -- [ UDF ]
O32 - AutoRun File - [2005.05.19 01:59:05 | 000,000,228 | R--- | M] () - H:\Autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2005.07.06 01:05:52 | 001,019,904 | R--- | M] (Microsoft Corporation) - H:\autorun.exe -- [ CDFS ]
O32 - AutoRun File - [2004.02.15 16:20:09 | 000,000,058 | R--- | M] () - L:\Autorun.inf -- [ CDFS ]
O33 - MountPoints2\{64c32f3a-ebf7-11de-9c81-00027251c9f6}\Shell\AutoRun\command - "" = G:\Toshiba\more4you.exe
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\Install.exe -- [2004.10.21 19:38:02 | 000,126,976 | R--- | M] (Macrovision Corporation)
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe -- [2007.11.12 19:26:00 | 000,304,944 | R--- | M] (Juice Games)
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\autorun.exe -- [2005.07.06 01:05:52 | 001,019,904 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\H\Shell\directx\command - "" = H:\directx9\DXSETUP.exe -- [2005.03.19 03:19:41 | 000,480,976 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\H\Shell\setup\command - "" = H:\setup.exe -- [2005.07.15 21:19:47 | 000,253,952 | R--- | M] (Microsoft Game Studios )
O33 - MountPoints2\L\Shell\AutoRun\command - "" = L:\FarCryAutoCD.exe -- [2004.02.26 13:36:51 | 003,227,648 | R--- | M] (Crytek)
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012.04.11 05:55:10 | 000,593,920 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jonas\Skrivebord\OTL.exe
[2012.04.11 05:08:43 | 000,000,000 | ---D | C] -- C:\Programfiler\HitmanPro
[2012.04.11 05:08:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start-meny\Programmer\HitmanPro
[2012.04.11 05:07:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Programdata\HitmanPro
[2012.04.10 21:43:32 | 007,156,360 | ---- | C] (SurfRight B.V.) -- C:\Documents and Settings\Jonas\Skrivebord\HitmanPro36.exe
[2012.04.10 20:20:35 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Jonas\Siste
[2012.04.03 08:44:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jonas\Mine dokumenter\Ny mappe
[2012.04.03 08:32:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start-meny\Programmer\Skype
[2012.04.03 08:32:21 | 000,000,000 | ---D | C] -- C:\Programfiler\Fellesfiler\Skype
[2012.03.31 08:47:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Programdata\Ad-Aware Antivirus
[2012.03.31 08:39:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\adaware
[2012.03.31 08:38:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Programdata\Ad-Aware Browsing Protection
[2012.03.31 08:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start-meny\Programmer\Ad-Aware Antivirus
[2012.03.31 08:38:16 | 000,074,968 | ---- | C] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\sbapifs.sys
[2012.03.31 08:38:16 | 000,021,592 | ---- | C] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\sbaphd.sys
[2012.03.31 08:38:15 | 000,212,568 | ---- | C] (Sunbelt Software, Inc.) -- C:\WINDOWS\System32\drivers\sbtis.sys
[2012.03.31 08:38:15 | 000,094,040 | ---- | C] (Sunbelt Software, Inc.) -- C:\WINDOWS\System32\drivers\sbhips.sys
[2012.03.31 08:37:55 | 000,332,248 | ---- | C] (Sunbelt Software, Inc.) -- C:\WINDOWS\System32\drivers\SbFw.sys
[2012.03.31 08:37:55 | 000,069,208 | ---- | C] (Sunbelt Software, Inc.) -- C:\WINDOWS\System32\drivers\SbFwIm.sys
[2012.03.31 08:35:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jonas\Programdata\Ad-Aware Antivirus
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012.04.12 05:02:09 | 000,000,978 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012.04.12 05:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At30.job
[2012.04.12 04:58:20 | 000,396,586 | ---- | M] () -- C:\WINDOWS\System32\perfh014.dat
[2012.04.12 04:58:20 | 000,392,296 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012.04.12 04:58:20 | 000,066,686 | ---- | M] () -- C:\WINDOWS\System32\perfc014.dat
[2012.04.12 04:58:20 | 000,058,596 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012.04.12 04:54:49 | 000,000,695 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\Ad-Aware Antivirus.lnk
[2012.04.12 04:54:15 | 000,000,974 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012.04.12 04:53:45 | 000,050,257 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2012.04.12 04:53:38 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.04.11 19:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At44.job
[2012.04.11 05:36:39 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jonas\Skrivebord\OTL.exe
[2012.04.11 05:29:56 | 000,000,944 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Antivirus Scheduled Scan.job
[2012.04.11 05:27:52 | 000,026,400 | ---- | M] () -- C:\WINDOWS\System32\drivers\hitmanpro36.sys
[2012.04.11 05:26:03 | 000,000,450 | ---- | M] () -- C:\WINDOWS\System32\.crusader
[2012.04.11 05:08:44 | 000,001,603 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\HitmanPro.lnk
[2012.04.11 05:07:59 | 000,001,804 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\Google Chrome.lnk
[2012.04.10 21:39:47 | 007,156,360 | ---- | M] (SurfRight B.V.) -- C:\Documents and Settings\Jonas\Skrivebord\HitmanPro36.exe
[2012.04.10 21:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At46.job
[2012.04.10 20:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At45.job
[2012.04.10 18:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At43.job
[2012.04.09 00:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At25.job
[2012.04.08 23:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At48.job
[2012.04.08 22:36:28 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.04.04 08:00:03 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At33.job
[2012.04.03 09:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At34.job
[2012.04.03 08:32:22 | 000,001,874 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\Skype.lnk
[2012.04.02 01:00:01 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At26.job
[2012.04.01 12:00:03 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At37.job
[2012.04.01 11:47:59 | 000,096,256 | ---- | M] () -- C:\Documents and Settings\Jonas\Lokale innstillinger\Programdata\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.04.01 11:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At36.job
[2012.03.31 23:48:46 | 000,001,190 | ---- | M] () -- C:\WINDOWS\System32\ServiceConfig.xml
[2012.03.31 22:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At47.job
[2012.03.31 19:45:00 | 000,000,482 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2012.03.31 17:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At42.job
[2012.03.31 16:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At41.job
[2012.03.31 15:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At40.job
[2012.03.31 14:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At39.job
[2012.03.31 13:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At38.job
[2012.03.31 10:50:58 | 000,000,673 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivebord\Hot Rod American Street Drag.lnk
[2012.03.31 10:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At35.job
[2012.03.30 18:00:00 | 000,000,404 | ---- | M] () -- C:\WINDOWS\tasks\Norton Security Scan.job
[2012.03.15 07:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\tasks\At31.job
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012.04.11 05:27:52 | 000,026,400 | ---- | C] () -- C:\WINDOWS\System32\drivers\hitmanpro36.sys
[2012.04.11 05:26:03 | 000,000,450 | ---- | C] () -- C:\WINDOWS\System32\.crusader
[2012.04.11 05:08:44 | 000,001,603 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivebord\HitmanPro.lnk
[2012.04.03 08:32:22 | 000,001,874 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivebord\Skype.lnk
[2012.03.31 23:48:46 | 000,001,190 | ---- | C] () -- C:\WINDOWS\System32\ServiceConfig.xml
[2012.03.31 10:50:58 | 000,000,673 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivebord\Hot Rod American Street Drag.lnk
[2012.03.31 08:48:48 | 000,000,944 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Antivirus Scheduled Scan.job
[2012.03.31 08:38:27 | 000,000,695 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivebord\Ad-Aware Antivirus.lnk
[2012.03.21 21:30:18 | 003,996,570 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\DJ_Splash_-_You.mp3
[2012.03.21 21:28:28 | 000,427,619 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde090.jpg
[2012.03.21 21:28:28 | 000,410,479 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde072.jpg
[2012.03.21 21:28:28 | 000,409,375 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde074.jpg
[2012.03.21 21:28:28 | 000,405,352 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde073.jpg
[2012.03.21 21:28:28 | 000,370,933 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde082.jpg
[2012.03.21 21:28:28 | 000,369,709 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde075.jpg
[2012.03.21 21:28:28 | 000,360,863 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde078.jpg
[2012.03.21 21:28:28 | 000,351,227 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde077.jpg
[2012.03.21 21:28:28 | 000,320,803 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde076.jpg
[2012.03.21 21:28:28 | 000,318,044 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde083.jpg
[2012.03.21 21:28:28 | 000,284,197 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde084.jpg
[2012.03.21 21:28:28 | 000,221,419 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\Bilde080.jpg
[2012.03.21 21:23:16 | 001,755,551 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11670.JPG
[2012.03.21 21:23:16 | 001,753,635 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11671.JPG
[2012.03.21 21:23:16 | 001,748,069 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11672.JPG
[2012.03.21 21:23:16 | 001,741,479 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11674.JPG
[2012.03.21 21:20:23 | 001,760,941 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10849.JPG
[2012.03.21 21:20:23 | 001,758,261 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10851.JPG
[2012.03.21 21:20:23 | 001,754,879 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10852.JPG
[2012.03.21 21:20:23 | 001,750,093 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10855.JPG
[2012.03.21 21:20:23 | 001,743,437 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10850.JPG
[2012.03.21 21:20:23 | 001,717,612 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10854.JPG
[2012.03.21 21:20:23 | 001,706,434 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10853.JPG
[2012.03.21 21:20:23 | 001,663,177 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10856.JPG
[2012.03.21 21:20:23 | 001,627,218 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10857.JPG
[2012.03.21 21:20:22 | 001,766,902 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10840.JPG
[2012.03.21 21:20:22 | 001,756,058 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10843.JPG
[2012.03.21 21:20:22 | 001,755,535 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10841.JPG
[2012.03.21 21:20:22 | 001,749,699 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10847.JPG
[2012.03.21 21:20:22 | 001,744,132 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10845.JPG
[2012.03.21 21:20:22 | 001,737,642 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10848.JPG
[2012.03.21 21:20:22 | 001,735,706 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10842.JPG
[2012.03.21 21:20:22 | 001,728,722 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10846.JPG
[2012.03.21 21:20:22 | 001,716,556 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10844.JPG
[2012.03.21 21:20:22 | 001,648,418 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10858.JPG
[2012.03.21 21:16:54 | 001,794,250 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC12675.JPG
[2012.03.21 21:16:54 | 001,777,939 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC12677.JPG
[2012.03.21 21:16:54 | 001,753,665 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC12674.JPG
[2012.03.21 21:16:54 | 001,752,724 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC12678.JPG
[2012.03.21 21:16:54 | 001,742,882 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC12676.JPG
[2012.03.21 21:16:22 | 001,753,954 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC12663.JPG
[2012.03.21 21:07:16 | 001,768,838 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10998.JPG
[2012.03.21 21:07:16 | 001,754,075 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11001.JPG
[2012.03.21 21:07:16 | 001,750,695 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10982.JPG
[2012.03.21 21:07:16 | 001,750,067 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11000.JPG
[2012.03.21 21:07:16 | 001,749,194 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11002.JPG
[2012.03.21 21:07:16 | 001,747,328 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10978.JPG
[2012.03.21 21:07:16 | 001,747,067 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10981.JPG
[2012.03.21 21:07:16 | 001,744,250 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10990.JPG
[2012.03.21 21:07:16 | 001,741,420 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10980.JPG
[2012.03.21 21:07:16 | 001,739,756 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10999.JPG
[2012.03.21 21:07:16 | 001,735,832 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10979.JPG
[2012.03.21 21:07:16 | 001,735,056 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10992.JPG
[2012.03.21 21:07:16 | 001,734,088 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10977.JPG
[2012.03.21 21:07:16 | 001,724,459 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC10993.JPG
[2012.03.21 21:04:26 | 001,752,604 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11385.JPG
[2012.03.21 21:04:26 | 001,734,229 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11382.JPG
[2012.03.21 21:04:26 | 001,731,967 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11386.JPG
[2012.03.21 21:04:25 | 001,773,150 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11384.JPG
[2012.03.21 21:04:25 | 001,720,632 | ---- | C] () -- C:\Documents and Settings\Jonas\Skrivebord\SDC11383.JPG
[2011.06.04 22:39:48 | 000,000,064 | ---- | C] () -- C:\WINDOWS\System32\rp_stats.dat
[2011.06.04 22:39:48 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\rp_rules.dat
========== LOP Check ==========
[2012.03.31 08:39:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Ad-Aware Browsing Protection
[2011.02.16 06:12:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Alwil Software
[2008.12.23 14:44:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Azureus
[2011.11.20 20:27:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\DAEMON Tools Lite
[2011.02.22 21:53:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Dartfish
[2008.08.28 20:02:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Downloaded Installations
[2008.05.12 12:02:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Grisoft
[2008.10.11 16:33:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\HighAndes
[2012.04.11 05:25:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\HitmanPro
[2008.08.28 19:57:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Installations
[2011.12.01 00:23:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\InstallMate
[2007.08.04 12:29:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\MAGIX
[2008.08.01 17:32:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Nokia
[2007.07.12 18:27:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\PC Suite
[2011.01.04 18:39:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\PMB Files
[2011.12.01 00:20:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\Premium
[2007.08.15 08:01:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Programdata\TEMP
[2012.04.02 19:34:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\.minecraft
[2012.03.31 08:50:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Ad-Aware Antivirus
[2012.04.10 20:20:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Azureus
[2011.11.20 20:26:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\DAEMON Tools Lite
[2009.02.01 16:32:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Dartfish
[2007.07.12 18:32:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\DataLayer
[2009.11.04 08:21:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Desktopicon
[2012.04.08 22:53:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Dropbox
[2011.12.01 00:32:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\facemoods.com
[2008.12.27 19:59:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\FinalBurner Video DVD
[2011.12.01 00:09:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\FLV Blaster
[2008.02.03 11:38:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Grisoft
[2010.07.28 16:27:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\gtk-2.0
[2008.10.11 16:33:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\HighAndes
[2007.11.20 19:16:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Image Zone Express
[2007.12.20 18:23:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\JLC's Software
[2010.12.08 21:07:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\LimeWire
[2011.01.04 21:50:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\LolClient
[2008.08.28 20:22:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Nokia
[2007.07.24 10:59:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Opera
[2008.08.28 20:07:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\PC Suite
[2011.02.20 10:52:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\PriceGong
[2008.05.23 19:55:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Snapfish
[2009.08.24 15:37:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Sony Setup
[2011.05.19 22:52:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\Spotify
[2012.03.31 10:28:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jonas\Programdata\uTorrent
[2012.04.11 05:29:56 | 000,000,944 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Antivirus Scheduled Scan.job
[2012.03.31 19:45:00 | 000,000,482 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
[2012.04.09 00:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At25.job
[2012.04.02 01:00:01 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At26.job
[2012.03.04 03:00:01 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At27.job
[2011.12.18 04:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At28.job
[2011.12.18 05:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At29.job
[2012.04.12 05:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At30.job
[2012.03.15 07:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At31.job
[2011.08.15 07:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At32.job
[2012.04.04 08:00:03 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At33.job
[2012.04.03 09:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At34.job
[2012.03.31 10:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At35.job
[2012.04.01 11:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At36.job
[2012.04.01 12:00:03 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At37.job
[2012.03.31 13:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At38.job
[2012.03.31 14:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At39.job
[2012.03.31 15:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At40.job
[2012.03.31 16:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At41.job
[2012.03.31 17:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At42.job
[2012.04.10 18:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At43.job
[2012.04.11 19:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At44.job
[2012.04.10 20:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At45.job
[2012.04.10 21:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At46.job
[2012.03.31 22:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At47.job
[2012.04.08 23:00:00 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\At48.job
[2011.09.15 22:22:11 | 000,000,266 | ---- | M] () -- C:\WINDOWS\Tasks\prismShakeIcon.job
========== Purity Check ==========
========== Files - Unicode (All) ==========
[2011.01.12 05:49:58 | 000,000,000 | ---- | M] ()(C:\Documents and Settings\Jonas\Mine dokumenter\David Guetta feat. Rihanna - Whoâ??s That Chick.mp3) -- C:\Documents and Settings\Jonas\Mine dokumenter\David Guetta feat. Rihanna - Whoâs That Chick.mp3
[2011.01.12 05:49:58 | 000,000,000 | ---- | C] ()(C:\Documents and Settings\Jonas\Mine dokumenter\David Guetta feat. Rihanna - Whoâ??s That Chick.mp3) -- C:\Documents and Settings\Jonas\Mine dokumenter\David Guetta feat. Rihanna - Whoâs That Chick.mp3
========== Alternate Data Streams ==========
@Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Programdata\TEMP:44DAF2F1
< End of report >