[code]
OTS logfile created on: 18/04/2011 3:57:13 PM - Run 1
OTS by OldTimer - Version 3.1.42.0 Folder = C:\Documents and Settings\Owner\Desktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000C09 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
1.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 76.00% Memory free
3.00 Gb Paging File | 3.00 Gb Available in Paging File | 95.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.24 Gb Total Space | 22.47 Gb Free Space | 60.32% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 186.30 Gb Total Space | 163.54 Gb Free Space | 87.78% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: KON
Current User Name: Owner
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: Off
File Age = 90 Days
[Processes - Safe List]
ots.exe -> C:\Documents and Settings\Owner\Desktop\OTS.exe -> [2011/04/18 15:50:15 | 000,645,632 | ---- | M | MD5 = AF5A3E59558352FF5867CFA60A096A5E] (OldTimer Tools)
nokiamserver.exe -> C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe -> [2010/07/20 11:45:24 | 001,531,904 | ---- | M | MD5 = ACC5596B15EB0351261A483DA06F3EB3] (Nokia)
jucheck.exe -> C:\Program Files\Common Files\Java\Java Update\jucheck.exe -> [2010/05/14 11:44:46 | 000,501,480 | ---- | M | MD5 = DB1A23EE7DD2E5E04E7DE071A6BEF699] (Sun Microsystems, Inc.)
explorer.exe -> C:\WINDOWS\explorer.exe -> [2004/08/04 00:56:50 | 001,032,192 | ---- | M | MD5 = A0732187050030AE399B241436565E64] (Microsoft Corporation)
[Modules - Safe List]
ots.exe -> C:\Documents and Settings\Owner\Desktop\OTS.exe -> [2011/04/18 15:50:15 | 000,645,632 | ---- | M | MD5 = AF5A3E59558352FF5867CFA60A096A5E] (OldTimer Tools)
comctl32.dll -> C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll -> [2004/08/04 00:57:02 | 001,050,624 | ---- | M | MD5 = 5AF68A5E44734A082442668E9C787743] (Microsoft Corporation)
[Win32 Services - Safe List]
(AppMgmt) Application Management [Disabled | Stopped] -> -> File not found
(Akamai) Akamai NetSession Interface [Auto | Running] -> c:\Program Files\Common Files\Akamai\netsession_win_a35e6b9.dll -> [2011/03/30 17:13:19 | 003,229,784 | ---- | M | MD5 = A35E6B91CA1FBA354B198969946DE07D] ()
(AVP) Kaspersky Anti-Virus Service [Auto | Stopped] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe -> [2010/10/30 15:08:41 | 000,352,976 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
(ServiceLayer) ServiceLayer [On_Demand | Stopped] -> C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -> [2010/06/14 15:07:14 | 000,615,936 | ---- | M | MD5 = 2D841B7B7F6DEC32162EDFCC69D61F42] (Nokia)
(npggsvc) nProtect GameGuard Service [On_Demand | Stopped] -> C:\WINDOWS\System32\GameMon.des -> [2010/04/27 09:44:00 | 003,735,920 | ---- | M | MD5 = 529701597F19B8359606F28E43C121FA] (INCA Internet Co., Ltd.)
[Driver Services - Safe List]
(KLIF) Kaspersky Lab Driver [File_System | System | Running] -> C:\WINDOWS\system32\drivers\klif.sys -> [2010/10/30 15:08:41 | 000,475,736 | ---- | M | Unable to obtain MD5] (Kaspersky Lab)
(kl2) kl2 [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\kl2.sys -> [2010/06/09 17:43:52 | 000,011,352 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
(KL1) KL1 [Kernel | Boot | Running] -> C:\WINDOWS\system32\DRIVERS\kl1.sys -> [2010/06/09 17:43:50 | 000,132,184 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
(klim5) Kaspersky Anti-Virus NDIS Filter [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\klim5.sys -> [2010/05/07 12:06:26 | 000,032,856 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
(UsbserFilt) UsbserFilt [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -> [2010/02/26 14:32:58 | 000,008,192 | ---- | M | MD5 = 68B4F83CCCF70A2FF32EE142C234332A] (Nokia)
(upperdev) upperdev [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -> [2010/02/26 14:32:46 | 000,008,192 | ---- | M | MD5 = 0CCADC7391021376EDBB8AA649D04E68] (Nokia)
(nmwcdc) Nokia USB Generic [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ccdcmbo.sys -> [2010/02/26 14:32:44 | 000,022,528 | ---- | M | MD5 = 3859C69A77793180548802DAC9F34A38] (Nokia)
(nmwcd) Nokia USB Phone Parent [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ccdcmb.sys -> [2010/02/26 14:32:44 | 000,018,176 | ---- | M | MD5 = C3963D85B721A7F80D8A55F4E2867A3A] (Nokia)
(klmouflt) Kaspersky Lab KLMOUFLT [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\klmouflt.sys -> [2009/11/02 20:27:24 | 000,019,472 | ---- | M | Unable to obtain MD5] (Kaspersky Lab)
(pccsmcfd) PCCS Mode Change Filter Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\pccsmcfd.sys -> [2008/08/26 10:26:12 | 000,018,816 | ---- | M | MD5 = FD2041E9BA03DB7764B2248F02475079] (Nokia)
(WinDriver6) WinDriver6 [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\windrvr6.sys -> [2008/07/03 10:59:54 | 000,193,696 | ---- | M | MD5 = 451F905BC7BFF9E1CFF2E7AE76196B2C] (Jungo)
(bcm4sbxp) Broadcom 440x 10/100 Integrated Controller XP Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\bcm4sbxp.sys -> [2003/06/30 18:11:52 | 000,043,136 | R--- | M | MD5 = B60F57B4D9CDBC663CC03EB8AF7EC34E] (Broadcom Corporation)
(OMCI) OMCI [Kernel | System | Running] -> C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS -> [2001/08/22 08:42:58 | 000,013,632 | ---- | M | MD5 = CEC7E2C6C1FA00C7AB2F5434F848AE51] (Dell Computer Corporation)
[Registry - Safe List]
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> %SystemRoot%\system32\blank.htm ->
< Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> ->
HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> ->
HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> ->
HKEY_USERS\S-1-5-19\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> ->
HKEY_USERS\S-1-5-20\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\] > -> ->
HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\: Main\\"Start Page" ->
http://search.babylon.com/?babsrc=HP_ss&mntrId=1cab1934000000000000000d565ba641&tlver=1.4.19.19&affID=17159 ->
HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\: SearchURL\\"provider" -> ->
HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\: URLSearchHooks\\"{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}" [HKLM] -> C:\Program Files\uTorrentBar\tbuTor.dll [uTorrentBar Toolbar] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\: "ProxyEnable" -> 0 ->
< FireFox Settings [Prefs.js] > -> C:\Documents and Settings\Owner\Application Data\Mozilla\FireFox\Profiles\q9rv5dbh.default\prefs.js ->
network.proxy.http -> "127.0.0.1" ->
network.proxy.http_port -> 50808 ->
network.proxy.type -> 0 ->
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
HKLM\software\mozilla\Firefox\extensions -> ->
HKLM\software\mozilla\Firefox\extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70} -> C:\PROGRAM FILES\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION\ [C:\PROGRAM FILES\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION\] -> [2010/10/26 20:25:50 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Mozilla Firefox 4.0\extensions -> ->
HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components -> C:\Program Files\Mozilla Firefox\components [C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS] -> [2011/04/14 18:33:33 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins -> C:\Program Files\Mozilla Firefox\plugins [C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS] -> [2011/04/02 20:03:24 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Thunderbird\Extensions -> ->
HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74} -> C:\PROGRAM FILES\NOKIA\NOKIA OVI SUITE\CONNECTORS\THUNDERBIRD CONNECTOR\THUNDERBIRDEXTENSION\ [C:\PROGRAM FILES\NOKIA\NOKIA OVI SUITE\CONNECTORS\THUNDERBIRD CONNECTOR\THUNDERBIRDEXTENSION\] -> [2010/10/26 20:25:52 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Thunderbird\Extensions\\{eea12ec4-729d-4703-bc37-106ce9879ce2} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\THBExt [C:\PROGRAM FILES\KASPERSKY LAB\KASPERSKY INTERNET SECURITY 2011\THBEXT] -> [2010/10/30 13:03:08 | 000,000,000 | ---D | M]
< FireFox Extensions [User Folders] > ->
-> C:\Documents and Settings\Owner\Application Data\Mozilla\Extensions -> [2010/07/27 14:18:06 | 000,000,000 | ---D | M]
-> C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\q9rv5dbh.default\extensions -> [2011/04/15 17:44:09 | 000,000,000 | ---D | M]
DownThemAll! -> C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\q9rv5dbh.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8} -> [2011/03/12 16:04:41 | 000,000,000 | ---D | M]
SearchPreview -> C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\q9rv5dbh.default\extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6} -> [2011/03/19 20:18:53 | 000,000,000 | ---D | M]
-> C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\q9rv5dbh.default\extensions\ALone-live@ya.ru -> [2011/04/15 17:44:09 | 000,000,000 | ---D | M]
< FireFox SearchPlugins [User Folders] > ->
< FireFox Extensions [Program Folders] > ->
-> C:\Program Files\Mozilla Firefox\extensions -> [2011/04/14 18:41:27 | 000,000,000 | ---D | M]
-> C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru -> [2010/10/30 13:16:29 | 000,000,000 | ---D | M]
No name found -> -> File not found
No name found -> C:\DOCUMENTS AND SETTINGS\OWNER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\Q9RV5DBH.DEFAULT\EXTENSIONS\{9AA46F4F-4DC7-4C06-97AF-5035170634FE}.XPI -> ()
No name found -> C:\DOCUMENTS AND SETTINGS\OWNER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\Q9RV5DBH.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI -> ()
Roomy Bookmarks Toolbar -> C:\DOCUMENTS AND SETTINGS\OWNER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\Q9RV5DBH.DEFAULT\EXTENSIONS\ALONE-LIVE@YA.RU -> [2011/04/15 17:44:09 | 000,000,000 | ---D | M]
No name found -> C:\DOCUMENTS AND SETTINGS\OWNER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\Q9RV5DBH.DEFAULT\EXTENSIONS\FIREBUG@SOFTWARE.JOEHEWITT.COM.XPI -> ()
Java Quick Starter -> C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF -> [2010/07/27 14:35:11 | 000,000,000 | ---D | M]
~[Filtered]~
Reset Hosts
127.0.0.1 localhost
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{2EECD738-5844-4a99-B4B6-146BF802613B} [HKLM] -> C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\bh\BabylonToolbar.dll [CescrtHlpr Object] -> [2010/11/07 23:45:26 | 000,225,720 | ---- | M | MD5 = 91BCFFE9095DFE033125ADD31EE7FFC1] (Babylon BHO)
{30F9B915-B755-4826-820B-08FBA6BD249D} [HKLM] -> C:\Program Files\ConduitEngine\ConduitEngine.dll [Conduit Engine] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll [IEVkbdBHO Class] -> [2010/07/01 21:35:08 | 000,068,280 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
{5C255C8A-E604-49b4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} [HKLM] -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype Plug-In] -> [2010/11/22 19:05:52 | 001,242,504 | ---- | M | MD5 = 590C4454A1D36F76DA1F636FAD139771] (Skype Technologies S.A.)
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} [HKLM] -> C:\Program Files\uTorrentBar\tbuTor.dll [uTorrentBar Toolbar] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
{E33CF602-D945-461A-83F0-819F76A199F8} [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [FilterBHO Class] -> [2010/07/01 21:35:14 | 000,191,160 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
"{30F9B915-B755-4826-820B-08FBA6BD249D}" [HKLM] -> C:\Program Files\ConduitEngine\ConduitEngine.dll [Conduit Engine] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
"{98889811-442D-49dd-99D7-DC866BE87DBC}" [HKLM] -> C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarTlbr.dll [Babylon Toolbar] -> [2010/11/07 23:45:28 | 000,184,760 | ---- | M | MD5 = CF158FAC1864EE97BFE3221285FEC23A] (Babylon Ltd.)
"{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}" [HKLM] -> C:\Program Files\uTorrentBar\tbuTor.dll [uTorrentBar Toolbar] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
< Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\] > -> HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\"{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}" [HKLM] -> C:\Program Files\uTorrentBar\tbuTor.dll [uTorrentBar Toolbar] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"AVP" -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe ["C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe"] -> [2010/10/30 15:08:41 | 000,352,976 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
"BabylonToolbar" -> C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarsrv.exe ["C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarsrv.exe" /md I] -> [2010/11/07 19:22:00 | 000,286,720 | ---- | M | MD5 = 000A83380536DF86EFE77D020D812F96] (Babylon Ltd.)
"IMJPMIG8.1" -> C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE ["C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32] -> [2004/08/03 22:32:00 | 000,208,952 | ---- | M | MD5 = 7BBE4CF421AECC7F0226EDD75F12079F] (Microsoft Corporation)
"NokiaMServer" -> C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe [C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup] -> [2010/07/20 11:45:24 | 001,531,904 | ---- | M | MD5 = ACC5596B15EB0351261A483DA06F3EB3] (Nokia)
"PHIME2002A" -> C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE [C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName] -> [2003/07/17 06:23:16 | 000,455,168 | ---- | M | MD5 = 024DC0F68DF5FD6AE9DD82DFBAF479D6] (Microsoft Corporation)
"PHIME2002ASync" -> C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE [C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC] -> [2003/07/17 06:23:16 | 000,455,168 | ---- | M | MD5 = 024DC0F68DF5FD6AE9DD82DFBAF479D6] (Microsoft Corporation)
< Administrator Startup Folder > -> C:\Documents and Settings\Administrator\Start Menu\Programs\Startup ->
< All Users Startup Folder > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup ->
< Default User Startup Folder > -> C:\Documents and Settings\Default User\Start Menu\Programs\Startup ->
< Owner Startup Folder > -> C:\Documents and Settings\Owner\Start Menu\Programs\Startup ->
< Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer ->
< Software Policy Settings [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003] > -> HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Policies\Microsoft\Internet Explorer ->
< CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"HonorAutoRunSetting" -> [1] -> File not found
\\"NoDriveTypeAutoRun" -> [323] -> File not found
\\"AllowLegacyWebView" -> [1] -> File not found
\\"AllowUnhashedWebView" -> [1] -> File not found
\\"NoDriveAutoRun" -> [67108863] -> File not found
\\"NoDrives" -> [0] -> File not found
< CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
< CurrentVersion Policy Settings [HKEY_USERS\.DEFAULT] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveTypeAutoRun" -> [323] -> File not found
\\"NoDriveAutoRun" -> [67108863] -> File not found
< CurrentVersion Policy Settings [HKEY_USERS\.DEFAULT] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-18] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveTypeAutoRun" -> [323] -> File not found
\\"NoDriveAutoRun" -> [67108863] -> File not found
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-18] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-19] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveTypeAutoRun" -> [145] -> File not found
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-20] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveTypeAutoRun" -> [145] -> File not found
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003] > -> HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveTypeAutoRun" -> [323] -> File not found
\\"NoDriveAutoRun" -> [67108863] -> File not found
\\"NoDrives" -> [0] -> File not found
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003] > -> HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{4248FE82-7FCB-46AC-B270-339F08212110}:{4248FE82-7FCB-46AC-B270-339F08212110} [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [Button: &Virtual Keyboard] -> [2010/07/01 21:35:14 | 000,191,160 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
{898EA8C8-E7FF-479B-8935-AEC46303B9E5}:{898EA8C8-E7FF-479B-8935-AEC46303B9E5} [HKLM] -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Button: Skype Plug-In] -> [2010/11/22 19:05:52 | 001,242,504 | ---- | M | MD5 = 590C4454A1D36F76DA1F636FAD139771] (Skype Technologies S.A.)
{898EA8C8-E7FF-479B-8935-AEC46303B9E5}:{898EA8C8-E7FF-479B-8935-AEC46303B9E5} [HKLM] -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Menu: Skype Plug-In] -> [2010/11/22 19:05:52 | 001,242,504 | ---- | M | MD5 = 590C4454A1D36F76DA1F636FAD139771] (Skype Technologies S.A.)
{CCF151D8-D089-449F-A5A4-D9909053F20F}:{CCF151D8-D089-449F-A5A4-D9909053F20F} [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [Button: URLs c&heck] -> [2010/07/01 21:35:14 | 000,191,160 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
< Internet Explorer Extensions [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\] > -> HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\Software\Microsoft\Internet Explorer\Extensions\ ->
CmdMapping\\"{4248FE82-7FCB-46AC-B270-339F08212110}" [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [VirtualKeyboardButtonHandler Class] -> [2010/07/01 21:35:14 | 000,191,160 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
CmdMapping\\"{898EA8C8-E7FF-479B-8935-AEC46303B9E5}" [HKLM] -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype Browser Helper] -> [2010/11/22 19:05:52 | 001,242,504 | ---- | M | MD5 = 590C4454A1D36F76DA1F636FAD139771] (Skype Technologies S.A.)
CmdMapping\\"{CCF151D8-D089-449F-A5A4-D9909053F20F}" [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [FilterButtonHandler Class] -> [2010/07/01 21:35:14 | 000,191,160 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
< Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ ->
< Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" ->
http://< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. ->
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\] > -> HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\] > -> HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] ->
http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] ->
{C3F79A2B-B9B4-4A66-B012-3EE46475B072} [HKLM] ->
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab [MessengerStatsClient Class] ->
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [HKLM] ->
http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] ->
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] ->
http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] ->
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} [HKLM] ->
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab [Reg Error: Key error.] ->
{F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} [HKLM] ->
http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab [Minesweeper Flags Class] ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ ->
DhcpNameServer -> 192.168.0.1 ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{54948E67-3CD4-4064-870A-277FDA57788E}\\DhcpNameServer -> 192.168.0.1 (Broadcom 440x 10/100 Integrated Controller) ->
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
Explorer.exe -> C:\WINDOWS\explorer.exe -> [2004/08/04 00:56:50 | 001,032,192 | ---- | M | MD5 = A0732187050030AE399B241436565E64] (Microsoft Corporation)
*MultiFile Done* -> ->
< Winlogon\Notify settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ ->
igfxcui -> C:\WINDOWS\System32\igfxsrvc.dll -> [2003/04/07 00:06:48 | 000,315,392 | ---- | M | MD5 = 6474AF152CD6025F781D7A5F2B8B6084] (Intel Corporation)
klogon -> C:\WINDOWS\system32\klogon.dll -> [2010/07/01 21:35:12 | 000,228,024 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
< Domain Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List ->
< Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List ->
"E:\Warcraft III\war3.exe" -> [E:\Warcraft III\war3.exe:*:Enabled:Warcraft III] -> File not found
< SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot ->
< CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
"AutoRun" -> 1 ->
"DisplayName" -> CD-ROM Driver ->
"ImagePath" -> [System32\DRIVERS\cdrom.sys] -> File not found
< Drives with AutoRun files > -> ->
C:\AUTOEXEC.BAT [] -> C:\AUTOEXEC.BAT [ NTFS ] -> [2010/07/27 08:22:15 | 000,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
< MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 ->
< Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
\shell\[command]\command ->
comfile [open] -> "%1" %* ->
exefile [open] -> "%1" %* ->
< File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ ->
.com [@ = ComFile] -> "%1" %* ->
.exe [@ = exefile] -> "%1" %* ->
[Registry - Additional Scans - Safe List]
< Drivers32 [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32 ->
"msacm.iac2" -> C:\WINDOWS\System32\iac25_32.ax [iac25_32.ax] -> [2004/08/04 00:56:58 | 000,199,680 | ---- | M | MD5 = 6580E3EC7593C0621A91387AAB419524] (Intel Corporation)
"msacm.l3acm" -> C:\WINDOWS\system32\l3codeca.acm [C:\WINDOWS\System32\l3codeca.acm] -> [2010/01/30 00:43:39 | 000,307,260 | ---- | M | MD5 = F3946B534CC197CBFFD9A2ECFD1F556F] (Fraunhofer Institut Integrierte Schaltungen IIS)
"msacm.sl_anet" -> C:\WINDOWS\System32\sl_anet.acm [sl_anet.acm] -> [2004/08/04 00:56:30 | 000,086,016 | ---- | M | MD5 = 059FCD11A8F067650ABF6426E1CB43D3] (Sipro Lab Telecom Inc.)
"msacm.trspch" -> C:\WINDOWS\System32\tssoft32.acm [tssoft32.acm] -> [2003/07/17 06:48:37 | 000,008,192 | ---- | M | MD5 = E8CD0D7E169ECCE2D4FD829DAAB786ED] (DSP GROUP, INC.)
"vidc.cvid" -> C:\WINDOWS\System32\iccvid.dll [iccvid.dll] -> [2004/08/04 00:56:44 | 000,080,384 | ---- | M | MD5 = F263E68AF3B8ACE47DDB70F075B20782] (Radius Inc.)
"vidc.ffds" -> C:\Program Files\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll [C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll] -> [2009/08/30 22:13:30 | 000,085,504 | ---- | M | MD5 = 9DA0C6D1B8344F872108F621B56194FF] ()
"vidc.iv31" -> C:\WINDOWS\System32\ir32_32.dll [ir32_32.dll] -> [2003/07/17 06:30:49 | 000,199,168 | ---- | M | MD5 = 43ECA1576906BA76FB3E329A338A3CAE] ()
"vidc.iv32" -> C:\WINDOWS\System32\ir32_32.dll [ir32_32.dll] -> [2003/07/17 06:30:49 | 000,199,168 | ---- | M | MD5 = 43ECA1576906BA76FB3E329A338A3CAE] ()
"vidc.iv41" -> C:\WINDOWS\System32\ir41_32.ax [ir41_32.ax] -> [2004/08/04 00:56:58 | 000,848,384 | ---- | M | MD5 = B106530542C5920EDB040A288BD300AB] (Intel Corporation)
"vidc.iv50" -> C:\WINDOWS\System32\ir50_32.dll [ir50_32.dll] -> [2004/08/04 00:56:44 | 000,755,200 | ---- | M | MD5 = 603CC77B5E5F7977DE2ABFBA50CD6854] (Intel Corporation)
< Ext (PreApproved) - [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\ ->
{02BCC737-B171-4746-94C9-0D8A0B2C0089} [HKLM] -> C:\Program Files\Microsoft Office\Office12\IEAWSDC.DLL [Microsoft Office Template and Media Control] -> [2006/10/26 20:12:52 | 000,173,328 | ---- | M | MD5 = CC76C38D1995A716AC072D470D4A1345] ()
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} [HKLM] -> C:\Program Files\QuickTime\QTPlugin.ocx [QuickTime Object] -> [2010/03/17 23:28:24 | 000,800,048 | ---- | M | MD5 = AD99EC8908185A02307CF071EF7BD9CF] (Apple Inc.)
{31261F21-2B16-45EE-BEAB-07C4CFA18B65} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{4063BE15-3B08-470D-A0D5-B37161CFFD69} [HKLM] -> C:\Program Files\QuickTime\QTPlugin.ocx [QuickTime Object] -> [2010/03/17 23:28:24 | 000,800,048 | ---- | M | MD5 = AD99EC8908185A02307CF071EF7BD9CF] (Apple Inc.)
{5852F5ED-8BF4-11D4-A245-0080C6F74284} [HKLM] -> C:\Program Files\Java\jre6\bin\wsdetect.dll [isInstalled Class] -> [2010/09/15 04:50:40 | 000,108,320 | ---- | M | MD5 = 54A3002507634139763983FBE4DBFE9A] (Sun Microsystems, Inc.)
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{7DDCF809-C211-4757-AB3E-6387D9DF530B} [HKLM] -> C:\Program Files\uTorrentBar\tbuTor.dll [uTorrentBar API Server] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
{812B35A9-45A7-4292-BF8C-94A156CE7085} [HKLM] -> C:\Program Files\ConduitEngine\ConduitEngine.dll [Conduit Engine API Server] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
{8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> C:\Program Files\Java\jre6\bin\npjpi160_22.dll [Java Plug-in 1.6.0_22] -> [2010/09/15 04:50:46 | 000,141,088 | ---- | M | MD5 = AFB7EFCDE5277F6514EF0E9FF8D8D862] (Sun Microsystems, Inc.)
{9F9C4924-C3F3-4459-A396-9E9E0D8B83D1} [HKLM] -> Reg Error: Key error. [SharePoint OpenDocuments Class] -> File not found
{BDEADEF2-C265-11D0-BCED-00A0C90AB50F} [HKLM] -> Reg Error: Key error. [SharePoint OpenDocuments Class] -> File not found
{BDEADEF4-C265-11D0-BCED-00A0C90AB50F} [HKLM] -> Reg Error: Key error. [SharePoint Stssync Handler] -> File not found
{C2828995-4A83-4100-A212-3024BA117356} [HKLM] -> C:\Program Files\Windows Live SkyDrive\Microsoft.Live.Folders.RichUpload.3.dll [Windows Live Upload Tool] -> [2008/10/29 11:46:56 | 000,245,112 | ---- | M | MD5 = DA204A2BAB5780A0DF37EB5BE58FCA57] (Microsoft Corporation)
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [HKLM] -> C:\Program Files\Java\jre6\bin\npjpi160_22.dll [Java Plug-in 1.6.0_22] -> [2010/09/15 04:50:46 | 000,141,088 | ---- | M | MD5 = AFB7EFCDE5277F6514EF0E9FF8D8D862] (Sun Microsystems, Inc.)
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB} [HKLM] -> C:\Program Files\Java\jre6\bin\npjpi160_22.dll [Java Plug-in 1.6.0_22] -> [2010/09/15 04:50:46 | 000,141,088 | ---- | M | MD5 = AFB7EFCDE5277F6514EF0E9FF8D8D862] (Sun Microsystems, Inc.)
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC} [HKLM] -> C:\Program Files\Java\jre6\bin\npjpi160_22.dll [Java Plug-in 1.6.0_22] -> [2010/09/15 04:50:46 | 000,141,088 | ---- | M | MD5 = AFB7EFCDE5277F6514EF0E9FF8D8D862] (Sun Microsystems, Inc.)
{CAFEEFAC-DEC7-0000-0000-ABCDEFFEDCBA} [HKLM] -> C:\WINDOWS\system32\deployJava1.dll [Deployment Toolkit] -> [2010/09/15 04:50:37 | 000,472,808 | ---- | M | MD5 = 27CADAE7E69FEEE773EA55108A8F9F47] (Sun Microsystems, Inc.)
{CAFEEFAC-DEC7-0000-0001-ABCDEFFEDCBA} [HKLM] -> C:\WINDOWS\system32\deployJava1.dll [Deployment Toolkit] -> [2010/09/15 04:50:37 | 000,472,808 | ---- | M | MD5 = 27CADAE7E69FEEE773EA55108A8F9F47] (Sun Microsystems, Inc.)
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBC} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{CB927D12-4FF7-4A9E-A169-56E4B8A75598} [HKLM] -> C:\Program Files\QuickTime\QTPlugin.ocx [Behavior Object] -> [2010/03/17 23:28:24 | 000,800,048 | ---- | M | MD5 = AD99EC8908185A02307CF071EF7BD9CF] (Apple Inc.)
{D719897A-B07A-4C0C-AEA9-9B663A28DFCB} [HKLM] -> C:\Program Files\iTunes\ITDetector.ocx [iTunesDetector Class] -> [2010/04/28 15:06:20 | 000,111,912 | ---- | M | MD5 = 13984DFEF5DE6E93B19B8BA31D6639C3] (Apple Inc.)
{E7339A62-0E31-4A5E-BA3D-F2FEDFBF8BE5} [HKLM] -> C:\Program Files\Common Files\Microsoft Shared\Portal\PortalConnectCore.dll [PersonalSite Class] -> [2006/10/26 21:30:44 | 000,482,088 | ---- | M | MD5 = 799A0E1244038B3FC2E1833D74FFA564] ()
< Ext (Settings) - [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\ ->
{2EECD738-5844-4A99-B4B6-146BF802613B} [HKLM] -> C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\bh\BabylonToolbar.dll [CescrtHlpr Object] -> [2010/11/07 23:45:26 | 000,225,720 | ---- | M | MD5 = 91BCFFE9095DFE033125ADD31EE7FFC1] (Babylon BHO)
{898EA8C8-E7FF-479B-8935-AEC46303B9E5} [HKLM] -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype Browser Helper] -> [2010/11/22 19:05:52 | 001,242,504 | ---- | M | MD5 = 590C4454A1D36F76DA1F636FAD139771] (Skype Technologies S.A.)
{98889811-442D-49DD-99D7-DC866BE87DBC} [HKLM] -> C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarTlbr.dll [Babylon Toolbar] -> [2010/11/07 23:45:28 | 000,184,760 | ---- | M | MD5 = CF158FAC1864EE97BFE3221285FEC23A] (Babylon Ltd.)
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} [HKLM] -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype Plug-In] -> [2010/11/22 19:05:52 | 001,242,504 | ---- | M | MD5 = 590C4454A1D36F76DA1F636FAD139771] (Skype Technologies S.A.)
{BDD307C3-7BC0-4542-9F8F-A9611FE6C1BF} [HKLM] -> C:\WINDOWS\system32\proctexe.ocx [Additive Surface] -> [2004/08/03 23:00:26 | 000,081,920 | ---- | M | MD5 = DAF4D5399F78812D3D79F0C9EAB1AC6B] (Intel Corporation)
{FB5F1910-F110-11D2-BB9E-00C04F795683} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< Ext (Stats) - [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\ ->
{2670000A-7350-4F3C-8081-5663EE0C6C49} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{2EECD738-5844-4A99-B4B6-146BF802613B} [HKLM] -> C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\bh\BabylonToolbar.dll [CescrtHlpr Object] -> [2010/11/07 23:45:26 | 000,225,720 | ---- | M | MD5 = 91BCFFE9095DFE033125ADD31EE7FFC1] (Babylon BHO)
{30F9B915-B755-4826-820B-08FBA6BD249D} [HKLM] -> C:\Program Files\ConduitEngine\ConduitEngine.dll [Conduit Engine] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
{4248FE82-7FCB-46AC-B270-339F08212110} [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [VirtualKeyboardButtonHandler Class] -> [2010/07/01 21:35:14 | 000,191,160 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll [IEVkbdBHO Class] -> [2010/07/01 21:35:08 | 000,068,280 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
{5C255C8A-E604-49B4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{898EA8C8-E7FF-479B-8935-AEC46303B9E5} [HKLM] -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype Browser Helper] -> [2010/11/22 19:05:52 | 001,242,504 | ---- | M | MD5 = 590C4454A1D36F76DA1F636FAD139771] (Skype Technologies S.A.)
{92780B25-18CC-41C8-B9BE-3C9C571A8263} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{98889811-442D-49DD-99D7-DC866BE87DBC} [HKLM] -> C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarTlbr.dll [Babylon Toolbar] -> [2010/11/07 23:45:28 | 000,184,760 | ---- | M | MD5 = CF158FAC1864EE97BFE3221285FEC23A] (Babylon Ltd.)
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} [HKLM] -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype Plug-In] -> [2010/11/22 19:05:52 | 001,242,504 | ---- | M | MD5 = 590C4454A1D36F76DA1F636FAD139771] (Skype Technologies S.A.)
{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} [HKLM] -> C:\Program Files\uTorrentBar\tbuTor.dll [uTorrentBar Toolbar] -> [2010/12/09 12:51:30 | 003,911,776 | ---- | M | MD5 = D9A0CE26ADA5BD15B1B03A752DDF14A6] (Conduit Ltd.)
{CCF151D8-D089-449F-A5A4-D9909053F20F} [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [FilterButtonHandler Class] -> [2010/07/01 21:35:14 | 000,191,160 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
{D27CDB6E-AE6D-11CF-96B8-444553540000} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{E33CF602-D945-461A-83F0-819F76A199F8} [HKLM] -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll [FilterBHO Class] -> [2010/07/01 21:35:14 | 000,191,160 | ---- | M | Unable to obtain MD5] (Kaspersky Lab ZAO)
{FB5F1910-F110-11D2-BB9E-00C04F795683} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< Internet Explorer Bars [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{32683183-48a0-441b-a342-7c2a440a9478} [HKEY_LOCAL_MACHINE] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< Internet Explorer Bars [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{32683183-48a0-441b-a342-7c2a440a9478} [HKEY_LOCAL_MACHINE] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< Internet Explorer Bars [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{32683183-48a0-441b-a342-7c2a440a9478} [HKEY_LOCAL_MACHINE] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< Internet Explorer Bars [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{32683183-48a0-441b-a342-7c2a440a9478} [HKEY_LOCAL_MACHINE] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< Internet Explorer Bars [HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\] > -> HKEY_USERS\S-1-5-21-1801674531-682003330-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{32683183-48a0-441b-a342-7c2a440a9478} [HKEY_LOCAL_MACHINE] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost > -> ->
*netsvcs* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs ->
6to4 -> -> File not found
AppMgmt -> -> File not found
Ias -> -> File not found
Iprip -> -> File not found
Irmon -> -> File not found
NWCWorkstation -> -> File not found
Nwsapagent -> -> File not found
WmdmPmSp -> -> File not found
*MultiFile Done* -> ->
< SafeBoot-Minimal Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ ->
{36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers
{4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive
{4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive
{4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller
{4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc
{4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard
{4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse
{4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters
{4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter
{4D36E97D-E325-11CE-BFC1-08002BE10318} -> System
{4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive
{533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy
{71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices
AppMgmt -> -> File not found
Base -> Driver Group
Boot Bus Extender -> Driver Group
Boot file system -> Driver Group
File system -> Driver Group
Filter -> Driver Group
PCI Configuration -> Driver Group
PNP Filter -> Driver Group
Primary disk -> Driver Group
SCSI Class -> Driver Group
sermouse.sys -> Driver
System Bus Extender -> Driver Group
vds -> Service
vga.sys -> Driver
< SafeBoot-Network Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ ->
{36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers
{4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive
{4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive
{4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller
{4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc
{4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard
{4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse
{4D36E972-E325-11CE-BFC1-08002BE10318} -> Net
{4D36E973-E325-11CE-BFC1-08002BE10318} -> NetClient
{4D36E974-E325-11CE-BFC1-08002BE10318} -> NetService
{4D36E975-E325-11CE-BFC1-08002BE10318} -> NetTrans
{4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters
{4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter
{4D36E97D-E325-11CE-BFC1-08002BE10318} -> System
{4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive
{71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices
AppMgmt -> -> File not found
Base -> Driver Group
Boot Bus Extender -> Driver Group
Boot file system -> Driver Group
File system -> Driver Group
Filter -> Driver Group
NDIS Wrapper -> Driver Group
NetBIOSGroup -> Driver Group
NetDDEGroup -> Driver Group
Network -> Driver Group
NetworkProvider -> Driver Group
PCI Configuration -> Driver Group
PNP Filter -> Driver Group
PNP_TDI -> Driver Group
Primary disk -> Driver Group
SCSI Class -> Driver Group
sermouse.sys -> Driver
Streams Drivers -> Driver Group
System Bus Extender -> Driver Group
TDI -> Driver Group
vga.sys -> Driver