this is the Quick Scan Report
OTL logfile created on: 07-04-2011 19:04:42 - Run 2
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Greg\Os meus documentos\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000816 | Country: Portugal | Language: PTG | Date Format: dd-MM-yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 72,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 84,00% Paging File free
Paging file location(s): c:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programas
Drive C: | 931,50 Gb Total Space | 781,31 Gb Free Space | 83,88% Space Free | Partition Type: NTFS
Computer Name: DEEPBLUE12 | User Name: Greg | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011-04-07 19:04:27 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Greg\Os meus documentos\Downloads\OTL(1).exe
PRC - [2011-03-21 23:10:00 | 001,230,704 | ---- | M] () -- C:\Programas\DivX\DivX Update\DivXUpdate.exe
PRC - [2011-03-18 19:53:06 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Programas\Mozilla Firefox\firefox.exe
PRC - [2011-01-07 01:22:54 | 002,747,744 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programas\AVG\AVG10\avgtray.exe
PRC - [2011-01-07 01:22:44 | 001,084,256 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programas\AVG\AVG10\avgnsx.exe
PRC - [2011-01-06 15:23:20 | 000,737,872 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programas\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2011-01-06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programas\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2010-12-05 16:26:40 | 000,654,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programas\AVG\AVG10\avgrsx.exe
PRC - [2010-12-05 16:26:12 | 000,650,592 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programas\AVG\AVG10\avgchsvx.exe
PRC - [2010-10-29 15:49:28 | 000,249,064 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programas\Ficheiros comuns\Java\Java Update\jusched.exe
PRC - [2010-10-22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programas\AVG\AVG10\avgwdsvc.exe
PRC - [2010-10-22 04:56:58 | 000,845,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Programas\AVG\AVG10\avgcsrvx.exe
PRC - [2010-09-02 06:38:58 | 000,062,776 | ---- | M] () -- C:\Programas\DivX\DivX Plus Web Player\DDMService.exe
PRC - [2010-06-23 13:52:56 | 002,435,592 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\system32\ZoneLabs\vsmon.exe
PRC - [2010-06-23 13:51:30 | 001,043,968 | ---- | M] (Check Point Software Technologies LTD) -- C:\Programas\Zone Labs\ZoneAlarm\zlclient.exe
PRC - [2009-04-26 13:15:18 | 000,039,936 | ---- | M] (KSE - Korndörfer Software Engineering) -- C:\Programas\nHancer\nHancerService.exe
PRC - [2008-06-13 12:19:46 | 000,159,744 | ---- | M] (Razer USA Ltd.) -- C:\Programas\n52te\n52teHid.exe
PRC - [2008-06-03 02:06:34 | 005,964,800 | ---- | M] () -- C:\Program Files\ASUS\Six Engine\SixEngine.exe
PRC - [2008-05-21 14:30:26 | 001,423,360 | ---- | M] () -- C:\Program Files\ASUS\Ai Suite\AiNap\AiNap.exe
PRC - [2008-04-24 18:57:12 | 000,110,592 | ---- | M] () -- C:\Programas\n52te\n52teTra.exe
PRC - [2008-04-14 18:09:47 | 001,035,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007-11-16 16:12:44 | 001,209,856 | ---- | M] () -- C:\Programas\ASUS\AI Direct Link\AsShare.exe
PRC - [2007-06-05 14:20:32 | 000,177,704 | ---- | M] () -- C:\WINDOWS\system32\PSIService.exe
PRC - [2003-06-20 00:25:00 | 000,322,120 | ---- | M] (Microsoft Corporation) -- C:\Programas\Ficheiros comuns\Microsoft Shared\VS7DEBUG\MDM.EXE
PRC - [2001-10-25 02:02:00 | 000,090,112 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Programas\Ficheiros comuns\EPSON\EBAPI\SAgent2.exe
========== Modules (SafeList) ==========
MOD - [2011-04-07 19:04:27 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Greg\Os meus documentos\Downloads\OTL(1).exe
MOD - [2010-08-23 18:12:34 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- -- (AVG Security Toolbar Service)
SRV - [2011-01-06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Programas\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2010-10-22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Programas\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010-08-13 09:13:32 | 000,066,112 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Programas\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus(R)
SRV - [2010-06-23 13:52:56 | 002,435,592 | ---- | M] (Check Point Software Technologies LTD) [Auto | Running] -- C:\WINDOWS\System32\ZoneLabs\vsmon.exe -- (vsmon)
SRV - [2009-04-26 13:15:18 | 000,039,936 | ---- | M] (KSE - Korndörfer Software Engineering) [Auto | Running] -- C:\Programas\nHancer\nHancerService.exe -- (nHancer)
SRV - [2007-06-05 14:20:32 | 000,177,704 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\PSIService.exe -- (ProtexisLicensing)
SRV - [2003-07-28 13:28:22 | 000,089,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programas\Ficheiros comuns\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - [2003-06-20 00:25:00 | 000,322,120 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Programas\Ficheiros comuns\Microsoft Shared\VS7DEBUG\MDM.EXE -- (MDM)
SRV - [2001-10-25 02:02:00 | 000,090,112 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Programas\Ficheiros comuns\EPSON\EBAPI\SAgent2.exe -- (EPSONStatusAgent2)
========== Driver Services (SafeList) ==========
DRV - [2011-04-05 18:40:08 | 000,137,544 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PnkBstrK.sys -- (PnkBstrK)
DRV - [2010-12-08 04:12:38 | 000,251,728 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2010-11-12 13:19:38 | 000,299,984 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2010-09-22 21:19:02 | 000,032,768 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\taphss.sys -- (taphss)
DRV - [2010-09-13 15:27:24 | 000,025,680 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2010-09-07 03:48:56 | 000,034,384 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2010-09-07 03:48:50 | 000,026,064 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2010-08-03 15:23:36 | 000,026,192 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2010-08-03 15:23:34 | 000,123,472 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2010-08-03 15:23:32 | 000,030,288 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2010-05-13 10:02:32 | 000,532,224 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\WINDOWS\system32\vsdatant.sys -- (vsdatant)
DRV - [2009-12-30 11:20:54 | 000,027,064 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\revoflt.sys -- (Revoflt)
DRV - [2009-04-03 11:32:06 | 000,141,246 | ---- | M] (NVIDIA Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\NVCAP.SYS -- (nvcap) nVidia WDM Video Capture (universal)
DRV - [2009-04-03 11:32:06 | 000,016,176 | ---- | M] (NVIDIA Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\NVXBAR.SYS -- (NVXBAR)
DRV - [2008-09-23 19:15:00 | 000,038,400 | R--- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1e51x86.sys -- (L1e)
DRV - [2008-07-22 10:01:34 | 000,151,592 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\mv61xx.sys -- (mv61xx)
DRV - [2008-07-03 11:03:00 | 004,745,216 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-12-17 11:14:06 | 000,012,400 | R--- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO)
DRV - [2007-09-27 15:46:12 | 000,048,896 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\JmtFltr.sys -- (JmtFltr)
DRV - [2007-09-19 18:01:06 | 000,012,672 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vhidmini.sys -- (vhidmini)
DRV - [2007-03-16 11:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2006-12-04 13:10:34 | 000,489,472 | R--- | M] (Arcor) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ARWUSB.sys -- (WN4501HLFIR(Arcor)) Arcor-Easy Stick A 50 WLAN(Arcor)
DRV - [2005-08-30 18:59:00 | 000,094,000 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_mdm.sys -- (ss_mdm)
DRV - [2005-08-30 18:58:56 | 000,008,304 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_mdfl.sys -- (ss_mdfl)
DRV - [2005-08-30 18:57:18 | 000,058,320 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bus.sys -- (ss_bus) SAMSUNG Mobile USB Device 1.0 driver (WDM)
DRV - [2004-12-23 05:47:10 | 000,027,392 | R--- | M] (Ulead Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ULCDRHlp.sys -- (ULCDRHlp)
DRV - [2004-08-13 12:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2001-09-10 00:00:00 | 000,017,976 | ---- | M] (SEIKO EPSON CORPORATION) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\epusbsto.sys -- (EPUSBSTOR)
DRV - [2001-08-17 21:04:46 | 000,223,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\camdrv21.sys -- (camvid20)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://search.conduit.com/?SearchSource=10&ctid=CT1561552
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..extensions.enabledItems:
piclens@cooliris.com:1.12.0.36605
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {75CEEE46-9B64-46f8-94BF-54012DE155F0}:0.4.6
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:10.0.0.1167
FF - prefs.js..extensions.enabledItems: {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1178
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems:
djziggy@gmail.com:1.2.9
FF - HKLM\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Programas\DivX\DivX Plus Web Player\firefox\html5video [2010-09-12 01:17:59 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Programas\DivX\DivX Plus Web Player\firefox\wpa [2010-09-12 01:18:00 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Programas\AVG\AVG10\Firefox\ [2011-04-07 03:28:21 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\avg@igeared: C:\Programas\AVG\AVG10\Toolbar\Firefox\avg@igeared
FF - HKLM\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Programas\AVG\AVG10\Firefox4\ [2011-04-07 03:28:21 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Programas\Mozilla Firefox\components [2011-03-23 19:34:15 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Programas\Mozilla Firefox\plugins [2011-04-07 01:02:24 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0b7\extensions\\Components: C:\Programas\Mozilla Firefox 4.0 Beta 7\components [2010-12-10 14:12:02 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0b7\extensions\\Plugins: C:\Programas\Mozilla Firefox 4.0 Beta 7\plugins
[2011-04-06 11:48:35 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Greg\Application Data\mozilla\Extensions
[2011-04-06 11:48:35 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Greg\Application Data\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011-04-07 02:29:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Greg\Application Data\mozilla\Firefox\Profiles\0nlvzg9x.default\extensions
[2010-04-28 07:08:07 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Greg\Application Data\mozilla\Firefox\Profiles\0nlvzg9x.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-12-10 14:12:19 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Greg\Application Data\mozilla\Firefox\Profiles\0nlvzg9x.default\extensions\nostmp
[2011-03-25 23:10:07 | 000,000,000 | ---D | M] (Cooliris) -- C:\Documents and Settings\Greg\Application Data\mozilla\Firefox\Profiles\0nlvzg9x.default\extensions\piclens@cooliris.com
[2011-04-06 18:14:45 | 000,000,000 | ---D | M] (No name found) -- C:\Programas\Mozilla Firefox\extensions
[2010-05-02 12:00:30 | 000,000,000 | ---D | M] (Java Console) -- C:\Programas\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010-07-29 12:42:50 | 000,000,000 | ---D | M] (Java Console) -- C:\Programas\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010-10-21 07:54:43 | 000,000,000 | ---D | M] (Java Console) -- C:\Programas\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011-03-12 02:08:13 | 000,000,000 | ---D | M] (Java Console) -- C:\Programas\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011-04-06 18:14:45 | 000,000,000 | ---D | M] (afurladvisor) -- C:\Programas\Mozilla Firefox\extensions\afurladvisor@anchorfree.com
File not found (No name found) --
() (No name found) -- C:\DOCUMENTS AND SETTINGS\GREG\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\0NLVZG9X.DEFAULT\EXTENSIONS\{75CEEE46-9B64-46F8-94BF-54012DE155F0}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\GREG\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\0NLVZG9X.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
[2011-04-07 03:28:21 | 000,000,000 | ---D | M] (AVG Safe Search) -- C:\PROGRAMAS\AVG\AVG10\FIREFOX4
[2009-06-26 11:32:55 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAMAS\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011-03-18 19:53:24 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Programas\Mozilla Firefox\components\browsercomps.dll
[2011-02-02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programas\Mozilla Firefox\plugins\npdeployJava1.dll
[2010-01-01 10:00:00 | 000,002,252 | ---- | M] () -- C:\Programas\Mozilla Firefox\searchplugins\bing.xml
O1 HOSTS File: ([2011-04-07 03:02:37 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programas\Ficheiros comuns\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Programas\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programas\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programas\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Programas\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programas\Ficheiros comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programas\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programas\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll (Google Inc.)
O2 - BHO: (no name) - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - C:\Programas\PicLensIE\cooliris.dll (Cooliris Inc.)
O4 - HKLM..\Run: [Adobe ARM] C:\Programas\Ficheiros comuns\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Programas\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Ai Nap] C:\Program Files\ASUS\Ai Suite\AiNap\AiNap.exe ()
O4 - HKLM..\Run: [AVG_TRAY] C:\Programas\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Cpu Level Up help] C:\Program Files\ASUS\Ai Suite\CpuLevelUpHelp.exe ()
O4 - HKLM..\Run: [DivX Download Manager] C:\Programas\DivX\DivX Plus Web Player\DDmService.exe ()
O4 - HKLM..\Run: [DivXUpdate] C:\Programas\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Jomantha] C:\Programas\n52te\n52teHid.exe (Razer USA Ltd.)
O4 - HKLM..\Run: [Launch As Cmd Runner] C:\Programas\ASUS\AI Direct Link\AsCmd.exe ()
O4 - HKLM..\Run: [Launch Direct Link] C:\Programas\ASUS\AI Direct Link\AsShare.exe ()
O4 - HKLM..\Run: [QFan Help] C:\Program Files\ASUS\Ai Suite\QFan3\QFanHelp.exe ()
O4 - HKLM..\Run: [Six Engine] C:\Program Files\ASUS\Six Engine\SixEngine.exe ()
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Programas\Ficheiros comuns\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [ZoneAlarm Client] C:\Programas\Zone Labs\ZoneAlarm\zlclient.exe (Check Point Software Technologies LTD)
O4 - Startup: C:\Documents and Settings\All Users\Menu Iniciar\Programas\Arranque\EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.EXE (SEIKO EPSON CORPORATION)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: Launch Cooliris - {3437D640-C91A-458f-89F5-B9095EA4C28B} - C:\Programas\PicLensIE\cooliris.dll (Cooliris Inc.)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programas\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programas\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programas\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1244304484828 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1244306135750 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (get_atlcom Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programas\Ficheiros comuns\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programas\Ficheiros comuns\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programas\Ficheiros comuns\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programas\Ficheiros comuns\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programas\Ficheiros comuns\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programas\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programas\Ficheiros comuns\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programas\Ficheiros comuns\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programas\Ficheiros comuns\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Programas\Ficheiros comuns\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Programas\Ficheiros comuns\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programas\Ficheiros comuns\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programas\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Programas\Ficheiros comuns\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (A minha home page actual) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Greg\Definições locais\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Greg\Definições locais\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-06-06 17:48:32 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Programas\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Programas\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011-04-07 19:01:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Ambiente de trabalho\PROBLEM
[2011-04-07 18:53:09 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011-04-07 18:51:42 | 000,000,000 | ---D | C] -- C:\_OTL
[2011-04-07 03:28:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Iniciar\Programas\AVG 2011
[2011-04-07 02:56:30 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011-04-07 02:53:18 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2011-04-07 02:53:18 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2011-04-07 02:53:18 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2011-04-07 02:53:18 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2011-04-07 02:53:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011-04-07 02:22:27 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011-04-07 01:02:12 | 000,000,000 | ---D | C] -- C:\Programas\Ficheiros comuns\Adobe
[2011-04-06 21:13:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Application Data\Malwarebytes
[2011-04-06 21:13:33 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011-04-06 21:13:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Iniciar\Programas\Malwarebytes' Anti-Malware
[2011-04-06 21:13:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011-04-06 21:13:29 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011-04-06 21:13:29 | 000,000,000 | ---D | C] -- C:\Programas\Malwarebytes' Anti-Malware
[2011-04-06 19:42:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Definições locais\Application Data\Conduit
[2011-04-06 19:42:36 | 000,000,000 | ---D | C] -- C:\Programas\Conduit
[2011-04-06 19:42:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Definições locais\Application Data\HotSpot_International
[2011-04-06 19:30:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Application Data\CheeseSoft
[2011-04-06 19:30:13 | 000,000,000 | ---D | C] -- C:\FU_Backup
[2011-04-06 19:30:08 | 000,000,000 | ---D | C] -- C:\Programas\FinalUninstaller
[2011-04-06 17:24:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Definições locais\Application Data\Adobe
[2011-04-06 17:24:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\WindowsPowerShell
[2011-04-06 17:24:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\winrm
[2011-04-06 17:23:57 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$968930Uinstall_KB968930$
[2011-04-06 17:22:59 | 000,000,000 | ---D | C] -- C:\Programas\Windows Desktop Search
[2011-04-06 17:22:59 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\GroupPolicy
[2011-04-06 16:59:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2011-04-06 16:59:38 | 000,000,000 | ---D | C] -- C:\Programas\MSBuild
[2011-04-06 16:59:29 | 000,000,000 | ---D | C] -- C:\Programas\Reference Assemblies
[2011-04-06 14:23:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011-04-06 14:14:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Definições locais\Application Data\VS Revo Group
[2011-04-06 14:14:35 | 000,027,064 | ---- | C] (VS Revo Group) -- C:\WINDOWS\System32\drivers\revoflt.sys
[2011-04-06 14:14:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Iniciar\Programas\Revo Uninstaller Pro
[2011-04-06 14:14:34 | 000,000,000 | ---D | C] -- C:\Programas\VS Revo Group
[2011-04-06 12:51:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Ambiente de trabalho\OpenOffice.org 3.3 (en-US) Installation Files
[2011-04-06 11:48:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Definições locais\Application Data\Thunderbird
[2011-04-06 11:48:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Application Data\Thunderbird
[2011-03-30 02:14:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Iniciar\Programas\7-Zip
[2011-03-24 01:36:40 | 000,000,000 | ---D | C] -- C:\ConvertTemp
[2011-03-24 01:36:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Os meus documentos\Samsung PC Studio 3
[2011-03-24 01:33:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Application Data\SAMSUNG
[2011-03-24 01:28:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Iniciar\Programas\Samsung PC Studio
[2011-03-24 01:28:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg\Os meus documentos\Samsung PC Studio
[2011-03-24 01:08:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Samsung PC Studio Codecs
[2011-03-24 01:06:46 | 000,094,000 | ---- | C] (MCCI) -- C:\WINDOWS\System32\drivers\ss_mdm.sys
[2011-03-24 01:06:46 | 000,058,320 | ---- | C] (MCCI) -- C:\WINDOWS\System32\drivers\ss_bus.sys
[2011-03-24 01:06:46 | 000,008,304 | ---- | C] (MCCI) -- C:\WINDOWS\System32\drivers\ss_mdfl.sys
[2011-03-24 01:06:46 | 000,006,144 | ---- | C] (MCCI) -- C:\WINDOWS\System32\drivers\ss_cmnt.sys
[2011-03-24 01:06:46 | 000,006,144 | ---- | C] (MCCI) -- C:\WINDOWS\System32\drivers\ss_cm.sys
[2011-03-24 01:06:45 | 000,005,808 | ---- | C] (MCCI) -- C:\WINDOWS\System32\drivers\ss_whnt.sys
[2011-03-24 01:06:45 | 000,005,808 | ---- | C] (MCCI) -- C:\WINDOWS\System32\drivers\ss_wh.sys
[2011-03-24 01:06:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Samsung_USB_Drivers
[2011-03-12 02:08:57 | 000,000,000 | ---D | C] -- C:\Programas\Ficheiros comuns\Java
[2009-06-26 21:47:25 | 001,469,952 | ---- | C] (Toshiba Samsung Storage Technology Corporation) -- C:\Documents and Settings\Greg\Application Data\tsdnwin.dll
========== Files - Modified Within 30 Days ==========
[2011-04-07 18:55:39 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-04-07 18:55:20 | 000,000,952 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2011-04-07 18:55:04 | 000,000,874 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011-04-07 18:54:54 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-04-07 18:30:00 | 000,000,878 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011-04-07 17:19:49 | 111,875,749 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011-04-07 03:28:46 | 000,000,688 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\AVG 2011.lnk
[2011-04-07 03:02:37 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011-04-07 02:56:34 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2011-04-07 02:25:03 | 000,000,944 | ---- | M] () -- C:\Documents and Settings\Greg\Ambiente de trabalho\Atalho para ComboFix.lnk
[2011-04-07 01:02:24 | 000,001,714 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Adobe Reader X.lnk
[2011-04-06 21:13:33 | 000,000,756 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Malwarebytes' Anti-Malware.lnk
[2011-04-06 17:58:13 | 000,531,716 | ---- | M] () -- C:\WINDOWS\System32\perfh016.dat
[2011-04-06 17:58:13 | 000,481,136 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011-04-06 17:58:13 | 000,093,326 | ---- | M] () -- C:\WINDOWS\System32\perfc016.dat
[2011-04-06 17:58:13 | 000,079,210 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011-04-06 17:32:39 | 000,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011-04-06 17:27:19 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011-04-06 17:27:18 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011-04-06 17:21:52 | 000,000,780 | ---- | M] () -- C:\Documents and Settings\Greg\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011-04-06 17:09:15 | 000,327,504 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-04-06 17:07:08 | 000,252,316 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2011-04-06 17:07:08 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin
[2011-04-06 14:44:21 | 000,001,721 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\DivX Plus Converter.lnk
[2011-04-06 14:44:21 | 000,001,493 | ---- | M] () -- C:\Documents and Settings\Greg\Ambiente de trabalho\DivX Movies.lnk
[2011-04-06 14:14:36 | 000,000,897 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Revo Uninstaller Pro.lnk
[2011-04-06 00:26:24 | 000,189,480 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2011-04-05 18:40:08 | 000,137,544 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2011-04-01 13:42:56 | 000,002,497 | ---- | M] () -- C:\Documents and Settings\Greg\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Excel 2003 (2).lnk
[2011-03-30 02:13:52 | 000,000,654 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\CCleaner.lnk
[2011-03-29 23:56:40 | 000,000,797 | ---- | M] () -- C:\Documents and Settings\Greg\Ambiente de trabalho\World of Warcraft.lnk
[2011-03-24 01:50:08 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\LauncherAccess.dt
[2011-03-24 01:28:41 | 000,001,747 | ---- | M] () -- C:\Documents and Settings\Greg\Application Data\Microsoft\Internet Explorer\Quick Launch\Samsung PC Studio 3.lnk
[2011-03-24 01:28:41 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Samsung PC Studio 3.lnk
[2011-03-23 19:34:17 | 000,000,714 | ---- | M] () -- C:\Documents and Settings\Greg\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011-03-23 19:34:17 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Mozilla Firefox.lnk
[2011-03-16 19:03:47 | 000,060,847 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\iavichjg.avm
[2011-03-16 12:12:32 | 000,002,465 | ---- | M] () -- C:\Documents and Settings\Greg\Ambiente de trabalho\CorelDRAW 12.lnk
[2011-03-13 00:20:13 | 000,000,691 | ---- | M] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\VLC media player.lnk
========== Files Created - No Company Name ==========
[2011-04-07 03:28:46 | 000,000,688 | ---- | C] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\AVG 2011.lnk
[2011-04-07 02:56:34 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2011-04-07 02:56:31 | 000,261,920 | RHS- | C] () -- C:\cmldr
[2011-04-07 02:53:18 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011-04-07 02:53:18 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011-04-07 02:53:18 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011-04-07 02:53:18 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011-04-07 02:53:18 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011-04-07 02:25:03 | 000,000,944 | ---- | C] () -- C:\Documents and Settings\Greg\Ambiente de trabalho\Atalho para ComboFix.lnk
[2011-04-07 01:02:24 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Iniciar\Programas\Adobe Reader X.lnk
[2011-04-07 01:02:24 | 000,001,714 | ---- | C] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Adobe Reader X.lnk
[2011-04-06 21:13:33 | 000,000,756 | ---- | C] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Malwarebytes' Anti-Malware.lnk
[2011-04-06 14:44:21 | 000,001,721 | ---- | C] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\DivX Plus Converter.lnk
[2011-04-06 14:14:36 | 000,000,897 | ---- | C] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Revo Uninstaller Pro.lnk
[2011-03-24 01:28:41 | 000,001,747 | ---- | C] () -- C:\Documents and Settings\Greg\Application Data\Microsoft\Internet Explorer\Quick Launch\Samsung PC Studio 3.lnk
[2011-03-24 01:28:41 | 000,001,729 | ---- | C] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\Samsung PC Studio 3.lnk
[2011-03-24 01:09:15 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LauncherAccess.dt
[2011-03-23 19:34:17 | 000,000,702 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Iniciar\Programas\Mozilla Firefox.lnk
[2011-03-13 00:20:13 | 000,000,691 | ---- | C] () -- C:\Documents and Settings\All Users\Ambiente de trabalho\VLC media player.lnk
[2011-03-10 02:32:48 | 000,001,355 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2011-03-07 17:42:18 | 000,137,544 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2011-03-07 17:42:07 | 000,189,480 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2011-03-07 17:42:02 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2011-02-23 21:55:07 | 000,000,431 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2011-02-23 21:55:07 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2010-10-10 14:19:42 | 000,232,968 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2010-10-10 14:19:39 | 000,252,316 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2010-10-10 14:19:39 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2010-03-13 19:21:31 | 000,000,013 | ---- | C] () -- C:\WINDOWS\System32\nvModes.dat
[2010-02-11 17:12:00 | 002,128,896 | ---- | C] () -- C:\Documents and Settings\Greg\Definições locais\Application Data\cooliris-win-ie-release-1.11.7.31969.en-US.msi
[2009-10-19 15:55:27 | 002,124,288 | ---- | C] () -- C:\Documents and Settings\Greg\Definições locais\Application Data\cooliris-win-ie-release-1.11.5.29501.en-US.msi
[2009-08-03 15:07:42 | 000,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll
[2009-08-03 15:07:42 | 000,230,768 | ---- | C] () -- C:\WINDOWS\System32\OGAEXEC.exe
[2009-08-01 23:34:07 | 002,119,680 | ---- | C] () -- C:\Documents and Settings\Greg\Definições locais\Application Data\cooliris-win-ie-release-1.11.2.27471.en-US.msi
[2009-07-20 17:34:14 | 000,079,872 | ---- | C] () -- C:\Documents and Settings\Greg\Definições locais\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-07-11 02:04:07 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2009-07-02 00:29:32 | 000,139,152 | ---- | C] () -- C:\Documents and Settings\Greg\Application Data\PnkBstrK.sys
[2009-07-01 18:22:36 | 000,000,182 | ---- | C] () -- C:\WINDOWS\System32\EBPPORT.DAT
[2009-06-26 21:45:57 | 000,000,438 | ---- | C] () -- C:\Documents and Settings\Greg\Application Data\SamsungLiveUpdateConfig.ini
[2009-06-12 22:02:04 | 002,177,024 | ---- | C] () -- C:\Documents and Settings\Greg\Definições locais\Application Data\cooliris-win-ie-release-1.10.1.25877.en-US.msi
[2009-06-12 20:33:50 | 000,002,516 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
[2009-06-08 10:32:42 | 000,000,379 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009-06-06 21:09:25 | 000,048,896 | ---- | C] () -- C:\WINDOWS\System32\drivers\JmtFltr.sys
[2009-06-06 19:11:37 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009-06-06 18:57:28 | 000,004,212 | -H-- | C] () -- C:\WINDOWS\System32\zllictbl.dat
[2009-06-06 18:30:01 | 000,004,205 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009-06-06 18:27:30 | 000,327,504 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009-06-06 17:56:10 | 000,038,061 | ---- | C] () -- C:\WINDOWS\Ascd_log.ini
[2009-06-06 17:52:57 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2009-06-06 17:52:49 | 000,037,154 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2009-06-06 17:52:49 | 000,010,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2009-06-06 17:49:46 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009-06-06 17:46:42 | 000,023,668 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009-06-06 17:12:54 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\AsIO.dll
[2009-06-06 17:12:54 | 000,012,400 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsIO.sys
[2009-06-06 17:12:52 | 000,011,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys
[2009-06-06 17:12:52 | 000,010,216 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys
[2009-04-30 23:02:00 | 002,292,678 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2008-11-06 18:37:32 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2007-06-05 14:20:32 | 000,177,704 | ---- | C] () -- C:\WINDOWS\System32\PSIService.exe
[2005-07-12 15:44:42 | 000,015,872 | ---- | C] () -- C:\WINDOWS\System32\InsDrvZD64.DLL
[2004-08-04 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004-08-04 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004-08-04 14:00:00 | 000,531,716 | ---- | C] () -- C:\WINDOWS\System32\perfh016.dat
[2004-08-04 14:00:00 | 000,481,136 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004-08-04 14:00:00 | 000,314,414 | ---- | C] () -- C:\WINDOWS\System32\perfi016.dat
[2004-08-04 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004-08-04 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004-08-04 14:00:00 | 000,093,326 | ---- | C] () -- C:\WINDOWS\System32\perfc016.dat
[2004-08-04 14:00:00 | 000,079,210 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004-08-04 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004-08-04 14:00:00 | 000,036,952 | ---- | C] () -- C:\WINDOWS\System32\perfd016.dat
[2004-08-04 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004-08-04 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004-08-04 14:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004-08-04 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004-08-04 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004-03-23 17:38:00 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\InsDrvZD.dll
[2003-03-14 13:24:00 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\ZyDelReg.exe
[2003-01-07 16:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
========== LOP Check ==========
[2011-02-25 18:27:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AA2DeployClient
[2009-07-15 11:55:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AA3DeployClient
[2010-12-08 15:20:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar
[2011-04-07 03:29:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2010-11-28 13:18:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9
[2010-06-03 18:25:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
[2010-11-02 19:18:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CCP
[2010-11-28 13:25:32 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011-04-07 03:26:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2009-08-10 16:39:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\nHancer
[2010-04-20 03:02:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009-06-12 20:21:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ulead Systems
[2009-06-12 22:21:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WinZip
[2010-11-28 13:26:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\AVG10
[2011-04-06 19:30:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\CheeseSoft
[2009-11-24 19:50:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\com.adobe.example.avatarAirApplication.199ED43C2CFEB351CD0244628B93195D7C58F98C.1
[2010-03-31 11:58:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010-10-30 16:37:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\EveHQ
[2010-11-17 03:19:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\EVEMon
[2010-11-11 05:31:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\FileZilla
[2010-08-11 15:47:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\ICQ
[2009-06-06 21:09:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\n52te
[2009-07-02 18:07:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\nHancer
[2010-10-21 18:18:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\OpenOffice.org
[2010-08-20 21:40:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\Pegasys Inc
[2011-03-24 01:33:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\SAMSUNG
[2010-08-20 22:22:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\Sony
[2009-08-10 16:23:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\SystemRequirementsLab
[2011-04-06 11:48:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\Thunderbird
[2010-11-12 04:53:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\TS3Client
[2010-08-11 15:46:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\TuneUp Software
[2009-06-12 21:55:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\Ulead Systems
[2010-04-26 14:07:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg\Application Data\uTorrent
========== Purity Check ==========
< End of report >