========== Chrome ==========
CHR - homepage:
http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google

riginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
http://www.google.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\23.0.1271.64\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\The Styka's\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Harmony Firefox Plugin (Enabled) = C:\Program Files (x86)\Logitech\Harmony Remote Driver\NprtHarmonyPlugin.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: TV = C:\Users\The Styka's\AppData\Local\Google\Chrome\User Data\Default\Extensions\beobeededemalmllhkmnkinmfembdimh\1.0.11_0\
CHR - Extension: Audiotool = C:\Users\The Styka's\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgoccjhfjgjedhkiefaclppgbmoobnk\1.1_0\
CHR - Extension: Marvel Comics = C:\Users\The Styka's\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjhfaknohpjconjoefidanhihokmkice\1.0.0.0_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\The Styka's\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: Viewster - Watch Free Movies Online = C:\Users\The Styka's\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfiekkcjcnhbjofcjcfblhcccjkpkheh\1.8_0\
O1 HOSTS File: ([2012/11/17 14:42:53 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:
64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:
64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:
64bit: - HKLM..\Run: [TouchORB] C:\Program Files (x86)\TouchSettings\TouchPortalOBR.exe (Acer Corp.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2013\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Hotkey Utility] C:\Program Files (x86)\Gateway\Hotkey Utility\HotkeyUtility.exe ()
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [THX Audio Control Panel] C:\Program Files (x86)\Creative\THX TruStudio PRO\THXAudioCP\THXAudio.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [YouCam Mirror Tray icon] C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe (CyberLink Corp.)
O4 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1000..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1003..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1003..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1003..\RunOnce: [ScrSav] C:\Program Files (x86)\Gateway\Screensaver\run_Gateway.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-3804960224-2291115569-3665692133-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8:
64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\The Styka's\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8:
64bit: - Extra context menu item: Google Sidewiki... - Reg Error: Value error. File not found
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\The Styka's\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8 - Extra context menu item: Google Sidewiki... - Reg Error: Value error. File not found
O10:
64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000017 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000018 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp64.dll (NVIDIA)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll (NVIDIA)
O13 - gopher Prefix: missing
O16:
64bit: - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616}
http://download.divx.com/player/DivXBrowserPlugin.cab (Reg Error: Key error.)
O16:
64bit: - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9}
https://secure.logmein.com//activex/x64/ractrl.cab?lmi=928 (Performance Viewer Activex Control)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} Reg Error: Value error. (DivXBrowserPlugin Object)
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB}
http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab (NVIDIA Smart Scan)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} Reg Error: Value error. (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 64.71.255.198
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7FD9D591-61ED-466F-A7B1-A06B4B98D1FC}: DhcpNameServer = 64.71.255.198 64.71.255.253
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E7D394E3-DCE6-4EB0-BFB0-B5BC30E46CBF}: DhcpNameServer = 64.71.255.198
O18:
64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O20:
64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2012/11/17 23:07:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2012/11/17 23:05:22 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\The Styka's\Desktop\OTL.exe
[2012/11/17 14:42:59 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012/11/17 14:40:09 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012/11/17 13:59:19 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/11/17 13:59:19 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/11/17 13:59:19 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012/11/17 13:58:23 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\rkill
[2012/11/17 13:57:20 | 001,754,528 | ---- | C] (Bleeping Computer, LLC) -- C:\Users\The Styka's\Desktop\rkill.exe
[2012/11/17 13:37:19 | 011,492,288 | ---- | C] (OPSWAT, Inc.) -- C:\Users\The Styka's\Desktop\AppRemover.exe
[2012/11/17 13:35:16 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/11/17 13:34:49 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2012/11/17 13:34:25 | 005,002,404 | R--- | C] (Swearware) -- C:\Users\The Styka's\Desktop\ComboFix.exe
[2012/11/16 19:13:26 | 004,732,416 | ---- | C] (AVAST Software) -- C:\Users\The Styka's\Desktop\aswMBR.exe
[2012/11/16 19:07:40 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\RK_Quarantine
[2012/11/16 19:05:02 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\Pictures
[2012/11/16 19:00:00 | 002,213,976 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\The Styka's\Desktop\TDSSKiller.exe
[2012/11/14 23:14:00 | 000,688,901 | R--- | C] (Swearware) -- C:\Users\The Styka's\Desktop\dds.com
[2012/11/14 22:32:40 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\AppData\Roaming\Malwarebytes
[2012/11/14 22:31:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/11/14 22:31:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/11/14 22:31:45 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012/11/14 22:31:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012/11/14 22:29:35 | 010,669,952 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\The Styka's\Desktop\mbam-setup-1.65.1.1000.exe
[2012/11/13 21:37:24 | 000,035,192 | ---- | C] (AVG) -- C:\Windows\SysNative\TURegOpt.exe
[2012/11/13 21:37:24 | 000,026,488 | ---- | C] (AVG) -- C:\Windows\SysNative\authuitu.dll
[2012/11/13 21:37:23 | 000,021,880 | ---- | C] (AVG) -- C:\Windows\SysWow64\authuitu.dll
[2012/11/13 21:37:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp
[2012/11/13 21:36:53 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\AppData\Roaming\AVG
[2012/11/13 21:36:11 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG
[2012/11/13 21:36:03 | 000,000,000 | -HSD | C] -- C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
[2012/11/12 21:52:24 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\BootCD
[2012/11/12 21:38:37 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\AppData\Roaming\AVG2013
[2012/11/12 21:36:47 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\AppData\Roaming\TuneUp Software
[2012/11/12 21:35:52 | 000,000,000 | -H-D | C] -- C:\$AVG
[2012/11/12 21:35:51 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2013
[2012/11/12 21:34:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG
[2012/11/12 21:27:52 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2012/11/12 21:27:51 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\AppData\Local\MFAData
[2012/11/12 21:27:51 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2012/11/12 21:27:51 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\AppData\Local\Avg2013
[2012/11/11 19:11:48 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\Adobe Premiere Pro Auto-Save
[2012/11/11 17:47:47 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\Adobe Premiere Pro Preview Files
[2012/11/11 15:26:34 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\Mike2
[2012/11/11 15:17:40 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\Mike
[2012/11/08 07:45:26 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\Cinema 12
[2012/11/06 21:02:42 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\Desktop\Movie
[2012/11/06 21:00:45 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\AppData\Roaming\HandBrake
[2012/11/06 20:55:39 | 000,000,000 | ---D | C] -- C:\Users\The Styka's\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Handbrake
[2012/11/06 20:55:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handbrake
[2012/11/06 20:55:38 | 000,000,000 | ---D | C] -- C:\Program Files\Handbrake
[2012/10/30 17:53:49 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\%APPDATA%
[2012/10/30 17:42:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Derivative
[2012/10/30 17:41:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Derivative
[2012/10/30 17:41:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Derivative
[2012/10/22 13:02:44 | 000,154,464 | ---- | C] (AVG Technologies CZ, s.r.o. ) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys
[6 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/11/17 23:16:14 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/11/17 23:07:26 | 000,000,972 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2013.lnk
[2012/11/17 23:05:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\The Styka's\Desktop\OTL.exe
[2012/11/17 22:35:39 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/11/17 22:35:39 | 000,009,920 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/11/17 22:35:13 | 000,727,160 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/11/17 22:35:13 | 000,628,866 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/11/17 22:35:13 | 000,110,792 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/11/17 22:32:00 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/11/17 22:27:57 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/11/17 22:27:44 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/11/17 22:27:28 | 3019,296,768 | -HS- | M] () -- C:\hiberfil.sys
[2012/11/17 14:42:53 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2012/11/17 13:57:21 | 001,754,528 | ---- | M] (Bleeping Computer, LLC) -- C:\Users\The Styka's\Desktop\rkill.exe
[2012/11/17 13:43:35 | 000,000,009 | ---- | M] () -- C:\END
[2012/11/17 13:37:08 | 014,879,000 | ---- | M] () -- C:\Users\The Styka's\Desktop\CT3223346_Opswat.exe
[2012/11/17 13:34:29 | 005,002,404 | R--- | M] (Swearware) -- C:\Users\The Styka's\Desktop\ComboFix.exe
[2012/11/17 12:52:52 | 000,000,512 | ---- | M] () -- C:\Users\The Styka's\Desktop\MBR.dat
[2012/11/16 19:13:47 | 004,732,416 | ---- | M] (AVAST Software) -- C:\Users\The Styka's\Desktop\aswMBR.exe
[2012/11/16 19:06:03 | 000,673,280 | ---- | M] () -- C:\Users\The Styka's\Desktop\RogueKiller.exe
[2012/11/16 18:59:47 | 002,195,061 | ---- | M] () -- C:\Users\The Styka's\Desktop\tdsskiller.zip
[2012/11/14 23:14:00 | 000,688,901 | R--- | M] (Swearware) -- C:\Users\The Styka's\Desktop\dds.com
[2012/11/14 22:49:22 | 000,302,592 | ---- | M] () -- C:\Users\The Styka's\Desktop\fuuj3poc.exe
[2012/11/14 22:31:51 | 000,001,120 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/11/14 22:29:37 | 010,669,952 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\The Styka's\Desktop\mbam-setup-1.65.1.1000.exe
[2012/11/13 21:37:09 | 000,002,236 | ---- | M] () -- C:\Users\Public\Desktop\AVG 1-Click Maintenance.lnk
[2012/11/13 21:37:09 | 000,002,188 | ---- | M] () -- C:\Users\Public\Desktop\AVG PC TuneUp.lnk
[2012/11/11 19:52:03 | 001,037,223 | ---- | M] () -- C:\Users\The Styka's\Desktop\banan.jpg
[2012/11/11 19:18:57 | 000,648,683 | ---- | M] () -- C:\Users\The Styka's\Desktop\Mike Office Video.prproj
[2012/11/09 16:34:08 | 000,002,385 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2012/11/06 20:55:40 | 000,000,831 | ---- | M] () -- C:\Users\The Styka's\Desktop\Handbrake.lnk
[2012/11/06 02:11:36 | 011,492,288 | ---- | M] (OPSWAT, Inc.) -- C:\Users\The Styka's\Desktop\AppRemover.exe
[2012/10/31 21:49:22 | 002,213,976 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\The Styka's\Desktop\TDSSKiller.exe
[2012/10/30 17:41:27 | 000,002,246 | ---- | M] () -- C:\Users\Public\Desktop\TouchPlayer.077.lnk
[2012/10/22 13:02:44 | 000,154,464 | ---- | M] (AVG Technologies CZ, s.r.o. ) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys
[6 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/11/17 23:07:26 | 000,000,972 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2013.lnk
[2012/11/17 13:59:19 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/11/17 13:59:19 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/11/17 13:59:19 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/11/17 13:59:19 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/11/17 13:59:19 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012/11/17 13:43:33 | 000,000,009 | ---- | C] () -- C:\END
[2012/11/17 13:36:50 | 014,879,000 | ---- | C] () -- C:\Users\The Styka's\Desktop\CT3223346_Opswat.exe
[2012/11/17 12:52:52 | 000,000,512 | ---- | C] () -- C:\Users\The Styka's\Desktop\MBR.dat
[2012/11/16 19:05:59 | 000,673,280 | ---- | C] () -- C:\Users\The Styka's\Desktop\RogueKiller.exe
[2012/11/16 18:59:47 | 002,195,061 | ---- | C] () -- C:\Users\The Styka's\Desktop\tdsskiller.zip
[2012/11/14 22:49:21 | 000,302,592 | ---- | C] () -- C:\Users\The Styka's\Desktop\fuuj3poc.exe
[2012/11/14 22:31:51 | 000,001,120 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/11/13 21:37:09 | 000,002,236 | ---- | C] () -- C:\Users\Public\Desktop\AVG 1-Click Maintenance.lnk
[2012/11/13 21:37:09 | 000,002,188 | ---- | C] () -- C:\Users\Public\Desktop\AVG PC TuneUp.lnk
[2012/11/13 21:37:08 | 000,002,200 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp.lnk
[2012/11/11 19:52:03 | 001,037,223 | ---- | C] () -- C:\Users\The Styka's\Desktop\banan.jpg
[2012/11/11 17:34:01 | 000,648,683 | ---- | C] () -- C:\Users\The Styka's\Desktop\Mike Office Video.prproj
[2012/11/06 20:55:40 | 000,000,831 | ---- | C] () -- C:\Users\The Styka's\Desktop\Handbrake.lnk
[2012/10/30 17:51:07 | 000,000,051 | ---- | C] () -- C:\Users\The Styka's\Desktop\FILE_ID.DIZ
[2012/10/30 17:48:01 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/10/30 17:41:27 | 000,002,246 | ---- | C] () -- C:\Users\Public\Desktop\TouchPlayer.077.lnk
[2012/04/15 14:47:40 | 000,036,868 | ---- | C] () -- C:\Program Files (x86)\uninst-Particular.exe
[2012/02/29 12:26:56 | 000,416,064 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe
[2011/09/26 17:20:01 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011/03/31 22:57:16 | 000,736,172 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
========== ZeroAccess Check ==========
[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 00:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 23:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 07:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2012/11/13 21:36:53 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\AVG
[2012/11/12 21:38:37 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\AVG2013
[2012/02/03 09:07:50 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011/09/25 22:38:12 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\DVDVideoSoft
[2011/09/25 22:37:38 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\DVDVideoSoftIEHelpers
[2011/09/25 21:40:23 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\FrostWire
[2012/11/11 15:27:09 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\HandBrake
[2011/03/30 02:57:55 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\OEM
[2012/04/15 15:15:33 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\PACE Anti-Piracy
[2011/03/30 03:42:28 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\PowerCinema
[2012/02/12 17:37:25 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\Sammsoft
[2012/08/16 02:20:50 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\SoftGrid Client
[2012/02/03 09:10:20 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2011/10/31 21:16:55 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\Total Immersion
[2011/03/31 22:58:46 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\TP
[2012/11/12 21:36:47 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\TuneUp Software
[2012/11/17 23:18:36 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\uTorrent
[2011/04/03 23:12:00 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\WildTangent
[2011/08/21 20:51:44 | 000,000,000 | ---D | M] -- C:\Users\The Styka's\AppData\Roaming\Windows Live Writer
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 973 bytes -> C:\Users\The Styka's\AppData\Local\v9OloQX0E:gw4MFn2VaDeoIIrGdFNJzu
< End of report >