Corel License Validation Service V2 X64 Powered By Arvato
Corel License Validation Service V2 X64 Powered By Arvato Rating: 8,1/10 2941 reviews
- ComboFix 15-05-13.01 - Alit D Putra 14/05/2015 9:15.1.4 - x64
- Microsoft Windows 8 Pro 6.2.9200.0.1252.62.1033.18.3982.1911 [GMT 8:00]
- Running from: c:usersAlit D PutraDesktopComboFix.exe
- AV: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- .
- ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
- .
- c:program files (x86)bestadblockerjth9IEwCpt4oCw.dat
- c:program files (x86)bestadblockerjth9IEwCpt4oCw.dll
- c:program files (x86)bestadblockerjth9IEwCpt4oCw.exe
- c:program files (x86)bestadblockerjth9IEwCpt4oCw.tlb
- c:program files (x86)bestadblockerjth9IEwCpt4oCw.x64.dll
- c:program files (x86)PricaeeMiNuus70YhETOKJyOy9J.dat
- c:program files (x86)PricaeeMiNuus70YhETOKJyOy9J.dll
- c:program files (x86)PricaeeMiNuus70YhETOKJyOy9J.exe
- c:program files (x86)PricaeeMiNuus70YhETOKJyOy9J.tlb
- c:program files (x86)PricaeeMiNuus70YhETOKJyOy9J.x64.dll
- c:program files (x86)PriceMinuST83sEhpAZgd1Nz.dat
- c:program files (x86)PriceMinuST83sEhpAZgd1Nz.dll
- c:program files (x86)PriceMinuST83sEhpAZgd1Nz.exe
- c:program files (x86)PriceMinuST83sEhpAZgd1Nz.tlb
- c:program files (x86)PriceMinuST83sEhpAZgd1Nz.x64.dll
- c:program files (x86)PRRiCeMInus7GkjjERTBSgrBM.dat
- c:program files (x86)PRRiCeMInus7GkjjERTBSgrBM.dll
- c:program files (x86)PRRiCeMInus7GkjjERTBSgrBM.exe
- c:program files (x86)PRRiCeMInus7GkjjERTBSgrBM.tlb
- c:program files (x86)PRRiCeMInus7GkjjERTBSgrBM.x64.dll
- c:programdataRoaming
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsK99K@Bm.com
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsK99K@Bm.combootstrap.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsK99K@Bm.comchrome.manifest
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsK99K@Bm.comcontentbg.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsK99K@Bm.cominstall.rdf
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsn1z@x.edu
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsn1z@x.edubootstrap.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsn1z@x.educhrome.manifest
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsn1z@x.educontentbg.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsn1z@x.eduinstall.rdf
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsNLlmQlWbx@O.org
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsNLlmQlWbx@O.orgbootstrap.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsNLlmQlWbx@O.orgchrome.manifest
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsNLlmQlWbx@O.orgcontentbg.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsNLlmQlWbx@O.orginstall.rdf
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsTg@U7l.net
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsTg@U7l.netbootstrap.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsTg@U7l.netchrome.manifest
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsTg@U7l.netcontentbg.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionsTg@U7l.netinstall.rdf
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionswWtXd7C@R.com
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionswWtXd7C@R.combootstrap.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionswWtXd7C@R.comchrome.manifest
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionswWtXd7C@R.comcontentbg.js
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultextensionswWtXd7C@R.cominstall.rdf
- c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.defaultsearchpluginsWebSearch.xml
- c:windowsInstaller$PatchCache$Managed68AB67CA7DA7FFFFB744BA000000001011.0.0eula.ini
- c:windowsInstaller$PatchCache$Managed68AB67CA7DA7FFFFB744BA000000001011.0.0eula.ini2
- .
- ((((((((((((((((((((((((( Files Created from 2015-04-14 to 2015-05-14 )))))))))))))))))))))))))))))))
- .
- 2015-05-14 01:28 . 2015-05-14 01:28 -------- d-----w- c:usersUpdatusUserAppDataLocaltemp
- 2015-05-14 01:28 . 2015-05-14 01:28 -------- d-----w- c:usersDefaultAppDataLocaltemp
- 2015-05-14 00:51 . 2014-05-15 01:02 59424 ----a-w- c:windowssystem32wuauclt.exe
- 2015-05-14 00:51 . 2014-05-14 22:43 3286528 ----a-w- c:windowssystem32wuaueng.dll
- 2015-05-14 00:51 . 2014-05-14 22:43 253440 ----a-w- c:windowssystem32WUSettingsProvider.dll
- 2015-05-14 00:51 . 2014-05-14 22:43 1623040 ----a-w- c:windowssystem32wucltux.dll
- 2015-05-14 00:51 . 2014-05-14 22:42 176640 ----a-w- c:windowssystem32storewuauth.dll
- 2015-05-14 00:51 . 2013-08-16 05:21 49152 ----a-w- c:windowssystem32wups2.dll
- 2015-05-14 00:51 . 2012-11-06 04:00 99328 ----a-w- c:windowssystem32wushareduxresources.dll
- 2015-05-14 00:51 . 2012-11-06 04:20 17408 ----a-w- c:windowssystem32wuaext.dll
- 2015-05-14 00:16 . 2015-05-14 00:16 -------- d-----w- c:windowssystem32appmgmt
- 2015-05-14 00:16 . 2015-05-14 00:16 -------- d-----w- c:windows4E0C6314A8B84026AC15084E8B63AFB5.TMP
- 2015-05-13 15:41 . 2015-05-13 15:41 -------- d-----w- c:program files (x86)Enigma Software Group
- 2015-05-13 15:40 . 2015-05-13 15:40 -------- d-----w- c:program files (x86)Common FilesWise Installation Wizard
- 2015-05-13 14:43 . 2015-05-13 14:43 -------- d-----w- c:usersAlit D PutraAppDataRoamingEZDownloader
- 2015-05-13 14:42 . 2015-05-13 14:42 -------- d-----w- c:program files (x86)SystemPlus
- 2015-05-13 14:37 . 2015-05-13 14:41 -------- d-----w- c:program files (x86)LighterModulator
- 2015-05-13 14:35 . 2015-05-13 14:35 -------- d-----w- c:program files (x86)Bootstrap Twitter Offline Docs
- 2015-05-13 14:24 . 2015-05-13 14:24 -------- d-----w- c:program files (x86)PriceMinuaS
- 2015-05-12 12:26 . 2012-06-23 23:24 9013136 ----a-w- c:programdataMicrosoftWindows DefenderDefinition Updates{7F245662-7D34-4512-B2E0-7BCC5231EFFA}mpengine.dll
- 2015-05-11 10:24 . 2015-05-11 10:24 -------- d-----w- c:programdataIHProtectUpDate
- 2015-05-09 01:21 . 2015-05-14 01:27 -------- d-----w- c:usersAlit D PutraAppDataLocalassembly
- 2015-05-05 13:29 . 2015-05-05 13:29 -------- d-----w- c:programdataMicrosoft Visual Studio
- 2015-05-05 13:27 . 2015-05-05 13:27 -------- d-----w- c:usersAlit D PutraAppDataRoamingNuGet
- 2015-05-05 12:38 . 2015-05-05 12:38 2089568 ----a-w- c:programdataMicrosoftVisualStudio12.01033ResourceCache.dll
- 2015-05-05 12:30 . 2015-05-05 12:30 -------- d-----w- c:program files (x86)Microsoft Silverlight
- 2015-05-05 12:25 . 2015-05-05 12:25 -------- d-----w- c:program filesMicrosoft SQL Server Compact Edition
- 2015-05-05 12:09 . 2015-05-05 12:09 -------- d-----w- c:program filesApplication Verifier
- 2015-05-05 12:09 . 2015-05-05 12:09 -------- d-----w- c:program files (x86)Application Verifier
- 2015-05-05 12:08 . 2015-05-05 12:08 -------- d-----w- c:programdataWindows App Certification Kit
- 2015-05-05 11:57 . 2015-05-05 11:57 -------- d-----w- c:program files (x86)Common FilesMicrosoft
- 2015-05-05 11:49 . 2015-05-05 12:18 -------- d-----w- c:program files (x86)Windows Kits
- 2015-05-05 11:48 . 2015-05-05 11:48 -------- d-----w- c:programdataPreEmptive Solutions
- 2015-05-05 11:45 . 2015-05-05 11:45 -------- d-----w- c:programdataNuGet
- 2015-05-05 11:45 . 2015-05-05 11:45 -------- d-----w- c:program files (x86)NuGet
- 2015-05-05 11:43 . 2015-05-05 11:43 -------- d-----w- c:program files (x86)Microsoft WCF Data Services
- 2015-05-05 11:06 . 2015-05-05 11:06 -------- d-----w- c:program files (x86)HTML Help Workshop
- 2015-05-05 11:06 . 2015-05-05 11:06 -------- d-----w- c:windowssymbols
- 2015-05-05 11:06 . 2015-05-05 11:06 -------- d-----w- c:program files (x86)Microsoft Help Viewer
- 2015-05-05 10:04 . 2015-05-05 12:33 -------- d-----w- c:program files (x86)Microsoft Visual Studio 12.0
- 2015-05-05 09:59 . 2015-05-05 09:59 -------- d-----w- c:program filesMicrosoft Visual Studio 12.0
- 2015-05-05 09:55 . 2013-09-13 13:21 28776 ----a-w- c:windowsSysWow64aspnet_counters.dll
- 2015-05-05 09:55 . 2013-09-13 13:21 30312 ----a-w- c:windowssystem32aspnet_counters.dll
- 2015-05-05 08:50 . 2013-11-13 05:47 1283575 ----a-r- c:usersAlit D PutraAppDataRoamingMicrosoftUpdater.vbe
- 2015-05-05 08:49 . 2015-05-05 08:49 -------- d-----w- c:programdataVisual studio
- 2015-04-29 16:01 . 2015-04-29 16:01 23200 ----a-w- c:windowssystem32driverswdcsam64.sys
- 2015-04-15 06:17 . 2015-04-15 06:17 18178736 ----a-w- c:windowsSysWow64FlashPlayerInstaller.exe
- .
- (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
- 2015-05-09 15:50 . 2014-11-02 05:18 17536 ----a-w- c:programdataMicrosoftwindowssamplingSqmManifestSqm3.bin
- .
- ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
- .
- *Note* empty entries & legit default entries are not shown
- .
- [HKEY_LOCAL_MACHINEsoftwarewow6432nodemicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers SkyDrivePro1 (ErrorConflict)]
- [HKEY_CLASSES_ROOTCLSID{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
- 2012-10-01 13:33 1720976 ----a-w- c:progra~2MICROS~1Office15GROOVEEX.DLL
- [HKEY_LOCAL_MACHINEsoftwarewow6432nodemicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers SkyDrivePro2 (SyncInProgress)]
- [HKEY_CLASSES_ROOTCLSID{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
- 2012-10-01 13:33 1720976 ----a-w- c:progra~2MICROS~1Office15GROOVEEX.DLL
- [HKEY_LOCAL_MACHINEsoftwarewow6432nodemicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers SkyDrivePro3 (InSync)]
- [HKEY_CLASSES_ROOTCLSID{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
- 2012-10-01 13:33 1720976 ----a-w- c:progra~2MICROS~1Office15GROOVEEX.DLL
- [HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRun]
- 'IDMan'='c:program files (x86)Internet Download ManagerIDMan.exe' [2014-11-06 3878480]
- 'EADM'='c:program files (x86)OriginOrigin.exe' [2014-08-29 3600216]
- 'Akamai NetSession Interface'='c:usersAlit D PutraAppDataLocalAkamainetsession_win.exe' [2014-10-29 4673432]
- [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionRun]
- 'AdobeCS6ServiceManager'='c:program files (x86)Common FilesAdobeCS6ServiceManagerCS6ServiceManager.exe' [2012-03-09 1073312]
- 'Adobe ARM'='c:program files (x86)Common FilesAdobeARM1.0AdobeARM.exe' [2014-12-19 1022152]
- 'SwitchBoard'='c:program files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe' [2010-02-19 517096]
- c:usersAlit D PutraAppDataRoamingMicrosoftWindowsStart MenuProgramsStartup
- Dropbox.lnk - c:usersAlit D PutraAppDataRoamingDropboxbinDropbox.exe /systemstartup [2015-1-9 39206888]
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionpoliciessystem]
- 'EnableUIADesktopToggle'= 0 (0x0)
- 'ConsentPromptBehaviorUser'= 3 (0x3)
- .
- [HKEY_LOCAL_MACHINEsoftwarewow6432nodemicrosoftwindows ntcurrentversionwindows]
- 'AppInit_DLLs'=c:windowsSysWOW64nvinit.dll
- R3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protocol;c:windowssystem32DRIVERSamppal.sys;c:windowsSYSNATIVEDRIVERSamppal.sys [x]
- R3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:windowsSystem32Driversssadadb.sys;c:windowsSYSNATIVEDriversssadadb.sys [x]
- R3 BprotectEx;Baidu ProtectEx;c:windowsSystem32driversBprotectEx.sys;c:windowsSYSNATIVEdriversBprotectEx.sys [x]
- R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:windowssystem32DRIVERSssudbus.sys;c:windowsSYSNATIVEDRIVERSssudbus.sys [x]
- R3 EagleX64;EagleX64;c:windowssystem32driversEagleX64.sys;c:windowsSYSNATIVEdriversEagleX64.sys [x]
- R3 esgiguard;esgiguard;c:program files (x86)Enigma Software GroupSpyHunteresgiguard.sys;c:program files (x86)Enigma Software GroupSpyHunteresgiguard.sys [x]
- R3 FairplayKD;FairplayKD;c:programdataMTA San Andreas AllCommontempFairplayKD.sys;c:programdataMTA San Andreas AllCommontempFairplayKD.sys [x]
- R3 hxsyol;hxsyol;d:hellInternet ExplorerAuraKingdomavitalhxsy64.sys;d:hellInternet ExplorerAuraKingdomavitalhxsy64.sys [x]
- R3 massfilter;Mass Storage Filter Driver;c:windowssystem32driversmassfilter.sys;c:windowsSYSNATIVEdriversmassfilter.sys [x]
- R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:program filesIntelWiFibinPanDhcpDns.exe;c:program filesIntelWiFibinPanDhcpDns.exe [x]
- R3 npggsvc;nProtect GameGuard Service;c:windowssystem32GameMon.des;c:windowsSYSNATIVEGameMon.des [x]
- R3 PCFApiUtil;PCFApiUtil;c:program files (x86)Baidu SecurityPC Faster4.0.0.0PCFApiUtil64.sys;c:program files (x86)Baidu SecurityPC Faster4.0.0.0PCFApiUtil64.sys [x]
- R3 PROLiNKusbdiag;PROLiNK DataCard Diagnostic Port;c:windowssystem32DRIVERSPROLiNKusbdiag.sys;c:windowsSYSNATIVEDRIVERSPROLiNKusbdiag.sys [x]
- R3 PROLiNKusbmodem;PROLiNK DataCard Proprietary USB Driver;c:windowssystem32DRIVERSPROLiNKusbmodem.sys;c:windowsSYSNATIVEDRIVERSPROLiNKusbmodem.sys [x]
- R3 PROLiNKusbnmea;PROLiNK DataCard NMEA Port;c:windowssystem32DRIVERSPROLiNKusbnmea.sys;c:windowsSYSNATIVEDRIVERSPROLiNKusbnmea.sys [x]
- R3 PROLiNKusbvoice;PROLiNK DataCard Voice Port;c:windowssystem32DRIVERSPROLiNKusbvoice.sys;c:windowsSYSNATIVEDRIVERSPROLiNKusbvoice.sys [x]
- R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:windowsSystem32driversssadbus.sys;c:windowsSYSNATIVEdriversssadbus.sys [x]
- R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:windowssystem32DRIVERSssadmdfl.sys;c:windowsSYSNATIVEDRIVERSssadmdfl.sys [x]
- R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:windowssystem32DRIVERSssadmdm.sys;c:windowsSYSNATIVEDRIVERSssadmdm.sys [x]
- R3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:windowssystem32DRIVERSssadserd.sys;c:windowsSYSNATIVEDRIVERSssadserd.sys [x]
- R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:windowssystem32DRIVERSssudmdm.sys;c:windowsSYSNATIVEDRIVERSssudmdm.sys [x]
- R3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.);c:windowssystem32DRIVERSssudserd.sys;c:windowsSYSNATIVEDRIVERSssudserd.sys [x]
- R3 SwitchBoard;Adobe SwitchBoard;c:program files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe;c:program files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe [x]
- R3 Te.Service;Te.Service;c:program files (x86)Windows Kits8.1TestingRuntimesTAEFWex.Services.exe;c:program files (x86)Windows Kits8.1TestingRuntimesTAEFWex.Services.exe [x]
- R3 vmci;VMware VMCI Bus Driver;c:windowsSystem32driversvmci.sys;c:windowsSYSNATIVEdriversvmci.sys [x]
- R3 VsEtwService120;Visual Studio ETW Event Collection Service;c:program filesMicrosoft Visual Studio 12.0Common7PackagesDebuggerServicesVsEtwService.exe;c:program filesMicrosoft Visual Studio 12.0Common7PackagesDebuggerServicesVsEtwService.exe [x]
- R3 WDC_SAM;WD SCSI Pass Thru driver;c:windowsSystem32driverswdcsam64.sys;c:windowsSYSNATIVEdriverswdcsam64.sys [x]
- R3 X6va017;X6va017;c:windowsSysWOW64DriversX6va017;c:windowsSysWOW64DriversX6va017 [x]
- R3 ztemtusbser;ZTEMT Legacy Serial Communication;c:windowssystem32DRIVERSCT_ZTEMT_U_USBSER.sys;c:windowsSYSNATIVEDRIVERSCT_ZTEMT_U_USBSER.sys [x]
- Pdf free download windows 10. R4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:program filesMicrosoft SQL Server100SharedSQLADHLP.EXE;c:program filesMicrosoft SQL Server100SharedSQLADHLP.EXE [x]
- R4 RsFx0153;RsFx0153 Driver;c:windowssystem32DRIVERSRsFx0153.sys;c:windowsSYSNATIVEDRIVERSRsFx0153.sys [x]
- R4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:program filesMicrosoft SQL ServerMSSQL10_50.SQLEXPRESSMSSQLBinnSQLAGENT.EXE;c:program filesMicrosoft SQL ServerMSSQL10_50.SQLEXPRESSMSSQLBinnSQLAGENT.EXE [x]
- S0 nvpciflt;nvpciflt;c:windowssystem32DRIVERSnvpciflt.sys;c:windowsSYSNATIVEDRIVERSnvpciflt.sys [x]
- S1 {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}Gw64;{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}Gw64;c:windowssystem32drivers{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}Gw64.sys;c:windowsSYSNATIVEdrivers{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}Gw64.sys [x]
- S2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service;c:program filesIntelBluetoothHSBTHSAmpPalService.exe;c:program filesIntelBluetoothHSBTHSAmpPalService.exe [x]
- S2 AtherosSvc;AtherosSvc;c:program files (x86)Bluetooth Suiteadminservice.exe;c:program files (x86)Bluetooth Suiteadminservice.exe [x]
- S2 ba96e052;SystemPlus;c:windowssystem32rundll32.exe;c:windowsSYSNATIVErundll32.exe [x]
- S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service;c:program filesIntelBluetoothHSBTHSSecurityMgr.exe;c:program filesIntelBluetoothHSBTHSSecurityMgr.exe [x]
- S2 Decor8;Stardock Decor8;c:program files (x86)StardockDecor8Decor8Srv.exe;c:program files (x86)StardockDecor8Decor8Srv.exe [x]
- S2 IDMWFP;IDMWFP;c:windowssystem32DRIVERSidmwfp.sys;c:windowsSYSNATIVEDRIVERSidmwfp.sys [x]
- S2 PSI_SVC_2_x64;Corel License Validation Service V2 x64, Powered by arvato;c:program filesCommon FilesProtexisLicense ServicePsiService_2.exe;c:program filesCommon FilesProtexisLicense ServicePsiService_2.exe [x]
- S2 ReportServer$SQLEXPRESS;SQL Server Reporting Services (SQLEXPRESS);c:program filesMicrosoft SQL ServerMSRS10_50.SQLEXPRESSReporting ServicesReportServerbinReportingServicesService.exe;c:program filesMicrosoft SQL ServerMSRS10_50.SQLEXPRESSReporting ServicesReportServerbinReportingServicesService.exe [x]
- S2 ZAtheros Bt and Wlan Coex Agent;ZAtheros Bt and Wlan Coex Agent;c:program files (x86)Bluetooth SuiteAth_CoexAgent.exe;c:program files (x86)Bluetooth SuiteAth_CoexAgent.exe [x]
- S2 ZeroConfigService;Intel(R) PROSet/Wireless Zero Configuration Service;c:program filesIntelWiFibinZeroConfigService.exe;c:program filesIntelWiFibinZeroConfigService.exe [x]
- S3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter;c:windowsSystem32driversAMPPAL.sys;c:windowsSYSNATIVEdriversAMPPAL.sys [x]
- S3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;c:windowssystem32DRIVERSbtath_flt.sys;c:windowsSYSNATIVEDRIVERSbtath_flt.sys [x]
- S3 ATP;ASUS PS/2 Port Input Device;c:windowsSystem32driversAsusTP.sys;c:windowsSYSNATIVEdriversAsusTP.sys [x]
- S3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:windowsSystem32driversbtath_bus.sys;c:windowsSYSNATIVEdriversbtath_bus.sys [x]
- S3 BTATH_HCRP;Bluetooth HCRP Server driver;c:windowsSystem32driversbtath_hcrp.sys;c:windowsSYSNATIVEdriversbtath_hcrp.sys [x]
- S3 BTATH_LWFLT;Bluetooth LWFLT Device;c:windowssystem32DRIVERSbtath_lwflt.sys;c:windowsSYSNATIVEDRIVERSbtath_lwflt.sys [x]
- S3 BtFilter;BtFilter;c:windowssystem32DRIVERSbtfilter.sys;c:windowsSYSNATIVEDRIVERSbtfilter.sys [x]
- S3 BthLEEnum;Bluetooth Low Energy Driver;c:windowssystem32DRIVERSBthLEEnum.sys;c:windowsSYSNATIVEDRIVERSBthLEEnum.sys [x]
- S3 HIDSwitch;ASUS Wireless Radio Control;c:windowsSystem32driversAsHIDSwitch64.sys;c:windowsSYSNATIVEdriversAsHIDSwitch64.sys [x]
- S3 MSSQLFDLauncher$SQLEXPRESS;SQL Full-text Filter Daemon Launcher (SQLEXPRESS);c:program filesMicrosoft SQL ServerMSSQL10_50.SQLEXPRESSMSSQLBinnfdlauncher.exe;c:program filesMicrosoft SQL ServerMSSQL10_50.SQLEXPRESSMSSQLBinnfdlauncher.exe [x]
- S3 RSBASTOR;Realtek PCIE CardReader Driver - BA;c:windowssystem32DRIVERSRtsBaStor.sys;c:windowsSYSNATIVEDRIVERSRtsBaStor.sys [x]
- S3 RTL8168;Realtek 8168 NT Driver;c:windowssystem32DRIVERSRt630x64.sys;c:windowsSYSNATIVEDRIVERSRt630x64.sys [x]
- S3 WUDFWpdMtp;WUDFWpdMtp;c:windowssystem32DRIVERSWUDFRd.sys;c:windowsSYSNATIVEDRIVERSWUDFRd.sys [x]
- .
- .
- 2015-05-14 c:windowsTasksAdobe Flash Player Updater.job
- - c:windowsSysWOW64MacromedFlashFlashPlayerUpdateService.exe [2014-04-03 06:18]
- .
- .
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers SkyDrivePro1 (ErrorConflict)]
- [HKEY_CLASSES_ROOTCLSID{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
- 2012-10-01 13:47 2322576 ----a-w- c:progra~1MICROS~1Office15GROOVEEX.DLL
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers SkyDrivePro2 (SyncInProgress)]
- [HKEY_CLASSES_ROOTCLSID{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
- 2012-10-01 13:47 2322576 ----a-w- c:progra~1MICROS~1Office15GROOVEEX.DLL
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers SkyDrivePro3 (InSync)]
- [HKEY_CLASSES_ROOTCLSID{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
- 2012-10-01 13:47 2322576 ----a-w- c:progra~1MICROS~1Office15GROOVEEX.DLL
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers'DropboxExt1']
- [HKEY_CLASSES_ROOTCLSID{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
- 2014-06-24 21:08 164760 ----a-w- c:usersAlit D PutraAppDataRoamingDropboxbinDropboxExt64.24.dll
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers'DropboxExt2']
- [HKEY_CLASSES_ROOTCLSID{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
- 2014-06-24 21:08 164760 ----a-w- c:usersAlit D PutraAppDataRoamingDropboxbinDropboxExt64.24.dll
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers'DropboxExt3']
- [HKEY_CLASSES_ROOTCLSID{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}]
- 2014-06-24 21:08 164760 ----a-w- c:usersAlit D PutraAppDataRoamingDropboxbinDropboxExt64.24.dll
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers'DropboxExt4']
- [HKEY_CLASSES_ROOTCLSID{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}]
- 2014-06-24 21:08 164760 ----a-w- c:usersAlit D PutraAppDataRoamingDropboxbinDropboxExt64.24.dll
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers'DropboxExt5']
- [HKEY_CLASSES_ROOTCLSID{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
- 2014-06-24 21:08 164760 ----a-w- c:usersAlit D PutraAppDataRoamingDropboxbinDropboxExt64.24.dll
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers'DropboxExt6']
- [HKEY_CLASSES_ROOTCLSID{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}]
- 2014-06-24 21:08 164760 ----a-w- c:usersAlit D PutraAppDataRoamingDropboxbinDropboxExt64.24.dll
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers'DropboxExt7']
- [HKEY_CLASSES_ROOTCLSID{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
- 2014-06-24 21:08 164760 ----a-w- c:usersAlit D PutraAppDataRoamingDropboxbinDropboxExt64.24.dll
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers'DropboxExt8']
- [HKEY_CLASSES_ROOTCLSID{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}]
- 2014-06-24 21:08 164760 ----a-w- c:usersAlit D PutraAppDataRoamingDropboxbinDropboxExt64.24.dll
- [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiersIDM Shell Extension]
- [HKEY_CLASSES_ROOTCLSID{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
- 2014-04-21 10:02 25112 ----a-w- c:program files (x86)Internet Download ManagerIDMShellExt64.dll
- [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun]
- 'IgfxTray'='c:windowssystem32igfxtray.exe' [2014-01-24 391128]
- 'HotKeysCmds'='c:windowssystem32hkcmd.exe' [2014-01-24 771544]
- 'Persistence'='c:windowssystem32igfxpers.exe' [2014-01-24 770520]
- 'AdobeAAMUpdater-1.0'='c:program files (x86)Common FilesAdobeOOBEPDAppUWAUpdaterStartupUtility.exe' [2014-02-27 558496]
- 'RTHDVCPL'='c:program filesRealtekAudioHDARAVCpl64.exe' [2012-08-30 13192848]
- 'BtTray'='c:program files (x86)Bluetooth SuiteBtTray.exe' [2012-10-31 766080]
- 'BtvStack'='c:program files (x86)Bluetooth SuiteBtvStack.exe' [2012-10-31 127616]
- ------- Supplementary Scan -------
- uLocal Page = c:windowssystem32blank.htm
- uStart Page = hxxp://websearch.goodforsearch.info/?pid=3889&r=2015/05/13&hid=599155046585705363&lg=EN&cc=ID&unqvl=86
- uDefault_Search_URL = hxxp://search.delta-homes.com/web/?type=ds&ts=1431339870&z=50f19e7fa518b20545f96fbgaz5ceg3c4c8t5bam5o&from=ient05110&uid=TOSHIBAXMQ01ABD075_83BQP3QATXX83BQP3QAT&q={searchTerms}
- mDefault_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1407595414&from=smt&uid=TOSHIBAXMQ01ABD075_83BQP3QATXX83BQP3QAT&q={searchTerms}
- mStart Page = hxxp://websearch.goodforsearch.info/?pid=3889&r=2015/05/13&hid=599155046585705363&lg=EN&cc=ID&unqvl=86
- Brand nubian. mSearch Page = hxxp://www.istartsurf.com/web/?type=ds&ts=1407595414&from=smt&uid=TOSHIBAXMQ01ABD075_83BQP3QATXX83BQP3QAT&q={searchTerms}
- IE: Download dengan IDM - c:program files (x86)Internet Download ManagerIEExt.htm
- IE: Download semua link dengan IDM - c:program files (x86)Internet Download ManagerIEGetAll.htm
- IE: E&xport to Microsoft Excel - c:progra~2MICROS~1Office15EXCEL.EXE/3000
- IE: Se&nd to OneNote - c:progra~2MICROS~1Office15ONBttnIE.dll/105
- FF - ProfilePath - c:usersAlit D PutraAppDataRoamingMozillaFirefoxProfilesvjj8yw9b.default
- FF - prefs.js: browser.search.defaulturl - hxxp://websearch.goodforsearch.info/?pid=3889&r=2015/05/13&hid=599155046585705363&lg=EN&cc=ID&unqvl=86&l=1&q=
- FF - prefs.js: browser.search.selectedEngine - WebSearch
- FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
- FF - prefs.js: keyword.URL - hxxp://websearch.goodforsearch.info/?pid=3889&r=2015/05/13&hid=599155046585705363&lg=EN&cc=ID&unqvl=86&l=1&q=
- FF - prefs.js: keyword.url - hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q=
- # Mozilla User Preferences
- *
- * If you make changes to this file while the application is running,
- * the changes will be overwritten when the application exits.
- * To make a manual change to preferences, you can visit the URL about:config
- FF - user.js: browser.startup.homepage - hxxp://www.google.com/
- .
- .
- BHO-{003565a1-15e1-4b00-b14c-a3956fff46f8} - c:program files (x86)PriceMinuST83sEhpAZgd1Nz.dll
- BHO-{a7af3940-86de-444e-a1e5-9334e4e352c6} - c:program files (x86)PRRiCeMInus7GkjjERTBSgrBM.dll
- BHO-{edf30400-9d07-474a-a612-962a4722c8d3} - c:program files (x86)bestadblockerjth9IEwCpt4oCw.dll
- BHO-{f07fcc0a-3383-4593-a3d9-ba520a45ada9} - c:program files (x86)PricaeeMiNuus70YhETOKJyOy9J.dll
- Wow6432Node-HKCU-Run-CatalinaGroup Update - c:usersAlit D PutraAppDataLocalCatalinaGroupUpdateCatalinaUpdate.exe
- Wow6432Node-HKLM-Run-WinampAgent - c:program files (x86)Winampwinampa.exe
- c:usersAlit D PutraAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupCrack.lnk - c:programdata{369395cb-5784-c3ad-3693-395cb578572d}Crack.exe --startup=1
- BHO-{003565a1-15e1-4b00-b14c-a3956fff46f8} - c:program files (x86)PriceMinuST83sEhpAZgd1Nz.x64.dll
- BHO-{a7af3940-86de-444e-a1e5-9334e4e352c6} - c:program files (x86)PRRiCeMInus7GkjjERTBSgrBM.x64.dll
- BHO-{edf30400-9d07-474a-a612-962a4722c8d3} - c:program files (x86)bestadblockerjth9IEwCpt4oCw.x64.dll
- BHO-{f07fcc0a-3383-4593-a3d9-ba520a45ada9} - c:program files (x86)PricaeeMiNuus70YhETOKJyOy9J.x64.dll
- AddRemove-Naruto Shippuden Ultimate Ninja Storm Revolution_is1 - d:lInternet ExplorerNaruto UltimateNew DirectoryNaruto Shippuden Ultimate Ninja Storm Revolutionunins000.exe
- AddRemove-{06B99631-BFA2-3B7A-F58B-D067C2BA59B7} - c:program files (x86)PRRiCeMInus7GkjjERTBSgrBM.exe
- AddRemove-{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{f6d5a24} - c:progra~2LIGHTE~1LIGHTE~1.DLL
- AddRemove-{4820778D-AB0D-6D18-C316-52A6A0E1D507} - c:program files (x86)bestadblockerjth9IEwCpt4oCw.exe
- .
- [HKEY_LOCAL_MACHINESYSTEMControlSet001Servicesnpggsvc]
- 'ImagePath'='c:windowssystem32GameMon.des -service'
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ServicesX6va017]
- 'ImagePath'='??c:windowsSysWOW64DriversX6va017'
- --------------------- LOCKED REGISTRY KEYS ---------------------
- [HKEY_USERSS-1-5-21-891726533-3861945677-857593788-1001_ClassesWow6432NodeCLSID{076c161d-d3c7-4c6c-8921-72eecd731844}]
- @Allowed: (Read) (RestrictedCode)
- 'Model'=dword:000000db
- 'MData'=hex(0):2b,8f,78,29,5a,0c,ce,ec,48,d4,68,e5,9f,6a,96,3e,ab,de,c5,81,26,
- 38,95,44,0b,81,bc,f1,a7,e5,35,7d,35,09,65,22,c0,65,51,8a,3a,e8,6e,f5,db,c5,
- [HKEY_USERSS-1-5-21-891726533-3861945677-857593788-1001_ClassesWow6432NodeCLSID{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
- 'scansk'=hex(0):4b,15,eb,47,28,02,c0,1b,9e,41,46,68,71,13,2b,e5,4d,a0,2d,64,a7,
- dc,bc,e2,b9,8a,69,8a,05,20,65,72,0d,cf,a3,3a,1b,48,83,c4,00,00,00,00,00,00,
- [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftOfficeCommonSmart TagActions{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
- 'Solution'='{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}'
- [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftSchema LibraryActionsPane3]
- .
- [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftSchema LibraryActionsPane30]
- 'Location'='c:Program Files (x86)Common FilesMicrosoft SharedVSTOActionsPane3.xsd'
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0001AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0002AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0003AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0004AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0005AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0006AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0008AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0009AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4d36e96d-e325-11ce-bfc1-08002be10318}0010AllUserSettings]
- @Denied: (A) (Everyone)
- 'BlindDial'=dword:00000000
- [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlPCWSecurity]
- @SACL=(02 0000)
- ------------------------ Other Running Processes ------------------------
- c:program files (x86)Common FilesAdobeARM1.0armsvc.exe
- c:program files (x86)SmadavSMc:windowsSysWOW64rundll32.exe
- c:program files (x86)ASUSASUS Smart GestureQuickGesturex86QuickGesture.exe
- c:program files (x86)NVIDIA CorporationNVIDIA Update Coredaemonu.exe
- **************************************************************************
- Completion time: 2015-05-14 09:39:50 - machine was rebooted
- .
- Post-Run: 83.522.633.728 bytes free
- - - End Of File - - 86120B51244954B0D99C3DBBD82946D3