heres my OTL.txt :-)
OTL logfile created on: 10/14/2009 7:29:34 PM - Run 1
OTL by OldTimer - Version 3.0.20.0 Folder = C:\Documents and Settings\minemine\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
223.30 Mb Total Physical Memory | 130.09 Mb Available Physical Memory | 58.26% Memory free
661.66 Mb Paging File | 319.86 Mb Available in Paging File | 48.34% Paging File free
Paging file location(s): C:\pagefile.sys 360 720 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 19.52 Gb Total Space | 3.07 Gb Free Space | 15.72% Space Free | Partition Type: FAT32
Drive D: | 17.72 Gb Total Space | 4.64 Gb Free Space | 26.21% Space Free | Partition Type: FAT32
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: XP-4FF4E76E9B2D
Current User Name: minemine
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\minemine\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe (Adobe Systems Incorporated)
PRC - C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
PRC - C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe (SEIKO EPSON CORPORATION)
PRC - C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE (Microsoft Corporation)
PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe (Lavasoft)
PRC - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia.)
PRC - C:\Program Files\VIA\RAID\raid_tool.exe (VIA Technologies)
PRC - C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe (Yahoo! Inc.)
PRC - C:\WINDOWS\Explorer.EXE (Microsoft Corporation)
PRC - C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
PRC - C:\WINDOWS\System32\slserv.exe ( )
PRC - C:\WINDOWS\System32\VTTimer.exe (S3 Graphics, Inc.)
PRC - C:\WINDOWS\System32\VTtrayp.exe (S3 Graphics Co., Ltd.)
========== Win32 Services (SafeList) ==========
SRV - (aawservice [Auto | Running]) – C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe (Lavasoft)
SRV - (Apple Mobile Device [Auto | Running]) – C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (aspnet_state [On_Demand | Stopped]) – C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (aswUpdSv [Auto | Running]) – C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
SRV - (avast! Antivirus [Auto | Running]) – C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
SRV - (avast! Mail Scanner [On_Demand | Running]) – C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
SRV - (avast! Web Scanner [On_Demand | Stopped]) – C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
SRV - (Bonjour Service [Auto | Running]) – C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) – C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (EPSONStatusAgent2 [Auto | Running]) – C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe (SEIKO EPSON CORPORATION)
SRV - (FontCache3.0.0.0 [On_Demand | Stopped]) – C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (gusvc [Auto | Stopped]) – C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (helpsvc [Auto | Running]) – C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (IDriverT [On_Demand | Stopped]) – C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (iPod Service [On_Demand | Stopped]) – C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
SRV - (Irmon [Auto | Running]) – C:\WINDOWS\System32\irmon.dll (Microsoft Corporation)
SRV - (JavaQuickStarterService [Auto | Running]) – C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (MDM [Auto | Running]) – C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE (Microsoft Corporation)
SRV - (ose [On_Demand | Stopped]) – C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (ServiceLayer [On_Demand | Running]) – C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia.)
SRV - (SLService [Auto | Running]) – C:\WINDOWS\System32\slserv.exe ( )
SRV - (Spooler [Disabled | Stopped]) – File not found
SRV - (UleadBurningHelper [Auto | Running]) – C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
========== Driver Services (SafeList) ==========
DRV - (Aavmker4 [System | Running]) – C:\WINDOWS\System32\drivers\aavmker4.sys (ALWIL Software)
DRV - (ALCXWDM [On_Demand | Running]) – C:\WINDOWS\System32\drivers\ALCXWDM.SYS (Realtek Semiconductor Corp.)
DRV - (ASPI [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\ASPI32.sys (Adaptec)
DRV - (aswFsBlk [Auto | Running]) – C:\WINDOWS\System32\DRIVERS\aswFsBlk.sys (ALWIL Software)
DRV - (aswMon2 [Auto | Running]) – C:\WINDOWS\System32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswRdr [On_Demand | Running]) – C:\WINDOWS\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswSP [System | Running]) – C:\WINDOWS\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswTdi [System | Running]) – C:\WINDOWS\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (FETND5BV [On_Demand | Running]) – C:\WINDOWS\System32\DRIVERS\fetnd5bv.sys (VIA Technologies, Inc. )
DRV - (FETNDIS [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\fetnd5.sys (VIA Technologies, Inc. )
DRV - (GEARAspiWDM [On_Demand | Running]) – C:\WINDOWS\System32\DRIVERS\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (irsir [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\irsir.sys (Microsoft Corporation)
DRV - (MBAMSwissArmy [On_Demand | Running]) – C:\WINDOWS\System32\drivers\mbamswissarmy.sys (Malwarebytes Corporation)
DRV - (MODEMCSA [On_Demand | Running]) – C:\WINDOWS\System32\drivers\MODEMCSA.sys (Microsoft Corporation)
DRV - (Mtlmnt5 [On_Demand | Running]) – C:\WINDOWS\System32\DRIVERS\Mtlmnt5.sys ( )
DRV - (Mtlstrm [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\Mtlstrm.sys ( )
DRV - (nmwcd [On_Demand | Stopped]) – C:\WINDOWS\System32\drivers\ccdcmb.sys (Nokia)
DRV - (nmwcdc [On_Demand | Stopped]) – C:\WINDOWS\System32\drivers\ccdcmbo.sys (Nokia)
DRV - (nmwcdcj [On_Demand | Stopped]) – C:\WINDOWS\System32\drivers\nmwcdcj.sys (Nokia)
DRV - (nmwcdcm [On_Demand | Stopped]) – C:\WINDOWS\System32\drivers\nmwcdcm.sys (Nokia)
DRV - (Ptilink [On_Demand | Running]) – C:\WINDOWS\System32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (PxHelp20 [Boot | Running]) – C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (RecAgent [Boot | Running]) – C:\WINDOWS\system32\DRIVERS\RecAgent.sys ( )
DRV - (s116bus [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s116bus.sys (MCCI Corporation)
DRV - (s116mdfl [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s116mdfl.sys (MCCI Corporation)
DRV - (s116mdm [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s116mdm.sys (MCCI Corporation)
DRV - (s116mgmt [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s116mgmt.sys (MCCI Corporation)
DRV - (s116nd5 [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s116nd5.sys (MCCI Corporation)
DRV - (s116obex [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s116obex.sys (MCCI Corporation)
DRV - (s116unic [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s116unic.sys (MCCI Corporation)
DRV - (s117bus [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s117bus.sys (MCCI Corporation)
DRV - (s117mdfl [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s117mdfl.sys (MCCI Corporation)
DRV - (s117mdm [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s117mdm.sys (MCCI Corporation)
DRV - (s117mgmt [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s117mgmt.sys (MCCI Corporation)
DRV - (s117nd5 [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s117nd5.sys (MCCI Corporation)
DRV - (s117obex [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s117obex.sys (MCCI Corporation)
DRV - (s117unic [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\s117unic.sys (MCCI Corporation)
DRV - (SE27bus [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\SE27bus.sys (MCCI)
DRV - (SE27mdfl [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\SE27mdfl.sys (MCCI)
DRV - (SE27mdm [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\SE27mdm.sys (MCCI)
DRV - (SE27mgmt [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\SE27mgmt.sys (MCCI)
DRV - (se27nd5 [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\se27nd5.sys (MCCI)
DRV - (SE27obex [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\SE27obex.sys (MCCI)
DRV - (se27unic [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\se27unic.sys (MCCI)
DRV - (Secdrv [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (Slntamr [On_Demand | Running]) – C:\WINDOWS\System32\DRIVERS\slntamr.sys ( )
DRV - (SlNtHal [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\Slnthal.sys ( )
DRV - (SlWdmSup [On_Demand | Running]) – C:\WINDOWS\System32\DRIVERS\SlWdmSup.sys ( )
DRV - (SONYPVU1 [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\SONYPVU1.SYS (Sony Corporation)
DRV - (USBAAPL [On_Demand | Stopped]) – C:\WINDOWS\System32\Drivers\usbaapl.sys (Apple, Inc.)
DRV - (viagfx [On_Demand | Running]) – C:\WINDOWS\System32\DRIVERS\vtmini.sys (Copyright © VIA/S3 Graphics Co, Ltd.)
DRV - (viamraid [Boot | Running]) – C:\WINDOWS\system32\DRIVERS\viamraid.sys (VIA Technologies inc,.ltd)
DRV - (vmfilter303 [On_Demand | Stopped]) – C:\WINDOWS\System32\drivers\vmfilter303.sys (Vimicro Corporation)
DRV - (w810bus [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\w810bus.sys (MCCI)
DRV - (w810mdfl [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\w810mdfl.sys (MCCI)
DRV - (w810mdm [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\w810mdm.sys (MCCI)
DRV - (w810mgmt [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\w810mgmt.sys (MCCI)
DRV - (w810obex [On_Demand | Stopped]) – C:\WINDOWS\System32\DRIVERS\w810obex.sys (MCCI)
DRV - (zebrceb [On_Demand | Running]) – C:\WINDOWS\System32\DRIVERS\zebrceb.sys (MCCI)
DRV - (ZSMC303 [On_Demand | Stopped]) – C:\WINDOWS\System32\Drivers\usbVM303.sys (Vimicro Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.microsoft.com/isapi/redir.dll?p…&ar=msnhome
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dll?p…amp;ar=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKCU\..\URLSearchHook: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb128\SearchSettings.dll (Spigot, Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
O1 HOSTS File: (734 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Dealio Toolbar) - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\DealioToolbarIE.dll (Spigot, Inc.)
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Encarta Web Companion Helper Object) - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll (Google Inc.)
O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll (Google Inc.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (SearchSettings Class) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb128\SearchSettings.dll (Spigot, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Dealio Toolbar) - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\DealioToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (Encarta Web Companion) - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Encarta Web Companion) - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Program Files\Common Files\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O4 - HKLM..\Run: [BigDog303] C:\WINDOWS\VM303_STI.EXE File not found
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Inc.)
O4 - HKLM..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe (VIA Technologies)
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [UVS12 Preload] C:\Program Files\Corel\Corel VideoStudio 12\uvPL.exe (Ulead Systems, Inc.)
O4 - HKLM..\Run: [VTTimer] C:\WINDOWS\System32\VTTimer.exe (S3 Graphics, Inc.)
O4 - HKLM..\Run: [VTTrayp] C:\WINDOWS\System32\VTtrayp.exe (S3 Graphics Co., Ltd.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetActiveDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\npjpi160_16.dll (Sun Microsystems, Inc.)
O9 - Extra 'Tools' menuitem : Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe ()
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} http://housecall65.trendmicro.com/housecal…ivex/hcImpl.cab (Trend Micro ActiveX Scan Agent 6.6)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} http://download.bitdefender.com/resources/…can8/oscan8.cab (BDSCANONLINE Control)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5}
http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwa…ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = [removed] [removed]
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Filter: - text/xml - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - File not found
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2006/06/15 23:01:18 | 00,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ FAT32 ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
O35 - comfile [open] – "%1" %* File not found
O35 - exefile [open] – "%1" %* File not found
NetSvcs: 6to4 - Service key not found. File not found
NetSvcs: Ias - Service key not found. File not found
NetSvcs: Iprip - Service key not found. File not found
NetSvcs: Irmon - C:\WINDOWS\System32\irmon.dll (Microsoft Corporation)
NetSvcs: NWCWorkstation - Service key not found. File not found
NetSvcs: Nwsapagent - Service key not found. File not found
NetSvcs: WmdmPmSp - Service key not found. File not found
NetSvcs: helpsvc - C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
========== Files/Folders - Created Within 30 Days ==========
[3 C:\WINDOWS\*.tmp files]
[2009/10/11 14:09:26 | 00,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\InterVideo
[2009/10/14 14:28:12 | 00,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
[2009/10/11 14:06:24 | 00,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Ulead Systems
[2009/10/08 15:04:31 | 00,000,000 | RH-D | C] – C:\Documents and Settings\minemine\Application Data
[2009/10/08 15:21:18 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Adobe
[2009/10/09 14:23:13 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Apple Computer
[2009/10/08 13:51:09 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Dealio
[2009/10/08 08:59:53 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\FreeFLVConverter
[2009/10/08 15:21:03 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Google
[2009/10/08 15:13:28 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Identities
[2009/10/11 14:02:58 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\InstallShield
[2009/10/08 15:21:26 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Macromedia
[2009/10/08 15:04:31 | 00,000,000 | –SD | C] – C:\Documents and Settings\minemine\Application Data\Microsoft
[2009/10/08 17:23:04 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\PC Suite
[2009/10/08 13:51:11 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Search Settings
[2009/10/08 17:22:51 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Sony Ericsson
[2009/10/14 16:40:40 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Sun
[2009/10/08 17:23:23 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Teleca
[2009/10/11 14:11:09 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Application Data\Ulead Systems
[2009/10/08 15:04:30 | 00,000,000 | -H-D | C] – C:\Documents and Settings\minemine\Local Settings\Application Data
[2009/10/08 07:58:33 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Local Settings\Application Data\Apple Computer
[2009/10/08 15:20:59 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Local Settings\Application Data\ApplicationHistory
[2009/10/08 15:21:03 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Local Settings\Application Data\Google
[2009/10/08 15:04:30 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Local Settings\Application Data\Microsoft
[2009/10/08 15:18:46 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Local Settings\Application Data\PCHealth
[2009/10/08 07:13:56 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\Local Settings\Application Data\VDT
[2009/10/11 14:06:24 | 00,000,000 | —D | C] – C:\Program Files\Common Files\Ulead Systems
[2009/10/11 14:03:50 | 00,000,000 | —D | C] – C:\Program Files\Corel
[2009/10/08 09:01:11 | 00,000,000 | —D | C] – C:\Program Files\Dealio Toolbar
[2009/10/14 19:16:53 | 00,000,000 | —D | C] – C:\Program Files\ERUNT
[2009/10/03 01:48:22 | 00,000,000 | —D | C] – C:\Program Files\ESET
[2009/10/08 08:59:53 | 00,000,000 | —D | C] – C:\Program Files\Free FLV Converter
[2009/10/13 22:52:59 | 00,000,000 | —D | C] – C:\Program Files\Malwarebytes' Anti-Malware
[2009/10/08 09:01:24 | 00,000,000 | —D | C] – C:\Program Files\Search Settings
[2009/10/11 14:07:59 | 00,000,000 | —D | C] – C:\Program Files\Windows Media Components
[2009/10/08 07:41:34 | 00,000,000 | —D | C] – C:\Program Files\YouTube Downloader
[2009/10/14 19:21:26 | 00,520,704 | —- | C] (OldTimer Tools) – C:\Documents and Settings\minemine\Desktop\OTL.exe
[2009/10/14 19:13:07 | 00,791,393 | —- | C] (Lars Hederer ) – C:\Documents and Settings\minemine\Desktop\erunt_setup.exe
[2009/10/14 15:27:22 | 00,000,000 | —D | C] – C:\WINDOWS\LastGood
[2009/10/14 14:27:31 | 01,560,952 | —- | C] (Microsoft Corporation) – C:\Documents and Settings\minemine\Desktop\MGADiag.exe
[2009/10/13 22:53:02 | 00,038,224 | —- | C] (Malwarebytes Corporation) – C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/10/13 22:53:00 | 00,019,160 | —- | C] (Malwarebytes Corporation) – C:\WINDOWS\System32\drivers\mbam.sys
[2009/10/11 14:11:40 | 00,000,000 | —D | C] – C:\Documents and Settings\minemine\My Documents\Corel VideoStudio
[2009/10/08 16:31:37 | 00,472,064 | —- | C] ( ) – C:\Documents and Settings\minemine\Desktop\RootRepeal.exe
[2009/10/08 16:31:14 | 00,519,168 | —- | C] (OldTimer Tools) – C:\Documents and Settings\minemine\Desktop\OTS.exe
[2009/10/08 15:12:13 | 00,000,000 | R–D | C] – C:\Documents and Settings\minemine\My Documents\My Music
[2009/10/08 15:12:11 | 00,000,000 | R–D | C] – C:\Documents and Settings\minemine\My Documents\My Pictures
[2009/10/08 14:18:03 | 00,000,000 | RHSD | C] – C:\cmdcons
[2009/10/08 14:15:55 | 00,212,480 | —- | C] (SteelWerX) – C:\WINDOWS\SWXCACLS.exe
[2009/10/08 14:15:55 | 00,161,792 | —- | C] (SteelWerX) – C:\WINDOWS\SWREG.exe
[2009/10/08 14:15:55 | 00,136,704 | —- | C] (SteelWerX) – C:\WINDOWS\SWSC.exe
[2009/10/08 14:15:55 | 00,031,232 | —- | C] (NirSoft) – C:\WINDOWS\NIRCMD.exe
[2009/10/08 14:15:49 | 00,000,000 | —D | C] – C:\WINDOWS\ERDNT
[2009/10/08 14:15:48 | 00,388,608 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\CF15117.exe
[2009/10/08 14:15:48 | 00,000,000 | –SD | C] – C:\minemine
[2009/10/08 14:15:14 | 00,000,000 | —D | C] – C:\Qoobox
[2009/10/08 09:00:01 | 00,315,392 | —- | C] (Koyote Soft -
http://www.koyotesoft.com) – C:\WINDOWS\System32\TubeFinder.exe
[2009/10/08 08:59:57 | 00,119,568 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\VB6FR.DLL
[2009/10/08 08:59:57 | 00,084,512 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\PICCLP32.OCX
[2009/10/08 08:59:56 | 00,009,728 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\PCCLPFR.DLL
[2009/10/08 08:59:55 | 00,141,312 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\MSCMCFR.DLL
[2009/10/08 08:59:54 | 00,032,768 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\CMDLGFR.DLL
[2009/10/08 08:37:41 | 00,000,000 | R–D | C] – C:\Documents and Settings\minemine\My Documents\My Videos
[2009/10/06 17:22:54 | 00,131,856 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\MSADODC.ocx
[2009/10/06 17:22:53 | 00,512,688 | —- | C] (Xceed Software Inc [removed] [removed] www.xceedsoft.com) – C:\WINDOWS\System32\XceedCry.dll
[2009/10/06 17:22:52 | 00,423,784 | —- | C] (Xceed Software Inc [removed] [removed] www.xceedsoft.com) – C:\WINDOWS\System32\XceedBkp.dll
[2009/10/06 17:22:50 | 00,939,368 | —- | C] (Macromedia, Inc.) – C:\WINDOWS\System32\Flash.ocx
[2009/10/06 17:22:50 | 00,028,672 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\systray.ocx
[2009/10/06 17:22:48 | 00,265,753 | —- | C] (Ariad Software) – C:\WINDOWS\System32\AS-Exp2.ocx
[2009/10/06 17:22:47 | 00,188,416 | —- | C] (SoftShape Development) – C:\WINDOWS\System32\actsplash.ocx
[2009/10/06 17:22:46 | 00,101,888 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\VB6STKIT.DLL
[2009/10/06 17:22:45 | 00,089,088 | —- | C] (Ariad Software) – C:\WINDOWS\System32\ProgressBar4.ocx
[2009/10/05 14:36:13 | 00,000,000 | —D | C] – C:\WINDOWS\CSC
[2009/10/05 06:18:17 | 00,000,000 | —D | C] – C:\WINDOWS\BDOSCAN8
[2006/06/16 22:10:19 | 00,014,976 | —- | C] ( ) – C:\WINDOWS\System32\drivers\winddx.sys
[2004/11/01 16:30:00 | 00,653,960 | —- | C] ( ) – C:\WINDOWS\System32\drivers\slntamr.sys
[2004/11/01 16:26:36 | 00,014,520 | —- | C] ( ) – C:\WINDOWS\System32\drivers\RecAgent.sys
[2004/11/01 16:24:00 | 00,229,720 | —- | C] ( ) – C:\WINDOWS\System32\drivers\mtlmnt5.sys
[2004/11/01 16:19:00 | 00,100,176 | —- | C] ( ) – C:\WINDOWS\System32\drivers\slnthal.sys
[2004/11/01 16:17:26 | 01,396,048 | —- | C] ( ) – C:\WINDOWS\System32\drivers\mtlstrm.sys
[2004/11/01 16:07:50 | 00,013,216 | —- | C] ( ) – C:\WINDOWS\System32\drivers\slwdmsup.sys
========== Files - Modified Within 30 Days ==========
[3 C:\WINDOWS\*.tmp files]
[2009/10/14 19:21:26 | 00,520,704 | —- | M] (OldTimer Tools) – C:\Documents and Settings\minemine\Desktop\OTL.exe
[2009/10/14 19:16:56 | 00,000,515 | —- | M] () – C:\Documents and Settings\minemine\Desktop\NTREGOPT.lnk
[2009/10/14 19:16:56 | 00,000,496 | —- | M] () – C:\Documents and Settings\minemine\Desktop\ERUNT.lnk
[2009/10/14 19:13:08 | 00,791,393 | —- | M] (Lars Hederer ) – C:\Documents and Settings\minemine\Desktop\erunt_setup.exe
[2009/10/14 17:54:08 | 00,331,264 | —- | M] () – C:\Documents and Settings\minemine\Desktop\dds.scr
[2009/10/14 17:07:38 | 00,000,868 | —- | M] () – C:\WINDOWS\tasks\Google Software Updater.job
[2009/10/14 15:27:36 | 00,002,206 | —- | M] () – C:\WINDOWS\System32\wpa.dbl
[2009/10/14 14:27:32 | 01,560,952 | —- | M] (Microsoft Corporation) – C:\Documents and Settings\minemine\Desktop\MGADiag.exe
[2009/10/14 14:13:34 | 00,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2009/10/14 14:10:20 | 00,002,048 | –S- | M] () – C:\WINDOWS\bootstat.dat
[2009/10/13 22:54:16 | 03,712,656 | -H– | M] () – C:\Documents and Settings\minemine\Local Settings\Application Data\IconCache.db
[2009/10/13 22:53:06 | 00,000,600 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/10/13 18:51:22 | 00,085,984 | —- | M] () – C:\Documents and Settings\minemine\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/10/12 01:51:50 | 00,000,116 | —- | M] () – C:\WINDOWS\NeroDigital.ini
[2009/10/12 01:18:02 | 00,000,958 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-861567501-1592454029-839522115-500Core.job
[2009/10/11 21:10:06 | 00,106,496 | —- | M] () – C:\Documents and Settings\minemine\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/10/11 20:48:58 | 00,306,808 | —- | M] () – C:\WINDOWS\System32\FNTCACHE.DAT
[2009/10/09 14:40:48 | 00,001,062 | —- | M] () – C:\WINDOWS\win.ini
[2009/10/08 16:40:28 | 00,000,015 | —- | M] () – C:\Documents and Settings\minemine\Desktop\settings.dat
[2009/10/08 16:31:42 | 00,472,064 | —- | M] ( ) – C:\Documents and Settings\minemine\Desktop\RootRepeal.exe
[2009/10/08 16:31:24 | 00,519,168 | —- | M] (OldTimer Tools) – C:\Documents and Settings\minemine\Desktop\OTS.exe
[2009/10/08 15:10:24 | 00,000,260 | —- | M] () – C:\WINDOWS\tasks\WGASetup.job
[2009/10/08 14:25:42 | 00,060,416 | —- | M] () – C:\WINDOWS\System32\drivers\Combo-Fix.sys
[2009/10/08 14:18:06 | 00,000,281 | RHS- | M] () – C:\boot.ini
[2009/10/08 14:15:08 | 00,388,608 | —- | M] (Microsoft Corporation) – C:\WINDOWS\System32\CF15117.exe
[2009/10/08 13:55:12 | 00,034,816 | —- | M] () – C:\WINDOWS\System32\drivers\.sys
[2009/10/06 12:22:06 | 00,002,137 | —- | M] () – C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2009/10/06 12:17:14 | 00,000,109 | —- | M] () – C:\WINDOWS\wininit.ini
[2009/10/02 11:50:28 | 00,315,392 | —- | M] (Koyote Soft -
http://www.koyotesoft.com) – C:\WINDOWS\System32\TubeFinder.exe
========== Files - No Company Name ==========
[2009/10/14 19:16:54 | 00,000,515 | —- | C] () – C:\Documents and Settings\minemine\Desktop\NTREGOPT.lnk
[2009/10/14 19:16:54 | 00,000,496 | —- | C] () – C:\Documents and Settings\minemine\Desktop\ERUNT.lnk
[2009/10/14 17:54:08 | 00,331,264 | —- | C] () – C:\Documents and Settings\minemine\Desktop\dds.scr
[2009/10/13 22:53:05 | 00,000,600 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/10/11 14:09:23 | 00,209,040 | —- | C] () – C:\WINDOWS\System32\IVIresizeW7.dll
[2009/10/11 14:09:22 | 00,204,944 | —- | C] () – C:\WINDOWS\System32\IVIresizeA6.dll
[2009/10/11 14:09:22 | 00,196,752 | —- | C] () – C:\WINDOWS\System32\IVIresizeP6.dll
[2009/10/11 14:09:22 | 00,196,752 | —- | C] () – C:\WINDOWS\System32\IVIresizeM6.dll
[2009/10/11 14:09:22 | 00,192,656 | —- | C] () – C:\WINDOWS\System32\IVIresizePX.dll
[2009/10/11 14:09:22 | 00,024,720 | —- | C] () – C:\WINDOWS\System32\IVIresize.dll
[2009/10/09 14:23:00 | 00,085,984 | —- | C] () – C:\Documents and Settings\minemine\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/10/08 16:39:15 | 00,000,015 | —- | C] () – C:\Documents and Settings\minemine\Desktop\settings.dat
[2009/10/08 15:51:38 | 03,712,656 | -H– | C] () – C:\Documents and Settings\minemine\Local Settings\Application Data\IconCache.db
[2009/10/08 15:04:32 | 00,000,062 | -HS- | C] () – C:\Documents and Settings\minemine\Application Data\desktop.ini
[2009/10/08 14:25:41 | 00,060,416 | —- | C] () – C:\WINDOWS\System32\drivers\Combo-Fix.sys
[2009/10/08 14:18:05 | 00,000,210 | —- | C] () – C:\Boot.bak
[2009/10/08 14:18:04 | 00,260,272 | —- | C] () – C:\cmldr
[2009/10/08 14:15:55 | 00,229,888 | —- | C] () – C:\WINDOWS\PEV.exe
[2009/10/08 14:15:55 | 00,098,816 | —- | C] () – C:\WINDOWS\sed.exe
[2009/10/08 14:15:55 | 00,080,412 | —- | C] () – C:\WINDOWS\grep.exe
[2009/10/08 14:15:55 | 00,068,096 | —- | C] () – C:\WINDOWS\zip.exe
[2009/10/08 08:59:57 | 00,364,544 | —- | C] () – C:\WINDOWS\System32\PropertyGrid.ocx
[2009/10/08 08:59:57 | 00,208,500 | —- | C] () – C:\WINDOWS\System32\ReyXpBasics.tlb
[2009/10/08 08:59:55 | 00,024,576 | —- | C] () – C:\WINDOWS\System32\ControlSubX.ocx
[2009/10/06 17:22:47 | 00,389,120 | —- | C] () – C:\WINDOWS\System32\ACTSKN43.OCX
[2009/10/06 17:22:44 | 00,011,012 | —- | C] () – C:\WINDOWS\System32\threadapi.tlb
[2009/10/06 07:58:31 | 00,034,816 | —- | C] () – C:\WINDOWS\System32\drivers\.sys
[2009/01/05 15:44:10 | 00,000,453 | —- | C] () – C:\WINDOWS\bdoscandellang.ini
[2008/10/23 13:55:46 | 00,000,008 | —- | C] () – C:\Documents and Settings\All Users\Application Data\VYAAUFMZPWQQ.SYS
[2008/08/22 21:49:07 | 00,000,109 | —- | C] () – C:\WINDOWS\wininit.ini
[2008/06/26 13:37:09 | 00,000,186 | —- | C] () – C:\WINDOWS\TB50.INI
[2008/06/20 16:45:27 | 00,000,138 | —- | C] () – C:\WINDOWS\asym.ini
[2008/06/18 09:44:08 | 00,000,032 | —- | C] () – C:\WINDOWS\CD-Start.INI
[2008/04/06 22:24:50 | 00,000,023 | —- | C] () – C:\WINDOWS\VBCTL3D.INI
[2008/04/06 22:17:55 | 00,595,160 | —- | C] () – C:\WINDOWS\System32\wodCertificate.dll
[2008/04/06 22:17:48 | 00,589,960 | —- | C] () – C:\WINDOWS\System32\brgrt.dll
[2008/04/06 22:09:41 | 00,001,690 | —- | C] () – C:\WINDOWS\DIPLOMA.INI
[2008/04/06 22:09:40 | 00,000,116 | —- | C] () – C:\WINDOWS\BRGVARS.INI
[2007/12/26 21:08:36 | 00,000,838 | —- | C] () – C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2007/08/15 10:11:40 | 00,001,356 | —- | C] () – C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2007/08/08 10:38:08 | 00,008,704 | —- | C] () – C:\WINDOWS\System32\CNMVS76.DLL
[2007/05/10 17:58:00 | 00,000,072 | —- | C] () – C:\WINDOWS\MediaManager.INI
[2007/03/29 23:00:40 | 00,203,264 | R— | C] () – C:\WINDOWS\System32\CddbCdda.dll
[2007/03/04 21:20:10 | 00,003,677 | R— | C] () – C:\WINDOWS\PlaySnd.INI
[2007/01/13 12:46:20 | 00,000,151 | —- | C] () – C:\WINDOWS\PhotoSnapViewer.INI
[2006/12/29 22:13:02 | 00,000,116 | —- | C] () – C:\WINDOWS\NeroDigital.ini
[2006/11/01 16:08:57 | 00,000,318 | —- | C] () – C:\WINDOWS\cncscore.ini
[2006/11/01 16:08:46 | 00,000,415 | —- | C] () – C:\WINDOWS\superball.ini
[2006/10/29 22:33:14 | 00,000,323 | —- | C] () – C:\WINDOWS\boxworld.ini
[2006/10/26 19:55:57 | 00,000,023 | —- | C] () – C:\WINDOWS\GECKOS.INI
[2006/10/26 19:51:18 | 00,000,054 | —- | C] () – C:\WINDOWS\WINTOYS.INI
[2006/10/26 19:39:16 | 00,000,000 | —- | C] () – C:\WINDOWS\WordSearch.INI
[2006/10/11 22:35:41 | 00,000,000 | —- | C] () – C:\WINDOWS\mngui.INI
[2006/06/21 00:58:20 | 00,000,268 | —- | C] () – C:\WINDOWS\RtlRack.ini
[2006/06/16 22:10:19 | 00,540,672 | —- | C] () – C:\WINDOWS\System32\SLLights.dll
[2006/06/16 22:10:19 | 00,221,184 | —- | C] () – C:\WINDOWS\System32\amr_cpl.dll
[2006/06/16 22:10:19 | 00,151,552 | —- | C] () – C:\WINDOWS\System32\SLMOHServ.dll
[2006/06/16 01:56:34 | 00,001,065 | —- | C] () – C:\WINDOWS\winamp.ini
[2006/06/16 01:56:33 | 00,088,064 | —- | C] () – C:\WINDOWS\System32\AudioExCtl.dll
[2006/06/16 00:30:20 | 00,000,376 | —- | C] () – C:\WINDOWS\ODBC.INI
[2006/06/16 00:20:57 | 00,061,440 | R— | C] () – C:\WINDOWS\System32\vuins32.dll
[2006/06/16 00:19:21 | 00,000,164 | R— | C] () – C:\WINDOWS\avrack.ini
[2006/06/16 00:19:13 | 00,156,672 | R— | C] () – C:\WINDOWS\System32\RtlCPAPI.dll
[2006/03/08 00:13:33 | 00,000,062 | -HS- | C] () – C:\Documents and Settings\All Users\Application Data\desktop.ini
[2006/03/08 00:11:44 | 00,106,496 | —- | C] () – C:\Documents and Settings\minemine\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2006/03/06 10:41:02 | 00,073,728 | —- | C] () – C:\WINDOWS\System32\AMV_DecDLL.dll
[2005/04/28 02:38:00 | 00,372,736 | —- | C] () – C:\WINDOWS\System32\hpzidi01.dll
[2005/04/28 02:37:49 | 00,077,824 | —- | C] () – C:\WINDOWS\System32\hpzids01.dll
[2004/11/01 16:56:02 | 00,061,440 | —- | C] () – C:\WINDOWS\System32\coinst.dll
[2004/11/01 16:53:12 | 00,180,224 | —- | C] () – C:\WINDOWS\System32\SLGen.dll
[2004/11/01 16:52:46 | 00,212,992 | —- | C] () – C:\WINDOWS\System32\slextspk.dll
[2004/09/16 13:26:40 | 00,012,634 | —- | C] () – C:\WINDOWS\System32\drivers\ADFUUD.SYS
[2004/09/16 13:26:40 | 00,012,634 | —- | C] () – C:\WINDOWS\ADFUUD.SYS
[2004/08/04 01:07:00 | 00,001,062 | —- | C] () – C:\WINDOWS\win.ini
[2004/08/04 01:07:00 | 00,000,227 | —- | C] () – C:\WINDOWS\system.ini
[2003/01/07 15:05:08 | 00,002,695 | —- | C] () – C:\WINDOWS\System32\OUTLPERF.INI
[2002/03/17 08:00:00 | 00,007,420 | —- | C] () – C:\WINDOWS\UA000106.DLL
[1998/06/13 23:53:26 | 00,044,544 | —- | C] () – C:\WINDOWS\System32\Gif89.dll
========== LOP Check ==========
[2006/03/08 00:13:34 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data
[2008/12/26 15:44:08 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2006/12/29 22:02:04 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Ahead
[2009/09/08 00:12:16 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Autorun Eater
[2009/01/29 17:48:28 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\BVRP Software
[2006/06/16 01:54:36 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\CyberLink
[2007/01/13 23:54:38 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Downloaded Installations
[2008/07/06 07:36:34 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Installations
[2009/10/11 14:09:28 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\InterVideo
[2008/11/29 02:58:16 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
[2007/01/13 23:55:34 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\PC Suite
[2006/10/07 22:53:36 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Teleca
[2006/11/12 11:37:06 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2009/10/11 14:06:26 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Ulead Systems
[2006/03/08 00:50:16 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Zbshareware Lab
[2006/03/08 00:13:34 | 00,000,000 | RH-D | M] – C:\Documents and Settings\minemine\Application Data
[2009/10/08 13:51:10 | 00,000,000 | —D | M] – C:\Documents and Settings\minemine\Application Data\Dealio
[2009/10/08 08:59:54 | 00,000,000 | —D | M] – C:\Documents and Settings\minemine\Application Data\FreeFLVConverter
[2009/10/08 17:23:06 | 00,000,000 | —D | M] – C:\Documents and Settings\minemine\Application Data\PC Suite
[2009/10/08 13:51:12 | 00,000,000 | —D | M] – C:\Documents and Settings\minemine\Application Data\Search Settings
[2009/10/08 17:23:24 | 00,000,000 | —D | M] – C:\Documents and Settings\minemine\Application Data\Teleca
[2009/10/11 14:11:10 | 00,000,000 | —D | M] – C:\Documents and Settings\minemine\Application Data\Ulead Systems
[2004/08/04 09:07:00 | 00,000,065 | RH– | M] () – C:\WINDOWS\Tasks\desktop.ini
[2009/07/24 17:15:02 | 00,000,406 | —- | M] () – C:\WINDOWS\Tasks\1-Click Maintenance.job
[2009/10/14 14:13:34 | 00,000,006 | -H– | M] () – C:\WINDOWS\Tasks\SA.DAT
[2009/10/14 17:07:38 | 00,000,868 | —- | M] () – C:\WINDOWS\Tasks\Google Software Updater.job
[2008/12/07 17:52:54 | 00,000,316 | —- | M] () – C:\WINDOWS\Tasks\XoftSpy.job
[2009/10/08 15:10:24 | 00,000,260 | —- | M] () – C:\WINDOWS\Tasks\WGASetup.job
[2009/10/12 01:18:02 | 00,000,958 | —- | M] () – C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-861567501-1592454029-839522115-500Core.job
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.exe >
< %systemroot%\system32\eventlog.dll >
[2004/08/04 01:07:00 | 00,055,808 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\eventlog.dll
[6 C:\WINDOWS\system32\*.tmp files]
< %systemroot%\system32\scecli.dll >
[2004/08/04 01:07:00 | 00,180,224 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\scecli.dll
[6 C:\WINDOWS\system32\*.tmp files]
< %systemroot%\netlogon.dll >
< %systemroot%\system32\cngaudit.dll >
< %systemroot%\system32\sceclt.dll >
< %systemroot%\ntelogon.dll >
< %systemroot%\system32\logevent.dll >
< End of report >