OTL Extras logfile created on: 9/19/2003 4:23:50 AM - Run 1
OTL by OldTimer - Version 3.1.4.0 Folder = C:\Documents and Settings\Kevin\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.12 Gb Total Physical Memory | 0.66 Gb Available Physical Memory | 58.57% Memory free
2.69 Gb Paging File | 2.32 Gb Available in Paging File | 86.19% Paging File free
Paging file location(s): C:\pagefile.sys 1728 3456 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.24 Gb Total Space | 28.16 Gb Free Space | 75.61% Space Free | Partition Type: NTFS
Drive D: | 232.88 Gb Total Space | 109.69 Gb Free Space | 47.10% Space Free | Partition Type: NTFS
Drive E: | 149.05 Gb Total Space | 58.75 Gb Free Space | 39.41% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
Drive I: | 1.63 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive J: | 17.59 Mb Total Space | 17.09 Mb Free Space | 97.12% Space Free | Partition Type: FAT
Drive K: | 247.46 Mb Total Space | 66.09 Mb Free Space | 26.71% Space Free | Partition Type: FAT
Computer Name: DESKTOP
Current User Name: Kevin
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\BitTorrent\bittorrent.exe" = C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent -- (BitTorrent, Inc.)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\RECYCLER\S-1-5-21-4126161917-5399697724-792121681-4947\wnzip32.exe" = C:\RECYCLER\S-1-5-21-4126161917-5399697724-792121681-4947\wnzip32.exe:*:Enabled:wnzip32 -- ()
"C:\Documents and Settings\Kevin\Application Data\mjusbsp\magicJack.exe" = C:\Documents and Settings\Kevin\Application Data\mjusbsp\magicJack.exe:*:Enabled:magicJack -- (magicJack L.P.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{2466ABED-9FFB-472C-8F9C-64227E4D6FF5}" = Gtech PASS RR 2.0
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{39E9516D-9846-4E6F-979C-8B28BECE9104}" = NTI CD & DVD-Maker
"{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
"{4E9E953A-D5C1-4E84-A693-A70F4DE65A6F}" = ProQuestPalmDependsMSI
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{67ADE9AF-5CD9-4089-8825-55DE4B366799}" = NTI Backup NOW! 4.7
"{68A35043-C55A-4237-88C9-37EE1C63ED71}" = Microsoft Visual J# 2.0 Redistributable Package
"{69CA6BE2-A39A-447B-812D-73DE710EEAEA}" = NTI CD & DVD-Maker
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
"{90280409-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional with FrontPage
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A87B11AC-4344-4E5D-8B12-8F471A87DAD9}" = LightScribe 1.4.136.1
"{AC76BA86-7AD7-1033-7B44-A81300000003}" = Adobe Reader 8.1.3
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B43357AA-3A6D-4D94-B56E-43C44D09E548}" = Microsoft .NET Framework (English)
"{B78823CD-488F-43B4-80D6-FAEADAE40EC4}" = Instant Wireless USB Adapter
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CF3E8BE9-2AD1-42A9-97CD-33AD9826A9E8}" = Prospector
"076A5638850BB660C9206283848DD0A114C03B7F" = Windows Driver Package - Innovate Motorsports Innovate USB Driver (10/12/2009 1.4.1.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"BCM V.92 56K Modem" = BCM V.92 56K Modem
"Bell & Howell Product Licenser III" = ProQuest Product Licenser
"BitTorrent" = BitTorrent
"CARSOFT BMW V6.5" = CARSOFT BMW V6.5
"CYPI3" = Chrysler PAIS DVD International EPC 3.3.0
"HalwinX V1.26" = HalwinX V1.26
"HijackThis" = HijackThis 2.0.2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{39E9516D-9846-4E6F-979C-8B28BECE9104}" = NTI CD & DVD-Maker Platinum Trial
"InstallShield_{69CA6BE2-A39A-447B-812D-73DE710EEAEA}" = NTI CD & DVD-Maker 7 Titanium
"LogWorks3" = LogWorks3
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework Full v1.0.3705 (1033)" = Microsoft .NET Framework (English) v1.0.3705
"Microsoft Visual J# 2.0 Redistributable Package" = Microsoft Visual J# 2.0 Redistributable Package
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA" = NVIDIA Windows 2000/XP Display Drivers
"PQJRE1.4.2" = Proquest Private JRE 1.4.2
"PROSet" = Intel® PRO Network Connections Drivers
"RealPlayer 12.0" = RealPlayer
"SafetyCenter" = SafetyCenter
"VirtualCloneDrive" = VirtualCloneDrive
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR archiver
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 11/5/2009 9:07:26 PM | Computer Name = DESKTOP | Source = ASP.NET 1.0.3705.6018 | ID = 1031
Description =
Error - 11/9/2009 9:22:23 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application wscsvc32.exe, version 1.0.0.1, faulting module
unknown, version 0.0.0.0, fault address 0x3d964023.
Error - 11/9/2009 9:22:35 PM | Computer Name = DESKTOP | Source = Application Hang | ID = 1002
Description = Hanging application wscsvc32.exe, version 1.0.0.1, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 11/9/2009 9:40:39 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application ctfmon.exe, version 5.1.2600.5512, faulting module
unknown, version 0.0.0.0, fault address 0x77124ba2.
Error - 11/9/2009 9:40:54 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application magicjack.exe, version 1.80.499.2, faulting module
unknown, version 0.0.0.0, fault address 0x7816411d.
Error - 11/9/2009 9:42:39 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application b7idm.exe, version 0.0.0.0, faulting module unknown,
version 0.0.0.0, fault address 0x3d953081.
Error - 11/9/2009 9:44:10 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application outlook.exe, version 10.0.2616.0, faulting module
unknown, version 0.0.0.0, fault address 0x781319d8.
Error - 11/9/2009 11:23:20 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application explorer.exe, version 6.0.2900.5512, faulting
module ws2_32.dll, version 5.1.2600.5512, fault address 0x00006a55.
Error - 11/10/2009 12:46:45 AM | Computer Name = DESKTOP | Source = Application Hang | ID = 1002
Description = Hanging application SpybotSD.exe, version 1.6.2.46, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 9/19/2003 2:50:46 AM | Computer Name = DESKTOP | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office XP Professional with FrontPage -- Error
1706. Setup cannot find the required files. Check your connection to the network,
or CD-ROM drive. For other potential solutions to this problem, see C:\Program
Files\Microsoft Office\Office10\1033\SETUP.HLP.
[ Application Events ]
Error - 11/5/2009 9:07:26 PM | Computer Name = DESKTOP | Source = ASP.NET 1.0.3705.6018 | ID = 1031
Description =
Error - 11/9/2009 9:22:23 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application wscsvc32.exe, version 1.0.0.1, faulting module
unknown, version 0.0.0.0, fault address 0x3d964023.
Error - 11/9/2009 9:22:35 PM | Computer Name = DESKTOP | Source = Application Hang | ID = 1002
Description = Hanging application wscsvc32.exe, version 1.0.0.1, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 11/9/2009 9:40:39 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application ctfmon.exe, version 5.1.2600.5512, faulting module
unknown, version 0.0.0.0, fault address 0x77124ba2.
Error - 11/9/2009 9:40:54 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application magicjack.exe, version 1.80.499.2, faulting module
unknown, version 0.0.0.0, fault address 0x7816411d.
Error - 11/9/2009 9:42:39 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application b7idm.exe, version 0.0.0.0, faulting module unknown,
version 0.0.0.0, fault address 0x3d953081.
Error - 11/9/2009 9:44:10 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application outlook.exe, version 10.0.2616.0, faulting module
unknown, version 0.0.0.0, fault address 0x781319d8.
Error - 11/9/2009 11:23:20 PM | Computer Name = DESKTOP | Source = Application Error | ID = 1000
Description = Faulting application explorer.exe, version 6.0.2900.5512, faulting
module ws2_32.dll, version 5.1.2600.5512, fault address 0x00006a55.
Error - 11/10/2009 12:46:45 AM | Computer Name = DESKTOP | Source = Application Hang | ID = 1002
Description = Hanging application SpybotSD.exe, version 1.6.2.46, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 9/19/2003 2:50:46 AM | Computer Name = DESKTOP | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office XP Professional with FrontPage -- Error
1706. Setup cannot find the required files. Check your connection to the network,
or CD-ROM drive. For other potential solutions to this problem, see C:\Program
Files\Microsoft Office\Office10\1033\SETUP.HLP.
[ System Events ]
Error - 11/10/2009 12:46:12 AM | Computer Name = DESKTOP | Source = Dhcp | ID = 1002
Description = The IP address lease 0.0.0.0 for the Network Card with network address
000C41597A5D has been denied by the DHCP server 0.0.0.0 (The DHCP Server sent a
DHCPNACK message).
Error - 11/10/2009 3:16:06 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 4:16:13 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 4:16:44 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 5:16:24 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 5:16:55 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 6:16:34 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 6:17:05 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 7:16:48 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 7:17:18 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
[ System Events ]
Error - 11/10/2009 12:46:12 AM | Computer Name = DESKTOP | Source = Dhcp | ID = 1002
Description = The IP address lease 0.0.0.0 for the Network Card with network address
000C41597A5D has been denied by the DHCP server 0.0.0.0 (The DHCP Server sent a
DHCPNACK message).
Error - 11/10/2009 3:16:06 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 4:16:13 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 4:16:44 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 5:16:24 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 5:16:55 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 6:16:34 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 6:17:05 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 7:16:48 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 11/10/2009 7:17:18 PM | Computer Name = DESKTOP | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
< End of report >
OTL logfile created on: 9/19/2003 4:23:50 AM - Run 1
OTL by OldTimer - Version 3.1.4.0 Folder = C:\Documents and Settings\Kevin\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.12 Gb Total Physical Memory | 0.66 Gb Available Physical Memory | 58.57% Memory free
2.69 Gb Paging File | 2.32 Gb Available in Paging File | 86.19% Paging File free
Paging file location(s): C:\pagefile.sys 1728 3456 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.24 Gb Total Space | 28.16 Gb Free Space | 75.61% Space Free | Partition Type: NTFS
Drive D: | 232.88 Gb Total Space | 109.69 Gb Free Space | 47.10% Space Free | Partition Type: NTFS
Drive E: | 149.05 Gb Total Space | 58.75 Gb Free Space | 39.41% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
Drive I: | 1.63 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive J: | 17.59 Mb Total Space | 17.09 Mb Free Space | 97.12% Space Free | Partition Type: FAT
Drive K: | 247.46 Mb Total Space | 66.09 Mb Free Space | 26.71% Space Free | Partition Type: FAT
Computer Name: DESKTOP
Current User Name: Kevin
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Processes (SafeList) ==========
PRC - [2009/11/02 18:49:21 | 00,704,512 | ---- | M] () -- C:\Program Files\BHPS\lic\bin\bhepcls.exe
PRC - [2009/11/02 18:49:21 | 00,630,272 | ---- | M] (Macrovision Corporation) -- C:\Program Files\BHPS\lic\bin\lmgrd.exe
PRC - [2009/08/01 11:13:44 | 12,231,512 | ---- | M] (magicJack L.P.) -- C:\Documents and Settings\Kevin\Application Data\mjusbsp\magicJack.exe
PRC - [2009/03/05 17:07:20 | 02,260,480 | RHS- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
PRC - [2008/08/22 16:36:16 | 00,528,896 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kevin\Desktop\OTL.exe
PRC - [2008/04/13 19:12:19 | 01,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006/12/14 17:49:10 | 00,061,440 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2005/01/28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe
PRC - [2003/07/28 15:19:00 | 00,077,824 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2001/02/23 10:07:30 | 00,270,336 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
========== Modules (SafeList) ==========
MOD - [2009/08/09 23:42:22 | 00,092,672 | -HS- | M] () -- C:\WINDOWS\system32\botapepe.dll
MOD - [2009/08/09 20:08:43 | 00,052,736 | -HS- | M] () -- C:\WINDOWS\system32\zugowuva.dll
MOD - [2009/03/21 09:06:58 | 00,024,064 | -HS- | M] (Microsoft) -- C:\WINDOWS\system32\calc.dll
MOD - [2008/08/22 16:36:16 | 00,528,896 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kevin\Desktop\OTL.exe
MOD - [2008/04/13 19:12:51 | 01,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
MOD - [2008/04/13 19:11:53 | 00,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2001/08/23 10:00:00 | 00,002,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lz32.dll
========== Win32 Services (SafeList) ==========
SRV - [2009/11/02 18:49:21 | 00,630,272 | ---- | M] () -- C:\PROGRA~1\BHPS\lic\\bin\lmgrd.exe -- (ProQuest Product License Manager)
SRV - [2008/07/29 22:10:04 | 00,046,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0)
SRV - [2008/07/29 20:24:50 | 00,881,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc)
SRV - [2008/07/29 20:16:38 | 00,132,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing)
SRV - [2008/07/25 12:17:02 | 00,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/07/25 12:16:40 | 00,034,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state)
SRV - [2008/04/13 19:12:02 | 00,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHEALTH\HELPCTR\Binaries\pchsvc.dll -- (helpsvc)
SRV - [2006/12/14 17:49:10 | 00,061,440 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService)
SRV - [2005/01/28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe -- (UMWdf)
SRV - [2003/07/28 15:19:00 | 00,077,824 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe -- (NVSvc)
SRV - [2001/02/23 10:07:30 | 00,270,336 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe -- (MDM)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://ie.search.msn...st/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn...st/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft...amp;ar=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/10/30 00:02:04 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{C0ABC75D-BEC3-4B9A-AD79-4AD5CE905567}: C:\Documents and Settings\Kevin\Local Settings\Application Data\{C0ABC75D-BEC3-4B9A-AD79-4AD5CE905567}\ [2009/11/09 20:12:27 | 00,000,000 | ---D | M]
O1 HOSTS File: (350700 bytes) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 mpa.one.microsoft.com
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 12023 more lines...
O2 - BHO: (C:\WINDOWS\system32\azh4sxwk.dll) - {A45A4B15-23F2-42AD-F4E4-00AAC39C0004} - C:\WINDOWS\system32\azh4sxwk.dll ()
O4 - HKLM..\Run: [calc] C:\WINDOWS\System32\calc.DLL (Microsoft)
O4 - HKLM..\Run: [ropopepuk] C:\WINDOWS\System32\botapepe.DLL ()
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [VirtualCloneDrive] C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
O4 - HKCU..\Run: [12CFG214-K641-12SF-N85P] C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe ()
O4 - HKCU..\Run: [A00F44A73.exe] C:\Documents and Settings\Kevin\Local Settings\Temp\_A00F44A73.exe ()
O4 - HKCU..\Run: [A00F587A6.exe] C:\Documents and Settings\Kevin\Local Settings\Temp\_A00F587A6.exe ()
O4 - HKCU..\Run: [A00F72817.exe] C:\Documents and Settings\Kevin\Local Settings\Temp\_A00F72817.exe ()
O4 - HKCU..\Run: [BackUp Windows 2009] C:\Documents and Settings\Kevin\Local Settings\Temp\tqzxv3.exe ()
O4 - HKCU..\Run: [calc] C:\WINDOWS\system32\config\systemprofile\ntuser.dll (Microsoft)
O4 - HKCU..\Run: [cdloader] C:\Documents and Settings\Kevin\Application Data\mjusbsp\cdloader2.exe (magicJack L.P.)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKCU..\Run: [Tji771] C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\fddg.exe ()
O4 - HKCU..\Run: [Yjafosi8kdf98winmdkmnkmfnwe] C:\Documents and Settings\Kevin\Local Settings\Temp\mdm.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Recovery present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 58 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKCU\..Trusted Domains: 57 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71}
http://download.micr...78f/wvc1dmo.cab (Reg Error: Key error.)
O18 - Protocol\Handler\cdo {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (c:\windows\system32\botapepe.dll) - C:\WINDOWS\system32\botapepe.dll ()
O20 - AppInit_DLLs: (zugowuva.dll) - C:\WINDOWS\System32\zugowuva.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: TaskMan - (C:\RECYCLER\S-1-5-21-4126161917-5399697724-792121681-4947\wnzip32.exe) - C:\RECYCLER\S-1-5-21-4126161917-5399697724-792121681-4947\wnzip32.exe ()
O20 - HKCU Winlogon: Shell - (C:\RECYCLER\S-1-5-21-4126161917-5399697724-792121681-4947\wnzip32.exe) - C:\RECYCLER\S-1-5-21-4126161917-5399697724-792121681-4947\wnzip32.exe ()
O20 - HKCU Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKCU Winlogon: Shell - (C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\fddg.exe) - C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455\fddg.exe ()
O20 - Winlogon\Notify\__c002B41: DllName - C:\WINDOWS\system32\__c002B41.dat - C:\WINDOWS\system32\__c002B41.dat ()
O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O21 - SSODL: mahuripub - {d7293f30-fa9a-43ff-bd79-db154c9e94c5} - C:\WINDOWS\system32\botapepe.dll ()
O22 - SharedTaskScheduler: {A45A4B15-23F2-42AD-F4E4-00AAC39C0004} - kjaf83hfriunf3sf9sfinoi\sufh\87sefhuhdd - C:\WINDOWS\system32\azh4sxwk.dll ()
O22 - SharedTaskScheduler: {d7293f30-fa9a-43ff-bd79-db154c9e94c5} - tokatiluy - C:\WINDOWS\system32\botapepe.dll ()
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/10/31 23:08:45 | 00,000,100 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2008/07/21 08:20:07 | 00,027,992 | R--- | M] (magicJack L.P.) - I:\autorun.exe -- [ CDFS ]
O32 - AutoRun File - [2008/07/21 08:20:07 | 00,016,158 | R--- | M] () - I:\autorun.ico -- [ CDFS ]
O32 - AutoRun File - [2008/07/21 08:20:07 | 00,000,308 | R--- | M] () - I:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2008/07/21 08:20:07 | 00,706,144 | R--- | M] (magicJack L.P.) - I:\autorunu.exe -- [ CDFS ]
O32 - AutoRun File - [2009/08/01 10:55:38 | 00,000,270 | ---- | M] () - J:\autorun.inf -- [ FAT ]
O32 - Unable to obtain root file information for disk K:\
O33 - MountPoints2\{a1373da5-bde4-11de-986e-000c41597a5d}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{a1373da5-bde4-11de-986e-000c41597a5d}\Shell\AutoRun\command - "" = I:\autorun.exe -- [2008/07/21 08:20:07 | 00,027,992 | R--- | M] (magicJack L.P.)
O33 - MountPoints2\{a1373da5-bde4-11de-986e-000c41597a5d}\Shell\phone\command - "" = I:\autorun.exe -- [2008/07/21 08:20:07 | 00,027,992 | R--- | M] (magicJack L.P.)
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009/10/20 15:16:01 | 00,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: helpsvc - C:\WINDOWS\PCHEALTH\HELPCTR\Binaries\pchsvc.dll (Microsoft Corporation)
NetSvcs: Ip6FwHlp - File not found
========== Files/Folders - Created Within 14 Days ==========
[2009/11/10 18:08:19 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\gmer
[2009/11/10 00:03:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\Windows Search
[2009/11/09 20:12:27 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Local Settings\Application Data\{C0ABC75D-BEC3-4B9A-AD79-4AD5CE905567}
[2009/11/09 20:11:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Local Settings\Application Data\fontatmgfx
[2009/11/08 17:44:03 | 00,000,000 | --SD | C] -- C:\Documents and Settings\Kevin\My Documents\My Webs
[2009/11/05 20:16:25 | 00,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2009/11/05 20:15:55 | 00,000,000 | ---D | C] -- C:\WINDOWS\ie7updates
[2009/11/05 20:15:05 | 00,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2009/11/05 20:13:42 | 00,000,000 | -H-D | C] -- C:\WINDOWS\ie7
[2009/11/05 20:13:25 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
[2009/11/05 20:13:00 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
[2009/11/02 18:49:28 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Macrovision
[2009/11/02 18:28:19 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\BHPS
[2009/11/02 18:28:05 | 00,000,000 | ---D | C] -- C:\Program Files\BHPS
[2009/11/01 20:59:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Local Settings\Application Data\Adobe
[2009/11/01 18:04:20 | 00,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2009/11/01 18:04:20 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2009/10/31 23:20:56 | 01,056,768 | ---- | C] (eHelp Corporation.) -- C:\WINDOWS\System32\ROBOEX32.DLL
[2009/10/31 23:19:45 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\LightScribe
[2009/10/31 23:18:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\SendTo
[2009/10/31 23:08:19 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\NewTech Infosystems
[2009/10/31 23:06:14 | 00,000,000 | ---D | C] -- C:\Program Files\Elaborate Bytes
[2009/10/31 22:45:06 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2009/10/30 00:01:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Local Settings\Application Data\ApplicationHistory
[2009/10/29 23:57:00 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\windowspowershell
[2009/10/29 23:53:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Local Settings\Application Data\Identities
[2009/10/29 23:53:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\Windows Desktop Search
[2009/10/29 23:53:16 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\GroupPolicy
[2009/10/29 23:53:16 | 00,000,000 | ---D | C] -- C:\Program Files\Windows Desktop Search
[2009/10/29 20:38:39 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\Malwarebytes
[2009/10/29 20:38:34 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/10/29 20:38:31 | 00,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/10/29 20:38:31 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2009/10/27 23:50:27 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2009/10/27 23:50:18 | 00,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2009/10/27 23:50:01 | 00,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2009/10/27 23:26:51 | 00,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2009/10/27 22:15:11 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2009/10/27 22:15:10 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2009/10/27 22:15:10 | 00,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2009/10/27 22:15:09 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2009/10/27 22:10:21 | 00,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2009/10/27 21:30:24 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\muvee Technologies
[2009/10/27 21:30:19 | 00,226,816 | ---- | C] (honest technology) -- C:\WINDOWS\System32\htvcdsvcd.ax
[2009/10/27 21:30:03 | 00,000,000 | ---D | C] -- C:\Program Files\NewTech Infosystems
[2009/10/27 21:29:26 | 00,006,144 | ---- | C] (NewTech Infosystems, Inc.) -- C:\WINDOWS\System32\drivers\NTIDrvr.sys
[2009/10/27 21:25:13 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\WinRAR
[2009/10/27 21:23:43 | 00,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2009/10/27 14:08:35 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\DivX
[2009/10/26 15:44:05 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\My Documents\Downloads
[2009/10/26 15:42:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\My Documents\My eBooks
[2009/10/26 15:42:16 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2009/10/26 15:36:56 | 00,000,000 | ---D | C] -- C:\Program Files\Gtech PASS RR 2.0
[2009/10/26 14:33:44 | 00,000,000 | ---D | C] -- C:\Program Files\DIFX
[2009/10/26 14:33:31 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2009/10/26 14:33:27 | 00,000,000 | ---D | C] -- C:\Program Files\LogWorks3
[2009/10/26 14:30:46 | 00,000,000 | ---D | C] -- C:\Program Files\Haltech
[2009/10/26 14:30:32 | 00,299,520 | ---- | C] (InstallShield Corporation, Inc.) -- C:\WINDOWS\uninst.exe
[2009/10/26 14:30:31 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\WINDOWS
[2009/10/26 13:53:21 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio
[2009/10/26 13:53:21 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Designer
[2009/10/26 13:52:25 | 00,000,000 | ---D | C] -- C:\WINDOWS\ShellNew
[2009/10/26 13:52:23 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\L&H
[2009/10/26 13:52:16 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2009/10/21 20:01:25 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Kevin\My Documents\My Videos
[2009/10/21 19:48:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Local Settings\Application Data\IsolatedStorage
[2009/10/21 19:48:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\ProspectorV5
[2009/10/21 19:47:17 | 00,000,000 | ---D | C] -- C:\Program Files\MoxieProxy
[2009/10/21 18:20:26 | 00,000,000 | ---D | C] -- C:\WINDOWS\Downloaded Installations
[2009/10/21 18:12:53 | 00,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2009/10/21 17:31:57 | 00,000,000 | ---D | C] -- C:\WINDOWS\provisioning
[2009/10/21 07:23:38 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Local Settings\Application Data\tjnet
[2009/10/20 23:59:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\mjusbsp
[2009/10/20 23:44:47 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2009/10/20 23:43:19 | 00,000,000 | ---D | C] -- C:\WINDOWS\nview
[2009/10/20 23:38:15 | 00,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Videos
[2009/10/20 23:38:07 | 00,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2009/10/20 23:37:32 | 00,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2009/10/20 23:35:38 | 00,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2009/10/20 23:35:38 | 00,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2009/10/20 23:35:37 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTemp
[2009/10/20 22:56:48 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2009/10/20 22:56:45 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2009/10/20 22:56:22 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2009/10/20 22:54:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2009/10/20 22:45:58 | 00,000,000 | ---D | C] -- C:\Program Files\CARSOFT
[2009/10/20 22:45:49 | 00,000,000 | ---D | C] -- C:\cm75f
[2009/10/20 22:43:41 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\FlashFXP
[2009/10/20 22:43:16 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\XBSM45
[2009/10/20 22:43:16 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\Winmx
[2009/10/20 22:43:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\TMPEGnc
[2009/10/20 22:42:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\Snead
[2009/10/20 22:42:47 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\Emulators
[2009/10/20 22:42:47 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\Car software
[2009/10/20 22:42:01 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\Need For Speed 5 - Porsche Unleashed
[2009/10/20 22:42:00 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\KTJ Trading
[2009/10/20 22:41:52 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\hijackthis
[2009/10/20 22:41:31 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop\Car
[2009/10/20 22:32:26 | 00,000,000 | ---D | C] -- C:\Program Files\DivX
[2009/10/20 22:32:22 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\DivX Shared
[2009/10/20 22:29:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\BitTorrent
[2009/10/20 22:28:44 | 00,000,000 | ---D | C] -- C:\Program Files\BitTorrent
[2009/10/20 22:13:38 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\xing shared
[2009/10/20 22:13:27 | 00,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2009/10/20 22:13:27 | 00,000,000 | ---D | C] -- C:\Program Files\Real
[2009/10/20 22:13:26 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Real
[2009/10/20 22:13:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\Real
[2009/10/20 22:13:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Real
[2009/10/20 22:11:31 | 00,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2009/10/20 22:11:31 | 00,000,000 | ---D | C] -- C:\WINDOWS\ehome
[2009/10/20 22:07:12 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2009/10/20 22:06:47 | 00,000,000 | ---D | C] -- C:\Program Files\Adobe
[2009/10/20 22:05:40 | 00,000,000 | ---D | C] -- C:\WINDOWS\Cache
[2009/10/20 21:57:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\Macromedia
[2009/10/20 21:57:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\Adobe
[2009/10/20 21:47:18 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2009/10/20 21:41:28 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2009/10/20 21:39:54 | 00,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2009/10/20 21:39:45 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\Kevin\UserData
[2009/10/20 21:13:58 | 00,000,000 | RHSD | C] -- C:\RECYCLER
[2009/10/20 21:03:33 | 00,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2009/10/20 21:02:10 | 00,107,648 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnetusbl.sys
[2009/10/20 21:02:09 | 00,122,112 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnet58lx.sys
[2009/10/20 21:02:09 | 00,122,112 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnet58l.sys
[2009/10/20 21:02:09 | 00,107,648 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnetu9xl.sys
[2009/10/20 21:02:09 | 00,072,704 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\NETUSBXP.SYS
[2009/10/20 21:02:09 | 00,070,016 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\NETUSB.SYS
[2009/10/20 21:02:09 | 00,069,376 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnetusbxp.sys
[2009/10/20 21:02:09 | 00,066,816 | ---- | C] (Cisco Linksys LLC.) -- C:\WINDOWS\System32\drivers\VNETUSBA.SYS
[2009/10/20 21:02:09 | 00,049,936 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\PRISM9x.SYS
[2009/10/20 21:02:09 | 00,049,752 | ---- | C] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\PRISMXP.SYS
[2009/10/20 21:02:09 | 00,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2009/10/20 21:02:09 | 00,000,000 | ---D | C] -- C:\Program Files\WUSB11 WLAN Monitor
[2009/10/20 21:02:07 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2009/10/20 20:59:50 | 00,000,000 | ---D | C] -- C:\Linksys Driver
[2009/10/20 20:58:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\pss
[2009/10/20 20:54:20 | 00,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2009/10/20 20:54:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Application Data\Identities
[2009/10/20 20:54:14 | 00,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2009/10/20 20:54:13 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Kevin\My Documents\My Pictures
[2009/10/20 20:54:13 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Kevin\My Documents\My Music
[2009/10/20 20:54:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Local Settings\Application Data\Microsoft
[2009/10/20 20:54:08 | 00,000,000 | --SD | C] -- C:\Documents and Settings\Kevin\Application Data\Microsoft
[2009/10/20 20:54:08 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Kevin\SendTo
[2009/10/20 20:54:08 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Kevin\Recent
[2009/10/20 20:54:08 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Kevin\Application Data
[2009/10/20 20:54:08 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Kevin\Start Menu
[2009/10/20 20:54:08 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Kevin\My Documents
[2009/10/20 20:54:08 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Kevin\Favorites
[2009/10/20 20:54:08 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\Kevin\Cookies
[2009/10/20 20:54:08 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Kevin\Templates
[2009/10/20 20:54:08 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Kevin\PrintHood
[2009/10/20 20:54:08 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Kevin\NetHood
[2009/10/20 20:54:08 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Kevin\Local Settings
[2009/10/20 20:54:08 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Kevin\Desktop
[2009/10/20 20:53:26 | 00,000,000 | -HSD | C] -- C:\System Volume Information
[2009/10/20 20:44:31 | 00,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2009/10/20 20:44:31 | 00,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2009/10/20 20:43:52 | 00,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2009/10/20 20:43:52 | 00,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2009/10/20 20:43:52 | 00,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2009/10/20 20:43:43 | 00,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2009/10/20 20:43:24 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2009/10/20 20:43:24 | 00,000,000 | ---D | C] -- C:\Program Files\xerox
[2009/10/20 20:43:24 | 00,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2009/10/20 20:42:17 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2009/10/20 20:42:09 | 00,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2009/10/20 20:42:09 | 00,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2009/10/20 20:41:47 | 00,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2009/10/20 20:41:42 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2009/10/20 20:41:42 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2009/10/20 20:41:28 | 00,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2009/10/20 20:34:33 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2009/10/20 20:34:32 | 00,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2009/10/20 20:34:28 | 00,000,000 | ---D | C] -- C:\WINDOWS\PCHEALTH
[2009/10/20 20:34:28 | 00,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2009/10/20 20:34:27 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2009/10/20 20:34:23 | 00,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2009/10/20 20:34:23 | 00,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2009/10/20 20:34:20 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2009/10/20 20:34:17 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2009/10/20 20:34:14 | 00,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2009/10/20 20:34:13 | 00,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Pictures
[2009/10/20 20:34:13 | 00,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Music
[2009/10/20 20:33:37 | 00,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2009/10/20 20:33:31 | 00,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2009/10/20 20:33:26 | 00,000,000 | ---D | C] -- C:\Program Files\Messenger
[2009/10/20 20:33:21 | 00,000,000 | ---D | C] -- C:\Program Files\MSN
[2009/10/20 20:33:18 | 00,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2009/10/20 20:33:10 | 00,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2009/10/20 20:33:01 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2009/10/20 20:32:59 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[2009/10/20 15:28:41 | 00,871,388 | ---- | C] (BCM) -- C:\WINDOWS\System32\drivers\BCMDM.sys
[2009/10/20 15:27:14 | 00,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu
[2009/10/20 15:27:14 | 00,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents
[2009/10/20 15:27:14 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Templates
[2009/10/20 15:27:14 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
[2009/10/20 15:27:14 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Desktop
[2009/10/20 15:26:56 | 00,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2009/10/20 15:26:56 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data
[2009/10/20 15:26:45 | 00,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2009/10/20 15:18:39 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2009/10/20 15:18:37 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2009/10/20 15:18:36 | 00,000,000 | R--D | C] -- C:\Program Files
[2009/10/20 15:18:36 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2009/10/20 15:18:36 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files
[2009/10/20 15:18:05 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2009/10/20 15:18:05 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2009/10/20 15:17:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings
[2009/10/20 15:06:53 | 00,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2009/10/20 15:06:53 | 00,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2009/10/20 15:06:53 | 00,000,000 | R--D | C] -- C:\WINDOWS\Web
[2009/10/20 15:06:53 | 00,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\system32
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\system
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\security
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\repair
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\mui
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Media
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\java
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\ime
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Help
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\Config
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\addins
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2009/10/20 15:06:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2009/09/25 11:41:28 | 00,090,112 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\dpl100.dll
[2009/09/25 11:41:26 | 00,856,064 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx0c.dll
[2009/09/25 11:41:26 | 00,856,064 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx07.dll
[2009/09/25 11:41:26 | 00,847,872 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx0a.dll
[2009/09/25 11:41:26 | 00,843,776 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx16.dll
[2009/09/25 11:41:26 | 00,839,680 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx11.dll
[2009/09/25 11:41:26 | 00,696,320 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\DivX.dll
[2009/05/25 07:16:28 | 00,134,312 | ---- | C] (Elaborate Bytes AG) -- C:\WINDOWS\System32\ElbyVCD.dll
[2009/05/25 07:01:38 | 00,089,256 | ---- | C] (Elaborate Bytes AG) -- C:\WINDOWS\System32\ElbyCDIO.dll
[2009/05/22 18:08:32 | 00,029,696 | ---- | C] (Elaborate Bytes AG) -- C:\WINDOWS\System32\drivers\VClone.sys
[2009/05/12 06:32:46 | 01,769,800 | ---- | C] (Softel vdm, Inc.) -- C:\WINDOWS\System32\SftBox_IX86_U_45.ocx
[2009/02/17 12:11:30 | 00,024,232 | ---- | C] (Elaborate Bytes AG) -- C:\WINDOWS\System32\drivers\ElbyCDIO.sys
[2008/08/22 16:36:13 | 00,528,896 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Kevin\Desktop\OTL.exe
[2002/04/11 00:41:00 | 00,065,536 | ---- | C] ( ) -- C:\WINDOWS\System32\A3d.dll
========== Files - Modified Within 14 Days ==========
[2009/11/10 00:17:12 | 00,015,000 | ---- | M] () -- C:\WINDOWS\System32\cbkpew.dll
[2009/11/10 00:15:30 | 00,015,000 | ---- | M] () -- C:\WINDOWS\System32\w3h7to9.dll
[2009/11/10 00:08:22 | 06,029,312 | -H-- | M] () -- C:\Documents and Settings\Kevin\NTUSER.DAT
[2009/11/10 00:08:22 | 00,000,278 | -HS- | M] () -- C:\Documents and Settings\Kevin\ntuser.ini
[2009/11/10 00:05:08 | 00,015,000 | ---- | M] () -- C:\WINDOWS\System32\feqio394si.dll
[2009/11/09 23:52:47 | 00,027,648 | ---- | M] () -- C:\WINDOWS\System32\__c002B41.dat
[2009/11/09 23:52:24 | 00,015,000 | ---- | M] () -- C:\WINDOWS\System32\azh4sxwk.dll
[2009/11/09 23:45:18 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At23.job
[2009/11/09 23:44:32 | 00,000,599 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/11/09 23:44:32 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2009/11/09 23:44:32 | 00,000,211 | RHS- | M] () -- C:\boot.ini
[2009/11/09 23:41:53 | 00,000,656 | ---- | M] () -- C:\WINDOWS\wininit.ini
[2009/11/09 23:41:24 | 00,350,700 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2009/11/09 22:22:41 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At22.job
[2009/11/09 22:22:41 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At21.job
[2009/11/09 22:22:41 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At20.job
[2009/11/09 22:19:52 | 00,014,336 | ---- | M] () -- C:\Documents and Settings\Kevin\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/11/09 20:12:30 | 00,000,000 | ---- | M] () -- C:\WINDOWS\Gxujutih.bin
[2009/11/09 20:12:29 | 00,000,120 | ---- | M] () -- C:\WINDOWS\Asofulicaken.dat
[2009/11/09 20:10:01 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At19.job
[2009/11/09 20:09:27 | 00,000,826 | ---- | M] () -- C:\WINDOWS\System32\wininit.dll
[2009/11/05 20:16:15 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009/11/02 19:10:04 | 00,000,128 | ---- | M] () -- C:\Documents and Settings\Kevin\Local Settings\Application Data\fusioncache.dat
[2009/11/02 18:52:11 | 00,001,744 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Chrysler PAIS DVD International EPC.lnk
[2009/11/01 20:59:22 | 00,020,328 | ---- | M] () -- C:\Documents and Settings\Kevin\Application Data\GDIPFONTCACHEV1.DAT
[2009/11/01 18:11:26 | 00,348,900 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20091109-224124.backup
[2009/11/01 08:40:23 | 00,020,328 | ---- | M] () -- C:\Documents and Settings\Kevin\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/10/31 23:20:43 | 00,001,024 | RH-- | M] () -- C:\WINDOWS\System32\NTIBUN4.dll
[2009/10/31 23:20:22 | 00,000,320 | ---- | M] () -- C:\WINDOWS\setup.iss
[2009/10/31 23:18:41 | 00,001,024 | RH-- | M] () -- C:\WINDOWS\System32\NTIMPEG2.dll
[2009/10/31 23:18:41 | 00,001,024 | RH-- | M] () -- C:\WINDOWS\System32\NTIMP3.dll
[2009/10/31 23:18:41 | 00,001,024 | RH-- | M] () -- C:\WINDOWS\System32\NTIJCMK5.dll
[2009/10/31 23:18:41 | 00,001,024 | RH-- | M] () -- C:\WINDOWS\System32\NTIFCD3.dll
[2009/10/31 23:18:41 | 00,001,024 | RH-- | M] () -- C:\WINDOWS\System32\NTICDMK7.dll
[2009/10/31 23:18:32 | 00,006,144 | ---- | M] (NewTech Infosystems, Inc.) -- C:\WINDOWS\System32\drivers\NTIDrvr.sys
[2009/10/31 23:12:10 | 00,001,024 | RH-- | M] () -- C:\WINDOWS\System32\NTIDBD32.dll
[2009/10/31 23:08:45 | 00,000,100 | ---- | M] () -- C:\AUTOEXEC.BAT
[2009/10/30 08:18:17 | 00,119,744 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/10/27 23:27:21 | 00,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2009/10/27 23:25:37 | 05,355,886 | -H-- | M] () -- C:\Documents and Settings\Kevin\Local Settings\Application Data\IconCache.db
[2009/10/27 22:10:02 | 00,250,048 | RHS- | M] () -- C:\ntldr
[2009/10/26 14:33:30 | 00,125,670 | ---- | M] () -- C:\WINDOWS\LogWorks3 Uninstaller.exe
[2009/10/26 13:55:06 | 00,000,376 | ---- | M] () -- C:\WINDOWS\ODBC.INI
[2009/10/21 17:24:57 | 00,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2009/10/20 23:53:38 | 00,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2009/10/20 23:53:38 | 00,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2009/10/20 22:28:56 | 00,000,728 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\BitTorrent.lnk
[2009/10/20 22:15:16 | 00,000,781 | RHS- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20091101-171126.backup
[2009/10/20 22:13:27 | 00,278,528 | ---- | M] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2009/10/20 20:54:19 | 00,025,065 | ---- | M] () -- C:\WINDOWS\System32\wmpscheme.xml
[2009/10/20 20:45:44 | 00,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2009/10/20 20:44:54 | 00,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2009/10/20 20:43:06 | 00,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2009/10/20 20:43:06 | 00,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2009/10/20 20:43:06 | 00,000,000 | RHS- | M] () -- C:\IO.SYS
[2009/10/20 20:43:06 | 00,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2009/10/20 20:43:06 | 00,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2009/10/20 20:43:03 | 00,299,552 | ---- | M] () -- C:\WINDOWS\WMSysPrx.prx
[2009/10/20 20:42:57 | 00,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2009/10/20 20:42:08 | 00,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2009/10/20 20:42:08 | 00,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2009/10/20 20:33:54 | 00,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009/10/20 20:33:41 | 00,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2009/10/20 20:33:41 | 00,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2009/09/25 11:41:28 | 00,090,112 | ---- | M] (DivX, Inc.) -- C:\WINDOWS\System32\dpl100.dll
[2009/09/25 11:41:26 | 00,856,064 | ---- | M] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx0c.dll
[2009/09/25 11:41:26 | 00,856,064 | ---- | M] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx07.dll
[2009/09/25 11:41:26 | 00,847,872 | ---- | M] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx0a.dll
[2009/09/25 11:41:26 | 00,843,776 | ---- | M] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx16.dll
[2009/09/25 11:41:26 | 00,839,680 | ---- | M] (DivX, Inc.) -- C:\WINDOWS\System32\divx_xx11.dll
[2009/09/25 11:41:26 | 00,696,320 | ---- | M] (DivX, Inc.) -- C:\WINDOWS\System32\DivX.dll
[2009/09/10 15:54:06 | 00,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/09/10 15:53:50 | 00,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/09/07 01:30:02 | 01,481,728 | ---- | M] () -- C:\WINDOWS\System32\LegitCheckControl.dll
[2009/09/07 01:30:02 | 00,414,208 | ---- | M] () -- C:\WINDOWS\System32\WgaTray.exe
[2009/09/07 01:30:02 | 00,190,976 | ---- | M] () -- C:\WINDOWS\System32\WgaLogon.dll
[2009/08/09 23:42:23 | 00,045,056 | -HS- | M] () -- C:\WINDOWS\System32\fudimapo.dll
[2009/08/09 23:42:22 | 00,092,672 | -HS- | M] () -- C:\WINDOWS\System32\botapepe.dll
[2009/08/09 23:42:22 | 00,039,424 | -HS- | M] () -- C:\WINDOWS\System32\lewabenu.dll
[2009/08/09 20:14:20 | 00,039,424 | -HS- | M] () -- C:\WINDOWS\System32\yagerumu.dll
[2009/08/09 20:14:18 | 00,115,200 | -HS- | M] () -- C:\WINDOWS\System32\seretisa.exe
[2009/08/09 20:14:18 | 00,045,056 | -HS- | M] () -- C:\WINDOWS\System32\bojigenu.dll
[2009/08/09 20:08:43 | 00,052,736 | -HS- | M] () -- C:\WINDOWS\System32\zugowuva.dll
[2009/08/09 20:08:43 | 00,052,736 | -HS- | M] () -- C:\WINDOWS\System32\nelufuyu.dll
[2009/08/09 20:08:43 | 00,052,736 | -HS- | M] () -- C:\WINDOWS\System32\guromome.dll
[2009/06/03 14:09:37 | 01,291,264 | ---- | M] () -- C:\WINDOWS\System32\quartz.dll
[2009/06/03 14:09:37 | 01,291,264 | ---- | M] () -- C:\WINDOWS\System32\dllcache\quartz.dll
[2009/05/25 07:16:28 | 00,134,312 | ---- | M] (Elaborate Bytes AG) -- C:\WINDOWS\System32\ElbyVCD.dll
[2009/05/25 07:01:38 | 00,089,256 | ---- | M] (Elaborate Bytes AG) -- C:\WINDOWS\System32\ElbyCDIO.dll
[2009/05/22 18:08:32 | 00,029,696 | ---- | M] (Elaborate Bytes AG) -- C:\WINDOWS\System32\drivers\VClone.sys
[2009/05/17 12:59:10 | 05,258,387 | ---- | M] () -- C:\Documents and Settings\Kevin\Desktop\E_911_83_KATALOG.pdf
[2009/05/12 06:32:46 | 01,769,800 | ---- | M] (Softel vdm, Inc.) -- C:\WINDOWS\System32\SftBox_IX86_U_45.ocx
[2009/03/27 01:58:38 | 01,203,922 | ---- | M] () -- C:\WINDOWS\System32\dllcache\sysmain.sdb
[2009/02/17 12:11:30 | 00,024,232 | ---- | M] (Elaborate Bytes AG) -- C:\WINDOWS\System32\drivers\ElbyCDIO.sys
[2009/01/09 14:19:28 | 01,089,593 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntprint.cat
[2008/08/22 16:36:16 | 00,528,896 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kevin\Desktop\OTL.exe
[2008/07/19 23:09:55 | 00,014,336 | ---- | M] () -- C:\Documents and Settings\Kevin\Desktop\House.xls
[2008/06/13 20:03:52 | 03,062,635 | ---- | M] () -- C:\Documents and Settings\Kevin\Desktop\OM_CDE-9874.pdf
[2008/05/29 22:49:21 | 05,036,032 | ---- | M] () -- C:\Documents and Settings\Kevin\Desktop\Pistons.doc
[2008/05/26 22:59:42 | 00,018,904 | ---- | M] () -- C:\WINDOWS\System32\structuredqueryschematrivial.bin
[2008/05/26 22:59:40 | 00,106,605 | ---- | M] () -- C:\WINDOWS\System32\structuredqueryschema.bin
[2008/04/13 19:25:26 | 00,001,804 | ---- | M] () -- C:\WINDOWS\System32\dcache.bin
[2008/04/13 19:12:43 | 00,239,616 | ---- | M] () -- C:\WINDOWS\System32\wstrenderer.ax
[2008/04/13 19:12:43 | 00,164,352 | ---- | M] () -- C:\WINDOWS\System32\wstpager.ax
[2008/04/13 19:12:42 | 00,148,992 | ---- | M] () -- C:\WINDOWS\System32\mpg2splt.ax
[2008/04/13 19:12:42 | 00,118,272 | ---- | M] () -- C:\WINDOWS\System32\mpeg2data.ax
[2008/04/13 19:12:42 | 00,053,248 | ---- | M] () -- C:\WINDOWS\System32\vbicodec.ax
[2008/04/13 19:12:04 | 00,270,848 | ---- | M] () -- C:\WINDOWS\System32\sbe.dll
[2008/04/13 19:12:03 | 00,562,176 | ---- | M] () -- C:\WINDOWS\System32\qedit.dll
[2008/04/13 19:12:03 | 00,386,048 | ---- | M] () -- C:\WINDOWS\System32\qdvd.dll
[2008/04/13 19:12:03 | 00,279,040 | ---- | M] () -- C:\WINDOWS\System32\qdv.dll
[2008/04/13 19:12:03 | 00,192,512 | ---- | M] () -- C:\WINDOWS\System32\qcap.dll
[2008/04/13 19:11:59 | 00,014,336 | ---- | M] () -- C:\WINDOWS\System32\msdmo.dll
[2008/04/13 19:11:56 | 00,035,328 | ---- | M] () -- C:\WINDOWS\System32\mciqtz32.dll
[2008/04/13 19:11:53 | 00,186,880 | ---- | M] () -- C:\WINDOWS\System32\encdec.dll
[2008/04/13 19:11:52 | 00,498,742 | ---- | M] () -- C:\WINDOWS\System32\dxmasf.dll
[2008/04/13 19:11:51 | 00,252,928 | ---- | M] () -- C:\WINDOWS\System32\compatui.dll
[2008/04/13 19:11:51 | 00,059,904 | ---- | M] () -- C:\WINDOWS\System32\devenum.dll
[2008/04/13 19:11:49 | 00,070,656 | ---- | M] () -- C:\WINDOWS\System32\amstream.dll
[2008/04/13 19:10:08 | 00,844,314 | ---- | M] () -- C:\WINDOWS\System32\msdxm.ocx
[2008/04/13 19:10:08 | 00,004,126 | ---- | M] () -- C:\WINDOWS\System32\msdxmlc.dll
[2008/04/13 19:09:39 | 13,463,552 | ---- | M] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2008/04/13 12:26:09 | 00,004,310 | ---- | M] () -- C:\WINDOWS\System32\odbcconf.rsp
[2008/04/13 12:21:32 | 00,733,696 | ---- | M] () -- C:\WINDOWS\System32\qedwipes.dll
[2008/02/29 04:09:58 | 00,265,948 | ---- | M] () -- C:\WINDOWS\System32\locale.nls
[2007/09/27 11:51:02 | 00,020,698 | ---- | M] () -- C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 11:51:02 | 00,004,640 | ---- | M] () -- C:\WINDOWS\System32\idxcntrs.h
[2007/09/27 11:48:48 | 00,030,628 | ---- | M] () -- C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 11:48:48 | 00,002,590 | ---- | M] () -- C:\WINDOWS\System32\gsrvctr.h
[2007/09/27 11:48:28 | 00,031,698 | ---- | M] () -- C:\WINDOWS\System32\gthrctr.ini
[2007/09/27 11:48:28 | 00,003,100 | ---- | M] () -- C:\WINDOWS\System32\gthrctr.h
[2007/08/13 19:06:32 | 00,056,700 | ---- | M] () -- C:\WINDOWS\System32\ieuinit.inf
[2007/06/21 00:52:36 | 00,000,974 | ---- | M] () -- C:\WINDOWS\System32\pid.inf
[2007/04/02 07:49:20 | 00,355,112 | ---- | M] () -- C:\WINDOWS\System32\msjetoledb40.dll
[2006/12/29 13:08:31 | 00,023,044 | ---- | M] () -- C:\WINDOWS\System32\sorttbls.nls
[2006/12/14 17:53:36 | 02,819,584 | ---- | M] () -- C:\WINDOWS\System32\LS_HSI.msi
[2006/09/23 14:12:38 | 00,074,715 | ---- | M] () -- C:\WINDOWS\System32\IE7Eula.rtf
[2006/09/01 09:44:04 | 00,008,798 | ---- | M] () -- C:\WINDOWS\System32\icrav03.rat
[2006/09/01 09:44:04 | 00,001,988 | ---- | M] () -- C:\WINDOWS\System32\ticrf.rat
[2006/08/12 17:19:17 | 00,018,432 | ---- | M] () -- C:\Documents and Settings\Kevin\Desktop\US Supply and Demand.xls
[2006/06/08 13:06:50 | 00,066,384 | ---- | M] () -- C:\WINDOWS\System32\normnfkc.nls
[2006/06/08 13:06:50 | 00,060,294 | ---- | M] () -- C:\WINDOWS\System32\normnfkd.nls
[2006/06/08 13:06:50 | 00,059,342 | ---- | M] () -- C:\WINDOWS\System32\normidna.nls
[2006/06/08 13:06:50 | 00,045,794 | ---- | M] () -- C:\WINDOWS\System32\normnfc.nls
[2006/06/08 13:06:50 | 00,039,284 | ---- | M] () -- C:\WINDOWS\System32\normnfd.nls
[2005/09/03 09:04:30 | 00,196,096 | ---- | M] () -- C:\Documents and Settings\Kevin\Desktop\Loan table.xls
[2005/05/19 07:38:26 | 00,005,178 | ---- | M] () -- C:\WINDOWS\System32\e100b325.din
[2004/12/17 16:14:44 | 00,013,952 | ---- | M] () -- C:\WINDOWS\System32\drivers\UBHelper.sys
[2004/08/04 00:51:21 | 00,053,840 | ---- | M] () -- C:\WINDOWS\System32\dosx.exe
[2004/08/04 00:48:44 | 00,003,338 | ---- | M] () -- C:\WINDOWS\System32\redir.exe
[2004/08/02 14:20:40 | 00,007,208 | ---- | M] () -- C:\WINDOWS\System32\secupd.sig
[2004/08/02 14:20:40 | 00,004,569 | ---- | M] () -- C:\WINDOWS\System32\secupd.dat
[2004/07/18 00:55:22 | 00,129,045 | ---- | M] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2004/07/17 13:46:13 | 00,053,478 | ---- | M] () -- C:\WINDOWS\System32\tcpmon.ini
[2004/07/17 13:38:21 | 00,956,990 | ---- | M] () -- C:\WINDOWS\System32\instcat.sql
[2004/07/17 13:36:22 | 00,064,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2004/07/17 13:35:24 | 01,326,080 | ---- | M] () -- C:\WINDOWS\System32\webfldrs.msi
[2004/05/17 17:43:09 | 00,035,424 | ---- | M] () -- C:\WINDOWS\System32\ntio412.sys
[2004/05/17 17:43:09 | 00,035,424 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio412.sys
[2004/05/17 17:43:07 | 00,034,560 | ---- | M] () -- C:\WINDOWS\System32\ntio404.sys
[2004/05/17 17:43:07 | 00,034,560 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio404.sys
[2004/05/17 17:43:06 | 00,034,560 | ---- | M] () -- C:\WINDOWS\System32\ntio804.sys
[2004/05/17 17:43:06 | 00,034,560 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio804.sys
[2004/05/17 17:43:04 | 00,035,648 | ---- | M] () -- C:\WINDOWS\System32\ntio411.sys
[2004/05/17 17:43:04 | 00,035,648 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio411.sys
[2004/05/17 17:43:02 | 00,033,840 | ---- | M] () -- C:\WINDOWS\System32\ntio.sys
[2004/03/26 14:08:54 | 00,122,112 | ---- | M] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnet58lx.sys
[2004/03/26 14:08:14 | 00,107,648 | ---- | M] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnetusbl.sys
[2004/03/26 14:06:48 | 00,122,112 | ---- | M] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnet58l.sys
[2004/03/26 14:06:10 | 00,107,648 | ---- | M] (Cisco-Linksys LLC.) -- C:\WINDOWS\System32\drivers\vnetu9xl.sys
[2003/09/19 04:22:58 | 00,001,744 | -H-- | M] () -- C:\WINDOWS\System32\rehuwido
[2003/09/19 01:31:40 | 00,551,164 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2003/09/19 01:31:40 | 00,462,168 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2003/09/19 01:31:40 | 00,078,114 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2003/09/19 01:28:25 | 00,001,004 | ---- | M] () -- C:\Documents and Settings\Kevin\Desktop\magicJack.lnk
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At9.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At8.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At7.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At6.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At5.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At24.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At18.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At17.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At16.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At13.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
[2003/09/19 01:27:19 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2003/09/19 01:27:18 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2003/09/19 01:27:18 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At10.job
[2003/09/19 01:27:18 | 00,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[2003/09/19 01:27:17 | 00,002,262 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2003/09/19 01:27:16 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
========== Files Created - No Company Name ==========
[2009/11/10 00:17:14 | 00,027,648 | ---- | C] () -- C:\WINDOWS\System32\__c005694C.dat
[2009/11/10 00:17:12 | 00,015,000 | ---- | C] () -- C:\WINDOWS\System32\cbkpew.dll
[2009/11/10 00:15:30 | 00,015,000 | ---- | C] () -- C:\WINDOWS\System32\w3h7to9.dll
[2009/11/10 00:15:28 | 00,027,648 | ---- | C] () -- C:\WINDOWS\System32\__c00AB78E.dat
[2009/11/10 00:05:08 | 00,027,648 | ---- | C] () -- C:\WINDOWS\System32\__c00EB614.dat
[2009/11/10 00:05:08 | 00,015,000 | ---- | C] () -- C:\WINDOWS\System32\feqio394si.dll
[2009/11/09 23:52:35 | 00,027,648 | ---- | C] () -- C:\WINDOWS\System32\__c002B41.dat
[2009/11/09 23:52:24 | 00,015,000 | ---- | C] () -- C:\WINDOWS\System32\azh4sxwk.dll
[2009/11/09 23:42:11 | 00,001,744 | -H-- | C] () -- C:\WINDOWS\System32\rehuwido
[2009/11/09 23:41:24 | 00,348,900 | R--- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts.20091109-224124.backup
[2009/11/09 22:14:04 | 00,000,656 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2009/11/09 20:12:30 | 00,000,000 | ---- | C] () -- C:\WINDOWS\Gxujutih.bin
[2009/11/09 20:12:29 | 00,000,120 | ---- | C] () -- C:\WINDOWS\Asofulicaken.dat
[2009/11/09 20:10:01 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At24.job
[2009/11/09 20:10:01 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At23.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At22.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At21.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At20.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At19.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At18.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At17.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At16.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At15.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At14.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At13.job
[2009/11/09 20:10:00 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At12.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At9.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At8.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At7.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At6.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At5.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At4.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At3.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At11.job
[2009/11/09 20:09:59 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At10.job
[2009/11/09 20:09:58 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At2.job
[2009/11/09 20:09:58 | 00,000,394 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
[2009/11/09 20:09:27 | 00,000,826 | ---- | C] () -- C:\WINDOWS\System32\wininit.dll
[2009/11/02 19:10:04 | 00,000,128 | ---- | C] () -- C:\Documents and Settings\Kevin\Local Settings\Application Data\fusioncache.dat
[2009/11/02 18:52:11 | 00,001,744 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Chrysler PAIS DVD International EPC.lnk
[2009/11/01 20:59:22 | 00,020,328 | ---- | C] () -- C:\Documents and Settings\Kevin\Application Data\GDIPFONTCACHEV1.DAT
[2009/11/01 18:11:26 | 00,000,781 | RHS- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts.20091101-171126.backup
[2009/10/31 23:20:27 | 00,000,320 | ---- | C] () -- C:\WINDOWS\setup.iss
[2009/10/31 23:19:49 | 00,013,952 | ---- | C] () -- C:\WINDOWS\System32\drivers\UBHelper.sys
[2009/10/31 23:19:43 | 02,819,584 | ---- | C] () -- C:\WINDOWS\System32\LS_HSI.msi
[2009/10/31 23:18:41 | 00,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMP3.dll
[2009/10/31 23:18:41 | 00,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIJCMK5.dll
[2009/10/31 23:12:10 | 00,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIDBD32.dll
[2009/10/31 23:10:01 | 00,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIBUN4.dll
[2009/10/31 23:07:45 | 00,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIFCD3.dll
[2009/10/29 23:40:17 | 01,203,922 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sysmain.sdb
[2009/10/29 23:39:27 | 01,089,593 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntprint.cat
[2009/10/27 22:00:27 | 00,000,974 | ---- | C] () -- C:\WINDOWS\System32\pid.inf
[2009/10/27 21:29:31 | 00,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMPEG2.dll
[2009/10/27 21:29:31 | 00,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTICDMK7.dll
[2009/10/27 13:35:33 | 00,014,336 | ---- | C] () -- C:\Documents and Settings\Kevin\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/10/26 14:33:29 | 00,125,670 | ---- | C] () -- C:\WINDOWS\LogWorks3 Uninstaller.exe
[2009/10/26 14:30:47 | 00,147,456 | ---- | C] () -- C:\WINDOWS\System32\BCBSMP50.BPL
[2009/10/21 20:12:26 | 00,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009/10/21 18:13:03 | 00,020,328 | ---- | C] () -- C:\Documents and Settings\Kevin\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/10/21 07:57:52 | 00,007,208 | ---- | C] () -- C:\WINDOWS\System32\secupd.sig
[2009/10/21 07:57:52 | 00,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2009/10/21 00:00:28 | 00,001,004 | ---- | C] () -- C:\Documents and Settings\Kevin\Desktop\magicJack.lnk
[2009/10/20 23:53:14 | 00,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2009/10/20 22:54:00 | 00,414,208 | ---- | C] () -- C:\WINDOWS\System32\WgaTray.exe
[2009/10/20 22:54:00 | 00,190,976 | ---- | C] () -- C:\WINDOWS\System32\WgaLogon.dll
[2009/10/20 22:41:52 | 05,036,032 | ---- | C] () -- C:\Documents and Settings\Kevin\Desktop\Pistons.doc
[2009/10/20 22:41:52 | 00,018,432 | ---- | C] () -- C:\Documents and Settings\Kevin\Desktop\US Supply and Demand.xls
[2009/10/20 22:41:51 | 05,258,387 | ---- | C] () -- C:\Documents and Settings\Kevin\Desktop\E_911_83_KATALOG.pdf
[2009/10/20 22:41:51 | 03,062,635 | ---- | C] () -- C:\Documents and Settings\Kevin\Desktop\OM_CDE-9874.pdf
[2009/10/20 22:41:51 | 00,196,096 | ---- | C] () -- C:\Documents and Settings\Kevin\Desktop\Loan table.xls
[2009/10/20 22:41:51 | 00,014,336 | ---- | C] () -- C:\Documents and Settings\Kevin\Desktop\House.xls
[2009/10/20 22:28:56 | 00,000,728 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\BitTorrent.lnk
[2009/10/20 22:17:59 | 05,355,886 | -H-- | C] () -- C:\Documents and Settings\Kevin\Local Settings\Application Data\IconCache.db
[2009/10/20 22:15:16 | 00,000,734 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts1.bak
[2009/10/20 22:11:27 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2009/10/20 22:10:52 | 00,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2009/10/20 22:10:46 | 00,956,990 | ---- | C] () -- C:\WINDOWS\System32\instcat.sql
[2009/10/20 22:10:43 | 00,148,992 | ---- | C] () -- C:\WINDOWS\System32\mpg2splt.ax
[2009/10/20 22:10:31 | 00,004,310 | ---- | C] () -- C:\WINDOWS\System32\odbcconf.rsp
[2009/10/20 22:10:28 | 00,003,338 | ---- | C] () -- C:\WINDOWS\System32\redir.exe
[2009/10/20 22:10:14 | 01,326,080 | ---- | C] () -- C:\WINDOWS\System32\webfldrs.msi
[2009/10/20 21:02:09 | 00,040,960 | ---- | C] () -- C:\WINDOWS\System32\IsUser11b.dll
[2009/10/20 20:54:10 | 00,000,278 | -HS- | C] () -- C:\Documents and Settings\Kevin\ntuser.ini
[2009/10/20 20:54:09 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\Kevin\Application Data\desktop.ini
[2009/10/20 20:54:08 | 06,029,312 | -H-- | C] () -- C:\Documents and Settings\Kevin\NTUSER.DAT
[2009/10/20 20:45:44 | 00,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2009/10/20 20:44:54 | 00,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009/10/20 20:44:15 | 01,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2009/10/20 20:44:07 | 00,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2009/10/20 20:44:00 | 13,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2009/10/20 20:43:56 | 00,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2009/10/20 20:43:06 | 00,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2009/10/20 20:43:06 | 00,000,100 | ---- | C] () -- C:\AUTOEXEC.BAT
[2009/10/20 20:43:06 | 00,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2009/10/20 20:43:06 | 00,000,000 | RHS- | C] () -- C:\IO.SYS
[2009/10/20 20:43:06 | 00,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2009/10/20 20:43:04 | 00,025,065 | ---- | C] () -- C:\WINDOWS\System32\wmpscheme.xml
[2009/10/20 20:43:04 | 00,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2009/10/20 20:43:04 | 00,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2009/10/20 20:43:03 | 00,299,552 | ---- | C] () -- C:\WINDOWS\WMSysPrx.prx
[2009/10/20 20:42:57 | 00,000,006 | -H-- | C] () -- C:\WINDOWS\tasks\SA.DAT
[2009/10/20 20:42:08 | 00,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2009/10/20 20:42:08 | 00,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2009/10/20 20:42:04 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2009/10/20 20:42:03 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2009/10/20 20:41:48 | 04,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2009/10/20 20:34:39 | 00,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2009/10/20 20:34:39 | 00,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2009/10/20 20:34:33 | 00,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2009/10/20 20:33:54 | 00,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009/10/20 20:33:06 | 00,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
[2009/10/20 20:33:06 | 00,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
[2009/10/20 20:33:06 | 00,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
[2009/10/20 20:33:06 | 00,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
[2009/10/20 20:33:06 | 00,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
[2009/10/20 20:33:06 | 00,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
[2009/10/20 20:33:06 | 00,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
[2009/10/20 20:33:06 | 00,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
[2009/10/20 20:33:06 | 00,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
[2009/10/20 20:33:06 | 00,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2009/10/20 20:33:06 | 00,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
[2009/10/20 20:33:05 | 00,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2009/10/20 20:33:05 | 00,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2009/10/20 20:33:05 | 00,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2009/10/20 20:33:05 | 00,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2009/10/20 20:33:05 | 00,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2009/10/20 20:33:05 | 00,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2009/10/20 20:33:05 | 00,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2009/10/20 20:33:05 | 00,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2009/10/20 20:33:02 | 00,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2009/10/20 20:33:02 | 00,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2009/10/20 20:33:00 | 00,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2009/10/20 20:32:49 | 00,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2009/10/20 15:27:14 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\desktop.ini
[2009/10/20 15:18:44 | 00,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2009/10/20 15:18:37 | 01,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2009/10/20 15:18:37 | 00,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2009/10/20 15:18:37 | 00,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2009/10/20 15:18:37 | 00,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2009/10/20 15:18:34 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2009/10/20 15:18:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2009/10/20 15:18:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2009/10/20 15:18:33 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2009/10/20 15:18:33 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2009/10/20 15:18:33 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2009/10/20 15:18:31 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2009/10/20 15:18:31 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2009/10/20 15:18:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2009/10/20 15:18:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2009/10/20 15:18:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2009/10/20 15:18:30 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2009/10/20 15:18:30 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2009/10/20 15:18:30 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2009/10/20 15:18:28 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_852.nls
[2009/10/20 15:18:28 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2009/10/20 15:18:28 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2009/10/20 15:18:28 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2009/10/20 15:18:27 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2009/10/20 15:18:24 | 00,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2009/10/20 15:18:15 | 00,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2009/10/20 15:18:15 | 00,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2009/10/20 15:18:15 | 00,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2009/10/20 15:18:15 | 00,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2009/10/20 15:18:15 | 00,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2009/10/20 15:18:15 | 00,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2009/10/20 15:17:45 | 00,119,744 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/10/20 15:17:06 | 00,000,211 | RHS- | C] () -- C:\boot.ini
[2009/10/20 15:17:03 | 00,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2009/08/09 23:42:23 | 00,045,056 | -HS- | C] () -- C:\WINDOWS\System32\fudimapo.dll
[2009/08/09 23:42:22 | 00,092,672 | -HS- | C] () -- C:\WINDOWS\System32\botapepe.dll
[2009/08/09 23:42:22 | 00,039,424 | -HS- | C] () -- C:\WINDOWS\System32\lewabenu.dll
[2009/08/09 20:14:20 | 00,039,424 | -HS- | C] () -- C:\WINDOWS\System32\yagerumu.dll
[2009/08/09 20:14:18 | 00,115,200 | -HS- | C] () -- C:\WINDOWS\System32\seretisa.exe
[2009/08/09 20:14:18 | 00,045,056 | -HS- | C] () -- C:\WINDOWS\System32\bojigenu.dll
[2009/08/09 20:08:43 | 00,052,736 | -HS- | C] () -- C:\WINDOWS\System32\zugowuva.dll
[2009/08/09 20:08:43 | 00,052,736 | -HS- | C] () -- C:\WINDOWS\System32\nelufuyu.dll
[2009/08/09 20:08:43 | 00,052,736 | -HS- | C] () -- C:\WINDOWS\System32\guromome.dll
[2009/06/03 14:09:37 | 01,291,264 | ---- | C] () -- C:\WINDOWS\System32\dllcache\quartz.dll
[2008/05/26 22:59:42 | 00,018,904 | ---- | C] () -- C:\WINDOWS\System32\structuredqueryschematrivial.bin
[2008/05/26 22:59:40 | 00,106,605 | ---- | C] () -- C:\WINDOWS\System32\structuredqueryschema.bin
[2008/03/20 18:06:36 | 01,481,728 | ---- | C] () -- C:\WINDOWS\System32\LegitCheckControl.dll
[2007/09/27 11:51:02 | 00,020,698 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 11:51:02 | 00,004,640 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.h
[2007/09/27 11:48:48 | 00,030,628 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 11:48:48 | 00,002,590 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.h
[2007/09/27 11:48:28 | 00,031,698 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini
[2007/09/27 11:48:28 | 00,003,100 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.h
[2006/09/23 14:12:38 | 00,074,715 | ---- | C] () -- C:\WINDOWS\System32\IE7Eula.rtf
[2006/09/01 09:44:04 | 00,008,798 | ---- | C] () -- C:\WINDOWS\System32\icrav03.rat
[2006/09/01 09:44:04 | 00,001,988 | ---- | C] () -- C:\WINDOWS\System32\ticrf.rat
[2006/06/29 15:58:52 | 00,030,808 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont
[2006/06/29 15:53:56 | 00,026,489 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006/06/08 13:06:50 | 00,066,384 | ---- | C] () -- C:\WINDOWS\System32\normnfkc.nls
[2006/06/08 13:06:50 | 00,060,294 | ---- | C] () -- C:\WINDOWS\System32\normnfkd.nls
[2006/06/08 13:06:50 | 00,059,342 | ---- | C] () -- C:\WINDOWS\System32\normidna.nls
[2006/06/08 13:06:50 | 00,045,794 | ---- | C] () -- C:\WINDOWS\System32\normnfc.nls
[2006/06/08 13:06:50 | 00,039,284 | ---- | C] () -- C:\WINDOWS\System32\normnfd.nls
[2006/04/18 16:39:28 | 00,029,779 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006/04/18 16:39:28 | 00,026,040 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2005/05/19 07:38:26 | 00,005,178 | ---- | C] () -- C:\WINDOWS\System32\e100b325.din
[2004/08/04 02:56:57 | 00,239,616 | ---- | C] () -- C:\WINDOWS\System32\wstrenderer.ax
[2004/08/04 02:56:57 | 00,164,352 | ---- | C] () -- C:\WINDOWS\System32\wstpager.ax
[2004/08/04 02:56:57 | 00,118,272 | ---- | C] () -- C:\WINDOWS\System32\mpeg2data.ax
[2004/08/04 02:56:57 | 00,053,248 | ---- | C] () -- C:\WINDOWS\System32\vbicodec.ax
[2004/08/04 00:22:24 | 00,056,700 | ---- | C] () -- C:\WINDOWS\System32\ieuinit.inf
[2004/07/18 00:55:22 | 00,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2004/07/17 13:36:22 | 00,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2004/05/17 17:43:09 | 00,035,424 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio412.sys
[2004/05/17 17:43:07 | 00,034,560 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio404.sys
[2004/05/17 17:43:06 | 00,034,560 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio804.sys
[2004/05/17 17:43:04 | 00,035,648 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio411.sys
[2003/09/17 11:01:28 | 00,844,314 | ---- | C] () -- C:\WINDOWS\System32\msdxm.ocx
[2003/07/08 13:41:48 | 00,047,616 | ---- | C] () -- C:\WINDOWS\System32\P16X.dll
[2002/06/27 16:47:16 | 00,065,536 | ---- | C] () -- C:\WINDOWS\System32\multiplex_vcd.dll
[2002/06/27 16:47:14 | 00,118,784 | ---- | C] () -- C:\WINDOWS\System32\HMPV2_ENC_MMX.dll
[2002/06/27 16:47:14 | 00,118,784 | ---- | C] () -- C:\WINDOWS\System32\HMPV2_ENC.dll
[2002/06/27 16:47:14 | 00,110,592 | ---- | C] () -- C:\WINDOWS\System32\Hmpg12.dll
[2001/08/23 10:00:00 | 00,000,599 | ---- | C] () -- C:\WINDOWS\win.ini
[2001/08/23 10:00:00 | 00,000,227 | ---- | C] () -- C:\WINDOWS\system.ini
========== LOP Check ==========
[2009/11/09 20:12:45 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Kevin\Application Data\BitTorrent
[2003/09/19 01:28:25 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Kevin\Application Data\mjusbsp
[2009/10/26 13:51:41 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Kevin\Application Data\ProspectorV5
[2009/10/29 23:53:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Kevin\Application Data\Windows Desktop Search
[2009/11/10 00:03:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Kevin\Application Data\Windows Search
[2003/09/19 01:27:18 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
[2003/09/19 01:27:18 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At10.job
[2003/09/19 01:27:18 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At11.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At12.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At13.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At14.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At15.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At16.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At17.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At18.job
[2009/11/09 20:10:01 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At19.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
[2009/11/09 22:22:41 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At20.job
[2009/11/09 22:22:41 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At21.job
[2009/11/09 22:22:41 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At22.job
[2009/11/09 23:45:18 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At23.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At24.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At5.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At6.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At7.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At8.job
[2003/09/19 01:27:19 | 00,000,394 | ---- | M] () -- C:\WINDOWS\Tasks\At9.job
[2001/08/23 10:00:00 | 00,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\desktop.ini
[2003/09/19 01:27:19 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.exe >
< %SYSTEMDRIVE%\eventlog.dll /s /md5 >
[2004/08/04 02:56:42 | 00,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008/04/13 19:11:53 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/13 19:11:53 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
< %SYSTEMDRIVE%\scecli.dll /s /md5 >
[2004/08/04 02:56:44 | 00,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/13 19:12:05 | 00,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/13 19:12:05 | 00,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll
< %SYSTEMDRIVE%\netlogon.dll /s /md5 >
[2004/08/04 02:56:44 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008/04/13 19:12:01 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 19:12:01 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
< %SYSTEMDRIVE%\cngaudit.dll /s /md5 >
< %SYSTEMDRIVE%\sceclt.dll /s /md5 >
< %SYSTEMDRIVE%\ntelogon.dll /s /md5 >
< %SYSTEMDRIVE%\logevent.dll /s /md5 >
< %SYSTEMDRIVE%\iaStor.sys /s /md5 >
< %SYSTEMDRIVE%\nvstor.sys /s /md5 >
< %SYSTEMDRIVE%\atapi.sys /s /md5 >
[2004/08/04 00:59:42 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2008/04/13 13:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 13:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
< %SYSTEMDRIVE%\IdeChnDr.sys /s /md5 >
< %SYSTEMDRIVE%\viasraid.sys /s /md5 >
< %SYSTEMDRIVE%\AGP440.sys /s /md5 >
[2004/08/04 01:07:41 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys
[2008/04/13 13:36:38 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 13:36:38 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004/08/04 01:07:41 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\AGP440.SYS
< %SYSTEMDRIVE%\vaxscsi.sys /s /md5 >
< End of report >