Actually, I appreciate the help, but I found a solution to my problem elsewhere because it took so long to get a reply that I thought my thread had gotten buried under all the topics. I cleared at least enough of the trojan to perform a system restore and now my laptop is running fine, but I'll go ahead and post the GMER and OTL scan logs here just in case my system still contains traces of the trojan.
One problem, though. Running GMER crashed Windows. Some blue screen error message about "pxtdpipow.sys". I can still give you the OTL log:
OTL logfile created on: 1/1/2010 7:52:07 PM - Run 2
OTL by OldTimer - Version 3.1.20.1 Folder = C:\Documents and Settings\Jason\Desktop\scanners
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,022.00 Mb Total Physical Memory | 218.00 Mb Available Physical Memory | 21.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 72.00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 105.84 Gb Total Space | 8.49 Gb Free Space | 8.02% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
Drive F: | 926.03 Gb Total Space | 352.52 Gb Free Space | 38.07% Space Free | Partition Type: NTFS
Drive G: | 5.47 Gb Total Space | 1.13 Gb Free Space | 20.67% Space Free | Partition Type: FAT32
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: HOME
Current User Name: Jason
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Jason\Desktop\scanners\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\WLTRAY.EXE (Dell Inc.)
PRC - C:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.)
PRC - C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
PRC - C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
PRC - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
PRC - C:\Program Files\Bonjour\mDNSResponder.exe (Apple Computer, Inc.)
PRC - C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe (ATI Technologies Inc.)
PRC - C:\Program Files\M-Audio MA_CMIDI\MA_CMIDI_Inst.exe ()
PRC - C:\WINDOWS\system32\dla\tfswctrl.exe (Sonic Solutions)
PRC - C:\WINDOWS\system32\Crypserv.exe (CrypKey (Canada) Ltd.)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Jason\Desktop\scanners\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\system32\guard32.dll ()
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation)
MOD - C:\WINDOWS\system32\winsta.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (FLEXnet Licensing Service) – C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (cmdAgent) – C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe ()
SRV - (JavaQuickStarterService) – C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (Adobe LM Service) – C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe (Adobe Systems)
SRV - (msvsmon90) – F:\Program Files\Microsoft Visual Studdio 9.0\Common7\IDE\Remote Debugger\x86\msvsmon.exe (Microsoft Corporation)
SRV - (seclogonUPS) – C:\WINDOWS\System32\advpack.dll (Microsoft Corporation)
SRV - (gusvc) – C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (wltrysvc) – C:\WINDOWS\System32\WLTRYSVC.EXE ()
SRV - (Microsoft Office Groove Audit Service) – C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe (Microsoft Corporation)
SRV - (odserv) – C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (ose) – C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (Ati HotKey Poller) – C:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.)
SRV - (Bonjour Service) – C:\Program Files\Bonjour\mDNSResponder.exe (Apple Computer, Inc.)
SRV - (OracleXEClrAgent) – C:\oraclexe\app\oracle\product\10.2.0\server\bin\OraClrAgnt.exe ()
SRV - (OracleXETNSListener) – C:\oraclexe\app\oracle\product\10.2.0\server\BIN\TNSLSNR.EXE ()
SRV - (OracleMTSRecoveryService) – C:\oraclexe\app\oracle\product\10.2.0\server\BIN\omtsreco.exe (Oracle Corporation)
SRV - (OracleJobSchedulerXE) – c:\oraclexe\app\oracle\product\10.2.0\server\Bin\extjob.exe ()
SRV - (OracleServiceXE) – c:\oraclexe\app\oracle\product\10.2.0\server\bin\ORACLE.EXE (Oracle Corporation)
SRV - (MA_CMIDI_InstallerService) – C:\Program Files\M-Audio MA_CMIDI\MA_CMIDI_Inst.exe ()
SRV - (IDriverT) – C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (aspnet_stateAudioSrv) – C:\WINDOWS\System32\adsmsexto.exe ()
SRV - (SwPrvShellHWDetection) – C:\WINDOWS\System32\1031c.exe (Microsoft Corporation)
SRV - (SENSRpcSs) – C:\WINDOWS\System32\actmovier.exe (Microsoft Corporation)
SRV - (ImapiService License) – C:\WINDOWS\System32\alf2cdp.exe (Microsoft Corporation)
SRV - (Crypkey License) – C:\WINDOWS\System32\Crypserv.exe (CrypKey (Canada) Ltd.)
========== Driver Services (SafeList) ==========
DRV - (SASENUM) – C:\Program Files\SUPERAntiSpyware\SASENUM.SYS ( SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASDIFSV) – C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (cmdGuard) – C:\WINDOWS\system32\drivers\cmdguard.sys (COMODO)
DRV - (Inspect) – C:\WINDOWS\System32\DRIVERS\inspect.sys (COMODO)
DRV - (cmdHlp) – C:\WINDOWS\system32\drivers\cmdhlp.sys (COMODO)
DRV - (sptd) – C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (PxHelp20) – C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - ({FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}) – C:\Program Files\CyberLink\PowerDVD8\000.fcl (Cyberlink Corp.)
DRV - (Secdrv) – C:\WINDOWS\system32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (NSTATION) – C:\WINDOWS\system32\drivers\nstation.sys (TASCAM)
DRV - (EWAVE) – C:\WINDOWS\system32\drivers\ew.sys (TASCAM)
DRV - (FILESPY) – C:\WINDOWS\system32\drivers\filespy.sys (TASCAM)
DRV - (BCM43XX) – C:\WINDOWS\system32\drivers\BCMWL5.SYS (Broadcom Corporation)
DRV - (bcm4sbxp) – C:\WINDOWS\system32\drivers\bcm4sbxp.sys (Broadcom Corporation)
DRV - (ati2mtag) – C:\WINDOWS\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (STHDA) – C:\WINDOWS\system32\drivers\sthda.sys (SigmaTel, Inc.)
DRV - (SynTP) – C:\WINDOWS\system32\drivers\SynTP.sys (Synaptics, Inc.)
DRV - (DSproct) – C:\Program Files\Dell Support\GTAction\triggers\DSproct.sys (GTek Technologies Ltd.)
DRV - (rismxdp) – C:\WINDOWS\system32\drivers\rixdptsk.sys (REDC)
DRV - (rimsptsk) – C:\WINDOWS\system32\drivers\rimsptsk.sys (REDC)
DRV - (rimmptsk) – C:\WINDOWS\system32\drivers\rimmptsk.sys (REDC)
DRV - (APPDRV) – C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS (Dell Inc)
DRV - (HSF_DPV) – C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)
DRV - (HSFHWAZL) – C:\WINDOWS\system32\drivers\HSFHWAZL.sys (Conexant Systems, Inc.)
DRV - (winachsf) – C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (MA_CMIDI) – C:\WINDOWS\system32\drivers\ma_cmidi.sys (M-Audio)
DRV - (CLEDX) – C:\WINDOWS\system32\drivers\cledx.sys (Team H2O)
DRV - (tfsnudfa) – C:\WINDOWS\system32\dla\tfsnudfa.sys (Sonic Solutions)
DRV - (tfsnudf) – C:\WINDOWS\system32\dla\tfsnudf.sys (Sonic Solutions)
DRV - (tfsnifs) – C:\WINDOWS\system32\dla\tfsnifs.sys (Sonic Solutions)
DRV - (tfsncofs) – C:\WINDOWS\system32\dla\tfsncofs.sys (Sonic Solutions)
DRV - (tfsnboio) – C:\WINDOWS\system32\dla\tfsnboio.sys (Sonic Solutions)
DRV - (tfsnopio) – C:\WINDOWS\system32\dla\tfsnopio.sys (Sonic Solutions)
DRV - (tfsnpool) – C:\WINDOWS\system32\dla\tfsnpool.sys (Sonic Solutions)
DRV - (tfsndrct) – C:\WINDOWS\system32\dla\tfsndrct.sys (Sonic Solutions)
DRV - (tfsndres) – C:\WINDOWS\system32\dla\tfsndres.sys (Sonic Solutions)
DRV - (drvmcdb) – C:\WINDOWS\system32\drivers\drvmcdb.sys (Sonic Solutions)
DRV - (drvnddm) – C:\WINDOWS\system32\drivers\drvnddm.sys (Sonic Solutions)
DRV - (HDAudBus) – C:\WINDOWS\system32\drivers\Hdaudbus.sys (Windows ® Server 2003 DDK provider)
DRV - (Ptilink) – C:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)
DRV - (amdagp) – C:\WINDOWS\system32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)
DRV - (sisagp) – C:\WINDOWS\system32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)
DRV - (nv) – C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (usbaudio) USB Audio Driver (WDM) – C:\WINDOWS\system32\drivers\USBAUDIO.sys (Microsoft Corporation)
DRV - (sscdbhk5) – C:\WINDOWS\system32\drivers\sscdbhk5.sys (Sonic Solutions)
DRV - (ssrtln) – C:\WINDOWS\system32\drivers\ssrtln.sys (Sonic Solutions)
DRV - (pfc) – C:\WINDOWS\system32\drivers\pfc.sys (Padus, Inc.)
DRV - (mdmxsdk) – C:\WINDOWS\system32\drivers\mdmxsdk.sys (Conexant)
DRV - (omci) – C:\WINDOWS\system32\drivers\omci.sys (Dell Inc)
DRV - (NetworkX) – C:\WINDOWS\system32\ckldrv.sys ()
DRV - (Sparrow) – C:\WINDOWS\system32\DRIVERS\sparrow.sys (Adaptec, Inc.)
DRV - (sym_u3) – C:\WINDOWS\system32\DRIVERS\sym_u3.sys (LSI Logic)
DRV - (sym_hi) – C:\WINDOWS\system32\DRIVERS\sym_hi.sys (LSI Logic)
DRV - (symc8xx) – C:\WINDOWS\system32\DRIVERS\symc8xx.sys (LSI Logic)
DRV - (symc810) – C:\WINDOWS\system32\DRIVERS\symc810.sys (Symbios Logic Inc.)
DRV - (ultra) – C:\WINDOWS\system32\DRIVERS\ultra.sys (Promise Technology, Inc.)
DRV - (ql12160) – C:\WINDOWS\system32\DRIVERS\ql12160.sys (QLogic Corporation)
DRV - (ql1080) – C:\WINDOWS\system32\DRIVERS\ql1080.sys (QLogic Corporation)
DRV - (ql1280) – C:\WINDOWS\system32\DRIVERS\ql1280.sys (QLogic Corporation)
DRV - (dac2w2k) – C:\WINDOWS\system32\DRIVERS\dac2w2k.sys (Mylex Corporation)
DRV - (mraid35x) – C:\WINDOWS\system32\DRIVERS\mraid35x.sys (American Megatrends Inc.)
DRV - (asc) – C:\WINDOWS\system32\DRIVERS\asc.sys (Advanced System Products, Inc.)
DRV - (asc3550) – C:\WINDOWS\system32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)
DRV - (AliIde) – C:\WINDOWS\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (CmdIde) – C:\WINDOWS\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (E100B) Intel® – C:\WINDOWS\system32\drivers\e100b325.sys (Intel Corporation)
DRV - (ASPI32) – C:\WINDOWS\system32\drivers\ASPI32.SYS (Adaptec)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 127.0.0.1:8080
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "www.google.com"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.1
FF - prefs.js..extensions.enabledItems: {C0D0F6D1-9FC9-4b0a-B485-D5E13AF40D51}:2.3.50
FF - prefs.js..extensions.enabledItems: {8f8fe09b-0bd3-4470-bc1b-8cad42b8203a}:0.15
FF - prefs.js..extensions.enabledItems: [removed]:1.0.0.071301000019
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/12/28 20:52:01 | 00,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/12/28 20:52:00 | 00,000,000 | —D | M]
[2008/04/03 15:54:51 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Extensions
[2009/12/31 22:24:34 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions
[2009/12/28 18:48:01 | 00,000,000 | —D | M] (Session Manager) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}(2)
[2009/09/23 11:58:53 | 00,000,000 | —D | M] (ScrapBook) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}
[2009/12/28 18:47:08 | 00,000,000 | —D | M] (No name found) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{54BB9F3F-07E5-486c-9B39-C7398B99391C}(2)
[2009/11/10 14:31:08 | 00,000,000 | —D | M] (CacheViewer) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{71328583-3CA7-4809-B4BA-570A85818FBB}
[2009/11/10 14:31:08 | 00,000,000 | —D | M] (Live HTTP Headers) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a}
[2009/12/28 18:48:02 | 00,000,000 | —D | M] (WOT) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}(2)
[2009/12/28 18:48:02 | 00,000,000 | —D | M] (ReminderFox) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae}(2)
[2009/12/28 18:47:59 | 00,000,000 | —D | M] (No name found) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{AE93811A-5C9A-4d34-8462-F7B864FC4696}(2)
[2009/12/28 18:47:59 | 00,000,000 | —D | M] (DownloadHelper) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}(2)
[2009/09/23 11:58:43 | 00,000,000 | —D | M] (Answers) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{C0D0F6D1-9FC9-4b0a-B485-D5E13AF40D51}
[2009/09/23 11:58:43 | 00,000,000 | —D | M] (Adblock Plus) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2009/12/28 18:48:00 | 00,000,000 | —D | M] (No name found) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{dc572301-7619-498c-a57d-39143191b318}(2)
[2009/12/28 18:48:04 | 00,000,000 | —D | M] (DownThemAll!) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}(2)
[2009/12/28 18:48:20 | 00,000,000 | —D | M] (Greasemonkey) – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}(2)
[2009/01/11 15:46:06 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\[removed]
[2009/11/10 14:31:08 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\[removed]
[2009/06/01 15:28:13 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\[removed]
[2009/12/28 18:48:30 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\piclens@cooliris(2).com
[2009/12/28 18:48:02 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\tineye@ideeinc(2).com
[2009/12/28 18:48:06 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\TooManyTabs@visibotech(2).com
[2009/09/24 12:13:15 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\extensions\[removed]
[2008/10/06 17:37:47 | 00,000,523 | —- | M] () – C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\mi4qt930.default\searchplugins\daemon-search.xml
[2009/12/31 22:24:34 | 00,000,000 | —D | M] – C:\Program Files\Mozilla Firefox\extensions
[2008/01/23 00:20:30 | 00,491,520 | —- | M] (BitComet) – C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll
[2008/11/04 20:29:17 | 00,221,184 | —- | M] (CNN) – C:\Program Files\Mozilla Firefox\plugins\NPTURNMED.dll
O1 HOSTS File: (736 bytes) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (SnagIt Toolbar Loader) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\Snagit 9\SnagitBHO.dll (TechSmith Corporation)
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (GigagetIEHelper Class) - {111CAA23-6F4F-42AC-8555-B48C1D87BBAB} - C:\WINDOWS\system32\gigagetbho_v10.dll (Giganology Inc.)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll (BitComet)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll File not found
O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll (Sonic Solutions)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Snagit) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\Snagit 9\SnagitIEAddin.dll (TechSmith Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {C4069E3A-68F1-403E-B40E-20066696354B} - No CLSID value found.
O4 - HKLM..\Run: [ATICCC] C:\Program Files\ATI Technologies\ATI.ACE\cli.exe (ATI Technologies Inc.)
O4 - HKLM..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.EXE (Dell Inc.)
O4 - HKLM..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe (Sonic Solutions)
O4 - HKLM..\Run: [ISUSPM] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (Macrovision Corporation)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: &Download; All by Gigaget - C:\Program Files\Giganology\Gigaget\getAllurl.htm ()
O8 - Extra context menu item: &Download; by Gigaget - C:\Program Files\Giganology\Gigaget\geturl.htm ()
O8 - Extra context menu item: Add to Google Photos Screensa&ver; - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xport; to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end; to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe ()
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll (BitComet)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {1842B0EE-B597-11D4-8997-00104BD12D94}
http://www.pcpitstop.com/internet/pcpConnCheck.cab (iCC Class)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71}
http://download.microsoft.com/download/e/2…78f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} http://download.bitdefender.com/resources/…can8/oscan8.cab (BDSCANONLINE Control)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupdate/…b?1236730104656 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429}
http://www.sibelius.com/download/software/…tiveXPlugin.cab (ScorchPlugin Class)
O16 - DPF: {B3E32D88-8E7F-468F-B0E2-3A300FD4A82C}
http://myitlab.pearsoned.com/Pegasus/Modul…ces/ax/stub.cab (Enlite 2.x Simulation Engine Installer)
O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_11)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = [removed] [removed]
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\WINDOWS\system32\guard32.dll) - C:\WINDOWS\system32\guard32.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (logon.exe) - C:\WINDOWS\System32\logon.exe ()
O20 - HKLM Winlogon: UserInit - (C:\Program Files\Common Files\svchost.exe) - C:\Program Files\Common Files\svchost.exe File not found
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/10 13:04:08 | 00,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O33 - MountPoints2\{19373339-5531-11de-9e60-0019b977261c}\Shell\AutoRun - "" = Auto&Play;
O33 - MountPoints2\{19373339-5531-11de-9e60-0019b977261c}\Shell\Explore\command - "" = autorun.exe
O33 - MountPoints2\{19373339-5531-11de-9e60-0019b977261c}\Shell\Open\command - "" = autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] – "%1" %*
O35 - exefile [open] – "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010/01/01 19:04:02 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\eBay
[2010/01/01 19:01:54 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\scanners
[2010/01/01 02:47:13 | 00,000,000 | —D | C] – C:\Program Files\EF CheckSum Manager
[2009/12/31 18:24:20 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\Mirror's Edge
[2009/12/28 18:52:04 | 00,000,000 | RH-D | C] – C:\Documents and Settings\Jason\Recent
[2009/12/28 18:50:31 | 00,000,000 | —D | C] – C:\Program Files\Malwarebytes' Anti-Malware
[2009/12/28 18:45:54 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\Simon & Garfunkel
[2009/12/28 18:45:54 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\Season 3
[2009/12/28 18:45:54 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\Fatboy Slim - The Greatest Hits - Why Try Harder - 2006
[2009/12/28 18:45:53 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\SOS
[2009/12/28 18:45:53 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\Panda Bear
[2009/12/28 18:45:39 | 00,000,000 | -H-D | C] – C:\WINDOWS\msdownld.tmp
[2009/12/28 18:12:51 | 00,000,000 | —D | C] – C:\Program Files\ERUNT
[2009/12/26 16:39:52 | 00,000,000 | —D | C] – C:\Malwarebytes' Anti-Malware
[2009/12/26 16:27:01 | 00,000,000 | —D | C] – C:\Anti-Malware Programs
[2009/12/26 00:12:32 | 00,000,000 | —D | C] – C:\Program Files\PowerISO
[2009/12/26 00:12:16 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\PowerISO
[2009/12/25 03:03:25 | 00,000,000 | —D | C] – C:\$WIN_NT$.~BT
[2009/12/25 02:34:11 | 00,000,000 | —D | C] – C:\Program Files\WinISO
[2009/12/25 02:33:28 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Desktop\WinISO_5.3
[2009/12/25 02:04:07 | 00,000,000 | —D | C] – C:\Program Files\Cobian Backup 9
[2009/12/25 02:01:03 | 00,000,000 | —D | C] – C:\Program Files\EASEUS
[2009/12/17 00:48:38 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Application Data\Plogue
[2009/12/17 00:48:37 | 00,000,000 | —D | C] – C:\Documents and Settings\Jason\Application Data\Plogue Art et Technologie, Inc
[2009/12/08 23:05:23 | 00,000,000 | —D | C] – C:\Program Files\Lavalys
[2009/12/04 23:52:28 | 00,000,000 | -HSD | C] – C:\Config.Msi
[2009/12/04 23:39:50 | 00,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\ESET
[2009/08/20 14:23:21 | 00,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2009/08/20 14:23:21 | 00,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2009/08/20 14:23:20 | 00,000,000 | –SD | M] – C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2009/08/20 14:23:20 | 00,000,000 | –SD | M] – C:\Documents and Settings\LocalService\Application Data\Microsoft
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010/01/01 19:31:49 | 00,528,784 | —- | M] () – C:\WINDOWS\System32\PerfStringBackup.INI
[2010/01/01 19:31:49 | 00,446,438 | —- | M] () – C:\WINDOWS\System32\perfh009.dat
[2010/01/01 19:31:49 | 00,073,226 | —- | M] () – C:\WINDOWS\System32\perfc009.dat
[2010/01/01 19:27:33 | 00,000,926 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-4278838382-2642953312-2933363751-1006.job
[2010/01/01 19:27:33 | 00,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2010/01/01 19:27:25 | 00,002,048 | –S- | M] () – C:\WINDOWS\bootstat.dat
[2010/01/01 19:27:22 | 10,721,03424 | -HS- | M] () – C:\hiberfil.sys
[2010/01/01 18:55:05 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part18.rar
[2010/01/01 18:52:47 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part17.rar
[2010/01/01 18:36:03 | 11,010,048 | —- | M] () – C:\Documents and Settings\Jason\ntuser.dat
[2010/01/01 18:26:32 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part19.rar
[2010/01/01 17:05:43 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part15.rar
[2010/01/01 16:43:21 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part16.rar
[2010/01/01 04:33:11 | 00,000,178 | -HS- | M] () – C:\Documents and Settings\Jason\ntuser.ini
[2010/01/01 04:01:28 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part14.rar
[2010/01/01 01:33:54 | 12,082,4195 | —- | M] () – C:\Documents and Settings\Jason\Desktop\Anvil.The.Story.Of.Anvil.2008.DVDRip.XviD.part4.rar
[2010/01/01 00:51:09 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part13.rar
[2010/01/01 00:05:02 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part12.rar
[2009/12/31 23:46:47 | 20,971,5201 | —- | M] () – C:\Documents and Settings\Jason\Desktop\Anvil.The.Story.Of.Anvil.2008.DVDRip.XviD.part3.rar
[2009/12/31 23:27:34 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part11.rar
[2009/12/31 22:50:42 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part10.rar
[2009/12/31 22:24:09 | 00,000,048 | —- | M] () – C:\WINDOWS\System32\w3data.vss
[2009/12/31 22:24:09 | 00,000,048 | —- | M] () – C:\WINDOWS\System32\msvcsv60.dll
[2009/12/31 22:24:09 | 00,000,048 | —- | M] () – C:\WINDOWS\msocreg32.dat
[2009/12/31 21:26:17 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part09.rar
[2009/12/31 18:09:12 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part08.rar
[2009/12/31 17:31:16 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part07.rar
[2009/12/31 16:53:32 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part06.rar
[2009/12/31 16:18:10 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part05.rar
[2009/12/31 13:35:45 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part04.rar
[2009/12/31 12:59:04 | 00,000,433 | –S- | M] () – C:\WINDOWS\System32\504267629.dat
[2009/12/31 03:11:48 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part03.rar
[2009/12/31 02:22:47 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part02.rar
[2009/12/30 23:01:25 | 10,043,1872 | —- | M] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part01.rar
[2009/12/29 23:16:08 | 00,006,534 | —- | M] () – C:\Documents and Settings\Jason\Application Data\wklnhst.dat
[2009/12/28 20:52:04 | 00,001,602 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/12/28 18:43:54 | 00,000,623 | —- | M] () – C:\WINDOWS\win.ini
[2009/12/28 18:43:54 | 00,000,227 | —- | M] () – C:\WINDOWS\system.ini
[2009/12/28 00:53:08 | 00,002,206 | —- | M] () – C:\WINDOWS\System32\wpa.dbl
[2009/12/26 23:35:08 | 00,006,456 | -H– | M] () – C:\WINDOWS\System32\jofasatu
[2009/12/26 13:53:36 | 00,034,308 | -H– | M] () – C:\WINDOWS\System32\logon.exe
[2009/12/25 03:31:57 | 00,001,420 | -H– | M] () – C:\WINDOWS\EPMBatch.ept
[2009/12/21 17:14:06 | 00,004,727 | —- | M] () – C:\Documents and Settings\Jason\Desktop\Intel eBay.rtf
[2009/12/21 17:06:10 | 00,004,926 | —- | M] () – C:\Documents and Settings\Jason\Desktop\Corsair eBay.rtf
[2009/12/15 02:31:40 | 00,435,582 | —- | M] () – C:\Documents and Settings\Jason\Desktop\Dancing Choose cover.mp3
[2009/12/15 00:13:00 | 00,723,974 | —- | M] () – C:\Documents and Settings\Jason\Desktop\Crowns.mp3
[2009/12/11 21:32:48 | 00,435,582 | —- | M] () – C:\Documents and Settings\Jason\Desktop\Dancing Choose cover (piano).mp3
[2009/12/05 04:34:46 | 10,436,8477 | —- | M] () – C:\Documents and Settings\Jason\Desktop\michael_franti__spearhead_-_stay_human_2001.rar
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/01/01 18:35:23 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part18.rar
[2010/01/01 18:07:00 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part19.rar
[2010/01/01 17:54:45 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part17.rar
[2010/01/01 16:44:10 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part15.rar
[2010/01/01 16:21:25 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part16.rar
[2010/01/01 03:47:55 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part14.rar
[2010/01/01 00:53:09 | 12,082,4195 | —- | C] () – C:\Documents and Settings\Jason\Desktop\Anvil.The.Story.Of.Anvil.2008.DVDRip.XviD.part4.rar
[2010/01/01 00:37:45 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part13.rar
[2009/12/31 23:51:25 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part12.rar
[2009/12/31 23:14:14 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part11.rar
[2009/12/31 22:37:23 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part10.rar
[2009/12/31 22:36:00 | 20,971,5201 | —- | C] () – C:\Documents and Settings\Jason\Desktop\Anvil.The.Story.Of.Anvil.2008.DVDRip.XviD.part3.rar
[2009/12/31 22:18:33 | 01,245,121 | —- | C] () – C:\Documents and Settings\Jason\Desktop\B-MirPhi.part04.rar
[2009/12/31 22:18:21 | 05,000,000 | —- | C] () – C:\Documents and Settings\Jason\Desktop\B-MirPhi.part03.rar
[2009/12/31 22:18:06 | 05,000,000 | —- | C] () – C:\Documents and Settings\Jason\Desktop\B-MirPhi.part02.rar
[2009/12/31 22:17:58 | 05,000,000 | —- | C] () – C:\Documents and Settings\Jason\Desktop\B-MirPhi.part01.rar
[2009/12/31 22:17:58 | 00,010,496 | —- | C] () – C:\Documents and Settings\Jason\Desktop\BEAT.nfo
[2009/12/31 22:17:58 | 00,001,410 | —- | C] () – C:\Documents and Settings\Jason\Desktop\file_id.diz
[2009/12/31 21:12:48 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part09.rar
[2009/12/31 17:55:40 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part08.rar
[2009/12/31 17:17:46 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part07.rar
[2009/12/31 16:40:18 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part06.rar
[2009/12/31 16:04:18 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part05.rar
[2009/12/31 13:10:34 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part04.rar
[2009/12/31 02:57:52 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part03.rar
[2009/12/31 02:09:16 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part02.rar
[2009/12/30 22:47:53 | 10,043,1872 | —- | C] () – C:\Documents and Settings\Jason\Desktop\XLNAAD.part01.rar
[2009/12/28 20:41:36 | 00,034,308 | -H– | C] () – C:\WINDOWS\System32\logon.exe
[2009/12/28 18:55:54 | 10,721,03424 | -HS- | C] () – C:\hiberfil.sys
[2009/12/25 03:25:44 | 00,250,032 | —- | C] () – C:\Documents and Settings\Jason\Desktop\NTLDR
[2009/12/25 02:19:23 | 00,001,420 | -H– | C] () – C:\WINDOWS\EPMBatch.ept
[2009/12/21 15:39:10 | 00,004,727 | —- | C] () – C:\Documents and Settings\Jason\Desktop\Intel eBay.rtf
[2009/12/21 14:50:46 | 00,004,926 | —- | C] () – C:\Documents and Settings\Jason\Desktop\Corsair eBay.rtf
[2009/12/15 00:05:25 | 00,723,974 | —- | C] () – C:\Documents and Settings\Jason\Desktop\Crowns.mp3
[2009/12/12 03:36:01 | 00,435,582 | —- | C] () – C:\Documents and Settings\Jason\Desktop\Dancing Choose cover.mp3
[2009/12/11 21:16:48 | 00,435,582 | —- | C] () – C:\Documents and Settings\Jason\Desktop\Dancing Choose cover (piano).mp3
[2009/12/05 04:35:23 | 05,034,552 | —- | C] () – C:\Documents and Settings\Jason\Desktop\05 Rock The Nation.mp3
[2009/12/05 04:30:46 | 10,436,8477 | —- | C] () – C:\Documents and Settings\Jason\Desktop\michael_franti__spearhead_-_stay_human_2001.rar
[2009/11/01 16:47:25 | 00,002,352 | —- | C] () – C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2009/10/19 20:21:54 | 00,001,025 | —- | C] () – C:\WINDOWS\System32\sysprs7.dll
[2009/10/19 20:21:54 | 00,000,205 | —- | C] () – C:\WINDOWS\System32\lsprst7.dll
[2009/10/17 18:15:17 | 00,473,600 | —- | C] () – C:\WINDOWS\System32\Harmony.dll
[2009/10/17 18:15:17 | 00,237,568 | —- | C] () – C:\WINDOWS\System32\Unlha32.dll
[2009/10/13 00:57:21 | 00,000,000 | —- | C] () – C:\WINDOWS\braid.ini
[2009/10/13 00:29:54 | 00,000,000 | —- | C] () – C:\WINDOWS\redsky.ini
[2009/10/12 22:49:12 | 00,000,000 | —- | C] () – C:\WINDOWS\Hot air balloon.ini
[2009/10/03 17:47:41 | 00,000,064 | —- | C] () – C:\WINDOWS\minitab.ini
[2009/05/30 21:54:02 | 00,237,568 | —- | C] () – C:\WINDOWS\System32\rmc_rtspdl.dll
[2009/05/27 21:59:17 | 00,000,110 | —- | C] () – C:\WINDOWS\ULEAD32.INI
[2009/05/21 23:01:13 | 00,000,048 | —- | C] () – C:\WINDOWS\System32\msvcsv60.dll
[2009/05/06 17:12:10 | 00,036,864 | —- | C] () – C:\WINDOWS\System32\utilpt32.dll
[2009/04/23 15:35:45 | 00,000,600 | —- | C] () – C:\Documents and Settings\Jason\Application Data\winscp.rnd
[2009/04/23 15:33:25 | 00,020,811 | —- | C] () – C:\WINDOWS\System32\drivers\IPFWHook.sys
[2009/01/23 16:47:21 | 00,147,192 | —- | C] () – C:\WINDOWS\System32\guard32.dll
[2009/01/18 19:50:39 | 00,000,250 | —- | C] () – C:\WINDOWS\gmer.ini
[2009/01/18 19:50:37 | 00,884,736 | —- | C] () – C:\WINDOWS\gmer.dll
[2008/12/17 17:43:13 | 00,000,604 | -H– | C] () – C:\Documents and Settings\All Users\Application Data\T2
[2008/12/17 17:43:13 | 00,000,604 | -H– | C] () – C:\Program Files\STLL Notifier
[2008/12/05 00:59:09 | 00,000,144 | —- | C] () – C:\WINDOWS\Eudcedit.ini
[2008/11/11 22:39:36 | 00,000,626 | —- | C] () – C:\WINDOWS\ODBC.INI
[2008/11/04 21:03:34 | 00,000,000 | —- | C] () – C:\Documents and Settings\Jason\Application Data\AVSDVDPlayer.m3u
[2008/10/29 15:38:43 | 00,000,077 | —- | C] () – C:\WINDOWS\Crypkey.ini
[2008/10/29 15:38:37 | 00,028,518 | —- | C] () – C:\WINDOWS\System32\Ckldrv.sys
[2008/10/29 15:38:32 | 00,018,432 | —- | C] () – C:\WINDOWS\Setup_ck.dll
[2008/10/20 14:13:58 | 00,027,648 | —- | C] () – C:\WINDOWS\System32\AVSredirect.dll
[2008/10/06 17:27:05 | 00,717,296 | —- | C] () – C:\WINDOWS\System32\drivers\sptd.sys
[2008/10/01 16:29:56 | 00,164,352 | —- | C] () – C:\WINDOWS\System32\unrar.dll
[2008/10/01 16:29:56 | 00,000,038 | —- | C] () – C:\WINDOWS\avisplitter.ini
[2008/10/01 16:29:54 | 00,524,288 | —- | C] () – C:\WINDOWS\System32\xvidcore.dll
[2008/10/01 16:29:53 | 00,139,264 | —- | C] () – C:\WINDOWS\System32\xvidvfw.dll
[2008/10/01 16:29:53 | 00,084,480 | —- | C] () – C:\WINDOWS\System32\ff_vfw.dll
[2008/10/01 16:29:53 | 00,000,547 | —- | C] () – C:\WINDOWS\System32\ff_vfw.dll.manifest
[2008/08/20 23:40:33 | 00,000,111 | —- | C] () – C:\WINDOWS\Sansa Media Converter.INI
[2008/08/08 13:49:18 | 00,000,754 | —- | C] () – C:\WINDOWS\WORDPAD.INI
[2008/06/10 18:07:20 | 03,596,288 | —- | C] () – C:\WINDOWS\System32\qt-dx331.dll
[2008/06/10 18:03:26 | 00,000,416 | —- | C] () – C:\WINDOWS\System32\dtu100.dll.manifest
[2008/06/10 18:03:26 | 00,000,416 | —- | C] () – C:\WINDOWS\System32\dpl100.dll.manifest
[2008/06/08 23:05:29 | 02,463,976 | —- | C] () – C:\WINDOWS\System32\NPSWF32.dll
[2008/05/22 16:18:54 | 00,012,288 | —- | C] () – C:\WINDOWS\System32\DivXWMPExtType.dll
[2008/04/29 20:19:19 | 00,104,448 | —- | C] () – C:\Documents and Settings\Jason\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/04/05 00:05:19 | 00,006,534 | —- | C] () – C:\Documents and Settings\Jason\Application Data\wklnhst.dat
[2008/04/03 19:53:30 | 00,029,696 | —- | C] () – C:\WINDOWS\System32\asutl8.dll
[2008/04/02 20:20:01 | 00,000,002 | —- | C] () – C:\WINDOWS\msoffice.ini
[2008/04/02 19:51:03 | 00,000,128 | —- | C] () – C:\Documents and Settings\Jason\Local Settings\Application Data\fusioncache.dat
[2008/04/02 19:45:36 | 00,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2008/04/02 19:41:08 | 00,198,144 | —- | C] () – C:\WINDOWS\System32\_psisdecd.dll
[2008/04/02 19:35:01 | 00,000,138 | —- | C] () – C:\WINDOWS\wininit.ini
[2008/04/02 19:27:48 | 00,086,016 | —- | C] () – C:\WINDOWS\System32\preflib.dll
[2008/04/02 19:27:46 | 00,757,760 | —- | C] () – C:\WINDOWS\System32\bcm1xsup.dll
[2008/04/01 08:41:01 | 00,016,480 | —- | C] () – C:\WINDOWS\System32\rixdicon.dll
[2008/04/01 08:39:37 | 00,001,121 | —- | C] () – C:\WINDOWS\System32\OEMINFO.INI
[2008/01/09 15:01:48 | 00,000,453 | —- | C] () – C:\WINDOWS\bdoscandellang.ini
[2004/08/10 13:12:05 | 00,000,780 | —- | C] () – C:\WINDOWS\orun32.ini
[2004/08/10 13:01:18 | 00,001,793 | —- | C] () – C:\WINDOWS\System32\fxsperf.ini
[2004/08/10 12:51:26 | 00,006,672 | —- | C] () – C:\WINDOWS\System32\advpack.dllb.dat
[2004/08/10 12:51:10 | 00,001,024 | —- | C] () – C:\WINDOWS\System32\kvv30ra.dll
[2004/08/10 12:51:10 | 00,001,024 | —- | C] () – C:\WINDOWS\System32\clauth2.dll
[2004/08/10 12:51:10 | 00,001,024 | —- | C] () – C:\WINDOWS\System32\clauth1.dll
[2004/08/10 12:51:10 | 00,000,339 | —- | C] () – C:\WINDOWS\System32\ol0cli9.dll
[2004/08/10 12:51:10 | 00,000,100 | —- | C] () – C:\WINDOWS\System32\prsgrc.dll
[2004/08/10 12:51:10 | 00,000,072 | —- | C] () – C:\WINDOWS\System32\ssprs.dll
[2004/08/10 12:51:10 | 00,000,016 | -H– | C] () – C:\WINDOWS\System32\or4syj8.dll
[2004/08/10 12:51:06 | 00,025,308 | -H– | C] () – C:\Documents and Settings\Jason\Application Data\windows.dat
[2003/11/16 03:48:02 | 00,909,312 | —- | C] () – C:\WINDOWS\System32\vorbisenc.dll
[2003/11/16 03:48:00 | 01,060,864 | —- | C] () – C:\WINDOWS\System32\vorbis.dll
[2003/11/15 10:54:18 | 00,036,864 | —- | C] () – C:\WINDOWS\System32\ogg.dll
[2002/10/06 16:42:58 | 00,237,568 | —- | C] () – C:\WINDOWS\System32\OggDS.dll
========== LOP Check ==========
[2009/10/24 14:14:23 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\AIM
[2009/08/18 03:33:10 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Audio Ease
[2009/05/17 19:11:35 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Cakewalk
[2009/08/05 18:51:28 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Celemony Software GmbH
[2009/12/04 23:39:50 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\ESET
[2008/06/02 20:17:18 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Last.fm
[2009/03/03 13:59:20 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\myitlab
[2009/07/12 02:23:02 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Pinnacle
[2009/11/01 16:58:27 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\PreEmptive Solutions
[2009/05/07 21:28:55 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Propellerhead Software
[2009/10/19 20:25:30 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\SafeNet Sentinel
[2009/06/11 14:34:30 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Sony
[2009/10/19 20:22:14 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\SPSS
[2009/10/12 23:32:41 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\TechSmith
[2009/12/27 01:03:00 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\TEMP
[2009/07/07 23:46:13 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Tiffen
[2009/05/27 21:59:32 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Ulead Systems
[2008/06/04 17:42:14 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\VertusTech
[2008/04/02 19:34:54 | 00,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Viewpoint
[2009/07/07 23:44:37 | 00,000,000 | -H-D | M] – C:\Documents and Settings\All Users\Application Data\{3DDB0D6A-2256-4D46-A1A3-C97907A49312}
[2009/08/27 15:20:39 | 00,000,000 | -H-D | M] – C:\Documents and Settings\All Users\Application Data\{8E4DC1D0-364F-4942-85CD-BCD7298D633E}
[2009/08/27 15:23:29 | 00,000,000 | -H-D | M] – C:\Documents and Settings\All Users\Application Data\{A7689876-F0D2-4DC6-9C70-CA306AA80853}
[2009/11/15 15:22:09 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\.purple
[2009/10/24 14:15:36 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\acccore
[2009/07/14 01:24:43 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Antares
[2008/04/03 19:53:46 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Anvil Studio
[2009/08/18 03:33:05 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Audio Ease
[2009/07/29 21:54:10 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Braid
[2009/05/17 22:19:56 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Cakewalk
[2008/04/03 23:24:17 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\CoreCodec
[2009/04/23 15:42:40 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\CoreFTP
[2008/10/06 17:27:00 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\DAEMON Tools
[2008/08/18 17:12:56 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\FLV Extract
[2009/07/22 18:53:29 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\GrabIt
[2009/03/11 15:36:10 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\IrfanView
[2009/07/16 16:20:49 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Moyea
[2008/07/19 22:40:18 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\NetMedia Providers
[2008/04/15 20:26:24 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Notepad++
[2008/05/16 18:56:17 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Opera
[2009/12/17 00:48:38 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Plogue
[2009/12/17 00:48:37 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Plogue Art et Technologie, Inc
[2009/05/07 22:09:07 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Propellerhead Software
[2008/07/19 22:40:18 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Publish Providers
[2008/04/03 19:49:37 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Renegade Minds
[2009/06/12 00:42:50 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Sony
[2009/06/11 14:55:54 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Sony Setup
[2009/04/23 15:29:26 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\SSH
[2009/05/25 22:15:58 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Steinberg
[2008/04/05 00:05:19 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Template
[2008/12/01 00:08:42 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Thomson Learning
[2009/07/07 23:48:18 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Tiffen
[2009/05/27 21:59:36 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Ulead Systems
[2009/08/18 01:56:44 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\uTorrent
[2009/12/01 14:26:20 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\VitySoft
[2009/05/27 17:53:30 | 00,000,000 | —D | M] – C:\Documents and Settings\Jason\Application Data\Xilisoft Corporation
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 151 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:888AFB86
@Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:7E95B6FD
< End of report >