Just to let you know that during the OTL Scans I got about 10 different po-up windows that at least looked like AVG windows warning me that there were Trojans and asking me to delete, heal, etc. I know that you guys don't like things changing during scans so I just closed those files. I could not get into safe-mode so here are the OTL files. Thanks, Sagiter
OTL.TXT
OTL logfile created on: 2/28/2010 9:13:22 AM - Run 1
OTL by OldTimer - Version 3.1.30.3 Folder = C:\Documents and Settings\Neil\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
255.00 Mb Total Physical Memory | 18.00 Mb Available Physical Memory | 7.00% Memory free
1,000.00 Mb Paging File | 352.00 Mb Available in Paging File | 35.00% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.22 Gb Total Space | 15.39 Gb Free Space | 41.34% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OFFICE
Current User Name: Neil
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Neil\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
PRC - C:\Program Files\SlimBrowser\sbrowser.exe (FlashPeak, Inc.)
PRC - C:\Program Files\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\AVG\AVG8\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG8\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG8\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG8\avgemc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG8\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\Common Files\Motive\McciCMService.exe (Motive Communications, Inc.)
PRC - C:\Program Files\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
PRC - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
PRC - C:\Program Files\Dell Support Center\bin\sprtsvc.exe (SupportSoft, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Uniblue\Registry Booster\RegistryBooster.exe (Uniblue Registry Booster)
PRC - C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
PRC - C:\Program Files\QuickTime\qttask.exe (Apple Computer, Inc.)
PRC - C:\Program Files\MemoKit\MemoKit2.exe (Software Benefits Inc.)
PRC - C:\Program Files\Canon\Memory Card Utility\PIXMA iP6000D\PDUiP6000DMon.exe (CANON INC.)
PRC - C:\Program Files\Canon\Memory Card Utility\PIXMA iP6000D\PDUiP6000DTskbr.exe (CANON INC.)
PRC - C:\Program Files\Canon\Memory Card Utility\PIXMA iP6000D\PDUiP6000DMemCrdMgr.exe (CANON INC.)
PRC - C:\WINDOWS\SYSTEM32\ati2evxx.exe ()
PRC - C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (ATI Technologies, Inc.)
PRC - C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
PRC - C:\Program Files\Dell\QuickSet\quickset.exe ()
PRC - C:\WINDOWS\SYSTEM32\CIDAEMON.EXE (Microsoft Corporation)
PRC - C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
PRC - C:\WINDOWS\SYSTEM32\DSentry.exe (Dell - Advanced Desktop Engineering)
PRC - C:\Program Files\Apoint\ApntEx.exe (Alps Electric Co., Ltd.)
PRC - C:\ImageMate CompactFlash USB\SandIcon.exe ()
PRC - C:\WINDOWS\SYSTEM32\Crypserv.exe (Kenonic Controls Ltd.)
PRC - C:\Program Files\Microsoft Office\Office\1033\MSOFFICE.EXE (Microsoft Corporation)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Neil\Desktop\OTL.exe (OldTimer Tools)
========== Win32 Services (SafeList) ==========
SRV - (JavaQuickStarterService) – C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (avg8emc) – C:\Program Files\AVG\AVG8\avgemc.exe (AVG Technologies CZ, s.r.o.)
SRV - (avg8wd) – C:\Program Files\AVG\AVG8\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (McciCMService) – C:\Program Files\Common Files\Motive\McciCMService.exe (Motive Communications, Inc.)
SRV - (sprtsvc_dellsupportcenter) SupportSoft Sprocket Service (dellsupportcenter) – C:\Program Files\Dell Support Center\bin\sprtsvc.exe (SupportSoft, Inc.)
SRV - (sp_rssrv) – C:\Program Files\Spyware Terminator\sp_rsser.exe (Crawler.com)
SRV - (DSBrokerService) – C:\Program Files\DellSupport\brkrsvc.exe ()
SRV - (IDriverT) – C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (PDUiP6000DMemCrdMgr) – C:\Program Files\Canon\Memory Card Utility\PIXMA iP6000D\PDUiP6000DMemCrdMgr.exe (CANON INC.)
SRV - (Ati HotKey Poller) – C:\WINDOWS\SYSTEM32\ati2evxx.exe ()
SRV - (Crypkey License) – C:\WINDOWS\System32\Crypserv.exe (Kenonic Controls Ltd.)
========== Driver Services (SafeList) ==========
DRV - (AvgMfx86) – C:\WINDOWS\System32\Drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgLdx86) – C:\WINDOWS\System32\Drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgTdiX) – C:\WINDOWS\System32\Drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (usbaudio) USB Audio Driver (WDM) – C:\WINDOWS\SYSTEM32\DRIVERS\usbaudio.sys (Microsoft Corporation)
DRV - (amdagp) – C:\WINDOWS\System32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)
DRV - (sisagp) – C:\WINDOWS\System32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)
DRV - (Secdrv) – C:\WINDOWS\SYSTEM32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (MRENDIS5) – C:\Program Files\Common Files\Motive\MRENDIS5.sys (Motive, Inc.)
DRV - (MREMPR5) – C:\Program Files\Common Files\Motive\MREMPR5.sys (Motive, Inc.)
DRV - (dsunidrv) – C:\WINDOWS\SYSTEM32\DRIVERS\dsunidrv.sys (Gteko Ltd.)
DRV - (DSproct) – C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys (Gteko Ltd.)
DRV - (USBModem) – C:\WINDOWS\SYSTEM32\DRIVERS\lgusbmodem.sys (LG Electronics Inc.)
DRV - (UsbDiag) – C:\WINDOWS\SYSTEM32\DRIVERS\lgusbdiag.sys (LG Electronics Inc.)
DRV - (usbbus) – C:\WINDOWS\SYSTEM32\DRIVERS\lgusbbus.sys (LG Electronics Inc.)
DRV - (GEARAspiWDM) – C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (nv) – C:\WINDOWS\SYSTEM32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (iAimFP4) – C:\WINDOWS\SYSTEM32\DRIVERS\wvchntxx.sys (Intel® Corporation)
DRV - (iAimFP3) – C:\WINDOWS\SYSTEM32\DRIVERS\wsiintxx.sys (Intel® Corporation)
DRV - (iAimTV4) – C:\WINDOWS\SYSTEM32\DRIVERS\wch7xxnt.sys (Intel® Corporation)
DRV - (iAimTV3) – C:\WINDOWS\SYSTEM32\DRIVERS\watv04nt.sys (Intel® Corporation)
DRV - (iAimTV1) – C:\WINDOWS\SYSTEM32\DRIVERS\watv02nt.sys (Intel® Corporation)
DRV - (iAimTV0) – C:\WINDOWS\SYSTEM32\DRIVERS\watv01nt.sys (Intel® Corporation)
DRV - (iAimFP0) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv01nt.sys (Intel® Corporation)
DRV - (iAimFP1) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv02nt.sys (Intel® Corporation)
DRV - (iAimFP2) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv05nt.sys (Intel® Corporation)
DRV - (i81x) – C:\WINDOWS\SYSTEM32\DRIVERS\i81xnt5.sys (Intel® Corporation)
DRV - (ati2mtag) – C:\WINDOWS\SYSTEM32\DRIVERS\ati2mtag.sys (ATI Technologies Inc.)
DRV - (STAC97) Audio Driver (WDM) – C:\WINDOWS\SYSTEM32\DRIVERS\STAC97.sys (SigmaTel, Inc.)
DRV - (ApfiltrService) – C:\WINDOWS\SYSTEM32\DRIVERS\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (omci) – C:\WINDOWS\SYSTEM32\DRIVERS\omci.sys (Dell Computer Corporation)
DRV - (bcm4sbxp) – C:\WINDOWS\SYSTEM32\DRIVERS\bcm4sbxp.sys (Broadcom Corporation)
DRV - (BCM43XX) – C:\WINDOWS\SYSTEM32\DRIVERS\LSBCMNDS.SYS (The Linksys Group, Inc.)
DRV - (Vpctcom) – C:\WINDOWS\System32\DRIVERS\vpctcom.sys (PCtel, Inc.)
DRV - (Ptserial) – C:\WINDOWS\SYSTEM32\DRIVERS\ptserial.sys (PCTEL, INC.)
DRV - (Vvoice) – C:\WINDOWS\System32\DRIVERS\vvoice.sys (PCtel, Inc.)
DRV - (Vmodem) – C:\WINDOWS\System32\DRIVERS\vmodem.sys (PCTEL, INC.)
DRV - (Ptilink) – C:\WINDOWS\SYSTEM32\DRIVERS\PTILINK.SYS (Parallel Technologies, Inc.)
DRV - (AloPar) – C:\WINDOWS\SYSTEM32\DRIVERS\AloPar.sys (Eisenworld, Inc.)
DRV - (Sparrow) – C:\WINDOWS\System32\DRIVERS\sparrow.sys (Adaptec, Inc.)
DRV - (sym_u3) – C:\WINDOWS\System32\DRIVERS\sym_u3.sys (LSI Logic)
DRV - (sym_hi) – C:\WINDOWS\System32\DRIVERS\sym_hi.sys (LSI Logic)
DRV - (symc8xx) – C:\WINDOWS\System32\DRIVERS\symc8xx.sys (LSI Logic)
DRV - (symc810) – C:\WINDOWS\System32\DRIVERS\symc810.sys (Symbios Logic Inc.)
DRV - (ultra) – C:\WINDOWS\System32\DRIVERS\ultra.sys (Promise Technology, Inc.)
DRV - (ql12160) – C:\WINDOWS\System32\DRIVERS\ql12160.sys (QLogic Corporation)
DRV - (ql1080) – C:\WINDOWS\System32\DRIVERS\ql1080.sys (QLogic Corporation)
DRV - (ql1280) – C:\WINDOWS\System32\DRIVERS\ql1280.sys (QLogic Corporation)
DRV - (dac2w2k) – C:\WINDOWS\System32\DRIVERS\dac2w2k.sys (Mylex Corporation)
DRV - (mraid35x) – C:\WINDOWS\System32\DRIVERS\mraid35x.sys (American Megatrends Inc.)
DRV - (asc) – C:\WINDOWS\System32\DRIVERS\asc.sys (Advanced System Products, Inc.)
DRV - (asc3550) – C:\WINDOWS\System32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)
DRV - (AliIde) – C:\WINDOWS\System32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (CmdIde) – C:\WINDOWS\System32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (EL90XBC) – C:\WINDOWS\SYSTEM32\DRIVERS\EL90XBC5.SYS (3Com Corporation)
DRV - (BrPar) – C:\WINDOWS\System32\drivers\BrPar.sys (Brother Industries Ltd.)
DRV - (NetworkX) – C:\WINDOWS\system32\ckldrv.sys ()
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,StartPage = http://www.optonline.net
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.optonline.net
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.google.com/search?q={searchTerm…tf8&oe=utf8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.smokinholsters.com/
IE - HKCU\..\URLSearchHook: *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll ()
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[2004/07/04 22:38:45 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Mozilla\Firefox\Profiles\default.exe\extensions
[2004/07/04 22:38:45 | 000,000,000 | —D | M] (DOM Inspector) – C:\Documents and Settings\Neil\Application Data\Mozilla\Firefox\Profiles\default.exe\extensions\{641d8d09-7dda-4850-8228-ac0ab65e2ac9}
[2004/07/04 22:38:45 | 000,000,000 | —D | M] (Firefox (default)) – C:\Documents and Settings\Neil\Application Data\Mozilla\Firefox\Profiles\default.exe\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
O1 HOSTS File: ([2008/10/14 09:11:00 | 000,266,850 | R— | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\ETC\HOSTS
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.123topsearch.com
O1 - Hosts: 127.0.0.1 123topsearch.com
O1 - Hosts: 127.0.0.1 www.132.com
O1 - Hosts: 127.0.0.1 132.com
O1 - Hosts: 127.0.0.1 www.136136.net
O1 - Hosts: 127.0.0.1 136136.net
O1 - Hosts: 127.0.0.1 www.163ns.com
O1 - Hosts: 127.0.0.1 163ns.com
O1 - Hosts: 9243 more lines…
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:\Program Files\Microsoft Money\System\mnyside.dll (Microsoft Corporation)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll (Siber Systems Inc.)
O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll ()
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - No CLSID value found.
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll (Siber Systems Inc.)
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll ()
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll (Siber Systems Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll ()
O4 - HKLM..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [ATIModeChange] C:\WINDOWS\System32\Ati2mdxx.exe (ATI Technologies, Inc.)
O4 - HKLM..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (ATI Technologies, Inc.)
O4 - HKLM..\Run: [AVG8_TRAY] C:\Program Files\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe ()
O4 - HKLM..\Run: [dellsupportcenter] C:\Program Files\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKLM..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe ( )
O4 - HKLM..\Run: [DVDSentry] C:\WINDOWS\SYSTEM32\DSentry.exe (Dell - Advanced Desktop Engineering)
O4 - HKLM..\Run: [PDUiP6000DMon] C:\Program Files\Canon\Memory Card Utility\PIXMA iP6000D\PDUiP6000DMon.exe (CANON INC.)
O4 - HKLM..\Run: [PDUiP6000DTskbr] C:\Program Files\Canon\Memory Card Utility\PIXMA iP6000D\PDUiP6000DTskbr.exe (CANON INC.)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Computer, Inc.)
O4 - HKLM..\Run: [SandIcon] C:\ImageMate CompactFlash USB\SandIcon.exe ()
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [Verizon_McciTrayApp] C:\Program Files\Verizon\McciTrayApp.exe File not found
O4 - HKLM..\Run: [yokowijer] C:\WINDOWS\System32\majudusu.DLL File not found
O4 - HKCU..\Run: [DellSupportCenter] C:\Program Files\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKCU..\Run: [RoboForm] C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKCU..\Run: [Uniblue Registry Booster] C:\Program Files\Uniblue\Registry Booster\RegistryBooster.exe (Uniblue Registry Booster)
O4 - HKCU..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Neil\Start Menu\Programs\Startup\MemoKit.lnk = C:\Program Files\MemoKit\mk.exe ()
O4 - Startup: C:\Documents and Settings\Neil\Start Menu\Programs\Startup\Webshots.lnk = C:\Program Files\Webshots\Launcher.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\PhishingFilter present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Customize Menu - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: Fill Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll (Microsoft Corporation)
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED}
https://activatemyfios.verizon.net/sdcCommo…IOS/tgctlcm.cab (Support.com Configuration Class)
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} http://support.dell.com/systemprofiler/SysPro.CAB (SysProWmi Class)
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089}
http://office.microsoft.com/templates/ieawsdc.cab (Microsoft Office Template and Media Control)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://www.apple.com/qtactivex/qtplugin.cab (QuickTime Object)
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8}
http://download.microsoft.com/download/d/c…/OGAControl.cab (Office Genuine Advantage Validation Tool)
O16 - DPF: {0C568603-D79D-11D2-87A7-00C04FF158BB} http://download.mcafee.com/molbin/Shared/MGBrwFld.cab (BrowseFolderPopup Class)
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/2008.1…toUploader5.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} http://www.ipix.com/viewers/ipixx.cab (iPIX ActiveX Control)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://fpdownload.macromedia.com/get/shock…director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.microsoft.com/download/3/9…heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85}
http://download.microsoft.com/download/7/4…helpcontrol.cab (Microsoft Genuine Advantage Self Support Tool)
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/F/6…922/wmv9VCM.CAB (Reg Error: Key error.)
O16 - DPF: {362C56AA-6E4F-40C7-A0B5-85501DBDAD77}
http://i.dell.com/images/global/js/scanner/SysProExe.cab (Scanner.SysScanner)
O16 - DPF: {36C417C6-13C6-448B-9784-DD73A93B0582}
http://download.mcafee.com/molbin/shared/m…56/mcinsctl.cab (Reg Error: Key error.)
O16 - DPF: {3BFFE033-BF43-11D5-A271-00A024A51325}
https://notes1.cc.sunysb.edu/iNotes6W.cab (iNotes6 Class)
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} http://download.mcafee.com/molbin/shared/m…83/mcinsctl.cab (Reg Error: Key error.)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537}
http://groups.msn.com/controls/PhotoUC/MsnPUpld.cab (MSN Photo Upload Tool)
O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} http://upload.facebook.com/controls/Facebo…toUploader3.cab (Facebook Photo Uploader 4 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764}
https://echat.us.dell.com/Media/VisitorChat/TLIEFlash.CAB (TLIEFlashObj Class)
O16 - DPF: {A8658086-E6AC-4957-BC8E-7D54A7E8A78D}
http://www.microsoft.com/security/controls/DoomCln.CAB (DoomCln Object)
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429}
http://www.sibelius.com/download/software/…tiveXPlugin.cab (ScorchPlugin Class)
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} http://download.mcafee.com/molbin/shared/m…,20/mcgdmgr.cab (Reg Error: Key error.)
O16 - DPF: {C432C4BD-3566-411C-8F3C-E5E0D3AE5D33}
http://viewers.multicastmedia.com/common/m…MINIBrowser.CAB (CBrowser Class)
O16 - DPF: {CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl…indows-i586.cab (Java Plug-in 1.4.2_06)
O16 - DPF: {CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinstall-…indows-i586.cab (Java Plug-in 1.5.0_02)
O16 - DPF: {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-…indows-i586.cab (Java Plug-in 1.5.0_04)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-…indows-i586.cab (Java Plug-in 1.5.0_06)
O16 - DPF: {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-…indows-i586.cab (Java Plug-in 1.5.0_09)
O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-…indows-i586.cab (Java Plug-in 1.5.0_10)
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_01)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_02)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-0000-0000-0000-000000000000} http://download.macromedia.com/pub/shockwa…ash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shoc…ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {F5820AD3-9B20-423E-B2AA-7AF2B4055746}
http://download.paltalk.com/download/0.x/regdload.cab (CRegistryDownload Class)
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} http://chat.msn.com/bin/msnchat45.cab (MSN Chat Control 4.5)
O16 - DPF: DirectAnimation Java Classes Reg Error: Value error. (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java Reg Error: Value error. (Reg Error: Key error.)
O16 - DPF: vzTCPConfig
http://www2.verizon.net/help/fios_settings…vzTCPConfig.CAB (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - AppInit_DLLs: (c:\windows\system32\doyoginu.dll) - C:\WINDOWS\System32\doyoginu.dll File not found
O20 - AppInit_DLLs: (kayukore.dll) - File not found
O20 - AppInit_DLLs: (c:\windows\system32\suwefosa.dll) - C:\WINDOWS\System32\suwefosa.dll File not found
O20 - AppInit_DLLs: (c:\windows\system32\majudusu.dll) - C:\WINDOWS\System32\majudusu.dll File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll ()
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O21 - SSODL: dirimeyib - {25ced2a1-dc24-4e14-af92-baf48451c48a} - C:\WINDOWS\System32\majudusu.dll File not found
O21 - SSODL: pasikulos - {52d38f86-216b-4bcd-ac83-f951b152cedd} - C:\WINDOWS\System32\doyoginu.dll File not found
O21 - SSODL: pukujayug - {a8969e8d-de4e-457a-ba43-5955702f6c82} - C:\WINDOWS\System32\suwefosa.dll File not found
O22 - SharedTaskScheduler: {25ced2a1-dc24-4e14-af92-baf48451c48a} - gahurihor - C:\WINDOWS\System32\majudusu.dll File not found
O22 - SharedTaskScheduler: {52d38f86-216b-4bcd-ac83-f951b152cedd} - tokatiluy - C:\WINDOWS\System32\doyoginu.dll File not found
O22 - SharedTaskScheduler: {a8969e8d-de4e-457a-ba43-5955702f6c82} - kupuhivus - C:\WINDOWS\System32\suwefosa.dll File not found
O24 - Desktop WallPaper: C:\Documents and Settings\Neil\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Neil\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2002/09/03 08:59:58 | 000,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O33 - MountPoints2\{907ca763-1772-11db-befe-00062541da30}\Shell - "" = AutoRun
O33 - MountPoints2\{907ca763-1772-11db-befe-00062541da30}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{907ca763-1772-11db-befe-00062541da30}\Shell\AutoRun\command - "" = F:\LaunchU3.exe – File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] – "%1" %*
O35 - exefile [open] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\SYSTEM32\IAS [2003/07/03 06:31:18 | 000,000,000 | —D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\SYSTEM32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
========== Files/Folders - Created Within 30 Days ==========
[2010/02/28 09:10:19 | 000,549,888 | —- | C] (OldTimer Tools) – C:\Documents and Settings\Neil\Desktop\OTL.exe
[2010/02/28 08:43:51 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Application Data\AdobeUM
[2010/02/28 08:43:40 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Adobe
[2010/02/25 23:44:50 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Application Data\Adobe
[2010/02/25 11:44:49 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2010/02/24 15:12:26 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Application Data\Real
[2010/02/24 09:16:45 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Application Data\Adobe
[2009/06/29 07:25:48 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Application Data\AVGTOOLBAR
[2008/10/22 09:05:35 | 000,000,000 | –SD | M] – C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2008/10/22 09:05:35 | 000,000,000 | –SD | M] – C:\Documents and Settings\LocalService\Application Data\Microsoft
[2008/10/22 09:05:35 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2008/10/22 09:05:35 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2007/02/09 00:19:36 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2006/11/30 11:53:22 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Application Data\Gtek
[2006/11/05 05:05:42 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Application Data\SlimBrowser
[2006/06/20 21:19:58 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Application Data\Macromedia
[2005/04/30 09:43:38 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Help
[2005/04/30 09:43:38 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Application Data\Help
[2004/05/08 20:06:28 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2003/09/05 10:16:53 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Application Data\McAfee.com Personal Firewall
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[4 C:\*.tmp files -> C:\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2099/01/01 12:00:00 | 000,097,280 | -HS- | M] () – C:\WINDOWS\System32\dusukaga.dll
[2099/01/01 12:00:00 | 000,096,768 | -HS- | M] () – C:\WINDOWS\System32\duyesedi.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | M] () – C:\WINDOWS\System32\vagiwara.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | M] () – C:\WINDOWS\System32\judopuje.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | M] () – C:\WINDOWS\System32\himesuvo.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] () – C:\WINDOWS\System32\zobubabe.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] () – C:\WINDOWS\System32\tipilifi.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] () – C:\WINDOWS\System32\tipifipo.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] () – C:\WINDOWS\System32\lewabenu.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] () – C:\WINDOWS\System32\hutijezu.dll
[2099/01/01 12:00:00 | 000,047,104 | -HS- | M] () – C:\WINDOWS\System32\woheluba.dll
[2099/01/01 12:00:00 | 000,047,104 | -HS- | M] () – C:\WINDOWS\System32\dazuyelu.dll
[2099/01/01 12:00:00 | 000,043,520 | -HS- | M] () – C:\WINDOWS\System32\wayofuge.dll
[2099/01/01 12:00:00 | 000,043,520 | -HS- | M] () – C:\WINDOWS\System32\gifeleho.dll
[2099/01/01 12:00:00 | 000,043,008 | -HS- | M] () – C:\WINDOWS\System32\zugoyepi.dll
[2010/02/28 10:05:53 | 000,006,456 | -H– | M] () – C:\WINDOWS\System32\komobome
[2010/02/28 09:35:42 | 000,000,608 | —- | M] () – C:\WINDOWS\aclockz6.dat
[2010/02/28 09:10:20 | 000,549,888 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Neil\Desktop\OTL.exe
[2010/02/28 09:00:10 | 000,000,296 | —- | M] () – C:\WINDOWS\tasks\oqqaesob.job
[2010/02/28 08:18:51 | 000,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2010/02/28 08:18:26 | 000,002,048 | –S- | M] () – C:\WINDOWS\BOOTSTAT.DAT
[2010/02/28 01:05:04 | 056,402,923 | —- | M] () – C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2010/02/27 11:18:42 | 000,000,178 | -HS- | M] () – C:\Documents and Settings\Neil\NTUSER.INI
[2010/02/27 11:18:41 | 009,175,040 | -H– | M] () – C:\Documents and Settings\Neil\NTUSER.DAT
[2010/02/27 07:35:53 | 000,002,469 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Dell Support Center.lnk
[2010/02/26 15:18:20 | 000,293,376 | —- | M] () – C:\Documents and Settings\Neil\Desktop\v8vqkne5.exe
[2010/02/26 07:19:28 | 000,000,000 | —- | M] () – C:\Documents and Settings\Neil\defogger_reenable
[2010/02/26 07:11:27 | 000,050,477 | —- | M] () – C:\Documents and Settings\Neil\Desktop\Defogger.exe
[2010/02/26 00:01:03 | 003,932,214 | —- | M] () – C:\WINDOWS\Webshots for Neil.bmp
[2010/02/25 22:59:35 | 000,000,710 | —- | M] () – C:\Documents and Settings\Neil\Start Menu\Programs\Startup\Webshots.lnk
[2010/02/24 01:44:49 | 000,142,495 | —- | M] () – C:\WINDOWS\System32\drivers\Avg\microavi.avg
[2010/02/24 01:44:46 | 000,492,629 | —- | M] () – C:\WINDOWS\System32\drivers\Avg\miniavi.avg
[2010/02/24 01:44:41 | 006,061,540 | —- | M] () – C:\WINDOWS\System32\drivers\Avg\avi7.avg
[2010/02/23 20:02:48 | 000,054,156 | -H– | M] () – C:\WINDOWS\QTFont.qfn
[2010/02/20 11:57:43 | 000,059,392 | —- | M] () – C:\Documents and Settings\Neil\My Documents\TAXES and FAFSA 2009.doc
[2010/02/11 05:27:24 | 000,001,374 | —- | M] () – C:\WINDOWS\imsins.BAK
[2010/02/10 16:55:27 | 000,000,452 | —- | M] () – C:\Documents and Settings\Neil\My Documents\spider.sav
[2010/02/07 16:39:29 | 000,050,688 | —- | M] () – C:\Documents and Settings\Neil\My Documents\TAXES 2009 for accountant NO SAM.doc
[2010/02/07 16:37:34 | 000,024,576 | —- | M] () – C:\Documents and Settings\Neil\My Documents\SAMSON FLANCBAUM TAXES 2009.doc
[2010/02/07 15:33:07 | 000,024,576 | —- | M] () – C:\Documents and Settings\Neil\My Documents\Smokin Taxes 2009.doc
[2010/02/06 20:40:02 | 000,054,272 | —- | M] () – C:\Documents and Settings\Neil\My Documents\TAXES 2009.doc
[2010/02/06 20:32:16 | 000,052,736 | —- | M] () – C:\Documents and Settings\Neil\My Documents\TAXES 2009 for accountant.doc
[2010/02/06 16:46:13 | 004,456,448 | —- | M] () – C:\Documents and Settings\Neil\My Documents\My Money.mny
[2010/02/06 15:49:41 | 000,024,064 | —- | M] () – C:\Documents and Settings\Neil\My Documents\Smokin Taxes 2008.doc
[2010/02/05 11:41:40 | 000,001,409 | —- | M] () – C:\WINDOWS\QTFont.for
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[4 C:\*.tmp files -> C:\*.tmp -> ]
========== Files Created - No Company Name ==========
[2099/01/01 12:00:00 | 000,097,280 | -HS- | C] () – C:\WINDOWS\System32\dusukaga.dll
[2099/01/01 12:00:00 | 000,096,768 | -HS- | C] () – C:\WINDOWS\System32\duyesedi.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | C] () – C:\WINDOWS\System32\vagiwara.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | C] () – C:\WINDOWS\System32\judopuje.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | C] () – C:\WINDOWS\System32\himesuvo.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | C] () – C:\WINDOWS\System32\zobubabe.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | C] () – C:\WINDOWS\System32\tipilifi.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | C] () – C:\WINDOWS\System32\tipifipo.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | C] () – C:\WINDOWS\System32\lewabenu.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | C] () – C:\WINDOWS\System32\hutijezu.dll
[2099/01/01 12:00:00 | 000,047,104 | -HS- | C] () – C:\WINDOWS\System32\woheluba.dll
[2099/01/01 12:00:00 | 000,047,104 | -HS- | C] () – C:\WINDOWS\System32\dazuyelu.dll
[2099/01/01 12:00:00 | 000,043,520 | -HS- | C] () – C:\WINDOWS\System32\wayofuge.dll
[2099/01/01 12:00:00 | 000,043,520 | -HS- | C] () – C:\WINDOWS\System32\gifeleho.dll
[2099/01/01 12:00:00 | 000,043,008 | -HS- | C] () – C:\WINDOWS\System32\zugoyepi.dll
[2099/01/01 12:00:00 | 000,006,456 | -H– | C] () – C:\WINDOWS\System32\komobome
[2010/02/27 07:35:53 | 000,002,469 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Dell Support Center.lnk
[2010/02/26 15:18:19 | 000,293,376 | —- | C] () – C:\Documents and Settings\Neil\Desktop\v8vqkne5.exe
[2010/02/26 07:19:28 | 000,000,000 | —- | C] () – C:\Documents and Settings\Neil\defogger_reenable
[2010/02/26 07:11:27 | 000,050,477 | —- | C] () – C:\Documents and Settings\Neil\Desktop\Defogger.exe
[2010/02/23 22:26:16 | 000,000,296 | —- | C] () – C:\WINDOWS\tasks\oqqaesob.job
[2010/02/07 16:31:12 | 000,050,688 | —- | C] () – C:\Documents and Settings\Neil\My Documents\TAXES 2009 for accountant NO SAM.doc
[2010/02/07 16:30:39 | 000,024,576 | —- | C] () – C:\Documents and Settings\Neil\My Documents\SAMSON FLANCBAUM TAXES 2009.doc
[2010/02/07 15:26:55 | 000,024,576 | —- | C] () – C:\Documents and Settings\Neil\My Documents\Smokin Taxes 2009.doc
[2010/02/06 20:39:38 | 000,059,392 | —- | C] () – C:\Documents and Settings\Neil\My Documents\TAXES and FAFSA 2009.doc
[2010/02/06 20:16:13 | 000,052,736 | —- | C] () – C:\Documents and Settings\Neil\My Documents\TAXES 2009 for accountant.doc
[2010/02/05 11:41:40 | 000,054,156 | -H– | C] () – C:\WINDOWS\QTFont.qfn
[2010/02/05 11:41:40 | 000,001,409 | —- | C] () – C:\WINDOWS\QTFont.for
[2010/01/30 15:02:10 | 000,054,272 | —- | C] () – C:\Documents and Settings\Neil\My Documents\TAXES 2009.doc
[2008/05/09 07:44:34 | 000,141,312 | —- | C] () – C:\WINDOWS\System32\drivers\sp_rsdrv2.sys
[2008/03/06 00:36:33 | 000,086,016 | —- | C] () – C:\WINDOWS\System32\ati2evxx.dll
[2007/01/23 15:15:22 | 000,676,224 | —- | C] () – C:\WINDOWS\System32\OGACheckControl.DLL
[2006/10/20 16:15:34 | 000,001,359 | —- | C] () – C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/01/11 13:25:19 | 000,000,576 | —- | C] () – C:\WINDOWS\_delis32.ini
[2006/01/11 13:25:13 | 000,001,216 | —- | C] () – C:\WINDOWS\_isenv31.ini
[2006/01/11 13:25:12 | 000,000,521 | —- | C] () – C:\WINDOWS\_iserr31.ini
[2006/01/09 12:28:27 | 000,000,313 | —- | C] () – C:\WINDOWS\BRDIAG.INI
[2006/01/09 12:28:27 | 000,000,145 | —- | C] () – C:\WINDOWS\BRVIDEO.INI
[2006/01/09 12:28:26 | 000,000,023 | —- | C] () – C:\WINDOWS\Brownie.ini
[2006/01/09 12:28:17 | 000,026,624 | —- | C] () – C:\WINDOWS\System32\BRGSRC32.DLL
[2006/01/09 12:28:17 | 000,004,608 | —- | C] () – C:\WINDOWS\System32\BRGSRC16.DLL
[2006/01/09 12:28:16 | 000,077,824 | —- | C] () – C:\WINDOWS\System32\BROSNMP.DLL
[2006/01/09 12:28:12 | 000,009,013 | —- | C] () – C:\WINDOWS\HL-2040.INI
[2006/01/09 12:27:26 | 000,000,426 | —- | C] () – C:\WINDOWS\BRWMARK.INI
[2005/11/29 00:11:56 | 000,000,037 | —- | C] () – C:\WINDOWS\ipixActivex.ini
[2005/08/09 17:12:28 | 003,596,288 | —- | C] () – C:\WINDOWS\System32\qt-dx331.dll
[2004/11/18 14:30:13 | 000,000,000 | —- | C] () – C:\WINDOWS\OpPrintServer.INI
[2004/11/18 14:21:16 | 000,007,680 | —- | C] () – C:\WINDOWS\System32\CNMVS69.DLL
[2004/09/11 21:54:11 | 000,000,063 | —- | C] () – C:\WINDOWS\mdm.ini
[2004/09/03 17:52:50 | 000,196,608 | —- | C] () – C:\WINDOWS\System32\GCCollection.dll
[2004/06/30 15:04:46 | 000,040,960 | —- | C] () – C:\WINDOWS\System32\SDelete.dll
[2004/04/21 13:34:48 | 000,071,749 | —- | C] () – C:\WINDOWS\HCExtOutput.dll
[2004/04/21 13:34:48 | 000,000,823 | —- | C] () – C:\WINDOWS\TSC.ini
[2004/04/21 13:34:32 | 000,000,170 | —- | C] () – C:\WINDOWS\GetServer.ini
[2004/03/25 11:20:56 | 000,000,127 | —- | C] () – C:\Documents and Settings\Neil\Local Settings\Application Data\fusioncache.dat
[2004/03/25 08:33:21 | 000,000,024 | —- | C] () – C:\WINDOWS\wininit.ini
[2004/03/25 08:33:05 | 000,000,002 | —- | C] () – C:\WINDOWS\msoffice.ini
[2004/03/07 13:51:00 | 000,024,924 | —- | C] () – C:\WINDOWS\System32\openports.dll
[2004/02/09 15:42:28 | 000,000,071 | —- | C] () – C:\WINDOWS\Theme Uninstall.ini
[2003/10/14 15:54:32 | 000,030,720 | —- | C] () – C:\Documents and Settings\Neil\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2003/10/03 17:10:14 | 000,000,036 | —- | C] () – C:\WINDOWS\Crypkey.ini
[2003/10/03 17:10:09 | 000,024,608 | —- | C] () – C:\WINDOWS\System32\Ckldrv.sys
[2003/10/03 17:10:09 | 000,018,432 | —- | C] () – C:\WINDOWS\Setup_ck.dll
[2003/10/03 17:10:08 | 000,000,000 | —- | C] () – C:\WINDOWS\PROTOCOL.INI
[2003/08/22 19:23:38 | 000,000,026 | —- | C] () – C:\WINDOWS\INTUIT.INI
[2003/07/23 18:57:41 | 000,002,154 | —- | C] () – C:\WINDOWS\Solitaire.ini
[2003/07/11 19:12:37 | 000,000,210 | —- | C] () – C:\WINDOWS\cdPlayer.ini
[2003/07/10 06:55:57 | 000,000,208 | —- | C] () – C:\WINDOWS\QUICKEN.INI
[2003/07/10 01:36:45 | 000,000,000 | —- | C] () – C:\WINDOWS\NSREX.INI
[2003/07/10 00:53:16 | 000,000,054 | —- | C] () – C:\WINDOWS\setihome.ini
[2003/07/09 23:12:55 | 000,000,034 | —- | C] () – C:\WINDOWS\alohabob.INI
[2003/07/03 07:29:25 | 000,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2003/07/03 07:19:29 | 000,000,376 | —- | C] () – C:\WINDOWS\ODBC.INI
[2003/07/03 07:04:28 | 000,000,893 | —- | C] () – C:\WINDOWS\orun32.ini
[2003/07/03 06:35:24 | 000,000,546 | —- | C] () – C:\WINDOWS\System32\OEMINFO.INI
[2002/10/28 10:53:49 | 000,210,944 | —- | C] () – C:\WINDOWS\System32\MSVCRT10.DLL
[2002/10/28 10:53:43 | 000,000,083 | —- | C] () – C:\WINDOWS\KPCMS.INI
[2002/07/03 10:57:48 | 000,013,203 | —- | C] () – C:\WINDOWS\System32\drivers\packet.sys
[2002/01/08 19:03:10 | 000,077,824 | —- | C] () – C:\WINDOWS\System32\MiniBrowser.dll
[2001/12/17 21:30:43 | 000,000,359 | —- | C] () – C:\WINDOWS\smsafari.ini
[2001/12/17 21:17:17 | 000,012,416 | —- | C] () – C:\WINDOWS\System32\VRX1.DLL
[2001/12/17 21:17:16 | 000,027,136 | —- | C] () – C:\WINDOWS\System32\VERMONT1.DLL
[2001/12/17 21:17:11 | 000,107,520 | —- | C] () – C:\WINDOWS\System32\SIMANT.DLL
[2001/12/03 15:58:32 | 000,286,208 | —- | C] () – C:\WINDOWS\System32\DCSSDK32.dll
[2001/12/03 15:58:32 | 000,107,456 | —- | C] () – C:\WINDOWS\System32\SH33W32.DLL
[2001/11/21 19:44:10 | 000,003,413 | —- | C] () – C:\Documents and Settings\Neil\Application Data\dw.log
[2001/07/05 16:36:07 | 000,000,370 | —- | C] () – C:\WINDOWS\KA.INI
[2001/05/30 08:47:44 | 000,110,592 | —- | C] () – C:\WINDOWS\System32\cdtool.dll
[2001/05/12 16:10:41 | 000,056,832 | —- | C] () – C:\WINDOWS\System32\iyvu9_32.dll
[2001/05/12 11:01:14 | 000,167,936 | —- | C] () – C:\WINDOWS\System32\XFILEXR.DLL
[2001/05/12 10:59:13 | 000,040,960 | —- | C] () – C:\WINDOWS\System32\OEMREG.DLL
[2001/05/12 10:58:38 | 000,008,576 | —- | C] () – C:\WINDOWS\System32\ICMUPG.DLL
[2001/05/12 10:54:15 | 000,028,672 | —- | C] () – C:\WINDOWS\System32\NETBIOS.DLL
[2001/05/12 10:53:38 | 000,188,416 | —- | C] () – C:\WINDOWS\System32\MEMBG.DLL
[2001/05/12 10:51:28 | 000,002,490 | —- | C] () – C:\WINDOWS\System32\DLCNDI.DLL
[2001/05/12 09:46:50 | 000,009,216 | —- | C] () – C:\WINDOWS\System32\Spktrn32.dll
[2001/05/12 09:29:56 | 000,040,448 | —- | C] () – C:\WINDOWS\System32\hcfuninst.dll
[2001/05/12 09:29:56 | 000,028,672 | —- | C] () – C:\WINDOWS\System32\hcfapi.dll
[2000/10/21 01:21:26 | 000,363,520 | —- | C] () – C:\WINDOWS\System32\psisdecd.dll
[1999/12/07 00:00:00 | 000,024,975 | —- | C] () – C:\WINDOWS\twain_16.dll
[1999/07/23 12:46:48 | 000,000,116 | —- | C] () – C:\WINDOWS\AuHCcup1.ini
[1999/07/23 09:53:20 | 000,129,536 | —- | C] () – C:\WINDOWS\AuHCcup1.dll
[1999/01/22 17:46:58 | 000,065,536 | —- | C] () – C:\WINDOWS\System32\MSRTEDIT.DLL
[1980/01/01 00:00:00 | 000,031,744 | —- | C] () – C:\WINDOWS\System32\mdmmoh.dll
[1979/12/31 11:29:50 | 000,038,352 | —- | C] () – C:\WINDOWS\System32\NAVAPGUI.DLL
========== LOP Check ==========
[2009/11/06 06:56:41 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar
[2008/10/23 21:50:10 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Banner Maker Pro 7
[2007/11/03 14:11:59 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\GlobalSCAPE
[2005/04/03 22:08:03 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\RoboForm
[2008/08/22 07:34:02 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Spyware Terminator
[2008/03/20 08:50:30 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\SupportSoft
[2007/11/08 14:55:57 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\TEMP
[2007/12/03 11:27:07 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Viewpoint
[2008/12/30 21:58:40 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\AVGTOOLBAR
[2007/04/25 18:03:39 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Digital Photo Slide Show
[2007/11/03 14:11:52 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\GlobalSCAPE
[2003/07/09 17:05:42 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\InterVideo
[2006/04/06 15:10:57 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Kensington
[2007/05/17 22:28:21 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\KompoZer
[2004/04/20 16:38:15 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Leadertech
[2007/07/12 21:22:05 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Novagraph
[2010/02/25 11:47:37 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Registry Booster
[2004/07/10 01:31:42 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Screen Calendar
[2010/02/28 09:13:18 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\SlimBrowser
[2008/08/21 22:42:02 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Spyware Terminator
[2004/06/30 20:03:31 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Thunderbird
[2007/01/13 22:29:07 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Uniblue
[2007/12/03 11:27:14 | 000,000,000 | —D | M] – C:\Documents and Settings\Neil\Application Data\Viewpoint
[2003/07/09 22:53:59 | 000,000,258 | —- | M] () – C:\WINDOWS\Tasks\ISP signup reminder 1.job
[2010/02/28 09:00:10 | 000,000,296 | —- | M] () – C:\WINDOWS\Tasks\oqqaesob.job
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.exe >
< MD5 for: AGP440.SYS >
[2004/09/13 16:13:57 | 022,245,337 | —- | M] () .cab file – C:\WINDOWS\Driver Cache\I386\sp2.cab:AGP440.sys
[2008/11/18 15:37:15 | 023,852,652 | —- | M] () .cab file – C:\WINDOWS\Driver Cache\I386\sp3.cab:AGP440.sys
[2004/09/13 16:13:57 | 022,245,337 | —- | M] () .cab file – C:\WINDOWS\ServicePackFiles\i386\sp2.cab:AGP440.sys
[2008/11/18 15:37:15 | 023,852,652 | —- | M] () .cab file – C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 13:36:38 | 000,042,368 | —- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 – C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 13:36:38 | 000,042,368 | —- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 – C:\WINDOWS\SYSTEM32\DRIVERS\agp440.sys
[2004/08/04 01:07:41 | 000,042,368 | —- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB – C:\WINDOWS\$NtServicePackUninstall$\agp440.sys
[2001/08/17 13:58:00 | 000,025,472 | —- | M] (Microsoft Corporation) MD5=65880045C51AA36184841CEE915A61DF – C:\I386\AGP440.SYS
[2001/08/17 13:58:00 | 000,025,472 | —- | M] (Microsoft Corporation) MD5=65880045C51AA36184841CEE915A61DF – C:\WINDOWS\SYSTEM32\ReinstallBackups\0002\DriverFiles\i386\AGP440.SYS
< MD5 for: ATAPI.SYS >
[2002/08/29 05:00:00 | 010,158,890 | —- | M] () .cab file – C:\I386\sp1.cab:atapi.sys
[2002/08/29 05:00:00 | 010,158,890 | —- | M] () .cab file – C:\WINDOWS\Driver Cache\I386\sp1.cab:atapi.sys
[2004/09/13 16:13:57 | 022,245,337 | —- | M] () .cab file – C:\WINDOWS\Driver Cache\I386\sp2.cab:atapi.sys
[2008/11/18 15:37:15 | 023,852,652 | —- | M] () .cab file – C:\WINDOWS\Driver Cache\I386\sp3.cab:atapi.sys
[2004/09/13 16:13:57 | 022,245,337 | —- | M] () .cab file – C:\WINDOWS\ServicePackFiles\i386\sp2.cab:atapi.sys
[2008/11/18 15:37:15 | 023,852,652 | —- | M] () .cab file – C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2002/08/29 01:27:50 | 000,086,912 | —- | M] (Microsoft Corporation) MD5=95B858761A00E1D4F81F79A0DA019ACA – C:\I386\atapi.sys
[2002/08/29 01:27:50 | 000,086,912 | —- | M] (Microsoft Corporation) MD5=95B858761A00E1D4F81F79A0DA019ACA – C:\WINDOWS\SYSTEM32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys
[2008/04/13 13:40:30 | 000,096,512 | —- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 – C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 13:40:30 | 000,096,512 | —- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 – C:\WINDOWS\SYSTEM32\DRIVERS\atapi.sys
[2004/08/04 00:59:42 | 000,095,360 | —- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 – C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
< MD5 for: EVENTLOG.DLL >
[2008/04/13 19:11:53 | 000,056,320 | —- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 – C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/13 19:11:53 | 000,056,320 | —- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 – C:\WINDOWS\SYSTEM32\eventlog.dll
[2004/08/04 02:56:42 | 000,055,808 | —- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 – C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2002/08/29 05:00:00 | 000,049,152 | —- | M] (Microsoft Corporation) MD5=BF3C8CF53C77B48206B39910B6D6CBCC – C:\I386\EVENTLOG.DLL
< MD5 for: NETLOGON.DLL >
[2008/04/13 19:12:01 | 000,407,040 | —- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 – C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 19:12:01 | 000,407,040 | —- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 – C:\WINDOWS\SYSTEM32\netlogon.dll
[2002/08/29 05:00:00 | 000,399,360 | —- | M] (Microsoft Corporation) MD5=3ADD563ED7A1C66E6F5E0F7A661AA96D – C:\I386\NETLOGON.DLL
[2004/08/04 02:56:44 | 000,407,040 | —- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A – C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
< MD5 for: SCECLI.DLL >
[2004/08/04 02:56:44 | 000,180,224 | —- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A – C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2002/08/29 05:00:00 | 000,174,592 | —- | M] (Microsoft Corporation) MD5=97418A5C642A5C748A28BD7CF6860B57 – C:\I386\SCECLI.DLL
[2008/04/13 19:12:05 | 000,181,248 | —- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 – C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/13 19:12:05 | 000,181,248 | —- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 – C:\WINDOWS\SYSTEM32\scecli.dll
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[2099/01/01 12:00:00 | 000,047,104 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\dazuyelu.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\himesuvo.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\hutijezu.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\judopuje.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\lewabenu.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\tipifipo.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\tipilifi.dll
[2099/01/01 12:00:00 | 000,061,440 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\vagiwara.dll
[2099/01/01 12:00:00 | 000,047,104 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\woheluba.dll
[2099/01/01 12:00:00 | 000,047,616 | -HS- | M] ()
Unable to obtain MD5 – C:\WINDOWS\SYSTEM32\zobubabe.dll
[7 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2002/09/03 08:47:18 | 000,094,208 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.SAV
[2002/09/03 08:47:18 | 000,602,112 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.SAV
[2002/09/03 08:47:18 | 000,380,928 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.SAV
========== Alternate Data Streams ==========
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:08948D52
< End of report >
Extras.txt:
OTL Extras logfile created on: 2/28/2010 9:13:22 AM - Run 1
OTL by OldTimer - Version 3.1.30.3 Folder = C:\Documents and Settings\Neil\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
255.00 Mb Total Physical Memory | 18.00 Mb Available Physical Memory | 7.00% Memory free
1,000.00 Mb Paging File | 352.00 Mb Available in Paging File | 35.00% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.22 Gb Total Space | 15.39 Gb Free Space | 41.34% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OFFICE
Current User Name: Neil
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.html [@ = SlimBrowserHtml] – C:\Program Files\SlimBrowser\sbrowser.exe (FlashPeak, Inc.)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
exefile [open] – "%1" %*
htmlfile – "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] – "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] – "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] – "C:\Program Files\SlimBrowser\sbrowser.exe" %1 (FlashPeak, Inc.)
https [open] – "C:\Program Files\SlimBrowser\sbrowser.exe" %1 (FlashPeak, Inc.)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] – "%1" %*
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] – "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] – "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\AIM\aim.exe" = C:\Program Files\AIM\aim.exe:*:Disabled:AOL Instant Messenger – File not found
"C:\Program Files\Real\RealPlayer\realplay.exe" = C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealOne Player – (RealNetworks, Inc.)
"C:\Program Files\SlimBrowser\sbrowser.exe" = C:\Program Files\SlimBrowser\sbrowser.exe:*:Enabled:FlashPeak SlimBrowser – (FlashPeak, Inc.)
"C:\Program Files\East Bay Technologies\CTube!\CTube.exe" = C:\Program Files\East Bay Technologies\CTube!\CTube.exe:*:Enabled:CTube – File not found
"C:\mirc\mirc32.exe" = C:\mirc\mirc32.exe:*:Enabled:mIRC – File not found
"C:\Documents and Settings\Neil\Local Settings\Temp\{F9229DD7-2F4A-48C6-8311-E74A7F5D696A}\{4C78937F-0C8E-11D9-A3EB-0001025FA304}\k_update.exe" = C:\Documents and Settings\Neil\Local Settings\Temp\{F9229DD7-2F4A-48C6-8311-E74A7F5D696A}\{4C78937F-0C8E-11D9-A3EB-0001025FA304}\k_update.exe:*:Enabled:Kensington Digital Update of installed software via the Web. – File not found
"C:\mirc\mirc.exe" = C:\mirc\mirc.exe:*:Enabled:mIRC – File not found
"C:\Program Files\Windows Media Player\wmplayer.exe" = C:\Program Files\Windows Media Player\wmplayer.exe:*:Enabled:Windows Media Player – (Microsoft Corporation)
"C:\Program Files\AVG\AVG8\avgemc.exe" = C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe – (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG8\avgupd.exe" = C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe – (AVG Technologies CZ, s.r.o.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00000409-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Premium
"{01F9D88C-3C86-4E82-840A-101A3221F67A}" = Microsoft Money 2003
"{02B42D23-10F2-4862-ADA4-3DF1EA0021B2}" = Microsoft Money 2003 System Pack
"{0BEDBD4E-2D34-47B5-9973-57E62B29307C}" = ATI Control Panel
"{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}" = OpenOffice.org Installer 1.0
"{0F745260-192A-11D5-A511-00C04F9643C9}" = ImageMate CompactFlash USB (SDDR-31) Ver. 5.05
"{11F1920A-56A2-4642-B6E0-3B31A12C9288}" = Dell Solution Center
"{151C555A-A9E7-4A2E-B6D7-165D04A3C956}" = Dell Picture Studio - Dell Image Expert
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{20227921-DB38-4810-9162-DDC6FCA936E7}" = Dell Home Systems Services Agreement
"{22DE1881-9D24-4981-B5CC-EC7E9F2F4D52}" = Rhapsody Player Engine
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java™ 6 Update 17
"{3248F0A8-6813-11D6-A77B-00B0D0150020}" = J2SE Runtime Environment 5.0 Update 2
"{3248F0A8-6813-11D6-A77B-00B0D0150040}" = J2SE Runtime Environment 5.0 Update 4
"{3248F0A8-6813-11D6-A77B-00B0D0150060}" = J2SE Runtime Environment 5.0 Update 6
"{3248F0A8-6813-11D6-A77B-00B0D0150090}" = J2SE Runtime Environment 5.0 Update 9
"{3248F0A8-6813-11D6-A77B-00B0D0150100}" = J2SE Runtime Environment 5.0 Update 10
"{3248F0A8-6813-11D6-A77B-00B0D0160010}" = Java™ SE Runtime Environment 6 Update 1
"{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java™ 6 Update 2
"{3248F0A8-6813-11D6-A77B-00B0D0160030}" = Java™ 6 Update 3
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java™ 6 Update 5
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java™ 6 Update 7
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35F768BD-330E-4A2C-89C5-A38B588AF08D}" = Canon PIXMA iP6000D Memory Card Utility
"{369B36BE-3D64-4641-9AEA-808D436FE132}" = Microsoft Picture It! Photo 7.0
"{3868A8EE-5051-4DB0-8DF6-4F4B8A98D083}" = QuickTime
"{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = Dell Modem-On-Hold
"{43FCA273-9534-40DB-B7C5-D7758875616A}" = Dell Support
"{468190DA-FB4C-45BA-8E40-4B165FF1A939}" = BACS
"{47D3687E-1586-475F-8188-CE87CD0A03ED}" = Brother HL-2040
"{64116298-93C5-401D-B06C-39D8E3338508}" = DAO
"{7148F0A8-6813-11D6-A77B-00B0D0142060}" = Java 2 Runtime Environment, SE v1.4.2_06
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{764D06D8-D8DE-411E-A1C8-D9E9380F8A84}" = Microsoft Works 7.0
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX
"{7EE9DE0D-9228-4C33-B80E-FDD1773600DF}" = Microsoft Works Suite Add-in for Microsoft Word
"{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}" = DellSupport
"{7F142D56-3326-11D5-B229-002078017FBF}" = Modem Helper
"{84834762-4259-4213-8EE3-91481F05BC19}" = Web Camera Control
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{90D55A3F-1D99-4C94-A77E-46DC14F0BF08}" = Help and Support Customization
"{911B0409-6000-11D3-8CFE-0050048383C9}" = Microsoft Word 2002
"{949DBB22-2FB7-4de1-804C-23D495A988D8}" = CuteFTP 8 Home
"{98DF85D9-96C0-4F57-A92E-C3539477EF5E}" = DVDSentry
"{98E8A2EF-4EAE-43B8-A172-74842B764777}" = InterVideo WinDVD
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A9DFC08E-0256-4F90-A547-FA69A4CB1D3E}" = SpeedUpMyPC
"{AC76BA86-7AD7-1033-7B44-A70000000000}" = Adobe Reader 7.0.7
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B43357AA-3A6D-4D94-B56E-43C44D09E548}" = Microsoft .NET Framework (English)
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C3ABE126-2BB2-4246-BFE1-6797679B3579}" = LG USB Modem driver
"{C5074CC4-0E26-4716-A307-960272A90040}" = QuickSet
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D64DCF1C-7A95-49A4-BAFA-C42B5CF6B8B6}" = Works Suite OS Pack
"{D6DE02C7-1F47-11D4-9515-00105AE4B89A}" = Paint Shop Pro 7
"{D958FAC4-BAE0-4B1D-A42E-DE9BFDE7DDEE}" = Canon PhotoRecord
"{E3BFEE55-39E2-4BE0-B966-89FE583822C1}" = Dell Support Center (Support Software)
"{FA61D601-A0FC-48BD-AE7A-54946BCD7FB6}_is1" = BitPim 1.0.5
"Adobe Atmosphere Player" = Adobe Atmosphere Player for Acrobat and Adobe Reader
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Shockwave Player" = Adobe Shockwave Player 11
"All ATI Software" = ATI - Software Uninstall Utility
"ATI Display Driver" = ATI Display Driver
"AVG8Uninstall" = AVG Free 8.5
"Banner Maker Pro 7_is1" = Banner Maker Pro Version 7
"Canon PhotoStitch 3.1" = Canon Utilities PhotoStitch 3.1
"CANONBJ_Deinstall_CNMCP69.DLL" = Canon PIXMA iP6000D
"Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"GoogleVideoPlayer" = Google Video Player
"HijackThis" = HijackThis 2.0.2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"Image Composer" = Microsoft Image Composer 1.5
"Installing HSP56 MicroModem Drivers" = PCTEL 2304WT V.92 MDC Modem Drivers
"InstallShield_{3868A8EE-5051-4DB0-8DF6-4F4B8A98D083}" = QuickTime
"InstallShield_{468190DA-FB4C-45BA-8E40-4B165FF1A939}" = Broadcom Advanced Control Suite
"LG USB Drivers" = LG USB Drivers
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MemoKit" = MemoKit
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework Full v1.0.3705 (1033)" = Microsoft .NET Framework (English) v1.0.3705
"MicrosoftWordMTWLingo" = Translation Services Provided by WorldLingo for Microsoft Word
"MOBv2.1" = MOBv2.1
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSN Music Assistant" = MSN Music Assistant
"MSPUB4" = Microsoft Publisher 97
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"RealPlayer 6.0" = RealOne Player
"Registry Booster_is1" = Uniblue Registry Booster
"RemoteCapture" = Canon Utilities RemoteCapture 2.2
"Shockwave" = Shockwave
"SimSafariUninstall" = SimSafari
"SlimBrowser" = SlimBrowser (remove only)
"Spybot - Search & Destroy_is1" = Spybot - Search & Destroy 1.5.2.20
"Spyware Terminator_is1" = Spyware Terminator
"Verizon FiOS Activation_is1" = Verizon FiOS Activation
"Viewpoint Manager" = Viewpoint Manager (Remove Only)
"ViewpointMediaPlayer" = Viewpoint Media Player
"Webshots Desktop" = Webshots Desktop
"Wild Things! by Wild Ginger Software, Inc." = Wild Things! by Wild Ginger Software, Inc.
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Works2003Setup" = Microsoft Works 2003 Setup Launcher
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"ZoomBrowserEXDeInstall" = Canon Utilities ZoomBrowser EX
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"AI RoboForm" = AI RoboForm
"Move Networks Player - IE" = Move Networks Media Player for Internet Explorer
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 2/26/2010 11:53:32 AM | Computer Name = OFFICE | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office 2000 Premium – Error 1706. No valid source
could be found for product Microsoft Office 2000 Premium. The Windows installer
cannot continue.
Error - 2/26/2010 1:12:05 PM | Computer Name = OFFICE | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office 2000 Premium – Error 1706. No valid source
could be found for product Microsoft Office 2000 Premium. The Windows installer
cannot continue.
Error - 2/26/2010 1:13:06 PM | Computer Name = OFFICE | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office 2000 Premium – Error 1706. No valid source
could be found for product Microsoft Office 2000 Premium. The Windows installer
cannot continue.
Error - 2/26/2010 5:11:08 PM | Computer Name = OFFICE | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office 2000 Premium – Error 1706. No valid source
could be found for product Microsoft Office 2000 Premium. The Windows installer
cannot continue.
Error - 2/26/2010 6:11:10 PM | Computer Name = OFFICE | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office 2000 Premium – Error 1706. No valid source
could be found for product Microsoft Office 2000 Premium. The Windows installer
cannot continue.
Error - 2/26/2010 6:38:24 PM | Computer Name = OFFICE | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft Office 2000 Premium – Error 1706. No valid source
could be found for product Microsoft Office 2000 Premium. The Windows installer
cannot continue.
Error - 2/26/2010 9:05:19 PM | Computer Name = OFFICE | Source = Application Hang | ID = 1002
Description = Hanging application explorer.exe, version 6.0.2900.5512, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 2/27/2010 7:57:24 AM | Computer Name = OFFICE | Source = Application Error | ID = 1000
Description = Faulting application , version 0.0.0.0, faulting module unknown, version
0.0.0.0, fault address 0x10052cad.
Error - 2/28/2010 2:50:55 AM | Computer Name = OFFICE | Source = Application Hang | ID = 1002
Description = Hanging application msimn.exe, version 6.0.2900.5512, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 2/28/2010 2:51:01 AM | Computer Name = OFFICE | Source = Application Hang | ID = 1002
Description = Hanging application msimn.exe, version 6.0.2900.5512, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
[ System Events ]
Error - 2/28/2010 9:22:00 AM | Computer Name = OFFICE | Source = Service Control Manager | ID = 7000
Description = The Spyware Terminator Realtime Shield Service service failed to start
due to the following error: %%1053
Error - 2/28/2010 9:22:00 AM | Computer Name = OFFICE | Source = Service Control Manager | ID = 7000
Description = The WinDriver service failed to start due to the following error:
%%2
Error - 2/28/2010 9:24:31 AM | Computer Name = OFFICE | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 2/28/2010 9:26:44 AM | Computer Name = OFFICE | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM
Service service to connect.
Error - 2/28/2010 9:26:44 AM | Computer Name = OFFICE | Source = Service Control Manager | ID = 7000
Description = The IMAPI CD-Burning COM Service service failed to start due to the
following error: %%1053
Error - 2/28/2010 9:30:22 AM | Computer Name = OFFICE | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 2/28/2010 10:24:43 AM | Computer Name = OFFICE | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 2/28/2010 10:30:01 AM | Computer Name = OFFICE | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 2/28/2010 11:25:05 AM | Computer Name = OFFICE | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
Error - 2/28/2010 11:30:19 AM | Computer Name = OFFICE | Source = DCOM | ID = 10010
Description = The server {0002DF01-0000-0000-C000-000000000046} did not register
with DCOM within the required timeout.
< End of report >