Hi Satchfan,
Thanks for looking into this problem for me!
Requested logs are as follows:
OTL.txt
OTL logfile created on: 4/13/2010 6:16:14 PM - Run 1
OTL by OldTimer - Version 3.2.1.1 Folder = C:\Users\Gaming\Desktop
64bit- An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
6.00 Gb Total Physical Memory | 5.00 Gb Available Physical Memory | 78.00% Memory free
12.00 Gb Paging File | 11.00 Gb Available in Paging File | 88.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.41 Gb Total Space | 620.18 Gb Free Space | 66.59% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
Drive F: | 100.00 Mb Total Space | 71.85 Mb Free Space | 71.85% Space Free | Partition Type: NTFS
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: GAMING-PC
Current User Name: Gaming
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Minimal
Quick Scan
========== Processes (SafeList) ==========
PRC - C:\Users\Gaming\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10e.exe (Adobe Systems, Inc.)
PRC - C:\Program Files\Trend Micro\TrendSecure\TISProToolbar\ProToolbarUpdate.exe (Trend Micro Inc.)
PRC - C:\Program Files (x86)\Microsoft Office\Office14\OfficeSAS\OfficeSASScheduler.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
========== Modules (SafeList) ==========
MOD - C:\Users\Gaming\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\SysWOW64\comdlg32.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV:
64bit: - (WatAdminSvc) – C:\Windows\SysNative\Wat\WatAdminSvc.exe (Microsoft Corporation)
SRV:
64bit: - (TmProxy) – C:\Program Files\Trend Micro\Internet Security\TmProxy.exe (Trend Micro Inc.)
SRV:
64bit: - (TmPfw) – C:\Program Files\Trend Micro\Internet Security\TmPfw.exe (Trend Micro Inc.)
SRV:
64bit: - (TMBMServer) – C:\Program Files\Trend Micro\BM\TMBMSRV.exe (Trend Micro Inc.)
SRV:
64bit: - (MSCamSvc) – C:\Program Files\Microsoft LifeCam\MSCamS64.exe (Microsoft Corporation)
SRV:
64bit: - (SfCtlCom) – C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe (Trend Micro Inc.)
SRV:
64bit: - (osppsvc) – C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
SRV:
64bit: - (WwanSvc) – C:\Windows\SysNative\wwansvc.dll (Microsoft Corporation)
SRV:
64bit: - (WbioSrvc) – C:\Windows\SysNative\wbiosrvc.dll (Microsoft Corporation)
SRV:
64bit: - (UmRdpService) – C:\Windows\SysNative\umrdp.dll (Microsoft Corporation)
SRV:
64bit: - (Power) – C:\Windows\SysNative\umpo.dll (Microsoft Corporation)
SRV:
64bit: - (Themes) – C:\Windows\SysNative\themeservice.dll (Microsoft Corporation)
SRV:
64bit: - (sppuinotify) – C:\Windows\SysNative\sppuinotify.dll (Microsoft Corporation)
SRV:
64bit: - (SensrSvc) – C:\Windows\SysNative\sensrsvc.dll (Microsoft Corporation)
SRV:
64bit: - (StorSvc) – C:\Windows\SysNative\StorSvc.dll (Microsoft Corporation)
SRV:
64bit: - (PeerDistSvc) – C:\Windows\SysNative\PeerDistSvc.dll (Microsoft Corporation)
SRV:
64bit: - (PNRPsvc) – C:\Windows\SysNative\pnrpsvc.dll (Microsoft Corporation)
SRV:
64bit: - (p2pimsvc) – C:\Windows\SysNative\pnrpsvc.dll (Microsoft Corporation)
SRV:
64bit: - (HomeGroupProvider) – C:\Windows\SysNative\provsvc.dll (Microsoft Corporation)
SRV:
64bit: - (RpcEptMapper) – C:\Windows\SysNative\RpcEpMap.dll (Microsoft Corporation)
SRV:
64bit: - (PNRPAutoReg) – C:\Windows\SysNative\pnrpauto.dll (Microsoft Corporation)
SRV:
64bit: - (WinDefend) – C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:
64bit: - (HomeGroupListener) – C:\Windows\SysNative\ListSvc.dll (Microsoft Corporation)
SRV:
64bit: - (FontCache) – C:\Windows\SysNative\FntCache.dll (Microsoft Corporation)
SRV:
64bit: - (Dhcp) – C:\Windows\SysNative\dhcpcore.dll (Microsoft Corporation)
SRV:
64bit: - (defragsvc) – C:\Windows\SysNative\defragsvc.dll (Microsoft Corporation)
SRV:
64bit: - (CscService) – C:\Windows\SysNative\cscsvc.dll (Microsoft Corporation)
SRV:
64bit: - (bthserv) – C:\Windows\SysNative\bthserv.dll (Microsoft Corporation)
SRV:
64bit: - (BDESVC) – C:\Windows\SysNative\bdesvc.dll (Microsoft Corporation)
SRV:
64bit: - (AxInstSV) – C:\Windows\SysNative\AxInstSv.dll (Microsoft Corporation)
SRV:
64bit: - (AppMgmt) – C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV:
64bit: - (AppIDSvc) – C:\Windows\SysNative\appidsvc.dll (Microsoft Corporation)
SRV:
64bit: - (wbengine) – C:\Windows\SysNative\wbengine.exe (Microsoft Corporation)
SRV:
64bit: - (sppsvc) – C:\Windows\SysNative\sppsvc.exe (Microsoft Corporation)
SRV:
64bit: - (Fax) – C:\Windows\SysNative\FXSSVC.exe (Microsoft Corporation)
SRV - (Hamachi2Svc) – C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.)
SRV - (Steam Client Service) – C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (DAUpdaterSvc) – C:\Program Files (x86)\Dragon Age\bin_ship\daupdatersvc.service.exe (BioWare)
SRV - (VSS) – C:\Windows\Vss [2009/07/14 13:20:14 | 000,000,000 | —D | M]
SRV - (MSDTC) – C:\Windows\SysWOW64\Msdtc [2009/07/14 13:20:14 | 000,000,000 | —D | M]
SRV - (HomeGroupProvider) – C:\Windows\SysWOW64\provsvc.dll (Microsoft Corporation)
SRV - (Dhcp) – C:\Windows\SysWOW64\dhcpcore.dll (Microsoft Corporation)
SRV - (vds) – C:\Windows\SysWOW64\wbem\vds.mof ()
SRV - (clr_optimization_v2.0.50727_64) – C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (YahooAUService) – C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
SRV - (Microsoft Office Groove Audit Service) – C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe (Microsoft Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://ninemsn.com.au/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-au
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 95 F7 87 C0 DA D9 CA 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Firefox\extensions\\{22181a4d-af90-4ca3-a569-faed9118d6bc}: C:\Program Files\Trend Micro\TrendSecure\TISProToolbar\FirefoxExtension [2010/03/03 15:42:10 | 000,000,000 | —D | M]
[2010/04/11 18:14:39 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\Mozilla\Extensions
[2010/03/08 18:29:40 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\Mozilla\Extensions\[removed]
[2010/04/11 22:17:54 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\Mozilla\Firefox\Profiles\stvd5ki1.default\extensions
[2010/04/11 18:14:22 | 000,000,000 | —D | M] – C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/04/02 02:56:49 | 000,001,538 | —- | M] () – C:\Program Files (x86)\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/04/02 02:56:50 | 000,000,947 | —- | M] () – C:\Program Files (x86)\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2010/04/02 02:56:50 | 000,000,769 | —- | M] () – C:\Program Files (x86)\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2010/04/02 02:56:50 | 000,001,135 | —- | M] () – C:\Program Files (x86)\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: ([2009/06/11 07:00:26 | 000,000,824 | —- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:
64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (TSToolbarBHO) - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\Trend Micro\TrendSecure\TISProToolbar\TSToolbar.dll (Trend Micro Inc.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask.com)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (Trend Micro Toolbar) - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\TrendSecure\TISProToolbar\TSToolbar.dll (Trend Micro Inc.)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (Yahoo!7 Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask.com)
O4:
64bit: - HKLM..\Run: [UfSeAgnt.exe] C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe (Trend Micro Inc.)
O4 - HKLM..\Run: [BCSSync] C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [GrooveMonitor] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Steam] c:\program files (x86)\steam\steam.exe (Valve Corporation)
O4 - HKCU..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9:
64bit: - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9:
64bit: - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9:
64bit: - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9:
64bit: - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shoc…ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = [removed] [removed]
O18:
64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\tmtb {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - Reg Error: Key error. File not found
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\tmtb {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\TrendSecure\TISProToolbar\TSToolbar.dll (Trend Micro Inc.)
O18:
64bit: - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O30:
64bit: - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{8832a629-2722-11df-a01f-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{8832a629-2722-11df-a01f-806e6f6e6963}\Shell\AutoRun\command - "" = D:\autorun.exe – File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:
64bit: - HKLM\..comfile [open] – "%1" %*
O35:
64bit: - HKLM\..exefile [open] – "%1" %*
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37:
64bit: - HKLM\…com [@ = comfile] – "%1" %*
O37:
64bit: - HKLM\…exe [@ = exefile] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs:
64bit: Ias - C:\Windows\SysNative\ias [2009/07/14 13:20:14 | 000,000,000 | —D | M]
NetSvcs:
64bit: Irmon - C:\Windows\SysNative\irmon.dll (Microsoft Corporation)
NetSvcs:
64bit: Wmi - C:\Windows\SysNative\wmi.dll (Microsoft Corporation)
NetSvcs:
64bit: Themes - C:\Windows\SysNative\themeservice.dll (Microsoft Corporation)
NetSvcs:
64bit: BDESVC - C:\Windows\SysNative\bdesvc.dll (Microsoft Corporation)
NetSvcs:
64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
NetSvcs: Ias - C:\Windows\SysWOW64\ias.dll (Microsoft Corporation)
NetSvcs: Wmi - C:\Windows\SysWOW64\wmi.dll (Microsoft Corporation)
OTL cannot create restorepoints on Vista OSs!
========== Files/Folders - Created Within 14 Days ==========
[2010/04/13 18:14:33 | 000,561,664 | —- | C] (OldTimer Tools) – C:\Users\Gaming\Desktop\OTL.exe
[2010/04/12 20:36:00 | 000,000,000 | —D | C] – C:\Windows\SysWow64\Wat
[2010/04/12 20:35:59 | 000,000,000 | —D | C] – C:\Windows\SysNative\Wat
[2010/04/12 18:19:22 | 000,000,000 | —D | C] – C:\Program Files (x86)\uTorrent
[2010/04/12 12:36:57 | 000,000,000 | —D | C] – C:\Program Files (x86)\Trend Micro
[2010/04/12 12:02:23 | 000,000,000 | —D | C] – C:\Users\Gaming\AppData\Roaming\IObit
[2010/04/12 12:02:23 | 000,000,000 | —D | C] – C:\Program Files (x86)\IObit
[2010/04/12 12:00:30 | 007,184,528 | —- | C] (IObit ) – C:\Users\Gaming\Desktop\asc-setup.exe
[2010/04/12 11:03:04 | 000,000,000 | —D | C] – C:\ProgramData\FrontLine Registry Cleaner
[2010/04/12 11:02:54 | 000,000,000 | —D | C] – C:\Program Files (x86)\Frontline Registry Cleaner
[2010/04/12 11:01:42 | 000,000,000 | —D | C] – C:\32788R22FWJFW
[2010/04/12 08:32:25 | 000,000,000 | —D | C] – C:\Users\Gaming\AppData\Roaming\Malwarebytes
[2010/04/12 08:32:03 | 000,000,000 | —D | C] – C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2010/04/12 08:32:03 | 000,000,000 | —D | C] – C:\ProgramData\Malwarebytes
[2010/04/11 18:14:32 | 000,000,000 | —D | C] – C:\Users\Gaming\AppData\Local\Mozilla
[2010/04/11 18:14:20 | 000,000,000 | —D | C] – C:\Program Files (x86)\Mozilla Firefox
[2010/04/10 16:33:10 | 000,000,000 | —D | C] – C:\Users\Gaming\AppData\Local\Diagnostics
[2010/04/05 12:13:59 | 000,000,000 | —D | C] – C:\Users\Gaming\AppData\Roaming\uTorrent
[2010/04/02 13:13:36 | 000,000,000 | —D | C] – C:\Users\Gaming\AppData\Roaming\Red Alert 3
[2010/04/02 09:35:29 | 000,000,000 | —D | C] – C:\Users\Gaming\Documents\My Games
[2010/04/02 08:17:07 | 000,000,000 | —D | C] – C:\ProgramData\Steam
[2010/04/02 08:17:05 | 000,000,000 | —D | C] – C:\ProgramData\PopCap Games
[2010/04/02 08:06:39 | 000,000,000 | —D | C] – C:\Users\Gaming\Documents\Ascaron Entertainment
[2010/04/02 08:06:39 | 000,000,000 | —D | C] – C:\Users\Gaming\AppData\Roaming\Ascaron Entertainment
[2010/03/31 16:42:42 | 000,000,000 | —D | C] – C:\Program Files (x86)\LogMeIn Hamachi
[4 C:\Users\Gaming\Desktop\*.tmp files -> C:\Users\Gaming\Desktop\*.tmp -> ]
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Gaming\Documents\*.tmp files -> C:\Users\Gaming\Documents\*.tmp -> ]
========== Files - Modified Within 14 Days ==========
[2010/04/13 18:18:22 | 003,670,016 | -HS- | M] () – C:\Users\Gaming\ntuser.dat
[2010/04/13 18:14:43 | 000,561,664 | —- | M] (OldTimer Tools) – C:\Users\Gaming\Desktop\OTL.exe
[2010/04/13 18:14:09 | 000,000,396 | —- | M] () – C:\Windows\tasks\AWC Startup.job
[2010/04/13 18:00:41 | 000,014,848 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010/04/13 18:00:41 | 000,014,848 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010/04/13 17:12:06 | 000,717,892 | —- | M] () – C:\Windows\SysNative\PerfStringBackup.INI
[2010/04/13 17:12:06 | 000,622,110 | —- | M] () – C:\Windows\SysNative\perfh009.dat
[2010/04/13 17:12:06 | 000,108,232 | —- | M] () – C:\Windows\SysNative\perfc009.dat
[2010/04/13 17:07:33 | 000,000,006 | -H– | M] () – C:\Windows\tasks\SA.DAT
[2010/04/13 17:07:31 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2010/04/13 17:07:26 | 535,683,071 | -HS- | M] () – C:\hiberfil.sys
[2010/04/12 22:24:29 | 001,201,146 | -H– | M] () – C:\Users\Gaming\AppData\Local\IconCache.db
[2010/04/12 21:18:44 | 000,000,824 | —- | M] () – C:\Windows\SysNative\drivers\etc\tmvsthfud.bin
[2010/04/12 21:18:42 | 000,000,824 | —- | M] () – C:\Windows\SysNative\drivers\etc\tmvsthfss.bin
[2010/04/12 18:19:23 | 000,000,943 | —- | M] () – C:\Users\Public\Desktop\µTorrent.lnk
[2010/04/12 12:36:58 | 000,002,093 | —- | M] () – C:\Users\Gaming\Desktop\HijackThis.lnk
[2010/04/12 12:24:24 | 000,000,434 | —- | M] () – C:\Windows\tasks\FrontLine Registry Cleaner Scheduled Scan - Gaming.job
[2010/04/12 12:23:07 | 000,524,288 | -HS- | M] () – C:\Users\Gaming\ntuser.dat{42df2fce-45cc-11df-8847-00241d706baf}.TMContainer00000000000000000002.regtrans-ms
[2010/04/12 12:23:07 | 000,524,288 | -HS- | M] () – C:\Users\Gaming\ntuser.dat{42df2fce-45cc-11df-8847-00241d706baf}.TMContainer00000000000000000001.regtrans-ms
[2010/04/12 12:23:07 | 000,065,536 | -HS- | M] () – C:\Users\Gaming\ntuser.dat{42df2fce-45cc-11df-8847-00241d706baf}.TM.blf
[2010/04/12 12:02:26 | 000,001,221 | —- | M] () – C:\Users\Public\Desktop\Advanced SystemCare.lnk
[2010/04/12 12:02:08 | 007,184,528 | —- | M] (IObit ) – C:\Users\Gaming\Desktop\asc-setup.exe
[2010/04/12 11:02:56 | 000,002,061 | —- | M] () – C:\Users\Gaming\Desktop\FrontLine Registry Cleaner.lnk
[2010/04/12 11:02:45 | 001,732,888 | —- | M] () – C:\Users\Gaming\Desktop\FrontlineRegCleanerSetup.exe
[2010/04/12 10:59:33 | 003,912,072 | —- | M] () – C:\Users\Gaming\Desktop\ComboFix.exe
[2010/04/07 19:25:17 | 000,901,632 | —- | M] () – C:\Users\Gaming\Desktop\A Schreurs Transcript.doc
[2010/04/04 17:46:38 | 000,024,064 | —- | M] () – C:\Users\Gaming\Desktop\Cover Letter - Origin Energy.doc
[2010/04/04 16:54:24 | 000,024,064 | —- | M] () – C:\Users\Gaming\Desktop\Cover Letter - Commonwealth Bank.doc
[2010/04/04 16:51:19 | 000,023,552 | —- | M] () – C:\Users\Gaming\Desktop\Cover Letter - Mars.doc
[2010/04/04 16:48:27 | 000,035,840 | —- | M] () – C:\Users\Gaming\Desktop\A.SchreursResume1.doc
[2010/04/04 16:07:47 | 000,028,160 | —- | M] () – C:\Users\Gaming\Desktop\Cover Letter - Newcrest.doc
[2010/04/04 14:16:16 | 000,642,080 | —- | M] () – C:\Users\Gaming\Desktop\scan0002.pdf
[2010/04/04 13:53:29 | 000,011,310 | —- | M] () – C:\Users\Gaming\Desktop\Grad Years.xlsx
[2010/04/04 13:26:52 | 000,028,160 | —- | M] () – C:\Users\Gaming\Desktop\Cover Letter - BHP.doc
[2010/04/04 13:00:09 | 000,028,160 | —- | M] () – C:\Users\Gaming\Desktop\Cover Letter - ABB Aust.doc
[2010/04/04 12:58:38 | 000,028,160 | —- | M] () – C:\Users\Gaming\Desktop\Cover Letter - ABB.doc
[2010/04/04 12:49:27 | 000,075,776 | —- | M] () – C:\Users\Gaming\Desktop\ABB Grad Program.doc
[2010/04/04 11:58:48 | 001,099,396 | —- | M] () – C:\Users\Gaming\Desktop\Transcript - 1.pdf
[2010/04/04 11:45:40 | 000,846,533 | —- | M] () – C:\Users\Gaming\Desktop\Transcript - 2.pdf
[2010/04/04 10:36:49 | 000,035,840 | —- | M] () – C:\Users\Gaming\Desktop\A.SchreursResume.doc
[2010/04/02 09:44:27 | 000,001,620 | —- | M] () – C:\Users\Gaming\Desktop\RelicCOH - Shortcut.lnk
[4 C:\Users\Gaming\Desktop\*.tmp files -> C:\Users\Gaming\Desktop\*.tmp -> ]
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Gaming\Documents\*.tmp files -> C:\Users\Gaming\Documents\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/04/12 18:19:23 | 000,000,943 | —- | C] () – C:\Users\Public\Desktop\µTorrent.lnk
[2010/04/12 12:36:58 | 000,002,093 | —- | C] () – C:\Users\Gaming\Desktop\HijackThis.lnk
[2010/04/12 12:02:32 | 000,000,396 | —- | C] () – C:\Windows\tasks\AWC Startup.job
[2010/04/12 12:02:26 | 000,001,221 | —- | C] () – C:\Users\Public\Desktop\Advanced SystemCare.lnk
[2010/04/12 11:03:04 | 000,000,434 | —- | C] () – C:\Windows\tasks\FrontLine Registry Cleaner Scheduled Scan - Gaming.job
[2010/04/12 11:02:56 | 000,002,061 | —- | C] () – C:\Users\Gaming\Desktop\FrontLine Registry Cleaner.lnk
[2010/04/12 11:02:21 | 001,732,888 | —- | C] () – C:\Users\Gaming\Desktop\FrontlineRegCleanerSetup.exe
[2010/04/12 10:59:33 | 003,912,072 | —- | C] () – C:\Users\Gaming\Desktop\ComboFix.exe
[2010/04/12 10:52:49 | 000,524,288 | -HS- | C] () – C:\Users\Gaming\ntuser.dat{42df2fce-45cc-11df-8847-00241d706baf}.TMContainer00000000000000000002.regtrans-ms
[2010/04/12 10:52:48 | 000,524,288 | -HS- | C] () – C:\Users\Gaming\ntuser.dat{42df2fce-45cc-11df-8847-00241d706baf}.TMContainer00000000000000000001.regtrans-ms
[2010/04/12 10:52:48 | 000,065,536 | -HS- | C] () – C:\Users\Gaming\ntuser.dat{42df2fce-45cc-11df-8847-00241d706baf}.TM.blf
[2010/04/04 17:46:38 | 000,024,064 | —- | C] () – C:\Users\Gaming\Desktop\Cover Letter - Origin Energy.doc
[2010/04/04 16:51:47 | 000,024,064 | —- | C] () – C:\Users\Gaming\Desktop\Cover Letter - Commonwealth Bank.doc
[2010/04/04 16:48:27 | 000,035,840 | —- | C] () – C:\Users\Gaming\Desktop\A.SchreursResume1.doc
[2010/04/04 16:06:00 | 000,028,160 | —- | C] () – C:\Users\Gaming\Desktop\Cover Letter - Newcrest.doc
[2010/04/04 14:16:12 | 000,642,080 | —- | C] () – C:\Users\Gaming\Desktop\scan0002.pdf
[2010/04/04 13:25:22 | 000,028,160 | —- | C] () – C:\Users\Gaming\Desktop\Cover Letter - BHP.doc
[2010/04/04 13:00:08 | 000,028,160 | —- | C] () – C:\Users\Gaming\Desktop\Cover Letter - ABB Aust.doc
[2010/04/04 12:54:52 | 000,028,160 | —- | C] () – C:\Users\Gaming\Desktop\Cover Letter - ABB.doc
[2010/04/04 12:25:13 | 000,075,776 | —- | C] () – C:\Users\Gaming\Desktop\ABB Grad Program.doc
[2010/04/04 12:16:20 | 000,901,632 | —- | C] () – C:\Users\Gaming\Desktop\A Schreurs Transcript.doc
[2010/04/04 12:04:01 | 000,846,533 | —- | C] () – C:\Users\Gaming\Desktop\Transcript - 2.pdf
[2010/04/04 12:04:00 | 001,099,396 | —- | C] () – C:\Users\Gaming\Desktop\Transcript - 1.pdf
[2010/04/04 10:57:40 | 000,023,552 | —- | C] () – C:\Users\Gaming\Desktop\Cover Letter - Mars.doc
[2010/04/04 10:36:49 | 000,035,840 | —- | C] () – C:\Users\Gaming\Desktop\A.SchreursResume.doc
[2010/04/04 10:24:59 | 000,011,310 | —- | C] () – C:\Users\Gaming\Desktop\Grad Years.xlsx
[2010/04/02 09:44:27 | 000,001,620 | —- | C] () – C:\Users\Gaming\Desktop\RelicCOH - Shortcut.lnk
[2010/03/23 16:54:47 | 000,722,382 | —- | C] () – C:\Windows\SysWow64\PerfStringBackup.INI
[2010/03/03 15:35:25 | 003,670,016 | -HS- | C] () – C:\Users\Gaming\ntuser.dat
[2010/03/03 15:35:25 | 000,524,288 | -HS- | C] () – C:\Users\Gaming\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms
[2010/03/03 15:35:25 | 000,524,288 | -HS- | C] () – C:\Users\Gaming\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms
[2010/03/03 15:35:25 | 000,262,144 | -HS- | C] () – C:\Users\Gaming\ntuser.dat.LOG1
[2010/03/03 15:35:25 | 000,065,536 | -HS- | C] () – C:\Users\Gaming\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf
[2010/03/03 15:35:25 | 000,000,020 | -HS- | C] () – C:\Users\Gaming\ntuser.ini
[2010/03/03 15:35:25 | 000,000,000 | -HS- | C] () – C:\Users\Gaming\ntuser.dat.LOG2
[2009/07/14 09:42:10 | 000,064,000 | —- | C] () – C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/14 07:03:59 | 000,364,544 | —- | C] () – C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/26 16:24:18 | 000,015,498 | —- | C] () – C:\Windows\VX3000.ini
========== LOP Check ==========
[2010/04/02 08:06:39 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\Ascaron Entertainment
[2010/04/12 12:02:23 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\IObit
[2010/03/14 14:10:08 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\iWin
[2010/04/12 10:51:04 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\LimeWire
[2010/04/02 13:13:39 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\Red Alert 3
[2010/03/04 09:29:50 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\The Creative Assembly
[2010/04/13 18:14:06 | 000,000,000 | —D | M] – C:\Users\Gaming\AppData\Roaming\uTorrent
[2010/04/13 18:14:09 | 000,000,396 | —- | M] () – C:\Windows\Tasks\AWC Startup.job
[2010/04/12 12:24:24 | 000,000,434 | —- | M] () – C:\Windows\Tasks\FrontLine Registry Cleaner Scheduled Scan - Gaming.job
[2009/07/14 15:08:49 | 000,015,222 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.exe >
[2008/04/11 07:03:48 | 000,562,688 | —- | M] (Microsoft Corporation) – C:\install.exe
< MD5 for: AGP440.SYS >
[2009/04/22 15:52:58 | 000,061,008 | —- | M] (Microsoft Corporation) MD5=3D530DBF2154679DD0B0D47CA42CE90C – C:\Windows.old\Windows\System32\drivers\AGP440.sys
[2009/04/22 15:52:58 | 000,061,008 | —- | M] (Microsoft Corporation) MD5=3D530DBF2154679DD0B0D47CA42CE90C – C:\Windows.old\Windows\System32\DriverStore\FileRepository\machine.inf_amd64_neutral_5a774c2b239a352c\AGP440.sys
[2009/04/22 15:52:58 | 000,061,008 | —- | M] (Microsoft Corporation) MD5=3D530DBF2154679DD0B0D47CA42CE90C – C:\Windows.old\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7100.0_none_87248120cc241bf9\AGP440.sys
[2009/07/14 11:52:21 | 000,061,008 | —- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 – C:\Windows\SysWow64\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\AGP440.sys
[2009/07/14 11:52:21 | 000,061,008 | —- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 – C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
< MD5 for: ATAPI.SYS >
[2009/07/14 11:52:21 | 000,024,128 | —- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C – C:\Windows\SysWow64\DriverStore\FileRepository\mshdc.inf_amd64_neutral_a69a58a4286f0b22\atapi.sys
[2009/07/14 11:52:21 | 000,024,128 | —- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C – C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009/04/22 15:52:52 | 000,024,128 | —- | M] (Microsoft Corporation) MD5=F57B8BB59FB27784B67D54D9161D3CD9 – C:\Windows.old\Windows\System32\drivers\atapi.sys
[2009/04/22 15:52:52 | 000,024,128 | —- | M] (Microsoft Corporation) MD5=F57B8BB59FB27784B67D54D9161D3CD9 – C:\Windows.old\Windows\System32\DriverStore\FileRepository\mshdc.inf_amd64_neutral_6240958557aee151\atapi.sys
[2009/04/22 15:52:52 | 000,024,128 | —- | M] (Microsoft Corporation) MD5=F57B8BB59FB27784B67D54D9161D3CD9 – C:\Windows.old\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7100.0_none_aa49bbff2efd111b\atapi.sys
< MD5 for: CNGAUDIT.DLL >
[2009/07/14 11:15:06 | 000,012,288 | —- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E – C:\Windows\SysWOW64\cngaudit.dll
[2009/07/14 11:15:06 | 000,012,288 | —- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E – C:\Windows\SysWOW64\cngaudit.dll
[2009/07/14 11:15:06 | 000,012,288 | —- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E – C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009/04/22 15:39:20 | 000,018,944 | —- | M] (Microsoft Corporation) MD5=85703F94D6830B69EA30CD1EBB6289B8 – C:\Windows.old\Windows\System32\cngaudit.dll
[2009/04/22 15:39:20 | 000,018,944 | —- | M] (Microsoft Corporation) MD5=85703F94D6830B69EA30CD1EBB6289B8 – C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7100.0_none_b5757f0a3d07c039\cngaudit.dll
[2009/07/14 11:40:20 | 000,018,944 | —- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 – C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll
[2009/04/22 15:20:04 | 000,012,288 | —- | M] (Microsoft Corporation) MD5=EC9930C8CDF46295A1354256435CB5DE – C:\Windows.old\Windows\SysWOW64\cngaudit.dll
[2009/04/22 15:20:04 | 000,012,288 | —- | M] (Microsoft Corporation) MD5=EC9930C8CDF46295A1354256435CB5DE – C:\Windows.old\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7100.0_none_5956e38684aa4f03\cngaudit.dll
< MD5 for: IASTORV.SYS >
[2009/04/22 15:48:29 | 000,410,704 | —- | M] (Intel Corporation) MD5=100D70F4650864A12E6D34B5FAA15068 – C:\Windows.old\Windows\System32\drivers\iaStorV.sys
[2009/04/22 15:48:29 | 000,410,704 | —- | M] (Intel Corporation) MD5=100D70F4650864A12E6D34B5FAA15068 – C:\Windows.old\Windows\System32\DriverStore\FileRepository\iastorv.inf_amd64_neutral_18cccb83b34e1453\iaStorV.sys
[2009/04/22 15:48:29 | 000,410,704 | —- | M] (Intel Corporation) MD5=100D70F4650864A12E6D34B5FAA15068 – C:\Windows.old\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7100.0_none_7c22e65d953b3d0e\iaStorV.sys
[2009/07/14 11:48:04 | 000,410,688 | —- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 – C:\Windows\SysWow64\DriverStore\FileRepository\iastorv.inf_amd64_neutral_18cccb83b34e1453\iaStorV.sys
[2009/07/14 11:48:04 | 000,410,688 | —- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 – C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys
< MD5 for: NETLOGON.DLL >
[2009/04/22 15:40:41 | 000,690,688 | —- | M] (Microsoft Corporation) MD5=527F726F895A94F040DF2605BFF8F32E – C:\Windows.old\Windows\System32\netlogon.dll
[2009/04/22 15:40:41 | 000,690,688 | —- | M] (Microsoft Corporation) MD5=527F726F895A94F040DF2605BFF8F32E – C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7100.0_none_cac94b28456d2ad6\netlogon.dll
[2009/07/14 11:41:52 | 000,692,736 | —- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 – C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll
[2009/04/22 15:21:18 | 000,561,152 | —- | M] (Microsoft Corporation) MD5=A3EA8619FBBC2D270D79C241CE426618 – C:\Windows.old\Windows\SysWOW64\netlogon.dll
[2009/04/22 15:21:18 | 000,561,152 | —- | M] (Microsoft Corporation) MD5=A3EA8619FBBC2D270D79C241CE426618 – C:\Windows.old\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7100.0_none_d51df57a79cdecd1\netlogon.dll
[2009/07/14 11:16:02 | 000,563,712 | —- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 – C:\Windows\SysWOW64\netlogon.dll
[2009/07/14 11:16:02 | 000,563,712 | —- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 – C:\Windows\SysWOW64\netlogon.dll
[2009/07/14 11:16:02 | 000,563,712 | —- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 – C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll
< MD5 for: NVSTOR.SYS >
[2009/04/22 15:48:24 | 000,167,504 | —- | M] (NVIDIA Corporation) MD5=1C09D38432424726932E5B1D62FA561B – C:\Windows.old\Windows\System32\drivers\nvstor.sys
[2009/04/22 15:48:24 | 000,167,504 | —- | M] (NVIDIA Corporation) MD5=1C09D38432424726932E5B1D62FA561B – C:\Windows.old\Windows\System32\DriverStore\FileRepository\nvraid.inf_amd64_neutral_4d1b6b7b67c54c8c\nvstor.sys
[2009/04/22 15:48:24 | 000,167,504 | —- | M] (NVIDIA Corporation) MD5=1C09D38432424726932E5B1D62FA561B – C:\Windows.old\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7100.0_none_06ec570ccc71e6e6\nvstor.sys
[2009/07/14 11:45:45 | 000,167,488 | —- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 – C:\Windows\SysWow64\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvstor.sys
[2009/07/14 11:45:45 | 000,167,488 | —- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 – C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys
< MD5 for: SCECLI.DLL >
[2009/07/14 11:16:13 | 000,175,616 | —- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 – C:\Windows\SysWOW64\scecli.dll
[2009/07/14 11:16:13 | 000,175,616 | —- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 – C:\Windows\SysWOW64\scecli.dll
[2009/07/14 11:16:13 | 000,175,616 | —- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 – C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009/07/14 11:41:53 | 000,232,448 | —- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 – C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2009/04/22 15:21:47 | 000,175,616 | —- | M] (Microsoft Corporation) MD5=686BAFE6AF35AF1C8D5EB536A8500430 – C:\Windows.old\Windows\SysWOW64\scecli.dll
[2009/04/22 15:21:47 | 000,175,616 | —- | M] (Microsoft Corporation) MD5=686BAFE6AF35AF1C8D5EB536A8500430 – C:\Windows.old\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7100.0_none_0f7420931aef738c\scecli.dll
[2009/04/22 15:41:00 | 000,232,448 | —- | M] (Microsoft Corporation) MD5=BDBED21EC7818C2AA12A55697572C283 – C:\Windows.old\Windows\System32\scecli.dll
[2009/04/22 15:41:00 | 000,232,448 | —- | M] (Microsoft Corporation) MD5=BDBED21EC7818C2AA12A55697572C283 – C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7100.0_none_051f7640e68eb191\scecli.dll
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\Windows\system32\*.tmp files -> C:\Windows\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< End of report >
Extras.txt
OTL Extras logfile created on: 4/13/2010 6:16:14 PM - Run 1
OTL by OldTimer - Version 3.2.1.1 Folder = C:\Users\Gaming\Desktop
64bit- An unknown product (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
6.00 Gb Total Physical Memory | 5.00 Gb Available Physical Memory | 78.00% Memory free
12.00 Gb Paging File | 11.00 Gb Available in Paging File | 88.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.41 Gb Total Space | 620.18 Gb Free Space | 66.59% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
Drive F: | 100.00 Mb Total Space | 71.85 Mb Free Space | 71.85% Space Free | Partition Type: NTFS
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: GAMING-PC
Current User Name: Gaming
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Minimal
Quick Scan
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.cpl [@ = cplfile] – C:\Windows\SysWow64\control.exe (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %* File not found
cmdfile [open] – "%1" %* File not found
comfile [open] – "%1" %* File not found
exefile [open] – "%1" %* File not found
helpfile [open] – Reg Error: Key error.
htmlfile – "C:\Program Files (x86)\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] – "C:\Program Files (x86)\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [print] – "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] – "%1" %* File not found
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1" File not found
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] – "%1" /S File not found
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] – C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] – Reg Error: Value error.
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
cplfile [cplopen] – %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] – "%1" %*
helpfile [open] – Reg Error: Key error.
htmlfile – "C:\Program Files (x86)\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] – "C:\Program Files (x86)\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [print] – "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] – "%1" /S
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] – C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] – Reg Error: Value error.
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"AutoUpdateDisableNotify" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
========== Authorized Applications List ==========
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{20140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 (Beta)
"{20140000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2010 (Beta)
"{20140000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Beta)
"{393ADA10-CEC5-47E7-AE6D-A9591C125EEF}" = Microsoft LifeCam
"{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll
"{718D791F-F4E8-4aa7-98A6-15FDED17BDD0}" = Trend Micro Internet Security Pro
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9C5A08BF-BB99-4998-81BD-F6CC32483B34}" = Microsoft Corporation
"{9D2B0322-44AE-460E-9283-4D2D7A9205AE}" = Trend Micro Internet Security Pro
"CutePDF Writer Installation" = CutePDF Writer 2.8
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{20140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 (Beta)
"{20140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 (Beta)
"{20140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 (Beta)
"{20140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 (Beta)
"{20140000-003B-0000-0000-0000000FF1CE}" = Microsoft Office Project Professional 2010 (Beta)
"{20140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 (Beta)
"{20140000-00B4-0409-0000-0000000FF1CE}" = Microsoft Office Project MUI (English) 2010 (Beta)
"{20140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 (Beta)
"{20140000-011A-0000-0000-0000000FF1CE}" = Microsoft Office Send-a-Smile
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java™ 6 Update 18
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{8A74DEFD-A224-49CC-AB80-4E88BC730125}" = LogMeIn Hamachi
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ULTIMATER_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ULTIMATER_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_ULTIMATER_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002A-0000-1000-0000000FF1CE}_ULTIMATER_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0409-1000-0000000FF1CE}_ULTIMATER_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ULTIMATER_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_ULTIMATER_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0116-0409-1000-0000000FF1CE}_ULTIMATER_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_ULTIMATER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002E-0000-0000-0000000FF1CE}" = Microsoft Office Ultimate 2007
"{91120000-002E-0000-0000-0000000FF1CE}_ULTIMATER_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002E-0000-0000-0000000FF1CE}_ULTIMATER_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.1
"{AEC81925-9C76-4707-84A9-40696C613ED3}" = Dragon Age: Origins
"{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}" = Microsoft Corporation
"{E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6}" = NVIDIA PhysX
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Advanced SystemCare 3_is1" = Advanced SystemCare 3
"CutePDF Professional (Evaluation)_is1" = CutePDF Professional 3.6 (Evaluation)
"Frontline Registry Cleaner1.2" = Frontline Registry Cleaner
"HijackThis" = HijackThis 2.0.2
"LogMeIn Hamachi" = LogMeIn Hamachi
"Messenger Plus! Live" = Messenger Plus! Live
"Office14.PRJPRO" = Microsoft Project Professional 2010
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Steam App 10500" = Empire: Total War
"Steam App 12470" = Port Royale 2
"Steam App 13230" = Unreal Tournament 2004
"Steam App 13640" = Tom Clancy's Ghost Recon: Advanced Warfighter
"Steam App 16810" = Sid Meier's Civilization IV: Colonization
"Steam App 17480" = Command and Conquer: Red Alert 3
"Steam App 18500" = Defense Grid: The Awakening
"Steam App 240" = Counter-Strike: Source
"Steam App 25890" = Hearts of Iron III
"Steam App 25980" = Majesty 2
"Steam App 32370" = Star Wars: Knights of the Old Republic
"Steam App 33100" = Alien Shooter
"Steam App 33110" = Alien Shooter: Revisited
"Steam App 33120" = Alien Shooter 2: Reloaded
"Steam App 33130" = Zombie Shooter
"Steam App 33520" = Tropico
"Steam App 33530" = Tropico 2
"Steam App 34030" = Napoleon: Total War
"Steam App 3590" = Plants vs. Zombies
"Steam App 37900" = Boggle
"Steam App 37910" = Battleship
"Steam App 38050" = Risk
"Steam App 38060" = Risk 2
"Steam App 41500" = Torchlight
"Steam App 440" = Team Fortress 2
"Steam App 500" = Left 4 Dead
"ULTIMATER" = Microsoft Office Ultimate 2007
"uTorrent" = µTorrent
"WinLiveSuite_Wave3" = Windows Live Essentials
"Xfire" = Xfire (remove only)
"Yahoo! Companion" = Yahoo!7 Toolbar
"Yahoo! Software Update" = Yahoo! Software Update
"Yahoo!7 Messenger" = Yahoo!7 Messenger
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 3/17/2010 4:22:27 PM | Computer Name = Gaming-PC | Source = Application Error | ID = 1000
Description = Faulting application name: msnmsgr.exe, version: 14.0.8089.726, time
stamp: 0x4a6ce533 Faulting module name: PresenceIM.dll, version: 14.0.8089.726,
time stamp: 0x4a6ce51e Exception code: 0xc0000005 Fault offset: 0x0002186c Faulting
process id: 0xad4 Faulting application start time: 0x01cac60f76d38a6d Faulting application
path: C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe Faulting module
path: C:\Program Files (x86)\Windows Live\Messenger\PresenceIM.dll Report Id: cdc7cdfd-3202-11df-a8f8-00241d706baf
Error - 3/18/2010 2:40:13 AM | Computer Name = Gaming-PC | Source = Application Error | ID = 1000
Description = Faulting application name: msnmsgr.exe, version: 14.0.8089.726, time
stamp: 0x4a6ce533 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception
code: 0xc0000005 Fault offset: 0x836610e9 Faulting process id: 0x3f4 Faulting application
start time: 0x01cac665b1c4b81c Faulting application path: C:\Program Files (x86)\Windows
Live\Messenger\msnmsgr.exe Faulting module path: unknown Report Id: 1a7ba705-3259-11df-ab22-00241d706baf
Error - 3/18/2010 8:43:51 PM | Computer Name = Gaming-PC | Source = Application Hang | ID = 1002
Description = The program Steam.exe version 1.0.778.935 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: 1288 Start
Time: 01cac6f8a942c047 Termination Time: 0 Application Path: C:\Program Files (x86)\Steam\Steam.exe
Report
Id: 57f2f08a-32f0-11df-aca3-00241d706baf
Error - 3/18/2010 8:55:20 PM | Computer Name = Gaming-PC | Source = Application Hang | ID = 1002
Description = The program Steam.exe version 1.0.778.935 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: 438 Start
Time: 01cac6fdaeaf3b69 Termination Time: 0 Application Path: C:\Program Files (x86)\Steam\Steam.exe
Report
Id: e368a30e-32f1-11df-aca3-00241d706baf
Error - 3/19/2010 4:09:18 AM | Computer Name = Gaming-PC | Source = Application Hang | ID = 1002
Description = The program Steam.exe version 1.0.778.935 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: f68 Start
Time: 01cac6ff16ed130b Termination Time: 0 Application Path: C:\Program Files (x86)\Steam\Steam.exe
Report
Id: b38c1bbc-332e-11df-aca3-00241d706baf
Error - 4/7/2010 7:29:23 AM | Computer Name = Gaming-PC | Source = Application Error | ID = 1000
Description = Faulting application name: iexplore.exe, version: 8.0.7600.16385,
time stamp: 0x4a5bc69e Faulting module name: TSToolbar.dll_unloaded, version: 0.0.0.0,
time stamp: 0x4a6d7405 Exception code: 0xc0000005 Fault offset: 0x100133e5 Faulting
process id: 0x10d0 Faulting application start time: 0x01cad64591799df0 Faulting application
path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Faulting module path:
TSToolbar.dll Report Id: d0521633-4238-11df-85ba-00241d706baf
Error - 4/11/2010 4:17:13 AM | Computer Name = Gaming-PC | Source = Application Error | ID = 1000
Description = Faulting application name: msnmsgr.exe, version: 14.0.8089.726, time
stamp: 0x4a6ce533 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception
code: 0xc0000005 Fault offset: 0x33da0a47 Faulting process id: 0xf18 Faulting application
start time: 0x01cad94f36a9f05f Faulting application path: C:\Program Files (x86)\Windows
Live\Messenger\msnmsgr.exe Faulting module path: unknown Report Id: a14854b5-4542-11df-b167-00241d706baf
Error - 4/12/2010 8:04:19 AM | Computer Name = Gaming-PC | Source = Application Error | ID = 1000
Description = Faulting application name: msnmsgr.exe, version: 14.0.8089.726, time
stamp: 0x4a6ce533 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception
code: 0xc0000005 Fault offset: 0x00000000 Faulting process id: 0xf64 Faulting application
start time: 0x01cada383272e0d0 Faulting application path: C:\Program Files (x86)\Windows
Live\Messenger\msnmsgr.exe Faulting module path: unknown Report Id: 859c9eda-462b-11df-a473-00241d706baf
Error - 4/13/2010 3:14:01 AM | Computer Name = Gaming-PC | Source = Application Error | ID = 1000
Description = Faulting application name: msnmsgr.exe, version: 14.0.8089.726, time
stamp: 0x4a6ce533 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception
code: 0xc0000005 Fault offset: 0xe8000000 Faulting process id: 0xd20 Faulting application
start time: 0x01cadad8de8f45af Faulting application path: C:\Program Files (x86)\Windows
Live\Messenger\msnmsgr.exe Faulting module path: unknown Report Id: 22429a66-46cc-11df-afc9-00241d706baf
Error - 4/13/2010 3:15:43 AM | Computer Name = Gaming-PC | Source = Application Error | ID = 1000
Description = Faulting application name: msnmsgr.exe, version: 14.0.8089.726, time
stamp: 0x4a6ce533 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception
code: 0xc0000005 Fault offset: 0x8ba5a5a5 Faulting process id: 0xc90 Faulting application
start time: 0x01cadad91fc52635 Faulting application path: C:\Program Files (x86)\Windows
Live\Messenger\msnmsgr.exe Faulting module path: unknown Report Id: 5ebc905c-46cc-11df-afc9-00241d706baf
[ System Events ]
Error - 4/11/2010 7:41:19 PM | Computer Name = Gaming-PC | Source = DCOM | ID = 10005
Description =
Error - 4/11/2010 8:40:19 PM | Computer Name = Gaming-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068
Error - 4/11/2010 8:40:19 PM | Computer Name = Gaming-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068
Error - 4/11/2010 8:40:19 PM | Computer Name = Gaming-PC | Source = Service Control Manager | ID = 7001
Description = The Computer Browser service depends on the Server service which failed
to start because of the following error: %%1068
Error - 4/11/2010 10:24:05 PM | Computer Name = Gaming-PC | Source = volmgr | ID = 262190
Description = Crash dump initialization failed!
Error - 4/11/2010 10:24:09 PM | Computer Name = Gaming-PC | Source = volmgr | ID = 262190
Description = Crash dump initialization failed!
Error - 4/12/2010 8:02:15 AM | Computer Name = Gaming-PC | Source = volmgr | ID = 262190
Description = Crash dump initialization failed!
Error - 4/12/2010 8:02:24 AM | Computer Name = Gaming-PC | Source = volmgr | ID = 262190
Description = Crash dump initialization failed!
Error - 4/13/2010 3:07:23 AM | Computer Name = Gaming-PC | Source = volmgr | ID = 262190
Description = Crash dump initialization failed!
Error - 4/13/2010 3:07:29 AM | Computer Name = Gaming-PC | Source = volmgr | ID = 262190
Description = Crash dump initialization failed!
< End of report >
Regards,
Slim375