I ran OTL an the log follows, but when I run GMER my computer freezes up or crashes before it can finish.
OTL.txt
OTL logfile created on: 5/19/2010 11:01:44 PM - Run 1
OTL by OldTimer - Version 3.2.5.0 Folder = D:\Documents and Settings\John\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 68.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 88.00% Paging File free
Paging file location(s): D:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files
Drive C: | 111.78 Gb Total Space | 17.56 Gb Free Space | 15.71% Space Free | Partition Type: NTFS
Drive D: | 465.75 Gb Total Space | 162.07 Gb Free Space | 34.80% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: TRINITY
Current User Name: John
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - D:\Documents and Settings\John\Desktop\OTL.exe (OldTimer Tools)
PRC - D:\Program Files\MediaMall\MediaMallServer.exe (MediaMall Technologies, Inc.)
PRC - D:\Program Files\MediaMall\PlayOn.exe (MediaMall Technologies, Inc.)
PRC - D:\Program Files\Orb Networks\Orb\bin\OrbLauncher.exe (Orb Networks)
PRC - D:\Program Files\Orb Networks\Orb\bin\OrbMediaService.exe (Orb Networks)
PRC - D:\Program Files\Orb Networks\Orb\bin\Orb.exe (Orb Networks, Inc.)
PRC - D:\Program Files\Avanquest\SystemSuite\MXTask2.exe (Avanquest North America, Inc.)
PRC - D:\Program Files\Avanquest\SystemSuite\MXTask.exe (Avanquest North America, Inc.)
PRC - D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
PRC - D:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe (Intuit Inc.)
PRC - D:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd)
PRC - D:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
PRC - D:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe (Logitech Inc.)
PRC - D:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)
PRC - D:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe (Logitech Inc.)
PRC - D:\Program Files\Logitech\GamePanel Software\Applets\LCDMedia.exe (Logitech Inc.)
PRC - D:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDClock.exe (Logitech Inc.)
PRC - D:\Program Files\Common Files\AntiVirus\SBAMSvc.exe (Sunbelt Software)
PRC - D:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - D:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE (SEIKO EPSON CORPORATION)
PRC - D:\Program Files\Microsoft Broadband Networking\MSBNTray.exe (Microsoft Corporation)
PRC - D:\WINDOWS\system32\devldr32.exe (Creative Technology Ltd.)
========== Modules (SafeList) ==========
MOD - D:\Documents and Settings\John\Desktop\OTL.exe (OldTimer Tools)
MOD - D:\Program Files\Avanquest\SystemSuite\WinHook.dll (Avanquest North America, Inc.)
MOD - D:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (DAUpdaterSvc) – D:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe (BioWare)
SRV - (MediaMall Server) – D:\Program Files\MediaMall\MediaMallServer.exe (MediaMall Technologies, Inc.)
SRV - (OrbMediaService) – D:\Program Files\Orb Networks\Orb\bin\OrbMediaService.exe (Orb Networks)
SRV - (FLEXnet Licensing Service) – D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (SystemSuite Task Manager) – D:\Program Files\Avanquest\SystemSuite\MXTask.exe (Avanquest North America, Inc.)
SRV - (IntuitUpdateService) – D:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe (Intuit Inc.)
SRV - (YahooAUService) – D:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
SRV - (SBAMSvc) – D:\Program Files\Common Files\AntiVirus\SBAMSvc.exe (Sunbelt Software)
SRV - (Adobe Version Cue CS4) – D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe (Adobe Systems Incorporated)
SRV - (EPSON_PM_RPCV4_01) EPSON V3 Service4(01) – D:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE (SEIKO EPSON CORPORATION)
========== Driver Services (SafeList) ==========
DRV - (sptd) – D:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (nv) – D:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (hotcore3) – D:\WINDOWS\system32\DRIVERS\hotcore3.sys (Paragon Software Group)
DRV - (Uim_IM) – D:\WINDOWS\system32\drivers\Uim_IM.sys (Paragon)
DRV - (UimBus) – D:\WINDOWS\system32\drivers\UimBus.sys (Windows ® 2000 DDK provider)
DRV - (LMouFilt) – D:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) – D:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (SBRE) – D:\WINDOWS\system32\drivers\SBREDrv.sys (Sunbelt Software)
DRV - (sbtis) – D:\WINDOWS\system32\drivers\sbtis.sys (Sunbelt Software)
DRV - (TFilter) – D:\Program Files\Avanquest\SystemSuite\TFilter.sys (Avanquest North America, Inc.)
DRV - (nvgts) – D:\WINDOWS\system32\DRIVERS\nvgts.sys (NVIDIA Corporation)
DRV - (adfs) – D:\WINDOWS\system32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (sbapifs) – D:\WINDOWS\system32\drivers\sbapifs.sys (Sunbelt Software)
DRV - (sbaphd) – D:\WINDOWS\system32\drivers\sbaphd.sys (Sunbelt Software)
DRV - (gameenum) – D:\WINDOWS\system32\drivers\gameenum.sys (Microsoft Corporation)
DRV - (usbaudio) USB Audio Driver (WDM) – D:\WINDOWS\system32\drivers\USBAUDIO.sys (Microsoft Corporation)
DRV - (nvnetbus) – D:\WINDOWS\system32\drivers\nvnetbus.sys (NVIDIA Corporation)
DRV - (NVENETFD) – D:\WINDOWS\system32\drivers\NVENETFD.sys (NVIDIA Corporation)
DRV - (RTLWUSB) – D:\WINDOWS\system32\drivers\RTL8187.sys (Realtek Semiconductor Corporation )
DRV - (nvata) – D:\WINDOWS\system32\DRIVERS\nvata.sys (NVIDIA Corporation)
DRV - (AmdK8) – D:\WINDOWS\system32\drivers\AmdK8.sys (Advanced Micro Devices)
DRV - (SjyPkt) – D:\WINDOWS\system32\drivers\SjyPkt.sys (Windows ® 2000 DDK provider)
DRV - (SI3132) – D:\WINDOWS\system32\DRIVERS\SI3132.sys (Silicon Image, Inc.)
DRV - (SiFilter) – D:\WINDOWS\system32\DRIVERS\SiWinAcc.sys (Silicon Image, Inc.)
DRV - (MTsensor) – D:\WINDOWS\system32\drivers\ASACPI.sys ()
DRV - (MSW_USB) – D:\WINDOWS\system32\drivers\MN510-51.sys (Microsoft, Inc.)
DRV - (sfman) Creative SoundFont Manager Driver (WDM) – D:\WINDOWS\system32\drivers\sfman.sys (Creative Technology Ltd.)
DRV - (ctljystk) – D:\WINDOWS\system32\drivers\ctljystk.sys (Creative Technology Ltd.)
DRV - (emu10k) Creative SB Live! series(WDM) – D:\WINDOWS\system32\drivers\emu10k1f.sys (Creative Technology Ltd.)
DRV - (emu10k1) Creative Interface Manager Driver (WDM) – D:\WINDOWS\system32\drivers\ctlface.sys (Creative Technology Ltd.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKLM\..\URLSearchHook: {03402f96-3dc7-4285-bc50-9e81fefafe43} - D:\Program Files\AIM Toolbar\aimtb.dll (AOL Inc.)
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKCU\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {03402f96-3dc7-4285-bc50-9e81fefafe43} - D:\Program Files\AIM Toolbar\aimtb.dll (AOL Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "AIM Search"
FF - prefs.js..browser.search.defaulturl: "
http://aim.search.aol.com/search/search?query={searchTerms}&invocationType;=tb50-ff-aim-chromesbox-en-us"
FF - prefs.js..browser.search.param.yahoo-fr: "chrf-ytbm"
FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "chrf-ytbm"
FF - prefs.js..browser.search.param.yahoo-type: "${8}"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "
http://www.google.com/"
FF - prefs.js..extensions.enabledItems: {e1170235-2845-420c-acc3-42261a29dd46}:4.0.1
FF - prefs.js..extensions.enabledItems: {4d855a8a-1536-4aa8-bf99-da2362910205}:[removed]
FF - prefs.js..extensions.enabledItems: {a7c6cf7f-112c-4500-a7ea-39801a327e5f}:1.0.4
FF - prefs.js..extensions.enabledItems: [removed]:1.0
FF - prefs.js..extensions.enabledItems: [removed]:1.0.0.071303000004
FF - prefs.js..extensions.enabledItems: [removed]:2.2.0
FF - prefs.js..extensions.enabledItems: {B17C1C5A-04B1-11DB-9804-B622A1EF5492}:1.2
FF - prefs.js..extensions.enabledItems: paypalfirefoxplugin@orbiscom:[removed]
FF - prefs.js..extensions.enabledItems: {37E4D8EA-8BDA-4831-8EA1-89053939A250}:3.0.0.1
FF - prefs.js..extensions.enabledItems: {7b13ec3e-999a-4b70-b9cb-2617b8323822}:2.5.7.3
FF - prefs.js..keyword.URL: "
http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2706&invocationType;=tb50-ff-aim-ab-en-us&query;="
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: D:\Program Files\Avanquest\SystemSuite\Firefox [2009/04/07 06:11:10 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{4d855a8a-1536-4aa8-bf99-da2362910205}: D:\Program Files\Avanquest\SystemSuite\Firefox3DV [2009/04/07 06:15:13 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\paypalfirefoxplugin@orbiscom: D:\Program Files\PayPal\PayPal Plug-In [2010/02/19 08:45:11 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2010/05/07 15:03:47 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2010/04/05 18:32:15 | 000,000,000 | —D | M]
[2009/04/07 05:53:19 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\Mozilla\Extensions
[2010/05/19 12:53:21 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions
[2009/12/30 19:29:08 | 000,000,000 | —D | M] (FaceFun) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{1BB22D38-A411-4B13-A746-C2A4F4EC7344}
[2010/04/26 20:19:24 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009/10/16 05:26:22 | 000,000,000 | —D | M] (PDF Download) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{37E4D8EA-8BDA-4831-8EA1-89053939A250}
[2009/12/30 19:44:33 | 000,000,000 | —D | M] (Dogpile Bundle Toolbar) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{517ca167-b6e8-4397-a0b4-a0074bbe3d5b}
[2009/06/04 18:11:03 | 000,000,000 | —D | M] (IE Tab) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}
[2010/03/18 18:49:15 | 000,000,000 | —D | M] (Zynga Toolbar) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}
[2009/04/07 06:44:38 | 000,000,000 | —D | M] (FireFTP) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}
[2009/08/06 18:34:02 | 000,000,000 | —D | M] (Password Exporter) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}
[2010/01/22 06:12:54 | 000,000,000 | —D | M] (Clipmarks) – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\{e1170235-2845-420c-acc3-42261a29dd46}
[2009/10/09 07:13:07 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\[removed]
[2010/03/02 19:29:48 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\extensions\[removed]
[2010/02/19 08:34:57 | 000,004,546 | —- | M] () – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\searchplugins\aim-search.xml
[2009/12/30 20:51:21 | 000,001,070 | —- | M] () – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\searchplugins\dogpile-search.xml
[2009/10/15 17:41:55 | 000,002,138 | —- | M] () – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\searchplugins\MySpace.xml
[2009/04/18 17:31:54 | 000,001,368 | —- | M] () – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\searchplugins\nextag.xml
[2010/04/28 17:35:54 | 000,002,363 | —- | M] () – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\searchplugins\search-the-web.xml
[2009/04/18 17:20:30 | 000,001,088 | —- | M] () – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\searchplugins\thottbot-wow.xml
[2009/05/08 16:36:13 | 000,000,945 | —- | M] () – D:\Documents and Settings\John\Application Data\Mozilla\Firefox\Profiles\efoa129p.default\searchplugins\youtube-video-search.xml
[2010/05/19 12:53:21 | 000,000,000 | —D | M] – D:\Program Files\Mozilla Firefox\extensions
[2009/09/05 11:30:03 | 000,238,776 | —- | M] (Pando Networks) – D:\Program Files\Mozilla Firefox\plugins\npPandoWebInst.dll
O1 HOSTS File: ([2009/04/24 14:31:24 | 000,305,725 | R— | M]) - D:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 10527 more lines…
O2 - BHO: (&Yahoo;! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - D:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll (Yahoo! Inc.)
O2 - BHO: (no name) - {0347C33E-8762-4905-BF09-768834316C61} - No CLSID value found.
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - D:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O2 - BHO: (PlaySushi) - {21608B66-026F-4DCB-9244-0DACA328DCED} - D:\Program Files\PlaySushi\PSText.dll ()
O2 - BHO: (XPL LinkScannerIE) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - D:\Program Files\Avanquest\SystemSuite\LinkScannerIE.dll (Exploit Prevention Labs, Inc.)
O2 - BHO: (Spybot-S&D; IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (DataVault Object) - {8373ADC0-6330-11DD-9D77-22C856D89593} - D:\Program Files\Avanquest\SystemSuite\IE_ContextMenu_Vault.dll (Avanquest North America, Inc.)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (AIM Toolbar Loader) - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - D:\Program Files\AIM Toolbar\aimtb.dll (AOL Inc.)
O2 - BHO: (OToolbarHelper Class) - {EAD3A971-6A23-4246-8691-C9244E858967} - D:\Program Files\PayPal\PayPal Plug-In\PayPalHelper.dll ()
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - D:\Program Files\Yahoo!\Companion\Installs\cpn1\YTSingleInstance.dll (Yahoo! Inc)
O2 - BHO: (no name) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - D:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O3 - HKLM\..\Toolbar: (AIM Toolbar) - {61539ecd-cc67-4437-a03c-9aaccbd14326} - D:\Program Files\AIM Toolbar\aimtb.dll (AOL Inc.)
O3 - HKLM\..\Toolbar: (PayPal Plug-In) - {DC0F2F93-27FA-4f84-ACAA-9416F90B9511} - D:\Program Files\PayPal\PayPal Plug-In\OToolbar.dll ()
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (TextAloud) - {F053C368-5458-45B2-9B4D-D8914BDDDBFF} - D:\Program Files\TextAloud\TAForIE.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (AIM Toolbar) - {61539ECD-CC67-4437-A03C-9AACCBD14326} - D:\Program Files\AIM Toolbar\aimtb.dll (AOL Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe_ID0ENQBO] D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] D:\WINDOWS\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [Launch LCDMon] D:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe (Logitech Inc.)
O4 - HKLM..\Run: [Launch LGDCore] D:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)
O4 - HKLM..\Run: [Launch LgDevAgt] D:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe (Logitech Inc.)
O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [Orb] D:\Program Files\Orb Networks\Orb\bin\OrbLauncher.exe (Orb Networks)
O4 - HKCU..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Messenger (Yahoo!)] D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKCU..\Run: [Orb] D:\Program Files\Orb Networks\Orb\bin\OrbTray.exe File not found
O4 - HKCU..\Run: [PlayOn] D:\Program Files\MediaMall\PlayOn.exe (MediaMall Technologies, Inc.)
O4 - HKCU..\Run: [SpybotSD TeaTimer] D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKCU..\Run: [uTorrent] D:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - Startup: D:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Broadband Networking.lnk = D:\WINDOWS\Installer\{8CC15633-2327-43F4-BA85-B83FDB4B59BE}\_18be6784.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Append Link Target to Existing PDF - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: E&xport; to Microsoft Excel - D:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end; to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: Go PlaySushi! - {EBD24BD3-E272-4FA3-A8BA-C5D709757CAB} - D:\Program Files\PlaySushi\PSText.dll ()
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E}
http://www.nvidia.com/content/DriverDownlo…/sysreqlab3.cab (System Requirements Lab Class)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupdate/…b?1239115665796 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftupdat…b?1240094785812 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_14)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - D:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - D:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - D:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - D:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: D:\Documents and Settings\John\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: D:\Documents and Settings\John\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/04/07 04:52:36 | 000,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O33 - MountPoints2\{c0ef2030-2356-11de-a40b-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{c0ef2030-2356-11de-a40b-806d6172696f}\Shell\AutoRun - "" = Auto&Play;
O33 - MountPoints2\{c0ef2030-2356-11de-a40b-806d6172696f}\Shell\AutoRun\command - "" = F:\.\Bin\Assetup.exe – File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - D:\WINDOWS\system32\ias [2009/04/07 00:35:16 | 000,000,000 | —D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - D:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
========== Files/Folders - Created Within 30 Days ==========
[2010/05/19 23:00:24 | 000,571,904 | —- | C] (OldTimer Tools) – D:\Documents and Settings\John\Desktop\OTL.exe
[2010/05/19 21:13:27 | 000,000,000 | —D | C] – D:\Documents and Settings\All Users\Application Data\Gosu
[2010/05/15 20:24:49 | 000,000,000 | —D | C] – D:\Documents and Settings\NetworkService\Application Data\Macromedia
[2010/05/15 20:24:48 | 000,000,000 | —D | C] – D:\Documents and Settings\NetworkService\Application Data\Adobe
[2010/05/14 21:17:52 | 000,000,000 | —D | C] – D:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2010/05/14 19:53:36 | 000,000,000 | —D | C] – D:\spoolerlogs
[2010/05/14 19:46:50 | 000,000,000 | —D | C] – D:\Documents and Settings\John\Local Settings\Application Data\nsgsnudvf
[2010/05/14 19:46:21 | 000,000,000 | —D | C] – D:\Documents and Settings\John\Application Data\ATManager
[2010/05/14 19:46:12 | 000,000,000 | —D | C] – D:\Documents and Settings\John\Application Data\05797CE6939488349FA88E7597AA38E6
[2010/05/13 23:50:27 | 000,000,000 | —D | C] – D:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2010/05/13 23:50:26 | 000,000,000 | —D | C] – D:\Documents and Settings\John\Local Settings\Application Data\Temp
[2010/05/13 23:50:21 | 000,000,000 | —D | C] – D:\Program Files\Common Files\DivX Shared
[2010/05/13 23:50:18 | 000,000,000 | —D | C] – D:\Documents and Settings\John\Local Settings\Application Data\Google
[2010/05/13 23:50:16 | 000,000,000 | —D | C] – D:\Program Files\Google
[2010/05/13 23:50:13 | 000,000,000 | —D | C] – D:\Program Files\DivX
[2010/05/13 23:50:06 | 000,000,000 | —D | C] – D:\Documents and Settings\All Users\Application Data\DivX
[2010/05/09 20:13:55 | 000,000,000 | —D | C] – D:\Documents and Settings\All Users\Application Data\WEBREG
[2010/05/08 10:53:53 | 000,000,000 | —D | C] – D:\Documents and Settings\John\Application Data\HP
[2010/05/08 10:46:24 | 000,000,000 | —D | C] – D:\Documents and Settings\All Users\Application Data\HP Product Assistant
[2010/05/08 10:46:24 | 000,000,000 | —D | C] – D:\Documents and Settings\All Users\Application Data\HP
[2010/05/08 10:46:06 | 000,000,000 | —D | C] – D:\Program Files\Common Files\HP
[2010/05/08 10:45:31 | 000,000,000 | —D | C] – D:\Program Files\HP
[2010/05/08 10:45:19 | 000,000,000 | -H-D | C] – D:\Config.Msi
[2010/05/08 10:37:23 | 000,000,000 | —D | C] – D:\Documents and Settings\All Users\Application Data\Hewlett-Packard
[2010/05/08 10:37:15 | 000,271,704 | R— | C] (Hewlett-Packard) – D:\WINDOWS\System32\hpzids01.dll
[2010/05/08 10:37:11 | 000,117,760 | —- | C] (Hewlett-Packard Company) – D:\WINDOWS\System32\hpzll5mu.dll
[2010/04/28 18:10:18 | 000,000,000 | —D | C] – D:\Documents and Settings\John\Application Data\Facebook
[2010/04/28 18:10:12 | 002,114,184 | —- | C] (Facebook, Inc.) – D:\Documents and Settings\John\Desktop\Install_Facebook_Plug-In_1.0.3.exe
[2010/04/26 18:04:42 | 000,353,592 | —- | C] (DivX, Inc.) – D:\WINDOWS\System32\DivXControlPanelApplet.cpl
[2009/04/07 04:57:24 | 000,059,392 | —- | C] ( ) – D:\WINDOWS\System32\a3d.dll
[7 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[6 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010/05/19 23:00:24 | 000,571,904 | —- | M] (OldTimer Tools) – D:\Documents and Settings\John\Desktop\OTL.exe
[2010/05/19 23:00:00 | 000,000,882 | —- | M] () – D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/05/19 22:58:58 | 000,002,355 | —- | M] () – D:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Broadband Networking.lnk
[2010/05/19 22:58:57 | 000,215,383 | —- | M] () – D:\WINDOWS\System32\nvapps.xml
[2010/05/19 22:58:55 | 000,000,878 | —- | M] () – D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/05/19 22:58:55 | 000,000,278 | -H– | M] () – D:\WINDOWS\tasks\{8C3FDD81-7AE0-4605-A46A-2488B179F2A3}.job
[2010/05/19 21:37:38 | 000,000,310 | —- | M] () – D:\WINDOWS\tasks\Orb Index when idle.job
[2010/05/19 21:15:01 | 007,864,320 | -H– | M] () – D:\Documents and Settings\John\NTUSER.DAT
[2010/05/19 21:12:39 | 000,000,006 | -H– | M] () – D:\WINDOWS\tasks\SA.DAT
[2010/05/19 21:12:37 | 000,002,048 | –S- | M] () – D:\WINDOWS\bootstat.dat
[2010/05/19 20:51:57 | 000,013,646 | —- | M] () – D:\WINDOWS\System32\wpa.dbl
[2010/05/14 19:46:30 | 000,003,072 | —- | M] () – D:\Documents and Settings\John\Application Data\mtl.dll
[2010/05/14 19:46:21 | 000,000,975 | —- | M] () – D:\Documents and Settings\John\Desktop\ATManager.lnk
[2010/05/14 19:46:20 | 001,882,240 | —- | M] () – D:\WINDOWS\System32\download.exe
[2010/05/14 19:46:05 | 000,174,592 | —- | M] () – D:\WINDOWS\Fvuvia.exe
[2010/05/13 23:51:22 | 000,001,817 | —- | M] () – D:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2010/05/13 23:51:18 | 000,001,450 | —- | M] () – D:\Documents and Settings\John\Desktop\DivX Movies.lnk
[2010/05/10 07:48:00 | 000,000,284 | —- | M] () – D:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/05/09 21:59:55 | 000,000,069 | —- | M] () – D:\WINDOWS\NeroDigital.ini
[2010/05/08 10:54:12 | 000,157,204 | —- | M] () – D:\WINDOWS\hphins26.dat
[2010/05/08 10:53:44 | 000,000,000 | —- | M] () – D:\Documents and Settings\John\Ÿ9Ÿ9
[2010/05/08 10:48:07 | 000,001,862 | —- | M] () – D:\Documents and Settings\All Users\Desktop\HP Photosmart Essential 2.5.lnk
[2010/05/08 10:47:35 | 000,001,964 | —- | M] () – D:\Documents and Settings\All Users\Desktop\Shop for HP Supplies.lnk
[2010/05/08 10:46:45 | 000,001,812 | —- | M] () – D:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[2010/05/08 10:46:31 | 000,000,988 | —- | M] () – D:\Documents and Settings\All Users\Desktop\HP Solution Center.lnk
[2010/05/02 20:14:14 | 000,093,639 | —- | M] () – D:\Documents and Settings\John\Desktop\Spring Massive.pdf
[2010/04/28 18:10:12 | 002,114,184 | —- | M] (Facebook, Inc.) – D:\Documents and Settings\John\Desktop\Install_Facebook_Plug-In_1.0.3.exe
[2010/04/26 18:04:42 | 000,353,592 | —- | M] (DivX, Inc.) – D:\WINDOWS\System32\DivXControlPanelApplet.cpl
[2010/04/20 17:26:45 | 186,578,211 | —- | M] () – D:\Documents and Settings\John\Desktop\Arsam - April 2010 Mix.mp3
[7 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[6 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/05/14 19:46:30 | 000,003,072 | —- | C] () – D:\Documents and Settings\John\Application Data\mtl.dll
[2010/05/14 19:46:21 | 000,000,975 | —- | C] () – D:\Documents and Settings\John\Desktop\ATManager.lnk
[2010/05/14 19:46:16 | 001,882,240 | —- | C] () – D:\WINDOWS\System32\download.exe
[2010/05/14 19:46:11 | 000,174,592 | —- | C] () – D:\WINDOWS\Fvuvia.exe
[2010/05/14 19:46:10 | 000,000,278 | -H– | C] () – D:\WINDOWS\tasks\{8C3FDD81-7AE0-4605-A46A-2488B179F2A3}.job
[2010/05/13 23:51:22 | 000,001,817 | —- | C] () – D:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2010/05/13 23:51:18 | 000,001,450 | —- | C] () – D:\Documents and Settings\John\Desktop\DivX Movies.lnk
[2010/05/13 23:50:20 | 000,000,882 | —- | C] () – D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/05/13 23:50:20 | 000,000,878 | —- | C] () – D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/05/08 10:53:44 | 000,000,000 | —- | C] () – D:\Documents and Settings\John\Ÿ9Ÿ9
[2010/05/08 10:48:07 | 000,001,862 | —- | C] () – D:\Documents and Settings\All Users\Desktop\HP Photosmart Essential 2.5.lnk
[2010/05/08 10:47:35 | 000,001,964 | —- | C] () – D:\Documents and Settings\All Users\Desktop\Shop for HP Supplies.lnk
[2010/05/08 10:46:45 | 000,001,812 | —- | C] () – D:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[2010/05/08 10:46:31 | 000,000,988 | —- | C] () – D:\Documents and Settings\All Users\Desktop\HP Solution Center.lnk
[2010/05/08 10:37:28 | 000,157,204 | —- | C] () – D:\WINDOWS\hphins26.dat
[2010/05/08 10:37:28 | 000,001,128 | —- | C] () – D:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2010/05/08 10:37:28 | 000,000,787 | —- | C] () – D:\WINDOWS\hphmdl26.dat
[2010/05/02 20:14:14 | 000,093,639 | —- | C] () – D:\Documents and Settings\John\Desktop\Spring Massive.pdf
[2010/04/20 17:23:54 | 186,578,211 | —- | C] () – D:\Documents and Settings\John\Desktop\Arsam - April 2010 Mix.mp3
[2010/04/20 06:11:48 | 007,864,320 | -H– | C] () – D:\Documents and Settings\John\NTUSER.DAT
[2010/02/28 15:44:15 | 000,484,352 | —- | C] () – D:\WINDOWS\System32\lame_enc.dll
[2009/09/22 18:28:42 | 000,354,816 | —- | C] () – D:\WINDOWS\System32\psisdecd.dll
[2009/09/20 06:11:42 | 000,122,368 | —- | C] () – D:\WINDOWS\lua5.1.dll
[2009/08/29 15:17:06 | 000,043,520 | —- | C] () – D:\WINDOWS\System32\CmdLineExt03.dll
[2009/07/13 03:04:28 | 009,277,440 | —- | C] () – D:\WINDOWS\avcodec-52.dll
[2009/07/13 03:04:28 | 000,751,104 | —- | C] () – D:\WINDOWS\avformat-52.dll
[2009/07/13 03:04:28 | 000,218,624 | —- | C] () – D:\WINDOWS\swscale-0.dll
[2009/07/13 03:04:28 | 000,070,144 | —- | C] () – D:\WINDOWS\avutil-50.dll
[2009/04/22 00:19:06 | 000,172,173 | —- | C] () – D:\WINDOWS\System32\xlive.dll.cat
[2009/04/14 15:22:09 | 000,000,069 | —- | C] () – D:\WINDOWS\NeroDigital.ini
[2009/04/07 11:56:40 | 000,717,296 | —- | C] () – D:\WINDOWS\System32\drivers\sptd.sys
[2009/04/07 05:42:11 | 000,000,962 | R— | C] () – D:\WINDOWS\System32\AsusSetup.ini
[2009/04/07 05:42:11 | 000,000,403 | R— | C] () – D:\WINDOWS\System32\raidmgmt.ini
[2009/04/07 05:39:37 | 000,034,695 | —- | C] () – D:\WINDOWS\Ascd_log.ini
[2009/04/07 05:39:19 | 000,034,389 | —- | C] () – D:\WINDOWS\Ascd_tmp.ini
[2009/04/07 05:39:00 | 000,010,288 | —- | C] () – D:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2009/04/07 04:57:23 | 000,286,720 | —- | C] () – D:\WINDOWS\System32\nvnt4cpl.dll
[2009/04/07 04:57:21 | 000,005,810 | —- | C] () – D:\WINDOWS\System32\drivers\ASACPI.sys
[2009/03/27 10:03:00 | 001,724,416 | —- | C] () – D:\WINDOWS\System32\nvwdmcpl.dll
[2009/03/27 10:03:00 | 001,503,232 | —- | C] () – D:\WINDOWS\System32\nview.dll
[2009/03/27 10:03:00 | 001,101,824 | —- | C] () – D:\WINDOWS\System32\nvwimg.dll
[2009/03/27 10:03:00 | 000,466,944 | —- | C] () – D:\WINDOWS\System32\nvshell.dll
[2008/10/07 09:13:30 | 000,197,912 | —- | C] () – D:\WINDOWS\System32\physxcudart_20.dll
[2008/10/07 09:13:22 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelSwedish.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelSpanish.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelPortugese.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelKorean.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelJapanese.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelGerman.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – D:\WINDOWS\System32\AgCPanelFrench.dll
[2004/08/04 08:00:00 | 000,002,304 | —- | C] () – D:\WINDOWS\System32\isaxbox.sys
[2004/02/20 16:36:34 | 000,416,256 | —- | C] () – D:\WINDOWS\exchndl.dll
========== LOP Check ==========
[2010/02/19 08:33:10 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\AIM Toolbar
[2009/04/07 06:12:54 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\Avanquest
[2009/04/07 12:13:23 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\Avanquest software
[2010/01/22 17:06:32 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\BioWare
[2009/04/07 06:11:14 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\BVRP Software
[2009/04/07 12:00:28 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2009/11/27 20:18:49 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\ElectricSheep
[2009/04/07 05:10:47 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\EPSON
[2009/10/08 19:46:42 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\Fallout3
[2010/05/19 21:13:30 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\Gosu
[2010/05/19 21:13:18 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\MediaMall
[2009/04/20 04:30:16 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\OrbNetworks
[2009/09/05 11:32:57 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\PMB Files
[2009/04/18 20:51:50 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\Team MediaPortal
[2010/02/28 17:06:25 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\TEMP
[2009/04/07 11:43:11 | 000,000,000 | —D | M] – D:\Documents and Settings\All Users\Application Data\TuneUp Software
[2009/04/07 11:43:02 | 000,000,000 | -HSD | M] – D:\Documents and Settings\All Users\Application Data\{55A29068-F2CE-456C-9148-C869879E2357}
[2010/05/14 19:46:12 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\05797CE6939488349FA88E7597AA38E6
[2010/05/14 19:46:25 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\ATManager
[2009/04/07 06:12:58 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\Avanquest
[2009/04/07 12:20:59 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\DAEMON Tools
[2009/04/08 17:34:16 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\DAEMON Tools Lite
[2009/04/07 12:20:59 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\DAEMON Tools Pro
[2010/04/28 18:10:19 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\Facebook
[2010/02/28 15:44:16 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\FreeAudioPack
[2009/04/07 09:09:18 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\KeePass
[2010/02/11 19:42:16 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\runic games
[2009/04/07 07:01:59 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\TuneUp Software
[2009/09/05 12:36:22 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\Turbine
[2010/05/19 22:59:08 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\uTorrent
[2009/05/10 16:45:20 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\VTExtra
[2009/04/28 00:43:57 | 000,000,000 | —D | M] – D:\Documents and Settings\John\Application Data\Wizards of the Coast
[2010/05/19 21:37:38 | 000,000,310 | —- | M] () – D:\WINDOWS\Tasks\Orb Index when idle.job
[2010/05/19 22:58:55 | 000,000,278 | -H– | M] () – D:\WINDOWS\Tasks\{8C3FDD81-7AE0-4605-A46A-2488B179F2A3}.job
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.exe >
[2007/11/07 08:03:18 | 000,562,688 | —- | M] (Microsoft Corporation) – D:\install.exe
< MD5 for: AGP440.SYS >
[2004/08/04 08:00:00 | 018,738,937 | —- | M] () .cab file – D:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2009/04/07 11:08:45 | 023,852,652 | —- | M] () .cab file – D:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2009/04/07 11:08:45 | 023,852,652 | —- | M] () .cab file – D:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 14:36:38 | 000,042,368 | —- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 – D:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 14:36:38 | 000,042,368 | —- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 – D:\WINDOWS\system32\drivers\agp440.sys
< MD5 for: ATAPI.SYS >
[2004/08/04 08:00:00 | 018,738,937 | —- | M] () .cab file – D:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2009/04/07 11:08:45 | 023,852,652 | —- | M] () .cab file – D:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2009/04/07 11:08:45 | 023,852,652 | —- | M] () .cab file – D:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 14:40:30 | 000,096,512 | —- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 – D:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 14:40:30 | 000,096,512 | —- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 – D:\WINDOWS\system32\drivers\atapi.sys
[2004/08/03 22:59:44 | 000,095,360 | —- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 – D:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004/08/04 08:00:00 | 000,095,360 | —- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 – D:\WINDOWS\system32\ReinstallBackups\0052\DriverFiles\i386\atapi.sys
[2004/08/04 08:00:00 | 000,095,360 | —- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 – D:\WINDOWS\system32\ReinstallBackups\0055\DriverFiles\i386\atapi.sys
[2004/08/03 22:59:44 | 000,095,360 | —- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 – D:\WINDOWS\system32\ReinstallBackups\0056\DriverFiles\i386\atapi.sys
[2004/08/03 22:59:44 | 000,095,360 | —- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 – D:\WINDOWS\system32\ReinstallBackups\0057\DriverFiles\i386\atapi.sys
< MD5 for: EVENTLOG.DLL >
[2008/04/13 20:11:53 | 000,056,320 | —- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 – D:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/13 20:11:53 | 000,056,320 | —- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 – D:\WINDOWS\system32\eventlog.dll
[2004/08/04 08:00:00 | 000,055,808 | —- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 – D:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: NETLOGON.DLL >
[2008/04/13 20:12:01 | 000,407,040 | —- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 – D:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 20:12:01 | 000,407,040 | —- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 – D:\WINDOWS\system32\netlogon.dll
[2004/08/04 08:00:00 | 000,407,040 | —- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A – D:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
< MD5 for: NVATA.SYS >
[2006/08/21 14:24:28 | 000,105,344 | R— | M] (NVIDIA Corporation) MD5=4D6C6B46B3EDF6F2E219A86B61D104AE – D:\WINDOWS\system32\drivers\nvata.sys
< MD5 for: NVGTS.SYS >
[2008/08/18 18:54:24 | 000,145,952 | —- | M] (NVIDIA Corporation) MD5=EA98BFE4931BD13D747D647C1859796E – D:\WINDOWS\system32\drivers\nvgts.sys
[2008/08/18 18:54:24 | 000,145,952 | —- | M] (NVIDIA Corporation) MD5=EA98BFE4931BD13D747D647C1859796E – D:\WINDOWS\system32\ReinstallBackups\0053\DriverFiles\nvgts.sys
[2008/08/18 18:54:24 | 000,145,952 | —- | M] (NVIDIA Corporation) MD5=EA98BFE4931BD13D747D647C1859796E – D:\WINDOWS\system32\ReinstallBackups\0054\DriverFiles\nvgts.sys
[2008/08/18 18:54:24 | 000,145,952 | —- | M] (NVIDIA Corporation) MD5=EA98BFE4931BD13D747D647C1859796E – D:\WINDOWS\system32\ReinstallBackups\0111\DriverFiles\nvgts.sys
< MD5 for: SCECLI.DLL >
[2004/08/04 08:00:00 | 000,180,224 | —- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A – D:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/13 20:12:05 | 000,181,248 | —- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 – D:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/13 20:12:05 | 000,181,248 | —- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 – D:\WINDOWS\system32\scecli.dll
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[6 D:\WINDOWS\system32\*.tmp files -> D:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2009/04/07 11:56:40 | 000,717,296 | —- | M] ()
Unable to obtain MD5 – D:\WINDOWS\system32\drivers\sptd.sys
< %systemroot%\System32\config\*.sav >
[2009/04/07 00:38:33 | 000,094,208 | —- | M] () – D:\WINDOWS\system32\config\default.sav
[2009/04/07 00:38:33 | 000,634,880 | —- | M] () – D:\WINDOWS\system32\config\software.sav
[2009/04/07 00:38:33 | 000,937,984 | —- | M] () – D:\WINDOWS\system32\config\system.sav
< %systemroot%\system32\drivers\*.sys /90 >
< End of report >
Extras.txt
OTL Extras logfile created on: 5/19/2010 11:01:44 PM - Run 1
OTL by OldTimer - Version 3.2.5.0 Folder = D:\Documents and Settings\John\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 68.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 88.00% Paging File free
Paging file location(s): D:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files
Drive C: | 111.78 Gb Total Space | 17.56 Gb Free Space | 15.71% Space Free | Partition Type: NTFS
Drive D: | 465.75 Gb Total Space | 162.07 Gb Free Space | 34.80% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: TRINITY
Current User Name: John
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] – D:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
exefile [open] – "%1" %*
htmlfile – "D:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] – "D:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] – "%1" /S
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] – D:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"56258:TCP" = 56258:TCP:*:Enabled:Pando Media Booster
"56258:UDP" = 56258:UDP:*:Enabled:Pando Media Booster
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"5353:TCP" = 5353:TCP:*:Enabled:Adobe CSI CS4
"3703:TCP" = 3703:TCP:*:Enabled:Adobe Version Cue CS4 Server
"3704:TCP" = 3704:TCP:*:Enabled:Adobe Version Cue CS4 Server
"51000:TCP" = 51000:TCP:*:Enabled:Adobe Version Cue CS4 Server
"51001:TCP" = 51001:TCP:*:Enabled:Adobe Version Cue CS4 Server
"56258:TCP" = 56258:TCP:*:Enabled:Pando Media Booster
"56258:UDP" = 56258:UDP:*:Enabled:Pando Media Booster
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"D:\Program Files\Windows Live\Messenger\wlcsdk.exe" = D:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call – (Microsoft Corporation)
"D:\Program Files\Pando Networks\Media Booster\PMB.exe" = D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster – ()
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"D:\Program Files\uTorrent\uTorrent.exe" = D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent – (BitTorrent, Inc.)
"D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" = D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe:*:Enabled:Adobe CSI CS4 – (Adobe Systems Incorporated)
"D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe" = D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe:*:Enabled:Adobe Version Cue CS4 Server – (Adobe Systems Incorporated)
"D:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = D:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook – (Microsoft Corporation)
"D:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = D:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove – (Microsoft Corporation)
"D:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = D:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote – (Microsoft Corporation)
"D:\DOCUME~1\John\LOCALS~1\Temp\IXP003.TMP\update.exe" = D:\DOCUME~1\John\LOCALS~1\Temp\IXP003.TMP\update.exe:*:Enabled:Windows UDP Control Center – File not found
"D:\Program Files\Windows Live\Messenger\wlcsdk.exe" = D:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call – (Microsoft Corporation)
"D:\Program Files\Microsoft Broadband Networking\MSBNUtil.exe" = D:\Program Files\Microsoft Broadband Networking\MSBNUtil.exe:*:Enabled:Microsoft Broadband Network Utility – (Microsoft Corporation)
"D:\Program Files\Microsoft Broadband Networking\MSBNTray.exe" = D:\Program Files\Microsoft Broadband Networking\MSBNTray.exe:*:Enabled:Microsoft Broadband Networking Tray – (Microsoft Corporation)
"D:\Program Files\Microsoft Broadband Networking\MSBNCfg.exe" = D:\Program Files\Microsoft Broadband Networking\MSBNCfg.exe:*:Enabled:Microsoft Broadband Networking Setup – (Microsoft Corporation)
"D:\Program Files\Microsoft Broadband Networking\MSBNUpdate.exe" = D:\Program Files\Microsoft Broadband Networking\MSBNUpdate.exe:*:Enabled:Microsoft Broadband Networking Update – (Microsoft Corporation)
"F:\RECYCLER\S-1-6-22-2434476501-1644491937-600003330-1213\svchost.exe" = F:\RECYCLER\S-1-6-22-2434476501-1644491937-600003330-1213\svchost.exe:*:Enabled:1 – File not found
"D:\Program Files\Pando Networks\Media Booster\PMB.exe" = D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster – ()
"D:\Program Files\Velvet Assassin\Launcher.exe" = D:\Program Files\Velvet Assassin\Launcher.exe:*:Enabled:Velvet_Assassin-1 – ()
"D:\Program Files\Velvet Assassin\replay.exe" = D:\Program Files\Velvet Assassin\replay.exe:*:Enabled:Velvet_Assassin-2 – (cd)
"D:\Program Files\Orb Networks\Orb\bin\OrbTray.exe" = D:\Program Files\Orb Networks\Orb\bin\OrbTray.exe:*:Enabled:OrbTray – File not found
"D:\Program Files\Orb Networks\Orb\bin\xmltv.exe" = D:\Program Files\Orb Networks\Orb\bin\xmltv.exe:*:Enabled:OrbTVGuide – File not found
"D:\Program Files\Orb Networks\Orb\bin\Orb.exe" = D:\Program Files\Orb Networks\Orb\bin\Orb.exe:*:Enabled:Orb – (Orb Networks, Inc.)
"D:\Program Files\Orb Networks\Orb\bin\OrbLauncher.exe" = D:\Program Files\Orb Networks\Orb\bin\OrbLauncher.exe:*:Enabled:OrbLauncher – (Orb Networks)
"D:\Program Files\Orb Networks\Orb\bin\OrbSetupWizard.exe" = D:\Program Files\Orb Networks\Orb\bin\OrbSetupWizard.exe:*:Enabled:OrbSetupWizard – ()
"D:\Program Files\Orb Networks\Orb\bin\OrbControlPanel.exe" = D:\Program Files\Orb Networks\Orb\bin\OrbControlPanel.exe:*:Enabled:OrbControlPanel – ()
"D:\Program Files\Orb Networks\Orb\bin\OrbStreamerClient.exe" = D:\Program Files\Orb Networks\Orb\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client – ()
"D:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe" = D:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe:LocalSubNet:Disabled:Intuit Update Shared Downloads Server – (Intuit Inc.)
"D:\Program Files\Dragon Age\bin_ship\daorigins.exe" = D:\Program Files\Dragon Age\bin_ship\daorigins.exe:*:Enabled:Dragon Age Origins Game – (BioWare)
"D:\Program Files\Dragon Age\DAOriginsLauncher.exe" = D:\Program Files\Dragon Age\DAOriginsLauncher.exe:*:Enabled:Dragon Age Origins Launcher – (BioWare)
"D:\Program Files\AIM\aim.exe" = D:\Program Files\AIM\aim.exe:*:Enabled:AIM – File not found
"D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger – (Yahoo! Inc.)
"D:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe" = D:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe:*:Enabled:Dragon Age Origins Updater – (BioWare)
"D:\Program Files\MediaMall\MediaMallServer.exe" = D:\Program Files\MediaMall\MediaMallServer.exe:*:Enabled:MediaMall Server – (MediaMall Technologies, Inc.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{05B49229-22A2-4F88-842A-BBC2EBE1CCF6}" = Microsoft Games for Windows - LIVE Redistributable
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{0AAA9C97-74D4-47CE-B089-0B147EF3553C}" = Windows Live Messenger
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{14F70205-1940-4000-88C7-BE799A6B2CAD}" = Adobe Soundbooth CS4
"{15BF7AAF-846C-4A6D-80E1-5D1FC7FB461B}" = Adobe SGM CS4
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR
"{1B7C06E1-4888-47A6-992A-0990B9683486}" = Adobe Version Cue CS4 Server
"{1DCA3EAA-6EB5-4563-A970-EA14D75037BA}" = Adobe InDesign CS4
"{1E04CB54-AF4E-4AC3-B4B7-C0A160BE57F1}" = Adobe InDesign CS4 Icon Handler
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{20CFBF87-73BD-4EC5-80B4-9C894126BD14}" = TurboTax 2008 wvaiper
"{2133CB3F-F891-4081-8681-FEE2B2419FF4}" = Orb Runtime libraries
"{2168245A-B5AD-40D8-A641-48E3E070B5B6}" = Adobe Flash CS4 STI-en
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java™ 6 Update 14
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{29521505-F489-4822-ADFA-32C6DEE4F114}" = TurboTax 2008 WinPerUserEducation
"{297190A1-4B0D-4CD6-8B9F-3907F15C3FD8}" = Adobe CS4 American English Speech Analysis Models
"{2BAF2B96-7560-48B4-87D4-10178DDBE217}" = Adobe InDesign CS4 Application Feature Set Files (Roman)
"{30C8AA56-4088-426F-91D1-0EDFD3A25678}" = Adobe Dreamweaver CS4
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3C5F1B30-B10B-4579-86DD-D00F662E1033}" = Nero 8 Ultra Edition HD
"{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{428FDF9F-E010-4C4C-A8BB-156960AFCA1C}" = Adobe Fireworks CS4
"{43509E18-076E-40FE-AF38-CA5ED400A5A9}" = Pixel Bender Toolkit
"{44E240EC-2224-4078-A88B-2CEE0D3016EF}" = Adobe After Effects CS4 Presets
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{45EC816C-0771-4C14-AE6D-72D1B578F4C8}" = Adobe After Effects CS4
"{48D7FBA8-624C-4160-8A1D-D62619C2A693}" = NextUp.com-NeoSpeech Paul16 Voice
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A52555C-032A-4083-BDD9-6A85ABFB39A8}" = Adobe SING CS4
"{4D243BA7-9AC4-46D1-90E5-EEB88974F501}" = Microsoft Games for Windows - LIVE
"{52232EF4-CC12-4C21-ABCF-ADB79618302D}" = Adobe Soundbooth CS4 Codecs
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{561968FD-56A1-49FD-9ED0-F55482C7C5BC}" = Adobe Media Encoder CS4 Exporter
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5EAD5443-7194-46CC-A055-428E6ABB1BAF}" = Adobe Encore CS4
"{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}" = Adobe Dynamiclink Support
"{61D6891E-E822-4448-9F9A-0AAAAEB6AF6C}" = Adobe Creative Suite 4 Master Collection
"{63A80153-E563-42D6-B8B5-AD96B1737F78}" = PlayOn 2.59.3525
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6A615007-721D-4063-B226-EA41EB6604B9}" = SystemSuite 9 Professional
"{73317C31-2B6E-4B88-9865-B97C1331A39D}" = PayPal Plug-In
"{7406DF60-016D-476B-A2C7-55D997592047}" = Adobe OnLocation CS4
"{7570F1CA-016D-46AC-B586-CD74645EFB52}" = TurboTax 2008 WinPerFedFormset
"{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}" = Avanquest update
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{793D1D88-6141-43DE-BE58-59BCE31B4090}" = Adobe Flash CS4 Extension - Flash Lite STI en
"{7CC7BDD5-6F10-4724-96A1-EAC7D9F2831C}" = Adobe InDesign CS4 Common Base Files
"{8186FF34-D389-4B7E-9A2F-C197585BCFBD}" = Adobe Media Encoder CS4 Importer
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{87532CAB-7932-4F84-8937-823337622807}" = Adobe Illustrator CS4
"{88214092-836F-4E22-A5AC-569AC9EE6A0F}" = TurboTax 2008 WinPerReleaseEngine
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8B3F4499-32E6-470D-8586-E6C03420F889}" = ASUS WiFi-AP Solo
"{8CC15633-2327-43F4-BA85-B83FDB4B59BE}" = Microsoft Broadband Networking
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISER_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISER_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISER_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISER_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISER_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISER_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{974C4B12-4D02-4879-85E0-61C95CC63E9E}" = Fallout 3
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B5B156B-9A4B-48FB-AA59-47B221495A7B}" = Logitech GamePanel Software 3.01
"{9DF0BE48-16F0-4E36-814D-9B4FDFFAF25F}" = PayPal Plug-In
"{9E5A03E3-6246-4920-9630-0527D5DA9B07}" = AnswerWorks 5.0 English Runtime
"{A1416622-0DDE-45B5-B06C-DFC3ED94C53B}" = The Godfather™ II
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A6EC82A0-1414-475D-8AFD-469089F3080D}" = Adobe Contribute CS4
"{AC76BA86-1033-F400-7760-000000000004}" = Adobe Acrobat 9 Pro - English, Français, Deutsch
"{AEB9948B-4FF2-47C9-990E-47014492A0FE}" = MSXML 6.0 Parser
"{AEC81925-9C76-4707-84A9-40696C613ED3}" = Dragon Age: Origins
"{AF7733C1-FB0B-4FED-9730-E0433AF7A2EF}" = Magic Online III
"{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15}" = Adobe MotionPicture Color Files CS4
"{B15381DD-FF97-4FCD-A881-ED4DB0975500}" = Adobe Color Video Profiles AE CS4
"{B169BC97-B8AA-4ACA-9CF2-9D0FF5BABDF7}" = Adobe Premiere Pro CS4 Functional Content
"{B1DB1AD8-C07E-4052-81A1-D2930232BA70}" = TurboTax 2008 wrapper
"{B23726CF-68BF-41A6-A4EB-72F12F87FE05}" = TurboTax 2008 WinPerTaxSupport
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{B9F4561A-924D-4510-A85A-BB0960C338CB}" = Adobe Asset Services CS4
"{BAF78226-3200-4DB4-BE33-4D922A799840}" = Windows Presentation Foundation
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}" = Adobe Media Encoder CS4 Additional Exporter
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C6CA8874-5F22-4AF0-9BE3-016BF299C536}" = Windows Live Essentials
"{C86E7C99-E4AD-79C7-375B-1AEF9A91EC2B}" = Acrobat.com
"{C938BE91-3BB5-4B84-9EF6-88F0505D0038}" = Adobe Premiere Pro CS4 Third Party Content
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D499F8DE-3F31-4900-9157-61061613704B}" = Adobe Premiere Pro CS4
"{DD1865F0-AD73-40FB-B23E-1822E02396FF}" = NVIDIA PhysX
"{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}" = Adobe Media Encoder CS4
"{E6D9BC25-0DBC-4368-8E4A-7DEE80661CD9}" = TurboTax 2008 WinPerProgramHelp
"{E8EE9410-8AC4-4F43-A626-DDECA75C79F3}" = Adobe Setup
"{EE353798-E875-42E0-B58D-7E6696182EA8}" = Adobe Media Encoder CS4 Dolby
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{F6E99614-F042-4459-82B7-8B38B2601356}" = Adobe Flash CS4
"{F8013DD1-574B-4921-A473-88A2F7A34D16}" = Avanquest Perfect Image 12
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FB2A5FCC-B81B-48C2-A009-7804694D83E9}" = Adobe Encore CS4 Codecs
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"15b35190-c6f9-11d9-9669-0800200c9a66_is1" = Dungeons & Dragons Online ®: Eberron Unlimited ™ v01.09.03.800
"53F13DB4D9611FD63BE580F06F0729BF236ABE68" = Windows Driver Package - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe_b2d6abde968e6f277ddbfd501383e02" = Adobe Creative Suite 4 Master Collection
"AIM Toolbar" = AIM Toolbar
"Army Men" = Army Men
"AudioConverter Studio_is1" = AudioConverter Studio 6.0
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"dBpoweramp [Calculate Audio CRC] Codec" = dBpoweramp [Calculate Audio CRC] Codec
"dBpoweramp Dalet Codec" = dBpoweramp Dalet Codec
"dBpoweramp DSP Effects" = dBpoweramp DSP Effects
"dBpoweramp FLAC Codec" = dBpoweramp FLAC Codec
"dBpoweramp Monkeys Audio Codec" = dBpoweramp Monkeys Audio Codec
"dBpoweramp Mp2 and BwfMp2 codec" = dBpoweramp Mp2 and BwfMp2 codec
"dBpoweramp mp3 (Fraunhofer IIS) Codec" = dBpoweramp mp3 (Fraunhofer IIS) Codec
"dBpoweramp Music Converter" = dBpoweramp Music Converter
"dBpoweramp Ogg Vorbis Codec" = dBpoweramp Ogg Vorbis Codec
"dBpoweramp Real Audio (Helix) Encoder" = dBpoweramp Real Audio (Helix) Encoder
"dBPoweramp tooLame MP2 codec" = dBPoweramp tooLame MP2 codec
"dBpoweramp Wave64 Codec" = dBpoweramp Wave64 Codec
"dBpoweramp WavPack Codec" = dBpoweramp WavPack Codec
"DebtFree™ for Windows Personal 5.1b" = DebtFree™ for Windows Personal 5.1b
"Electricsheep Screensaver" = Electricsheep Screensaver 2.7b20
"ENTERPRISER" = Microsoft Office Enterprise 2007
"EPSON Printer and Utilities" = EPSON Printer Software
"Fallout 3 - The Pitt" = Fallout 3 - The Pitt
"FLAC" = FLAC 1.2.1b (remove only)
"Free Mp3 Wma Converter_is1" = Free Mp3 Wma Converter V 1.9
"Hired Guns1.07.000" = Hired Guns
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"KeePass Password Safe_is1" = KeePass Password Safe 1.15
"Magic M4A to MP3 Converter_is1" = Magic M4A to MP3 Converter 3.1
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.0.19)" = Mozilla Firefox (3.0.19)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English)
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA Drivers" = NVIDIA Drivers
"OpenAL" = OpenAL
"Orb" = Orb
"Playsushi" = Playsushi
"Runic Games Torchlight" = Torchlight
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"TextAloud MP3_is1" = TextAloud
"TurboTax 2008" = TurboTax 2008
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"World of Warcraft" = World of Warcraft
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"uTorrent" = µTorrent
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 5/18/2010 3:33:53 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The connection with the server was terminated abnormally
Error - 5/18/2010 3:33:55 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: This network connection does not exist.
Error - 5/18/2010 5:34:04 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The connection with the server was terminated abnormally
Error - 5/18/2010 7:34:09 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The connection with the server was terminated abnormally
Error - 5/19/2010 5:09:04 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The connection with the server was terminated abnormally
Error - 5/19/2010 5:09:05 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: This network connection does not exist.
Error - 5/19/2010 6:34:36 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The connection with the server was terminated abnormally
Error - 5/19/2010 7:35:57 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The connection with the server was terminated abnormally
Error - 5/19/2010 7:36:00 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: This network connection does not exist.
Error - 5/19/2010 8:34:42 PM | Computer Name = TRINITY | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The connection with the server was terminated abnormally
[ System Events ]
Error - 5/19/2010 10:59:09 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:09 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:09 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:10 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:10 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:10 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:10 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:10 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:18 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
Error - 5/19/2010 10:59:23 PM | Computer Name = TRINITY | Source = Service Control Manager | ID = 7001
Description = The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error: %%1058
[ TuneUp Events ]
Error - 4/18/2009 10:10:21 PM | Computer Name = TRINITY | Source = TuneUp Program Statistics | ID = 131840
Description =
Error - 4/24/2009 2:18:37 PM | Computer Name = TRINITY | Source = TuneUp Program Statistics | ID = 131840
Description =
Error - 4/24/2009 2:47:47 PM | Computer Name = TRINITY | Source = TuneUp Program Statistics | ID = 131840
Description =
Error - 5/24/2009 10:12:18 PM | Computer Name = TRINITY | Source = TuneUp Program Statistics | ID = 131840
Description =
< End of report >