Okay, here are the scans.
OTL logfile created on: 8/31/2010 8:48:50 AM - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Documents and Settings\Robin\My Documents\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,014.00 Mb Total Physical Memory | 446.00 Mb Available Physical Memory | 44.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 144.72 Gb Total Space | 111.33 Gb Free Space | 76.92% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: UPSTAIRS
Current User Name: Robin
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Minimal
Quick Scan
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Robin\My Documents\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe ()
PRC - C:\Program Files\Trend Micro\Internet Security\TmPfw.exe ()
PRC - C:\Program Files\Trend Micro\BM\TMBMSRV.exe ()
PRC - C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe (SlySoft, Inc.)
PRC - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
PRC - C:\Program Files\Hewlett-Packard\HP Software Update\hpwuschd2.exe (Hewlett-Packard)
PRC - C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe ()
PRC - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe ()
PRC - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\mswinext.exe (Microsoft Corp.)
PRC - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation)
PRC - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation)
PRC - C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe (Carbonite, Inc. (www.carbonite.com))
PRC - C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe (Carbonite, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Juniper Networks\Common Files\dsNcService.exe (Juniper Networks)
PRC - C:\Program Files\Canon\CAL\CALMAIN.exe (Canon Inc.)
PRC - C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
PRC - C:\Program Files\Common Files\AOL\1282415149\EE\AOLHostManager.exe (America Online, Inc.)
PRC - C:\Program Files\Common Files\AOL\1282415149\EE\AOLServiceHost.exe (America Online, Inc.)
PRC - C:\Program Files\Common Files\AOL\ACS\AOLDial.exe (America Online)
PRC - C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe (America Online)
PRC - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe (America Online, Inc)
PRC - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe (America Online Inc)
PRC - C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\hpztsb10.exe (HP)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Robin\My Documents\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\SlySoft\AnyDVD\ADvdDiscHlp.dll (SlySoft, Inc.)
MOD - C:\WINDOWS\SYSTEM32\msscript.ocx (Microsoft Corporation)
MOD - C:\Program Files\Common Files\AOL\ACS\WLHook.dll (America Online)
========== Win32 Services (SafeList) ==========
SRV - (AppMgmt) – C:\WINDOWS\System32\appmgmts.dll File not found
SRV - (TmProxy) – C:\Program Files\Trend Micro\Internet Security\TmProxy.exe ()
SRV - (TmPfw) – C:\Program Files\Trend Micro\Internet Security\TmPfw.exe ()
SRV - (TMBMServer) – C:\Program Files\Trend Micro\BM\TMBMSRV.exe ()
SRV - (SeaPort) – C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
SRV - (SfCtlCom) – C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe ()
SRV - (wlidsvc) – C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation)
SRV - (CarboniteService) – C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe (Carbonite, Inc. (www.carbonite.com))
SRV - (dsNcService) – C:\Program Files\Juniper Networks\Common Files\dsNcService.exe (Juniper Networks)
SRV - (DSBrokerService) – C:\Program Files\DellSupport\brkrsvc.exe ()
SRV - (CCALib8) – C:\Program Files\Canon\CAL\CALMAIN.exe (Canon Inc.)
SRV - (AOL ACS) – C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (America Online)
SRV - (AOL TopSpeedMonitor) – C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe (America Online, Inc)
========== Driver Services (SafeList) ==========
DRV - (SMNDIS5) – C:\PROGRA~1\VERIZO~1\VZACCE~1\SMNDIS5.SYS File not found
DRV - (tmcfw) – C:\WINDOWS\SYSTEM32\DRIVERS\TM_CFW.sys (Trend Micro Inc.)
DRV - (tmcomm) – C:\WINDOWS\SYSTEM32\DRIVERS\tmcomm.sys ()
DRV - (tmtdi) – C:\WINDOWS\SYSTEM32\DRIVERS\tmtdi.sys (Trend Micro Inc.)
DRV - (tmactmon) – C:\WINDOWS\SYSTEM32\DRIVERS\tmactmon.sys ()
DRV - (tmevtmgr) – C:\WINDOWS\SYSTEM32\DRIVERS\tmevtmgr.sys ()
DRV - (AnyDVD) – C:\WINDOWS\SYSTEM32\DRIVERS\AnyDVD.sys (SlySoft, Inc.)
DRV - (ElbyCDIO) – C:\WINDOWS\SYSTEM32\DRIVERS\ElbyCDIO.sys (Elaborate Bytes AG)
DRV - (tmxpflt) – C:\WINDOWS\SYSTEM32\DRIVERS\tmxpflt.sys (Trend Micro Inc.)
DRV - (tmpreflt) – C:\WINDOWS\SYSTEM32\DRIVERS\tmpreflt.sys (Trend Micro Inc.)
DRV - (vsapint) – C:\WINDOWS\SYSTEM32\DRIVERS\vsapint.sys (Trend Micro Inc.)
DRV - (amdagp) – C:\WINDOWS\system32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)
DRV - (sisagp) – C:\WINDOWS\system32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)
DRV - (dsNcAdpt) – C:\WINDOWS\SYSTEM32\DRIVERS\dsNcAdpt.sys (Juniper Networks)
DRV - (dsunidrv) – C:\WINDOWS\SYSTEM32\DRIVERS\dsunidrv.sys (Gteko Ltd.)
DRV - (DSproct) – C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys (Gteko Ltd.)
DRV - (ATWPKT2) – C:\WINDOWS\SYSTEM32\DRIVERS\atwpkt2.sys (America Online)
DRV - (LMouKE) – C:\WINDOWS\SYSTEM32\DRIVERS\LMouKE.Sys (Logitech, Inc.)
DRV - (L8042mou) – C:\WINDOWS\SYSTEM32\DRIVERS\L8042mou.Sys (Logitech, Inc.)
DRV - (L8042Kbd) – C:\WINDOWS\SYSTEM32\DRIVERS\L8042Kbd.SYS (Logitech, Inc.)
DRV - (UsbDiag) – C:\WINDOWS\SYSTEM32\DRIVERS\LGUsbDiag.sys (LG Electronics Inc.)
DRV - (USBModem) – C:\WINDOWS\SYSTEM32\DRIVERS\LGUsbModem.sys (LG Electronics Inc.)
DRV - (usbbus) – C:\WINDOWS\SYSTEM32\DRIVERS\LGUSBBUS.SYS (LG Electronics Inc.)
DRV - (tfsnudfa) – C:\WINDOWS\SYSTEM32\dla\tfsnudfa.sys (Sonic Solutions)
DRV - (tfsnudf) – C:\WINDOWS\SYSTEM32\dla\tfsnudf.sys (Sonic Solutions)
DRV - (tfsnifs) – C:\WINDOWS\SYSTEM32\dla\tfsnifs.sys (Sonic Solutions)
DRV - (tfsncofs) – C:\WINDOWS\SYSTEM32\dla\tfsncofs.sys (Sonic Solutions)
DRV - (tfsnboio) – C:\WINDOWS\SYSTEM32\dla\tfsnboio.sys (Sonic Solutions)
DRV - (tfsnopio) – C:\WINDOWS\SYSTEM32\dla\tfsnopio.sys (Sonic Solutions)
DRV - (tfsnpool) – C:\WINDOWS\SYSTEM32\dla\tfsnpool.sys (Sonic Solutions)
DRV - (tfsndrct) – C:\WINDOWS\SYSTEM32\dla\tfsndrct.sys (Sonic Solutions)
DRV - (tfsndres) – C:\WINDOWS\SYSTEM32\dla\tfsndres.sys (Sonic Solutions)
DRV - (drvmcdb) – C:\WINDOWS\system32\drivers\drvmcdb.sys (Sonic Solutions)
DRV - (drvnddm) – C:\WINDOWS\SYSTEM32\DRIVERS\drvnddm.sys (Sonic Solutions)
DRV - (nv) – C:\WINDOWS\SYSTEM32\DRIVERS\NV4_MINI.SYS (NVIDIA Corporation)
DRV - (sscdbhk5) – C:\WINDOWS\SYSTEM32\DRIVERS\sscdbhk5.sys (Sonic Solutions)
DRV - (ssrtln) – C:\WINDOWS\SYSTEM32\DRIVERS\ssrtln.sys (Sonic Solutions)
DRV - (HSFHWBS2) – C:\WINDOWS\SYSTEM32\DRIVERS\HSFHWBS2.sys (Conexant Systems, Inc.)
DRV - (winachsf) – C:\WINDOWS\SYSTEM32\DRIVERS\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (HSF_DP) – C:\WINDOWS\SYSTEM32\DRIVERS\HSF_DP.sys (Conexant Systems, Inc.)
DRV - (wanatw) WAN Miniport (ATW) – C:\WINDOWS\SYSTEM32\DRIVERS\wanatw4.sys (America Online, Inc.)
DRV - (omci) – C:\WINDOWS\SYSTEM32\DRIVERS\omci.sys (Dell Computer Corporation)
DRV - (BsUDF) – C:\WINDOWS\System32\drivers\bsudf.sys (ahead software)
DRV - (BsStor) – C:\WINDOWS\System32\DRIVERS\bsstor.sys (B.H.A Co.,Ltd.)
DRV - (Sparrow) – C:\WINDOWS\system32\DRIVERS\sparrow.sys (Adaptec, Inc.)
DRV - (sym_u3) – C:\WINDOWS\system32\DRIVERS\sym_u3.sys (LSI Logic)
DRV - (sym_hi) – C:\WINDOWS\system32\DRIVERS\sym_hi.sys (LSI Logic)
DRV - (symc8xx) – C:\WINDOWS\system32\DRIVERS\symc8xx.sys (LSI Logic)
DRV - (symc810) – C:\WINDOWS\system32\DRIVERS\symc810.sys (Symbios Logic Inc.)
DRV - (MODEMCSA) – C:\WINDOWS\SYSTEM32\DRIVERS\MODEMCSA.sys (Microsoft Corporation)
DRV - (ultra) – C:\WINDOWS\system32\DRIVERS\ultra.sys (Promise Technology, Inc.)
DRV - (ql12160) – C:\WINDOWS\system32\DRIVERS\ql12160.sys (QLogic Corporation)
DRV - (ql1080) – C:\WINDOWS\system32\DRIVERS\ql1080.sys (QLogic Corporation)
DRV - (ql1280) – C:\WINDOWS\system32\DRIVERS\ql1280.sys (QLogic Corporation)
DRV - (dac2w2k) – C:\WINDOWS\system32\DRIVERS\dac2w2k.sys (Mylex Corporation)
DRV - (mraid35x) – C:\WINDOWS\system32\DRIVERS\mraid35x.sys (American Megatrends Inc.)
DRV - (asc) – C:\WINDOWS\system32\DRIVERS\asc.sys (Advanced System Products, Inc.)
DRV - (asc3550) – C:\WINDOWS\system32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)
DRV - (AliIde) – C:\WINDOWS\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (CmdIde) – C:\WINDOWS\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Live Search"
FF - prefs.js..browser.search.defaulturl: "
http://search.live.com/results.aspx?FORM=SOLTDF&q;="
FF - prefs.js..browser.search.selectedEngine: "Live Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "
http://start.mozilla.org/firefox?client=firefox-a&rls;=org.mozilla:en-US:official"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: [removed]:1.0
FF - prefs.js..extensions.enabledItems: {27182e60-b5f3-411c-b545-b44205977502}:1.0
FF - prefs.js..keyword.URL: "
http://search.live.com/results.aspx?FORM=SOLTDF&q;="
FF - HKLM\software\mozilla\Firefox\extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2010/06/11 23:25:02 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.11\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/08/02 11:07:26 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.11\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/08/24 14:14:38 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Netscape Browser 8.0.1.0\Extensions\\Components: C:\Program Files\Netscape\Netscape Browser\Components [2010/02/25 17:39:05 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Netscape Browser 8.0.1.0\Extensions\\Plugins: C:\Program Files\Netscape\Netscape Browser\Plugins [2010/08/24 14:14:38 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Netscape Browser 8.0.2.0\Extensions\\Components: C:\Program Files\Netscape\Netscape Browser\Components [2010/02/25 17:39:05 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Netscape Browser 8.0.2.0\Extensions\\Plugins: C:\Program Files\Netscape\Netscape Browser\Plugins [2010/08/24 14:14:38 | 000,000,000 | —D | M]
[2008/12/17 16:47:36 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Mozilla\Extensions
[2010/08/30 12:52:39 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Mozilla\Firefox\Profiles\ubj9vktx.default\extensions
[2010/04/27 11:18:50 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Documents and Settings\Robin\Application Data\Mozilla\Firefox\Profiles\ubj9vktx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/04/27 11:18:51 | 000,000,000 | —D | M] (NoScript) – C:\Documents and Settings\Robin\Application Data\Mozilla\Firefox\Profiles\ubj9vktx.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}
[2009/04/10 10:37:22 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Robin\Application Data\Mozilla\Firefox\Profiles\ubj9vktx.default\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}-trash
[2009/08/18 08:42:02 | 000,001,958 | —- | M] () – C:\Documents and Settings\Robin\Application Data\Mozilla\Firefox\Profiles\ubj9vktx.default\searchplugins\bing.xml
[2010/08/30 12:52:39 | 000,000,000 | —D | M] – C:\Program Files\Mozilla Firefox\extensions
[2010/06/18 08:32:40 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2008/06/20 01:08:54 | 000,024,683 | —- | M] (Ask.com) – C:\Program Files\Mozilla Firefox\plugins\NPAskSBr.dll
[2008/06/18 02:43:04 | 000,086,016 | —- | M] (Coupons, Inc.) – C:\Program Files\Mozilla Firefox\plugins\npCouponPrinter.dll
[2010/04/12 17:29:19 | 000,411,368 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2009/04/09 23:50:24 | 000,072,960 | —- | M] (Foxit Software Company) – C:\Program Files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll
O1 HOSTS File: ([2010/08/23 23:19:53 | 000,631,428 | —- | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\ETC\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 ad.a8.net
O1 - Hosts: 127.0.0.1 asy.a8ww.net
O1 - Hosts: 127.0.0.1 acezip.net #[SiteAdvisor.acezip.net]
O1 - Hosts: 127.0.0.1 www.acezip.net #[Win32/Adware.180Solutions]
O1 - Hosts: 127.0.0.1 phpadsnew.abac.com
O1 - Hosts: 127.0.0.1 a.abnad.net
O1 - Hosts: 127.0.0.1 b.abnad.net
O1 - Hosts: 127.0.0.1 c.abnad.net #[eTrust.Tracking.Cookie]
O1 - Hosts: 127.0.0.1 d.abnad.net
O1 - Hosts: 127.0.0.1 e.abnad.net
O1 - Hosts: 127.0.0.1 t.abnad.net
O1 - Hosts: 127.0.0.1 z.abnad.net
O1 - Hosts: 127.0.0.1 banners.absolpublisher.com
O1 - Hosts: 127.0.0.1 tracking.absolstats.com
O1 - Hosts: 127.0.0.1 adv.abv.bg
O1 - Hosts: 127.0.0.1 bimg.abv.bg
O1 - Hosts: 127.0.0.1 www2.a-counter.kiev.ua
O1 - Hosts: 127.0.0.1 track.acclaimnetwork.com
O1 - Hosts: 127.0.0.1 accuserveadsystem.com
O1 - Hosts: 127.0.0.1 www.accuserveadsystem.com
O1 - Hosts: 127.0.0.1 gtb5.acecounter.com
O1 - Hosts: 127.0.0.1 gtb19.acecounter.com
O1 - Hosts: 127.0.0.1 gtcc1.acecounter.com
O1 - Hosts: 127.0.0.1 gtp1.acecounter.com #[eTrust.Tracking.Cookie]
O1 - Hosts: 16361 more lines…
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (MSN Toolbar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (MSN Toolbar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {472734EA-242A-422B-ADF8-83D1E48CC825} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL File not found
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe (America Online)
O4 - HKLM..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe (Carbonite, Inc.)
O4 - HKLM..\Run: [HostManager] C:\Program Files\Common Files\AOL\1282415149\EE\AOLHostManager.exe (America Online, Inc.)
O4 - HKLM..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\hpwuschd2.exe (Hewlett-Packard)
O4 - HKLM..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\hpztsb10.exe (HP)
O4 - HKLM..\Run: [ISUSPM] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
O4 - HKLM..\Run: [Microsoft Default Manager] C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe (Microsoft Corporation)
O4 - HKLM..\Run: [MSN Toolbar] C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\mswinext.exe (Microsoft Corp.)
O4 - HKLM..\Run: [UfSeAgnt.exe] C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe ()
O4 - HKLM..\Run: [UserFaultCheck] File not found
O4 - HKCU..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe (SlySoft, Inc.)
O4 - HKCU..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKLM\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKLM\..Trusted Domains: musicmatch.com ([online] https in Trusted sites)
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02}
http://housecall60.trendmicro.com/housecall/xscan60.cab (HouseCall Control)
O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F}
http://musicstore.connect.com/XSL/mb_us/ht…ALStreaming.cab (MALPlaybackCtrl Class)
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} http://upload.facebook.com/controls/Facebo…otoUploader.cab (Facebook Photo Uploader Control)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftupdat…b?1161185511046 (MUWebControl Class)
O16 - DPF: {74C861A1-D548-4916-BC8A-FDE92EDFF62C} http://mediaplayer.walmart.com/installer/install.cab (Reg Error: Key error.)
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} http://a840.g.akamai.net/7/840/537/2004061…all/xscan53.cab (HouseCall Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flash…t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {95D88B35-A521-472B-A182-BB1A98356421} http://asp.mathxl.com/books/_Players/PearsonInstallAsst2.cab (Pearson Installation Assistant 2)
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} http://www.pandasoftware.com/activescan/as5free/asinst.cab (ActiveScan Installer Class)
O16 - DPF: {9FC5238F-12C4-454F-B1B5-74599A21DE47} http://community.webshots.com/html/WSPhotoUploader.CAB (Webshots Photo Uploader)
O16 - DPF: {B3E32D88-8E7F-468F-B0E2-3A300FD4A82C}
http://myitlab.pearsoned.com/Pegasus/Modul…ces/ax/stub.cab (Enlite 2.x Simulation Engine Installer)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/get/flash…ent/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B}
https://my.che.org/dana-cached/setup/JuniperSetupSP1.cab (JuniperSetupSP1 Control)
O16 - DPF: {E6D23284-0E9B-417D-A782-03E4487FC947} http://asp.mathxl.com/books/_Players/MathPlayer.cab (Pearson MathXL Player)
O16 - DPF: {FA945BB6-9D37-43FC-9B2A-AF09F56CBBF0}
http://www.musicmatch.com/form/support/tec…tionControl.cab (moDiagCollectionActiveX Object)
O16 - DPF: vzTCPConfig
https://essentialsandextras.verizon.com/wha…vzTCPConfig.CAB (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 [removed]
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 () -
http://www.bestofbvi.com/images/jpgs/tara_kitchen.jpg
O24 - Desktop Components:1 (My Current Home Page) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Robin\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Robin\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/10 15:04:08 | 000,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINDOWS\SYSTEM32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\SYSTEM32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\TSSOFT32.ACM (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\IR32_32.DLL ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\IR32_32.DLL ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: wave - C:\WINDOWS\System32\SERWVDRV.DLL (Microsoft Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (16902053519425536)
========== Files/Folders - Created Within 90 Days ==========
[2010/08/30 23:28:55 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\Application Data\Auslogics
[2010/08/30 23:28:48 | 000,000,000 | —D | C] – C:\Program Files\Auslogics
[2010/08/30 12:58:23 | 000,038,224 | —- | C] (Malwarebytes Corporation) – C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/08/30 12:58:20 | 000,020,952 | —- | C] (Malwarebytes Corporation) – C:\WINDOWS\System32\drivers\mbam.sys
[2010/08/30 12:58:03 | 000,000,000 | —D | C] – C:\Program Files\Malwarebytes' Anti-Malware
[2010/08/27 10:12:58 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\KELLY SJU
[2010/08/25 21:04:55 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Trend Micro
[2010/08/25 21:01:40 | 000,661,808 | —- | C] (Trend Micro Inc.) – C:\WINDOWS\System32\UfWSC.cpl
[2010/08/25 21:01:38 | 001,322,680 | —- | C] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\vsapint.sys
[2010/08/25 21:01:38 | 000,339,984 | —- | C] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\TM_CFW.sys
[2010/08/25 21:01:38 | 000,230,928 | —- | C] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\tmxpflt.sys
[2010/08/25 21:01:38 | 000,089,872 | —- | C] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\tmtdi.sys
[2010/08/25 21:01:38 | 000,036,368 | —- | C] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\tmpreflt.sys
[2010/08/24 21:09:56 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\HIJACK THIS
[2010/08/24 21:04:03 | 000,388,608 | —- | C] (Trend Micro Inc.) – C:\Documents and Settings\Robin\Desktop\HijackThis.exe
[2010/08/24 12:58:52 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\log
[2010/08/21 14:25:44 | 000,000,000 | —D | C] – C:\Program Files\Common Files\aolshare
[2010/08/21 14:25:44 | 000,000,000 | —D | C] – C:\Program Files\America Online 9.0
[2010/08/14 09:19:33 | 000,000,000 | —D | C] – C:\5f3bf8ae46ceec4e6ecf8b0879218eac
[2010/08/13 09:52:47 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\Local Settings\Application Data\Threat Expert
[2010/08/13 08:45:57 | 000,000,000 | —D | C] – C:\691b12c6e90343b87d6d
[2010/07/22 07:37:29 | 000,108,480 | —- | C] (SlySoft, Inc.) – C:\WINDOWS\System32\drivers\AnyDVD.sys
[2010/06/24 14:07:19 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\FuneralHomeNarrative
[2010/06/23 20:41:00 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\Application Data\FreeBurner
[2010/06/22 14:29:14 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\AdvancePaymentAddendumtoRentalApplication
[2010/06/20 23:33:00 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\RUG CLEANING
[2010/06/18 08:32:52 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Sun
[2010/06/15 15:16:07 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\PopCap Games
[2010/06/14 01:26:26 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\Desktop\SELDOM USED
[2010/06/14 01:25:33 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\RECEIPTS
[2010/06/14 01:19:38 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\DECORATING IDEAS
[2010/06/14 01:12:15 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\PAINT ESTIMATES
[2010/06/14 01:05:44 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\GHOUL
[2010/06/14 00:38:22 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\DAD
[2010/06/14 00:18:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\WORD DOCUMENTS
[2010/06/13 23:57:47 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\TAXES
[2010/06/13 23:47:20 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\My Documents\PANASONIC MANUAL
[2010/06/04 11:01:09 | 000,000,000 | —D | C] – C:\Documents and Settings\Robin\Application Data\You've Got Pictures Screensaver
[2010/06/04 11:00:18 | 000,000,000 | —D | C] – C:\Program Files\Common Files\AolCoach
[2008/12/19 10:39:36 | 000,047,360 | —- | C] (VSO Software) – C:\Documents and Settings\Robin\Application Data\pcouffin.sys
[1 C:\Documents and Settings\Robin\My Documents\*.tmp files -> C:\Documents and Settings\Robin\My Documents\*.tmp -> ]
========== Files - Modified Within 90 Days ==========
[2010/08/31 08:31:04 | 000,000,884 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/08/31 08:26:03 | 000,002,206 | —- | M] () – C:\WINDOWS\System32\WPA.DBL
[2010/08/31 08:25:45 | 000,000,880 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/08/31 08:25:41 | 000,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2010/08/31 08:25:38 | 000,002,048 | –S- | M] () – C:\WINDOWS\BOOTSTAT.DAT
[2010/08/31 08:25:37 | 1063,407,616 | -HS- | M] () – C:\hiberfil.sys
[2010/08/31 00:10:01 | 000,000,978 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2590637280-3058154984-1643648205-1006UA.job
[2010/08/31 00:10:01 | 000,000,926 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2590637280-3058154984-1643648205-1006Core.job
[2010/08/30 23:48:47 | 000,000,778 | —- | M] () – C:\WINDOWS\WIN.INI
[2010/08/30 23:28:57 | 008,650,752 | -H– | M] () – C:\Documents and Settings\Robin\ntuser.dat
[2010/08/30 23:28:50 | 000,000,801 | —- | M] () – C:\Documents and Settings\Robin\Desktop\Auslogics Disk Defrag.lnk
[2010/08/30 23:22:51 | 000,000,178 | -HS- | M] () – C:\Documents and Settings\Robin\NTUSER.INI
[2010/08/30 23:13:29 | 002,660,594 | -H– | M] () – C:\Documents and Settings\Robin\Local Settings\Application Data\IconCache.db
[2010/08/30 22:07:32 | 000,000,036 | —- | M] () – C:\WINDOWS\popcinfot.dat
[2010/08/30 12:58:26 | 000,000,714 | —- | M] () – C:\Documents and Settings\Robin\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk
[2010/08/30 12:58:26 | 000,000,696 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/08/29 02:15:00 | 000,000,448 | —- | M] () – C:\WINDOWS\tasks\Driver Robot.job
[2010/08/27 08:57:14 | 000,040,992 | —- | M] () – C:\Documents and Settings\Robin\Application Data\wklnhst.dat
[2010/08/27 08:57:07 | 000,093,696 | —- | M] () – C:\Documents and Settings\Robin\My Documents\Washingtonpacking.doc
[2010/08/27 08:48:01 | 000,002,483 | —- | M] () – C:\Documents and Settings\Robin\Desktop\Microsoft Word.lnk
[2010/08/27 00:24:11 | 000,000,116 | —- | M] () – C:\WINDOWS\NeroDigital.ini
[2010/08/26 16:03:01 | 000,000,284 | —- | M] () – C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/08/25 21:05:59 | 000,001,703 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Trend Micro Internet Security.lnk
[2010/08/25 21:01:40 | 000,661,808 | —- | M] (Trend Micro Inc.) – C:\WINDOWS\System32\UfWSC.cpl
[2010/08/25 21:01:38 | 000,339,984 | —- | M] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\TM_CFW.sys
[2010/08/25 21:01:38 | 000,158,224 | —- | M] () – C:\WINDOWS\System32\drivers\tmcomm.sys
[2010/08/25 21:01:38 | 000,089,872 | —- | M] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\tmtdi.sys
[2010/08/25 21:01:38 | 000,059,920 | —- | M] () – C:\WINDOWS\System32\drivers\tmactmon.sys
[2010/08/25 21:01:38 | 000,050,704 | —- | M] () – C:\WINDOWS\System32\drivers\tmevtmgr.sys
[2010/08/25 19:17:37 | 000,084,480 | —- | M] () – C:\Documents and Settings\Robin\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/08/25 14:23:48 | 005,267,114 | —- | M] () – C:\Documents and Settings\Robin\Desktop\20100825142337535100193.zip
[2010/08/24 21:04:06 | 000,388,608 | —- | M] (Trend Micro Inc.) – C:\Documents and Settings\Robin\Desktop\HijackThis.exe
[2010/08/24 14:04:52 | 000,027,771 | —- | M] () – C:\Documents and Settings\Robin\My Documents\license.rtf
[2010/08/23 23:19:53 | 000,631,428 | —- | M] () – C:\WINDOWS\System32\drivers\ETC\hosts
[2010/08/21 14:27:43 | 000,000,715 | —- | M] () – C:\WINDOWS\aolback.exe.lnk
[2010/08/21 14:27:43 | 000,000,689 | —- | M] () – C:\Documents and Settings\All Users\Desktop\America Online.lnk
[2010/08/21 14:27:43 | 000,000,669 | —- | M] () – C:\Documents and Settings\Robin\Application Data\Microsoft\Internet Explorer\Quick Launch\America Online 9.0.lnk
[2010/08/21 12:57:44 | 000,000,008 | —- | M] () – C:\WINDOWS\msoffice.ini
[2010/08/21 09:42:58 | 000,000,754 | —- | M] () – C:\Documents and Settings\All Users\Desktop\AnyDVD.lnk
[2010/08/17 09:21:12 | 000,631,369 | —- | M] () – C:\WINDOWS\System32\drivers\ETC\hosts.bak
[2010/08/15 12:43:37 | 000,558,058 | —- | M] () – C:\WINDOWS\System32\PerfStringBackup.INI
[2010/08/15 12:43:37 | 000,479,874 | —- | M] () – C:\WINDOWS\System32\PERFH009.DAT
[2010/08/15 12:43:37 | 000,088,560 | —- | M] () – C:\WINDOWS\System32\PERFC009.DAT
[2010/08/15 11:43:23 | 000,001,374 | —- | M] () – C:\WINDOWS\imsins.BAK
[2010/08/13 08:46:54 | 000,275,760 | —- | M] () – C:\WINDOWS\System32\FNTCACHE.DAT
[2010/08/05 11:05:47 | 000,054,660 | -H– | M] () – C:\WINDOWS\System32\mlfcache.dat
[2010/08/05 10:57:24 | 000,002,137 | —- | M] () – C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2010/08/01 11:18:29 | 000,058,368 | —- | M] () – C:\Documents and Settings\Robin\My Documents\2010 Nightmare.doc
[2010/08/01 00:17:01 | 000,000,116 | -HS- | M] () – C:\Documents and Settings\All Users\Application Data\.zreglib
[2010/07/22 07:37:29 | 000,108,480 | —- | M] (SlySoft, Inc.) – C:\WINDOWS\System32\drivers\AnyDVD.sys
[2010/06/26 06:01:07 | 000,155,914 | —- | M] () – C:\Documents and Settings\Robin\My Documents\ResidentialLease.pdf
[2010/06/23 21:21:58 | 000,000,493 | —- | M] () – C:\Documents and Settings\Robin\My Documents\Data_100623_2121.pxj
[2010/06/23 20:41:06 | 000,000,768 | —- | M] () – C:\Documents and Settings\Robin\Desktop\Free Easy Burner.lnk
[2010/06/22 14:29:13 | 000,186,886 | —- | M] () – C:\Documents and Settings\Robin\My Documents\AdvancePaymentAddendumtoRentalApplication.zip
[2010/06/15 23:00:33 | 000,000,194 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Play More Great Games!.url
[2010/06/15 15:13:50 | 000,000,913 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Zuma's Revenge!.lnk
[2010/06/10 08:06:17 | 000,002,262 | —- | M] () – C:\Documents and Settings\Robin\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/06/09 12:57:38 | 000,001,041 | —- | M] () – C:\Documents and Settings\Robin\Desktop\CameraWindow.lnk
[2010/06/04 10:51:57 | 000,000,024 | —- | M] () – C:\WINDOWS\atid.ini
[1 C:\Documents and Settings\Robin\My Documents\*.tmp files -> C:\Documents and Settings\Robin\My Documents\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/08/30 23:28:50 | 000,000,801 | —- | C] () – C:\Documents and Settings\Robin\Desktop\Auslogics Disk Defrag.lnk
[2010/08/30 23:23:33 | 1063,407,616 | -HS- | C] () – C:\hiberfil.sys
[2010/08/30 12:58:26 | 000,000,714 | —- | C] () – C:\Documents and Settings\Robin\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk
[2010/08/30 12:58:26 | 000,000,696 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/08/27 08:57:07 | 000,093,696 | —- | C] () – C:\Documents and Settings\Robin\My Documents\Washingtonpacking.doc
[2010/08/25 21:06:28 | 000,158,224 | —- | C] () – C:\WINDOWS\System32\drivers\tmcomm.sys
[2010/08/25 21:06:28 | 000,059,920 | —- | C] () – C:\WINDOWS\System32\drivers\tmactmon.sys
[2010/08/25 21:06:28 | 000,050,704 | —- | C] () – C:\WINDOWS\System32\drivers\tmevtmgr.sys
[2010/08/25 21:05:59 | 000,001,703 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Trend Micro Internet Security.lnk
[2010/08/25 14:31:30 | 005,267,114 | —- | C] () – C:\Documents and Settings\Robin\Desktop\20100825142337535100193.zip
[2010/08/24 14:08:18 | 000,027,771 | —- | C] () – C:\Documents and Settings\Robin\My Documents\license.rtf
[2010/08/21 14:27:43 | 000,000,689 | —- | C] () – C:\Documents and Settings\All Users\Desktop\America Online.lnk
[2010/08/21 14:27:43 | 000,000,669 | —- | C] () – C:\Documents and Settings\Robin\Application Data\Microsoft\Internet Explorer\Quick Launch\America Online 9.0.lnk
[2010/08/05 11:05:47 | 000,054,660 | -H– | C] () – C:\WINDOWS\System32\mlfcache.dat
[2010/08/01 11:18:29 | 000,058,368 | —- | C] () – C:\Documents and Settings\Robin\My Documents\2010 Nightmare.doc
[2010/06/26 06:01:07 | 000,155,914 | —- | C] () – C:\Documents and Settings\Robin\My Documents\ResidentialLease.pdf
[2010/06/23 21:21:58 | 000,000,493 | —- | C] () – C:\Documents and Settings\Robin\My Documents\Data_100623_2121.pxj
[2010/06/23 20:41:06 | 000,000,768 | —- | C] () – C:\Documents and Settings\Robin\Desktop\Free Easy Burner.lnk
[2010/06/22 14:29:13 | 000,186,886 | —- | C] () – C:\Documents and Settings\Robin\My Documents\AdvancePaymentAddendumtoRentalApplication.zip
[2010/06/15 15:13:50 | 000,000,913 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Zuma's Revenge!.lnk
[2010/06/15 15:13:50 | 000,000,194 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Play More Great Games!.url
[2010/06/09 12:57:38 | 000,001,041 | —- | C] () – C:\Documents and Settings\Robin\Desktop\CameraWindow.lnk
[2010/06/04 09:56:23 | 000,000,008 | —- | C] () – C:\WINDOWS\msoffice.ini
[2010/05/10 21:41:32 | 000,000,043 | —- | C] () – C:\WINDOWS\hpfccopy.INI
[2010/04/08 16:54:49 | 000,000,116 | —- | C] () – C:\Documents and Settings\All Users\Application Data\Microsoft.SqlServer.Compact.351.32.bc
[2009/05/30 10:43:39 | 000,000,000 | —- | C] () – C:\WINDOWS\EIJ09.INI
[2009/05/10 15:42:50 | 000,000,116 | —- | C] () – C:\WINDOWS\NeroDigital.ini
[2009/05/08 15:52:15 | 000,044,544 | —- | C] () – C:\WINDOWS\System32\GIF89.DLL
[2009/05/08 15:52:13 | 000,484,352 | —- | C] () – C:\WINDOWS\System32\lame_enc.dll
[2008/12/19 10:39:46 | 000,000,014 | —- | C] () – C:\WINDOWS\System32\systeminfo3.dll
[2008/12/19 10:39:43 | 000,000,034 | —- | C] () – C:\Documents and Settings\Robin\Application Data\pcouffin.log
[2008/12/19 10:39:36 | 000,087,608 | —- | C] () – C:\Documents and Settings\Robin\Application Data\inst.exe
[2008/12/19 10:39:36 | 000,007,887 | —- | C] () – C:\Documents and Settings\Robin\Application Data\pcouffin.cat
[2008/12/19 10:39:36 | 000,001,144 | —- | C] () – C:\Documents and Settings\Robin\Application Data\pcouffin.inf
[2008/04/17 10:07:50 | 000,000,622 | —- | C] () – C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2007/04/11 04:06:32 | 000,557,056 | —- | C] () – C:\WINDOWS\System32\hpgtg400.dll
[2007/03/26 12:55:26 | 000,000,116 | -HS- | C] () – C:\Documents and Settings\All Users\Application Data\.zreglib
[2007/03/21 18:45:22 | 000,000,203 | —- | C] () – C:\WINDOWS\QTW.INI
[2007/03/05 16:18:25 | 000,000,004 | -H– | C] () – C:\WINDOWS\uccspecb.sys
[2006/12/19 16:37:38 | 000,000,048 | —- | C] () – C:\WINDOWS\pccillin.ini
[2006/06/28 03:12:58 | 000,000,188 | —- | C] () – C:\WINDOWS\MSREGUSR.INI
[2006/06/27 22:39:19 | 000,046,592 | —- | C] () – C:\WINDOWS\System32\shellses.dll
[2006/01/20 10:33:09 | 000,000,139 | —- | C] () – C:\WINDOWS\KPCMS.INI
[2006/01/20 10:33:05 | 000,210,944 | —- | C] () – C:\WINDOWS\System32\MSVCRT10.DLL
[2006/01/17 11:37:28 | 000,000,000 | —- | C] () – C:\WINDOWS\webica.ini
[2006/01/14 22:47:52 | 000,000,000 | —- | C] () – C:\WINDOWS\OpPrintServer.INI
[2005/12/16 22:34:21 | 000,084,480 | —- | C] () – C:\Documents and Settings\Robin\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2005/12/16 02:19:32 | 000,001,755 | —- | C] () – C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2005/12/13 20:05:04 | 000,000,101 | —- | C] () – C:\WINDOWS\upst.ini
[2005/12/13 20:05:04 | 000,000,024 | —- | C] () – C:\WINDOWS\atid.ini
[2005/10/01 15:57:19 | 000,071,749 | —- | C] () – C:\WINDOWS\hcextoutput.dll
[2005/10/01 15:57:19 | 000,000,679 | —- | C] () – C:\WINDOWS\TSC.ini
[2005/10/01 15:57:01 | 000,000,170 | —- | C] () – C:\WINDOWS\GetServer.ini
[2005/05/03 12:44:44 | 000,025,157 | —- | C] () – C:\WINDOWS\RMAgentOutput.dll
[2005/05/03 12:43:44 | 000,126,976 | —- | C] () – C:\WINDOWS\dllTSCLIBMT.dll
[2005/05/01 00:20:09 | 000,000,000 | —- | C] () – C:\WINDOWS\iPlayer.INI
[2005/04/26 12:25:28 | 000,001,967 | —- | C] () – C:\WINDOWS\cdPlayer.ini
[2005/04/24 14:28:56 | 000,040,992 | —- | C] () – C:\Documents and Settings\Robin\Application Data\wklnhst.dat
[2005/04/23 20:02:52 | 000,011,776 | —- | C] () – C:\WINDOWS\System32\ZPORT4AS.dll
[2005/04/13 03:49:13 | 000,007,250 | —- | C] () – C:\WINDOWS\hpdj3840.ini
[2005/04/13 03:48:37 | 000,000,414 | —- | C] () – C:\WINDOWS\hpbvspst.ini
[2005/03/29 09:21:25 | 000,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2005/03/29 09:19:15 | 000,000,223 | —- | C] () – C:\WINDOWS\wininit.ini
[2005/03/29 09:13:03 | 000,000,376 | —- | C] () – C:\WINDOWS\ODBC.INI
[2005/03/29 08:38:42 | 000,000,370 | —- | C] () – C:\WINDOWS\System32\OEMINFO.INI
[2005/01/28 10:08:34 | 000,000,000 | —- | C] () – C:\WINDOWS\System32\px.ini
[2004/08/10 15:13:12 | 000,000,780 | —- | C] () – C:\WINDOWS\ORUN32.INI
[2004/08/04 07:00:00 | 000,001,793 | —- | C] () – C:\WINDOWS\System32\FXSPERF.INI
[2002/11/01 16:17:50 | 000,000,256 | —- | C] () – C:\WINDOWS\aucfg.ini
[2002/07/04 15:05:34 | 000,000,269 | —- | C] () – C:\WINDOWS\tmupdate.ini
[2001/12/14 13:34:46 | 000,164,864 | —- | C] () – C:\WINDOWS\patchw32.dll
[1999/07/23 14:46:48 | 000,000,116 | —- | C] () – C:\WINDOWS\AuHCcup1.ini
[1999/07/23 11:53:20 | 000,129,536 | —- | C] () – C:\WINDOWS\AuHCcup1.dll
[1980/01/01 02:00:00 | 000,012,288 | —- | C] () – C:\WINDOWS\System32\e100bmsg.dll
========== LOP Check ==========
[2009/04/02 09:39:46 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Carbonite
[2008/12/19 10:39:29 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\DVDXStudio
[2007/03/26 13:03:31 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Elaborate Bytes
[2008/09/29 17:44:38 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\myitlab
[2007/04/09 20:03:15 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\PopCap
[2010/06/15 15:16:07 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\PopCap Games
[2007/03/26 12:56:42 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\SlySoft
[2010/08/25 20:37:07 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\TEMP
[2010/04/08 16:40:07 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\The Neat Company
[2009/09/23 20:28:26 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Viewpoint
[2010/02/25 17:42:16 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/04/09 16:14:10 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2007/02/28 23:04:59 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Aim
[2010/08/30 23:28:55 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Auslogics
[2009/04/10 02:06:03 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Desktopicon
[2009/04/09 23:50:43 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Foxit
[2010/06/23 20:56:47 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\FreeBurner
[2010/06/09 12:46:22 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Image Zone Express
[2007/07/26 14:45:05 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Juniper Networks
[2005/04/22 10:54:55 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Leadertech
[2009/07/15 17:19:15 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\MP3Rocket
[2005/04/26 11:13:55 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Musicmatch
[2010/04/08 16:54:46 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Neat
[2005/05/20 17:43:52 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Netscape
[2010/04/08 16:54:14 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Nuance
[2009/01/23 01:28:59 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Preclick
[2008/08/30 12:29:35 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Printer Info Cache
[2007/03/26 12:57:44 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\SlySoft
[2009/10/21 09:47:21 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Uniblue
[2009/04/10 01:37:52 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Viewpoint
[2008/12/19 10:39:43 | 000,000,000 | —D | M] – C:\Documents and Settings\Robin\Application Data\Vso
[2010/08/29 02:15:00 | 000,000,448 | —- | M] () – C:\WINDOWS\Tasks\Driver Robot.job
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2005/12/05 19:33:19 | 000,010,920 | —- | M] () – C:\aolconnfix.exe
[2005/12/05 19:33:19 | 000,001,039 | —- | M] () – C:\aolconnfix.txt
[2004/08/10 15:04:08 | 000,000,000 | —- | M] () – C:\AUTOEXEC.BAT
[2009/10/21 11:10:48 | 000,000,211 | RHS- | M] () – C:\BOOT.INI
[2004/08/10 15:04:08 | 000,000,000 | —- | M] () – C:\CONFIG.SYS
[2005/03/29 08:45:34 | 000,005,432 | RH– | M] () – C:\DELL.SDR
[2010/08/31 08:25:37 | 1063,407,616 | -HS- | M] () – C:\hiberfil.sys
[2010/08/31 08:45:45 | 001,727,642 | —- | M] () – C:\hpfr3840.log
[2004/08/10 15:14:36 | 000,004,128 | —- | M] () – C:\INFCACHE.1
[2004/08/10 15:04:08 | 000,000,000 | -H– | M] () – C:\IO.SYS
[2009/04/09 16:47:39 | 000,015,113 | —- | M] () – C:\JavaRa.log
[2004/08/10 15:04:08 | 000,000,000 | -H– | M] () – C:\MSDOS.SYS
[2004/08/04 07:00:00 | 000,047,564 | RHS- | M] () – C:\NTDETECT.COM
[2008/09/16 10:19:55 | 000,250,048 | RHS- | M] () – C:\NTLDR
[2010/08/31 08:25:36 | 1598,029,824 | -HS- | M] () – C:\pagefile.sys
[2005/10/07 17:56:17 | 000,002,191 | —- | M] () – C:\Rescued document.txt
[2009/05/30 10:36:35 | 000,255,548 | —- | M] () – C:\SearchParty.log
[2005/10/31 11:56:00 | 000,700,416 | —- | M] (LimeWire) – C:\StubInstaller.exe
[2005/03/29 09:17:13 | 000,000,087 | —- | M] () – C:\SystemInfo.ini
< %systemroot%\Fonts\*.com >
[2006/04/18 15:39:28 | 000,026,040 | —- | M] () – C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2006/06/29 14:53:56 | 000,026,489 | —- | M] () – C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006/04/18 15:39:28 | 000,029,779 | —- | M] () – C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006/06/29 14:58:52 | 000,030,808 | —- | M] () – C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2004/08/10 15:03:42 | 000,000,067 | -HS- | M] () – C:\WINDOWS\Fonts\DESKTOP.INI
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2008/07/06 08:06:10 | 000,089,088 | —- | M] (Microsoft Corporation) – C:\WINDOWS\SYSTEM32\SPOOL\PRTPROCS\W32X86\filterpipelineprintproc.dll
[2008/07/06 06:50:03 | 000,597,504 | —- | M] (Microsoft Corporation) – C:\WINDOWS\SYSTEM32\SPOOL\PRTPROCS\W32X86\printfilterpipelinesvc.exe
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2004/08/10 14:56:48 | 000,094,208 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.SAV
[2004/08/10 14:56:46 | 000,634,880 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.SAV
[2004/08/10 14:56:46 | 000,872,448 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.SAV
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
[2008/09/16 10:27:04 | 000,000,272 | -HS- | M] () – C:\Documents and Settings\All Users\Start Menu\DESKTOP.INI
[2004/06/23 13:40:18 | 000,027,648 | —- | M] () – C:\Documents and Settings\All Users\Start Menu\NetZero - First Month Free!.exe
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2005/04/13 03:44:16 | 000,000,119 | -HS- | M] () – C:\Documents and Settings\Robin\Application Data\Microsoft\Internet Explorer\Quick Launch\DESKTOP.INI
[2009/04/09 23:50:49 | 000,000,218 | —- | M] () – C:\Documents and Settings\Robin\Application Data\Microsoft\Internet Explorer\Quick Launch\eBay.url
[2004/08/10 15:08:38 | 000,000,079 | —- | M] () – C:\Documents and Settings\Robin\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
< %USERPROFILE%\Desktop\*.exe >
[2010/08/24 21:04:06 | 000,388,608 | —- | M] (Trend Micro Inc.) – C:\Documents and Settings\Robin\Desktop\HijackThis.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-08-15 16:44:36
========== Alternate Data Streams ==========
@Alternate Data Stream - 24 bytes -> C:\WINDOWS:1F81A23455929225
@Alternate Data Stream - 159 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
@Alternate Data Stream - 132 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:AC6124CA
@Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A8ADE5D8
< End of report >
OTL Extras logfile created on: 8/31/2010 8:48:50 AM - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Documents and Settings\Robin\My Documents\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,014.00 Mb Total Physical Memory | 446.00 Mb Available Physical Memory | 44.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 144.72 Gb Total Space | 111.33 Gb Free Space | 76.92% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: UPSTAIRS
Current User Name: Robin
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Minimal
Quick Scan
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = htmlfile] – Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
exefile [open] – "%1" %*
htmlfile – "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] – "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] – "%1" /S
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe" = C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe:*:Enabled:AOL – (America Online)
"C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" = C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL – (America Online)
"C:\Program Files\America Online 9.0a\waol.exe" = C:\Program Files\America Online 9.0a\waol.exe:*:Enabled:America Online 9.0a – File not found
"C:\Program Files\America Online 9.0\waol.exe" = C:\Program Files\America Online 9.0\waol.exe:*:Enabled:America Online 9.0 – (America Online, Inc.)
"C:\Program Files\AIM\aim.exe" = C:\Program Files\AIM\aim.exe:*:Enabled:AOL Instant Messenger – File not found
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe" = C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe:*:Enabled:AOL – (America Online)
"C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" = C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL – (America Online)
"C:\Program Files\America Online 9.0a\waol.exe" = C:\Program Files\America Online 9.0a\waol.exe:*:Enabled:America Online 9.0a – File not found
"C:\Program Files\America Online 9.0\waol.exe" = C:\Program Files\America Online 9.0\waol.exe:*:Enabled:America Online 9.0 – (America Online, Inc.)
"C:\Program Files\Real\RealPlayer\realplay.exe" = C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer – (RealNetworks, Inc.)
"D:\Setup.exe" = D:\Setup.exe:*:Enabled:Setup – File not found
"C:\Program Files\Common Files\AOL\Loader\aolload.exe" = C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Application Loader – (America Online, Inc.)
"C:\Program Files\America Online 9.0b\waol.exe" = C:\Program Files\America Online 9.0b\waol.exe:*:Enabled:AOL – File not found
"C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe" = C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe:*:Enabled:AOLTsMon – (America Online, Inc)
"C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe" = C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe:*:Enabled:AOLTopSpeed – (America Online Inc)
"C:\Program Files\Common Files\AOL\1134518866\EE\AOLServiceHost.exe" = C:\Program Files\Common Files\AOL\1134518866\EE\AOLServiceHost.exe:*:Enabled:AOL – File not found
"C:\Program Files\Common Files\AOL\System Information\sinf.exe" = C:\Program Files\Common Files\AOL\System Information\sinf.exe:*:Enabled:AOL – (America Online Inc.)
"C:\Program Files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe" = C:\Program Files\Common Files\AOL\AOL Spyware Protection\AOLSP Scheduler.exe:*:Enabled:AOL – File not found
"C:\Program Files\Common Files\AOL\AOL Spyware Protection\asp.exe" = C:\Program Files\Common Files\AOL\AOL Spyware Protection\asp.exe:*:Enabled:AOL – File not found
"C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe" = C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe:*:Enabled:AOL – (Gteko Ltd.)
"C:\Program Files\Windows Media Player\wmplayer.exe" = C:\Program Files\Windows Media Player\wmplayer.exe:*:Enabled:wmplayer – (Microsoft Corporation)
"C:\StubInstaller.exe" = C:\StubInstaller.exe:*:Disabled:LimeWire swarmed installer – (LimeWire)
"C:\Program Files\LimeWire\LimeWire.exe" = C:\Program Files\LimeWire\LimeWire.exe:*:Disabled:LimeWire – ()
"C:\Program Files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe" = C:\Program Files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe:*:Enabled:AOL TopSpeed – File not found
"C:\Program Files\AIM\aim.exe" = C:\Program Files\AIM\aim.exe:*:Enabled:AOL Instant Messenger – File not found
"C:\Program Files\Common Files\AOL\1134518866\EE\aolsoftware.exe" = C:\Program Files\Common Files\AOL\1134518866\EE\aolsoftware.exe:*:Enabled:AOL Services – File not found
"C:\Program Files\Java\jre1.5.0_11\bin\javaw.exe" = C:\Program Files\Java\jre1.5.0_11\bin\javaw.exe:*:Enabled:Java™ 2 Platform Standard Edition binary – File not found
"C:\Program Files\Java\jre1.6.0_01\bin\javaw.exe" = C:\Program Files\Java\jre1.6.0_01\bin\javaw.exe:*:Enabled:Java™ Platform SE binary – (Sun Microsystems, Inc.)
"C:\Program Files\Java\jre6\bin\javaw.exe" = C:\Program Files\Java\jre6\bin\javaw.exe:*:Disabled:Java™ Platform SE binary – (Sun Microsystems, Inc.)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes – (Apple Inc.)
"C:\Program Files\Common Files\AOL\1275663573\EE\AOLServiceHost.exe" = C:\Program Files\Common Files\AOL\1275663573\EE\AOLServiceHost.exe:*:Enabled:AOL – File not found
"C:\Program Files\Common Files\AOL\1282415149\EE\AOLServiceHost.exe" = C:\Program Files\Common Files\AOL\1282415149\EE\AOLServiceHost.exe:*:Enabled:AOL – (America Online, Inc.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00020409-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Standard
"{001E7FB6-BB6B-4ED0-BEDC-B5404ED96D4E}" = DocProc
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{02E07811-C652-4BAF-B772-561FE2D9BDD2}" = ebgcRes
"{03CDDD00-BD57-4326-9480-4C74449AF597}" = PhotoStitch
"{0456ebd7-5f67-4ab6-852e-63781e3f389c}" = Macromedia Flash Player
"{05410044-64A6-4248-A026-9745C1E9E159}" = Microsoft Encarta Encyclopedia Standard 2005
"{06E6E30D-B498-442F-A943-07DE41D7F785}" = Microsoft Search Enhancement Pack
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = MSN Toolbar
"{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Windows Live ID Sign-in Assistant
"{09DA4F91-2A09-4232-AB8C-6BC740096DE3}" = Sonic Update Manager
"{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}" = Microsoft Plus! Photo Story 2 LE
"{11A53AF3-CAA5-4C29-887E-CCA7CEE2689B}" = Neat Mobile Scanner Driver
"{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}" = Sonic DLA
"{121634B0-2F4B-11D3-ADA3-00C04F52DD52}" = Windows Installer Clean Up
"{14374619-0900-4056-BA06-C87C900AF9E6}" = QuickBooks Simple Start Special Edition
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{17334AAF-C9E7-483B-9F45-E3FCAF07FFA7}" = Intel® PROSet for Wired Connections
"{1DB2FBA5-D57A-42A7-8E87-5B3EEBED8283}" = Wal-Mart Music Downloads Store
"{21657574-BD54-48A2-9450-EB03B2C7FC29}" = Sonic MyDVD
"{2656D0AB-9EA4-4C58-A117-635F3CED8B93}" = Microsoft UI Engine
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java™ 6 Update 20
"{28E7B64D-150F-4A9E-B7A3-5A6AC8C2F822}" = ebgcSDK
"{29FA38B4-0AE4-4D0D-8A51-6165BB990BB0}" = WebReg
"{2D87E961-577B-492B-AD54-1368680FB9A7}" = Bing Maps 3D
"{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}" = Logitech SetPoint
"{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}" = Scan
"{33BB4982-DC52-4886-A03B-F4C5C80BEE89}" = Windows Media Player 10
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{352310C3-E46B-42D3-8F32-54721FDD72D9}" = NetZeroInstallers
"{35BDEFF1-A610-4956-A00D-15453C116395}" = Internet Explorer Default Page
"{36FDBE6E-6684-462B-AE98-9A39A1B200CC}" = HP Product Assistant
"{39B1BD87-561E-4762-AED9-7C5213B06C24}" = ebgcInfra
"{3D047C15-C859-45F7-81CE-F2681778069B}" = iPod for Windows 2006-01-10
"{3F262ADC-5AD2-48E5-A586-44315E04A9E2}" = Microsoft Picture It! Library 10
"{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{416D80BA-6F6D-4672-B7CF-F54DA2F80B44}" = Microsoft Works
"{42756145-9997-4D28-809B-8756BFD00106}" = Microsoft Picture It! Premium 10
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B9F45E8-E3CE-40B4-9463-80A9B3481DEF}" = Banctec Service Agreement
"{4E91EE21-B0C1-4B80-A2CF-80CED14AE8CB}" = Microsoft XML Parser SDK
"{57F5920A-9897-4830-BD4A-BE85DA9734FF}" = Neat Mobile Scanner 2008 Driver
"{58155B30-6BE9-4268-A059-149629149C63}" = Neat ADF Scanner Driver
"{5905F42D-3F5F-4916-ADA6-94A3646AEE76}" = Dell Driver Reset Tool
"{61BEA823-ECAF-49F1-8378-A59B3B8AD247}" = Microsoft Default Manager
"{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}" = Windows Genuine Advantage v1.3.0254.0
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{67E4EE98-59F4-4210-89A6-A20AF5BEC689}" = Microsoft Streets and Trips 2005
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD 5.3
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6DE13770-01B7-4366-8DA6-48237793F445}" = VoiceOver Kit
"{6E179C77-7335-458D-9537-4F4EAC0181ED}" = Photo Click
"{6E45BA47-383C-4C1E-8ED0-0D4845C293D7}" = Microsoft Plus! Digital Media Edition Installer
"{6EDB3FC5-8B7C-422A-B4FB-1D919F44F2C0}" = Neat Mobile Scanner (Silver) Driver
"{718D791F-F4E8-4aa7-98A6-15FDED17BDD0}" = Trend Micro Internet Security
"{728278A1-0BB7-45E4-AC5E-91D7C0FD1EDE}" = EarthLink setup files
"{730837D4-FF5E-48DB-BA49-33E732DFF0B3}" = PanoStandAlone
"{74F7662C-B1DB-489E-A8AC-07A06B24978B}" = Dell System Restore
"{787D1A33-A97B-4245-87C0-7174609A540C}" = HP Update
"{78D944D7-A97B-4004-AB0A-B5AD06839940}" = My Way Search Assistant
"{7A3F0566-5E05-4919-9C98-456F6B5CF831}" = Get High Speed Internet!
"{7BD1EAE4-2E08-4087-8600-44B0ACB0C887}" = NeatWorks Core Files
"{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}" = DellSupport
"{7F142D56-3326-11D5-B229-002078017FBF}" = Modem Helper
"{81063354-9060-42B2-A000-1EBE96778AA9}" = iTunes
"{8338BA06-E527-491B-9400-F51708FEE695}" = iPod for Windows 2005-11-17
"{85D3CC30-8859-481A-9654-FD9B74310BEF}" = Musicmatch® Jukebox
"{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel® Graphics Media Accelerator Driver
"{8E78345D-3715-4CDC-B447-63D3A69225FD}" = Southern Regional High School
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{901D1286-529B-48A9-8DDD-4A60CF9E9BF1}" = H&R; Block Tax Offer
"{911B0409-6000-11D3-8CFE-0050048383C9}" = Microsoft Word 2002
"{9541FED0-327F-4DF0-8B96-EF57EF622F19}" = Sonic RecordNow!
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9CB6D0EB-E6A7-4812-BDF1-0A9C05A2B481}" = HP Scanjet G4000 series 9.0
"{9D2B0322-44AE-460E-9283-4D2D7A9205AE}" = Trend Micro Internet Security
"{9F7FC79B-3059-4264-9450-39EB368E3225}" = Microsoft Digital Image Library 9 - Blocker
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A4A42670-82B9-4A58-8955-20271DBBF29F}" = Neat ADF Scanner 2008 Driver
"{A4D7B764-4140-11D4-88EB-0050DA3579C0}" = Nero - Burning Rom
"{A5812A15-3BCF-469A-B58C-61ACFC356F88}" = hpg4000
"{A5CC2A09-E9D3-49EC-923D-03874BBD4C2C}" = Windows Defender Signatures
"{A65F7CF8-6F76-40CE-B44D-D5A89D9881C7}" = MSN Toolbar Platform
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AC0EE5B0-A8FB-4D0A-AF03-2EDC518F841B}" = Dell Media Experience
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.4
"{AEA07F97-9088-497c-8821-0F36BD5DC251}" = HPProductAssistant
"{AF06CAE4-C134-44B1-B699-14FBDB63BD37}" = Dell Picture Studio v3.0
"{B1591C79-1C35-4E09-AA15-F7D6923AFB96}" = HP Deskjet 3840
"{BCD6CD1A-0DBE-412E-9F25-3B500D1E6BA1}" = SolutionCenter
"{BCE72AED-3332-4863-9567-C5DCB9052CA2}" = Netflix Movie Viewer
"{BEB03A1A-1EB6-48EB-9985-8B97315EE5C0}" = RemoteCapture 2.7.0
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C1704101-D142-42A4-83E5-F938F13DBD94}" = hpg4000QFolder
"{CB54ABA8-D67F-47AD-A76C-2631BADA9FE5}" = Microsoft Works Suite Add-in for Microsoft Word
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CEC0C2C2-921F-4EB8-8D7E-4F2F03ED02AA}" = ScannerCopy
"{D0E39A1D-0CEE-4D85-B4A2-E3BE990D075E}" = Destination Component
"{D78653C3-A8FF-415F-92E6-D774E634FF2D}" = Dell ResourceCD
"{DE1AF137-C455-494A-A817-EFE44BCCFDEE}" = Works Upgrade
"{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag
"{E13A66A4-8A37-451E-B4C5-E60BA0A777E3}" = Preclick PhotoBack Plug-in for HP
"{E2662C24-B31E-4349-A084-32EB76E8B760}" = BufferChm
"{E646DCF0-5A68-11D5-B229-002078017FBF}" = Digital Line Detect
"{EB21A812-671B-4D08-B974-2A347F0D8F70}" = HP Photosmart Essential
"{EF0DD8B7-471C-463B-A298-6066C2FABAF5}" = File Viewer Utility 1.2
"{F7B0939E-58DF-11DF-B3A6-005056806466}" = Google Earth
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"America Online us" = America Online (Choose which version to remove)
"AnyDVD" = AnyDVD
"AOL Connectivity Services" = AOL Connectivity Services
"AOL YGP Screensaver" = AOL You've Got Pictures Screensaver
"AolCoach2_en" = AOL Coach Version 2.0(Build:20041026.5 en)
"Burn My Files_is1" = Burn My Files
"CAL" = Canon Camera Access Library
"CameraWindowDC" = Canon Utilities CameraWindow DC
"CameraWindowDVC5" = Canon Utilities CameraWindow DC_DV 5 for ZoomBrowser EX
"CameraWindowDVC6" = Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
"CameraWindowLauncher" = Canon Utilities CameraWindow
"Canon MOV Decoder" = Canon MOV Decoder
"Canon MOV Encoder" = Canon MOV Encoder
"Carbonite Backup" = Carbonite
"CleanUp!" = CleanUp!
"CloneDVD2" = CloneDVD2
"CNXT_MODEM_PCI_VEN_14F1&DEV;_2F20&SUBSYS;_200F14F1" = Conexant D850 56K V.9x DFVc Modem
"Coupon Printer for Windows4.0" = Coupon Printer for Windows
"CSCLIB" = Canon Camera Support Core Library
"DeleteProdRunControl_US" = IBM ViaVoice Command and Control Runtime 5.3
"Dell Digital Jukebox Driver" = Dell Digital Jukebox Driver
"ERUNT_is1" = ERUNT 1.1j
"Foxit Reader" = Foxit Reader
"Free Easy Burner_is1" = Free Easy Burner V 4.0
"Free Mp3 Wma Converter_is1" = Free Mp3 Wma Converter V 1.81
"HP Deskjet 3840 Series_Driver" = HP Deskjet 3840 Series
"HP Imaging Device Functions" = HP Imaging Device Functions 9.0
"HP Solution Center & Imaging Support Tools" = HP Solution Center 9.0
"HPOCR" = HP OCR Software 9.0
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"InCD!UninstallKey" = InCD (Ahead Software)
"InstallShield_{03CDDD00-BD57-4326-9480-4C74449AF597}" = Canon Utilities PhotoStitch 3.1
"InstallShield_{3D047C15-C859-45F7-81CE-F2681778069B}" = iPod for Windows 2006-01-10
"InstallShield_{8338BA06-E527-491B-9400-F51708FEE695}" = iPod for Windows 2005-11-17
"InstallShield_{BEB03A1A-1EB6-48EB-9985-8B97315EE5C0}" = Canon Utilities RemoteCapture 2.7
"InstallShield_{EF0DD8B7-471C-463B-A298-6066C2FABAF5}" = Canon Utilities File Viewer Utility 1.2
"Jasc Paint Shop Pro Studio.01 , Dell Edition 1.0.1.1 Patch" = Jasc Paint Shop Pro Studio.01 , Dell Edition 1.0.1.1 Patch
"Juniper Network Connect 5.5.0" = Juniper Networks Network Connect 5.5.0
"LG USB Drivers" = LG USB Drivers
"Logical Journey of the Zoombinis" = Logical Journey of the Zoombinis
"MainApp.exe_is1" = CloneDVD 4.3.0.2
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MetaFrame Presentation Server Web Client for Win32" = MetaFrame Presentation Server Web Client for Win32
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Money2005b" = Microsoft Money 2005
"MovieEditTask" = Canon MovieEdit Task for ZoomBrowser EX
"Mozilla Firefox (3.5.11)" = Mozilla Firefox (3.5.11)
"MP3 Rocket" = MP3 Rocket
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSNINST" = MSN
"MyCamera" = Canon Utilities MyCamera
"MyCameraDC" = Canon Utilities MyCamera DC
"MyITLab ActiveX Installer_is1" = MyITLab ActiveX Installer 2.8.5.65535
"NeatWorks" = NeatWorks
"Netscape Browser" = Netscape Browser (remove only)
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NMPUninstallKey" = NeroMediaPlayer
"Panda ActiveScan" = Panda ActiveScan
"PetzPlayer" = PetzPlayer
"PhotoRecord" = Canon PhotoRecord
"PictureItPrem_v10" = Microsoft Picture It! Premium 10
"PROSet" = Intel® PRO Network Adapters and Drivers
"QuickLink Mobile Phonebook" = QuickLink Mobile Phonebook
"RealPlayer 6.0" = RealPlayer
"RemoteCaptureDC" = Canon Utilities RemoteCapture DC
"RemoteCaptureTask" = Canon Utilities RemoteCapture Task for ZoomBrowser EX
"Revo Uninstaller" = Revo Uninstaller 1.80
"StreetPlugin" = Learn2 Player (Uninstall Only)
"The American Girls Premiere" = The American Girls Premiere
"Unlocker" = Unlocker 1.8.6
"ViewpointMediaPlayer" = Viewpoint Media Player
"VV_Outloud_En_US" = IBM ViaVoice Outloud Runtime - US English
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Works2005Setup" = Microsoft Works 2005 Setup Launcher
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"X-Cleaner Freeware" = X-Cleaner Freeware
"ZoomBrowser EX" = Canon Utilities ZoomBrowser EX
"ZoomBrowser EX Memory Card Utility" = Canon ZoomBrowser EX Memory Card Utility
"Zuma Deluxe 1.0" = Zuma Deluxe 1.0
"Zuma's Revenge!" = Zuma's Revenge!
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"Juniper_Networks_Cache_Cleaner 5.5.0" = Juniper Networks Cache Cleaner 5.5.0
"Neoteris_Host_Checker" = Juniper Networks Host Checker
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 8/15/2010 1:43:28 PM | Computer Name = UPSTAIRS | Source = .NET Runtime Optimization Service | ID = 1101
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Failed to compile: System.Web.Extensions, Version=3.5.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35
. Error code = 0x80070020
Error - 8/17/2010 7:26:15 AM | Computer Name = UPSTAIRS | Source = Userenv | ID = 1508
Description = Windows was unable to load the registry. This is often caused by insufficient
memory or insufficient security rights. DETAIL - The process cannot access the
file because it is being used by another process. for C:\Documents and Settings\Robin\ntuser.dat
Error - 8/17/2010 7:26:47 AM | Computer Name = UPSTAIRS | Source = Userenv | ID = 1502
Description = Windows cannot load the locally stored profile. Possible causes of
this error include insufficient security rights or a corrupt local profile. If
this problem persists, contact your network administrator. DETAIL - The process
cannot access the file because it is being used by another process.
Error - 8/17/2010 7:26:47 AM | Computer Name = UPSTAIRS | Source = Userenv | ID = 1515
Description = Windows has backed up this user's profile. Windows will automatically
try to use the backed up profile the next time this user logs on.
Error - 8/17/2010 7:27:18 AM | Computer Name = UPSTAIRS | Source = Userenv | ID = 1511
Description = Windows cannot find the local profile and is logging you on with a
temporary profile. Changes you make to this profile will be lost when you log off.
Error - 8/24/2010 12:06:45 PM | Computer Name = UPSTAIRS | Source = Application Error | ID = 1000
Description = Faulting application pctsSvc.exe, version 7.0.0.105, faulting module
rtl100.bpl, version 11.0.2902.10471, fault address 0x0000ebe5.
Error - 8/24/2010 9:10:34 PM | Computer Name = UPSTAIRS | Source = Application Hang | ID = 1002
Description = Hanging application WINWORD.EXE, version 10.0.6864.0, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 8/24/2010 9:10:40 PM | Computer Name = UPSTAIRS | Source = Application Hang | ID = 1001
Description = Fault bucket 1989191588.
Error - 8/25/2010 5:14:02 PM | Computer Name = UPSTAIRS | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 8.0.6001.18702, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 8/25/2010 8:36:51 PM | Computer Name = UPSTAIRS | Source = pctsSvc.exe | ID = 0
Description =
[ System Events ]
Error - 8/31/2010 8:39:40 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842811
Description = Generate Activation Context failed for C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80U.DLL.
Reference
error message: The operation completed successfully. .
Error - 8/31/2010 8:39:40 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842784
Description = Dependent Assembly Microsoft.VC80.MFCLOC could not be found and Last
Error was The referenced assembly is not installed on your system.
Error - 8/31/2010 8:39:40 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly failed for Microsoft.VC80.MFCLOC. Reference
error message: The referenced assembly is not installed on your system. .
Error - 8/31/2010 8:39:40 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842811
Description = Generate Activation Context failed for C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80U.DLL.
Reference
error message: The operation completed successfully. .
Error - 8/31/2010 8:41:48 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842784
Description = Dependent Assembly Microsoft.VC80.MFCLOC could not be found and Last
Error was The referenced assembly is not installed on your system.
Error - 8/31/2010 8:41:48 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly failed for Microsoft.VC80.MFCLOC. Reference
error message: The referenced assembly is not installed on your system. .
Error - 8/31/2010 8:41:48 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842811
Description = Generate Activation Context failed for C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80U.DLL.
Reference
error message: The operation completed successfully. .
Error - 8/31/2010 8:41:49 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842784
Description = Dependent Assembly Microsoft.VC80.MFCLOC could not be found and Last
Error was The referenced assembly is not installed on your system.
Error - 8/31/2010 8:41:49 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly failed for Microsoft.VC80.MFCLOC. Reference
error message: The referenced assembly is not installed on your system. .
Error - 8/31/2010 8:41:49 AM | Computer Name = UPSTAIRS | Source = SideBySide | ID = 16842811
Description = Generate Activation Context failed for C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80U.DLL.
Reference
error message: The operation completed successfully. .
< End of report >
Thanks!!
