Here is OTL.Txt
OTL logfile created on: 03/10/2010 16:15:56 - Run 1
OTL by OldTimer - Version 3.2.14.1 Folder = C:\Documents and Settings\Daphne\Desktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.11)
Locale: 00001809 | Country: Ireland | Language: ENI | Date Format: dd/MM/yyyy
511.00 Mb Total Physical Memory | 262.00 Mb Available Physical Memory | 51.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 57.00% Paging File free
Paging file location(s): C:\pagefile.sys 768 3000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 111.72 Gb Total Space | 44.04 Gb Free Space | 39.42% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 61.29 Mb Total Space | 18.69 Mb Free Space | 30.49% Space Free | Partition Type: FAT
F: Drive not present or media not loaded
Drive G: | 465.76 Gb Total Space | 351.13 Gb Free Space | 75.39% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: SPEEDY
Current User Name: Daphne
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Minimal
Quick Scan
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Daphne\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgemcx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
PRC - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
PRC - C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.)
PRC - C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe (Eastman Kodak Company)
PRC - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
PRC - C:\Program Files\CDBurnerXP\NMSAccessU.exe ()
PRC - C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe (Creative Technology Ltd)
PRC - C:\Program Files\Comodo\Firewall\cpf.exe (COMODO)
PRC - C:\Program Files\Comodo\Firewall\cmdagent.exe (COMODO)
PRC - C:\Program Files\Seagate\Basics\Basics Status\MaxMenuMgrBasics.exe (Maxtor Corporation)
PRC - C:\Program Files\Seagate\Basics\Service\SyncServicesBasics.exe (Seagate Technology LLC)
PRC - C:\Program Files\DAEMON Tools\daemon.exe (DT Soft Ltd.)
PRC - C:\Program Files\Smith Micro\StuffIt11\ArcNameService.exe (Smith Micro Software, Inc.)
PRC - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\SYSTEM32\snmp.exe (Microsoft Corporation)
PRC - C:\Program Files\WinZip\WZQKPICK.EXE (WinZip Computing LP)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHSP.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe (Creative Technology Ltd)
PRC - C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\Directcd.exe (Roxio)
PRC - C:\Program Files\Lexmark X74-X75\lxbbbmon.exe (Lexmark International, Inc.)
PRC - C:\Program Files\Lexmark X74-X75\lxbbbmgr.exe (Lexmark International, Inc.)
PRC - C:\WINDOWS\SYSTEM32\TCPSVCS.EXE (Microsoft Corporation)
PRC - C:\WINDOWS\SYSTEM32\DSentry.exe (Dell - Advanced Desktop Engineering)
PRC - c:\apache\Apache.exe ()
PRC - C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe (Adobe Systems Inc.)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Daphne\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll (Autodesk)
MOD - C:\WINDOWS\SYSTEM32\AcSignIcon.dll (Autodesk)
MOD - C:\WINDOWS\SYSTEM32\msscript.ocx (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (KodakCCS) – C:\WINDOWS\System32\drivers\KodakCCS.exe File not found
SRV - (HidServ) – C:\WINDOWS\System32\hidserv.dll File not found
SRV - (AppMgmt) – C:\WINDOWS\System32\appmgmts.dll File not found
SRV - ({msvcv4vi) – File not found
SRV - (avgwd) – C:\Program Files\AVG\AVG10\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (AVGIDSAgent) – C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe (AVG Technologies CZ, s.r.o.)
SRV - (ServiceLayer) – C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (ACDaemon) – C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (McComponentHostService) – C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe (McAfee, Inc.)
SRV - (TomTomHOMEService) – C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
SRV - (NMSAccessU) – C:\Program Files\CDBurnerXP\NMSAccessU.exe ()
SRV - (Autodesk Licensing Service) – C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe (Autodesk)
SRV - (CmdAgent) – C:\Program Files\Comodo\Firewall\cmdagent.exe (COMODO)
SRV - (Basics Service) – C:\Program Files\Seagate\Basics\Service\SyncServicesBasics.exe (Seagate Technology LLC)
SRV - (Symantec Core LC) – C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe ()
SRV - (Stuffit Archive Name Service) – C:\Program Files\Smith Micro\StuffIt11\ArcNameService.exe (Smith Micro Software, Inc.)
SRV - (SNMP) – C:\WINDOWS\SYSTEM32\snmp.exe (Microsoft Corporation)
SRV - (Iprip) – C:\WINDOWS\SYSTEM32\iprip.dll (Microsoft Corporation)
SRV - (MSSQL$SQLEXPRESS) SQL Server (SQLEXPRESS) – c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
SRV - (SQLBrowser) – c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation)
SRV - (MSSQLServerADHelper) – c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe (Microsoft Corporation)
SRV - (NetSvc) – C:\Program Files\Intel\NCS\Sync\NetSvc.exe (Intel® Corporation)
SRV - (SimpTcp) – C:\WINDOWS\SYSTEM32\TCPSVCS.EXE (Microsoft Corporation)
SRV - (LPDSVC) – C:\WINDOWS\SYSTEM32\TCPSVCS.EXE (Microsoft Corporation)
SRV - (PHPGeekUtil) – c:\apache\APACHE.EXE ()
========== Driver Services (SafeList) ==========
DRV - (vdnt32) – C:\WINDOWS\System32\vdnt32.sys File not found
DRV - (memlow) – C:\WINDOWS\System32\memlow.sys File not found
DRV - (iAimTV2) – C:\WINDOWS\System32\DRIVERS\wATV03nt.sys File not found
DRV - (AVGIDSEH) – C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys (AVG Technologies CZ, s.r.o. )
DRV - (Avgtdix) – C:\WINDOWS\SYSTEM32\DRIVERS\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgmfx86) – C:\WINDOWS\SYSTEM32\DRIVERS\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgldx86) – C:\WINDOWS\SYSTEM32\DRIVERS\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgrkx86) – C:\WINDOWS\system32\DRIVERS\avgrkx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AVGIDSFilter) – C:\WINDOWS\SYSTEM32\DRIVERS\AVGIDSFilter.sys (AVG Technologies CZ, s.r.o. )
DRV - (AVGIDSDriver) – C:\WINDOWS\SYSTEM32\DRIVERS\AVGIDSDriver.sys (AVG Technologies CZ, s.r.o. )
DRV - (AVGIDSShim) – C:\WINDOWS\SYSTEM32\DRIVERS\AVGIDSShim.sys (AVG Technologies CZ, s.r.o. )
DRV - (UsbserFilt) – C:\WINDOWS\SYSTEM32\DRIVERS\usbser_lowerfltj.sys (Nokia)
DRV - (upperdev) – C:\WINDOWS\SYSTEM32\DRIVERS\usbser_lowerflt.sys (Nokia)
DRV - (nmwcdc) – C:\WINDOWS\SYSTEM32\DRIVERS\ccdcmbo.sys (Nokia)
DRV - (nmwcd) – C:\WINDOWS\SYSTEM32\DRIVERS\ccdcmb.sys (Nokia)
DRV - (pccsmcfd) – C:\WINDOWS\SYSTEM32\DRIVERS\pccsmcfd.sys (Nokia)
DRV - (CmdMon) – C:\WINDOWS\SYSTEM32\DRIVERS\cmdmon.sys (Comodo Research Lab., Inc.)
DRV - (Inspect) – C:\WINDOWS\System32\DRIVERS\inspect.sys (COMODO)
DRV - (sptd) – C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (SCDEmu) – C:\WINDOWS\System32\drivers\scdemu.sys (PowerISO Computing, Inc.)
DRV - (Cdralw2k) – C:\WINDOWS\System32\drivers\cdralw2k.sys (Sonic Solutions)
DRV - (Cdr4_xp) – C:\WINDOWS\System32\drivers\cdr4_xp.sys (Sonic Solutions)
DRV - (Tosrfhid) – C:\WINDOWS\SYSTEM32\DRIVERS\TosRfhid.sys (TOSHIBA Corporation.)
DRV - (Tosrfbd) – C:\WINDOWS\SYSTEM32\DRIVERS\TosRfbd.sys (TOSHIBA CORPORATION)
DRV - (tosporte) – C:\WINDOWS\SYSTEM32\DRIVERS\Tosporte.sys (TOSHIBA Corporation)
DRV - (Tosrfusb) – C:\WINDOWS\SYSTEM32\DRIVERS\tosrfusb.sys (TOSHIBA CORPORATION)
DRV - (sscdmdm) – C:\WINDOWS\SYSTEM32\DRIVERS\sscdmdm.sys (MCCI)
DRV - (sscdmdfl) – C:\WINDOWS\SYSTEM32\DRIVERS\sscdmdfl.sys (MCCI)
DRV - (sscdbus) SAMSUNG USB Composite Device driver (WDM) – C:\WINDOWS\SYSTEM32\DRIVERS\sscdbus.sys (MCCI)
DRV - (Tosrfcom) – C:\WINDOWS\SYSTEM32\DRIVERS\tosrfcom.sys (TOSHIBA Corporation)
DRV - (61883) – C:\WINDOWS\SYSTEM32\DRIVERS\61883.sys (Microsoft Corporation)
DRV - (Avc) – C:\WINDOWS\SYSTEM32\DRIVERS\avc.sys (Microsoft Corporation)
DRV - (MSDV) – C:\WINDOWS\SYSTEM32\DRIVERS\msdv.sys (Microsoft Corporation)
DRV - (amdagp) – C:\WINDOWS\System32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)
DRV - (sisagp) – C:\WINDOWS\System32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)
DRV - (iAimFP4) – C:\WINDOWS\SYSTEM32\DRIVERS\wvchntxx.sys (Intel® Corporation)
DRV - (iAimFP3) – C:\WINDOWS\SYSTEM32\DRIVERS\wsiintxx.sys (Intel® Corporation)
DRV - (iAimTV4) – C:\WINDOWS\SYSTEM32\DRIVERS\wch7xxnt.sys (Intel® Corporation)
DRV - (iAimTV3) – C:\WINDOWS\SYSTEM32\DRIVERS\watv04nt.sys (Intel® Corporation)
DRV - (iAimTV1) – C:\WINDOWS\SYSTEM32\DRIVERS\watv02nt.sys (Intel® Corporation)
DRV - (iAimTV0) – C:\WINDOWS\SYSTEM32\DRIVERS\watv01nt.sys (Intel® Corporation)
DRV - (iAimFP0) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv01nt.sys (Intel® Corporation)
DRV - (iAimFP1) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv02nt.sys (Intel® Corporation)
DRV - (iAimFP2) – C:\WINDOWS\SYSTEM32\DRIVERS\wadv05nt.sys (Intel® Corporation)
DRV - (i81x) – C:\WINDOWS\SYSTEM32\DRIVERS\i81xnt5.sys (Intel® Corporation)
DRV - (Tosrfbnp) – C:\WINDOWS\SYSTEM32\DRIVERS\tosrfbnp.sys (TOSHIBA Corporation)
DRV - (nv) – C:\WINDOWS\SYSTEM32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (BCMModem) – C:\WINDOWS\SYSTEM32\DRIVERS\BCMSM.sys (Broadcom Corporation)
DRV - (UdfReadr_xp) – C:\WINDOWS\System32\drivers\udfreadr_xp.sys (Roxio)
DRV - (pwd_2k) – C:\WINDOWS\System32\drivers\pwd_2K.sys (Roxio)
DRV - (mmc_2K) – C:\WINDOWS\System32\drivers\Mmc_2k.sys (Roxio)
DRV - (dvd_2K) – C:\WINDOWS\System32\drivers\Dvd_2k.sys (Roxio)
DRV - (cdudf_xp) – C:\WINDOWS\System32\drivers\cdudf_xp.sys (Roxio)
DRV - (omci) – C:\WINDOWS\SYSTEM32\DRIVERS\omci.sys (Dell Computer Corporation)
DRV - (toshidpt) – C:\WINDOWS\SYSTEM32\DRIVERS\Toshidpt.sys (TOSHIBA Corporation.)
DRV - (Sparrow) – C:\WINDOWS\System32\DRIVERS\sparrow.sys (Adaptec, Inc.)
DRV - (sym_u3) – C:\WINDOWS\System32\DRIVERS\sym_u3.sys (LSI Logic)
DRV - (sym_hi) – C:\WINDOWS\System32\DRIVERS\sym_hi.sys (LSI Logic)
DRV - (symc8xx) – C:\WINDOWS\System32\DRIVERS\symc8xx.sys (LSI Logic)
DRV - (symc810) – C:\WINDOWS\System32\DRIVERS\symc810.sys (Symbios Logic Inc.)
DRV - (MODEMCSA) – C:\WINDOWS\SYSTEM32\DRIVERS\MODEMCSA.sys (Microsoft Corporation)
DRV - (ultra) – C:\WINDOWS\System32\DRIVERS\ultra.sys (Promise Technology, Inc.)
DRV - (ql12160) – C:\WINDOWS\System32\DRIVERS\ql12160.sys (QLogic Corporation)
DRV - (ql1080) – C:\WINDOWS\System32\DRIVERS\ql1080.sys (QLogic Corporation)
DRV - (ql1280) – C:\WINDOWS\System32\DRIVERS\ql1280.sys (QLogic Corporation)
DRV - (dac2w2k) – C:\WINDOWS\System32\DRIVERS\dac2w2k.sys (Mylex Corporation)
DRV - (mraid35x) – C:\WINDOWS\System32\DRIVERS\mraid35x.sys (American Megatrends Inc.)
DRV - (asc) – C:\WINDOWS\System32\DRIVERS\asc.sys (Advanced System Products, Inc.)
DRV - (asc3550) – C:\WINDOWS\System32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)
DRV - (AliIde) – C:\WINDOWS\System32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (CmdIde) – C:\WINDOWS\System32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (EL90XBC) – C:\WINDOWS\SYSTEM32\DRIVERS\EL90XBC5.SYS (3Com Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.euro.dell.com/countries/ie/enu/gen/default.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://google.daemonsearch.com/ie/ý
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG10\Firefox\ [2010/09/28 21:44:39 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/09/22 16:01:59 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/09/25 19:43:28 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Netscape 7.2\Extensions\\Components: C:\Program Files\Netscape\Netscape\Components [2010/01/07 11:46:15 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Netscape 7.2\Extensions\\Plugins: C:\Program Files\Netscape\Netscape\Plugins [2010/05/27 21:44:07 | 000,000,000 | —D | M]
[2008/11/16 20:56:24 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\Mozilla\Extensions
[2010/10/03 12:25:07 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\Mozilla\Firefox\Profiles\default.7dk\extensions
[2006/05/02 22:38:57 | 000,000,000 | —D | M] (Plastikfox Crystal SVG) – C:\Documents and Settings\Daphne\Application Data\Mozilla\Firefox\Profiles\default.7dk\extensions\{4674e8a2-eb7e-4822-b517-b18328b3e8e8}
[2006/10/08 10:23:21 | 000,000,000 | —D | M] (Google Video Downloader) – C:\Documents and Settings\Daphne\Application Data\Mozilla\Firefox\Profiles\default.7dk\extensions\{96FA1920-C815-40b1-AFC6-10E244AD2415}
[2010/10/03 12:24:34 | 000,000,000 | —D | M] (Java Console) – C:\Documents and Settings\Daphne\Application Data\Mozilla\Firefox\Profiles\default.7dk\extensions\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
[2006/05/02 22:38:52 | 000,000,000 | —D | M] (FireCat PalePinkPawsFB) – C:\Documents and Settings\Daphne\Application Data\Mozilla\Firefox\Profiles\default.7dk\extensions\{FireCat-b5a82732-0f65-11d9-9669-0800200c9a66}
[2004/10/09 23:42:59 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\Mozilla\Firefox\Profiles\default.7dk\extensions\temp
[2010/10/03 12:24:47 | 000,000,000 | —D | M] – C:\Program Files\Mozilla Firefox\extensions
[2010/07/15 22:25:04 | 000,083,248 | —- | M] (Pinball Corporation.) – C:\Program Files\Mozilla Firefox\plugins\npclntax_ClickPotatoLiteSA.dll
[2006/07/08 22:45:16 | 000,073,728 | —- | M] ( ) – C:\Program Files\Mozilla Firefox\plugins\npvideoegg-loader.dll
[2006/04/27 19:08:32 | 000,006,656 | —- | M] ( ) – C:\Program Files\Mozilla Firefox\plugins\npvideoegg-publisherloader.dll
[2006/04/27 19:08:28 | 000,006,144 | —- | M] ( ) – C:\Program Files\Mozilla Firefox\plugins\npvideoegg-updaterloader.dll
O1 HOSTS File: ([2009/04/11 18:59:31 | 000,311,498 | R— | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\ETC\hosts
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1 123haustiereundmehr.com
O1 - Hosts: 10749 more lines…
O2 - BHO: (Yahoo! Companion BHO) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\WINDOWS\Downloaded Program Files\ycomp5_3_16_0.dll ()
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\WINDOWS\Downloaded Program Files\ycomp5_3_16_0.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar3.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\WINDOWS\Downloaded Program Files\ycomp5_3_16_0.dll ()
O4 - HKLM..\Run: [AdaptecDirectCD] C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe (Roxio)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [basicsmssmenu] C:\Program Files\Seagate\Basics\Basics Status\MaxMenuMgrBasics.exe (Maxtor Corporation)
O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation)
O4 - HKLM..\Run: [ClickPotatoLiteSA] C:\Program Files\ClickPotatoLite\bin\10.0.519.0\ClickPotatoLiteSA.exe (Pinball Corporation.)
O4 - HKLM..\Run: [COMODO Firewall Pro] C:\Program Files\Comodo\Firewall\CPF.exe (COMODO)
O4 - HKLM..\Run: [CTCheck] C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [DVDSentry] C:\WINDOWS\SYSTEM32\DSentry.exe (Dell - Advanced Desktop Engineering)
O4 - HKLM..\Run: [Lexmark X74-X75] C:\Program Files\Lexmark X74-X75\lxbbbmgr.exe (Lexmark International, Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\wianmpa.exe File not found
O4 - HKCU..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe (Creative Technology Ltd)
O4 - HKCU..\Run: [DAEMON Tools] C:\Program Files\DAEMON Tools\daemon.exe (DT Soft Ltd.)
O4 - HKCU..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe File not found
O4 - HKCU..\Run: [NvMediaCenter] C:\WINDOWS\System32\NVMCTRAY.DLL (NVIDIA Corporation)
O4 - HKCU..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe File not found
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\System32\Macromed\Flash\NPSWF32_FlashUtil.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe (Adobe Systems Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\AutoCAD Startup Accelerator.lnk = C:\Program Files\Common Files\Autodesk Shared\acstart17.exe (Autodesk, Inc)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Bluetooth Manager.lnk = C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe (Eastman Kodak Company)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE (WinZip Computing LP)
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: ClickPotato - {B58926D6-CFB0-45d2-9C28-4B5A0F0368AE} - C:\Program Files\ClickPotatoLite\bin\10.0.519.0\ClickPotatoLiteSABHO.dll (Pinball Corporation)
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (Intertrust Technologies, Inc.)
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://www.apple.com/qtactivex/qtplugin.cab (QuickTime Object)
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} http://security.symantec.com/sscv6/SharedC…bin/AvSniff.cab (Symantec AntiVirus scanner)
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C}
http://a1540.g.akamai.net/7/1540/52/200305…meInstaller.exe (Reg Error: Key error.)
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} http://security.symantec.com/sscv6/SharedC…n/bin/cabsa.cab (Symantec RuFSI Utility Class)
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} http://a840.g.akamai.net/7/840/537/2004061…all/xscan53.cab (HouseCall Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flash…t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_02)
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwa…ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {D821DC4A-0814-435E-9820-661C543A4679} http://drmlicense.one.microsoft.com/crlupdate/en/crlocx.ocx (CRLDownloadWrapper Class)
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88}
http://us.dl1.yimg.com/download.companion….bio5_3_16_0.cab (Yahoo! Companion)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Daphne\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Daphne\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2002/09/03 08:59:58 | 000,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O32 - AutoRun File - [2007/08/17 14:48:16 | 000,000,040 | —- | M] () - G:\Autorun.inf – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
NetSvcs: HidServ - C:\WINDOWS\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - C:\WINDOWS\SYSTEM32\iprip.dll (Microsoft Corporation)
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINDOWS\SYSTEM32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\SYSTEM32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\TSSOFT32.ACM (DSP GROUP, INC.)
Drivers32: msacm.vorbis - C:\WINDOWS\System32\vorbis.acm (HMS
http://hp.vector.co.jp/authors/VA012897/)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\IR32_32.DLL ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\IR32_32.DLL ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.MP42 - C:\WINDOWS\System32\mpg4c32.dll (Microsoft Corporation)
Drivers32: VIDC.MP43 - C:\WINDOWS\System32\mpg4c32.dll (Microsoft Corporation)
Drivers32: VIDC.MPG4 - C:\WINDOWS\System32\mpg4c32.dll (Microsoft Corporation)
Drivers32: vidc.XVID - C:\WINDOWS\System32\xvidvfw.dll ()
Drivers32: wave - C:\WINDOWS\System32\SERWVDRV.DLL (Microsoft Corporation)
Drivers32: wave2 - C:\WINDOWS\System32\SERWVDRV.DLL (Microsoft Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (16620634377289728)
========== Files/Folders - Created Within 90 Days ==========
[2010/10/03 16:13:26 | 000,575,488 | —- | C] (OldTimer Tools) – C:\Documents and Settings\Daphne\Desktop\OTL.exe
[2010/10/03 12:26:50 | 000,000,000 | —D | C] – C:\Documents and Settings\Daphne\My Documents\Downloads
[2010/10/03 12:25:27 | 000,000,000 | —D | C] – C:\Documents and Settings\Daphne\Application Data\AVG10
[2010/10/03 12:24:12 | 000,000,000 | —D | C] – C:\Documents and Settings\Daphne\Desktop\Unused Desktop Shortcuts
[2010/09/28 21:50:16 | 000,000,000 | -H-D | C] – C:\Documents and Settings\All Users\Application Data\Common Files
[2010/09/28 21:42:40 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\AVG10
[2010/09/28 21:42:40 | 000,000,000 | —D | C] – C:\WINDOWS\System32\drivers\AVG
[2010/09/28 20:25:32 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\MFAData
[2010/09/28 15:33:45 | 000,000,000 | —D | C] – C:\Program Files\McAfee Security Scan
[2010/09/28 15:33:45 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\McAfee Security Scan
[2010/09/28 15:33:38 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\ClickPotatoLiteSA
[2010/09/28 15:33:38 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65
[2010/09/28 15:33:37 | 000,000,000 | —D | C] – C:\Program Files\ClickPotatoLite
[2010/09/13 16:27:24 | 000,025,680 | —- | C] (AVG Technologies CZ, s.r.o. ) – C:\WINDOWS\System32\drivers\AVGIDSEH.sys
[2010/09/07 03:49:00 | 000,298,448 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgtdix.sys
[2010/09/07 03:48:56 | 000,034,384 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgmfx86.sys
[2010/09/07 03:48:54 | 000,249,424 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgldx86.sys
[2010/09/07 03:48:50 | 000,026,064 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgrkx86.sys
[2010/08/30 16:10:26 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\avg8
[2010/08/30 15:31:16 | 002,133,536 | —- | C] (AVG Technologies) – C:\Program Files\avg_free_stb_all_9_115_cnet.exe
[2010/08/29 15:55:38 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\McAfee
[2010/08/19 21:42:38 | 000,030,288 | —- | C] (AVG Technologies CZ, s.r.o. ) – C:\WINDOWS\System32\drivers\AVGIDSFilter.sys
[2010/08/19 21:42:36 | 000,123,472 | —- | C] (AVG Technologies CZ, s.r.o. ) – C:\WINDOWS\System32\drivers\AVGIDSDriver.sys
[2010/08/19 21:42:34 | 000,026,192 | —- | C] (AVG Technologies CZ, s.r.o. ) – C:\WINDOWS\System32\drivers\AVGIDSShim.sys
[2010/08/14 13:48:42 | 000,000,000 | —D | C] – C:\Program Files\Rosk Education Systems
[2010/08/06 12:06:10 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\PC Suite
[2010/08/06 12:01:14 | 000,000,000 | —D | C] – C:\Program Files\Common Files\PCSuite
[2010/08/06 12:01:00 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Nokia
[2010/08/06 12:00:23 | 000,000,000 | —D | C] – C:\Program Files\DIFX
[2010/08/06 12:00:18 | 000,018,816 | —- | C] (Nokia) – C:\WINDOWS\System32\drivers\pccsmcfd.sys
[2010/08/06 11:59:32 | 000,000,000 | —D | C] – C:\Program Files\PC Connectivity Solution
[2010/08/06 11:59:09 | 000,008,192 | —- | C] (Nokia) – C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys
[2010/08/06 11:59:06 | 000,008,192 | —- | C] (Nokia) – C:\WINDOWS\System32\drivers\usbser_lowerflt.sys
[2010/08/06 11:59:02 | 000,022,528 | —- | C] (Nokia) – C:\WINDOWS\System32\drivers\ccdcmbo.sys
[2010/08/06 11:58:57 | 000,018,176 | —- | C] (Nokia) – C:\WINDOWS\System32\drivers\ccdcmb.sys
[2010/08/06 11:58:56 | 000,662,016 | —- | C] (Nokia) – C:\WINDOWS\System32\nmwcdcocls.dll
[2010/08/06 11:57:36 | 000,000,000 | —D | C] – C:\Program Files\Nokia
[2010/08/06 11:45:39 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Installations
[2010/07/25 17:20:04 | 000,000,000 | —D | C] – C:\Program Files\VideoLAN
[2008/09/30 16:36:46 | 007,508,608 | —- | C] (Mozilla) – C:\Program Files\Firefox Setup 3.0.3.exe
[2008/02/04 21:15:05 | 006,222,376 | —- | C] (DivX, Inc.) – C:\Program Files\DivXWebPlayerInstaller.exe
[2008/01/28 23:41:10 | 018,510,928 | —- | C] (Veoh Networks, Inc. ) – C:\Program Files\VeohSetup-3.8.1.1008.exe
[2007/12/12 20:42:57 | 001,491,592 | —- | C] (Adobe Systems Incorporated) – C:\Program Files\install_flash_player.exe
[2007/10/11 12:29:34 | 017,574,432 | —- | C] (SmithMicro ) – C:\Program Files\StuffIt11.0.1.48.exe
[2006/06/15 01:57:07 | 024,070,456 | —- | C] (Microsoft Corporation) – C:\Program Files\wmp11-windowsxp-x86-enu.exe
[2003/07/30 21:31:32 | 000,066,048 | —- | C] (Microsoft Corporation) – C:\Program Files\notepad.exe
[9 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[61 C:\*.tmp files -> C:\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 90 Days ==========
[2010/10/03 13:27:53 | 000,001,017 | —- | M] () – C:\WINDOWS\LEXSTAT.INI
[2010/10/03 13:10:07 | 000,002,473 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\Microsoft Word.lnk
[2010/10/03 12:26:07 | 006,553,600 | —- | M] () – C:\Documents and Settings\Daphne\ntuser.dat
[2010/10/03 12:22:53 | 000,001,170 | —- | M] () – C:\WINDOWS\System32\WPA.DBL
[2010/10/03 12:18:05 | 000,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2010/10/03 12:17:59 | 000,002,048 | –S- | M] () – C:\WINDOWS\BOOTSTAT.DAT
[2010/10/03 12:17:58 | 535,891,968 | -HS- | M] () – C:\hiberfil.sys
[2010/10/02 10:17:06 | 000,000,284 | —- | M] () – C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/10/01 20:00:00 | 000,000,566 | —- | M] () – C:\WINDOWS\tasks\Norton Internet Security - Run Full System Scan - Daphne.job
[2010/10/01 13:43:46 | 000,575,488 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Daphne\Desktop\OTL.exe
[2010/10/01 13:42:36 | 000,133,632 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\RKUnhookerLE.EXE
[2010/10/01 13:39:56 | 000,080,384 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\MBRCheck.exe
[2010/09/28 22:04:03 | 094,972,906 | —- | M] () – C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2010/09/26 18:26:35 | 000,431,050 | —- | M] () – C:\WINDOWS\System32\PERFH009.DAT
[2010/09/26 18:26:35 | 000,074,952 | —- | M] () – C:\WINDOWS\System32\PERFC009.DAT
[2010/09/26 02:53:31 | 000,000,852 | —- | M] () – C:\WINDOWS\WIN.INI
[2010/09/26 02:53:31 | 000,000,472 | —- | M] () – C:\WINDOWS\SYSTEM.INI
[2010/09/13 16:27:24 | 000,025,680 | —- | M] (AVG Technologies CZ, s.r.o. ) – C:\WINDOWS\System32\drivers\AVGIDSEH.sys
[2010/09/07 03:49:00 | 000,298,448 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgtdix.sys
[2010/09/07 03:48:56 | 000,034,384 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgmfx86.sys
[2010/09/07 03:48:54 | 000,249,424 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgldx86.sys
[2010/09/07 03:48:50 | 000,026,064 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\WINDOWS\System32\drivers\avgrkx86.sys
[2010/09/06 10:26:20 | 000,189,520 | —- | M] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\tmcomm.sys
[2010/08/30 15:31:18 | 002,133,536 | —- | M] (AVG Technologies) – C:\Program Files\avg_free_stb_all_9_115_cnet.exe
[2010/08/29 15:55:21 | 000,001,611 | —- | M] () – C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
[2010/08/28 15:18:25 | 005,724,160 | R— | M] () – C:\Documents and Settings\All Users\Documents\ESBK.mb
[2010/08/28 15:07:05 | 011,737,088 | R— | M] () – C:\Documents and Settings\All Users\Documents\ESBK.mbb
[2010/08/19 21:42:38 | 000,030,288 | —- | M] (AVG Technologies CZ, s.r.o. ) – C:\WINDOWS\System32\drivers\AVGIDSFilter.sys
[2010/08/19 21:42:36 | 000,123,472 | —- | M] (AVG Technologies CZ, s.r.o. ) – C:\WINDOWS\System32\drivers\AVGIDSDriver.sys
[2010/08/19 21:42:34 | 000,026,192 | —- | M] (AVG Technologies CZ, s.r.o. ) – C:\WINDOWS\System32\drivers\AVGIDSShim.sys
[2010/08/06 13:12:49 | 000,000,000 | -H– | M] () – C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2010/08/06 13:12:44 | 000,000,000 | -H– | M] () – C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2010/08/06 13:09:03 | 000,000,000 | -H– | M] () – C:\WINDOWS\System32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2010/08/06 13:04:36 | 000,000,000 | -H– | M] () – C:\WINDOWS\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2010/08/06 13:03:25 | 000,514,624 | —- | M] () – C:\WINDOWS\System32\PerfStringBackup.INI
[2010/08/06 12:24:46 | 000,001,355 | —- | M] () – C:\WINDOWS\imsins.BAK
[2010/08/06 12:24:29 | 000,000,000 | -H– | M] () – C:\WINDOWS\System32\drivers\MsftWdf_user_01_09_00.Wdf
[9 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[61 C:\*.tmp files -> C:\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/10/03 13:58:04 | 000,133,632 | —- | C] () – C:\Documents and Settings\Daphne\Desktop\RKUnhookerLE.EXE
[2010/10/03 13:55:31 | 000,080,384 | —- | C] () – C:\Documents and Settings\Daphne\Desktop\MBRCheck.exe
[2010/09/28 22:04:03 | 094,972,906 | —- | C] () – C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2010/09/26 16:02:26 | 535,891,968 | -HS- | C] () – C:\hiberfil.sys
[2010/08/29 15:55:21 | 000,001,611 | —- | C] () – C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
[2010/08/06 13:12:49 | 000,000,000 | -H– | C] () – C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2010/08/06 13:12:44 | 000,000,000 | -H– | C] () – C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2010/08/06 13:09:03 | 000,000,000 | -H– | C] () – C:\WINDOWS\System32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2010/08/06 13:04:36 | 000,000,000 | -H– | C] () – C:\WINDOWS\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2010/08/06 12:24:29 | 000,000,000 | -H– | C] () – C:\WINDOWS\System32\drivers\MsftWdf_user_01_09_00.Wdf
[2009/12/31 21:32:03 | 000,000,736 | —- | C] () – C:\WINDOWS\SamsungMaster.INI
[2009/04/03 11:03:49 | 000,000,026 | —- | C] () – C:\WINDOWS\System32\drivers\Rev98HDD.ini
[2008/10/27 11:38:20 | 004,163,646 | —- | C] () – C:\Program Files\Apr2006_MDX1_x86_Archive.cab
[2008/10/27 11:38:18 | 001,801,176 | —- | C] () – C:\Program Files\AUG2007_d3dx9_35_x64.cab
[2008/10/27 11:38:18 | 001,795,100 | —- | C] () – C:\Program Files\Aug2008_d3dx9_39_x64.cab
[2008/10/27 11:38:18 | 001,709,168 | —- | C] () – C:\Program Files\AUG2007_d3dx9_35_x86.cab
[2008/10/27 11:38:18 | 001,608,374 | —- | C] () – C:\Program Files\APR2007_d3dx9_33_x64.cab
[2008/10/27 11:38:16 | 001,607,055 | —- | C] () – C:\Program Files\APR2007_d3dx9_33_x86.cab
[2008/10/27 11:38:16 | 001,575,392 | —- | C] () – C:\Program Files\DEC2006_d3dx9_32_x86.cab
[2008/10/27 11:38:16 | 001,572,170 | —- | C] () – C:\Program Files\DEC2006_d3dx9_32_x64.cab
[2008/10/27 11:38:14 | 001,465,688 | —- | C] () – C:\Program Files\Aug2008_d3dx9_39_x86.cab
[2008/10/27 11:38:14 | 001,358,992 | —- | C] () – C:\Program Files\Dec2005_d3dx9_28_x64.cab
[2008/10/27 11:38:12 | 001,398,846 | —- | C] () – C:\Program Files\Apr2006_d3dx9_30_x64.cab
[2008/10/27 11:38:12 | 001,351,558 | —- | C] () – C:\Program Files\Aug2005_d3dx9_27_x64.cab
[2008/10/27 11:38:10 | 001,348,370 | —- | C] () – C:\Program Files\Apr2005_d3dx9_25_x64.cab
[2008/10/27 11:38:10 | 001,156,507 | —- | C] () – C:\Program Files\BDANT.cab
[2008/10/27 11:38:10 | 001,116,237 | —- | C] () – C:\Program Files\Apr2006_d3dx9_30_x86.cab
[2008/10/27 11:38:10 | 001,080,472 | —- | C] () – C:\Program Files\Dec2005_d3dx9_28_x86.cab
[2008/10/27 11:38:08 | 001,079,978 | —- | C] () – C:\Program Files\Apr2005_d3dx9_25_x86.cab
[2008/10/27 11:38:08 | 001,078,660 | —- | C] () – C:\Program Files\Aug2005_d3dx9_27_x86.cab
[2008/10/27 11:38:08 | 000,097,833 | —- | C] () – C:\Program Files\APR2007_xinput_x64.cab
[2008/10/27 11:38:04 | 000,976,164 | —- | C] () – C:\Program Files\BDAXP.cab
[2008/10/27 11:38:04 | 000,917,446 | —- | C] () – C:\Program Files\Apr2006_MDX1_x86.cab
[2008/10/27 11:38:04 | 000,868,628 | —- | C] () – C:\Program Files\Aug2008_d3dx10_39_x64.cab
[2008/10/27 11:38:04 | 000,853,302 | —- | C] () – C:\Program Files\AUG2007_d3dx10_35_x64.cab
[2008/10/27 11:38:02 | 000,850,183 | —- | C] () – C:\Program Files\Aug2008_d3dx10_39_x86.cab
[2008/10/27 11:38:02 | 000,094,028 | —- | C] () – C:\Program Files\Aug2008_XACT_x86.cab
[2008/10/27 11:38:02 | 000,088,158 | —- | C] () – C:\Program Files\AUG2006_xinput_x64.cab
[2008/10/27 11:38:02 | 000,088,117 | —- | C] () – C:\Program Files\Apr2006_xinput_x64.cab
[2008/10/27 11:38:02 | 000,054,318 | —- | C] () – C:\Program Files\APR2007_xinput_x86.cab
[2008/10/27 11:38:02 | 000,047,074 | —- | C] () – C:\Program Files\AUG2006_xinput_x86.cab
[2008/10/27 11:38:00 | 000,797,883 | —- | C] () – C:\Program Files\AUG2007_d3dx10_35_x86.cab
[2008/10/27 11:38:00 | 000,699,628 | —- | C] () – C:\Program Files\APR2007_d3dx10_33_x64.cab
[2008/10/27 11:38:00 | 000,047,026 | —- | C] () – C:\Program Files\Apr2006_xinput_x86.cab
[2008/10/27 11:37:58 | 000,696,881 | —- | C] () – C:\Program Files\APR2007_d3dx10_33_x86.cab
[2008/10/27 11:37:58 | 000,272,384 | —- | C] () – C:\Program Files\Aug2008_XAudio_x64.cab
[2008/10/27 11:37:58 | 000,270,858 | —- | C] () – C:\Program Files\Aug2008_XAudio_x86.cab
[2008/10/27 11:37:52 | 000,199,112 | —- | C] () – C:\Program Files\AUG2007_XACT_x64.cab
[2008/10/27 11:37:50 | 000,213,823 | —- | C] () – C:\Program Files\DEC2006_d3dx10_00_x64.cab
[2008/10/27 11:37:50 | 000,193,491 | —- | C] () – C:\Program Files\DEC2006_XACT_x64.cab
[2008/10/27 11:37:48 | 000,196,782 | —- | C] () – C:\Program Files\APR2007_XACT_x64.cab
[2008/10/27 11:37:48 | 000,192,736 | —- | C] () – C:\Program Files\DEC2006_d3dx10_00_x86.cab
[2008/10/27 11:37:48 | 000,183,919 | —- | C] () – C:\Program Files\AUG2006_XACT_x64.cab
[2008/10/27 11:37:46 | 000,180,149 | —- | C] () – C:\Program Files\Apr2006_XACT_x64.cab
[2008/10/27 11:37:46 | 000,154,028 | —- | C] () – C:\Program Files\AUG2007_XACT_x86.cab
[2008/10/27 11:37:44 | 000,152,241 | —- | C] () – C:\Program Files\APR2007_XACT_x86.cab
[2008/10/27 11:37:42 | 000,146,615 | —- | C] () – C:\Program Files\DEC2006_XACT_x86.cab
[2008/10/27 11:37:42 | 000,139,033 | —- | C] () – C:\Program Files\OCT2006_XACT_x86.cab
[2008/10/27 11:37:42 | 000,138,251 | —- | C] () – C:\Program Files\AUG2006_XACT_x86.cab
[2008/10/27 11:37:40 | 000,122,840 | —- | C] () – C:\Program Files\Aug2008_XACT_x64.cab
[2008/10/27 11:37:38 | 000,134,119 | —- | C] () – C:\Program Files\Apr2006_XACT_x86.cab
[2008/02/21 21:31:58 | 013,413,048 | —- | C] () – C:\Program Files\Google_Earth_BZXV.exe
[2008/02/06 16:38:49 | 000,039,831 | —- | C] () – C:\Program Files\265618784.pdf
[2007/10/11 12:16:50 | 009,479,520 | —- | C] () – C:\Program Files\winzip111.exe
[2007/10/07 14:49:38 | 000,685,816 | —- | C] () – C:\WINDOWS\System32\drivers\sptd.sys
[2007/07/08 12:18:37 | 000,001,359 | —- | C] () – C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2007/06/20 18:48:50 | 000,000,000 | —- | C] () – C:\WINDOWS\tosOBEX.INI
[2006/07/08 00:14:36 | 000,000,039 | —- | C] () – C:\WINDOWS\System32\TEVPXCW60.DLL
[2006/07/08 00:14:36 | 000,000,039 | —- | C] () – C:\WINDOWS\TDEVXCW60.DLL
[2006/07/08 00:14:35 | 000,000,038 | —- | C] () – C:\WINDOWS\iltwain.ini
[2005/10/08 12:54:51 | 000,363,520 | —- | C] () – C:\WINDOWS\System32\psisdecd.dll
[2005/03/13 22:01:10 | 000,077,824 | —- | C] () – C:\WINDOWS\System32\adistres.dll
[2004/12/27 20:56:17 | 000,000,129 | —- | C] () – C:\Documents and Settings\Daphne\Local Settings\Application Data\fusioncache.dat
[2004/12/20 12:08:28 | 000,180,224 | —- | C] () – C:\WINDOWS\System32\xvidvfw.dll
[2004/12/20 12:03:26 | 000,819,200 | —- | C] () – C:\WINDOWS\System32\xvidcore.dll
[2004/12/19 18:42:09 | 000,027,648 | —- | C] () – C:\WINDOWS\php.ini
[2004/12/19 18:42:08 | 000,000,009 | —- | C] () – C:\WINDOWS\phpdev.ini
[2004/12/02 15:20:12 | 000,114,688 | —- | C] () – C:\WINDOWS\System32\TosBtAcc.dll
[2004/11/11 23:12:38 | 000,000,000 | —- | C] () – C:\WINDOWS\System32\klogini.dll
[2004/11/04 21:08:30 | 000,000,278 | —- | C] () – C:\Documents and Settings\Daphne\Application Data\dm.ini
[2004/10/05 19:43:37 | 000,000,006 | —- | C] () – C:\Documents and Settings\All Users\Application Data\DirectCDUserNameD.txt
[2004/09/26 17:33:24 | 000,100,864 | —- | C] () – C:\WINDOWS\System32\Dc50ip32.dll
[2004/09/26 17:33:24 | 000,065,864 | —- | C] () – C:\WINDOWS\System32\Digita.sys
[2004/09/26 17:33:24 | 000,007,808 | —- | C] () – C:\WINDOWS\System32\dc240u.sys
[2004/09/26 17:33:22 | 000,153,088 | —- | C] () – C:\WINDOWS\System32\SoyWeb.dll
[2004/09/26 17:33:22 | 000,020,480 | —- | C] () – C:\WINDOWS\System32\ImgLibLead.dll
[2004/09/26 16:47:39 | 000,071,749 | —- | C] () – C:\WINDOWS\HCExtOutput.dll
[2004/09/26 16:47:39 | 000,000,823 | —- | C] () – C:\WINDOWS\TSC.ini
[2004/09/26 16:27:37 | 000,000,170 | —- | C] () – C:\WINDOWS\GetServer.ini
[2004/09/22 10:09:06 | 000,065,536 | —- | C] () – C:\WINDOWS\System32\TosCommAPI.dll
[2004/09/21 18:51:23 | 000,000,004 | —- | C] () – C:\WINDOWS\System32\timestamp.sys
[2004/09/19 21:21:15 | 000,036,864 | —- | C] () – C:\Documents and Settings\Daphne\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2004/08/06 04:23:04 | 000,000,000 | —- | C] () – C:\WINDOWS\pcf.INI
[2004/07/20 17:04:02 | 000,094,208 | —- | C] () – C:\WINDOWS\System32\TosBtHcrpAPI.dll
[2004/03/15 21:51:26 | 000,000,076 | —- | C] () – C:\WINDOWS\SLS.INI
[2004/02/13 22:44:40 | 000,000,035 | —- | C] () – C:\WINDOWS\A5W.INI
[2004/01/15 14:43:28 | 000,114,688 | —- | C] () – C:\WINDOWS\System32\TBTMonUI.dll
[2003/11/29 23:26:55 | 000,000,000 | —- | C] () – C:\WINDOWS\PCFriend.INI
[2003/11/16 17:19:53 | 000,000,112 | —- | C] () – C:\WINDOWS\ActiveSkin.INI
[2003/11/14 20:46:07 | 000,000,082 | —- | C] () – C:\WINDOWS\iPlayer.INI
[2003/11/02 06:17:53 | 000,021,840 | —- | C] () – C:\WINDOWS\System32\SIntfNT.dll
[2003/11/02 06:17:53 | 000,017,212 | —- | C] () – C:\WINDOWS\System32\SIntf32.dll
[2003/11/02 06:17:53 | 000,012,067 | —- | C] () – C:\WINDOWS\System32\SIntf16.dll
[2003/10/06 15:16:00 | 000,027,136 | —- | C] () – C:\WINDOWS\System32\nvcod.dll
[2003/09/03 21:26:48 | 000,000,173 | —- | C] () – C:\WINDOWS\KPCMS.INI
[2003/09/03 21:26:38 | 000,210,944 | —- | C] () – C:\WINDOWS\System32\MSVCRT10.DLL
[2003/09/03 21:17:49 | 000,000,306 | —- | C] () – C:\WINDOWS\QTW.INI
[2003/08/23 12:48:49 | 000,000,000 | —- | C] () – C:\WINDOWS\Versabook.INI
[2003/08/23 11:59:41 | 000,027,136 | —- | C] () – C:\WINDOWS\System32\VbMCHook.dll
[2003/08/10 17:23:23 | 000,000,041 | —- | C] () – C:\WINDOWS\winampa.ini
[2003/08/10 12:16:14 | 000,004,268 | —- | C] () – C:\WINDOWS\cdplayer.ini
[2003/07/30 21:19:59 | 000,000,233 | —- | C] () – C:\WINDOWS\swacnfg.ini
[2003/07/29 23:14:24 | 000,000,723 | —- | C] () – C:\Program Files\INSTALL.LOG
[2003/07/29 15:33:26 | 000,061,440 | —- | C] () – C:\WINDOWS\System32\TosHidAPI.dll
[2003/07/27 18:02:51 | 000,000,499 | —- | C] () – C:\WINDOWS\rsagent.ini
[2003/07/27 16:53:24 | 000,000,376 | —- | C] () – C:\WINDOWS\ODBC.INI
[2003/07/22 20:21:13 | 000,001,017 | —- | C] () – C:\WINDOWS\LEXSTAT.INI
[2003/07/16 18:48:45 | 000,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2003/07/16 18:40:37 | 000,000,882 | —- | C] () – C:\WINDOWS\orun32.ini
[2003/07/16 18:10:00 | 000,000,546 | —- | C] () – C:\WINDOWS\System32\OEMINFO.INI
[2002/11/01 16:17:50 | 000,000,256 | —- | C] () – C:\WINDOWS\aucfg.ini
[2002/10/14 21:39:18 | 000,000,184 | —- | C] () – C:\WINDOWS\System32\lxbbcoin.ini
[2002/08/29 05:00:00 | 000,027,440 | —- | C] () – C:\WINDOWS\System32\drivers\secdrv.sys
[2002/08/29 05:00:00 | 000,000,320 | —- | C] () – C:\WINDOWS\System32\p2.ini
[2002/07/04 15:05:34 | 000,000,269 | —- | C] () – C:\WINDOWS\tmupdate.ini
[2002/02/08 03:20:20 | 000,002,063 | —- | C] () – C:\WINDOWS\System32\my.ini
[2001/12/30 22:27:06 | 001,155,072 | —- | C] () – C:\WINDOWS\System32\php4ts.dll
[2001/12/14 13:34:46 | 000,164,864 | —- | C] () – C:\WINDOWS\patchw32.dll
[2001/09/19 21:52:22 | 000,192,512 | —- | C] () – C:\WINDOWS\System32\sablot.dll
[2001/08/16 19:04:46 | 000,167,936 | —- | C] () – C:\WINDOWS\System32\ming.dll
[2001/07/26 20:44:38 | 000,475,136 | —- | C] () – C:\WINDOWS\System32\libxml2.dll
[2001/05/16 23:17:04 | 000,188,416 | —- | C] () – C:\WINDOWS\System32\ssleay32.dll
[2001/05/16 23:16:30 | 000,860,160 | —- | C] () – C:\WINDOWS\System32\libeay32.dll
[2000/11/29 10:50:40 | 000,471,040 | —- | C] () – C:\WINDOWS\System32\QTExporter.dll
[2000/10/22 19:26:44 | 000,438,334 | —- | C] () – C:\WINDOWS\System32\expat.dll
[2000/10/22 05:41:26 | 000,040,960 | —- | C] () – C:\WINDOWS\System32\libsasl.dll
[2000/10/07 07:41:10 | 000,747,486 | —- | C] () – C:\WINDOWS\System32\iconv-1.3.dll
[2000/09/27 02:28:20 | 000,040,448 | —- | C] () – C:\WINDOWS\System32\libpq.dll
[1999/07/23 13:46:48 | 000,000,116 | —- | C] () – C:\WINDOWS\AuHCcup1.ini
[1999/07/23 10:53:20 | 000,129,536 | —- | C] () – C:\WINDOWS\AuHCcup1.dll
[1999/05/24 12:26:42 | 000,317,440 | —- | C] () – C:\WINDOWS\System32\FdfTk.dll
[1999/01/22 19:46:56 | 000,065,536 | —- | C] () – C:\WINDOWS\System32\MSRTEDIT.DLL
[1998/10/11 02:07:38 | 000,088,576 | —- | C] () – C:\WINDOWS\System32\Iticheck.dll
[1997/09/08 01:13:48 | 000,057,344 | —- | C] () – C:\WINDOWS\System32\mSQL.dll
[1997/06/14 03:56:08 | 000,056,832 | —- | C] () – C:\WINDOWS\System32\iyvu9_32.dll
[1980/01/01 00:00:00 | 000,012,288 | —- | C] () – C:\WINDOWS\System32\e100bmsg.dll
========== LOP Check ==========
[2010/09/28 15:33:38 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65
[2008/01/08 16:35:56 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Autodesk
[2010/09/28 21:53:51 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\AVG10
[2010/08/30 15:48:22 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\avg9
[2003/07/16 18:43:03 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\BVRP Software
[2008/04/14 17:11:13 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Channel4
[2010/09/28 15:33:38 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\ClickPotatoLiteSA
[2010/09/28 21:50:16 | 000,000,000 | -H-D | M] – C:\Documents and Settings\All Users\Application Data\Common Files
[2010/08/06 11:53:21 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Downloaded Installations
[2010/08/06 11:45:56 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Installations
[2008/10/19 19:05:30 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Kontiki
[2010/09/28 20:31:02 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\MFAData
[2010/08/06 12:20:26 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\PC Suite
[2008/11/28 21:47:28 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Seagate
[2007/10/11 12:39:33 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\SMSI
[2009/06/05 16:06:20 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\TomTom
[2006/08/10 19:04:38 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\VideoEgg1
[2006/06/17 17:15:50 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\allTunes
[2010/10/03 12:25:27 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\AVG10
[2005/09/15 19:06:34 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\combustion3
[2005/10/09 13:38:02 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\DIMAGE
[2005/03/13 22:00:21 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\InterTrust
[2004/11/12 14:31:08 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\NetMedia Providers
[2006/12/26 01:12:27 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\Nokia
[2006/12/26 00:50:02 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\PC Suite
[2004/11/12 14:31:08 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\Publish Providers
[2006/03/11 14:35:36 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\Samsung
[2007/03/21 23:28:32 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\SecondLife
[2010/01/07 13:05:49 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\Skinux
[2003/08/26 15:04:53 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\Template
[2007/10/08 14:06:22 | 000,000,000 | —D | M] – C:\Documents and Settings\Daphne\Application Data\uTorrent
[2005/06/29 17:22:00 | 000,000,394 | -H– | M] () – C:\WINDOWS\Tasks\{0AE4C813-33E7-4C0D-B1B2-D5F1208A7993}_SPEEDY_Roberta.job
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2002/09/03 08:59:58 | 000,001,248 | -HS- | M] () – C:\3jvf0w40.sys
[2003/07/30 21:01:16 | 000,001,248 | -HS- | M] () – C:\3jvja6hw.sys
[2002/09/03 08:59:58 | 000,001,248 | -HS- | M] () – C:\3jvjaomn.sys
[2002/09/03 08:59:58 | 000,001,248 | -HS- | M] () – C:\3jvjawja.sys
[2005/12/28 23:15:03 | 000,000,000 | —- | M] () – C:\AILog.txt
[2002/09/03 08:59:58 | 000,000,000 | —- | M] () – C:\AUTOEXEC.BAT
[2007/10/20 20:34:46 | 000,000,212 | RHS- | M] () – C:\BOOT.INI
[2007/10/08 14:16:31 | 000,000,211 | —- | M] () – C:\boot.ini.comodofirewall
[2002/09/03 08:38:46 | 000,000,512 | -HS- | M] () – C:\BOOTSECT.DOS
[2006/06/05 16:13:27 | 000,000,085 | —- | M] () – C:\c0a80100.pac
[2002/09/03 08:59:58 | 000,000,000 | —- | M] () – C:\CONFIG.SYS
[2003/07/16 18:21:52 | 000,004,314 | RH– | M] () – C:\DELL.SDR
[2007/07/23 23:24:13 | 000,000,780 | —- | M] () – C:\devicetable.log
[2008/05/08 15:33:08 | 002,782,490 | —- | M] () – C:\dons house, strand view 110.JPG
[2008/05/08 15:33:27 | 002,747,275 | —- | M] () – C:\dons house, strand view 111.JPG
[2003/11/25 14:34:50 | 000,001,882 | —- | M] () – C:\EyeCandyLog.txt
[2004/01/02 22:07:53 | 000,000,115 | —- | M] () – C:\hello.php
[2010/10/03 12:17:58 | 535,891,968 | -HS- | M] () – C:\hiberfil.sys
[2003/11/16 17:19:56 | 000,001,120 | —- | M] () – C:\INSTALL.LOG
[2002/09/03 08:59:58 | 000,000,000 | -H– | M] () – C:\IO.SYS
[2002/09/03 08:59:58 | 000,000,000 | -H– | M] () – C:\MSDOS.SYS
[2008/06/29 20:14:28 | 000,002,056 | —- | M] () – C:\my.cnf
[2003/12/08 14:04:46 | 000,827,392 | —- | M] () – C:\NPSWF32.dll
[2006/02/07 23:17:11 | 000,047,564 | RHS- | M] () – C:\NTDETECT.COM
[2006/02/07 23:17:11 | 000,250,032 | RHS- | M] () – C:\NTLDR
[2010/10/03 12:17:52 | 805,306,368 | -HS- | M] () – C:\pagefile.sys
[2009/04/11 12:13:26 | 000,005,528 | —- | M] () – C:\rapport.txt
[2010/09/28 16:10:11 | 000,006,760 | —- | M] () – C:\resetlog.txt
[2005/01/23 19:57:53 | 000,000,207 | —- | M] () – C:\Shortcut to CD Drive.lnk
[2003/12/15 17:22:00 | 000,003,478 | —- | M] () – C:\styles.css
[2008/05/08 15:38:22 | 000,008,704 | -HS- | M] () – C:\Thumbs.db
[2004/12/07 19:39:28 | 001,873,474 | —- | M] () – C:\TrySolo.exe
[2001/05/24 13:59:30 | 000,162,304 | —- | M] () – C:\UNWISE.EXE
[2004/04/10 19:22:02 | 000,000,435 | —- | M] () – C:\WS_FTP.LOG
[2007/08/05 11:13:58 | 000,000,150 | —- | M] () – C:\YServer.txt
[61 C:\*.tmp files -> C:\*.tmp -> ]
< %systemroot%\Fonts\*.com >
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2002/09/03 08:59:02 | 000,000,067 | -HS- | M] () – C:\WINDOWS\Fonts\DESKTOP.INI
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2002/10/14 21:37:04 | 000,079,872 | —- | M] (Lexmark International) – C:\WINDOWS\SYSTEM32\SPOOL\PRTPROCS\W32X86\LXBBPP5C.DLL
[2002/05/14 16:50:34 | 000,011,264 | —- | M] (BVRP Software) – C:\WINDOWS\SYSTEM32\SPOOL\PRTPROCS\W32X86\wfxprint2000.dll
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2003/09/19 17:14:14 | 000,167,936 | —- | M] () – C:\WINDOWS\Living Marine Aquarium.scr
[2004/09/06 15:09:42 | 000,184,912 | —- | M] (MacSourcery) – C:\WINDOWS\Maroon5.scr
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008/02/06 16:38:50 | 000,039,831 | —- | M] () – C:\Program Files\265618784.pdf
[2008/10/27 11:38:10 | 001,348,370 | —- | M] () – C:\Program Files\Apr2005_d3dx9_25_x64.cab
[2008/10/27 11:38:08 | 001,079,978 | —- | M] () – C:\Program Files\Apr2005_d3dx9_25_x86.cab
[2008/10/27 11:38:12 | 001,398,846 | —- | M] () – C:\Program Files\Apr2006_d3dx9_30_x64.cab
[2008/10/27 11:38:10 | 001,116,237 | —- | M] () – C:\Program Files\Apr2006_d3dx9_30_x86.cab
[2008/10/27 11:38:04 | 000,917,446 | —- | M] () – C:\Program Files\Apr2006_MDX1_x86.cab
[2008/10/27 11:38:20 | 004,163,646 | —- | M] () – C:\Program Files\Apr2006_MDX1_x86_Archive.cab
[2008/10/27 11:37:46 | 000,180,149 | —- | M] () – C:\Program Files\Apr2006_XACT_x64.cab
[2008/10/27 11:37:38 | 000,134,119 | —- | M] () – C:\Program Files\Apr2006_XACT_x86.cab
[2008/10/27 11:38:02 | 000,088,117 | —- | M] () – C:\Program Files\Apr2006_xinput_x64.cab
[2008/10/27 11:38:00 | 000,047,026 | —- | M] () – C:\Program Files\Apr2006_xinput_x86.cab
[2008/10/27 11:38:00 | 000,699,628 | —- | M] () – C:\Program Files\APR2007_d3dx10_33_x64.cab
[2008/10/27 11:37:58 | 000,696,881 | —- | M] () – C:\Program Files\APR2007_d3dx10_33_x86.cab
[2008/10/27 11:38:18 | 001,608,374 | —- | M] () – C:\Program Files\APR2007_d3dx9_33_x64.cab
[2008/10/27 11:38:16 | 001,607,055 | —- | M] () – C:\Program Files\APR2007_d3dx9_33_x86.cab
[2008/10/27 11:37:48 | 000,196,782 | —- | M] () – C:\Program Files\APR2007_XACT_x64.cab
[2008/10/27 11:37:44 | 000,152,241 | —- | M] () – C:\Program Files\APR2007_XACT_x86.cab
[2008/10/27 11:38:08 | 000,097,833 | —- | M] () – C:\Program Files\APR2007_xinput_x64.cab
[2008/10/27 11:38:02 | 000,054,318 | —- | M] () – C:\Program Files\APR2007_xinput_x86.cab
[2008/10/27 11:38:12 | 001,351,558 | —- | M] () – C:\Program Files\Aug2005_d3dx9_27_x64.cab
[2008/10/27 11:38:08 | 001,078,660 | —- | M] () – C:\Program Files\Aug2005_d3dx9_27_x86.cab
[2008/10/27 11:37:48 | 000,183,919 | —- | M] () – C:\Program Files\AUG2006_XACT_x64.cab
[2008/10/27 11:37:42 | 000,138,251 | —- | M] () – C:\Program Files\AUG2006_XACT_x86.cab
[2008/10/27 11:38:02 | 000,088,158 | —- | M] () – C:\Program Files\AUG2006_xinput_x64.cab
[2008/10/27 11:38:02 | 000,047,074 | —- | M] () – C:\Program Files\AUG2006_xinput_x86.cab
[2008/10/27 11:38:04 | 000,853,302 | —- | M] () – C:\Program Files\AUG2007_d3dx10_35_x64.cab
[2008/10/27 11:38:00 | 000,797,883 | —- | M] () – C:\Program Files\AUG2007_d3dx10_35_x86.cab
[2008/10/27 11:38:18 | 001,801,176 | —- | M] () – C:\Program Files\AUG2007_d3dx9_35_x64.cab
[2008/10/27 11:38:18 | 001,709,168 | —- | M] () – C:\Program Files\AUG2007_d3dx9_35_x86.cab
[2008/10/27 11:37:52 | 000,199,112 | —- | M] () – C:\Program Files\AUG2007_XACT_x64.cab
[2008/10/27 11:37:46 | 000,154,028 | —- | M] () – C:\Program Files\AUG2007_XACT_x86.cab
[2008/10/27 11:38:04 | 000,868,628 | —- | M] () – C:\Program Files\Aug2008_d3dx10_39_x64.cab
[2008/10/27 11:38:02 | 000,850,183 | —- | M] () – C:\Program Files\Aug2008_d3dx10_39_x86.cab
[2008/10/27 11:38:18 | 001,795,100 | —- | M] () – C:\Program Files\Aug2008_d3dx9_39_x64.cab
[2008/10/27 11:38:14 | 001,465,688 | —- | M] () – C:\Program Files\Aug2008_d3dx9_39_x86.cab
[2008/10/27 11:37:40 | 000,122,840 | —- | M] () – C:\Program Files\Aug2008_XACT_x64.cab
[2008/10/27 11:38:02 | 000,094,028 | —- | M] () – C:\Program Files\Aug2008_XACT_x86.cab
[2008/10/27 11:37:58 | 000,272,384 | —- | M] () – C:\Program Files\Aug2008_XAudio_x64.cab
[2008/10/27 11:37:58 | 000,270,858 | —- | M] () – C:\Program Files\Aug2008_XAudio_x86.cab
[2010/08/30 15:31:18 | 002,133,536 | —- | M] (AVG Technologies) – C:\Program Files\avg_free_stb_all_9_115_cnet.exe
[2008/10/27 11:38:10 | 001,156,507 | —- | M] () – C:\Program Files\BDANT.cab
[2008/10/27 11:38:04 | 000,976,164 | —- | M] () – C:\Program Files\BDAXP.cab
[2008/10/27 11:38:14 | 001,358,992 | —- | M] () – C:\Program Files\Dec2005_d3dx9_28_x64.cab
[2008/10/27 11:38:10 | 001,080,472 | —- | M] () – C:\Program Files\Dec2005_d3dx9_28_x86.cab
[2008/10/27 11:37:50 | 000,213,823 | —- | M] () – C:\Program Files\DEC2006_d3dx10_00_x64.cab
[2008/10/27 11:37:48 | 000,192,736 | —- | M] () – C:\Program Files\DEC2006_d3dx10_00_x86.cab
[2008/10/27 11:38:16 | 001,572,170 | —- | M] () – C:\Program Files\DEC2006_d3dx9_32_x64.cab
[2008/10/27 11:38:16 | 001,575,392 | —- | M] () – C:\Program Files\DEC2006_d3dx9_32_x86.cab
[2008/10/27 11:37:50 | 000,193,491 | —- | M] () – C:\Program Files\DEC2006_XACT_x64.cab
[2008/10/27 11:37:42 | 000,146,615 | —- | M] () – C:\Program Files\DEC2006_XACT_x86.cab
[2008/02/04 21:15:41 | 006,222,376 | —- | M] (DivX, Inc.) – C:\Program Files\DivXWebPlayerInstaller.exe
[2008/09/30 16:44:21 | 007,508,608 | —- | M] (Mozilla) – C:\Program Files\Firefox Setup 3.0.3.exe
[2008/02/21 21:33:49 | 013,413,048 | —- | M] () – C:\Program Files\Google_Earth_BZXV.exe
[2003/07/29 23:14:26 | 000,000,723 | —- | M] () – C:\Program Files\INSTALL.LOG
[2007/12/12 20:43:02 | 001,491,592 | —- | M] (Adobe Systems Incorporated) – C:\Program Files\install_flash_player.exe
[2002/08/29 05:00:00 | 000,066,048 | —- | M] (Microsoft Corporation) – C:\Program Files\notepad.exe
[2008/10/27 11:37:42 | 000,139,033 | —- | M] () – C:\Program Files\OCT2006_XACT_x86.cab
[2007/10/11 12:36:46 | 017,574,432 | —- | M] (SmithMicro ) – C:\Program Files\StuffIt11.0.1.48.exe
[2008/01/28 23:44:03 | 018,510,928 | —- | M] (Veoh Networks, Inc. ) – C:\Program Files\VeohSetup-3.8.1.1008.exe
[2007/10/11 12:19:23 | 009,479,520 | —- | M] () – C:\Program Files\winzip111.exe
[2006/06/15 02:00:47 | 024,070,456 | —- | M] (Microsoft Corporation) – C:\Program Files\wmp11-windowsxp-x86-enu.exe
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2002/09/03 08:47:18 | 000,094,208 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.SAV
[2002/09/03 08:47:18 | 000,602,112 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.SAV
[2002/09/03 08:47:18 | 000,380,928 | —- | M] () – C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.SAV
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
[2006/02/07 23:33:49 | 000,000,272 | -HS- | M] () – C:\Documents and Settings\All Users\Start Menu\DESKTOP.INI
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
[2009/04/23 20:39:12 | 000,007,680 | -HS- | M] () – C:\WINDOWS\SYSTEM32\Thumbs.db
[9 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2006/02/08 16:55:45 | 000,000,177 | -HS- | M] () – C:\Documents and Settings\Daphne\Application Data\Microsoft\Internet Explorer\Quick Launch\DESKTOP.INI
[2003/07/23 21:11:32 | 000,000,079 | —- | M] () – C:\Documents and Settings\Daphne\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
< %USERPROFILE%\Desktop\*.exe >
[2004/11/04 21:10:38 | 000,429,032 | —- | M] (Adobe Systems) – C:\Documents and Settings\Daphne\Desktop\AdbeRdr60_DLM_enu_full.exe
[2006/06/17 17:15:19 | 003,051,899 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\alltunes_setup.exe
[2001/12/14 13:09:52 | 000,032,768 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\Connect to the Internet.exe
[2007/10/07 14:46:53 | 001,911,240 | —- | M] (DT Soft Ltd.) – C:\Documents and Settings\Daphne\Desktop\daemon410-x86.exe
[2007/07/16 15:20:02 | 009,679,815 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\eircom…exe
[2006/05/02 22:35:54 | 005,115,704 | —- | M] (Mozilla) – C:\Documents and Settings\Daphne\Desktop\Firefox Setup 1.5.0.3.exe
[2004/10/09 23:20:43 | 000,683,132 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\flashplayer7installer.exe
[2006/11/11 00:16:40 | 005,007,104 | —- | M] (Google) – C:\Documents and Settings\Daphne\Desktop\GoogleVideoPlayerSetup.exe
[2010/10/01 13:39:56 | 000,080,384 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\MBRCheck.exe
[2006/06/09 09:49:30 | 003,081,292 | —- | M] (Autodesk) – C:\Documents and Settings\Daphne\Desktop\MGControl65.exe
[2006/10/08 17:42:36 | 041,467,816 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\NIS07100IN.exe
[2010/10/01 13:43:46 | 000,575,488 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Daphne\Desktop\OTL.exe
[2004/10/22 15:48:44 | 002,182,294 | —- | M] (Macromedia, Inc.) – C:\Documents and Settings\Daphne\Desktop\parent_power.exe
[2010/10/01 13:42:36 | 000,133,632 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\RKUnhookerLE.EXE
[2007/03/21 23:15:35 | 030,725,749 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\Second Life 1-13-3-2 Setup.exe
[2005/05/10 19:54:11 | 001,416,944 | —- | M] (Microsoft Corporation) – C:\Documents and Settings\Daphne\Desktop\WM9Codecs.exe
[2006/06/25 13:59:05 | 001,033,440 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\wrar36b2.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >
< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >
< %PROGRAMFILES%\Internet Explorer\*.tmp >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %USERPROFILE%\My Documents\*.exe >
< %USERPROFILE%\*.exe >
< %systemroot%\ADDINS\*.* >
< %systemroot%\assembly\*.bak2 >
< %systemroot%\Config\*.* >
< %systemroot%\REPAIR\*.bak2 >
< %systemroot%\SECURITY\Database\*.sdb /x >
< %systemroot%\SYSTEM\*.bak2 >
< %systemroot%\Web\*.bak2 >
< %systemroot%\Driver Cache\*.* >
< %PROGRAMFILES%\Mozilla Firefox\0*.exe >
< %ProgramFiles%\Microsoft Common\*.* >
< %ProgramFiles%\TinyProxy. >
< %USERPROFILE%\Favorites\*.url /x >
[2006/02/08 16:55:46 | 000,000,122 | -HS- | M] () – C:\Documents and Settings\Daphne\Favorites\Desktop.ini
< %systemroot%\system32\*.bk >
< %systemroot%\*.te >
< %systemroot%\system32\system32\*.* >
< %ALLUSERSPROFILE%\*.dat /x >
[2006/12/26 00:50:54 | 000,185,770 | —- | M] () – C:\Documents and Settings\All Users\NCCD.log
< %systemroot%\system32\drivers\*.rmv >
< dir /b "%systemroot%\system32\*.exe" | find /i " " /c >
< dir /b "%systemroot%\*.exe" | find /i " " /c >
< %PROGRAMFILES%\Microsoft\*.* >
< %systemroot%\System32\Wbem\proquota.exe >
< %PROGRAMFILES%\Mozilla Firefox\*.dat >
< %USERPROFILE%\Cookies\*.txt /x >
[2010/10/03 15:22:50 | 000,081,920 | —- | M] () – C:\Documents and Settings\Daphne\Cookies\INDEX.DAT
< %SystemRoot%\system32\fonts\*.* >
< %systemroot%\system32\winlog\*.* >
< %systemroot%\system32\Language\*.* >
< %systemroot%\system32\Settings\*.* >
< %systemroot%\system32\*.quo >
< %SYSTEMROOT%\AppPatch\*.exe >
< %SYSTEMROOT%\inf\*.exe >
[2007/06/26 22:10:26 | 000,317,440 | —- | M] (Microsoft Corporation) – C:\WINDOWS\INF\unregmp2.exe
< %SYSTEMROOT%\Installer\*.exe >
< %systemroot%\system32\config\*.bak2 >
< %systemroot%\system32\Computers\*.* >
< %SystemRoot%\system32\Sound\*.* >
< %SystemRoot%\system32\SpecialImg\*.* >
< %SystemRoot%\system32\code\*.* >
< %SystemRoot%\system32\draft\*.* >
< %SystemRoot%\system32\MSSSys\*.* >
< %ProgramFiles%\Javascript\*.* >
< %systemroot%\pchealth\helpctr\System\*.exe /s >
< %systemroot%\Web\*.exe >
< %systemroot%\system32\msn\*.* >
< %systemroot%\system32\*.tro >
< %AppData%\Microsoft\Installer\msupdates\*.* >
< %ProgramFiles%\Messenger\*.exe >
[2004/10/13 17:24:37 | 001,694,208 | —- | M] (Microsoft Corporation) – C:\Program Files\Messenger\msmsgs.exe
[2002/08/20 15:08:38 | 000,069,663 | —- | M] (Microsoft Corporation) – C:\Program Files\Messenger\MSMSGSIN.EXE
< %systemroot%\system32\systhem32\*.* >
< %systemroot%\system\*.exe >
[1994/07/01 01:00:00 | 000,006,496 | —- | M] () – C:\WINDOWS\SYSTEM\ODBCADM.EXE
< %USERPROFILE%\Templates\*.tmp >
< %SYSTEMDRIVE%\explorexxx.exe\*.* >
< %Windir%\Installer\*.tmp >
[7 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
< %systemroot%\System32\*.xco >
< %ProgramFiles%\system32\*.* >
< %systemroot%\System32\windos\*.* >
< %SystemRoot%\system32\sandbox\*.* >
< %SystemRoot%\system32\*.amo >
< %SystemRoot%\system32\Windows Live\*.* >
< %ProgramFiles%\logs\*.* >
< %ProgramFiles%\Bifrost\*.* >
< %SystemRoot%\system32\*.goo >
< %systemroot%\system32\IME\*.* >
< %systemroot%\BackUp\*.* >
< %systemroot%\system32\*.ico >
[2001/12/07 13:40:16 | 000,022,486 | —- | M] () – C:\WINDOWS\SYSTEM32\LRNXP.ICO
[2005/08/28 21:51:42 | 000,000,766 | —- | M] () – C:\WINDOWS\SYSTEM32\Uninstall.ico
[9 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system\*.dat >
< %systemroot%\system\*.exe >
[1994/07/01 01:00:00 | 000,006,496 | —- | M] () – C:\WINDOWS\SYSTEM\ODBCADM.EXE
< %AppData%\Macromedia\Common\*.* >
< %SYSTEMDRIVE%\dir\*.* /s >
< %systemroot%\system32\ras\*.exe >
< %SYSTEMDRIVE%\MFILES\*.* >
< %SYSTEMDRIVE%\mDNSRespon.exe\*.* >
< %systemroot%\system32\services\*.* >
< %systemroot%\Spooler\*.* >
< %ProgramFiles%\system32\*.* >
< %systemroot%\system32\Setup\*.dll /x >
< %systemroot%\system32\*.mine >
< %SYSTEMDRIVE%\cleansweep.exe\*.* >
< %systemroot%\system32\ras\*.dll >
< %systemroot%\system32\ras\*.drv >
< %systemroot%\*.iq >
< %systemroot%\system32\XP\*.* >
< %SYSTEMDRIVE%\Extracted\*.* >
< %systemroot%\system32\windows\*.* >
< %systemroot%\logs\*.* >
< %SYSTEMDRIVE%\Win.Msi\*.* >
< %systemroot%\regedit\*.* >
< %systemroot%\system32\skype\*.* >
< %AppData%\Adobe\dlluplwin25\*.* >
< %UserProfile%\*.dat >
[2010/10/03 12:26:07 | 006,553,600 | —- | M] () – C:\Documents and Settings\Daphne\ntuser.dat
< %UserProfile%\*.dll >
< %systemroot%\system32\*.sxo >
< %SYSTEMDRIVE%\Gazma\*.* /s >
< %systemroot%\system32\spynet\*.* >
< %systemroot%\system32\System\*.* >
< %appdata%\Microsoft\Windows\*.* >
< %systemroot%\system32\WinDir\*.* >
< %systemroot%\_\*.* >
< %systemroot%\system32\windows32\*.* >
< %ProgramFiles%\win\*.* >
< %AppData%\Microsoft\CD Burning\*.* >
< %systemroot%\*.cab >
< %systemroot%\K.Backup\*.* >
< %ProgramFiles%\Massenger\*.* >
< %systemroot%\System32\*.doc >
< %systemroot%\Office12\*.* >
< %systemroot%\System32\Rundl32.exe\*.* >
< %ProgramFiles%\yahoo.net\*.* >
< %systemroot%\system32\*.igo >
< %systemroot%\*.rew >
< %systemroot%\System32\spool\DRIVERS\W32X86\3\*.exe >
[2002/10/14 21:03:18 | 000,303,104 | —- | M] (Lexmark International, Inc.) – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\LEXBCES.EXE
[2002/10/14 20:54:14 | 000,173,315 | —- | M] (Lexmark International, Inc.) – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\lexdrvin.exe
[2002/10/14 20:54:14 | 000,024,576 | —- | M] () – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\lexgo.EXE
[2002/10/14 21:00:41 | 000,174,592 | —- | M] (Lexmark International, Inc.) – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\LEXPPS.EXE
[2002/10/14 21:37:33 | 000,053,248 | —- | M] () – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\LXBBJSWX.EXE
[2002/10/14 20:47:50 | 000,090,112 | —- | M] (Lexmark International) – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\LXBBPSWX.EXE
[2002/10/14 22:31:36 | 000,091,648 | —- | M] (Lexmark International, Inc.) – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\LXBBUN5C.EXE
[2002/10/14 21:06:14 | 000,053,248 | —- | M] (Lexmark International Inc.) – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\lxbbweb.exe
[2002/10/14 20:51:03 | 000,311,612 | —- | M] () – C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\WAVS.EXE
< %USERPROFILE%\.COMMgr\*.* >
< %USERPROFILE%\Desktop\*.bat >
[2003/10/18 15:22:32 | 000,000,048 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\Bubble Bobble.bat
[2003/10/18 15:24:40 | 000,000,047 | —- | M] () – C:\Documents and Settings\Daphne\Desktop\Tetris.bat
< %PROGRAMFILES%\Common Files\Real\visualizations\*.* >
[2006/07/01 14:08:47 | 000,043,008 | —- | M] (RealNetworks, Inc.) – C:\Program Files\Common Files\Real\Visualizations\Annabelle.rpv
[2006/07/01 14:08:47 | 000,080,384 | —- | M] () – C:\Program Files\Common Files\Real\Visualizations\CosmicBelt.rpv
[2006/07/01 14:08:48 | 000,007,168 | —- | M] (RealNetworks, Inc.) – C:\Program Files\Common Files\Real\Visualizations\Fire.rpv
[2006/07/01 14:08:48 | 000,007,680 | —- | M] (RealNetworks, Inc.) – C:\Program Files\Common Files\Real\Visualizations\FreqBands.rpv
[2006/07/01 14:08:48 | 000,069,632 | —- | M] () – C:\Program Files\Common Files\Real\Visualizations\Nebula.rpv
< %PROGRAMFILES%\Internet Explorer\*.Jmp >
< %PROGRAMFILES%\Windows NT\system\*.dll >
< %systemroot%\system32\*.ext >
< %systemroot%\system32\Com\*.cfg >
< %systemroot%\system32\btz\*.* >
< %systemroot%\system32\EMP\*.* >
< %systemroot%\system32\expo\*.* >
< %systemroot%\system32\inet2\*.* >
< %systemroot%\system32\xrem\*.* >
< %ProgramFiles%\Microsoft\*.* >
< %systemroot%\usgwmt\*.* >
< %ProgramFiles%\B\*.* >
< %SYSTEMDRIVE%\lspp\*.* >
< %systemroot%\Kral\*.* >
< %SYSTEMDRIVE%\windowsdvd.exe\*.* >
< %systemroot%\system32\*.ipo >
< %SYSTEMDRIVE%\usxxxxxxxx.exe\*.* >
< %systemroot%\system32\*.mof >
< %systemroot%\*.atm >
< %systemroot%\system32\svhost\*.* >
< %ProgramFiles%\system32\*.* >
< %ProgramFiles%\Docmentt\*.* >
< %systemroot%\Help\*.vbs >
< %ProgramFiles%\Windows WinSxs\*.* /s >
< %ProgramFiles%\Outlook Express\IDT\*.* /s >
< %ProgramFiles%\Microsoft Office\365\*.* /s >
< %ProgramFiles%\Windows Live\*.* >
< %systemroot%\system32\win32\*.* >
< %SYSTEMDRIVE%\RECYCLER\*.* >
< %systemroot%\Fresh1\*.* >
< %ProgramFiles%\Kekj\*.* /s >
< %systemroot%\GDU\*.* >
< %systemroot%\KA\*.* >
< %systemroot%\R\*.* >
< %systemroot%\system32\*.fyo >
< %USERPROFILE%\System\*.* >
< %systemroot%\Source\*.* >
< %systemroot%\system32\ac\*.* >
< %ProgramFiles%\MSDN\*.* >
< %AppData%\AdobeUM\winvcldll54\*.* /s >
< %ProgramFiles%\Internet Explorer\*.ico >
< %systemroot%\system32\*.ojo >
< %systemroot%\system32\d323s\*.* >
< %systemroot%\system32\re\*.* >
< %UserProfile%\Microsoft\*.dll >
< %UserProfile%\Microsoft\*.log >
< %systemroot%\Bios\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-10-03 11:14:47
< End of report >
And here is Extras.txt:
OTL Extras logfile created on: 03/10/2010 16:15:56 - Run 1
OTL by OldTimer - Version 3.2.14.1 Folder = C:\Documents and Settings\Daphne\Desktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.11)
Locale: 00001809 | Country: Ireland | Language: ENI | Date Format: dd/MM/yyyy
511.00 Mb Total Physical Memory | 262.00 Mb Available Physical Memory | 51.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 57.00% Paging File free
Paging file location(s): C:\pagefile.sys 768 3000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 111.72 Gb Total Space | 44.04 Gb Free Space | 39.42% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 61.29 Mb Total Space | 18.69 Mb Free Space | 30.49% Space Free | Partition Type: FAT
F: Drive not present or media not loaded
Drive G: | 465.76 Gb Total Space | 351.13 Gb Free Space | 75.39% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: SPEEDY
Current User Name: Daphne
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Minimal
Quick Scan
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.html [@ = Reg Error: Value error.] – Reg Error: Key error. File not found
.js [@ = JSFile] – C:\Program Files\Macromedia\Dreamweaver MX\Dreamweaver.exe (Macromedia, Inc.)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
exefile [open] – "%1" %*
htmlfile – "C:\Program Files\Microsoft Office\Office\msohtmed.exe" %1 (Microsoft Corporation)
http [open] – "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
https [open] – "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
jsfile [open] – "C:\Program Files\Macromedia\Dreamweaver MX\Dreamweaver.exe" "%1" (Macromedia, Inc.)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] – "%1" %*
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] – "C:\Program Files\VideoLAN\VLC\vlc.exe" –started-from-file –playlist-enqueue "%1" ()
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] – "C:\Program Files\VideoLAN\VLC\vlc.exe" –started-from-file –no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] – "C:\Program Files\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] – "C:\Program Files\Winamp\Winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] – "C:\Program Files\Winamp\Winamp.exe" "%1" (Nullsoft)
Folder [open] – %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0x00000000
"FirewallDisableNotify" = 0x00000000
"UpdatesDisableNotify" = 0x00000000
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\ewido anti-spyware 4.0\ewido.exe" = C:\Program Files\ewido anti-spyware 4.0\ewido.exe:*:Enabled:ewido anti-spyware – File not found
"C:\Program Files\LimeWire\LimeWire.exe" = C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire – File not found
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger – File not found
"C:\Program Files\Yahoo!\Messenger\YServer.exe" = C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server – File not found
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent – (BitTorrent, Inc.)
"C:\Program Files\Kontiki\KService.exe" = C:\Program Files\Kontiki\KService.exe:*:Enabled:Delivery Manager Service – File not found
"C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe" = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe:*:Enabled:EasyShare – (Eastman Kodak Company)
"C:\Program Files\AVG\AVG10\avgdiagex.exe" = C:\Program Files\AVG\AVG10\avgdiagex.exe:*:Enabled:AVG Diagnostics 2011 – (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG10\avgnsx.exe" = C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Online Shield – (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG10\avgmfapx.exe" = C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:AVG Installer – (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG10\avgemcx.exe" = C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Personal E-mail Scanner – (AVG Technologies CZ, s.r.o.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00010409-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 SR-1 Professional
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{007B37D9-0C45-4202-834B-DD5FAAE99D63}" = ArcSoft Print Creations - Slimline Card
"{03EDED24-8375-407D-A721-4643D9768BE1}" = kgchlwn
"{074C5857-D87B-4E1B-9977-FE623E4CBE88}" = Samsung PC Studio
"{089DD780-DB3F-4CDB-A0C2-111360247298}" = PC Connectivity Solution
"{10253A5A-081B-4146-9D76-00547EED4001}" = Sonic Foundry VideoFactory 2.0c
"{11F1920A-56A2-4642-B6E0-3B31A12C9288}" = Dell Solution Center
"{11F3F858-4131-4FFA-A560-3FE282933B6E}" = kgchday
"{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}" = ESSPCD
"{151C555A-A9E7-4A2E-B6D7-165D04A3C956}" = Dell Picture Studio - Dell Image Expert
"{1B2DBF55-05D4-4072-87D8-689141E262BD}" = Creative ZEN
"{1B9B5B3B-28E7-4E59-A80D-D670AA984514}" = Nokia Connectivity Cable Driver
"{1E04F83B-2AB9-4301-9EF7-E86307F79C72}" = Google Earth
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}" = Nokia PC Suite
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java™ 6 Update 18
"{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}" = Microsoft SQL Server 2005 Tools Express Edition Beta 2
"{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}_Bootstrap" = Microsoft SQL Server 2005 Tools Express Edition Beta 2
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition Beta 2 (SQLEXPRESS)
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}_Bootstrap" = Microsoft SQL Server 2005 Express Edition Beta 2 (SQLEXPRESS)
"{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}" = essvatgt
"{2E0C1913-886B-4C5C-8DAF-D1E649CE5FCC}" = Creative MediaSource
"{3248F0A8-6813-11D6-A77B-00B0D0150060}" = J2SE Runtime Environment 5.0 Update 6
"{3248F0A8-6813-11D6-A77B-00B0D0150090}" = J2SE Runtime Environment 5.0 Update 9
"{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java™ 6 Update 2
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3BE480ED-E17A-431A-981C-5C2EDDBCD3BF}" = Macromedia Flash MX
"{416DFEDD-9F1B-4EFC-AF70-FCA891AE0251}" = Adobe InDesign CS
"{42938595-0D83-404D-9F73-F8177FDD531A}" = ESScore
"{4468EF97-A253-4699-9E1C-88CAE2C6832D}" = ABBYY FineReader 5.0 Sprint
"{4537EA4B-F603-4181-89FB-2953FC695AB1}" = netbrdg
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{48B0F38D-1913-44F3-99AA-D4C55A2B038E}" = Drive Manager
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B55E0A8-07F5-4966-9B7B-D32C8ADC0FF4}" = Digimax Converter
"{4D826618-59C6-11D4-976E-00C04F8EEB39}" = Macromedia FreeHand 10
"{51916667-A68B-491A-86EB-3D701944EB66}" = DISKdata
"{5316DFC9-CE99-4458-9AB3-E8726EDE0210}" = skin0001
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files
"{56589DFE-0C29-4DFE-8E42-887B771ECD23}" = ArcSoft Print Creations - Photo Book
"{5783F2D7-5001-0409-0002-0060B0CE6BBA}" = AutoCAD 2007 - English
"{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.8
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{605A4E39-613C-4A12-B56F-DEFBE6757237}" = SHASTA
"{608D2A3C-6889-4C11-9B54-A42F45ACBFDB}" = fflink
"{609F7AC8-C510-11D4-A788-009027ABA5D0}" = Easy CD Creator 5 Basic
"{62FC357F-022B-4F90-9376-7A0DF9FBE7A1}" = Sonic Foundry Sound Forge 6.0
"{643EAE81-920C-4931-9F0B-4B343B225CA6}" = ESSBrwr
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{693C08A7-9E76-43FF-B11E-9A58175474C4}" = kgckids
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}" = Microsoft .NET Framework 2.0
"{7148F0A8-6813-11D6-A77B-00B0D0142050}" = Java 2 Runtime Environment, SE v1.4.2_05
"{7266C898-F9CB-4122-9452-2AA1DACE245E}" = Sonic Foundry Preset Manager 1.0
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{739F4CE3-6443-40AB-ACB3-2CF6FD3702AE}" = AVG 2011
"{764D06D8-D8DE-411E-A1C8-D9E9380F8A84}" = Microsoft Works 7.0
"{76EFFC7C-17A6-479D-9E47-8E658C1695AE}" = Windows Backup Utility
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7AC15160-A49B-4A89-B181-D4619C025FFF}" = Samsung Samples Installer
"{7B4BB888-B44E-4B91-BEE9-FE14B312B58C}" = Sonic Foundry Super Duper Music Looper XPress
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7F142D56-3326-11D5-B229-002078017FBF}" = Modem Helper
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8424EF22-44CF-4DD4-B702-FADA3998F4BA}" = StuffIt 11
"{84E9D2E2-FE5B-49D4-A88A-9B0A973B713B}" = Digimax i6 PMP Driver
"{85DC9962-BB64-4C13-B079-1F5566C81BE7}" = Visual C# 2005 Express Edition Beta - English
"{8943CE61-53BD-475E-90E1-A580869E98A2}" = staticcr
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A502E38-29C9-49FA-BCFA-D727CA062589}" = ESSTOOLS
"{8A8664E1-84C8-4936-891C-BC1F07797549}" = kgcvday
"{8B4AB829-DFD3-436D-B808-D9733D76C590}" = Macromedia Dreamweaver MX
"{8E92D746-CD9F-4B90-9668-42B74C14F765}" = ESSini
"{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
"{8FB6AF1C-7B7B-42F9-BAAF-7592AC9819E6}" = AVG 2011
"{90D55A3F-1D99-4C94-A77E-46DC14F0BF08}" = Help and Support Customization
"{91517631-A9F3-4B7C-B482-43E0068FD55A}" = ESSgui
"{91A4AD99-69CE-4745-97B7-0E0DFBECFDE5}" = Adobe Illustrator CS
"{930B2432-43D4-11D5-9871-00C04F8EEB39}" = Macromedia Fireworks MX
"{9591C049-5CAE-4E89-A8D9-191F1899628B}" = ArcSoft Print Creations - Funhouse
"{976EA7B1-7562-483D-88DA-4323D263B7CD}" = DiMAGE Viewer
"{98DF85D9-96C0-4F57-A92E-C3539477EF5E}" = DVDSentry
"{999D43F4-9709-4887-9B1A-83EBB15A8370}" = VPRINTOL
"{9AA582A3-B64A-42AF-8DCD-476FF5EA4910}" = Sonic Foundry Vegas 3.0a
"{9BD54685-1496-46A5-AB62-357CD140ED8B}" = kgcinvt
"{A1588373-1D86-4D44-86C9-78ABD190F9CC}" = kgcmove
"{A5BA14E0-7384-11D4-BAE7-00409631A2C8}" = Macromedia Extension Manager
"{A790BEB1-BCCF-4EC6-807B-5708B36E8A79}" = Intel® PROSet
"{AB3F9E62-1C4A-45DA-96E4-BFEB26C73F18}" = SPIF225 USB to SATA Bridge 98 Driver Installer
"{AC76BA86-7AD7-1033-7B44-A92000000001}" = Adobe Reader 9.2
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}" = ESSCDBK
"{AEC0CEBC-0FC7-4716-8222-1C4A742719B1}" = Samsung Master
"{B0D83FCD-9D42-43ED-8315-250326AADA02}" = ArcSoft Print Creations - Scrapbook
"{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}" = OfotoXMI
"{B27D0497-EC60-4899-9DF6-1495B8E2070F}" = Microsoft SQL Native Client
"{B2A2C64F-AFA1-4BF0-9879-1071EF0C950C}" = Microsoft MSDN Express Library 2005 Beta - English
"{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}" = CCScore
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player
"{BB46245B-CECA-406F-8790-3ABA0D01012F}" = Roxio VideoWave Movie Creator
"{C4466935-88FD-4357-8A59-F641CECD897F}" = Sonic Foundry ACID XPress 3.0f
"{C4A4722E-79F9-417C-BD72-8D359A090C97}" = Samsung PC Studio
"{C78EAC6F-7A73-452E-8134-DBB2165C5A68}" = QuickTime
"{CA9ED5E4-1548-485B-A293-417840060158}" = ArcSoft Print Creations - Photo Calendar
"{CAE8A0F1-B498-4C23-95FA-55047E730C8F}" = ArcSoft Print Creations
"{CEA5EF64-B694-4B79-9A2C-0FF738906A1D}" = DriverGuide Toolkit
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{D32470A1-B10C-4059-BA53-CF0486F68EBC}" = Kodak EasyShare software
"{D4BA439B-7757-4B21-A7E9-6B5AA7FB227A}" = MM LC Trigonometry
"{D6DE02C7-1F47-11D4-9515-00105AE4B89A}" = Paint Shop Pro 7
"{DAB91712-F85D-4CF8-B0F5-A4B02A676B49}" = Microsoft XML Parser
"{DB02F716-6275-42E9-B8D2-83BA2BF5100B}" = SFR
"{DC3065BF-95B4-42C5-B47D-0B713CDA75D0}" = Creative Zen Vision M
"{E031338C-839D-4EDD-9537-99B653C39D81}" = Autodesk MapGuide® Viewer ActiveX Control Release 6.5
"{E18B549C-5D15-45DA-8D8F-8FD2BD946344}" = kgcbaby
"{E3436EE2-D5CB-4249-840B-3A0140CC34C3}" = Classic PhoneTools
"{E6B4117F-AC59-4B13-9274-EB136E8897EE}" = ArcSoft Print Creations - Album Page
"{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}" = Samsung PC Studio 3 USB Driver Installer
"{EFB21DE7-8C19-4A88-BB28-A766E16493BC}" = Adobe Photoshop CS
"{F04F9557-81A9-4293-BC49-2C216FA325A7}" = ArcSoft Print Creations - Greeting Card
"{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}" = SKINXSDK
"{F9593CFB-D836-49BC-BFF1-0E669A411D9F}" = WIRELESS
"{FCDB1C92-03C6-4C76-8625-371224256091}" = ESSPDock
"34EA302E7F4CBD17A19E33BBCB72363234956D7E" = Windows Driver Package - Nokia Modem (06/09/2010 4.5)
"504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"Ace DivX Player" = Ace DivX Player
"Ad-Aware SE Personal" = Ad-Aware SE Personal
"Adobe Acrobat 5.0" = Adobe Acrobat 4.0, 5.0
"Adobe ActiveShare" = Adobe ActiveShare 1.3.1
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player
"Adobe SVG Viewer" = Adobe SVG Viewer 3.0
"AdobeESD" = Adobe Download Manager 1.2 (Remove Only)
"Amazon MP3 Downloader" = Amazon MP3 Downloader 1.0.9
"AudibleManager" = AudibleManager
"Autodesk DWF Viewer" = Autodesk DWF Viewer
"AVG" = AVG 2011
"BCM V.92 56K Modem" = BCM V.92 56K Modem
"CCleaner" = CCleaner (remove only)
"CINEMA 4D XL Release 7" = CINEMA 4D XL Release 7
"Cleaner 5 EZ" = Cleaner 5 EZ
"ClickPotatoLiteSA" = ClickPotato
"ColorImpact_is1" = ColorImpact 1.6
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"COMODO Firewall Pro" = COMODO Firewall Pro
"Creative Removable Disk Manager" = Creative Removable Disk Manager
"DAZ|Bryce 4.0" = DAZ|Bryce 4.0
"DesignWorkshop Lite" = DesignWorkshop Lite
"Director 8.5 Shockwave Studio Trial" = Director 8.5 Shockwave Studio Trial
"Dynomite Deluxe 2.70y" = Dynomite Deluxe 2.70y
"EditPad Pro" = JGsoft EditPad Pro 4.5.2 DEMO
"EEEE705096F837B7907659F100C9FE6DA001970F" = Windows Driver Package - Nokia Modem (06/09/2010 7.01.0.7)
"FLVPlayer" = FLV Player 1.3.3
"GoogleVideoPlayer" = Google Video Player
"HijackThis" = HijackThis 1.99.1
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{48B0F38D-1913-44F3-99AA-D4C55A2B038E}" = Drive Manager
"InterActual Player" = InterActual Player
"iZotope Ozone 1.01 Demo for DirectX_is1" = iZotope Ozone 1.01 Demo for DirectX
"Kingpin" = Kingpin: Life of Crime
"Lexmark X74-X75" = Lexmark X74-X75
"Living Marine Aquarium Screen Saver" = Living Marine Aquarium Screen Saver
"Macromedia FreeHand 8" = Macromedia FreeHand 8
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"McAfee Security Scan" = McAfee Security Scan Plus
"Microsoft .NET Framework 2.0" = Microsoft .NET Framework 2.0
"Microsoft MSDN Express Library 2005 Beta - English" = Microsoft MSDN Express Library 2005 Beta - English
"Mozilla Firefox (3.6.10)" = Mozilla Firefox (3.6.10)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"Netscape (7.2)" = Netscape (7.2)
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Noise Reduction Plug-In 2.0" = Sonic Foundry Noise Reduction Plug-In 2.0a
"Nokia PC Suite" = Nokia PC Suite
"NVIDIA" = NVIDIA Windows 2000/XP Display Drivers
"NVIDIA Display Driver" = NVIDIA Display Driver
"PCFriendly" = PCFriendly
"PowerISO" = PowerISO
"PROSet" = Intel® PRO Network Adapters and Drivers
"RealPlayer 6.0" = RealPlayer
"RNCompiler 6.0" = Advanced RealMedia Export Plug-in for Premiere 6.0
"SAMSUNG CDMA Modem" = SAMSUNG CDMA Modem Driver Set
"SecondLife" = SecondLife (remove only)
"ShockwaveFlash" = Macromedia Flash Player 8
"SpywareBlaster_is1" = SpywareBlaster v2.6.1
"ST6UNST #1" = Rostrum Camera
"SysInfo" = Creative System Information
"TomTom HOME" = TomTom HOME 2.6.3.1609
"TurboDemo 7 - Trial_is1" = TurboDemo 7 - Trial
"Visual C# 2005 Express Edition Beta - English" = Visual C# 2005 Express Edition Beta - English
"VLC media player" = VLC media player 1.0.1
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"WIC" = Windows Imaging Component
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 2
"WinRAR archiver" = WinRAR archiver
"WinZip" = WinZip
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01009" = Microsoft User-Mode Driver Framework Feature Pack 1.9
"Xvid_is1" = Xvid 1.2.2 final uninstall
"Yahoo! Companion" = Yahoo! Companion
"ZENcast Organizer" = ZENcast Organizer
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"uTorrent" = µTorrent
"VideoEgg" = VideoEgg Publisher
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 28/09/2010 16:35:59 | Computer Name = SPEEDY | Source = MSSQL$SQLEXPRESS | ID = 17051
Description = SQL Server evaluation period has expired.
Error - 28/09/2010 18:33:58 | Computer Name = SPEEDY | Source = MSSQL$SQLEXPRESS | ID = 17051
Description = SQL Server evaluation period has expired.
Error - 29/09/2010 12:25:48 | Computer Name = SPEEDY | Source = MSSQL$SQLEXPRESS | ID = 17051
Description = SQL Server evaluation period has expired.
Error - 29/09/2010 14:09:14 | Computer Name = SPEEDY | Source = MSSQL$SQLEXPRESS | ID = 17051
Description = SQL Server evaluation period has expired.
Error - 30/09/2010 10:36:19 | Computer Name = SPEEDY | Source = Application Error | ID = 1000
Description = Faulting application cpfupdat.exe, version 2.4.0.5, faulting module
unknown, version 0.0.0.0, fault address 0x0071001f.
Error - 01/10/2010 09:13:41 | Computer Name = SPEEDY | Source = MSSQL$SQLEXPRESS | ID = 17051
Description = SQL Server evaluation period has expired.
Error - 03/10/2010 07:18:20 | Computer Name = SPEEDY | Source = MSSQL$SQLEXPRESS | ID = 17051
Description = SQL Server evaluation period has expired.
Error - 03/10/2010 08:22:29 | Computer Name = SPEEDY | Source = Application Hang | ID = 1002
Description = Hanging application LXBBJSWX.EXE, version 0.0.0.0, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 03/10/2010 08:22:30 | Computer Name = SPEEDY | Source = Application Hang | ID = 1002
Description = Hanging application LXBBJSWX.EXE, version 0.0.0.0, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 03/10/2010 08:22:30 | Computer Name = SPEEDY | Source = Application Hang | ID = 1002
Description = Hanging application LXBBJSWX.EXE, version 0.0.0.0, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
[ System Events ]
Error - 03/10/2010 08:22:18 | Computer Name = SPEEDY | Source = W32Time | ID = 39452689
Description = Time Provider NtpClient: An error occurred during DNS lookup of the
manually configured peer 'time.nist.gov,0x1'. NtpClient will try the DNS lookup
again in 15 minutes. The error was: A socket operation was attempted to an unreachable
host. (0x80072751)
Error - 03/10/2010 08:22:18 | Computer Name = SPEEDY | Source = W32Time | ID = 39452701
Description = The time provider NtpClient is configured to acquire time from one
or more time sources, however none of the sources are currently accessible. No attempt
to contact a source will be made for 14 minutes. NtpClient has no source of accurate
time.
Error - 03/10/2010 08:37:17 | Computer Name = SPEEDY | Source = W32Time | ID = 39452689
Description = Time Provider NtpClient: An error occurred during DNS lookup of the
manually configured peer 'time.nist.gov,0x1'. NtpClient will try the DNS lookup
again in 30 minutes. The error was: A socket operation was attempted to an unreachable
host. (0x80072751)
Error - 03/10/2010 08:37:17 | Computer Name = SPEEDY | Source = W32Time | ID = 39452701
Description = The time provider NtpClient is configured to acquire time from one
or more time sources, however none of the sources are currently accessible. No attempt
to contact a source will be made for 29 minutes. NtpClient has no source of accurate
time.
Error - 03/10/2010 09:07:17 | Computer Name = SPEEDY | Source = W32Time | ID = 39452689
Description = Time Provider NtpClient: An error occurred during DNS lookup of the
manually configured peer 'time.nist.gov,0x1'. NtpClient will try the DNS lookup
again in 60 minutes. The error was: A socket operation was attempted to an unreachable
host. (0x80072751)
Error - 03/10/2010 09:07:17 | Computer Name = SPEEDY | Source = W32Time | ID = 39452701
Description = The time provider NtpClient is configured to acquire time from one
or more time sources, however none of the sources are currently accessible. No attempt
to contact a source will be made for 59 minutes. NtpClient has no source of accurate
time.
Error - 03/10/2010 09:55:46 | Computer Name = SPEEDY | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 03/10/2010 09:58:55 | Computer Name = SPEEDY | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 03/10/2010 10:07:21 | Computer Name = SPEEDY | Source = W32Time | ID = 39452689
Description = Time Provider NtpClient: An error occurred during DNS lookup of the
manually configured peer 'time.nist.gov,0x1'. NtpClient will try the DNS lookup
again in 120 minutes. The error was: A socket operation was attempted to an unreachable
host. (0x80072751)
Error - 03/10/2010 10:07:21 | Computer Name = SPEEDY | Source = W32Time | ID = 39452701
Description = The time provider NtpClient is configured to acquire time from one
or more time sources, however none of the sources are currently accessible. No attempt
to contact a source will be made for 119 minutes. NtpClient has no source of accurate
time.
< End of report >
Thanks!