everytime i reboot, im getting a notice from AVG that says a system restart is required in order to continue with the installation. AVG is installed and running correctly, so i dont know what all thats about. heres the new otl log.
OTL logfile created on: 4/29/2011 11:37:29 AM - Run 2
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Nikki\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19019)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 72.00% Memory free
6.00 Gb Paging File | 5.00 Gb Available in Paging File | 88.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 231.42 Gb Total Space | 169.29 Gb Free Space | 73.15% Space Free | Partition Type: NTFS
Computer Name: NIKKI-PC | User Name: Nikki | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Program Files\AVG\AVG9\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Users\Nikki\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe (TOSHIBA Corporation)
PRC - C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
PRC - c:\TOSHIBA\IVP\swupdate\swupdtmr.exe ()
PRC - C:\TOSHIBA\IVP\ISM\pinger.exe ()
PRC - C:\Windows\System32\agrsmsvc.exe (Agere Systems)
PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
========== Modules (SafeList) ==========
MOD - C:\Windows\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
MOD - C:\Users\Nikki\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (avg9wd) – C:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (YahooAUService) – C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
SRV - (SprintRcAppSvc) – C:\Program Files\Sprint\Sprint SmartView\RcAppSvc.exe (PCTEL)
SRV - (CASprint) – C:\Program Files\Sprint\Sprint SmartView\ConAppsSvc.exe (PCTEL)
SRV - (TNaviSrv) – C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
SRV - (WinDefend) – C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (TosCoSrv) – C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
SRV - (ConfigFree Service) – C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
SRV - (TOSHIBA SMART Log Service) – C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe (TOSHIBA Corporation)
SRV - (TODDSrv) – C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
SRV - (jswpsapi) – C:\Program Files\Jumpstart\jswpsapi.exe (Atheros Communications, Inc.)
SRV - (Swupdtmr) – c:\TOSHIBA\IVP\swupdate\swupdtmr.exe ()
SRV - (GameConsoleService) – C:\Program Files\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe (WildTangent, Inc.)
SRV - (pinger) – C:\TOSHIBA\IVP\ISM\pinger.exe ()
SRV - (AgereModemAudio) – C:\Windows\System32\agrsmsvc.exe (Agere Systems)
SRV - (UleadBurningHelper) – C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
========== Driver Services (SafeList) ==========
DRV - (AvgTdiX) – C:\Windows\System32\drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgLdx86) – C:\Windows\System32\drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgMfx86) – C:\Windows\System32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (SWNC5E00) Sierra Wireless MUX NDIS Driver (#00) – C:\Windows\System32\drivers\SWNC5E00.sys (Sierra Wireless Inc.)
DRV - (swmx00) Sierra Wireless USB MUX Driver (#00) – C:\Windows\System32\drivers\swmx00.sys (Sierra Wireless Inc.)
DRV - (swmsflt) – C:\Windows\System32\drivers\swmsflt.sys ()
DRV - (Nmea) – C:\Windows\System32\drivers\pctnullport.sys (PCTEL Inc.)
DRV - (PCTINDIS5) – C:\Windows\System32\PCTINDIS5.sys (PCTEL Inc.)
DRV - (athr) – C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.)
DRV - (tos_sps32) – C:\Windows\system32\DRIVERS\tos_sps32.sys (TOSHIBA Corporation)
DRV - (RTL8169) – C:\Windows\System32\drivers\Rtlh86.sys (Realtek Corporation )
DRV - (UVCFTR) – C:\Windows\System32\drivers\UVCFTR_S.SYS (Chicony Electronics Co., Ltd.)
DRV - (TVALZ) – C:\Windows\system32\DRIVERS\TVALZ_O.SYS (TOSHIBA Corporation)
DRV - (PCASp50) – C:\Windows\System32\drivers\PCASp50.sys (Printing Communications Assoc., Inc. (PCAUSA))
DRV - (NWADI) – C:\Windows\System32\drivers\NWADIenum.sys (Novatel Wireless Inc)
DRV - (jswpslwf) – C:\Windows\System32\drivers\jswpslwf.sys (Atheros Communications, Inc.)
DRV - (atikmdag) – C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (AgereSoftModem) – C:\Windows\System32\drivers\AGRSM.sys (Agere Systems)
DRV - (FwLnk) – C:\Windows\System32\drivers\FwLnk.sys (TOSHIBA Corporation)
DRV - (KR10I) – C:\Windows\system32\drivers\kr10i.sys (TOSHIBA CORPORATION)
DRV - (KR10N) – C:\Windows\system32\drivers\kr10n.sys (TOSHIBA CORPORATION)
DRV - (AtiPcie) ATI PCI Express (3GIO) – C:\Windows\system32\DRIVERS\AtiPcie.sys (ATI Technologies Inc.)
DRV - (tdcmdpst) – C:\Windows\System32\drivers\tdcmdpst.sys (TOSHIBA Corporation.)
DRV - (Cdralw2k) – C:\Windows\System32\drivers\cdralw2k.sys (Sonic Solutions)
DRV - (Cdr4_xp) – C:\Windows\System32\drivers\cdr4_xp.sys (Sonic Solutions)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch = http://us.rd.yahoo.com/customize/ie/defaul…rch/search.html
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3108643506-636927696-2022615235-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/?ilc=1
IE - HKU\S-1-5-21-3108643506-636927696-2022615235-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3108643506-636927696-2022615235-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "
http://www.yahoo.com/?ilc=1"
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.872
FF - prefs.js..network.proxy.type: 0
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG9\Firefox [2011/04/29 09:47:06 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/12/22 22:29:36 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/02/19 14:34:52 | 000,000,000 | —D | M]
[2010/07/11 03:31:02 | 000,000,000 | —D | M] (No name found) – C:\Users\Nikki\AppData\Roaming\Mozilla\Extensions
[2011/04/29 10:04:07 | 000,000,000 | —D | M] (No name found) – C:\Users\Nikki\AppData\Roaming\Mozilla\Firefox\Profiles\k4l2ljw5.default\extensions
[2010/08/11 02:37:37 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Users\Nikki\AppData\Roaming\Mozilla\Firefox\Profiles\k4l2ljw5.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/07/11 03:29:26 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/04/29 09:47:06 | 000,000,000 | —D | M] (AVG Safe Search) – C:\PROGRAM FILES\AVG\AVG9\FIREFOX
O1 HOSTS File: ([2011/04/24 06:22:50 | 000,000,027 | —- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [AVG9_TRAY] C:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [MFARestart] C:\ProgramData\MFAData\pack\avgrunasx.exe ()
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [Sprint SmartView] C:\Program Files\Sprint\Sprint SmartView\SprintSV.exe (Sprint)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\Windows\System32\cmd.exe (Microsoft Corporation)
O4 - Startup: C:\Users\Nikki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sticky Notes.lnk = C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-21-3108643506-636927696-2022615235-1000\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-21-3108643506-636927696-2022615235-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll (Sun Microsystems, Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flash…r/ultrashim.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - AppInit_DLLs: (avgrsstx.dll) - C:\Windows\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 17:43:36 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = ComFile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
O37 - HKU\S-1-5-21-3108643506-636927696-2022615235-1000\…exe [@ = exefile] – Reg Error: Key error. File not found
========== Files/Folders - Created Within 30 Days ==========
[2011/04/29 09:49:20 | 000,000,000 | -H-D | C] – C:\ProgramData\Common Files
[2011/04/29 09:49:19 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Free 9.0
[2011/04/29 09:49:17 | 000,012,536 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\Windows\System32\avgrsstx.dll
[2011/04/29 09:49:15 | 000,243,024 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\Windows\System32\drivers\avgtdix.sys
[2011/04/29 09:49:05 | 000,216,400 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\Windows\System32\drivers\avgldx86.sys
[2011/04/29 09:49:02 | 000,029,584 | —- | C] (AVG Technologies CZ, s.r.o.) – C:\Windows\System32\drivers\avgmfx86.sys
[2011/04/29 09:49:01 | 000,000,000 | —D | C] – C:\Windows\System32\drivers\Avg
[2011/04/29 07:35:27 | 000,580,608 | —- | C] (OldTimer Tools) – C:\Users\Nikki\Desktop\OTL.exe
[2011/04/29 07:25:33 | 000,038,224 | —- | C] (Malwarebytes Corporation) – C:\Windows\System32\drivers\mbamswissarmy.sys
[2011/04/29 07:25:33 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/04/29 07:25:30 | 000,020,952 | —- | C] (Malwarebytes Corporation) – C:\Windows\System32\drivers\mbam.sys
[2011/04/29 07:25:30 | 000,000,000 | —D | C] – C:\Program Files\Malwarebytes' Anti-Malware
[2011/04/29 07:24:36 | 007,734,208 | —- | C] (Malwarebytes Corporation ) – C:\Users\Nikki\Desktop\mbam-setup-1.50.1.1100.exe
[2011/04/29 07:22:22 | 000,050,688 | —- | C] (Atribune.org) – C:\Users\Nikki\Desktop\ATF-Cleaner.exe
[2011/04/24 13:07:07 | 000,000,000 | —D | C] – C:\Users\Nikki\Documents\LOC_GER
[2011/04/24 06:24:45 | 000,000,000 | -HSD | C] – C:\$RECYCLE.BIN
[2011/04/24 06:24:43 | 000,000,000 | —D | C] – C:\Windows\temp
[2011/04/24 06:24:42 | 000,000,000 | —D | C] – C:\Users\Nikki\AppData\Local\temp
[2011/04/24 06:13:33 | 000,161,792 | —- | C] (SteelWerX) – C:\Windows\SWREG.exe
[2011/04/24 06:13:33 | 000,136,704 | —- | C] (SteelWerX) – C:\Windows\SWSC.exe
[2011/04/24 06:13:33 | 000,031,232 | —- | C] (NirSoft) – C:\Windows\NIRCMD.exe
[2011/04/24 06:13:25 | 000,000,000 | —D | C] – C:\Windows\ERDNT
[2011/04/24 06:13:04 | 000,212,480 | —- | C] (SteelWerX) – C:\Windows\SWXCACLS.exe
[2011/04/24 06:07:24 | 000,000,000 | —D | C] – C:\Qoobox
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/04/29 11:41:11 | 000,604,502 | —- | M] () – C:\Windows\System32\perfh009.dat
[2011/04/29 11:41:11 | 000,104,170 | —- | M] () – C:\Windows\System32\perfc009.dat
[2011/04/29 11:35:26 | 000,000,434 | —- | M] () – C:\Windows\System32\drivers\etc\hosts.ics
[2011/04/29 11:35:09 | 000,003,744 | -H– | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/04/29 11:35:09 | 000,003,744 | -H– | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/04/29 11:35:02 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2011/04/29 11:29:43 | 000,932,400 | —- | M] () – C:\Users\Nikki\Desktop\Norton_Removal_Tool.exe
[2011/04/29 09:49:19 | 000,012,536 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Windows\System32\avgrsstx.dll
[2011/04/29 09:49:19 | 000,001,658 | —- | M] () – C:\Users\Public\Desktop\AVG Free 9.0.lnk
[2011/04/29 09:49:17 | 000,243,024 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Windows\System32\drivers\avgtdix.sys
[2011/04/29 09:49:05 | 000,216,400 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Windows\System32\drivers\avgldx86.sys
[2011/04/29 09:49:04 | 000,029,584 | —- | M] (AVG Technologies CZ, s.r.o.) – C:\Windows\System32\drivers\avgmfx86.sys
[2011/04/29 09:49:02 | 075,311,071 | —- | M] () – C:\Windows\System32\drivers\Avg\incavi.avm
[2011/04/29 09:49:02 | 000,113,461 | —- | M] () – C:\Windows\System32\drivers\Avg\iavichjw.avm
[2011/04/29 07:35:28 | 000,580,608 | —- | M] (OldTimer Tools) – C:\Users\Nikki\Desktop\OTL.exe
[2011/04/29 07:25:34 | 000,000,917 | —- | M] () – C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/04/29 07:24:44 | 007,734,208 | —- | M] (Malwarebytes Corporation ) – C:\Users\Nikki\Desktop\mbam-setup-1.50.1.1100.exe
[2011/04/29 07:22:36 | 000,050,688 | —- | M] (Atribune.org) – C:\Users\Nikki\Desktop\ATF-Cleaner.exe
[2011/04/28 22:56:24 | 000,000,422 | -H– | M] () – C:\Windows\tasks\User_Feed_Synchronization-{A0685C0D-F3D6-46E3-BCD8-ED50FC5E8D7C}.job
[2011/04/24 13:20:15 | 002,883,584 | -HS- | M] () – C:\Users\Nikki\ntuser.bak
[2011/04/24 13:19:20 | 000,000,363 | —- | M] () – C:\Users\Nikki\Desktop\Regfix.reg
[2011/04/24 13:17:43 | 000,000,288 | —- | M] () – C:\Users\Nikki\Desktop\notepad - Shortcut.lnk
[2011/04/24 12:39:21 | 000,000,272 | —- | M] () – C:\Users\Nikki\Desktop\erunt - Shortcut.lnk
[2011/04/24 06:22:50 | 000,000,027 | —- | M] () – C:\Windows\System32\drivers\etc\hosts
[2011/04/24 06:05:47 | 000,000,293 | —- | M] () – C:\Users\Nikki\Desktop\ComboFix - Shortcut.lnk
[2011/04/23 23:24:02 | 000,002,207 | —- | M] () – C:\Users\Nikki\Desktop\Attach.zip
[2011/04/23 23:18:15 | 000,000,272 | —- | M] () – C:\Users\Nikki\Desktop\dds - Shortcut.lnk
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/04/29 11:29:40 | 000,932,400 | —- | C] () – C:\Users\Nikki\Desktop\Norton_Removal_Tool.exe
[2011/04/29 09:49:19 | 000,001,658 | —- | C] () – C:\Users\Public\Desktop\AVG Free 9.0.lnk
[2011/04/29 09:49:02 | 000,113,461 | —- | C] () – C:\Windows\System32\drivers\Avg\iavichjw.avm
[2011/04/29 09:49:01 | 075,311,071 | —- | C] () – C:\Windows\System32\drivers\Avg\incavi.avm
[2011/04/29 07:25:34 | 000,000,917 | —- | C] () – C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/04/28 23:06:39 | 000,001,122 | —- | C] () – C:\Users\Nikki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk
[2011/04/24 13:19:20 | 000,000,363 | —- | C] () – C:\Users\Nikki\Desktop\Regfix.reg
[2011/04/24 13:17:43 | 000,000,288 | —- | C] () – C:\Users\Nikki\Desktop\notepad - Shortcut.lnk
[2011/04/24 12:39:21 | 000,000,272 | —- | C] () – C:\Users\Nikki\Desktop\erunt - Shortcut.lnk
[2011/04/24 06:13:33 | 000,256,512 | —- | C] () – C:\Windows\PEV.exe
[2011/04/24 06:13:33 | 000,098,816 | —- | C] () – C:\Windows\sed.exe
[2011/04/24 06:13:33 | 000,089,088 | —- | C] () – C:\Windows\MBR.exe
[2011/04/24 06:13:33 | 000,080,412 | —- | C] () – C:\Windows\grep.exe
[2011/04/24 06:13:33 | 000,068,096 | —- | C] () – C:\Windows\zip.exe
[2011/04/24 06:05:47 | 000,000,293 | —- | C] () – C:\Users\Nikki\Desktop\ComboFix - Shortcut.lnk
[2011/04/23 23:24:02 | 000,002,207 | —- | C] () – C:\Users\Nikki\Desktop\Attach.zip
[2011/04/23 23:18:15 | 000,000,272 | —- | C] () – C:\Users\Nikki\Desktop\dds - Shortcut.lnk
[2010/07/03 16:54:18 | 000,107,612 | —- | C] () – C:\Windows\System32\StructuredQuerySchema.bin
[2010/07/03 16:52:31 | 000,117,248 | —- | C] () – C:\Windows\System32\EhStorAuthn.dll
[2009/08/03 15:07:42 | 000,403,816 | —- | C] () – C:\Windows\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | —- | C] () – C:\Windows\System32\OGAEXEC.exe
[2009/03/02 17:15:50 | 000,000,322 | —- | C] () – C:\Users\Nikki\AppData\Roaming\wklnhst.dat
[2009/02/04 07:17:48 | 000,018,904 | —- | C] () – C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009/02/03 16:22:36 | 000,000,056 | -H– | C] () – C:\ProgramData\ezsidmv.dat
[2009/02/03 16:11:13 | 000,007,680 | —- | C] () – C:\Users\Nikki\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/02/03 05:39:04 | 000,000,013 | RHS- | C] () – C:\Windows\System32\drivers\fbd.sys
[2009/02/03 05:39:04 | 000,000,004 | RHS- | C] () – C:\Windows\System32\drivers\taishop.sys
[2008/08/27 04:08:53 | 000,128,113 | —- | C] () – C:\Windows\System32\csellang.ini
[2008/08/27 04:08:53 | 000,045,056 | —- | C] () – C:\Windows\System32\csellang.dll
[2008/08/27 04:08:53 | 000,010,150 | —- | C] () – C:\Windows\System32\tosmreg.ini
[2008/08/27 04:08:53 | 000,007,671 | —- | C] () – C:\Windows\System32\cseltbl.ini
[2008/03/05 15:41:58 | 000,024,840 | —- | C] () – C:\Windows\System32\drivers\swmsflt.sys
[2008/02/13 14:15:06 | 000,000,000 | —- | C] () – C:\Windows\NDSTray.INI
[2008/02/12 22:23:20 | 000,204,800 | —- | C] () – C:\Windows\System32\IVIresizeW7.dll
[2008/02/12 22:23:20 | 000,200,704 | —- | C] () – C:\Windows\System32\IVIresizeA6.dll
[2008/02/12 22:23:20 | 000,192,512 | —- | C] () – C:\Windows\System32\IVIresizeP6.dll
[2008/02/12 22:23:20 | 000,192,512 | —- | C] () – C:\Windows\System32\IVIresizeM6.dll
[2008/02/12 22:23:20 | 000,188,416 | —- | C] () – C:\Windows\System32\IVIresizePX.dll
[2008/02/12 22:23:20 | 000,020,480 | —- | C] () – C:\Windows\System32\IVIresize.dll
[2008/02/12 18:28:00 | 000,157,040 | —- | C] () – C:\Windows\fdbpinger.exe
[2008/01/28 21:01:42 | 000,057,344 | —- | C] () – C:\Windows\System32\SmartFaceVCapt.dll
[2008/01/28 21:01:06 | 000,471,040 | —- | C] () – C:\Windows\System32\SmartFaceVCP.dll
[2008/01/28 20:53:02 | 006,701,056 | —- | C] () – C:\Windows\System32\FaceHI.dll
[2008/01/28 20:53:02 | 000,995,328 | —- | C] () – C:\Windows\System32\FaceRec.dll
[2008/01/28 20:53:02 | 000,126,976 | —- | C] () – C:\Windows\System32\SmartFaceVCtrl.dll
[2008/01/28 20:52:28 | 000,094,208 | —- | C] () – C:\Windows\System32\IppLib.dll
[2007/07/28 01:26:30 | 000,159,744 | —- | C] () – C:\Windows\System32\atitmmxx.dll
[2007/07/28 01:01:12 | 003,107,788 | —- | C] () – C:\Windows\System32\atiumdva.dat
[2007/02/20 18:39:10 | 000,144,773 | —- | C] () – C:\Windows\System32\atiicdxx.dat
[2006/11/02 08:57:28 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat
[2006/11/02 08:47:37 | 000,326,168 | —- | C] () – C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 08:35:32 | 000,005,632 | —- | C] () – C:\Windows\System32\sysprepMCE.dll
[2006/11/02 06:33:01 | 000,604,502 | —- | C] () – C:\Windows\System32\perfh009.dat
[2006/11/02 06:33:01 | 000,287,440 | —- | C] () – C:\Windows\System32\perfi009.dat
[2006/11/02 06:33:01 | 000,104,170 | —- | C] () – C:\Windows\System32\perfc009.dat
[2006/11/02 06:33:01 | 000,030,674 | —- | C] () – C:\Windows\System32\perfd009.dat
[2006/11/02 06:23:21 | 000,215,943 | —- | C] () – C:\Windows\System32\dssec.dat
[2006/11/02 04:58:30 | 000,043,131 | —- | C] () – C:\Windows\mib.bin
[2006/11/02 04:19:00 | 000,000,741 | —- | C] () – C:\Windows\System32\NOISE.DAT
[2006/11/02 03:40:29 | 000,013,750 | —- | C] () – C:\Windows\System32\pacerprf.ini
[2006/11/02 03:25:31 | 000,673,088 | —- | C] () – C:\Windows\System32\mlang.dat
========== LOP Check ==========
[2010/09/30 01:52:58 | 000,000,000 | —D | M] – C:\Users\Nikki\AppData\Roaming\Amazon
[2009/05/27 18:45:42 | 000,000,000 | —D | M] – C:\Users\Nikki\AppData\Roaming\Template
[2009/12/09 17:47:57 | 000,000,000 | —D | M] – C:\Users\Nikki\AppData\Roaming\TOSHIBA
[2009/03/18 15:09:53 | 000,000,000 | —D | M] – C:\Users\Nikki\AppData\Roaming\WildTangent
[2009/02/03 16:15:01 | 000,000,000 | —D | M] – C:\Users\Nikki\AppData\Roaming\WinBatch
[2010/10/30 19:40:34 | 000,000,000 | —D | M] – C:\Users\Nikki\AppData\Roaming\Zeon
[2011/04/29 11:33:52 | 000,032,550 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT
[2011/04/28 22:56:24 | 000,000,422 | -H– | M] () – C:\Windows\Tasks\User_Feed_Synchronization-{A0685C0D-F3D6-46E3-BCD8-ED50FC5E8D7C}.job
========== Purity Check ==========
< End of report >