OTL ran fine this time, guessing the rubbish eset threw out helped
OTL logfile created on: 6/25/2011 11:47:57 PM - Run 1
OTL by OldTimer - Version 3.2.24.1 Folder = C:\Users\User\Desktop
Starter Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1013.30 Mb Total Physical Memory | 409.71 Mb Available Physical Memory | 40.43% Memory free
1.99 Gb Paging File | 0.92 Gb Available in Paging File | 46.23% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 60.98 Gb Total Space | 1.49 Gb Free Space | 2.44% Space Free | Partition Type: NTFS
Drive D: | 152.42 Gb Total Space | 1.16 Gb Free Space | 0.76% Space Free | Partition Type: NTFS
Drive G: | 3.68 Gb Total Space | 0.26 Gb Free Space | 6.94% Space Free | Partition Type: FAT32
Computer Name: PC | User Name: User | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\User\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files\STOPzilla!\STOPzilla.exe (iS3, Inc.)
PRC - C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe (iS3, Inc.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Simple DNS Plus\sdnsmain.exe (JH Software ApS)
PRC - C:\Program Files\Kodak\KODAK Share Button App\Listener.exe (Eastman Kodak Company)
PRC - C:\Program Files\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
PRC - C:\Program Files\T-Mobile\T-Mobile Internet Manager\DataCardMonitor.exe (Huawei Technologies Co., Ltd.)
PRC - C:\Program Files\Common Files\Java\Java Update\jucheck.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
PRC - C:\Program Files\CyberLink\Shared files\brs.exe (cyberlink)
PRC - C:\Program Files\McAfee\VirusScan\Mcshield.exe (McAfee, Inc.)
PRC - c:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\MSC\mcmscsvc.exe (McAfee, Inc.)
PRC - C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.)
PRC - C:\Program Files\HyperSpace\HSControlCenter.exe (Phoenix Technologies)
PRC - C:\Program Files\HyperSpace\FSTransManager.exe ()
PRC - C:\Program Files\HyperSpace\HSServiceLauncher.exe ()
PRC - C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe (SEC)
PRC - C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe (Samsung Electronics Co., Ltd.)
PRC - C:\Program Files\McAfee\MPF\MpfSrv.exe (McAfee, Inc.)
PRC - C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe (SAMSUNG Electronics)
PRC - C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe (Samsung Electronics Co., Ltd.)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
PRC - C:\Program Files\McAfee\MSK\msksrver.exe (McAfee, Inc.)
PRC - C:\Program Files\Samsung Casual Games\GameConsole\OberonGameConsoleService.exe ()
PRC - C:\Program Files\Samsung\Samsung Update Plus\SUPNotifier.exe ()
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
PRC - c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.)
PRC - c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe (McAfee, Inc.)
PRC - C:\Users\User\AppData\Roaming\T-Mobile Internet Manager\ouc.exe (Huawei Technologies Co., Ltd.)
PRC - C:\Windows\System32\Rezip.exe ()
PRC - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe ()
PRC - C:\Program Files\Kontiki\KService.exe (Kontiki Inc.)
========== Modules (SafeList) ==========
MOD - C:\Users\User\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation)
MOD - C:\Program Files\WIDCOMM\Bluetooth Software\BtMmHook.dll (Broadcom Corporation.)
MOD - C:\Program Files\McAfee\SiteAdvisor\sahook.dll ()
========== Win32 Services (SafeList) ==========
SRV - (MBAMService) – C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (szserver) – C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe (iS3, Inc.)
SRV - (sdnsplus) – C:\Program Files\Simple DNS Plus\sdnsmain.exe (JH Software ApS)
SRV - (rpcapd) Remote Packet Capture Protocol v.0 (experimental) – C:\Program Files\WinPcap\rpcapd.exe (CACE Technologies, Inc.)
SRV - (avast! Web Scanner) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (avast! Mail Scanner) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (avast! Antivirus) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (McODS) – C:\Program Files\McAfee\VirusScan\mcods.exe (McAfee, Inc.)
SRV - (McShield) – C:\Program Files\McAfee\VirusScan\Mcshield.exe (McAfee, Inc.)
SRV - (McSysmon) – C:\Program Files\McAfee\VirusScan\mcsysmon.exe (McAfee, Inc.)
SRV - (mcmscsvc) – C:\Program Files\McAfee\MSC\mcmscsvc.exe (McAfee, Inc.)
SRV - (HS Service Launcher) – C:\Program Files\HyperSpace\HSServiceLauncher.exe ()
SRV - (MpfService) – C:\Program Files\McAfee\MPF\MPFSrv.exe (McAfee, Inc.)
SRV - (btwdins) – C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
SRV - (MSK80Service) – C:\Program Files\McAfee\MSK\MskSrver.exe (McAfee, Inc.)
SRV - (OberonGameConsoleService) – C:\Program Files\Samsung Casual Games\GameConsole\OberonGameConsoleService.exe ()
SRV - (McProxy) – c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.)
SRV - (McNASvc) – c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe (McAfee, Inc.)
SRV - (Rezip) – C:\Windows\System32\Rezip.exe ()
SRV - (McAfee SiteAdvisor Service) – C:\Program Files\McAfee\SiteAdvisor\McSACore.exe ()
SRV - (KService) – C:\Program Files\Kontiki\KService.exe (Kontiki Inc.)
========== Driver Services (SafeList) ==========
DRV - (MBAMProtector) – C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (NPF) – C:\Windows\System32\drivers\npf.sys (CACE Technologies, Inc.)
DRV - (szkgfs) – C:\windows\system32\drivers\szkgfs.sys (iS3, Inc.)
DRV - (aswTdi) – C:\windows\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (aswSP) – C:\windows\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswRdr) – C:\windows\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswMonFlt) – C:\Windows\System32\drivers\aswMonFlt.sys (ALWIL Software)
DRV - (aswFsBlk) – C:\windows\System32\drivers\aswFsBlk.sys (ALWIL Software)
DRV - ({1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC}) – C:\Program Files\CyberLink\PowerDVD10\NavFilter\000.fcl (CyberLink Corp.)
DRV - (mfehidk) – C:\Windows\System32\drivers\mfehidk.sys (McAfee, Inc.)
DRV - (mfeavfk) – C:\Windows\System32\drivers\mfeavfk.sys (McAfee, Inc.)
DRV - (mfesmfk) – C:\Windows\System32\drivers\mfesmfk.sys (McAfee, Inc.)
DRV - (mfebopk) – C:\Windows\System32\drivers\mfebopk.sys (McAfee, Inc.)
DRV - (mferkdk) – C:\Windows\System32\drivers\mferkdk.sys (McAfee, Inc.)
DRV - (zgwhsnmea) – C:\Windows\System32\drivers\zgwhsnmea.sys (ZTE Incorporated)
DRV - (zgwhsmdm) – C:\Windows\System32\drivers\zgwhsmdm.sys (ZTE Incorporated)
DRV - (zgwhsdiag) – C:\Windows\System32\drivers\zgwhsdiag.sys (ZTE Incorporated)
DRV - (szkg5) – C:\windows\system32\DRIVERS\szkg.sys (iS3 Inc.)
DRV - (is3srv) – C:\windows\system32\drivers\is3srv.sys (iS3 Inc.)
DRV - (DRToggleSleep) – C:\Program Files\HyperSpace\DRToggleSleep.sys (Windows ® Codename Longhorn DDK provider)
DRV - (PhnxBldr) – C:\Program Files\HyperSpace\PhnxBldr.sys (Phoenix Technologies Ltd.)
DRV - (USB28xxBGA) – C:\Windows\System32\drivers\emBDA.sys (eMPIA Technology, Inc.)
DRV - (emAudio) – C:\Windows\System32\drivers\emAudio.sys (eMPIA Technology, Inc.)
DRV - (USB28xxOEM) – C:\Windows\System32\drivers\emOEM.sys (eMPIA Technology, Inc.)
DRV - (BRCMDECO) – C:\Windows\System32\drivers\BRCMHD32.sys (Broadcom Corporation)
DRV - (rtl819xp) Realtek RTL8190\RTL8192E 802.11n Wireless LAN (Mini-) – C:\Windows\System32\drivers\rtl819xp.sys (Realtek Semiconductor Corporation )
DRV - (yukonw7) – C:\Windows\System32\drivers\yk62x86.sys ()
DRV - (vwifimp) – C:\Windows\System32\drivers\vwifimp.sys (Microsoft Corporation)
DRV - (WinUsb) – C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
DRV - (btusbflt) – C:\Windows\System32\drivers\btusbflt.sys (Broadcom Corporation.)
DRV - (MPFP) – C:\Windows\System32\drivers\Mpfp.sys (McAfee, Inc.)
DRV - (ewusbnet) – C:\Windows\System32\drivers\ewusbnet.sys (Huawei Technologies Co., Ltd.)
DRV - (hwusbfake) – C:\Windows\System32\drivers\ewusbfake.sys (Huawei Technologies Co., Ltd.)
DRV - (hwdatacard) – C:\Windows\System32\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.)
DRV - (tcpipBM) – C:\windows\System32\drivers\tcpipBM.sys (Bytemobile, Inc.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/ig/redirectdomain?br…n&bmod=smsn
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2011/06/25 20:59:33 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.18\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/06/24 11:14:58 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.18\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/06/24 11:14:58 | 000,000,000 | —D | M]
[2010/04/29 18:00:29 | 000,000,000 | —D | M] (No name found) – C:\Users\User\AppData\Roaming\Mozilla\Extensions
[2010/10/30 15:49:27 | 000,000,000 | —D | M] (No name found) – C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\p3iqggre.default\extensions
[2011/06/25 16:09:35 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2010/05/06 23:09:00 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/10/11 18:45:00 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/07/17 05:00:04 | 000,423,656 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2011/06/24 11:14:46 | 000,001,538 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2011/06/24 11:14:46 | 000,000,947 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2011/06/24 11:14:46 | 000,000,769 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2011/06/24 11:14:47 | 000,001,135 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: ([2011/06/25 10:21:21 | 000,000,027 | —- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (SnagIt Toolbar Loader) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\Snagit 9\SnagitBHO.dll (TechSmith Corporation)
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O2 - BHO: (STOPzilla Browser Helper Object) - {E3215F20-3212-11D6-9F8B-00D0B743919D} - C:\Program Files\STOPzilla!\SZIEBHO.dll (iS3, Inc.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O3 - HKLM\..\Toolbar: (Snagit) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\Snagit 9\SnagitIEAddin.dll (TechSmith Corporation)
O4 - HKLM..\Run: [APLangApp] C:\Program Files\AnyPC Client\APLangApp.exe (DoctorSoft)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (ALWIL Software)
O4 - HKLM..\Run: [BDRegion] C:\Program Files\CyberLink\Shared files\brs.exe (cyberlink)
O4 - HKLM..\Run: [DataCardMonitor] C:\Program Files\T-Mobile\T-Mobile Internet Manager\DataCardMonitor.exe (Huawei Technologies Co., Ltd.)
O4 - HKLM..\Run: [fsi] C:\Program Files\Phoenix Technologies Ltd\FailSafe\FailSafeLauncher.exe ()
O4 - HKLM..\Run: [hscontrolcenter] C:\Program Files\HyperSpace\HSControlCenter.exe (Phoenix Technologies)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [RemoteControl10] C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.)
O4 - HKLM..\Run: [Simple DNS Plus] C:\Program Files\Simple DNS Plus\sdnsgui.exe (JH Software ApS)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [HW_OPENEYE_OUC_T-Mobile Internet Manager] C:\Program Files\T-Mobile\T-Mobile Internet Manager\UpdateDog\ouc.exe (Huawei Technologies Co., Ltd.)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O8 - Extra context menu item: Send image to &Bluetooth Device… - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device… - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = ComFile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
O37 - HKCU\…exe [@ = exefile] – Reg Error: Key error. File not found
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.CSCD - C:\windows\System32\camcodec.dll (RenderSoft Software)
Drivers32: vidc.cvid - C:\windows\System32\iccvid.dll (Radius Inc.)
========== Files/Folders - Created Within 30 Days ==========
[2011/06/25 21:50:42 | 000,579,072 | —- | C] (OldTimer Tools) – C:\Users\User\Desktop\OTL.exe
[2011/06/25 16:21:12 | 000,000,000 | —D | C] – C:\Program Files\ESET
[2011/06/25 15:44:48 | 000,000,000 | -HSD | C] – C:\$RECYCLE.BIN
[2011/06/25 15:10:20 | 000,060,416 | —- | C] (NirSoft) – C:\windows\NIRCMD.exe
[2011/06/25 02:42:49 | 000,518,144 | —- | C] (SteelWerX) – C:\windows\SWREG.exe
[2011/06/25 02:42:48 | 000,406,528 | —- | C] (SteelWerX) – C:\windows\SWSC.exe
[2011/06/25 02:41:50 | 000,000,000 | —D | C] – C:\windows\ERDNT
[2011/06/25 02:36:10 | 000,000,000 | —D | C] – C:\Qoobox
[2011/06/25 02:35:00 | 004,136,919 | R— | C] (Swearware) – C:\Users\User\Desktop\ComboFix.exe
[2011/06/24 11:30:58 | 000,000,000 | —D | C] – C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011/06/24 11:30:57 | 000,000,000 | —D | C] – C:\Program Files\Trend Micro
[2011/06/24 10:16:52 | 000,000,000 | —D | C] – C:\Users\User\AppData\Roaming\Windows Loader
[2011/06/21 22:05:15 | 000,000,000 | —D | C] – C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JPEG Recovery Pro
[2011/06/21 22:05:13 | 000,000,000 | —D | C] – C:\Program Files\JPEG Recovery Pro
[2011/06/21 21:44:49 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImageMagick 6.7.0 Q16
[2011/06/21 21:43:28 | 000,000,000 | —D | C] – C:\Program Files\ImageMagick-6.7.0-Q16
[2011/06/21 21:27:18 | 000,000,000 | —D | C] – C:\pics
[2011/06/20 19:28:44 | 000,161,792 | —- | C] (Microsoft Corporation) – C:\windows\System32\d3d10_1.dll
[2011/06/20 19:27:54 | 000,599,552 | —- | C] (Microsoft Corporation) – C:\windows\System32\msfeeds.dll
[2011/06/20 19:27:51 | 000,606,208 | —- | C] (Microsoft Corporation) – C:\windows\System32\mstime.dll
[2011/06/20 19:27:51 | 000,381,440 | —- | C] (Microsoft Corporation) – C:\windows\System32\iedkcs32.dll
[2011/06/20 19:27:50 | 000,185,856 | —- | C] (Microsoft Corporation) – C:\windows\System32\iepeers.dll
[2011/06/20 19:27:50 | 000,176,640 | —- | C] (Microsoft Corporation) – C:\windows\System32\ieui.dll
[2011/06/20 19:27:49 | 000,064,512 | —- | C] (Microsoft Corporation) – C:\windows\System32\msfeedsbs.dll
[2011/06/20 19:27:49 | 000,044,544 | —- | C] (Microsoft Corporation) – C:\windows\System32\licmgr10.dll
[2011/06/20 19:27:48 | 000,048,128 | —- | C] (Microsoft Corporation) – C:\windows\System32\jsproxy.dll
[2011/06/20 19:27:47 | 000,386,048 | —- | C] (Microsoft Corporation) – C:\windows\System32\html.iec
[2011/06/20 19:27:47 | 000,012,800 | —- | C] (Microsoft Corporation) – C:\windows\System32\msfeedssync.exe
[2011/06/20 19:27:46 | 001,638,912 | —- | C] (Microsoft Corporation) – C:\windows\System32\mshtml.tlb
[2011/06/13 13:26:02 | 000,000,000 | —D | C] – C:\New folder
[2011/06/13 02:15:57 | 000,000,000 | —D | C] – C:\Users\User\AppData\Local\FeudalNate
[2011/06/12 16:29:44 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resource Hacker
[2011/06/12 16:29:44 | 000,000,000 | —D | C] – C:\Program Files\Resource Hacker
[2011/06/11 00:05:20 | 000,000,000 | —D | C] – C:\Users\User\AppData\Local\Team_360h
[2011/06/06 13:41:28 | 000,026,496 | —- | C] (Microsoft Corporation) – C:\windows\System32\drivers\Diskdump.sys
[2011/06/06 13:34:51 | 000,123,904 | —- | C] (Microsoft Corporation) – C:\windows\System32\poqexec.exe
========== Files - Modified Within 30 Days ==========
[2011/06/25 21:50:53 | 000,000,248 | —- | M] () – C:\windows\System32\drivers\kgpcpy.cfg
[2011/06/25 21:48:54 | 000,579,072 | —- | M] (OldTimer Tools) – C:\Users\User\Desktop\OTL.exe
[2011/06/25 16:02:14 | 000,010,272 | -H– | M] () – C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/06/25 16:02:14 | 000,010,272 | -H– | M] () – C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/06/25 15:54:39 | 000,000,014 | —- | M] () – C:\windows\System32\setenv.bat
[2011/06/25 15:53:15 | 000,067,584 | –S- | M] () – C:\windows\bootstat.dat
[2011/06/25 15:53:05 | 796,889,088 | -HS- | M] () – C:\hiberfil.sys
[2011/06/25 15:52:23 | 000,023,176 | —- | M] () – C:\windows\System32\Config.MPF
[2011/06/25 10:21:21 | 000,000,027 | —- | M] () – C:\windows\System32\drivers\etc\hosts
[2011/06/25 09:40:36 | 004,136,919 | R— | M] (Swearware) – C:\Users\User\Desktop\ComboFix.exe
[2011/06/25 03:17:23 | 000,616,666 | —- | M] () – C:\windows\System32\perfh009.dat
[2011/06/25 03:17:23 | 000,107,038 | —- | M] () – C:\windows\System32\perfc009.dat
[2011/06/24 14:32:30 | 000,139,264 | —- | M] () – C:\Users\User\Desktop\RKUnhookerLE.EXE
[2011/06/24 12:29:24 | 001,529,856 | —- | M] () – C:\Users\User\Desktop\SpinRite.iso
[2011/06/24 11:30:59 | 000,002,959 | —- | M] () – C:\Users\User\Desktop\HiJackThis.lnk
[2011/06/24 11:29:25 | 001,402,880 | —- | M] () – C:\Users\User\Documents\HiJackThis.msi
[2011/06/24 11:19:56 | 000,000,875 | —- | M] () – C:\Users\User\Desktop\regtools.vbs
[2011/06/23 22:56:05 | 001,362,700 | —- | M] () – C:\Users\User\Desktop\MEJ5YkV4WklXSzVUb056WmpNMkkxTldZdFpETTBOaTAwT0daaExXRm1NVE10TVdJd1kyWm1NREp
tTURBMw==.pdf
[2011/06/21 22:05:15 | 000,001,916 | —- | M] () – C:\Users\User\Desktop\JPEG Recovery Pro 5.lnk
[2011/06/21 21:58:19 | 000,000,822 | —- | M] () – C:\Users\User\.recently-used.xbel
[2011/06/21 21:44:50 | 000,001,967 | —- | M] () – C:\Users\User\Desktop\ImageMagick Display.lnk
[2011/06/13 11:42:24 | 000,016,368 | —- | M] () – C:\filestream.temp
[2011/06/10 23:09:29 | 000,000,988 | —- | M] () – C:\Users\User\AppData\Local\7F68A003.il
[2011/06/10 23:09:29 | 000,000,920 | —- | M] () – C:\Users\User\AppData\Local\IndexIE_7F68A003.il
[2011/05/29 09:11:30 | 000,039,984 | —- | M] (Malwarebytes Corporation) – C:\windows\System32\drivers\mbamswissarmy.sys
[2011/05/29 09:11:20 | 000,022,712 | —- | M] (Malwarebytes Corporation) – C:\windows\System32\drivers\mbam.sys
[2011/05/28 04:00:02 | 001,638,912 | —- | M] (Microsoft Corporation) – C:\windows\System32\mshtml.tlb
========== Files Created - No Company Name ==========
[2011/06/25 21:50:53 | 000,000,248 | —- | C] () – C:\windows\System32\drivers\kgpcpy.cfg
[2011/06/25 02:42:49 | 000,256,512 | —- | C] () – C:\windows\PEV.exe
[2011/06/25 02:42:49 | 000,208,896 | —- | C] () – C:\windows\MBR.exe
[2011/06/25 02:42:49 | 000,068,096 | —- | C] () – C:\windows\zip.exe
[2011/06/25 02:42:48 | 000,098,816 | —- | C] () – C:\windows\sed.exe
[2011/06/25 02:42:48 | 000,080,412 | —- | C] () – C:\windows\grep.exe
[2011/06/24 14:52:57 | 000,139,264 | —- | C] () – C:\Users\User\Desktop\RKUnhookerLE.EXE
[2011/06/24 12:29:24 | 001,529,856 | —- | C] () – C:\Users\User\Desktop\SpinRite.iso
[2011/06/24 11:30:59 | 000,002,959 | —- | C] () – C:\Users\User\Desktop\HiJackThis.lnk
[2011/06/24 11:28:42 | 001,402,880 | —- | C] () – C:\Users\User\Documents\HiJackThis.msi
[2011/06/24 11:19:29 | 000,000,875 | —- | C] () – C:\Users\User\Desktop\regtools.vbs
[2011/06/23 22:56:05 | 001,362,700 | —- | C] () – C:\Users\User\Desktop\MEJ5YkV4WklXSzVUb056WmpNMkkxTldZdFpETTBOaTAwT0daaExXRm1NVE10TVdJd1kyWm1NREp
tTURBMw==.pdf
[2011/06/21 22:05:15 | 000,001,916 | —- | C] () – C:\Users\User\Desktop\JPEG Recovery Pro 5.lnk
[2011/06/21 21:58:19 | 000,000,822 | —- | C] () – C:\Users\User\.recently-used.xbel
[2011/06/21 21:44:50 | 000,001,967 | —- | C] () – C:\Users\User\Desktop\ImageMagick Display.lnk
[2011/06/13 11:39:22 | 000,016,368 | —- | C] () – C:\filestream.temp
[2011/05/20 20:09:45 | 000,000,464 | —- | C] () – C:\ProgramData\Local Disk © - Shortcut.lnk
[2011/05/19 07:48:47 | 000,007,332 | -HS- | C] () – C:\Users\User\AppData\Local\d68cstb8gg7xa40snu
[2011/05/19 07:48:47 | 000,007,332 | -HS- | C] () – C:\ProgramData\d68cstb8gg7xa40snu
[2011/04/16 09:15:28 | 000,000,988 | —- | C] () – C:\Users\User\AppData\Local\7F68A003.il
[2011/04/15 17:28:15 | 000,008,840 | -HS- | C] () – C:\ProgramData\1605731243
[2011/04/07 21:14:55 | 000,007,601 | —- | C] () – C:\Users\User\AppData\Local\Resmon.ResmonCfg
[2011/03/13 18:31:50 | 000,000,077 | —- | C] () – C:\Users\User\AppData\Roaming\.ettercap_gtk
[2010/12/06 14:58:56 | 002,496,715 | —- | C] () – C:\windows\System32\abgx360.exe
[2010/10/29 10:48:14 | 000,008,192 | —- | C] () – C:\windows\System32\gsimrxnp.dll
[2010/10/29 10:48:12 | 000,004,992 | —- | C] () – C:\windows\System32\drivers\enport.sys
[2010/10/13 18:07:01 | 000,695,578 | —- | C] () – C:\windows\System32\unins000.exe
[2010/10/13 18:07:01 | 000,001,067 | —- | C] () – C:\windows\System32\unins000.dat
[2010/06/25 18:03:12 | 000,053,299 | —- | C] () – C:\windows\System32\pthreadVC.dll
[2010/05/13 15:35:39 | 000,000,920 | —- | C] () – C:\Users\User\AppData\Local\IndexIE_7F68A003.il
[2010/04/29 16:04:36 | 000,000,002 | —- | C] () – C:\windows\HotFixList.ini
[2009/12/17 06:40:40 | 000,311,296 | —- | C] () – C:\windows\System32\Rezip.exe
[2009/07/14 05:57:37 | 000,067,584 | –S- | C] () – C:\windows\bootstat.dat
[2009/07/14 05:33:53 | 000,334,488 | —- | C] () – C:\windows\System32\FNTCACHE.DAT
[2009/07/14 03:05:48 | 000,616,666 | —- | C] () – C:\windows\System32\perfh009.dat
[2009/07/14 03:05:48 | 000,291,294 | —- | C] () – C:\windows\System32\perfi009.dat
[2009/07/14 03:05:48 | 000,107,038 | —- | C] () – C:\windows\System32\perfc009.dat
[2009/07/14 03:05:48 | 000,031,548 | —- | C] () – C:\windows\System32\perfd009.dat
[2009/07/14 03:05:05 | 000,000,741 | —- | C] () – C:\windows\System32\NOISE.DAT
[2009/07/14 03:04:11 | 000,215,943 | —- | C] () – C:\windows\System32\dssec.dat
[2009/07/14 00:55:01 | 000,043,131 | —- | C] () – C:\windows\mib.bin
[2009/07/14 00:51:43 | 000,073,728 | —- | C] () – C:\windows\System32\BthpanContextHandler.dll
[2009/07/14 00:42:10 | 000,064,000 | —- | C] () – C:\windows\System32\BWContextHandler.dll
[2009/07/13 23:09:19 | 000,982,196 | —- | C] () – C:\windows\System32\igkrng500.bin
[2009/07/13 23:09:19 | 000,417,344 | —- | C] () – C:\windows\System32\igcompkrng500.bin
[2009/07/13 23:09:19 | 000,139,824 | —- | C] () – C:\windows\System32\igfcg500.bin
[2009/07/13 23:09:19 | 000,097,448 | —- | C] () – C:\windows\System32\igfcg500m.bin
[2009/06/10 22:26:10 | 000,673,088 | —- | C] () – C:\windows\System32\mlang.dat
[2006/07/08 04:31:02 | 000,100,864 | —- | C] () – C:\windows\System32\mkx.dll
[2006/07/08 04:30:34 | 000,066,048 | —- | C] () – C:\windows\System32\mp4.dll
[2006/07/08 04:29:34 | 000,045,568 | —- | C] () – C:\windows\System32\mkzlib.dll
[2006/07/08 04:29:30 | 000,023,552 | —- | C] () – C:\windows\System32\mkunicode.dll
========== LOP Check ==========
[2010/12/27 09:25:57 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\calibre
[2011/03/23 09:20:12 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\Dekart
[2011/05/17 09:21:30 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\gtk-2.0
[2010/07/20 12:15:40 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\JPEGsnoop
[2011/05/18 14:00:27 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\Mael
[2010/07/14 18:40:23 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\T-Mobile
[2010/07/14 19:12:09 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\T-Mobile Internet Manager
[2010/04/29 18:59:30 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\Tatara Systems
[2011/06/25 10:18:08 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\Windows Loader
[2011/01/30 14:55:13 | 000,000,000 | —D | M] – C:\Users\User\AppData\Roaming\Wireshark
[2011/05/15 01:00:01 | 000,000,368 | —- | M] () – C:\Windows\Tasks\McDefragTask.job
[2011/05/01 01:00:00 | 000,000,348 | —- | M] () – C:\Windows\Tasks\McQcTask.job
[2010/12/13 15:41:23 | 000,032,620 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2009/06/10 22:42:20 | 000,000,024 | —- | M] () – C:\autoexec.bat
[2011/06/25 16:05:43 | 000,012,450 | —- | M] () – C:\ComboFix.txt
[2009/06/10 22:42:20 | 000,000,010 | —- | M] () – C:\config.sys
[2011/05/17 17:22:18 | 014,217,216 | —- | M] () – C:\E000012D5A8EEB59
[2011/06/13 11:42:24 | 000,016,368 | —- | M] () – C:\filestream.temp
[2011/01/01 22:30:30 | 000,000,008 | -H– | M] () – C:\FoldMonk.cfg
[2011/06/25 15:53:05 | 796,889,088 | -HS- | M] () – C:\hiberfil.sys
[2010/04/29 16:44:59 | 000,000,512 | RH– | M] () – C:\hsloader.bin
[2011/05/20 23:38:11 | 000,000,000 | RHS- | M] () – C:\IO.SYS
[2011/05/20 23:38:11 | 000,000,000 | RHS- | M] () – C:\MSDOS.SYS
[2011/06/25 15:53:08 | 1073,741,824 | -HS- | M] () – C:\pagefile.sys
[2011/06/25 15:54:42 | 000,000,006 | —- | M] () – C:\PTLFSStatus.txt
[2009/12/17 06:38:26 | 000,002,041 | —- | M] () – C:\RHDSetup.log
[2009/12/17 07:14:11 | 000,000,166 | —- | M] () – C:\Setup.log
< %systemroot%\Fonts\*.com >
[2009/07/14 05:52:25 | 000,026,040 | —- | M] () – C:\windows\Fonts\GlobalMonospace.CompositeFont
[2009/07/14 05:52:25 | 000,026,489 | —- | M] () – C:\windows\Fonts\GlobalSansSerif.CompositeFont
[2009/07/14 05:52:25 | 000,029,779 | —- | M] () – C:\windows\Fonts\GlobalSerif.CompositeFont
[2009/07/14 05:52:25 | 000,043,318 | —- | M] () – C:\windows\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2009/06/10 22:31:19 | 000,000,065 | —- | M] () – C:\windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2006/10/26 19:56:12 | 000,033,104 | —- | M] (Microsoft Corporation) – C:\Windows\System32\spool\prtprocs\w32x86\msonpppr.dll
[2009/07/14 02:16:19 | 000,029,696 | —- | M] (Microsoft Corporation) – C:\Windows\System32\spool\prtprocs\w32x86\winprint.dll
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2010/04/17 01:04:40 | 000,306,032 | —- | M] (Microsoft Corporation) – C:\Windows\WLXPGSS.SCR
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2009/07/14 05:41:57 | 000,000,174 | -HS- | M] () – C:\Program Files\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2010/04/29 17:51:11 | 000,000,221 | -HS- | M] () – C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
< %USERPROFILE%\Desktop\*.exe >
[2011/06/25 09:40:36 | 004,136,919 | R— | M] (Swearware) – C:\Users\User\Desktop\ComboFix.exe
[2011/06/25 21:48:54 | 000,579,072 | —- | M] (OldTimer Tools) – C:\Users\User\Desktop\OTL.exe
[2011/06/24 14:32:30 | 000,139,264 | —- | M] () – C:\Users\User\Desktop\RKUnhookerLE.EXE
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >
< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >
< %PROGRAMFILES%\Internet Explorer\*.tmp >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %USERPROFILE%\My Documents\*.exe >
< %USERPROFILE%\*.exe >
< %systemroot%\ADDINS\*.* >
[2009/06/10 22:20:04 | 000,000,802 | —- | M] () – C:\Windows\addins\FXSEXT.ecf
< %systemroot%\assembly\*.bak2 >
< %systemroot%\Config\*.* >
< %systemroot%\REPAIR\*.bak2 >
< %systemroot%\SECURITY\Database\*.sdb /x >
[2010/04/29 16:14:04 | 000,008,192 | —- | M] () – C:\Windows\security\database\edb.chk
[2010/04/29 16:14:04 | 001,048,576 | —- | M] () – C:\Windows\security\database\edb.log
[2010/04/29 15:31:58 | 001,048,576 | —- | M] () – C:\Windows\security\database\edbres00001.jrs
[2010/04/29 15:31:58 | 001,048,576 | —- | M] () – C:\Windows\security\database\edbres00002.jrs
[2010/04/29 15:31:58 | 001,048,576 | —- | M] () – C:\Windows\security\database\edbtmp.log
< %systemroot%\SYSTEM\*.bak2 >
< %systemroot%\Web\*.bak2 >
< %systemroot%\Driver Cache\*.* >
< %PROGRAMFILES%\Mozilla Firefox\0*.exe >
< %ProgramFiles%\Microsoft Common\*.* >
< %ProgramFiles%\TinyProxy. >
< %USERPROFILE%\Favorites\*.url /x >
[2010/08/04 09:31:04 | 000,000,402 | -HS- | M] () – C:\Users\User\Favorites\desktop.ini
< %systemroot%\system32\*.bk >
< %systemroot%\*.te >
< %systemroot%\system32\system32\*.* >
< %ALLUSERSPROFILE%\*.dat /x >
[2011/04/15 18:19:50 | 000,008,840 | -HS- | M] () – C:\ProgramData\1605731243
[2011/05/19 07:56:27 | 000,007,332 | -HS- | M] () – C:\ProgramData\d68cstb8gg7xa40snu
[2011/05/20 20:09:45 | 000,000,464 | —- | M] () – C:\ProgramData\Local Disk © - Shortcut.lnk
< %systemroot%\system32\drivers\*.rmv >
< dir /b "%systemroot%\system32\*.exe" | find /i " " /c >
< dir /b "%systemroot%\*.exe" | find /i " " /c >
< %PROGRAMFILES%\Microsoft\*.* >
< %systemroot%\System32\Wbem\proquota.exe >
< %PROGRAMFILES%\Mozilla Firefox\*.dat >
< %USERPROFILE%\Cookies\*.txt /x >
< %SystemRoot%\system32\fonts\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-06-25 02:30:23
< End of report >
OTL Extras logfile created on: 6/25/2011 11:47:57 PM - Run 1
OTL by OldTimer - Version 3.2.24.1 Folder = C:\Users\User\Desktop
Starter Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1013.30 Mb Total Physical Memory | 409.71 Mb Available Physical Memory | 40.43% Memory free
1.99 Gb Paging File | 0.92 Gb Available in Paging File | 46.23% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 60.98 Gb Total Space | 1.49 Gb Free Space | 2.44% Space Free | Partition Type: NTFS
Drive D: | 152.42 Gb Total Space | 1.16 Gb Free Space | 0.76% Space Free | Partition Type: NTFS
Drive G: | 3.68 Gb Total Space | 0.26 Gb Free Space | 6.94% Space Free | Partition Type: FAT32
Computer Name: PC | User Name: User | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.cpl [@ = cplfile] – C:\windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] – C:\windows\winhlp32.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.exe [@ = exefile] – Reg Error: Key error. File not found
.html [@ = FirefoxHTML] – C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
cplfile [cplopen] – %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] – "%1" %*
helpfile [open] – Reg Error: Key error.
hlpfile [open] – %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] – "%1" /S
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] – "C:\Program Files\VideoLAN\VLC\vlc.exe" –started-from-file –playlist-enqueue "%1" ()
Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] – "C:\Program Files\VideoLAN\VLC\vlc.exe" –started-from-file –no-playlist-enqueue "%1" ()
Folder [open] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] – Reg Error: Value error.
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type – File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Users\User\AppData\Roaming\Windows Loader\WinNT.exe" = C:\Users\User\AppData\Roaming\Windows Loader\WinNT.exe
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Samsung Recovery Solution 4
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{17283B95-21A8-4996-97DA-547A48DB266F}" = Easy Display Manager
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{178EE5F4-0F86-4BF0-A0D1-9790AFF409D1}" = EasyBatteryManager
"{1AFA1FEF-8CF9-4A51-AC46-64FAA7F3D9E2}" = AnyPC Client
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java™ 6 Update 21
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{3717C4F2-7412-4793-9BB8-D73D2817B3D6}" = USB Video/Audio Device Driver
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{41E57D2A-F778-4183-B1F7-A4A5FDF0E896}" = GrabBee
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{45535A5E-1F81-4F35-BE1D-43D10A7D03B4}" = Easy Resolution Manager
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{466D379F-D2A4-4F9B-86E2-E2CBA6056D87}" = KODAK Share Button App
"{4725E135-CF7D-4906-B4D0-D9F5FED44254}" = PreSetup HyperSpace
"{474F25F5-BDC9-40E5-B1B6-F6BF23FC106F}" = Windows Live Essentials
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B41AE13-BA0E-4328-8E83-AD2A0BEB33EB}" = Sky Player
"{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3
"{5C47C8B6-77FF-4FC7-A388-66FCF9CFC24C}" = Snagit 9.1.3
"{6176A86F-2455-4A77-8B76-A48447FEE101}" = FileMove SE 2.05.07
"{63eafc52-b963-4297-a7eb-d412944e7065}_is1" = Game Pack
"{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{72FD5F2E-1F7A-4E9B-8838-29E842E178CD}" = PC Suite
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{795A3A1E-E06A-4214-A2EF-3DDF3BA05C2B}" = STOPzilla
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}" = Alice Greenfingers
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-114072167}" = Go-Go Gourmet
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}" = Dairy Dash
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}" = Farm Frenzy 2
"{853F8A41-A3C9-43FA-87FA-1AE74FC6F3F7}" = BatteryLifeExtender
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E5233E1-7495-44FB-8DEB-4BE906D59619}" = Junk Mail filter update
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{92D50865-FC60-4EA8-BA7A-5581B0D13EFB}" = ChargeableUSB
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = WIDCOMM Bluetooth Software
"{9F479685-180E-4C05-9400-D59292A1B29C}" = Windows Live Movie Maker
"{A6E1E8AF-A00E-45A7-BE1B-4397897C8A3E}" = Broadcom CrystalHD Decoder
"{AC76BA86-7AD7-1033-7B44-A91000000001}" = Adobe Reader 9.1
"{AE3E52B5-E40C-4BBD-A500-C0429C534BB4}" = Moai MA8128 SIM Card Reader App
"{B10914FD-8812-47A4-85A1-50FCDE7F1F33}" = Windows Live Sync
"{B57EAFF2-D6EE-4C6C-9175-ED9F17BFC1BC}" = Windows Live Messenger
"{B660E0D0-A8CB-45A7-96FB-93E8C915A0B2}" = Easy Network Manager
"{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}" = User Guide
"{C775645C-3A57-471A-9CB2-CA12C3481460}" = Simple DNS Plus
"{CCC2B140-B47A-45FA-AAE3-BD60DA41AE00}" = Samsung Support Center
"{D1434266-0486-4469-B338-A60082CC04E1}" = Atheros Client Installation Program
"{D22002ED-EE2A-4CB1-A63D-430E62A2E8D8}" = Google SketchUp 8
"{D3F2FAA5-FEC4-42AA-9ABA-1F763919A2B5}" = Samsung Update Plus
"{D92FF8EB-BD77-40AE-B68B-A6BFC6F8661D}" = Windows Live Family Safety
"{DB0F5549-0EEE-4421-A1B2-08FB1468D7F1}" = calibre
"{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10
"{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{E6158D07-2637-4ECF-B576-37C489669174}" = Windows Live Call
"{EE39FFBD-544E-49E4-A999-6819828EAE91}" = Windows Live Photo Gallery
"{EF367AA4-070B-493C-9575-85BE59D789C9}" = Easy SpeedUp Manager
"{EFA6EF6A-9E0D-4CF0-91DD-B55D8632F65A}" = SamsungMovie
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2BC3383-F000-410C-A038-3846ADBE8D90}" = REALTEK Wireless LAN Software
"3D970B9F930E7AAE23C06D39A1AC98548C90B442" = Windows Driver Package - Eastman Kodak KODAK Digital Camera (01/29/2010 1.4.1.0)
"755087041320E005CB1E8A67C5C55A260EB81B90" = Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407)
"A6A8668C0A13640CA28FE2A7D9654BE4AE478B13" = Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405)
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"avast5" = avast! Free Antivirus
"BF20603967CFDCB2BBF91950E8A56DFBC5C833FE" = Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800)
"CamStudio" = CamStudio
"CamStudio Lossless Codec_is1" = CamStudio Lossless Codec v1.4
"Dekart SIM Manager 2" = Dekart SIM Manager 2.10
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EPSON Printer and Utilities" = EPSON Printer Software
"ESET Online Scanner" = ESET Online Scanner v3
"ettercap_ng" = Ettercap NG 0.7.3
"FoldMonkey_is1" = FoldMonkey
"HDMI" = Intel® Graphics Media Accelerator Driver
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HxD Hex Editor_is1" = HxD Hex Editor version 1.7.7.0
"HyperSpace" = HyperSpace
"ImageMagick 6.7.0 Q16_is1" = ImageMagick 6.7.0-7 Q16 (2011-06-15)
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{41E57D2A-F778-4183-B1F7-A4A5FDF0E896}" = GrabBee
"InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10
"JPEG Recovery Pro5.0" = JPEG Recovery Pro 5.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.0.1200
"Marvell Miniport Driver" = Marvell Miniport Driver
"Messenger Plus! Live" = Messenger Plus! Live
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Mobile Partner" = Mobile Partner
"Mozilla Firefox (3.6.18)" = Mozilla Firefox (3.6.18)
"MSC" = McAfee SecurityCenter
"RealPlayer 12.0" = RealPlayer
"ResourceHacker_is1" = Resource Hacker Version 3.5.2
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"T-Mobile Internet Manager" = T-Mobile Internet Manager
"VirtualCloneDrive" = VirtualCloneDrive
"VLC media player" = VLC media player 1.1.9
"WinGimp-2.0_is1" = GIMP 2.6.11
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinPcapInst" = WinPcap 4.1.2
"WinRAR archiver" = WinRAR archiver
"Wireshark" = Wireshark 1.4.3
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"f031ef6ac137efc5" = Dell Driver Download Manager
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 6/25/2011 10:05:38 AM | Computer Name = PC | Source = Application Error | ID = 1000
Description = Faulting application name: plugin-container.exe, version: 1.9.2.4182,
time stamp: 0x4df86355 Faulting module name: ntdll.dll, version: 6.1.7600.16695,
time stamp: 0x4cc7ab44 Exception code: 0xc0000005 Fault offset: 0x000469e0 Faulting
process id: 0x1234 Faulting application start time: 0x01cc331e0e2ce0f5 Faulting application
path: C:\Program Files\Mozilla Firefox\plugin-container.exe Faulting module path:
C:\windows\SYSTEM32\ntdll.dll Report Id: 337383e4-9f34-11e0-978c-a8700064ab68
Error - 6/25/2011 10:14:05 AM | Computer Name = PC | Source = Application Error | ID = 1000
Description = Faulting application name: SZServer.exe, version: 5.0.91.2, time stamp:
0x4dca9d0a Faulting module name: szsnsrsv.DLL, version: 5.0.91.2, time stamp: 0x4dca9cbb
Exception
code: 0xc0000409 Fault offset: 0x00020807 Faulting process id: 0x41c Faulting application
start time: 0x01cc32e231dcd887 Faulting application path: C:\Program Files\Common
Files\iS3\Anti-Spyware\SZServer.exe Faulting module path: C:\Program Files\Common
Files\iS3\Anti-Spyware\szsnsrsv.DLL Report Id: 61b3ab97-9f35-11e0-978c-a8700064ab68
Error - 6/25/2011 10:14:21 AM | Computer Name = PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "C:\Program Files\Real\RealPlayer\plugins\rmxrend.dll".
Dependent
Assembly Microsoft.VC90.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"
could not be found. Please use sxstrace.exe for detailed diagnosis.
Error - 6/25/2011 10:44:53 AM | Computer Name = PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "C:\Program Files\Real\RealPlayer\plugins\rmxrend.dll".
Dependent
Assembly Microsoft.VC90.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"
could not be found. Please use sxstrace.exe for detailed diagnosis.
Error - 6/25/2011 10:53:52 AM | Computer Name = PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "C:\Program Files\Real\RealPlayer\plugins\rmxrend.dll".
Dependent
Assembly Microsoft.VC90.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"
could not be found. Please use sxstrace.exe for detailed diagnosis.
Error - 6/25/2011 10:54:37 AM | Computer Name = PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "C:\Program Files\Real\RealPlayer\plugins\rmxrend.dll".
Dependent
Assembly Microsoft.VC90.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"
could not be found. Please use sxstrace.exe for detailed diagnosis.
Error - 6/25/2011 10:57:48 AM | Computer Name = PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "C:\Program Files\Real\RealPlayer\plugins\rmxrend.dll".
Dependent
Assembly Microsoft.VC90.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"
could not be found. Please use sxstrace.exe for detailed diagnosis.
Error - 6/25/2011 11:10:28 AM | Computer Name = PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "C:\Program Files\Real\RealPlayer\plugins\rmxrend.dll".
Dependent
Assembly Microsoft.VC90.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"
could not be found. Please use sxstrace.exe for detailed diagnosis.
Error - 6/25/2011 6:45:28 PM | Computer Name = PC | Source = Application Error | ID = 1000
Description = Faulting application name: plugin-container.exe, version: 1.9.2.4182,
time stamp: 0x4df86355 Faulting module name: ntdll.dll, version: 6.1.7600.16695,
time stamp: 0x4cc7ab44 Exception code: 0xc0000005 Fault offset: 0x000469e0 Faulting
process id: 0xa3c Faulting application start time: 0x01cc33489bc03e03 Faulting application
path: C:\Program Files\Mozilla Firefox\plugin-container.exe Faulting module path:
C:\windows\SYSTEM32\ntdll.dll Report Id: d25f0f35-9f7c-11e0-969e-d1cfb87b526a
Error - 6/25/2011 6:47:28 PM | Computer Name = PC | Source = Application Error | ID = 1000
Description = Faulting application name: plugin-container.exe, version: 1.9.2.4182,
time stamp: 0x4df86355 Faulting module name: ntdll.dll, version: 6.1.7600.16695,
time stamp: 0x4cc7ab44 Exception code: 0xc0000005 Fault offset: 0x000469e0 Faulting
process id: 0x1c50 Faulting application start time: 0x01cc3389c5ce0e6c Faulting application
path: C:\Program Files\Mozilla Firefox\plugin-container.exe Faulting module path:
C:\windows\SYSTEM32\ntdll.dll Report Id: 19eca63a-9f7d-11e0-969e-d1cfb87b526a
[ System Events ]
Error - 11/4/2010 6:02:20 AM | Computer Name = PC | Source = Service Control Manager | ID = 7022
Description = The KService service hung on starting.
Error - 11/4/2010 6:02:20 AM | Computer Name = PC | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
tcpipBM
Error - 11/5/2010 7:35:55 AM | Computer Name = PC | Source = Service Control Manager | ID = 7022
Description = The KService service hung on starting.
Error - 11/5/2010 7:35:55 AM | Computer Name = PC | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
tcpipBM
Error - 11/5/2010 9:36:18 AM | Computer Name = PC | Source = Service Control Manager | ID = 7011
Description = A timeout (30000 milliseconds) was reached while waiting for a transaction
response from the ShellHWDetection service.
Error - 11/6/2010 11:47:09 AM | Computer Name = PC | Source = Service Control Manager | ID = 7022
Description = The KService service hung on starting.
Error - 11/6/2010 11:47:10 AM | Computer Name = PC | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
tcpipBM
Error - 11/11/2010 5:59:03 AM | Computer Name = PC | Source = Service Control Manager | ID = 7011
Description = A timeout (30000 milliseconds) was reached while waiting for a transaction
response from the Rezip service.
Error - 11/11/2010 5:59:13 AM | Computer Name = PC | Source = Service Control Manager | ID = 7022
Description = The KService service hung on starting.
Error - 11/11/2010 5:59:15 AM | Computer Name = PC | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
tcpipBM
< End of report >