KellyB
Topic Starter
Pogo was working last week (with older Java) but this week, get a "Can't connect to server" error in every game. Also IE was crashing. Installed Firefox, Pogo games won't load. Upgraded Java, same problem. Installed Chrome, same problem. Also sometimes Firefox will close unexpectedly. Have run Malwarebytes and nothing found. Any help appreciated.
Was told to post here.
OTL logfile created on: 8/14/2011 6:13:23 PM - Run 1
OTL by OldTimer - Version 3.2.26.3 Folder = C:\Documents and Settings\Kelly\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
895.23 Mb Total Physical Memory | 325.80 Mb Available Physical Memory | 36.39% Memory free
3.43 Gb Paging File | 2.98 Gb Available in Paging File | 86.78% Paging File free
Paging file location(s): C:\pagefile.sys 2688 2688 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINXP | %ProgramFiles% = C:\Program Files
Drive C: | 76.02 Gb Total Space | 35.43 Gb Free Space | 46.61% Space Free | Partition Type: NTFS
Drive E: | 30.01 Gb Total Space | 7.20 Gb Free Space | 23.99% Space Free | Partition Type: NTFS
Drive F: | 5.76 Gb Total Space | 0.88 Gb Free Space | 15.20% Space Free | Partition Type: NTFS
Computer Name: KRBSPC | User Name: Kelly | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Kelly\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\GoogleCrashHandler.exe (Google Inc.)
PRC - C:\WINXP\system32\r_server.exe ()
PRC - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (Logitech, Inc.)
PRC - C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
PRC - C:\Program Files\Marxio Timer\Marxio Timer.exe (Marek Mantaj)
PRC - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
PRC - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
PRC - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
PRC - C:\WINXP\system32\HPZipm12.exe (HP)
PRC - C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe (Hewlett-Packard Development Company, L.P.)
PRC - C:\Program Files\Mouse Driver\MouseDrv.exe ()
PRC - C:\noisykey\Nkboard.exe ()
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Kelly\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\algo.dll ()
MOD - C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\goopdate.dll (Google Inc.)
MOD - C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\GoogleCrashHandler.exe (Google Inc.)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswScan.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswEngin.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswCmnBS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswRep.dll ()
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswCmnIS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswCmnOS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\ArPot.dll (AVAST Software)
MOD - C:\Documents and Settings\All Users.WINXP\Application Data\Skype\Plugins\ezPMUtils.dll (EasyBits Media)
MOD - C:\Documents and Settings\All Users.WINXP\Application Data\Easybits GO\ezGameXN.dll (EasyBits Media)
MOD - C:\Documents and Settings\All Users.WINXP\Application Data\Easybits GO\Games\53F537B72987463CB06D78F5541A3239\skGamesUpdate.dll (EasyBits Software AS)
MOD - C:\WINXP\system32\jsproxy.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.dll (Adobe Systems, Inc.)
MOD - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\msvcr80.dll (Microsoft Corporation)
MOD - c:\winxp\assembly\gac\hpqisrtb\4.0.0.0__a53cf5803f4c3827\hpqisrtb.dll ()
MOD - c:\winxp\assembly\gac\hpqedit\3.0.0.0__a53cf5803f4c3827\hpqedit.dll ()
MOD - c:\winxp\assembly\gac\hpqbakup\3.0.0.0__a53cf5803f4c3827\hpqbakup.dll ()
MOD - c:\winxp\assembly\gac\hpqvideo\3.0.0.0__a53cf5803f4c3827\hpqvideo.dll ()
MOD - c:\winxp\assembly\gac\hpqmdmr\4.0.0.0__a53cf5803f4c3827\hpqmdmr.dll ()
MOD - c:\winxp\assembly\gac\hpqprrsc\4.0.0.0__a53cf5803f4c3827\hpqprrsc.dll ()
MOD - c:\winxp\assembly\gac\hpqovskn\3.0.0.0__a53cf5803f4c3827\hpqovskn.dll ()
MOD - c:\winxp\assembly\gac\interop.hpqcxm08\3.0.0.0__a53cf5803f4c3827\interop.hpqcxm08.dll ()
MOD - c:\winxp\assembly\gac\interop.hpqvideo\4.0.0.0__a53cf5803f4c3827\interop.hpqvideo.dll ()
MOD - c:\winxp\assembly\gac\interop.hpqimgr\4.0.0.0__a53cf5803f4c3827\interop.hpqimgr.dll ()
MOD - c:\winxp\assembly\gac\interop.hprblog\3.0.0.0__a53cf5803f4c3827\interop.hprblog.dll ()
MOD - c:\winxp\assembly\gac\hpqimvlt\3.0.0.0__a53cf5803f4c3827\hpqimvlt.dll ()
MOD - c:\winxp\assembly\gac\hpqimgrc\4.0.0.0__a53cf5803f4c3827\hpqimgrc.dll ()
MOD - c:\winxp\assembly\gac\hpqntrop\4.0.0.0__a53cf5803f4c3827\hpqntrop.dll ()
MOD - c:\winxp\assembly\gac\hpqtray\4.0.0.0__a53cf5803f4c3827\hpqtray.dll ()
MOD - c:\winxp\assembly\gac\hpqthumb\3.0.0.0__a53cf5803f4c3827\hpqthumb.dll ()
MOD - c:\winxp\assembly\gac\hpqglutl\4.0.0.0__a53cf5803f4c3827\hpqglutl.dll ()
MOD - c:\winxp\assembly\gac\hpqimlib\3.0.0.0__a53cf5803f4c3827\hpqimlib.dll ()
MOD - c:\winxp\assembly\gac\hpqfmrsc\4.0.0.0__a53cf5803f4c3827\hpqfmrsc.dll ()
MOD - c:\winxp\assembly\gac\hpqasset\4.0.0.0__a53cf5803f4c3827\hpqasset.dll ()
MOD - c:\winxp\assembly\gac\hpqiface\4.0.0.0__a53cf5803f4c3827\hpqiface.dll ()
MOD - c:\winxp\assembly\gac\hpqutils\4.0.0.0__a53cf5803f4c3827\hpqutils.dll ()
MOD - c:\winxp\assembly\gac\hpqcprsc\3.0.0.0__a53cf5803f4c3827\hpqcprsc.dll ()
MOD - c:\winxp\assembly\gac\hpqcc2\3.0.0.0__a53cf5803f4c3827\hpqcc2.dll ()
MOD - C:\WINXP\system32\r_server.exe ()
MOD - C:\WINXP\system32\AdmDll.dll ()
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_028bc148\mfc90u.dll (Microsoft Corporation)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\msvcr90.dll (Microsoft Corporation)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\msvcp90.dll (Microsoft Corporation)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90enu.dll (Microsoft Corporation)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_92453bb7\atl90.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\mfc42.dll (Microsoft Corporation)
MOD - C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll (Malwarebytes Corporation)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALUSB.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMOU.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMW.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALHPP.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALITCH.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALAPI.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALHID.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\Macros\MacroMedia.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\Macros\MacroEmail.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\Macros\MacroAppSwitch.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\WebBrowserSupport.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\SetPointCOM.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\LCabHandler.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KGame.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\khalwrapper.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KemXML.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KemUtil.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KemWnd.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\kemutb.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KemMon.dll (Logitech, Inc.)
MOD - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.dll (Logitech, Inc.)
MOD - C:\WINXP\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22509_x-ww_c7dad023\GdiPlus.dll (Microsoft Corporation)
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_45ef1598\mscorlib.dll ()
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_37859ac2\system.drawing.dll ()
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_27628ae3\system.xml.dll ()
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_276c58a2\system.windows.forms.dll ()
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_068d1fc9\system.dll ()
MOD - c:\winxp\assembly\gac\system\1.0.5000.0__b77a5c561934e089\system.dll ()
MOD - C:\Program Files\Alwil Software\Avast5\1033\uiLangRes.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\1033\Base.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\CommonRes.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswUtil.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswSqLt.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswProperty.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswLog.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswIdle.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswEngLdr.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswDld.dll ()
MOD - C:\Program Files\Alwil Software\Avast5\aswData.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswCmnOS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswCmnIS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswCmnBS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswAux.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashWsFtr.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashWebSv.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashTaskEx.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashTask.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashShell.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashServ.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashMaiSv.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashBase.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResWS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResStd.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ahResP2P.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResNS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ahResMes.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResMai.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResBhv.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AavmRpch.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\Aavm4h.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
MOD - C:\WINXP\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\WMVCore.dll (Microsoft Corporation)
MOD - C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll ()
MOD - C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
MOD - C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll ()
MOD - C:\Program Files\CyberLink\Power2Go\msvcp71.dll (Microsoft Corporation)
MOD - C:\Program Files\CyberLink\Power2Go\msvcr71.dll (Microsoft Corporation)
MOD - C:\Program Files\Spybot - Search & Destroy\advcheck.dll (Safer-Networking Ltd.)
MOD - C:\Program Files\CyberLink\YouCam\YCWebCameraSource.ax (CyberLink)
MOD - C:\Program Files\Marxio Timer\Marxio Timer.exe (Marek Mantaj)
MOD - C:\Program Files\CyberLink\YouCam\YCRgl.ax (Cyberlink)
MOD - C:\Program Files\CyberLink\YouCam\msvcr71.dll (Microsoft Corporation)
MOD - C:\Program Files\CyberLink\YouCam\msvcp71.dll (Microsoft Corporation)
MOD - C:\Program Files\CyberLink\YouCam\MFC71u.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wucltui.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wups2.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\mucltui.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\msls31.dll (Microsoft Corporation)
MOD - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
MOD - C:\WINXP\system32\atipdlxx.dll (ATI Technologies, Inc.)
MOD - C:\WINXP\system32\ati2edxx.dll (ATI Technologies, Inc.)
MOD - C:\WINXP\system32\ati2evxx.dll (ATI Technologies Inc.)
MOD - C:\Program Files\WinZip\WZSHLSTB.DLL (WinZip Computing, S.L.)
MOD - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
MOD - C:\Program Files\Zoom Player\zpshlext.dll ()
MOD - C:\WINXP\system32\mscms.dll (Microsoft Corporation)
MOD - c:\winxp\assembly\gac\system.xml\1.0.5000.0__b77a5c561934e089\system.xml.dll ()
MOD - c:\winxp\assembly\gac\system.drawing\1.0.5000.0__b03f5f7f11d50a3a\system.drawing.dll ()
MOD - c:\winxp\assembly\gac\system.windows.forms\1.0.5000.0__b77a5c561934e089\system.windows.forms.dll ()
MOD - c:\winxp\assembly\gac\lead.wrapper\13.0.0.113__9cf889f53ea9b907\lead.wrapper.dll ()
MOD - c:\winxp\assembly\gac\lead.drawing.imaging.imageprocessing\13.0.0.113__9cf889f53ea9b907\lead.drawing.imaging.imageprocessing.dll ()
MOD - c:\winxp\assembly\gac\lead.drawing\13.0.0.113__9cf889f53ea9b907\lead.drawing.dll ()
MOD - c:\winxp\assembly\gac\lead.drawing.imaging.codecs\13.0.0.113__9cf889f53ea9b907\lead.drawing.imaging.codecs.dll ()
MOD - c:\winxp\assembly\gac\lead\13.0.0.113__9cf889f53ea9b907\lead.dll ()
MOD - c:\winxp\assembly\gac\lead.windows.forms.drawingcontainer\13.0.0.113__9cf889f53ea9b907\lead.windows.forms.drawingcontainer.dll ()
MOD - c:\winxp\assembly\gac\lead.windows.forms\13.0.0.113__9cf889f53ea9b907\lead.windows.forms.dll ()
MOD - c:\winxp\assembly\gac\accessibility\1.0.5000.0__b03f5f7f11d50a3a\accessibility.dll ()
MOD - C:\WINXP\system32\rdpwsx.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\drmclien.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\bthprops.cpl (Microsoft Corporation)
MOD - C:\WINXP\system32\wsnmp32.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wship6.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wmasf.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wmidx.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wlanapi.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\System\wab32.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\vdmdbg.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\unimdmat.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\sti.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\snmpapi.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\shfolder.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\security.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\msoert2.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\msimtf.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\msdmo.dll ()
MOD - C:\WINXP\system32\modemui.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\mgmtapi.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\ksuser.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\faultrep.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\dxdiagn.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\dsound.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\devmgr.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\devenum.dll ()
MOD - C:\WINXP\system32\wmploc.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\browselc.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\System\wab32res.dll (Microsoft Corporation)
MOD - C:\Program Files\Haali\MatroskaSplitter\mmfinfo.dll ()
MOD - C:\Program Files\Haali\MatroskaSplitter\mkunicode.dll ()
MOD - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
MOD - C:\Program Files\Lavasoft\Ad-Aware 2007\CEAPI.dll (Lavasoft)
MOD - C:\Program Files\Lavasoft\Ad-Aware 2007\Update.dll ()
MOD - C:\Program Files\Lavasoft\Ad-Aware 2007\pkarchive85u.dll (PKWARE, Inc.)
MOD - C:\WINXP\system32\relog_ap.dll (Acronis)
MOD - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
MOD - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll (Nero AG)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpotra08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpotra08.rsc (Hewlett-Packard Development Company, L.P.)
MOD - C:\WINXP\system32\hpowiax2.dll (Hewlett-Packard)
MOD - C:\WINXP\system32\hpz3l054.dll (Hewlett-Packard Company)
MOD - C:\WINXP\system32\spool\prtprocs\w32x86\hpzpp054.dll (Hewlett-Packard Corporation)
MOD - C:\WINXP\system32\spool\drivers\w32x86\3\hpcdmc32.dll (HP)
MOD - C:\WINXP\system32\HPZipm12.exe (HP)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpotradd.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpodvd09.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpoddcomm09.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqrif08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqste08.rsc (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqsti08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqsem08.rsc (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpocxi08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqstp08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqmif08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpquio08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpodio08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqcob08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqusg.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqcxm08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqtao08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.rsc (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqmfc09.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqtap08.dll (Hewlett-Packard Development Company, L.P.)
MOD - c:\Program Files\HP\Digital Imaging\bin\hpqmirsc.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqvdcom.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqimgr.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\Unload\hpnkhTA.dll (Hewlett-Packard)
MOD - C:\WINXP\system32\hpzjrd01.dll (Hewlett Packard)
MOD - C:\WINXP\system32\HPTcpMUI.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\HPTcpMon.dll (Hewlett Packard)
MOD - C:\WINXP\system32\HPTcpMib.dll (Hewlett Packard)
MOD - C:\WINXP\system32\hpzsnt12.dll (HP)
MOD - C:\Program Files\Common Files\Ahead\Lib\NeroDigitalExt.dll (Nero AG)
MOD - C:\Program Files\HP\Digital Imaging\bin\dbghelp.dll (Microsoft Corporation)
MOD - C:\Program Files\HP\Digital Imaging\bin\crm\hpqcrmcm.dll (Hewlett-Packard Company)
MOD - C:\Program Files\HP\Digital Imaging\bin\ltkrn13n.dll (LEAD Technologies, Inc.)
MOD - C:\Program Files\HP\Digital Imaging\bin\ltfil13n.DLL (LEAD Technologies, Inc.)
MOD - C:\Program Files\HP\Digital Imaging\bin\crm\xmlparse.dll ()
MOD - C:\Program Files\HP\Digital Imaging\bin\crm\xmltok.dll ()
MOD - C:\WINXP\system32\HPZipr12.dll (HP)
MOD - C:\WINXP\system32\HPZidr12.dll (HP)
MOD - C:\WINXP\system32\mapi32.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\utildll.dll (Microsoft Corporation)
MOD - C:\Program Files\Mouse Driver\MouseDrv.exe ()
MOD - C:\Program Files\Mouse Driver\MouseHook.dll ()
MOD - C:\Program Files\Common Files\Ahead\Lib\MFC71.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\Ahead\Lib\msvcp71.dll (Microsoft Corporation)
MOD - C:\Program Files\Nero\Nero 7\Nero BackItUp\mfc71u.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\mfc71.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\MFC71ENU.DLL (Microsoft Corporation)
MOD - C:\WINXP\system32\atl71.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\Ahead\Lib\msvcr71.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\spool\prtprocs\w32x86\ppbiPr.dll (Black Ice Software)
MOD - C:\noisykey\Nkboard.dll ()
MOD - C:\noisykey\Nkboard.exe ()
========== Win32 Services (SafeList) ==========
SRV - (SeaPort) – File not found
SRV - (LBTServ) – C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (avast! Web Scanner) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (avast! Mail Scanner) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (avast! Antivirus) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (aawservice) – C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
SRV - (AcrSch2Svc) – C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
SRV - (Pml Driver HPZ12) – C:\WINXP\system32\HPZipm12.exe (HP)
========== Driver Services (SafeList) ==========
DRV - (aswTdi) – C:\WINXP\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswSP) – C:\WINXP\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswRdr) – C:\WINXP\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (aswMon2) – C:\WINXP\System32\drivers\aswmon2.sys (AVAST Software)
DRV - (aswFsBlk) – C:\WINXP\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (Aavmker4) – C:\WINXP\System32\drivers\aavmker4.sys (AVAST Software)
DRV - (LMouFilt) – C:\WINXP\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) – C:\WINXP\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (LBeepKE) – C:\WINXP\system32\drivers\LBeepKE.sys (Logitech, Inc.)
DRV - (RTL8023xp) – C:\WINXP\system32\drivers\Rtnicxp.sys (Realtek Semiconductor Corporation )
DRV - (ati2mtag) – C:\WINXP\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) – C:\WINXP\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (KMWDFILTER) – C:\WINXP\system32\drivers\KMWDFILTER.sys (Windows ® Codename Longhorn DDK provider)
DRV - (USB_RNDIS_XP) – C:\WINXP\system32\drivers\usb8023.sys (Microsoft Corporation)
DRV - (BANTExt) – C:\WINXP\System32\Drivers\BANTExt.sys ()
DRV - (timounter) – C:\WINXP\system32\DRIVERS\timntr.sys (Acronis)
DRV - (tifsfilter) – C:\WINXP\system32\drivers\tifsfilt.sys (Acronis)
DRV - (snapman) – C:\WINXP\system32\DRIVERS\snapman.sys (Acronis)
DRV - (n558) – C:\WINXP\system32\drivers\n558.sys ()
DRV - (oxpar) – C:\WINXP\system32\drivers\oxpar.sys (OEM)
DRV - (oxmep) – C:\WINXP\system32\drivers\oxmep.sys (OEM)
DRV - (HSFHWBS2) – C:\WINXP\system32\drivers\HSFHWBS2.sys (Conexant Systems, Inc.)
DRV - (winachsf) – C:\WINXP\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (HSF_DP) – C:\WINXP\system32\drivers\HSF_DP.sys (Conexant Systems, Inc.)
DRV - (rtl8139) Realtek RTL8139(A/B/C) – C:\WINXP\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (SMPLSCSI) – C:\WINXP\System32\drivers\SMPLSCSI.SYS (OnSpec Electronic, Inc.)
DRV - (ONSIO) – C:\WINXP\system32\drivers\ONSIO.SYS ()
DRV - (ASPI32) – C:\WINXP\System32\drivers\ASPI32.SYS (Adaptec)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINXP\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINXP\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://toolbar.inbox.com/search/dispatcher…d&%language
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerm…tf8&oe=utf8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Web Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..network.proxy.type: 0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINXP\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@oberon-media.com/ONCAdapter: C:\Program Files\Common Files\Oberon Media\NCAdapter\1.0.0.7\npapicomadapter.dll (Oberon-Media )
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\[removed]/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/08/03 17:15:21 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
[2011/04/02 19:56:06 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Kelly\Application Data\Mozilla\Extensions
[2011/08/01 17:23:31 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\oczf82m1.default\extensions
[2011/08/01 17:23:31 | 000,000,000 | —D | M] (Oberon GamesBar) – C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\oczf82m1.default\extensions\[removed]
[2011/08/14 17:48:49 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/08/14 17:48:49 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
File not found (No name found) –
[2011/08/14 17:48:32 | 000,000,000 | —D | M] (Java Quick Starter) – C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/08/03 17:15:20 | 000,142,296 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/08/03 17:15:11 | 000,002,252 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/04/15 16:54:31 | 000,001,600 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\WebSearchober21260203.xml
O1 HOSTS File: ([2004/08/04 05:00:00 | 000,000,734 | —- | M]) - C:\WINXP\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No CLSID value found.
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINXP\System32\bthprops.cpl (Microsoft Corporation)
O4 - HKLM..\Run: [CLMLServer] C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
O4 - HKLM..\Run: [CreativeMouse ] C:\Program Files\Mouse Driver\MouseDrv.exe ()
O4 - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePSTShortCut] C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - Startup: C:\Documents and Settings\All Users.WINXP\Start Menu\Programs\Startup\HP Photosmart Premier Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe (Hewlett-Packard Development Company, L.P.)
O4 - Startup: C:\Documents and Settings\Kelly\Start Menu\Programs\Startup\Shortcut to Nkboard.exe.lnk = C:\noisykey\Nkboard.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} http://www.musicnotes.com/download/mnviewer.cab (Musicnotes Viewer)
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab (HP Download Manager)
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20270.www2.hp.com/ediags/gmn2/inst…tDetection2.cab (GMNRev Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} Reg Error: Value error. (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shock…ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINXP\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O30 - LSA: Authentication Packages - (relog_ap) - C:\WINXP\System32\relog_ap.dll (Acronis)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 14:43:36 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINXP\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINXP\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINXP\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINXP\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINXP\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINXP\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINXP\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINXP\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINXP\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINXP\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINXP\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINXP\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.LEAD - LCODCCMP.DLL File not found
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011/08/14 18:08:49 | 000,580,096 | —- | C] (OldTimer Tools) – C:\Documents and Settings\Kelly\Desktop\OTL.exe
[2011/08/14 17:48:48 | 000,073,728 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\javacpl.cpl
[2011/08/14 17:48:47 | 000,157,472 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\javaws.exe
[2011/08/14 17:48:47 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\javaw.exe
[2011/08/14 17:48:47 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\java.exe
[2011/08/14 17:48:22 | 000,000,000 | —D | C] – C:\Program Files\Java
[2011/08/13 15:14:41 | 000,000,000 | —D | C] – C:\Documents and Settings\Kelly\Start Menu\Programs\Google Chrome
[2011/08/13 13:52:55 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Application Data\Sun
[2011/08/13 13:51:52 | 000,472,808 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\deployJava1.dll
[2011/08/09 20:16:08 | 000,139,656 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\dllcache\rdpwd.sys
[2011/08/09 20:13:23 | 000,010,496 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\dllcache\ndistapi.sys
[2011/08/05 10:14:31 | 000,000,000 | —D | C] – C:\Documents and Settings\Kelly\Local Settings\Application Data\Power2Go
[2011/08/04 16:40:31 | 000,115,016 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\MSINET.OCX
[2011/08/04 16:40:31 | 000,102,912 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\Vb6stkit.dll
[2011/08/04 16:40:31 | 000,102,160 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\VB6KO.DLL
[2011/08/04 16:40:31 | 000,059,904 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\wbemdisp.tlb
[2011/08/04 16:38:42 | 000,000,000 | —D | C] – C:\Documents and Settings\Kelly\Application Data\CyberLink
[2011/08/04 16:38:39 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Start Menu\Programs\LG Power Tools
[2011/08/04 16:35:57 | 000,000,000 | —D | C] – C:\Documents and Settings\Kelly\Start Menu\Programs\LG Power Tools
[2011/08/04 16:34:56 | 000,000,000 | —D | C] – C:\Program Files\CyberLink
[2011/08/04 16:34:41 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Application Data\CyberLink
[2011/08/01 15:09:06 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Start Menu\Programs\Spybot - Search & Destroy
[2011/08/01 14:35:08 | 000,000,000 | -H-D | C] – C:\WINXP\ie8
[2011/07/31 17:51:17 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Start Menu\Programs\Malwarebytes' Anti-Malware
[1 C:\WINXP\*.tmp files -> C:\WINXP\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2181/08/07 18:45:23 | 000,003,120 | —- | M] () – C:\WINXP\MF_C421.lfa
[2181/08/07 18:45:23 | 000,003,120 | —- | M] () – C:\WINXP\MF_C420.lfa
[2011/08/14 18:14:00 | 000,000,978 | —- | M] () – C:\WINXP\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-2139871995-725345543-1003UA.job
[2011/08/14 18:08:54 | 000,580,096 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Kelly\Desktop\OTL.exe
[2011/08/14 17:52:01 | 000,000,886 | —- | M] () – C:\WINXP\tasks\GoogleUpdateTaskMachineUA.job
[2011/08/14 17:48:29 | 000,157,472 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\javaws.exe
[2011/08/14 17:48:29 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\javaw.exe
[2011/08/14 17:48:29 | 000,073,728 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\javacpl.cpl
[2011/08/14 17:48:28 | 000,472,808 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\deployJava1.dll
[2011/08/14 17:48:28 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\java.exe
[2011/08/14 15:14:00 | 000,000,926 | —- | M] () – C:\WINXP\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-2139871995-725345543-1003Core.job
[2011/08/14 13:49:32 | 000,000,116 | —- | M] () – C:\WINXP\NeroDigital.ini
[2011/08/14 10:52:00 | 000,000,882 | —- | M] () – C:\WINXP\tasks\GoogleUpdateTaskMachineCore.job
[2011/08/14 09:52:48 | 000,406,594 | —- | M] () – C:\WINXP\System32\perfh009.dat
[2011/08/14 09:52:48 | 000,063,920 | —- | M] () – C:\WINXP\System32\perfc009.dat
[2011/08/14 09:48:42 | 000,002,206 | —- | M] () – C:\WINXP\System32\wpa.dbl
[2011/08/14 09:48:00 | 000,002,048 | –S- | M] () – C:\WINXP\bootstat.dat
[2011/08/14 09:47:56 | 938,790,912 | -HS- | M] () – C:\hiberfil.sys
[2011/08/13 18:03:10 | 000,006,656 | —- | M] () – C:\Documents and Settings\Kelly\My Documents\UserIDs & Passwords.wdb
[2011/08/13 15:15:13 | 000,002,310 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\Google Chrome.lnk
[2011/08/13 15:15:13 | 000,002,288 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/08/12 16:06:14 | 000,002,507 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Word.lnk
[2011/08/10 20:13:22 | 000,000,205 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Online Games Free Games Online Games Pogo Games.url
[2011/08/09 20:56:56 | 000,001,355 | —- | M] () – C:\WINXP\imsins.BAK
[2011/08/07 11:30:32 | 000,000,278 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\Consumer Cellular.url
[2011/08/07 11:29:52 | 000,000,291 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\Dictionary.com.url
[2011/08/07 09:56:14 | 000,000,310 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\wccls.org.url
[2011/08/05 22:56:37 | 000,000,286 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\craigslist.url
[2011/08/05 22:42:27 | 000,000,444 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\ncnetwork.net.url
[2011/08/05 22:34:38 | 000,000,227 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\Westell.url
[2011/08/05 22:33:03 | 000,004,888 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\AccuWeather.url
[2011/08/05 21:53:59 | 000,000,240 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\a2z WordFinder.url
[2011/08/05 21:48:33 | 000,404,640 | —- | M] (Adobe Systems Incorporated) – C:\WINXP\System32\FlashPlayerCPLApp.cpl
[2011/08/04 21:48:26 | 000,000,496 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\City of Forest Grove.url
[2011/08/04 16:44:29 | 000,000,000 | —- | M] () – C:\WINXP\lgfwup.ini
[2011/08/04 16:32:40 | 000,016,400 | —- | M] (Logitech, Inc.) – C:\WINXP\System32\drivers\LNonPnP.sys
[2011/08/01 14:42:21 | 000,000,841 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/08/01 13:57:36 | 000,002,060 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\eBay.url
[2011/07/30 22:06:48 | 000,000,396 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Google.url
[2011/07/30 09:47:30 | 000,211,000 | —- | M] () – C:\Documents and Settings\Kelly\My Documents\TotalRecipeSearch.exe
[2011/07/29 08:51:31 | 000,000,239 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Oregon First Community Credit Union.url
[2011/07/25 08:17:44 | 005,969,920 | —- | M] (Microsoft Corporation) – C:\WINXP\System32\dllcache\mshtml.dll
[1 C:\WINXP\*.tmp files -> C:\WINXP\*.tmp -> ]
========== Files Created - No Company Name ==========
[2181/08/07 18:45:23 | 000,003,120 | —- | C] () – C:\WINXP\MF_C421.lfa
[2181/08/07 18:45:23 | 000,003,120 | —- | C] () – C:\WINXP\MF_C420.lfa
[2011/08/13 15:15:13 | 000,002,310 | —- | C] () – C:\Documents and Settings\Kelly\Desktop\Google Chrome.lnk
[2011/08/13 15:15:13 | 000,002,288 | —- | C] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/08/13 15:09:39 | 000,000,978 | —- | C] () – C:\WINXP\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-2139871995-725345543-1003UA.job
[2011/08/13 15:09:38 | 000,000,926 | —- | C] () – C:\WINXP\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-2139871995-725345543-1003Core.job
[2011/08/10 20:13:22 | 000,000,205 | —- | C] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Online Games Free Games Online Games Pogo Games.url
[2011/08/04 16:40:34 | 000,000,000 | —- | C] () – C:\WINXP\lgfwup.ini
[2011/07/30 09:47:30 | 000,211,000 | —- | C] () – C:\Documents and Settings\Kelly\My Documents\TotalRecipeSearch.exe
[2011/05/17 16:23:01 | 000,077,824 | R— | C] () – C:\WINXP\System32\HPZIDS01.dll
[2011/05/10 19:09:23 | 000,117,153 | —- | C] () – C:\WINXP\hpoins11.dat
[2011/04/26 21:06:46 | 000,184,320 | —- | C] () – C:\WINXP\System32\r_server.exe
[2011/04/26 20:54:27 | 000,090,112 | —- | C] () – C:\WINXP\System32\AdmDll.dll
[2011/04/02 19:55:06 | 000,000,000 | —- | C] () – C:\WINXP\nsreg.dat
[2011/01/22 22:21:15 | 000,071,127 | —- | C] () – C:\WINXP\hpqins01.dat
[2011/01/13 00:21:01 | 000,000,172 | —- | C] () – C:\WINXP\System32\MRT.INI
[2009/07/28 10:58:26 | 000,000,000 | —- | C] () – C:\WINXP\ativpsrm.bin
[2009/07/28 10:56:30 | 000,593,920 | —- | C] () – C:\WINXP\System32\ati2sgag.exe
[2009/03/03 12:18:04 | 000,073,728 | —- | C] () – C:\WINXP\System32\RtNicProp32.dll
[2009/02/25 13:58:44 | 003,107,788 | —- | C] () – C:\WINXP\System32\ativva5x.dat
[2009/02/25 13:58:44 | 000,887,724 | —- | C] () – C:\WINXP\System32\ativva6x.dat
[2009/02/07 13:07:00 | 000,000,000 | —- | C] () – C:\WINXP\FullDisk.INI
[2009/01/26 10:55:37 | 000,182,995 | —- | C] () – C:\WINXP\System32\atiicdxx.dat
[2009/01/19 17:05:00 | 002,527,105 | —- | C] () – C:\Program Files\vcdgear355.zip
[2009/01/10 15:03:56 | 000,057,344 | —- | C] () – C:\WINXP\System32\ff_vfw.dll
[2009/01/10 14:29:15 | 000,000,116 | —- | C] () – C:\WINXP\NeroDigital.ini
[2008/10/21 08:13:42 | 000,000,133 | —- | C] () – C:\Documents and Settings\All Users.WINXP\Application Data\Microsoft.SqlServer.Compact.351.32.bc
[2008/07/16 15:07:51 | 000,000,036 | -H– | C] () – C:\WINXP\System32\f9t.dat
[2008/06/13 16:00:32 | 000,000,000 | —- | C] () – C:\Documents and Settings\Kelly\Application Data\wklnhst.dat
[2008/06/07 10:16:16 | 000,000,128 | —- | C] () – C:\Documents and Settings\Kelly\Local Settings\Application Data\fusioncache.dat
[2008/06/06 12:17:15 | 000,112,397 | —- | C] () – C:\WINXP\hpoins07.dat
[2008/06/06 12:17:15 | 000,021,124 | —- | C] () – C:\WINXP\hpomdl07.dat
[2008/05/26 12:57:14 | 000,000,056 | —- | C] () – C:\WINXP\WININIT.INI
[2008/05/25 20:02:26 | 000,027,019 | —- | C] () – C:\WINXP\maxlink.ini
[2008/05/17 10:56:16 | 000,000,056 | -H– | C] () – C:\WINXP\System32\ezsidmv.dat
[2008/03/29 13:16:45 | 000,000,664 | —- | C] () – C:\WINXP\System32\d3d9caps.dat
[2008/03/02 16:58:45 | 000,019,456 | —- | C] () – C:\Documents and Settings\Kelly\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/02/17 12:03:35 | 000,045,056 | —- | C] () – C:\WINXP\System32\vusetup.dll
[2008/02/06 11:10:38 | 000,000,136 | —- | C] () – C:\WINXP\SWISNIFE.INI
[2008/02/06 11:10:32 | 000,196,576 | —- | C] () – C:\WINXP\System32\drivers\ONSIO.SYS
[2008/02/06 11:10:00 | 000,000,248 | —- | C] () – C:\WINXP\OPLIMIT.DAT
[2008/02/05 17:51:28 | 000,001,012 | —- | C] () – C:\WINXP\Ulead32.ini
[2008/02/03 18:57:30 | 000,000,552 | —- | C] () – C:\WINXP\System32\d3d8caps.dat
[2008/01/28 08:56:28 | 000,003,840 | —- | C] () – C:\WINXP\System32\drivers\BANTExt.sys
[2008/01/27 17:39:39 | 000,000,030 | —- | C] () – C:\WINXP\INTURS.DAT
[2008/01/27 17:39:29 | 000,000,165 | —- | C] () – C:\WINXP\QUICKEN.INI
[2008/01/27 17:37:09 | 000,000,370 | —- | C] () – C:\WINXP\ODBC.INI
[2008/01/27 16:50:57 | 000,002,048 | –S- | C] () – C:\WINXP\bootstat.dat
[2008/01/27 16:44:19 | 000,021,640 | —- | C] () – C:\WINXP\System32\emptyregdb.dat
[2008/01/27 08:35:17 | 000,004,073 | —- | C] () – C:\WINXP\ODBCINST.INI
[2008/01/27 08:34:02 | 000,173,080 | —- | C] () – C:\WINXP\System32\FNTCACHE.DAT
[2007/12/14 12:32:52 | 000,012,632 | —- | C] () – C:\WINXP\System32\lsdelete.exe
[2007/08/15 07:27:18 | 000,009,600 | —- | C] () – C:\WINXP\System32\drivers\n558.sys
[2006/05/05 14:18:56 | 000,011,634 | —- | C] () – C:\WINXP\hpomdl11.dat
[2005/09/11 19:35:18 | 000,000,000 | —- | C] () – C:\WINXP\System32\px.ini
[2004/08/04 05:00:00 | 013,107,200 | —- | C] () – C:\WINXP\System32\oembios.bin
[2004/08/04 05:00:00 | 000,673,088 | —- | C] () – C:\WINXP\System32\mlang.dat
[2004/08/04 05:00:00 | 000,406,594 | —- | C] () – C:\WINXP\System32\perfh009.dat
[2004/08/04 05:00:00 | 000,272,128 | —- | C] () – C:\WINXP\System32\perfi009.dat
[2004/08/04 05:00:00 | 000,218,003 | —- | C] () – C:\WINXP\System32\dssec.dat
[2004/08/04 05:00:00 | 000,063,920 | —- | C] () – C:\WINXP\System32\perfc009.dat
[2004/08/04 05:00:00 | 000,046,258 | —- | C] () – C:\WINXP\System32\mib.bin
[2004/08/04 05:00:00 | 000,028,626 | —- | C] () – C:\WINXP\System32\perfd009.dat
[2004/08/04 05:00:00 | 000,004,569 | —- | C] () – C:\WINXP\System32\secupd.dat
[2004/08/04 05:00:00 | 000,004,463 | —- | C] () – C:\WINXP\System32\oembios.dat
[2004/08/04 05:00:00 | 000,001,804 | —- | C] () – C:\WINXP\System32\dcache.bin
[2004/08/04 05:00:00 | 000,000,741 | —- | C] () – C:\WINXP\System32\noise.dat
[2002/03/04 10:16:34 | 000,110,592 | R— | C] () – C:\WINXP\System32\Jpeg32.dll
[2001/07/06 15:30:00 | 000,003,399 | —- | C] () – C:\WINXP\System32\hptcpmon.ini
[1999/03/22 01:00:00 | 000,065,536 | —- | C] () – C:\WINXP\System32\MSRTEDIT.DLL
========== LOP Check ==========
[2010/09/12 20:46:41 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Acronis
[2010/12/19 12:18:13 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Alwil Software
[2011/08/14 18:10:07 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Easybits GO
[2008/01/27 18:30:44 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\IM
[2008/02/13 11:10:01 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\IncrediMail
[2008/05/27 14:26:17 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\JollyBear
[2011/08/01 15:58:10 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\LNGDHBAZXG
[2008/03/23 14:39:29 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Musicnotes
[2011/04/16 13:08:55 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Oberon Media
[2010/05/15 10:59:36 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\PhotoMail
[2008/05/25 20:01:56 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\ScanSoft
[2011/08/04 16:40:55 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\TEMP
[2009/01/10 13:53:18 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\WinZip
[2011/06/18 09:19:20 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Zoom Player
[2008/09/27 09:45:13 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\DeLorme
[2011/08/14 16:00:07 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\go
[2008/10/21 09:48:31 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\HotSync
[2008/05/26 13:07:20 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Leadertech
[2011/04/26 20:14:43 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Oberon Media
[2008/02/03 18:57:28 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Pogo Games
[2008/06/01 12:59:36 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Radmin
[2008/05/25 20:05:20 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\ScanSoft
[2008/09/17 14:22:08 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Skinux
[2008/08/16 07:11:08 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Stamps.com Internet Postage
[2008/10/21 09:28:30 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Supreme Auction
[2008/06/13 15:02:11 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Template
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2006/09/18 14:43:36 | 000,000,024 | —- | M] () – C:\autoexec.bat
[2010/05/19 18:55:40 | 000,000,207 | -HS- | M] () – C:\boot.ini
[2006/11/02 02:53:57 | 000,438,840 | RHS- | M] () – C:\bootmgr
[2006/12/11 12:59:35 | 000,008,192 | R-S- | M] () – C:\BOOTSECT.BAK
[2006/09/18 14:43:37 | 000,000,010 | —- | M] () – C:\config.sys
[2008/06/13 12:48:39 | 000,000,227 | —- | M] () – C:\CtDrvIns.log
[2008/06/13 12:49:52 | 000,003,031 | —- | M] () – C:\CtDrvStp.log
[2011/08/14 09:47:56 | 938,790,912 | -HS- | M] () – C:\hiberfil.sys
[2008/01/26 14:35:01 | 000,000,000 | RHS- | M] () – C:\IO.SYS
[2011/08/14 09:51:32 | 000,090,395 | —- | M] () – C:\mombi.log
[2008/01/26 14:35:01 | 000,000,000 | RHS- | M] () – C:\MSDOS.SYS
[2004/08/04 05:00:00 | 000,047,564 | RHS- | M] () – C:\NTDETECT.COM
[2008/09/18 03:34:55 | 000,250,048 | RHS- | M] () – C:\ntldr
[2011/08/14 09:47:52 | 2818,572,288 | -HS- | M] () – C:\pagefile.sys
[2008/06/11 04:44:18 | 000,088,516 | —- | M] () – C:\QDATA.IDX
[2008/06/11 04:44:18 | 004,575,960 | —- | M] () – C:\QDATA.QDF
[2008/06/11 04:44:18 | 000,373,760 | —- | M] () – C:\QDATA.QEL
[2004/11/11 19:08:22 | 000,000,032 | —- | M] () – C:\QDATA.QPH
[2008/06/11 04:44:18 | 000,016,996 | —- | M] () – C:\QDATA.QSD
[2010/12/14 13:42:26 | 000,120,393 | —- | M] () – C:\Quicken 2008.IDX
[2010/12/14 13:42:26 | 002,569,104 | —- | M] () – C:\Quicken 2008.QDF
[2010/12/14 13:42:26 | 000,154,624 | —- | M] () – C:\Quicken 2008.QEL
[2010/12/15 22:08:33 | 183,947,087 | —- | M] () – C:\quicken2010.zip
[2008/06/28 10:14:52 | 000,003,742 | —- | M] () – C:\QuickenOLBackupLauncher.IDX
[2008/06/28 10:14:52 | 001,087,560 | —- | M] () – C:\QuickenOLBackupLauncher.QDF
[2008/06/28 10:14:52 | 000,029,696 | —- | M] () – C:\QuickenOLBackupLauncher.QEL
[2008/06/01 13:28:49 | 001,511,664 | —- | M] () – C:\RADMIN20.EXE
[2006/12/11 13:17:58 | 000,000,402 | —- | M] () – C:\RHDSetup.log
[2009/01/31 17:42:53 | 000,001,235 | —- | M] () – C:\sti.log
[2006/12/11 13:27:36 | 000,000,000 | —- | M] () – C:\Trace.log
< %systemroot%\Fonts\*.com >
< %systemroot%\Fonts\*.dll >
[2006/02/19 03:28:56 | 000,012,288 | —- | M] (Hewlett-Packard Development Company, L.P.) – C:\WINXP\Fonts\RandFont.dll
< %systemroot%\Fonts\*.ini >
[2008/01/27 16:47:21 | 000,000,067 | -HS- | M] () – C:\WINXP\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2008/07/06 05:06:10 | 000,089,088 | —- | M] (Microsoft Corporation) – C:\WINXP\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
[2006/04/10 14:02:32 | 000,074,240 | —- | M] (Hewlett-Packard Corporation) – C:\WINXP\system32\spool\prtprocs\w32x86\hpzpp054.dll
[2001/11/20 14:37:28 | 000,047,616 | R— | M] (Black Ice Software) – C:\WINXP\system32\spool\prtprocs\w32x86\ppbiPr.dll
[2008/07/06 03:50:03 | 000,597,504 | —- | M] (Microsoft Corporation) – C:\WINXP\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2010/09/07 09:12:17 | 000,038,848 | —- | M] (AVAST Software) – C:\WINXP\avastSS.scr
[1 C:\WINXP\*.tmp files -> C:\WINXP\*.tmp -> ]
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008/01/19 17:08:26 | 000,000,174 | -HS- | M] () – C:\Program Files\desktop.ini
[2009/01/19 17:05:44 | 002,527,105 | —- | M] () – C:\Program Files\vcdgear355.zip
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2008/01/27 08:33:04 | 000,094,208 | —- | M] () – C:\WINXP\System32\config\default.sav
[2008/01/27 08:33:04 | 000,659,456 | —- | M] () – C:\WINXP\System32\config\software.sav
[2008/01/27 08:33:04 | 000,888,832 | —- | M] () – C:\WINXP\System32\config\system.sav
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
[2008/09/18 03:43:46 | 000,000,272 | -HS- | M] () – C:\Documents and Settings\All Users.WINXP\Start Menu\desktop.ini
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2008/01/27 16:54:43 | 000,000,119 | -HS- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini
[2011/08/01 13:57:36 | 000,002,060 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\eBay.url
[2011/08/10 20:13:22 | 000,000,205 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Online Games Free Games Online Games Pogo Games.url
[2011/07/30 22:06:48 | 000,000,396 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Google.url
[2011/07/29 08:51:31 | 000,000,239 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Oregon First Community Credit Union.url
[2011/07/09 11:18:16 | 000,000,240 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Send Money, Pay Online, and Receive Money - all with PayPal.url
[2008/01/27 16:54:42 | 000,000,079 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2009/09/06 15:15:01 | 000,000,923 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\TVGuide.com.url
< %USERPROFILE%\Desktop\*.exe >
[2011/08/14 18:08:54 | 000,580,096 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Kelly\Desktop\OTL.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-08-14 03:34:25
========== Alternate Data Streams ==========
@Alternate Data Stream - 136 bytes -> C:\Documents and Settings\All Users.WINXP\Application Data\TEMP:4EFDF5FB
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users.WINXP\Application Data\TEMP:54997B77
@Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users.WINXP\Application Data\TEMP:225C4FFC
< End of report >
Was told to post here.
OTL logfile created on: 8/14/2011 6:13:23 PM - Run 1
OTL by OldTimer - Version 3.2.26.3 Folder = C:\Documents and Settings\Kelly\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
895.23 Mb Total Physical Memory | 325.80 Mb Available Physical Memory | 36.39% Memory free
3.43 Gb Paging File | 2.98 Gb Available in Paging File | 86.78% Paging File free
Paging file location(s): C:\pagefile.sys 2688 2688 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINXP | %ProgramFiles% = C:\Program Files
Drive C: | 76.02 Gb Total Space | 35.43 Gb Free Space | 46.61% Space Free | Partition Type: NTFS
Drive E: | 30.01 Gb Total Space | 7.20 Gb Free Space | 23.99% Space Free | Partition Type: NTFS
Drive F: | 5.76 Gb Total Space | 0.88 Gb Free Space | 15.20% Space Free | Partition Type: NTFS
Computer Name: KRBSPC | User Name: Kelly | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Kelly\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\GoogleCrashHandler.exe (Google Inc.)
PRC - C:\WINXP\system32\r_server.exe ()
PRC - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (Logitech, Inc.)
PRC - C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
PRC - C:\Program Files\Marxio Timer\Marxio Timer.exe (Marek Mantaj)
PRC - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
PRC - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
PRC - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
PRC - C:\WINXP\system32\HPZipm12.exe (HP)
PRC - C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe (Hewlett-Packard Development Company, L.P.)
PRC - C:\Program Files\Mouse Driver\MouseDrv.exe ()
PRC - C:\noisykey\Nkboard.exe ()
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Kelly\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\algo.dll ()
MOD - C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\goopdate.dll (Google Inc.)
MOD - C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\GoogleCrashHandler.exe (Google Inc.)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswScan.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswEngin.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswCmnBS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswRep.dll ()
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswCmnIS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\aswCmnOS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\defs\11081400\ArPot.dll (AVAST Software)
MOD - C:\Documents and Settings\All Users.WINXP\Application Data\Skype\Plugins\ezPMUtils.dll (EasyBits Media)
MOD - C:\Documents and Settings\All Users.WINXP\Application Data\Easybits GO\ezGameXN.dll (EasyBits Media)
MOD - C:\Documents and Settings\All Users.WINXP\Application Data\Easybits GO\Games\53F537B72987463CB06D78F5541A3239\skGamesUpdate.dll (EasyBits Software AS)
MOD - C:\WINXP\system32\jsproxy.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.dll (Adobe Systems, Inc.)
MOD - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\msvcr80.dll (Microsoft Corporation)
MOD - c:\winxp\assembly\gac\hpqisrtb\4.0.0.0__a53cf5803f4c3827\hpqisrtb.dll ()
MOD - c:\winxp\assembly\gac\hpqedit\3.0.0.0__a53cf5803f4c3827\hpqedit.dll ()
MOD - c:\winxp\assembly\gac\hpqbakup\3.0.0.0__a53cf5803f4c3827\hpqbakup.dll ()
MOD - c:\winxp\assembly\gac\hpqvideo\3.0.0.0__a53cf5803f4c3827\hpqvideo.dll ()
MOD - c:\winxp\assembly\gac\hpqmdmr\4.0.0.0__a53cf5803f4c3827\hpqmdmr.dll ()
MOD - c:\winxp\assembly\gac\hpqprrsc\4.0.0.0__a53cf5803f4c3827\hpqprrsc.dll ()
MOD - c:\winxp\assembly\gac\hpqovskn\3.0.0.0__a53cf5803f4c3827\hpqovskn.dll ()
MOD - c:\winxp\assembly\gac\interop.hpqcxm08\3.0.0.0__a53cf5803f4c3827\interop.hpqcxm08.dll ()
MOD - c:\winxp\assembly\gac\interop.hpqvideo\4.0.0.0__a53cf5803f4c3827\interop.hpqvideo.dll ()
MOD - c:\winxp\assembly\gac\interop.hpqimgr\4.0.0.0__a53cf5803f4c3827\interop.hpqimgr.dll ()
MOD - c:\winxp\assembly\gac\interop.hprblog\3.0.0.0__a53cf5803f4c3827\interop.hprblog.dll ()
MOD - c:\winxp\assembly\gac\hpqimvlt\3.0.0.0__a53cf5803f4c3827\hpqimvlt.dll ()
MOD - c:\winxp\assembly\gac\hpqimgrc\4.0.0.0__a53cf5803f4c3827\hpqimgrc.dll ()
MOD - c:\winxp\assembly\gac\hpqntrop\4.0.0.0__a53cf5803f4c3827\hpqntrop.dll ()
MOD - c:\winxp\assembly\gac\hpqtray\4.0.0.0__a53cf5803f4c3827\hpqtray.dll ()
MOD - c:\winxp\assembly\gac\hpqthumb\3.0.0.0__a53cf5803f4c3827\hpqthumb.dll ()
MOD - c:\winxp\assembly\gac\hpqglutl\4.0.0.0__a53cf5803f4c3827\hpqglutl.dll ()
MOD - c:\winxp\assembly\gac\hpqimlib\3.0.0.0__a53cf5803f4c3827\hpqimlib.dll ()
MOD - c:\winxp\assembly\gac\hpqfmrsc\4.0.0.0__a53cf5803f4c3827\hpqfmrsc.dll ()
MOD - c:\winxp\assembly\gac\hpqasset\4.0.0.0__a53cf5803f4c3827\hpqasset.dll ()
MOD - c:\winxp\assembly\gac\hpqiface\4.0.0.0__a53cf5803f4c3827\hpqiface.dll ()
MOD - c:\winxp\assembly\gac\hpqutils\4.0.0.0__a53cf5803f4c3827\hpqutils.dll ()
MOD - c:\winxp\assembly\gac\hpqcprsc\3.0.0.0__a53cf5803f4c3827\hpqcprsc.dll ()
MOD - c:\winxp\assembly\gac\hpqcc2\3.0.0.0__a53cf5803f4c3827\hpqcc2.dll ()
MOD - C:\WINXP\system32\r_server.exe ()
MOD - C:\WINXP\system32\AdmDll.dll ()
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_028bc148\mfc90u.dll (Microsoft Corporation)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\msvcr90.dll (Microsoft Corporation)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\msvcp90.dll (Microsoft Corporation)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90enu.dll (Microsoft Corporation)
MOD - C:\WINXP\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_92453bb7\atl90.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\mfc42.dll (Microsoft Corporation)
MOD - C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll (Malwarebytes Corporation)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALUSB.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMOU.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMW.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALHPP.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALITCH.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALAPI.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALHID.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\Macros\MacroMedia.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\Macros\MacroEmail.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\Macros\MacroAppSwitch.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\WebBrowserSupport.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\SetPointCOM.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\LCabHandler.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KGame.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\khalwrapper.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KemXML.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KemUtil.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KemWnd.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\kemutb.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPointP\KemMon.dll (Logitech, Inc.)
MOD - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
MOD - C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.dll (Logitech, Inc.)
MOD - C:\WINXP\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22509_x-ww_c7dad023\GdiPlus.dll (Microsoft Corporation)
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_45ef1598\mscorlib.dll ()
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_37859ac2\system.drawing.dll ()
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_27628ae3\system.xml.dll ()
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_276c58a2\system.windows.forms.dll ()
MOD - c:\winxp\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_068d1fc9\system.dll ()
MOD - c:\winxp\assembly\gac\system\1.0.5000.0__b77a5c561934e089\system.dll ()
MOD - C:\Program Files\Alwil Software\Avast5\1033\uiLangRes.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\1033\Base.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\CommonRes.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswUtil.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswSqLt.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswProperty.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswLog.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswIdle.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswEngLdr.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswDld.dll ()
MOD - C:\Program Files\Alwil Software\Avast5\aswData.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswCmnOS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswCmnIS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswCmnBS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\aswAux.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashWsFtr.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashWebSv.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashTaskEx.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashTask.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashShell.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashServ.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashMaiSv.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ashBase.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResWS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResStd.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ahResP2P.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResNS.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\ahResMes.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResMai.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AhResBhv.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AavmRpch.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\Aavm4h.dll (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
MOD - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
MOD - C:\WINXP\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\WMVCore.dll (Microsoft Corporation)
MOD - C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll ()
MOD - C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
MOD - C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll ()
MOD - C:\Program Files\CyberLink\Power2Go\msvcp71.dll (Microsoft Corporation)
MOD - C:\Program Files\CyberLink\Power2Go\msvcr71.dll (Microsoft Corporation)
MOD - C:\Program Files\Spybot - Search & Destroy\advcheck.dll (Safer-Networking Ltd.)
MOD - C:\Program Files\CyberLink\YouCam\YCWebCameraSource.ax (CyberLink)
MOD - C:\Program Files\Marxio Timer\Marxio Timer.exe (Marek Mantaj)
MOD - C:\Program Files\CyberLink\YouCam\YCRgl.ax (Cyberlink)
MOD - C:\Program Files\CyberLink\YouCam\msvcr71.dll (Microsoft Corporation)
MOD - C:\Program Files\CyberLink\YouCam\msvcp71.dll (Microsoft Corporation)
MOD - C:\Program Files\CyberLink\YouCam\MFC71u.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wucltui.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wups2.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\mucltui.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\msls31.dll (Microsoft Corporation)
MOD - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
MOD - C:\WINXP\system32\atipdlxx.dll (ATI Technologies, Inc.)
MOD - C:\WINXP\system32\ati2edxx.dll (ATI Technologies, Inc.)
MOD - C:\WINXP\system32\ati2evxx.dll (ATI Technologies Inc.)
MOD - C:\Program Files\WinZip\WZSHLSTB.DLL (WinZip Computing, S.L.)
MOD - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
MOD - C:\Program Files\Zoom Player\zpshlext.dll ()
MOD - C:\WINXP\system32\mscms.dll (Microsoft Corporation)
MOD - c:\winxp\assembly\gac\system.xml\1.0.5000.0__b77a5c561934e089\system.xml.dll ()
MOD - c:\winxp\assembly\gac\system.drawing\1.0.5000.0__b03f5f7f11d50a3a\system.drawing.dll ()
MOD - c:\winxp\assembly\gac\system.windows.forms\1.0.5000.0__b77a5c561934e089\system.windows.forms.dll ()
MOD - c:\winxp\assembly\gac\lead.wrapper\13.0.0.113__9cf889f53ea9b907\lead.wrapper.dll ()
MOD - c:\winxp\assembly\gac\lead.drawing.imaging.imageprocessing\13.0.0.113__9cf889f53ea9b907\lead.drawing.imaging.imageprocessing.dll ()
MOD - c:\winxp\assembly\gac\lead.drawing\13.0.0.113__9cf889f53ea9b907\lead.drawing.dll ()
MOD - c:\winxp\assembly\gac\lead.drawing.imaging.codecs\13.0.0.113__9cf889f53ea9b907\lead.drawing.imaging.codecs.dll ()
MOD - c:\winxp\assembly\gac\lead\13.0.0.113__9cf889f53ea9b907\lead.dll ()
MOD - c:\winxp\assembly\gac\lead.windows.forms.drawingcontainer\13.0.0.113__9cf889f53ea9b907\lead.windows.forms.drawingcontainer.dll ()
MOD - c:\winxp\assembly\gac\lead.windows.forms\13.0.0.113__9cf889f53ea9b907\lead.windows.forms.dll ()
MOD - c:\winxp\assembly\gac\accessibility\1.0.5000.0__b03f5f7f11d50a3a\accessibility.dll ()
MOD - C:\WINXP\system32\rdpwsx.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\drmclien.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\bthprops.cpl (Microsoft Corporation)
MOD - C:\WINXP\system32\wsnmp32.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wship6.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wmasf.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wmidx.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\wlanapi.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\System\wab32.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\vdmdbg.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\unimdmat.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\sti.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\snmpapi.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\shfolder.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\security.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\msoert2.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\msimtf.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\msdmo.dll ()
MOD - C:\WINXP\system32\modemui.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\mgmtapi.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\ksuser.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\faultrep.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\dxdiagn.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\dsound.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\devmgr.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\devenum.dll ()
MOD - C:\WINXP\system32\wmploc.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\browselc.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\System\wab32res.dll (Microsoft Corporation)
MOD - C:\Program Files\Haali\MatroskaSplitter\mmfinfo.dll ()
MOD - C:\Program Files\Haali\MatroskaSplitter\mkunicode.dll ()
MOD - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
MOD - C:\Program Files\Lavasoft\Ad-Aware 2007\CEAPI.dll (Lavasoft)
MOD - C:\Program Files\Lavasoft\Ad-Aware 2007\Update.dll ()
MOD - C:\Program Files\Lavasoft\Ad-Aware 2007\pkarchive85u.dll (PKWARE, Inc.)
MOD - C:\WINXP\system32\relog_ap.dll (Acronis)
MOD - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
MOD - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll (Nero AG)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpotra08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpotra08.rsc (Hewlett-Packard Development Company, L.P.)
MOD - C:\WINXP\system32\hpowiax2.dll (Hewlett-Packard)
MOD - C:\WINXP\system32\hpz3l054.dll (Hewlett-Packard Company)
MOD - C:\WINXP\system32\spool\prtprocs\w32x86\hpzpp054.dll (Hewlett-Packard Corporation)
MOD - C:\WINXP\system32\spool\drivers\w32x86\3\hpcdmc32.dll (HP)
MOD - C:\WINXP\system32\HPZipm12.exe (HP)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpotradd.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpodvd09.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpoddcomm09.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqrif08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqste08.rsc (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqsti08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqsem08.rsc (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpocxi08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqstp08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqmif08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpquio08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpodio08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqcob08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqusg.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqcxm08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqtao08.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.rsc (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqmfc09.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqtap08.dll (Hewlett-Packard Development Company, L.P.)
MOD - c:\Program Files\HP\Digital Imaging\bin\hpqmirsc.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqvdcom.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\bin\hpqimgr.dll (Hewlett-Packard Development Company, L.P.)
MOD - C:\Program Files\HP\Digital Imaging\Unload\hpnkhTA.dll (Hewlett-Packard)
MOD - C:\WINXP\system32\hpzjrd01.dll (Hewlett Packard)
MOD - C:\WINXP\system32\HPTcpMUI.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\HPTcpMon.dll (Hewlett Packard)
MOD - C:\WINXP\system32\HPTcpMib.dll (Hewlett Packard)
MOD - C:\WINXP\system32\hpzsnt12.dll (HP)
MOD - C:\Program Files\Common Files\Ahead\Lib\NeroDigitalExt.dll (Nero AG)
MOD - C:\Program Files\HP\Digital Imaging\bin\dbghelp.dll (Microsoft Corporation)
MOD - C:\Program Files\HP\Digital Imaging\bin\crm\hpqcrmcm.dll (Hewlett-Packard Company)
MOD - C:\Program Files\HP\Digital Imaging\bin\ltkrn13n.dll (LEAD Technologies, Inc.)
MOD - C:\Program Files\HP\Digital Imaging\bin\ltfil13n.DLL (LEAD Technologies, Inc.)
MOD - C:\Program Files\HP\Digital Imaging\bin\crm\xmlparse.dll ()
MOD - C:\Program Files\HP\Digital Imaging\bin\crm\xmltok.dll ()
MOD - C:\WINXP\system32\HPZipr12.dll (HP)
MOD - C:\WINXP\system32\HPZidr12.dll (HP)
MOD - C:\WINXP\system32\mapi32.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\utildll.dll (Microsoft Corporation)
MOD - C:\Program Files\Mouse Driver\MouseDrv.exe ()
MOD - C:\Program Files\Mouse Driver\MouseHook.dll ()
MOD - C:\Program Files\Common Files\Ahead\Lib\MFC71.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\Ahead\Lib\msvcp71.dll (Microsoft Corporation)
MOD - C:\Program Files\Nero\Nero 7\Nero BackItUp\mfc71u.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\mfc71.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\MFC71ENU.DLL (Microsoft Corporation)
MOD - C:\WINXP\system32\atl71.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\Ahead\Lib\msvcr71.dll (Microsoft Corporation)
MOD - C:\WINXP\system32\spool\prtprocs\w32x86\ppbiPr.dll (Black Ice Software)
MOD - C:\noisykey\Nkboard.dll ()
MOD - C:\noisykey\Nkboard.exe ()
========== Win32 Services (SafeList) ==========
SRV - (SeaPort) – File not found
SRV - (LBTServ) – C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (avast! Web Scanner) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (avast! Mail Scanner) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (avast! Antivirus) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (aawservice) – C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe (Lavasoft)
SRV - (AcrSch2Svc) – C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
SRV - (Pml Driver HPZ12) – C:\WINXP\system32\HPZipm12.exe (HP)
========== Driver Services (SafeList) ==========
DRV - (aswTdi) – C:\WINXP\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswSP) – C:\WINXP\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswRdr) – C:\WINXP\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (aswMon2) – C:\WINXP\System32\drivers\aswmon2.sys (AVAST Software)
DRV - (aswFsBlk) – C:\WINXP\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (Aavmker4) – C:\WINXP\System32\drivers\aavmker4.sys (AVAST Software)
DRV - (LMouFilt) – C:\WINXP\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) – C:\WINXP\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (LBeepKE) – C:\WINXP\system32\drivers\LBeepKE.sys (Logitech, Inc.)
DRV - (RTL8023xp) – C:\WINXP\system32\drivers\Rtnicxp.sys (Realtek Semiconductor Corporation )
DRV - (ati2mtag) – C:\WINXP\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) – C:\WINXP\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (KMWDFILTER) – C:\WINXP\system32\drivers\KMWDFILTER.sys (Windows ® Codename Longhorn DDK provider)
DRV - (USB_RNDIS_XP) – C:\WINXP\system32\drivers\usb8023.sys (Microsoft Corporation)
DRV - (BANTExt) – C:\WINXP\System32\Drivers\BANTExt.sys ()
DRV - (timounter) – C:\WINXP\system32\DRIVERS\timntr.sys (Acronis)
DRV - (tifsfilter) – C:\WINXP\system32\drivers\tifsfilt.sys (Acronis)
DRV - (snapman) – C:\WINXP\system32\DRIVERS\snapman.sys (Acronis)
DRV - (n558) – C:\WINXP\system32\drivers\n558.sys ()
DRV - (oxpar) – C:\WINXP\system32\drivers\oxpar.sys (OEM)
DRV - (oxmep) – C:\WINXP\system32\drivers\oxmep.sys (OEM)
DRV - (HSFHWBS2) – C:\WINXP\system32\drivers\HSFHWBS2.sys (Conexant Systems, Inc.)
DRV - (winachsf) – C:\WINXP\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (HSF_DP) – C:\WINXP\system32\drivers\HSF_DP.sys (Conexant Systems, Inc.)
DRV - (rtl8139) Realtek RTL8139(A/B/C) – C:\WINXP\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (SMPLSCSI) – C:\WINXP\System32\drivers\SMPLSCSI.SYS (OnSpec Electronic, Inc.)
DRV - (ONSIO) – C:\WINXP\system32\drivers\ONSIO.SYS ()
DRV - (ASPI32) – C:\WINXP\System32\drivers\ASPI32.SYS (Adaptec)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINXP\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINXP\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://toolbar.inbox.com/search/dispatcher…d&%language
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerm…tf8&oe=utf8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Web Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..network.proxy.type: 0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINXP\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@oberon-media.com/ONCAdapter: C:\Program Files\Common Files\Oberon Media\NCAdapter\1.0.0.7\npapicomadapter.dll (Oberon-Media )
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\[removed]/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Kelly\Local Settings\Application Data\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/08/03 17:15:21 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
[2011/04/02 19:56:06 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Kelly\Application Data\Mozilla\Extensions
[2011/08/01 17:23:31 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\oczf82m1.default\extensions
[2011/08/01 17:23:31 | 000,000,000 | —D | M] (Oberon GamesBar) – C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\oczf82m1.default\extensions\[removed]
[2011/08/14 17:48:49 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/08/14 17:48:49 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
File not found (No name found) –
[2011/08/14 17:48:32 | 000,000,000 | —D | M] (Java Quick Starter) – C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/08/03 17:15:20 | 000,142,296 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/08/03 17:15:11 | 000,002,252 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/04/15 16:54:31 | 000,001,600 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\WebSearchober21260203.xml
O1 HOSTS File: ([2004/08/04 05:00:00 | 000,000,734 | —- | M]) - C:\WINXP\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No CLSID value found.
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINXP\System32\bthprops.cpl (Microsoft Corporation)
O4 - HKLM..\Run: [CLMLServer] C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
O4 - HKLM..\Run: [CreativeMouse ] C:\Program Files\Mouse Driver\MouseDrv.exe ()
O4 - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePSTShortCut] C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - Startup: C:\Documents and Settings\All Users.WINXP\Start Menu\Programs\Startup\HP Photosmart Premier Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe (Hewlett-Packard Development Company, L.P.)
O4 - Startup: C:\Documents and Settings\Kelly\Start Menu\Programs\Startup\Shortcut to Nkboard.exe.lnk = C:\noisykey\Nkboard.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} http://www.musicnotes.com/download/mnviewer.cab (Musicnotes Viewer)
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab (HP Download Manager)
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20270.www2.hp.com/ediags/gmn2/inst…tDetection2.cab (GMNRev Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} Reg Error: Value error. (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shock…ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINXP\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O30 - LSA: Authentication Packages - (relog_ap) - C:\WINXP\System32\relog_ap.dll (Acronis)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 14:43:36 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINXP\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINXP\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINXP\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINXP\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINXP\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINXP\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINXP\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINXP\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINXP\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINXP\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINXP\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINXP\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.LEAD - LCODCCMP.DLL File not found
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011/08/14 18:08:49 | 000,580,096 | —- | C] (OldTimer Tools) – C:\Documents and Settings\Kelly\Desktop\OTL.exe
[2011/08/14 17:48:48 | 000,073,728 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\javacpl.cpl
[2011/08/14 17:48:47 | 000,157,472 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\javaws.exe
[2011/08/14 17:48:47 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\javaw.exe
[2011/08/14 17:48:47 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\java.exe
[2011/08/14 17:48:22 | 000,000,000 | —D | C] – C:\Program Files\Java
[2011/08/13 15:14:41 | 000,000,000 | —D | C] – C:\Documents and Settings\Kelly\Start Menu\Programs\Google Chrome
[2011/08/13 13:52:55 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Application Data\Sun
[2011/08/13 13:51:52 | 000,472,808 | —- | C] (Sun Microsystems, Inc.) – C:\WINXP\System32\deployJava1.dll
[2011/08/09 20:16:08 | 000,139,656 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\dllcache\rdpwd.sys
[2011/08/09 20:13:23 | 000,010,496 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\dllcache\ndistapi.sys
[2011/08/05 10:14:31 | 000,000,000 | —D | C] – C:\Documents and Settings\Kelly\Local Settings\Application Data\Power2Go
[2011/08/04 16:40:31 | 000,115,016 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\MSINET.OCX
[2011/08/04 16:40:31 | 000,102,912 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\Vb6stkit.dll
[2011/08/04 16:40:31 | 000,102,160 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\VB6KO.DLL
[2011/08/04 16:40:31 | 000,059,904 | —- | C] (Microsoft Corporation) – C:\WINXP\System32\wbemdisp.tlb
[2011/08/04 16:38:42 | 000,000,000 | —D | C] – C:\Documents and Settings\Kelly\Application Data\CyberLink
[2011/08/04 16:38:39 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Start Menu\Programs\LG Power Tools
[2011/08/04 16:35:57 | 000,000,000 | —D | C] – C:\Documents and Settings\Kelly\Start Menu\Programs\LG Power Tools
[2011/08/04 16:34:56 | 000,000,000 | —D | C] – C:\Program Files\CyberLink
[2011/08/04 16:34:41 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Application Data\CyberLink
[2011/08/01 15:09:06 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Start Menu\Programs\Spybot - Search & Destroy
[2011/08/01 14:35:08 | 000,000,000 | -H-D | C] – C:\WINXP\ie8
[2011/07/31 17:51:17 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINXP\Start Menu\Programs\Malwarebytes' Anti-Malware
[1 C:\WINXP\*.tmp files -> C:\WINXP\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2181/08/07 18:45:23 | 000,003,120 | —- | M] () – C:\WINXP\MF_C421.lfa
[2181/08/07 18:45:23 | 000,003,120 | —- | M] () – C:\WINXP\MF_C420.lfa
[2011/08/14 18:14:00 | 000,000,978 | —- | M] () – C:\WINXP\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-2139871995-725345543-1003UA.job
[2011/08/14 18:08:54 | 000,580,096 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Kelly\Desktop\OTL.exe
[2011/08/14 17:52:01 | 000,000,886 | —- | M] () – C:\WINXP\tasks\GoogleUpdateTaskMachineUA.job
[2011/08/14 17:48:29 | 000,157,472 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\javaws.exe
[2011/08/14 17:48:29 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\javaw.exe
[2011/08/14 17:48:29 | 000,073,728 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\javacpl.cpl
[2011/08/14 17:48:28 | 000,472,808 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\deployJava1.dll
[2011/08/14 17:48:28 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\WINXP\System32\java.exe
[2011/08/14 15:14:00 | 000,000,926 | —- | M] () – C:\WINXP\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-2139871995-725345543-1003Core.job
[2011/08/14 13:49:32 | 000,000,116 | —- | M] () – C:\WINXP\NeroDigital.ini
[2011/08/14 10:52:00 | 000,000,882 | —- | M] () – C:\WINXP\tasks\GoogleUpdateTaskMachineCore.job
[2011/08/14 09:52:48 | 000,406,594 | —- | M] () – C:\WINXP\System32\perfh009.dat
[2011/08/14 09:52:48 | 000,063,920 | —- | M] () – C:\WINXP\System32\perfc009.dat
[2011/08/14 09:48:42 | 000,002,206 | —- | M] () – C:\WINXP\System32\wpa.dbl
[2011/08/14 09:48:00 | 000,002,048 | –S- | M] () – C:\WINXP\bootstat.dat
[2011/08/14 09:47:56 | 938,790,912 | -HS- | M] () – C:\hiberfil.sys
[2011/08/13 18:03:10 | 000,006,656 | —- | M] () – C:\Documents and Settings\Kelly\My Documents\UserIDs & Passwords.wdb
[2011/08/13 15:15:13 | 000,002,310 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\Google Chrome.lnk
[2011/08/13 15:15:13 | 000,002,288 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/08/12 16:06:14 | 000,002,507 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Word.lnk
[2011/08/10 20:13:22 | 000,000,205 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Online Games Free Games Online Games Pogo Games.url
[2011/08/09 20:56:56 | 000,001,355 | —- | M] () – C:\WINXP\imsins.BAK
[2011/08/07 11:30:32 | 000,000,278 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\Consumer Cellular.url
[2011/08/07 11:29:52 | 000,000,291 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\Dictionary.com.url
[2011/08/07 09:56:14 | 000,000,310 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\wccls.org.url
[2011/08/05 22:56:37 | 000,000,286 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\craigslist.url
[2011/08/05 22:42:27 | 000,000,444 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\ncnetwork.net.url
[2011/08/05 22:34:38 | 000,000,227 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\Westell.url
[2011/08/05 22:33:03 | 000,004,888 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\AccuWeather.url
[2011/08/05 21:53:59 | 000,000,240 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\a2z WordFinder.url
[2011/08/05 21:48:33 | 000,404,640 | —- | M] (Adobe Systems Incorporated) – C:\WINXP\System32\FlashPlayerCPLApp.cpl
[2011/08/04 21:48:26 | 000,000,496 | —- | M] () – C:\Documents and Settings\Kelly\Desktop\City of Forest Grove.url
[2011/08/04 16:44:29 | 000,000,000 | —- | M] () – C:\WINXP\lgfwup.ini
[2011/08/04 16:32:40 | 000,016,400 | —- | M] (Logitech, Inc.) – C:\WINXP\System32\drivers\LNonPnP.sys
[2011/08/01 14:42:21 | 000,000,841 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/08/01 13:57:36 | 000,002,060 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\eBay.url
[2011/07/30 22:06:48 | 000,000,396 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Google.url
[2011/07/30 09:47:30 | 000,211,000 | —- | M] () – C:\Documents and Settings\Kelly\My Documents\TotalRecipeSearch.exe
[2011/07/29 08:51:31 | 000,000,239 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Oregon First Community Credit Union.url
[2011/07/25 08:17:44 | 005,969,920 | —- | M] (Microsoft Corporation) – C:\WINXP\System32\dllcache\mshtml.dll
[1 C:\WINXP\*.tmp files -> C:\WINXP\*.tmp -> ]
========== Files Created - No Company Name ==========
[2181/08/07 18:45:23 | 000,003,120 | —- | C] () – C:\WINXP\MF_C421.lfa
[2181/08/07 18:45:23 | 000,003,120 | —- | C] () – C:\WINXP\MF_C420.lfa
[2011/08/13 15:15:13 | 000,002,310 | —- | C] () – C:\Documents and Settings\Kelly\Desktop\Google Chrome.lnk
[2011/08/13 15:15:13 | 000,002,288 | —- | C] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/08/13 15:09:39 | 000,000,978 | —- | C] () – C:\WINXP\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-2139871995-725345543-1003UA.job
[2011/08/13 15:09:38 | 000,000,926 | —- | C] () – C:\WINXP\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-2139871995-725345543-1003Core.job
[2011/08/10 20:13:22 | 000,000,205 | —- | C] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Online Games Free Games Online Games Pogo Games.url
[2011/08/04 16:40:34 | 000,000,000 | —- | C] () – C:\WINXP\lgfwup.ini
[2011/07/30 09:47:30 | 000,211,000 | —- | C] () – C:\Documents and Settings\Kelly\My Documents\TotalRecipeSearch.exe
[2011/05/17 16:23:01 | 000,077,824 | R— | C] () – C:\WINXP\System32\HPZIDS01.dll
[2011/05/10 19:09:23 | 000,117,153 | —- | C] () – C:\WINXP\hpoins11.dat
[2011/04/26 21:06:46 | 000,184,320 | —- | C] () – C:\WINXP\System32\r_server.exe
[2011/04/26 20:54:27 | 000,090,112 | —- | C] () – C:\WINXP\System32\AdmDll.dll
[2011/04/02 19:55:06 | 000,000,000 | —- | C] () – C:\WINXP\nsreg.dat
[2011/01/22 22:21:15 | 000,071,127 | —- | C] () – C:\WINXP\hpqins01.dat
[2011/01/13 00:21:01 | 000,000,172 | —- | C] () – C:\WINXP\System32\MRT.INI
[2009/07/28 10:58:26 | 000,000,000 | —- | C] () – C:\WINXP\ativpsrm.bin
[2009/07/28 10:56:30 | 000,593,920 | —- | C] () – C:\WINXP\System32\ati2sgag.exe
[2009/03/03 12:18:04 | 000,073,728 | —- | C] () – C:\WINXP\System32\RtNicProp32.dll
[2009/02/25 13:58:44 | 003,107,788 | —- | C] () – C:\WINXP\System32\ativva5x.dat
[2009/02/25 13:58:44 | 000,887,724 | —- | C] () – C:\WINXP\System32\ativva6x.dat
[2009/02/07 13:07:00 | 000,000,000 | —- | C] () – C:\WINXP\FullDisk.INI
[2009/01/26 10:55:37 | 000,182,995 | —- | C] () – C:\WINXP\System32\atiicdxx.dat
[2009/01/19 17:05:00 | 002,527,105 | —- | C] () – C:\Program Files\vcdgear355.zip
[2009/01/10 15:03:56 | 000,057,344 | —- | C] () – C:\WINXP\System32\ff_vfw.dll
[2009/01/10 14:29:15 | 000,000,116 | —- | C] () – C:\WINXP\NeroDigital.ini
[2008/10/21 08:13:42 | 000,000,133 | —- | C] () – C:\Documents and Settings\All Users.WINXP\Application Data\Microsoft.SqlServer.Compact.351.32.bc
[2008/07/16 15:07:51 | 000,000,036 | -H– | C] () – C:\WINXP\System32\f9t.dat
[2008/06/13 16:00:32 | 000,000,000 | —- | C] () – C:\Documents and Settings\Kelly\Application Data\wklnhst.dat
[2008/06/07 10:16:16 | 000,000,128 | —- | C] () – C:\Documents and Settings\Kelly\Local Settings\Application Data\fusioncache.dat
[2008/06/06 12:17:15 | 000,112,397 | —- | C] () – C:\WINXP\hpoins07.dat
[2008/06/06 12:17:15 | 000,021,124 | —- | C] () – C:\WINXP\hpomdl07.dat
[2008/05/26 12:57:14 | 000,000,056 | —- | C] () – C:\WINXP\WININIT.INI
[2008/05/25 20:02:26 | 000,027,019 | —- | C] () – C:\WINXP\maxlink.ini
[2008/05/17 10:56:16 | 000,000,056 | -H– | C] () – C:\WINXP\System32\ezsidmv.dat
[2008/03/29 13:16:45 | 000,000,664 | —- | C] () – C:\WINXP\System32\d3d9caps.dat
[2008/03/02 16:58:45 | 000,019,456 | —- | C] () – C:\Documents and Settings\Kelly\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/02/17 12:03:35 | 000,045,056 | —- | C] () – C:\WINXP\System32\vusetup.dll
[2008/02/06 11:10:38 | 000,000,136 | —- | C] () – C:\WINXP\SWISNIFE.INI
[2008/02/06 11:10:32 | 000,196,576 | —- | C] () – C:\WINXP\System32\drivers\ONSIO.SYS
[2008/02/06 11:10:00 | 000,000,248 | —- | C] () – C:\WINXP\OPLIMIT.DAT
[2008/02/05 17:51:28 | 000,001,012 | —- | C] () – C:\WINXP\Ulead32.ini
[2008/02/03 18:57:30 | 000,000,552 | —- | C] () – C:\WINXP\System32\d3d8caps.dat
[2008/01/28 08:56:28 | 000,003,840 | —- | C] () – C:\WINXP\System32\drivers\BANTExt.sys
[2008/01/27 17:39:39 | 000,000,030 | —- | C] () – C:\WINXP\INTURS.DAT
[2008/01/27 17:39:29 | 000,000,165 | —- | C] () – C:\WINXP\QUICKEN.INI
[2008/01/27 17:37:09 | 000,000,370 | —- | C] () – C:\WINXP\ODBC.INI
[2008/01/27 16:50:57 | 000,002,048 | –S- | C] () – C:\WINXP\bootstat.dat
[2008/01/27 16:44:19 | 000,021,640 | —- | C] () – C:\WINXP\System32\emptyregdb.dat
[2008/01/27 08:35:17 | 000,004,073 | —- | C] () – C:\WINXP\ODBCINST.INI
[2008/01/27 08:34:02 | 000,173,080 | —- | C] () – C:\WINXP\System32\FNTCACHE.DAT
[2007/12/14 12:32:52 | 000,012,632 | —- | C] () – C:\WINXP\System32\lsdelete.exe
[2007/08/15 07:27:18 | 000,009,600 | —- | C] () – C:\WINXP\System32\drivers\n558.sys
[2006/05/05 14:18:56 | 000,011,634 | —- | C] () – C:\WINXP\hpomdl11.dat
[2005/09/11 19:35:18 | 000,000,000 | —- | C] () – C:\WINXP\System32\px.ini
[2004/08/04 05:00:00 | 013,107,200 | —- | C] () – C:\WINXP\System32\oembios.bin
[2004/08/04 05:00:00 | 000,673,088 | —- | C] () – C:\WINXP\System32\mlang.dat
[2004/08/04 05:00:00 | 000,406,594 | —- | C] () – C:\WINXP\System32\perfh009.dat
[2004/08/04 05:00:00 | 000,272,128 | —- | C] () – C:\WINXP\System32\perfi009.dat
[2004/08/04 05:00:00 | 000,218,003 | —- | C] () – C:\WINXP\System32\dssec.dat
[2004/08/04 05:00:00 | 000,063,920 | —- | C] () – C:\WINXP\System32\perfc009.dat
[2004/08/04 05:00:00 | 000,046,258 | —- | C] () – C:\WINXP\System32\mib.bin
[2004/08/04 05:00:00 | 000,028,626 | —- | C] () – C:\WINXP\System32\perfd009.dat
[2004/08/04 05:00:00 | 000,004,569 | —- | C] () – C:\WINXP\System32\secupd.dat
[2004/08/04 05:00:00 | 000,004,463 | —- | C] () – C:\WINXP\System32\oembios.dat
[2004/08/04 05:00:00 | 000,001,804 | —- | C] () – C:\WINXP\System32\dcache.bin
[2004/08/04 05:00:00 | 000,000,741 | —- | C] () – C:\WINXP\System32\noise.dat
[2002/03/04 10:16:34 | 000,110,592 | R— | C] () – C:\WINXP\System32\Jpeg32.dll
[2001/07/06 15:30:00 | 000,003,399 | —- | C] () – C:\WINXP\System32\hptcpmon.ini
[1999/03/22 01:00:00 | 000,065,536 | —- | C] () – C:\WINXP\System32\MSRTEDIT.DLL
========== LOP Check ==========
[2010/09/12 20:46:41 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Acronis
[2010/12/19 12:18:13 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Alwil Software
[2011/08/14 18:10:07 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Easybits GO
[2008/01/27 18:30:44 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\IM
[2008/02/13 11:10:01 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\IncrediMail
[2008/05/27 14:26:17 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\JollyBear
[2011/08/01 15:58:10 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\LNGDHBAZXG
[2008/03/23 14:39:29 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Musicnotes
[2011/04/16 13:08:55 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Oberon Media
[2010/05/15 10:59:36 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\PhotoMail
[2008/05/25 20:01:56 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\ScanSoft
[2011/08/04 16:40:55 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\TEMP
[2009/01/10 13:53:18 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\WinZip
[2011/06/18 09:19:20 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINXP\Application Data\Zoom Player
[2008/09/27 09:45:13 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\DeLorme
[2011/08/14 16:00:07 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\go
[2008/10/21 09:48:31 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\HotSync
[2008/05/26 13:07:20 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Leadertech
[2011/04/26 20:14:43 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Oberon Media
[2008/02/03 18:57:28 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Pogo Games
[2008/06/01 12:59:36 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Radmin
[2008/05/25 20:05:20 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\ScanSoft
[2008/09/17 14:22:08 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Skinux
[2008/08/16 07:11:08 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Stamps.com Internet Postage
[2008/10/21 09:28:30 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Supreme Auction
[2008/06/13 15:02:11 | 000,000,000 | —D | M] – C:\Documents and Settings\Kelly\Application Data\Template
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2006/09/18 14:43:36 | 000,000,024 | —- | M] () – C:\autoexec.bat
[2010/05/19 18:55:40 | 000,000,207 | -HS- | M] () – C:\boot.ini
[2006/11/02 02:53:57 | 000,438,840 | RHS- | M] () – C:\bootmgr
[2006/12/11 12:59:35 | 000,008,192 | R-S- | M] () – C:\BOOTSECT.BAK
[2006/09/18 14:43:37 | 000,000,010 | —- | M] () – C:\config.sys
[2008/06/13 12:48:39 | 000,000,227 | —- | M] () – C:\CtDrvIns.log
[2008/06/13 12:49:52 | 000,003,031 | —- | M] () – C:\CtDrvStp.log
[2011/08/14 09:47:56 | 938,790,912 | -HS- | M] () – C:\hiberfil.sys
[2008/01/26 14:35:01 | 000,000,000 | RHS- | M] () – C:\IO.SYS
[2011/08/14 09:51:32 | 000,090,395 | —- | M] () – C:\mombi.log
[2008/01/26 14:35:01 | 000,000,000 | RHS- | M] () – C:\MSDOS.SYS
[2004/08/04 05:00:00 | 000,047,564 | RHS- | M] () – C:\NTDETECT.COM
[2008/09/18 03:34:55 | 000,250,048 | RHS- | M] () – C:\ntldr
[2011/08/14 09:47:52 | 2818,572,288 | -HS- | M] () – C:\pagefile.sys
[2008/06/11 04:44:18 | 000,088,516 | —- | M] () – C:\QDATA.IDX
[2008/06/11 04:44:18 | 004,575,960 | —- | M] () – C:\QDATA.QDF
[2008/06/11 04:44:18 | 000,373,760 | —- | M] () – C:\QDATA.QEL
[2004/11/11 19:08:22 | 000,000,032 | —- | M] () – C:\QDATA.QPH
[2008/06/11 04:44:18 | 000,016,996 | —- | M] () – C:\QDATA.QSD
[2010/12/14 13:42:26 | 000,120,393 | —- | M] () – C:\Quicken 2008.IDX
[2010/12/14 13:42:26 | 002,569,104 | —- | M] () – C:\Quicken 2008.QDF
[2010/12/14 13:42:26 | 000,154,624 | —- | M] () – C:\Quicken 2008.QEL
[2010/12/15 22:08:33 | 183,947,087 | —- | M] () – C:\quicken2010.zip
[2008/06/28 10:14:52 | 000,003,742 | —- | M] () – C:\QuickenOLBackupLauncher.IDX
[2008/06/28 10:14:52 | 001,087,560 | —- | M] () – C:\QuickenOLBackupLauncher.QDF
[2008/06/28 10:14:52 | 000,029,696 | —- | M] () – C:\QuickenOLBackupLauncher.QEL
[2008/06/01 13:28:49 | 001,511,664 | —- | M] () – C:\RADMIN20.EXE
[2006/12/11 13:17:58 | 000,000,402 | —- | M] () – C:\RHDSetup.log
[2009/01/31 17:42:53 | 000,001,235 | —- | M] () – C:\sti.log
[2006/12/11 13:27:36 | 000,000,000 | —- | M] () – C:\Trace.log
< %systemroot%\Fonts\*.com >
< %systemroot%\Fonts\*.dll >
[2006/02/19 03:28:56 | 000,012,288 | —- | M] (Hewlett-Packard Development Company, L.P.) – C:\WINXP\Fonts\RandFont.dll
< %systemroot%\Fonts\*.ini >
[2008/01/27 16:47:21 | 000,000,067 | -HS- | M] () – C:\WINXP\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2008/07/06 05:06:10 | 000,089,088 | —- | M] (Microsoft Corporation) – C:\WINXP\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
[2006/04/10 14:02:32 | 000,074,240 | —- | M] (Hewlett-Packard Corporation) – C:\WINXP\system32\spool\prtprocs\w32x86\hpzpp054.dll
[2001/11/20 14:37:28 | 000,047,616 | R— | M] (Black Ice Software) – C:\WINXP\system32\spool\prtprocs\w32x86\ppbiPr.dll
[2008/07/06 03:50:03 | 000,597,504 | —- | M] (Microsoft Corporation) – C:\WINXP\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2010/09/07 09:12:17 | 000,038,848 | —- | M] (AVAST Software) – C:\WINXP\avastSS.scr
[1 C:\WINXP\*.tmp files -> C:\WINXP\*.tmp -> ]
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008/01/19 17:08:26 | 000,000,174 | -HS- | M] () – C:\Program Files\desktop.ini
[2009/01/19 17:05:44 | 002,527,105 | —- | M] () – C:\Program Files\vcdgear355.zip
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2008/01/27 08:33:04 | 000,094,208 | —- | M] () – C:\WINXP\System32\config\default.sav
[2008/01/27 08:33:04 | 000,659,456 | —- | M] () – C:\WINXP\System32\config\software.sav
[2008/01/27 08:33:04 | 000,888,832 | —- | M] () – C:\WINXP\System32\config\system.sav
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
[2008/09/18 03:43:46 | 000,000,272 | -HS- | M] () – C:\Documents and Settings\All Users.WINXP\Start Menu\desktop.ini
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2008/01/27 16:54:43 | 000,000,119 | -HS- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini
[2011/08/01 13:57:36 | 000,002,060 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\eBay.url
[2011/08/10 20:13:22 | 000,000,205 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Online Games Free Games Online Games Pogo Games.url
[2011/07/30 22:06:48 | 000,000,396 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Google.url
[2011/07/29 08:51:31 | 000,000,239 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Oregon First Community Credit Union.url
[2011/07/09 11:18:16 | 000,000,240 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Send Money, Pay Online, and Receive Money - all with PayPal.url
[2008/01/27 16:54:42 | 000,000,079 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2009/09/06 15:15:01 | 000,000,923 | —- | M] () – C:\Documents and Settings\Kelly\Application Data\Microsoft\Internet Explorer\Quick Launch\TVGuide.com.url
< %USERPROFILE%\Desktop\*.exe >
[2011/08/14 18:08:54 | 000,580,096 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Kelly\Desktop\OTL.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-08-14 03:34:25
========== Alternate Data Streams ==========
@Alternate Data Stream - 136 bytes -> C:\Documents and Settings\All Users.WINXP\Application Data\TEMP:4EFDF5FB
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users.WINXP\Application Data\TEMP:54997B77
@Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users.WINXP\Application Data\TEMP:225C4FFC
< End of report >