Here is the OTL.Txt results log:
OTL logfile created on: 10.25.11 02:35:28 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Jennifer Law\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M.d.yy
1.99 Gb Total Physical Memory | 1.12 Gb Available Physical Memory | 56.03% Memory free
3.17 Gb Paging File | 2.07 Gb Available in Paging File | 65.33% Paging File free
Paging file location(s): C:\pagefile.sys 1356 1912 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 34.20 Gb Total Space | 5.06 Gb Free Space | 14.79% Space Free | Partition Type: NTFS
Computer Name: JENNIFER | User Name: Jennifer Law | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Jennifer Law\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
PRC - C:\Program Files\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
PRC - C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
PRC - c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (Microsoft Corporation)
PRC - C:\Documents and Settings\Jennifer Law\Local Settings\Temp\vcheck.exe ()
PRC - C:\Documents and Settings\Jennifer Law\Local Settings\TempImg\VerControl.exe ()
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
PRC - C:\Program Files\Intel\Wireless\Bin\iFrmewrk.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\WLKEEPER.exe (Intel® Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\ZCfgSvc.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\1XConfig.exe (Intel)
PRC - C:\WINDOWS\wanmpsvc.exe (America Online, Inc.)
========== Modules (No Company Name) ==========
MOD - C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll ()
MOD - C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll ()
MOD - C:\Documents and Settings\Jennifer Law\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll ()
MOD - C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL ()
MOD - C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll ()
MOD - C:\Documents and Settings\Jennifer Law\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll ()
MOD - C:\Documents and Settings\Jennifer Law\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL ()
MOD - C:\Documents and Settings\Jennifer Law\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll ()
MOD - C:\Documents and Settings\Jennifer Law\Local Settings\Temp\vcheck.exe ()
MOD - C:\Documents and Settings\Jennifer Law\Local Settings\TempImg\VerControl.exe ()
MOD - C:\WINDOWS\system32\quartz.dll ()
MOD - C:\WINDOWS\system32\msdmo.dll ()
MOD - C:\WINDOWS\system32\devenum.dll ()
MOD - C:\Program Files\Intel\Wireless\Bin\D8021Xps.DLL ()
========== Win32 Services (SafeList) ==========
SRV - (RoxLiveShare9) – File not found
SRV - (HidServ) – File not found
SRV - (AppMgmt) – File not found
SRV - (MBAMService) – C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (!SASCORE) – C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
SRV - (MsMpSvc) – c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (Microsoft Corporation)
SRV - (AOL ACS) – C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (AOL LLC)
SRV - (WLANKEEPER) – C:\Program Files\Intel\Wireless\Bin\WLKEEPER.exe (Intel® Corporation)
SRV - (WANMiniportService) WAN Miniport (ATW) – C:\WINDOWS\wanmpsvc.exe (America Online, Inc.)
========== Driver Services (SafeList) ==========
DRV - (MpKsl1d84b78c) – File not found
DRV - (MpKsl7d77665b) – c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{A2B740BD-03AB-40A0-BA96-8528A002252F}\MpKsl7d77665b.sys (Microsoft Corporation)
DRV - (MBAMProtector) – C:\WINDOWS\system32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (SASKUTIL) – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASDIFSV) – C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (DellBIOS) – C:\WINDOWS\DellBIOS.Sys ()
DRV - (WsAudio_DeviceS(5)) WsAudio_DeviceS(5) – C:\WINDOWS\system32\drivers\WsAudio_DeviceS(5).sys (Wondershare)
DRV - (WsAudio_DeviceS(4)) WsAudio_DeviceS(4) – C:\WINDOWS\system32\drivers\WsAudio_DeviceS(4).sys (Wondershare)
DRV - (WsAudio_DeviceS(3)) WsAudio_DeviceS(3) – C:\WINDOWS\system32\drivers\WsAudio_DeviceS(3).sys (Wondershare)
DRV - (WsAudio_DeviceS(2)) WsAudio_DeviceS(2) – C:\WINDOWS\system32\drivers\WsAudio_DeviceS(2).sys (Wondershare)
DRV - (WsAudio_DeviceS(1)) WsAudio_DeviceS(1) – C:\WINDOWS\system32\drivers\WsAudio_DeviceS(1).sys (Wondershare)
DRV - (STHDA) – C:\WINDOWS\system32\drivers\sthda.sys (SigmaTel, Inc.)
DRV - (bcm4sbxp) – C:\WINDOWS\system32\drivers\bcm4sbxp.sys (Broadcom Corporation)
DRV - (HSF_DPV) – C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)
DRV - (HSFHWAZL) – C:\WINDOWS\system32\drivers\HSFHWAZL.sys (Conexant Systems, Inc.)
DRV - (winachsf) – C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (w29n51) Intel® – C:\WINDOWS\system32\drivers\w29n51.sys (Intel® Corporation)
DRV - (bvrp_pci) – C:\WINDOWS\system32\drivers\bvrp_pci.sys ()
DRV - (s24trans) – C:\WINDOWS\system32\drivers\s24trans.sys (Intel Corporation)
DRV - (IWCA) – C:\WINDOWS\system32\drivers\iwca.sys (Intel Corporation)
DRV - (PID_08A0) QuickCam IM(PID_08A0) – C:\WINDOWS\system32\drivers\LV302AV.SYS ()
DRV - (wanatw) WAN Miniport (ATW) – C:\WINDOWS\system32\drivers\wanatw4.sys (America Online, Inc.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client;=dell-usuk&channel;=us
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = www.google.com/ig/dell?hl=en&client;=dell-usuk&channel;=us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.google.com/search?q={searchTerm…tf8&oe;=utf8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = E2 BE 48 B7 D0 AD CA 01 [binary data]
IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No CLSID value found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local
========== FireFox ==========
FF - prefs.js..browser.search.selectedEngine: "My Web Search"
FF - prefs.js..keyword.URL: "
http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZNxpt73477US&ptb;=aTQd_hlIdngL4Y2X..V3zg&ind;=2011051102&ptnrS;=ZNxpt73477US&si;=35482&n;=77de345e&psa;=&st;=kwd&searchfor;="
FF - prefs.js..network.proxy.autoconfig_url: "
http://localhost:9000/proxy.pac"
FF - prefs.js..network.proxy.type: 2
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Web Player\npdivx32.dll File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Content Upload Plugin,version=1.0.0: C:\Program Files\DivX\DivX Content Uploader\npUpload.dll File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@mywebsearch.com/Plugin: C:\Program Files\MyWebSearch\bar\1.bin\NPMyWebS.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.669: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.669: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.669: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.669: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.669: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files\Object\cartoonly
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files\MyWebSearch\bar\1.bin
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011.10.01 22:17:33 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.10.03 20:44:59 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.10.21 21:04:17 | 000,000,000 | —D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files\Object\cartoonly
[2011.03.11 12:25:12 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Jennifer Law\Application Data\Mozilla\Extensions
[2009.03.13 14:12:19 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Jennifer Law\Application Data\Mozilla\Extensions\[removed]
[2011.10.19 11:34:58 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011.06.07 18:05:53 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2011.10.19 11:35:01 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
[2011.10.01 22:17:33 | 000,000,000 | —D | M] (RealPlayer Browser Record Plugin) – C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
[2011.04.05 13:19:51 | 000,000,000 | —D | M] (Java Quick Starter) – C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2009.09.05 03:00:50 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2011.10.03 20:44:58 | 000,134,104 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011.10.03 05:06:04 | 000,476,904 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011.07.11 16:48:12 | 000,012,800 | —- | M] (Nullsoft, Inc.) – C:\Program Files\mozilla firefox\plugins\npwachk.dll
[2011.10.03 20:44:52 | 000,002,252 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\bing.xml
O1 HOSTS File: ([2011.04.05 10:46:34 | 000,000,027 | —- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (FrostWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O2 - BHO: (FBLayouts Plugin) - {FF4E1D1D-705B-4379-AB33-22D98C1ABF55} - C:\Program Files\FBLayouts\fblayouts.dll File not found
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKLM\..\Toolbar: (FrostWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {00000000-0000-0000-0000-000000000000} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {472734EA-242A-422B-ADF8-83D1E48CC825} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {5854FAC4-5BF0-47DD-B5A9-A5EA8CFF3CF4} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (FrostWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O4 - HKLM..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe (America Online)
O4 - HKLM..\Run: [HostManager] C:\Program Files\Common Files\AOL\1163232286\EE\aolsoftware.exe (AOL Inc.)
O4 - HKLM..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\imekrmig.exe (Microsoft Corporation)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe (Intel Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe (McAfee, Inc.)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [AOL Dialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe (America Online)
O4 - HKCU..\Run: [drem] "C:\Program Files\home plan software\Date Reminder\drem.exe" /autorun File not found
O4 - HKCU..\Run: [DW6] "C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe" File not found
O4 - HKCU..\Run: [EasyDVDMon] File not found
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
O4 - HKCU..\Run: [vcheck] C:\Documents and Settings\Jennifer Law\Local Settings\Temp\vcheck.exe ()
O4 - HKCU..\Run: [VerControl] C:\Documents and Settings\Jennifer Law\Local Settings\TempImg\VerControl.exe ()
O4 - Startup: C:\Documents and Settings\Jennifer Law\Start Menu\Programs\Startup\AOL Desktop.lnk = C:\Program Files\Common Files\AOL\Launch\aollaunch.exe (AOL Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Jennifer Law\Start Menu\Programs\IMVU\Run IMVU.lnk File not found
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O16 - DPF: {00000055-9980-0010-8000-00AA00389B71} http://codecs.microsoft.com/codecs/i386/fhg.CAB (Reg Error: Key error.)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/co…ex/qtplugin.cab (Reg Error: Key error.)
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.microsoft.com/download/e/4…/OGAControl.cab (Office Genuine Advantage Validation Tool)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.microsoft.com/download/E/5…heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {37A273C2-5129-11D5-BF37-00A0CCE8754B} http://asp.mathxl.com/wizmodules/testgen/i…GenXInstall.cab (TTestGenXInstallObject)
O16 - DPF: {7A0D1738-10EA-47FF-92BE-4E137B5BE1A4}
https://ci-mpsnare.iovation.com/StmOCX.cab (Stm Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flash…t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {95D88B35-A521-472B-A182-BB1A98356421} http://asp.mathxl.com/books/_Players/PearsonInstallAsst2.cab (Pearson Installation Assistant 2)
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} http://aolsvc.aol.com/onlinegames/free-tri…zylomplayer.cab (Zylom Games Player)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {D8AA889B-2C65-47C3-8C16-3DCD4EF76A47}
http://rms2.invokesolutions.com/events/bin…1437/MILive.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {E6D23284-0E9B-417D-A782-03E4487FC947} http://asp.mathxl.com/books/_Players/MathPlayer.cab (Pearson MathXL Player)
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6}
http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab (IWinAmpActiveX Class)
O16 - DPF: ActiveGS.cab
http://www.virtualapple.org/gs.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DAFF3FB3-90EA-451A-B695-5D04E49BE529}: DhcpNameServer = 10.0.0.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\IntelWireless: DllName - (C:\Program Files\Intel\Wireless\Bin\LgNotify.dll) - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Jennifer Law\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Jennifer Law\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004.08.10 13:04:08 | 000,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = ComFile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: HidServ - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.ac3filter - C:\WINDOWS\System32\ac3filter.acm ()
Drivers32: msacm.alf2cd - C:\WINDOWS\System32\alf2cd.acm (NCT Company)
Drivers32: msacm.enc - C:\WINDOWS\System32\ITIG726.acm (Ingenient Technologies, Inc.)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.scg726 - C:\WINDOWS\System32\Scg726.acm (SHARP Corporation)
Drivers32: msacm.voxacm160 - C:\WINDOWS\System32\vct3216.acm (Voxware, Inc.)
Drivers32: MSVideo - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.dvsd - C:\WINDOWS\System32\mcdvd_32.dll (MainConcept)
Drivers32: VIDC.IV41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011.10.25 14:31:17 | 000,584,192 | —- | C] (OldTimer Tools) – C:\Documents and Settings\Jennifer Law\Desktop\OTL.exe
[2011.10.22 23:24:41 | 000,000,000 | —D | C] – C:\Documents and Settings\Jennifer Law\My Documents\hps
[2011.10.22 06:47:42 | 000,205,072 | —- | C] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\tmcomm.sys
[2011.10.22 00:47:49 | 015,293,896 | —- | C] (Microsoft Corporation) – C:\windows-kb890830-v4.1.exe
[2011.10.19 11:35:51 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Java
[2011.10.19 11:34:42 | 000,157,472 | —- | C] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javaws.exe
[2011.10.19 11:34:42 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javaw.exe
[2011.10.19 11:34:42 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\java.exe
[2011.10.15 23:10:12 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2011.10.15 22:38:07 | 000,000,000 | —D | C] – C:\Adobe Acrobat X
[2011.10.15 22:09:37 | 487,666,616 | —- | C] (Adobe Systems Incorporated) – C:\AcrobatPro_10_Web_WWEFD.exe
[2011.10.14 21:40:59 | 000,000,000 | —D | C] – C:\tdsskiller
[2011.10.13 14:24:19 | 000,000,000 | —D | C] – C:\Program Files\AOL Desktop 9.6
[2011.10.13 14:23:43 | 000,000,000 | —D | C] – C:\Program Files\Common Files\aolshare
[2011.10.12 15:40:40 | 000,000,000 | —D | C] – C:\Documents and Settings\Jennifer Law\My Documents\RBC Ministries_files
[2011.10.07 22:32:28 | 000,000,000 | —D | C] – C:\Documents and Settings\Jennifer Law\My Documents\BB.com Articles
[2011.10.07 22:10:22 | 000,000,000 | —D | C] – C:\Documents and Settings\Jennifer Law\My Documents\BB.com Fitness 360
[2011.10.01 22:17:39 | 000,000,000 | —D | C] – C:\Program Files\Common Files\xing shared
[2011.10.01 22:17:19 | 000,198,832 | —- | C] (RealNetworks, Inc.) – C:\WINDOWS\System32\rmoc3260.dll
[2011.10.01 22:17:04 | 000,006,656 | —- | C] (RealNetworks, Inc.) – C:\WINDOWS\System32\pndx5016.dll
[2011.10.01 22:17:04 | 000,005,632 | —- | C] (RealNetworks, Inc.) – C:\WINDOWS\System32\pndx5032.dll
[2011.10.01 22:17:03 | 000,272,896 | —- | C] (Progressive Networks) – C:\WINDOWS\System32\pncrt.dll
[2011.10.01 22:17:03 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Real
[2011.10.01 21:54:26 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Winamp
[2011.10.01 21:54:25 | 000,000,000 | —D | C] – C:\Documents and Settings\Jennifer Law\Start Menu\Programs\Winamp Detector Plug-in
[2011.10.01 21:54:25 | 000,000,000 | —D | C] – C:\Program Files\Winamp Detect
[2011.10.01 21:53:54 | 000,000,000 | —D | C] – C:\Documents and Settings\Jennifer Law\Application Data\Winamp
[2011.10.01 21:28:43 | 000,000,000 | —D | C] – C:\Documents and Settings\Jennifer Law\Application Data\Media Player Classic
[2011.10.01 09:38:01 | 000,017,272 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\spmsg.dll
[2011.10.01 09:35:38 | 012,381,800 | —- | C] (Nullsoft, Inc.) – C:\winamp5621_full_emusic-7plus_en-us.exe
[2011.10.01 09:34:29 | 001,184,984 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\wvc1dmod.dll
[2011.09.26 11:41:20 | 000,220,160 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\oleacc.dll
[2008.11.29 00:04:23 | 000,047,360 | —- | C] (VSO Software) – C:\Documents and Settings\Jennifer Law\Application Data\pcouffin.sys
[9 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\Documents and Settings\Jennifer Law\Local Settings\Application Data\*.tmp files -> C:\Documents and Settings\Jennifer Law\Local Settings\Application Data\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.10.25 14:31:25 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Jennifer Law\Desktop\OTL.exe
[2011.10.25 14:25:56 | 000,000,436 | -H– | M] () – C:\WINDOWS\tasks\User_Feed_Synchronization-{28BC42C3-2A12-4841-BEF3-8A9EC1B8C20A}.job
[2011.10.25 06:54:46 | 000,000,292 | —- | M] () – C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1879541575-3255683778-2761792344-1006.job
[2011.10.25 06:54:45 | 000,000,300 | —- | M] () – C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1879541575-3255683778-2761792344-1006.job
[2011.10.25 06:24:14 | 000,000,664 | —- | M] () – C:\WINDOWS\System32\d3d9caps.dat
[2011.10.25 02:16:00 | 000,000,524 | —- | M] () – C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 67c7bc88-4134-4556-a87a-307b10c7c7ab.job
[2011.10.24 19:46:34 | 000,002,206 | —- | M] () – C:\WINDOWS\System32\wpa.dbl
[2011.10.24 19:38:29 | 000,000,424 | -H– | M] () – C:\WINDOWS\tasks\MP Scheduled Scan.job
[2011.10.24 19:32:43 | 000,002,048 | –S- | M] () – C:\WINDOWS\bootstat.dat
[2011.10.24 19:32:42 | 2138,505,216 | -HS- | M] () – C:\hiberfil.sys
[2011.10.24 10:19:28 | 000,414,368 | —- | M] (Adobe Systems Incorporated) – C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011.10.22 21:53:55 | 000,104,945 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\Favorite Places.pfc
[2011.10.22 06:49:05 | 001,542,471 | —- | M] () – C:\tdsskiller.zip
[2011.10.22 06:47:33 | 000,205,072 | —- | M] (Trend Micro Inc.) – C:\WINDOWS\System32\drivers\tmcomm.sys
[2011.10.22 06:47:15 | 004,104,900 | —- | M] () – C:\RootkitBuster_5.00.1041.zip
[2011.10.22 00:48:04 | 015,293,896 | —- | M] (Microsoft Corporation) – C:\windows-kb890830-v4.1.exe
[2011.10.21 21:12:17 | 000,222,432 | —- | M] () – C:\WINDOWS\System32\FNTCACHE.DAT
[2011.10.15 22:09:37 | 487,666,616 | —- | M] (Adobe Systems Incorporated) – C:\AcrobatPro_10_Web_WWEFD.exe
[2011.10.15 21:30:10 | 000,002,515 | —- | M] () – C:\Documents and Settings\Jennifer Law\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Word 2003.lnk
[2011.10.15 07:09:36 | 000,446,478 | —- | M] () – C:\WINDOWS\System32\perfh009.dat
[2011.10.15 07:09:36 | 000,073,518 | —- | M] () – C:\WINDOWS\System32\perfc009.dat
[2011.10.15 06:57:10 | 000,001,393 | —- | M] () – C:\WINDOWS\imsins.BAK
[2011.10.14 21:48:22 | 000,302,592 | —- | M] () – C:\lluvrtzg.exe
[2011.10.13 17:32:55 | 000,283,238 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\www.bodybuilding.com-ask-the-macro-manager-should-i-consume-simple-carbs-post-workout-.pdf
[2011.10.13 14:30:35 | 000,000,756 | —- | M] () – C:\Documents and Settings\All Users\Desktop\AOL Desktop 9.6.lnk
[2011.10.13 14:30:35 | 000,000,736 | —- | M] () – C:\Documents and Settings\Jennifer Law\Application Data\Microsoft\Internet Explorer\Quick Launch\AOL Desktop 9.6.lnk
[2011.10.13 13:53:19 | 000,001,030 | —- | M] () – C:\Documents and Settings\Jennifer Law\Start Menu\Programs\Startup\AOL Desktop.lnk
[2011.10.13 13:39:47 | 000,058,696 | —- | M] (AOL Inc.) – C:\WINDOWS\System32\AOLParconLink.exe
[2011.10.13 10:09:51 | 000,000,510 | —- | M] () – C:\Documents and Settings\Jennifer Law\Desktop\AOL Saved Files.lnk
[2011.10.13 10:09:50 | 000,000,042 | —- | M] () – C:\WINDOWS\msoffice.ini
[2011.10.13 06:36:44 | 000,484,903 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\bodybuilding.com-Bodybuildingcom__Train_Like_A_Man__Look_Like_A_Goddess.pdf
[2011.10.13 05:52:35 | 031,570,613 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\Kim_Oddos_The_Perfect_Figure__Bikini_Stage_Physique_Training.mp4
[2011.10.12 15:40:42 | 000,024,134 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\RBC Ministries.htm
[2011.10.11 06:54:12 | 002,312,694 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\Wallpaper1.bmp
[2011.10.09 23:44:26 | 099,371,055 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\On_The_Go_With_Jennifer_Nicole_Lee_Shape_Up_Fusion_Style.mp4
[2011.10.09 21:08:31 | 000,259,636 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\bodybuilding.com-Bodybuildingcom__Women_Strength_Training_Your_Guide_To_A_Sexy_amp_Fit_Body.pdf
[2011.10.07 19:08:00 | 000,004,829 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 6.htm
[2011.10.07 14:53:34 | 000,004,829 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 7.htm
[2011.10.07 12:19:52 | 000,006,352 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\running worlkout 5.htm
[2011.10.07 12:17:20 | 000,008,726 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 4.htm
[2011.10.07 12:11:46 | 000,008,376 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 3.htm
[2011.10.07 12:11:03 | 000,005,774 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 2.htm
[2011.10.07 12:10:19 | 000,007,086 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\Running Workout.htm
[2011.10.05 20:29:48 | 000,023,392 | —- | M] () – C:\WINDOWS\System32\nscompat.tlb
[2011.10.05 20:29:48 | 000,016,832 | —- | M] () – C:\WINDOWS\System32\amcompat.tlb
[2011.10.05 20:22:24 | 000,000,782 | —- | M] () – C:\Documents and Settings\Jennifer Law\Desktop\Windows Media Player.lnk
[2011.10.05 19:39:27 | 000,002,497 | —- | M] () – C:\Documents and Settings\Jennifer Law\Desktop\Microsoft Office Word 2003.lnk
[2011.10.04 05:03:41 | 000,006,712 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\5ay split bb.com.htm
[2011.10.03 05:06:16 | 000,157,472 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javaws.exe
[2011.10.03 05:06:15 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javaw.exe
[2011.10.03 05:06:14 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\java.exe
[2011.10.03 05:06:03 | 000,472,808 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\deployJava1.dll
[2011.10.03 03:35:11 | 005,971,456 | —- | M] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\mshtml.dll
[2011.10.03 02:37:52 | 000,073,728 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javacpl.cpl
[2011.10.01 22:49:54 | 000,000,882 | —- | M] () – C:\WINDOWS\orun32.ini
[2011.10.01 22:18:05 | 000,000,929 | —- | M] () – C:\Documents and Settings\All Users\Desktop\RealPlayer.lnk
[2011.10.01 22:17:19 | 000,198,832 | —- | M] (RealNetworks, Inc.) – C:\WINDOWS\System32\rmoc3260.dll
[2011.10.01 22:17:04 | 000,006,656 | —- | M] (RealNetworks, Inc.) – C:\WINDOWS\System32\pndx5016.dll
[2011.10.01 22:17:04 | 000,005,632 | —- | M] (RealNetworks, Inc.) – C:\WINDOWS\System32\pndx5032.dll
[2011.10.01 22:17:03 | 000,272,896 | —- | M] (Progressive Networks) – C:\WINDOWS\System32\pncrt.dll
[2011.10.01 21:54:26 | 000,000,672 | —- | M] () – C:\Documents and Settings\Jennifer Law\Application Data\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk
[2011.10.01 21:54:26 | 000,000,654 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Winamp.lnk
[2011.10.01 20:25:33 | 000,013,585 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\5day split 2.htm
[2011.10.01 20:24:59 | 000,013,172 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\5day split 1.htm
[2011.10.01 09:35:38 | 012,381,800 | —- | M] (Nullsoft, Inc.) – C:\winamp5621_full_emusic-7plus_en-us.exe
[2011.10.01 09:02:06 | 000,103,809 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\A Year of Slow Cooking Slow Cooker Caribbean Jerk Chicken Recipe.htm
[2011.10.01 09:01:42 | 000,055,864 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\Philippians 19-10 NIV - And this is my prayer that your love - Bible Gateway.htm
[2011.09.26 11:41:20 | 000,611,328 | —- | M] (Microsoft Corporation) – C:\WINDOWS\System32\uiautomationcore.dll
[2011.09.26 11:41:20 | 000,220,160 | —- | M] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\oleacc.dll
[2011.09.26 11:41:14 | 000,020,480 | —- | M] (Microsoft Corporation) – C:\WINDOWS\System32\oleaccrc.dll
[2011.09.26 11:41:14 | 000,020,480 | —- | M] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\oleaccrc.dll
[2011.09.25 22:21:23 | 044,357,556 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\Ava_Cowan_Naturally_Driven__Training_Philosophy.mp4
[9 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\Documents and Settings\Jennifer Law\Local Settings\Application Data\*.tmp files -> C:\Documents and Settings\Jennifer Law\Local Settings\Application Data\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.10.22 21:53:55 | 000,104,945 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\Favorite Places.pfc
[2011.10.22 06:47:08 | 004,104,900 | —- | C] () – C:\RootkitBuster_5.00.1041.zip
[2011.10.17 06:42:34 | 000,000,524 | —- | C] () – C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 67c7bc88-4134-4556-a87a-307b10c7c7ab.job
[2011.10.14 21:48:14 | 000,302,592 | —- | C] () – C:\lluvrtzg.exe
[2011.10.14 21:40:18 | 001,542,471 | —- | C] () – C:\tdsskiller.zip
[2011.10.13 17:32:54 | 000,283,238 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\www.bodybuilding.com-ask-the-macro-manager-should-i-consume-simple-carbs-post-workout-.pdf
[2011.10.13 14:30:35 | 000,000,756 | —- | C] () – C:\Documents and Settings\All Users\Desktop\AOL Desktop 9.6.lnk
[2011.10.13 14:30:35 | 000,000,736 | —- | C] () – C:\Documents and Settings\Jennifer Law\Application Data\Microsoft\Internet Explorer\Quick Launch\AOL Desktop 9.6.lnk
[2011.10.13 06:36:40 | 000,484,903 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\bodybuilding.com-Bodybuildingcom__Train_Like_A_Man__Look_Like_A_Goddess.pdf
[2011.10.13 05:52:35 | 031,570,613 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\Kim_Oddos_The_Perfect_Figure__Bikini_Stage_Physique_Training.mp4
[2011.10.12 15:40:39 | 000,024,134 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\RBC Ministries.htm
[2011.10.09 23:35:55 | 099,371,055 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\On_The_Go_With_Jennifer_Nicole_Lee_Shape_Up_Fusion_Style.mp4
[2011.10.09 21:08:31 | 000,259,636 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\bodybuilding.com-Bodybuildingcom__Women_Strength_Training_Your_Guide_To_A_Sexy_amp_Fit_Body.pdf
[2011.10.07 19:07:59 | 000,004,829 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 6.htm
[2011.10.07 14:53:34 | 000,004,829 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 7.htm
[2011.10.07 12:19:52 | 000,006,352 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\running worlkout 5.htm
[2011.10.07 12:17:20 | 000,008,726 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 4.htm
[2011.10.07 12:11:45 | 000,008,376 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 3.htm
[2011.10.07 12:11:02 | 000,005,774 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\running workout 2.htm
[2011.10.07 12:10:19 | 000,007,086 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\Running Workout.htm
[2011.10.05 20:20:56 | 000,023,392 | —- | C] () – C:\WINDOWS\System32\nscompat.tlb
[2011.10.05 20:20:56 | 000,016,832 | —- | C] () – C:\WINDOWS\System32\amcompat.tlb
[2011.10.04 05:03:41 | 000,006,712 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\5ay split bb.com.htm
[2011.10.01 22:51:12 | 000,005,652 | —- | C] () – C:\WINDOWS\System32\drivers\bvrp_pci.sys
[2011.10.01 22:18:05 | 000,000,929 | —- | C] () – C:\Documents and Settings\All Users\Desktop\RealPlayer.lnk
[2011.10.01 21:54:26 | 000,000,672 | —- | C] () – C:\Documents and Settings\Jennifer Law\Application Data\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk
[2011.10.01 21:54:26 | 000,000,654 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Winamp.lnk
[2011.10.01 20:25:33 | 000,013,585 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\5day split 2.htm
[2011.10.01 20:24:59 | 000,013,172 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\5day split 1.htm
[2011.10.01 09:02:00 | 000,103,809 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\A Year of Slow Cooking Slow Cooker Caribbean Jerk Chicken Recipe.htm
[2011.10.01 09:01:37 | 000,055,864 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\Philippians 19-10 NIV - And this is my prayer that your love - Bible Gateway.htm
[2011.09.25 22:17:34 | 044,357,556 | —- | C] () – C:\Documents and Settings\Jennifer Law\My Documents\Ava_Cowan_Naturally_Driven__Training_Philosophy.mp4
[2011.04.30 21:12:45 | 000,000,664 | —- | C] () – C:\WINDOWS\System32\d3d9caps.dat
[2011.04.14 20:10:14 | 000,000,066 | —- | C] () – C:\WINDOWS\Raining.ini
[2011.04.14 06:19:59 | 000,000,036 | -H– | C] () – C:\WINDOWS\System32\swk.ini
[2011.04.13 23:28:48 | 000,005,120 | —- | C] () – C:\WINDOWS\DellBIOS.Sys
[2011.04.13 16:46:12 | 000,175,616 | —- | C] () – C:\WINDOWS\System32\unrar.dll
[2011.04.11 13:46:49 | 000,122,208 | —- | C] () – C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011.04.05 10:34:51 | 000,256,512 | —- | C] () – C:\WINDOWS\PEV.exe
[2011.04.05 10:34:51 | 000,098,816 | —- | C] () – C:\WINDOWS\sed.exe
[2011.04.05 10:34:51 | 000,089,088 | —- | C] () – C:\WINDOWS\MBR.exe
[2011.04.05 10:34:51 | 000,080,412 | —- | C] () – C:\WINDOWS\grep.exe
[2011.04.05 10:34:51 | 000,068,096 | —- | C] () – C:\WINDOWS\zip.exe
[2011.01.02 19:26:14 | 000,000,000 | —- | C] () – C:\WINDOWS\System32\MSVolumeAP.dll
[2009.09.12 11:18:28 | 000,000,760 | —- | C] () – C:\Documents and Settings\Jennifer Law\Application Data\setup_ldm.iss
[2009.03.13 23:26:35 | 000,000,256 | —- | C] () – C:\WINDOWS\System32\pool.bin
[2009.01.17 12:35:05 | 000,000,240 | —- | C] () – C:\WINDOWS\lexstat.ini
[2008.11.29 00:04:23 | 000,007,887 | —- | C] () – C:\Documents and Settings\Jennifer Law\Application Data\pcouffin.cat
[2008.11.29 00:04:23 | 000,001,144 | —- | C] () – C:\Documents and Settings\Jennifer Law\Application Data\pcouffin.inf
[2008.02.04 18:23:10 | 000,693,792 | —- | C] () – C:\WINDOWS\System32\OGACheckControl.DLL
[2007.10.21 15:41:01 | 000,000,023 | —- | C] () – C:\WINDOWS\System32\sysmwwod.dll
[2007.04.26 16:40:19 | 000,053,248 | R— | C] () – C:\WINDOWS\System32\InstMed.exe
[2007.04.26 16:40:05 | 000,201,728 | —- | C] () – C:\WINDOWS\System32\drivers\LV302AV.SYS
[2007.03.01 22:23:10 | 000,001,360 | —- | C] () – C:\WINDOWS\_delis32.ini
[2006.12.14 22:17:15 | 000,000,000 | —- | C] () – C:\WINDOWS\iPlayer.INI
[2006.11.29 02:00:20 | 000,001,100 | —- | C] () – C:\WINDOWS\System32\d3d8caps.dat
[2006.11.15 11:04:53 | 000,010,977 | —- | C] () – C:\WINDOWS\cdplayer.ini
[2006.11.13 19:24:03 | 000,032,768 | —- | C] () – C:\Documents and Settings\Jennifer Law\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2006.11.11 04:43:11 | 000,000,376 | —- | C] () – C:\WINDOWS\ODBC.INI
[2006.11.11 04:05:40 | 000,000,042 | —- | C] () – C:\WINDOWS\msoffice.ini
[2006.11.11 01:48:15 | 000,000,101 | —- | C] () – C:\WINDOWS\upst.ini
[2006.11.11 01:48:15 | 000,000,029 | —- | C] () – C:\WINDOWS\atid.ini
[2006.07.20 17:24:22 | 000,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2006.07.20 17:11:41 | 000,149,504 | —- | C] () – C:\WINDOWS\UNWISE.EXE
[2006.07.20 17:06:07 | 000,000,880 | —- | C] () – C:\WINDOWS\wininit.ini
[2006.07.20 17:04:19 | 000,000,335 | —- | C] () – C:\WINDOWS\nsreg.dat
[2006.07.20 16:36:56 | 000,049,152 | —- | C] () – C:\WINDOWS\setpwrcg.exe
[2006.07.20 16:36:28 | 000,000,391 | —- | C] () – C:\WINDOWS\System32\OEMINFO.INI
[2004.08.12 08:44:10 | 000,016,384 | —- | C] () – C:\WINDOWS\System32\iwca.dll
[2004.08.10 13:12:05 | 000,000,882 | —- | C] () – C:\WINDOWS\orun32.ini
[2004.08.10 13:07:31 | 000,002,048 | –S- | C] () – C:\WINDOWS\bootstat.dat
[2004.08.10 13:02:15 | 000,021,640 | —- | C] () – C:\WINDOWS\System32\emptyregdb.dat
[2004.08.10 12:57:52 | 000,004,161 | —- | C] () – C:\WINDOWS\ODBCINST.INI
[2004.08.10 12:57:15 | 000,222,432 | —- | C] () – C:\WINDOWS\System32\FNTCACHE.DAT
[2004.08.10 12:51:21 | 000,004,569 | —- | C] () – C:\WINDOWS\System32\secupd.dat
[2004.08.10 12:51:20 | 000,446,478 | —- | C] () – C:\WINDOWS\System32\perfh009.dat
[2004.08.10 12:51:20 | 000,272,128 | —- | C] () – C:\WINDOWS\System32\perfi009.dat
[2004.08.10 12:51:20 | 000,073,518 | —- | C] () – C:\WINDOWS\System32\perfc009.dat
[2004.08.10 12:51:20 | 000,028,626 | —- | C] () – C:\WINDOWS\System32\perfd009.dat
[2004.08.10 12:51:18 | 000,004,627 | —- | C] () – C:\WINDOWS\System32\oembios.dat
[2004.08.10 12:51:17 | 013,107,200 | —- | C] () – C:\WINDOWS\System32\oembios.bin
[2004.08.10 12:51:16 | 000,000,741 | —- | C] () – C:\WINDOWS\System32\noise.dat
[2004.08.10 12:51:12 | 000,673,088 | —- | C] () – C:\WINDOWS\System32\mlang.dat
[2004.08.10 12:51:11 | 000,046,258 | —- | C] () – C:\WINDOWS\System32\mib.bin
[2004.08.10 12:51:05 | 000,218,003 | —- | C] () – C:\WINDOWS\System32\dssec.dat
[2004.08.10 12:50:56 | 000,001,804 | —- | C] () – C:\WINDOWS\System32\dcache.bin
[1999.01.27 14:39:06 | 000,065,024 | —- | C] () – C:\WINDOWS\System32\indounin.dll
[1997.06.13 08:56:08 | 000,056,832 | —- | C] () – C:\WINDOWS\System32\Iyvu9_32.dll
========== LOP Check ==========
[2011.08.03 22:34:14 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\!SASCORE
[2011.04.22 09:54:22 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\163A9
[2011.09.03 21:28:40 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Amazon
[2011.04.08 15:59:04 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\AVG10
[2011.04.05 11:22:19 | 000,000,000 | -H-D | M] – C:\Documents and Settings\All Users\Application Data\Common Files
[2009.06.28 12:56:02 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\DriverScanner
[2011.04.05 11:19:57 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\MFAData
[2011.10.15 23:10:12 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2011.05.02 17:35:35 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Speedbit
[2009.08.07 18:35:45 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\SupportSoft
[2011.09.08 06:04:37 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\TEMP
[2010.02.07 17:56:44 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\Viewpoint
[2011.04.05 13:34:49 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2009.07.25 15:35:31 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2008.07.19 17:22:27 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\acccore
[2011.05.12 18:02:40 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\Amazon
[2011.04.05 11:23:20 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\AVG10
[2011.05.03 03:49:03 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\com.amazon.music.uploader
[2011.07.31 18:12:09 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\FrostWire
[2011.09.11 12:28:55 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\GetRightToGo
[2011.04.20 13:09:24 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\gtk-2.0
[2006.12.02 12:10:41 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\Leadertech
[2006.11.11 05:17:56 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\OfficeUpdate12
[2011.04.19 09:36:05 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\SoftGrid Client
[2007.08.31 15:35:03 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\Viewpoint
[2008.12.22 11:05:22 | 000,000,000 | —D | M] – C:\Documents and Settings\Jennifer Law\Application Data\Vso
[2011.10.24 19:38:29 | 000,000,424 | -H– | M] () – C:\WINDOWS\Tasks\MP Scheduled Scan.job
[2011.10.25 02:16:00 | 000,000,524 | —- | M] () – C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 67c7bc88-4134-4556-a87a-307b10c7c7ab.job
[2011.10.25 14:25:56 | 000,000,436 | -H– | M] () – C:\WINDOWS\Tasks\User_Feed_Synchronization-{28BC42C3-2A12-4841-BEF3-8A9EC1B8C20A}.job
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2011.04.24 20:38:27 | 001,110,476 | —- | M] () – C:\7z920.exe
[2011.01.02 19:03:22 | 038,357,320 | —- | M] (PC Tools ) – C:\8.0.0.623j-SDAFFsetup_en-RevenueWire(207).exe
[2007.08.18 19:46:13 | 000,000,934 | —- | M] () – C:\ac3filter.reg
[2011.10.15 22:09:37 | 487,666,616 | —- | M] (Adobe Systems Incorporated) – C:\AcrobatPro_10_Web_WWEFD.exe
[2007.08.17 10:53:56 | 023,402,288 | —- | M] ( ) – C:\AdbeRdr810_en_US.exe
[2008.07.13 09:38:37 | 013,505,768 | —- | M] () – C:\AdobeAIRInstaller.exe
[2011.09.15 19:20:37 | 000,055,672 | —- | M] () – C:\Affidavit[1].pdf
[2011.05.03 03:22:56 | 007,399,056 | —- | M] () – C:\AmazonMP3UploaderInstaller-1.0.1._V184514748_.exe
[2006.12.21 00:22:12 | 000,010,920 | —- | M] () – C:\aolconnfix.exe
[2006.12.21 00:22:12 | 000,001,039 | —- | M] () – C:\aolconnfix.txt
[2004.08.10 13:04:08 | 000,000,000 | —- | M] () – C:\AUTOEXEC.BAT
[2006.11.11 01:19:19 | 000,000,211 | —- | M] () – C:\Boot.bak
[2011.04.05 10:37:32 | 000,000,327 | RHS- | M] () – C:\boot.ini
[2009.01.17 12:24:55 | 016,092,160 | —- | M] () – C:\CJB700EN.exe
[2011.05.04 20:07:23 | 003,024,384 | —- | M] () – C:\Client.msi
[2004.08.03 23:00:00 | 000,260,272 | RHS- | M] () – C:\cmldr
[2006.11.22 15:09:54 | 000,009,218 | —- | M] () – C:\colors.dat
[2011.04.05 11:15:55 | 000,013,219 | —- | M] () – C:\ComboFix.txt
[2004.08.10 13:04:08 | 000,000,000 | —- | M] () – C:\CONFIG.SYS
[2006.07.20 16:40:34 | 000,005,465 | RH– | M] () – C:\dell.sdr
[2007.10.28 16:08:40 | 000,636,192 | —- | M] (McAfee, Inc.) – C:\DMSetup-Serial.exe
[2008.09.05 21:56:12 | 000,000,076 | —- | M] () – C:\DVDPATH.TXT
[2010.07.09 12:20:52 | 003,414,996 | —- | M] () – C:\get_down.mp3
[2007.08.18 19:46:13 | 000,001,622 | —- | M] () – C:\gspot.reg
[2011.10.24 19:32:42 | 2138,505,216 | -HS- | M] () – C:\hiberfil.sys
[2006.11.11 12:51:54 | 000,004,128 | —- | M] () – C:\INFCACHE.1
[2011.10.13 14:30:20 | 000,060,748 | —- | M] () – C:\install.log
[2004.08.10 13:04:08 | 000,000,000 | -H– | M] () – C:\IO.SYS
[2011.05.02 17:14:12 | 004,937,143 | —- | M] () – C:\Jarrid Mendelsson-UFC Theme-Ultimate Warrior.mp3
[2006.11.22 15:14:39 | 000,002,292 | —- | M] () – C:\lib4.dat
[2011.10.14 21:48:22 | 000,302,592 | —- | M] () – C:\lluvrtzg.exe
[2007.04.26 16:37:44 | 000,000,183 | —- | M] () – C:\LogiSetup.log
[2004.08.10 13:04:08 | 000,000,000 | -H– | M] () – C:\MSDOS.SYS
[2011.04.08 16:04:32 | 009,920,304 | —- | M] (Microsoft Corporation) – C:\mseinstall.exe
[2007.04.26 18:41:43 | 000,459,068 | —- | M] () – C:\MSIInstall.log
[2009.02.13 18:24:54 | 114,340,136 | —- | M] () – C:\My_Downloads_List171413.zip
[2004.08.04 05:00:00 | 000,047,564 | RHS- | M] () – C:\NTDETECT.COM
[2008.07.19 18:20:47 | 000,250,048 | RHS- | M] () – C:\ntldr
[2011.05.19 01:44:30 | 000,007,065 | —- | M] () – C:\optoutemps2.php.htm
[2011.05.19 01:41:35 | 000,014,924 | —- | M] () – C:\opt_form.cgi.htm
[2011.10.24 19:32:40 | 1421,869,056 | -HS- | M] () – C:\pagefile.sys
[2011.10.22 06:47:15 | 004,104,900 | —- | M] () – C:\RootkitBuster_5.00.1041.zip
[2006.11.22 15:14:39 | 000,003,808 | —- | M] () – C:\settings.dat
[2011.06.23 17:29:14 | 000,000,516 | —- | M] () – C:\Settings.ini
[2011.05.11 07:58:52 | 011,104,928 | —- | M] (SUPERAntiSpyware.com) – C:\SUPERAntiSpywarePro.exe
[2006.07.20 17:06:02 | 000,000,071 | —- | M] () – C:\SystemInfo.ini
[2011.09.11 08:26:50 | 000,052,398 | —- | M] () – C:\TDSSKiller.2.5.21.0_11.09.2011_08.26.08_log.txt
[2011.10.22 06:53:44 | 000,127,310 | —- | M] () – C:\TDSSKiller.2.6.12.0_22.10.2011_06.52.01_log.txt
[2011.10.22 06:56:03 | 000,064,312 | —- | M] () – C:\TDSSKiller.2.6.12.0_22.10.2011_06.53.50_log.txt
[2011.10.14 21:42:56 | 000,063,590 | —- | M] () – C:\TDSSKiller.2.6.9.0_14.10.2011_21.41.54_log.txt
[2011.10.14 21:43:51 | 000,001,828 | —- | M] () – C:\TDSSKiller.2.6.9.0_14.10.2011_21.43.28_log.txt
[2011.10.22 06:49:05 | 001,542,471 | —- | M] () – C:\tdsskiller.zip
[2008.01.18 13:30:15 | 000,136,528 | —- | M] (AOL LLC.) – C:\unagi_patch.exe
[2010.01.31 21:38:16 | 000,071,792 | —- | M] () – C:\VETlog.dmp
[2010.01.31 21:38:16 | 012,323,495 | —- | M] () – C:\VETlog.txt
[2007.08.18 19:46:13 | 000,000,588 | —- | M] () – C:\vsfilter.reg
[2011.05.11 21:03:40 | 000,206,775 | —- | M] () – C:\WebAdvisor.pdf
[2011.10.01 09:35:38 | 012,381,800 | —- | M] (Nullsoft, Inc.) – C:\winamp5621_full_emusic-7plus_en-us.exe
[2011.10.22 00:48:04 | 015,293,896 | —- | M] (Microsoft Corporation) – C:\windows-kb890830-v4.1.exe
[2009.02.15 10:20:01 | 000,003,059 | —- | M] () – C:\WirelessDiagLog.csv
[2008.01.24 19:30:41 | 000,000,328 | —- | M] () – C:\xinstall.log
[2007.08.18 19:46:13 | 000,000,294 | —- | M] () – C:\xvid.reg
< %systemroot%\Fonts\*.com >
[2006.04.18 15:39:28 | 000,026,040 | —- | M] () – C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2006.06.29 14:53:56 | 000,026,489 | —- | M] () – C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006.04.18 15:39:28 | 000,029,779 | —- | M] () – C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006.06.29 14:58:52 | 000,030,808 | —- | M] () – C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2004.08.10 13:03:42 | 000,000,067 | -HS- | M] () – C:\WINDOWS\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2008.07.06 07:06:10 | 000,089,088 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
[2007.04.09 13:23:54 | 000,028,552 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\spool\prtprocs\w32x86\mdippr.dll
[2008.07.06 05:50:03 | 000,597,504 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
[2006.11.26 03:51:43 | 000,001,610 | -H– | M] () – C:\Documents and Settings\Jennifer Law\Application Data\Microsoft\LastFlashConfig.WFC
< %PROGRAMFILES%\*.* >
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2004.08.10 12:56:48 | 000,094,208 | —- | M] () – C:\WINDOWS\System32\config\default.sav
[2004.08.10 12:56:46 | 000,634,880 | —- | M] () – C:\WINDOWS\System32\config\software.sav
[2004.08.10 12:56:46 | 000,872,448 | —- | M] () – C:\WINDOWS\System32\config\system.sav
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
[2008.07.19 18:29:47 | 000,000,272 | -HS- | M] () – C:\Documents and Settings\All Users\Start Menu\desktop.ini
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2006.11.11 01:19:56 | 000,000,119 | -HS- | M] () – C:\Documents and Settings\Jennifer Law\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini
[2004.08.10 13:08:38 | 000,000,079 | —- | M] () – C:\Documents and Settings\Jennifer Law\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
< %USERPROFILE%\Desktop\*.exe >
[2011.10.25 14:31:25 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Jennifer Law\Desktop\OTL.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >
< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >
< %PROGRAMFILES%\Internet Explorer\*.tmp >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %USERPROFILE%\My Documents\*.exe >
[2011.04.16 20:16:25 | 012,580,112 | —- | M] (Mozilla) – C:\Documents and Settings\Jennifer Law\My Documents\Firefox Setup 4.0.exe
[2010.05.09 18:24:50 | 011,862,896 | —- | M] (Microsoft Corporation) – C:\Documents and Settings\Jennifer Law\My Documents\mssefullinstall-x86fre-en-us-xp.exe
[2011.04.15 19:14:36 | 018,340,336 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\pal_install_r17725.exe
[2011.04.14 20:52:40 | 000,708,608 | —- | M] () – C:\Documents and Settings\Jennifer Law\My Documents\rainy-st-setup.exe
[2011.09.22 20:51:44 | 000,684,288 | —- | M] (RealNetworks, Inc.) – C:\Documents and Settings\Jennifer Law\My Documents\RealPlayer.exe
[2011.07.17 11:28:41 | 000,570,612 | —- | M] (The GO Button, Inc. ) – C:\Documents and Settings\Jennifer Law\My Documents\setup.exe
< %USERPROFILE%\*.exe >
[2011.05.04 17:34:31 | 000,000,000 | —- | M] () – C:\Documents and Settings\Jennifer Law\FCM.exe
< %systemroot%\ADDINS\*.* >
< %systemroot%\assembly\*.bak2 >
< %systemroot%\Config\*.* >
< %systemroot%\REPAIR\*.bak2 >
< %systemroot%\SECURITY\Database\*.sdb /x >
< %systemroot%\SYSTEM\*.bak2 >
< %systemroot%\Web\*.bak2 >
< %systemroot%\Driver Cache\*.* >
< %PROGRAMFILES%\Mozilla Firefox\0*.exe >
< %ProgramFiles%\Microsoft Common\*.* >
< %ProgramFiles%\TinyProxy. >
< %USERPROFILE%\Favorites\*.url /x >
[2006.11.11 01:19:55 | 000,000,122 | -HS- | M] () – C:\Documents and Settings\Jennifer Law\Favorites\Desktop.ini
< %systemroot%\system32\*.bk >
< %systemroot%\*.te >
< %systemroot%\system32\system32\*.* >
< %ALLUSERSPROFILE%\*.dat /x >
< %systemroot%\system32\drivers\*.rmv >
< dir /b "%systemroot%\system32\*.exe" | find /i " " /c >
< dir /b "%systemroot%\*.exe" | find /i " " /c >
< %PROGRAMFILES%\Microsoft\*.* >
< %systemroot%\System32\Wbem\proquota.exe >
< %PROGRAMFILES%\Mozilla Firefox\*.dat >
< %USERPROFILE%\Cookies\*.txt /x >
[2010.02.14 18:50:48 | 000,000,067 | -HS- | M] () – C:\Documents and Settings\Jennifer Law\Cookies\desktop.ini
[2011.10.25 14:35:55 | 000,278,528 | —- | M] () – C:\Documents and Settings\Jennifer Law\Cookies\index.dat
< %SystemRoot%\system32\fonts\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-10-15 12:12:52
========== Alternate Data Streams ==========
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
@Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A8ADE5D8
< End of report >