bOuT2JuMpOfF
Topic Starter
Pages are taking forever to load in all browsers and browsers are freezing.
Appreciate any help! Thank you in advance.
OTL logfile created on: 10/23/2011 1:28:29 AM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Richie\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.25 Gb Total Physical Memory | 1.77 Gb Available Physical Memory | 54.35% Memory free
6.68 Gb Paging File | 5.19 Gb Available in Paging File | 77.57% Paging File free
Paging file location(s): ?:\pagefile.sys
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 298.09 Gb Total Space | 91.63 Gb Free Space | 30.74% Space Free | Partition Type: NTFS
Computer Name: THEFAMILYDEN | User Name: Richie | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/10/23 01:25:50 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Users\Richie\Desktop\OTL.exe
PRC - [2011/10/18 13:07:14 | 000,140,952 | —- | M] (Google Inc.) – C:\Program Files\Google\Update\1.3.21.79\GoogleCrashHandler.exe
PRC - [2011/10/08 17:34:24 | 000,820,568 | —- | M] (IObit) – C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
PRC - [2011/10/05 06:12:54 | 000,924,632 | —- | M] (Mozilla Corporation) – C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/09/09 07:51:24 | 000,116,608 | —- | M] (SUPERAntiSpyware.com) – C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
PRC - [2011/09/05 13:04:56 | 001,489,304 | —- | M] (Adobe Systems Incorporated) – C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe
PRC - [2011/07/28 19:08:12 | 001,259,376 | —- | M] () – C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2011/07/06 09:39:58 | 000,045,056 | —- | M] (Intuit) – C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
PRC - [2011/06/30 13:25:52 | 001,248,256 | —- | M] (Intuit Inc.) – C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe
PRC - [2011/06/06 12:55:28 | 000,064,952 | —- | M] (Adobe Systems Incorporated) – C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/04/27 15:39:26 | 000,208,944 | —- | M] (Microsoft Corporation) – c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
PRC - [2011/04/27 15:39:26 | 000,011,736 | —- | M] (Microsoft Corporation) – c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
PRC - [2011/04/14 18:08:52 | 000,352,144 | —- | M] (IObit) – C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
PRC - [2011/01/07 21:06:12 | 000,803,432 | —- | M] (NVIDIA Corporation) – C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
PRC - [2011/01/07 19:48:56 | 000,378,984 | —- | M] (NVIDIA Corporation) – C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2009/04/11 02:27:36 | 002,926,592 | —- | M] (Microsoft Corporation) – C:\Windows\explorer.exe
PRC - [2009/01/26 15:31:10 | 001,153,368 | —- | M] (Safer Networking Ltd.) – C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
PRC - [2008/10/27 19:03:46 | 000,759,072 | —- | M] (ABBYY (BIT Software)) – C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
PRC - [2008/09/16 12:03:18 | 000,169,312 | —- | M] (Adobe Systems Incorporated) – C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe
PRC - [2008/05/19 13:28:52 | 000,065,536 | —- | M] () – C:\Program Files\VService\VService.exe
PRC - [2006/12/19 18:23:20 | 000,094,208 | —- | M] (SEIKO EPSON CORPORATION) – C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe
PRC - [2006/12/05 01:36:10 | 000,537,520 | —- | M] ( ) – C:\Windows\System32\lxcqcoms.exe
PRC - [2006/10/23 08:50:35 | 000,046,640 | R— | M] (AOL LLC) – C:\Program Files\Common Files\AOL\acs\AOLacsd.exe
========== Modules (No Company Name) ==========
MOD - [2011/10/10 20:09:28 | 008,522,400 | —- | M] () – C:\Windows\System32\Macromed\Flash\NPSWF32.dll
MOD - [2011/10/05 06:12:54 | 001,833,944 | —- | M] () – C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011/07/28 19:09:42 | 000,096,112 | —- | M] () – C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2011/07/28 19:08:12 | 001,259,376 | —- | M] () – C:\Program Files\DivX\DivX Update\DivXUpdate.exe
MOD - [2011/01/07 19:48:38 | 000,235,624 | —- | M] () – C:\Program Files\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll
MOD - [2009/02/14 05:04:38 | 000,756,040 | —- | M] () – C:\Program Files\Common Files\microsoft shared\OFFICE12\MSPTLS.DLL
========== Win32 Services (SafeList) ==========
SRV - [2011/10/10 05:53:18 | 003,552,856 | —- | M] () [Auto | Running] – C:\Program Files\Common Files\Akamai\netsession_win_807ba95.dll – (Akamai)
SRV - [2011/10/08 17:34:24 | 000,820,568 | —- | M] (IObit) [Auto | Running] – C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe – (IMFservice)
SRV - [2011/09/09 07:51:24 | 000,116,608 | —- | M] (SUPERAntiSpyware.com) [Auto | Running] – C:\Program Files\SUPERAntiSpyware\SASCORE.EXE – (!SASCORE)
SRV - [2011/07/06 09:39:58 | 000,045,056 | —- | M] (Intuit) [Auto | Running] – C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe – (QBCFMonitorService)
SRV - [2011/06/30 13:25:52 | 001,248,256 | —- | M] (Intuit Inc.) [Auto | Running] – C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe – (QBVSS)
SRV - [2011/06/06 12:55:28 | 000,064,952 | —- | M] (Adobe Systems Incorporated) [Auto | Running] – C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe – (AdobeARMservice)
SRV - [2011/04/27 15:39:26 | 000,208,944 | —- | M] (Microsoft Corporation) [On_Demand | Running] – c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe – (NisSrv)
SRV - [2011/04/27 15:39:26 | 000,011,736 | —- | M] (Microsoft Corporation) [Auto | Running] – c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe – (MsMpSvc)
SRV - [2011/04/14 18:08:52 | 000,352,144 | —- | M] (IObit) [Auto | Running] – C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe – (AdvancedSystemCareService)
SRV - [2011/01/07 19:48:56 | 000,378,984 | —- | M] (NVIDIA Corporation) [Auto | Running] – C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe – (Stereo Service)
SRV - [2010/02/19 13:37:14 | 000,517,096 | —- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] – C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe – (SwitchBoard)
SRV - [2009/11/02 14:17:00 | 001,098,968 | —- | M] (TiVo Inc.) [Disabled | Stopped] – C:\Program Files\TiVo\Desktop\TiVoBeacon.exe – (TivoBeacon2)
SRV - [2009/07/23 21:10:38 | 000,061,440 | —- | M] (Intuit Inc.) [On_Demand | Stopped] – C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe – (QBFCService)
SRV - [2009/04/14 00:07:42 | 000,651,720 | —- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] – C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe – (FLEXnet Licensing Service)
SRV - [2009/01/26 15:31:10 | 001,153,368 | —- | M] (Safer Networking Ltd.) [Auto | Running] – C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe – (SBSDWSCService)
SRV - [2008/10/27 19:03:46 | 000,759,072 | —- | M] (ABBYY (BIT Software)) [Auto | Running] – C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe – (ABBYY.Licensing.FineReader.Professional.9.0)
SRV - [2008/09/16 12:03:18 | 000,169,312 | —- | M] (Adobe Systems Incorporated) [Auto | Running] – C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe – (AdobeActiveFileMonitor7.0)
SRV - [2008/05/19 13:28:52 | 000,065,536 | —- | M] () [Auto | Running] – C:\Program Files\VService\VService.exe – (VService)
SRV - [2008/01/20 22:23:32 | 000,272,952 | —- | M] (Microsoft Corporation) [Auto | Stopped] – C:\Program Files\Windows Defender\MpSvc.dll – (WinDefend)
SRV - [2007/12/19 15:28:38 | 000,181,784 | —- | M] (WildTangent, Inc.) [On_Demand | Stopped] – C:\Program Files\WildGames\Game Console - WildGames\GameConsoleService.exe – (GameConsoleService)
SRV - [2006/12/19 18:23:20 | 000,094,208 | —- | M] (SEIKO EPSON CORPORATION) [Auto | Running] – C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe – (EpsonBidirectionalService)
SRV - [2006/12/05 01:36:10 | 000,537,520 | —- | M] ( ) [Auto | Running] – C:\Windows\System32\lxcqcoms.exe – (lxcq_device)
SRV - [2006/10/23 08:50:35 | 000,046,640 | R— | M] (AOL LLC) [Auto | Running] – C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe – (AOL ACS)
========== Driver Services (SafeList) ==========
DRV - [2011/10/22 23:47:58 | 000,028,752 | —- | M] (Microsoft Corporation) [Kernel | System | Running] – c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{137C3209-B436-4F72-B768-1FAC6A511533}\MpKsl58e2081b.sys – (MpKsl58e2081b)
DRV - [2011/10/08 17:04:26 | 000,018,768 | —- | M] () [File_System | Disabled | Stopped] – C:\Program Files\IObit\IObit Malware Fighter\Drivers\wlh_x86\FileMonitor.sys – (FileMonitor)
DRV - [2011/09/20 14:28:42 | 000,019,792 | —- | M] (IObit.com) [Kernel | On_Demand | Stopped] – C:\Program Files\IObit\IObit Malware Fighter\Drivers\wlh_x86\UrlFilter.sys – (UrlFilter)
DRV - [2011/09/20 14:28:36 | 000,030,600 | —- | M] (IObit.com) [Kernel | On_Demand | Stopped] – C:\Program Files\IObit\IObit Malware Fighter\Drivers\wlh_x86\RegFilter.sys – (RegFilter)
DRV - [2011/09/09 07:51:18 | 000,067,664 | —- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS – (SASKUTIL)
DRV - [2011/04/27 15:25:24 | 000,065,024 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\NisDrvWFP.sys – (NisDrv)
DRV - [2011/04/18 13:18:50 | 000,043,392 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\MpNWMon.sys – (MpNWMon)
DRV - [2011/03/24 23:31:06 | 000,023,456 | —- | M] (Phoenix Technologies) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\DrvAgent32.sys – (DrvAgent32)
DRV - [2011/03/16 19:00:08 | 000,032,672 | —- | M] (IObit Information Technology) [File_System | Auto | Running] – C:\Program Files\IObit\Protected Folder\pffilter.sys – (PfFilter)
DRV - [2011/01/07 23:27:00 | 010,467,656 | —- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\nvlddmkm.sys – (nvlddmkm)
DRV - [2010/08/23 10:56:04 | 000,223,128 | —- | M] (Alcohol Soft Co., Ltd.) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\vaxscsi.sys – (vaxscsi)
DRV - [2010/04/13 06:47:22 | 000,023,096 | —- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\SndTAudio.sys – (SndTAudio)
DRV - [2010/02/19 11:36:05 | 000,012,872 | —- | M] ( SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | On_Demand | Stopped] – C:\Program Files\SUPERAntiSpyware\SASENUM.SYS – (SASENUM)
DRV - [2010/01/20 23:47:54 | 000,836,384 | —- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\netr28u.sys – (netr28u)
DRV - [2009/09/02 04:09:24 | 000,176,128 | —- | M] (Realtek ) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\Rtlh86.sys – (RTL8169)
DRV - [2009/04/11 01:06:26 | 000,019,968 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\WSDScan.sys – (WSDScan)
DRV - [2009/02/24 18:42:14 | 000,116,736 | —- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\mcdbus.sys – (mcdbus)
DRV - [2008/11/28 15:26:56 | 000,010,704 | —- | M] (Pixbyte Development SL) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\iTurnsDriver.sys – (iTurns)
DRV - [2008/11/07 10:35:54 | 000,455,168 | —- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\emOEM.sys – (USB28xxOEM)
DRV - [2008/11/07 10:35:52 | 000,561,536 | —- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\emBDA.sys – (USB28xxBGA)
DRV - [2008/03/13 03:18:34 | 000,932,864 | —- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\AVerBDA716x.sys – (AVerBDA6x)
DRV - [2008/02/29 12:38:36 | 000,131,712 | —- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\etDevice.sys – (DCamUSBET)
DRV - [2008/01/20 22:23:21 | 000,016,896 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\WSDPrint.sys – (WSDPrintDevice)
DRV - [2008/01/20 22:23:20 | 002,225,664 | —- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\NETw3v32.sys – (NETw3v32) Intel®
DRV - [2007/09/07 06:43:56 | 000,006,656 | —- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\etScan.sys – (ScanUSBET)
DRV - [2007/07/17 06:29:44 | 000,020,504 | —- | M] (Hewlett Packard) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\hpfxfax.sys – (HPFXFAX)
DRV - [2007/07/17 06:29:34 | 000,017,432 | —- | M] (Hewlett Packard) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\hpfxbulk.sys – (HPFXBULK)
DRV - [2007/07/03 20:59:10 | 000,086,824 | —- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\sscdserd.sys – (sscdserd) SAMSUNG Mobile Modem Diagnostic Serial Port (WDM)
DRV - [2007/07/03 20:58:20 | 000,106,792 | —- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\sscdmdm.sys – (sscdmdm)
DRV - [2007/07/03 20:57:24 | 000,011,944 | —- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\sscdmdfl.sys – (sscdmdfl)
DRV - [2007/07/03 20:54:24 | 000,080,552 | —- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\sscdbus.sys – (sscdbus) SAMSUNG USB Composite Device driver (WDM)
DRV - [2007/06/21 07:51:28 | 002,222,080 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\NETw4v32.sys – (NETw4v32) Intel®
DRV - [2007/01/05 12:54:30 | 000,183,168 | —- | M] (eMPIA Technology Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\etFilter.sys – (FiltUSBET)
DRV - [2006/11/29 18:24:57 | 000,033,588 | —- | M] (America Online, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\wanatw4.sys – (wanatw) WAN Miniport (ATW)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.google.com/ig?hl=en
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@bittorrent.com/BitTorrentDNA: C:\Program Files\DNA\plugins\npbtdna.dll (BitTorrent, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=13: C:\Program Files\Google\Google Updater\2.4.1698.5652\npCIDetect13.dll (Google)
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Media Player\npViewpoint.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{000a9d1c-beef-4f90-9363-039d445309b8}: C:\Program Files\Google\Google Gears\Firefox\ [2010/06/12 20:52:31 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011/01/12 07:26:24 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011/01/12 07:26:24 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/10/05 06:12:55 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/09/18 15:11:12 | 000,000,000 | —D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{9179CC56-54BE-440B-B5A7-01F26C940093}: C:\Users\Richie\AppData\Local\{9179CC56-54BE-440B-B5A7-01F26C940093}
[2010/10/03 15:03:32 | 000,001,919 | —- | M] () – \Users\Richie\AppData\Roaming\Mozilla\Firefox\Profiles\jad3mhtm.default\searchplugins\bing-zugo.xml
[2011/03/08 20:23:08 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/02/17 09:11:47 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/03/12 12:59:38 | 000,000,000 | —D | M] (Personas) – C:\USERS\RICHIE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\JAD3MHTM.DEFAULT\EXTENSIONS\[removed]
[2011/10/05 06:12:55 | 000,134,104 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/02/17 09:11:35 | 000,472,808 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/10/05 06:12:53 | 000,002,252 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\bing.xml
========== Chrome ==========
CHR - Extension: DivX HiQ = C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_0\
O1 HOSTS File: ([2011/08/27 19:53:24 | 000,000,027 | —- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (DivX Plus Web Player HTML5 ) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Google Gears Helper) - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {10134636-E7AF-4AC5-A1DC-C7C44BB97D81} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {35065594-9169-4A34-B167-FC4865038E53} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {577EBCA9-8ED3-45FC-A514-55B3817D4BCF} - No CLSID value found.
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Intuit SyncManager] C:\Program Files\Common Files\Intuit\Sync\IntuitSyncManager.exe (Intuit Inc. All rights reserved.)
O4 - HKLM..\Run: [IObit Malware Fighter] C:\Program Files\IObit\IObit Malware Fighter\IMF.exe (IObit)
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Advanced SystemCare 4] C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe (IObit)
O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKLM..\RunOnce: [InnoSetupRegFile.0000000001] C:\Windows\is-ALUS6.exe ()
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
O8 - Extra context menu item: Google Sidewiki… - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll (Google Inc.)
O9 - Extra 'Tools' menuitem : &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.)
O9 - Extra Button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra 'Tools' menuitem : ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra 'Tools' menuitem : ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra Button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe (PokerStars)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKCU\..Trusted Domains: morganstanleyclientserv.com ([www] https in Trusted sites)
O15 - HKCU\..Trusted Domains: real.com ([rhap-app-4-0] https in Trusted sites)
O15 - HKCU\..Trusted Domains: real.com ([rhapreg] https in Trusted sites)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/flas…ent/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3CC27286-417C-430D-9F20-96EA12BD0B3D}: DhcpNameServer = [removed] [removed]
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{88A9763F-2AFD-4150-9A59-374CA5F64041}: DhcpNameServer = [removed] [removed]
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FF2AAF1F-BD49-4D72-AF7E-3FA68B18A59E}: DhcpNameServer = 192.168.1.1 192.168.1.1
O18 - Protocol\Handler\intu-help-qb4 {ACE22922-D07C-4860-B51B-8CF472FEC2CB} - C:\Program Files\Intuit\QuickBooks 2011\HelpAsyncPluggableProtocol.dll (Intuit, Inc.)
O18 - Protocol\Filter\text/x-mrml {C51721BE-858B-4A66-A8BF-D2882FF49820} - C:\Program Files\Common Files\A&W\MidRadio.ocx (YAMAHA CORPORATION)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Richie\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\Richie\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 17:43:36 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = ComFile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
O37 - HKCU\…exe [@ = exefile] – Reg Error: Key error. File not found
========== Files/Folders - Created Within 30 Days ==========
[2011/10/23 01:27:05 | 000,388,608 | —- | C] (Trend Micro Inc.) – C:\Users\Richie\Desktop\HiJackThis.exe
[2011/10/23 01:25:45 | 000,584,192 | —- | C] (OldTimer Tools) – C:\Users\Richie\Desktop\OTL.exe
[2011/10/22 23:47:32 | 000,000,000 | —D | C] – C:\ProgramData\NVIDIA
[2011/10/22 17:42:09 | 000,000,000 | —D | C] – C:\Users\Richie\AppData\Local\{3200B103-746B-4717-B250-9BB887AD687D}
[2011/10/22 17:41:58 | 000,000,000 | —D | C] – C:\Users\Richie\Documents\My Weblog Posts
[2011/10/22 17:41:54 | 000,000,000 | —D | C] – C:\Users\Richie\AppData\Local\Windows Live Writer
[2011/10/16 08:20:23 | 000,000,000 | —D | C] – C:\Users\Richie\AppData\Local\Intuit
[2011/10/16 08:13:21 | 000,000,000 | —D | C] – C:\Users\Public\Documents\Intuit
[2011/10/16 08:13:21 | 000,000,000 | —D | C] – C:\ProgramData\Intuit
[2011/10/16 08:13:21 | 000,000,000 | —D | C] – C:\Program Files\Intuit
[2011/10/16 08:13:21 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Intuit
[2011/10/16 08:12:34 | 000,000,000 | —D | C] – C:\ProgramData\COMMON FILES
[2011/10/16 08:07:11 | 000,000,000 | —D | C] – C:\Windows\Intuit
[2011/10/16 07:10:58 | 567,708,432 | —- | C] (Intuit, Inc. ) – C:\Users\Richie\Desktop\QuickBooksPremier2011.exe
[2011/10/16 07:10:56 | 000,000,000 | —D | C] – C:\Windows\Download Manager
[2011/10/16 07:10:54 | 000,000,000 | —D | C] – C:\Program Files\Akamai
[2011/10/15 19:03:00 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Akamai
[2011/10/13 06:57:15 | 002,382,848 | —- | C] (Microsoft Corporation) – C:\Windows\System32\mshtml.tlb
[2011/10/13 06:57:13 | 001,798,144 | —- | C] (Microsoft Corporation) – C:\Windows\System32\jscript9.dll
[2011/10/13 06:57:13 | 000,176,640 | —- | C] (Microsoft Corporation) – C:\Windows\System32\ieui.dll
[2011/10/13 06:57:12 | 000,231,936 | —- | C] (Microsoft Corporation) – C:\Windows\System32\url.dll
[2011/10/13 06:57:12 | 000,065,024 | —- | C] (Microsoft Corporation) – C:\Windows\System32\jsproxy.dll
[2011/10/13 05:48:44 | 000,293,376 | —- | C] (Microsoft Corporation) – C:\Windows\System32\psisdecd.dll
[2011/10/13 05:48:44 | 000,217,088 | —- | C] (Microsoft Corporation) – C:\Windows\System32\psisrndr.ax
[2011/10/13 05:48:44 | 000,069,632 | —- | C] (Microsoft Corporation) – C:\Windows\System32\Mpeg2Data.ax
[2011/10/13 05:48:44 | 000,057,856 | —- | C] (Microsoft Corporation) – C:\Windows\System32\MSDvbNP.ax
[2011/10/13 05:48:20 | 000,555,520 | —- | C] (Microsoft Corporation) – C:\Windows\System32\UIAutomationCore.dll
[2011/10/13 05:48:20 | 000,004,096 | —- | C] (Microsoft Corporation) – C:\Windows\System32\oleaccrc.dll
[2011/10/13 05:48:15 | 002,043,392 | —- | C] (Microsoft Corporation) – C:\Windows\System32\win32k.sys
[2009/03/24 18:59:37 | 000,081,408 | —- | C] (Microsoft Corporation) – C:\Program Files\taskkill.exe
[2006/12/04 21:36:12 | 000,385,968 | —- | C] ( ) – C:\Windows\System32\lxcqih.exe
[2006/12/04 21:36:10 | 000,537,520 | —- | C] ( ) – C:\Windows\System32\lxcqcoms.exe
[2006/12/04 21:36:06 | 000,381,872 | —- | C] ( ) – C:\Windows\System32\lxcqcfg.exe
[2006/11/06 04:37:46 | 000,643,072 | —- | C] ( ) – C:\Windows\System32\lxcqpmui.dll
[2006/11/06 04:35:50 | 001,224,704 | —- | C] ( ) – C:\Windows\System32\lxcqserv.dll
[2006/11/06 04:28:08 | 000,421,888 | —- | C] ( ) – C:\Windows\System32\lxcqcomm.dll
[2006/11/06 04:26:14 | 000,585,728 | —- | C] ( ) – C:\Windows\System32\lxcqlmpm.dll
[2006/11/06 04:24:44 | 000,397,312 | —- | C] ( ) – C:\Windows\System32\lxcqiesc.dll
[2006/11/06 04:21:48 | 000,094,208 | —- | C] ( ) – C:\Windows\System32\lxcqpplc.dll
[2006/11/06 04:20:48 | 000,684,032 | —- | C] ( ) – C:\Windows\System32\lxcqcomc.dll
[2006/11/06 04:20:14 | 000,163,840 | —- | C] ( ) – C:\Windows\System32\lxcqprox.dll
[2006/11/06 04:12:44 | 000,413,696 | —- | C] ( ) – C:\Windows\System32\lxcqinpa.dll
[2006/11/06 04:11:58 | 000,991,232 | —- | C] ( ) – C:\Windows\System32\lxcqusb1.dll
[2006/11/06 04:07:04 | 000,696,320 | —- | C] ( ) – C:\Windows\System32\lxcqhbn3.dll
========== Files - Modified Within 30 Days ==========
[2011/10/23 01:27:10 | 000,388,608 | —- | M] (Trend Micro Inc.) – C:\Users\Richie\Desktop\HiJackThis.exe
[2011/10/23 01:25:50 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Users\Richie\Desktop\OTL.exe
[2011/10/23 01:12:00 | 000,000,886 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/10/22 23:50:03 | 003,811,640 | —- | M] () – C:\Windows\System32\FNTCACHE.DAT
[2011/10/22 23:49:32 | 000,003,744 | -H– | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/10/22 23:49:31 | 000,003,744 | -H– | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/10/22 23:47:44 | 000,000,882 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/10/22 23:47:20 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2011/10/22 21:23:51 | 000,000,926 | —- | M] () – C:\Users\Public\Desktop\IObit Malware Fighter.lnk
[2011/10/21 22:46:10 | 000,025,120 | —- | M] () – C:\Users\Richie\Documents\cc_20111021_224605.reg
[2011/10/21 22:45:25 | 000,000,764 | —- | M] () – C:\Users\Public\Desktop\CCleaner.lnk
[2011/10/18 06:46:04 | 000,000,000 | —- | M] () – C:\Users\Richie\Documents\NEWSOFT
[2011/10/17 21:52:00 | 000,086,151 | —- | M] () – C:\Users\Richie\Desktop\fml.xml
[2011/10/17 20:44:00 | 000,008,967 | —- | M] () – C:\Users\Richie\Desktop\truestory.m3u
[2011/10/17 20:43:29 | 000,781,312 | -HS- | M] () – C:\Users\Richie\ehthumbs_vista.db
[2011/10/17 19:40:04 | 000,093,184 | —- | M] () – C:\Users\Richie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/10/16 08:17:24 | 000,000,095 | —- | M] () – C:\Windows\QBChanUtil_Trigger.ini
[2011/10/16 08:17:02 | 000,002,006 | —- | M] () – C:\Users\Public\Desktop\QuickBooks Premier - Contractor Edition 2011.lnk
[2011/10/16 08:11:53 | 000,001,915 | —- | M] () – C:\Users\Richie\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/10/16 08:05:56 | 567,708,432 | —- | M] (Intuit, Inc. ) – C:\Users\Richie\Desktop\QuickBooksPremier2011.exe
[2011/10/16 07:44:54 | 000,001,857 | —- | M] () – C:\Users\Public\Desktop\DivX Plus Converter.lnk
[2011/10/16 07:44:54 | 000,001,437 | —- | M] () – C:\Users\Richie\Desktop\DivX Movies.lnk
[2011/10/16 07:44:18 | 000,000,885 | —- | M] () – C:\Users\Public\Desktop\DivX Plus Player.lnk
[2011/10/16 07:10:58 | 000,000,710 | —- | M] () – C:\Users\Richie\Desktop\Setup_QuickBooksPremier2011.lnk
[2011/10/13 06:52:18 | 000,728,632 | —- | M] () – C:\Windows\System32\perfh009.dat
[2011/10/13 06:52:17 | 000,148,558 | —- | M] () – C:\Windows\System32\perfc009.dat
[2011/10/12 05:57:42 | 000,000,805 | —- | M] () – C:\Users\Public\Desktop\DVDneXtCOPY Ultimate.lnk
[2011/10/10 20:09:29 | 000,414,368 | —- | M] (Adobe Systems Incorporated) – C:\Windows\System32\FlashPlayerCPLApp.cpl
[2011/10/01 03:02:27 | 000,001,945 | —- | M] () – C:\Windows\epplauncher.mif
[2011/09/30 03:00:59 | 000,000,258 | RHS- | M] () – C:\ProgramData\ntuser.pol
[2011/09/23 23:45:52 | 000,709,968 | —- | M] () – C:\Windows\is-ALUS6.exe
[2011/09/23 23:45:52 | 000,010,498 | —- | M] () – C:\Windows\is-ALUS6.msg
[2011/09/23 23:45:52 | 000,000,890 | —- | M] () – C:\Users\Richie\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk
[2011/09/23 23:45:52 | 000,000,381 | —- | M] () – C:\Windows\is-ALUS6.lst
========== Files Created - No Company Name ==========
[2011/10/22 23:47:10 | 003,811,640 | —- | C] () – C:\Windows\System32\FNTCACHE.DAT
[2011/10/22 21:23:51 | 000,000,926 | —- | C] () – C:\Users\Public\Desktop\IObit Malware Fighter.lnk
[2011/10/21 22:46:07 | 000,025,120 | —- | C] () – C:\Users\Richie\Documents\cc_20111021_224605.reg
[2011/10/18 06:46:04 | 000,000,000 | —- | C] () – C:\Users\Richie\Documents\NEWSOFT
[2011/10/17 21:52:00 | 000,086,151 | —- | C] () – C:\Users\Richie\Desktop\fml.xml
[2011/10/17 20:44:00 | 000,008,967 | —- | C] () – C:\Users\Richie\Desktop\truestory.m3u
[2011/10/17 19:37:09 | 000,781,312 | -HS- | C] () – C:\Users\Richie\ehthumbs_vista.db
[2011/10/16 08:17:02 | 000,002,006 | —- | C] () – C:\Users\Public\Desktop\QuickBooks Premier - Contractor Edition 2011.lnk
[2011/10/16 08:12:35 | 000,000,095 | —- | C] () – C:\Windows\QBChanUtil_Trigger.ini
[2011/10/16 08:11:53 | 000,001,915 | —- | C] () – C:\Users\Richie\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/10/16 07:44:18 | 000,000,885 | —- | C] () – C:\Users\Public\Desktop\DivX Plus Player.lnk
[2011/10/16 07:10:56 | 000,000,710 | —- | C] () – C:\Users\Richie\Desktop\Setup_QuickBooksPremier2011.lnk
[2011/09/23 23:45:52 | 000,709,968 | —- | C] () – C:\Windows\is-ALUS6.exe
[2011/09/23 23:45:52 | 000,010,498 | —- | C] () – C:\Windows\is-ALUS6.msg
[2011/09/23 23:45:52 | 000,000,381 | —- | C] () – C:\Windows\is-ALUS6.lst
[2011/07/13 09:47:23 | 000,004,096 | -H– | C] () – C:\Users\Richie\AppData\Local\keyfile3.drm
[2011/05/22 09:07:27 | 000,073,220 | —- | C] () – C:\Windows\System32\EPPICPrinterDB.dat
[2011/05/22 09:07:27 | 000,031,053 | —- | C] () – C:\Windows\System32\EPPICPattern131.dat
[2011/05/22 09:07:27 | 000,029,114 | —- | C] () – C:\Windows\System32\EPPICPattern1.dat
[2011/05/22 09:07:27 | 000,027,417 | —- | C] () – C:\Windows\System32\EPPICPattern121.dat
[2011/05/22 09:07:27 | 000,021,021 | —- | C] () – C:\Windows\System32\EPPICPattern3.dat
[2011/05/22 09:07:27 | 000,015,670 | —- | C] () – C:\Windows\System32\EPPICPattern5.dat
[2011/05/22 09:07:27 | 000,013,280 | —- | C] () – C:\Windows\System32\EPPICPattern2.dat
[2011/05/22 09:07:27 | 000,010,673 | —- | C] () – C:\Windows\System32\EPPICPattern4.dat
[2011/05/22 09:07:27 | 000,004,943 | —- | C] () – C:\Windows\System32\EPPICPattern6.dat
[2011/05/22 09:07:27 | 000,001,140 | —- | C] () – C:\Windows\System32\EPPICPresetData_PT.dat
[2011/05/22 09:07:27 | 000,001,140 | —- | C] () – C:\Windows\System32\EPPICPresetData_BP.dat
[2011/05/22 09:07:27 | 000,001,137 | —- | C] () – C:\Windows\System32\EPPICPresetData_ES.dat
[2011/05/22 09:07:27 | 000,001,130 | —- | C] () – C:\Windows\System32\EPPICPresetData_FR.dat
[2011/05/22 09:07:27 | 000,001,130 | —- | C] () – C:\Windows\System32\EPPICPresetData_CF.dat
[2011/05/22 09:07:27 | 000,001,104 | —- | C] () – C:\Windows\System32\EPPICPresetData_EN.dat
[2011/05/22 09:07:27 | 000,000,097 | —- | C] () – C:\Windows\System32\PICSDK.ini
[2011/05/22 09:01:23 | 000,000,090 | —- | C] () – C:\Windows\EPART810.ini
[2011/05/15 16:04:25 | 000,237,568 | —- | C] () – C:\Windows\System32\lame_enc.dll
[2011/03/22 16:07:02 | 000,000,023 | —- | C] () – C:\Windows\ODBCINST.INI
[2011/03/05 11:08:06 | 000,000,148 | —- | C] () – C:\Windows\Readiris.ini
[2011/02/19 23:17:13 | 000,256,000 | —- | C] () – C:\Windows\PEV.exe
[2011/02/19 23:17:13 | 000,208,896 | —- | C] () – C:\Windows\MBR.exe
[2011/02/19 23:17:13 | 000,098,816 | —- | C] () – C:\Windows\sed.exe
[2011/02/19 23:17:13 | 000,080,412 | —- | C] () – C:\Windows\grep.exe
[2011/02/19 23:17:13 | 000,068,096 | —- | C] () – C:\Windows\zip.exe
[2011/02/17 17:08:38 | 000,000,608 | -HS- | C] () – C:\Windows\System32\winzvprt5.sys
[2011/02/17 17:03:07 | 000,153,528 | —- | C] () – C:\Windows\hppins07.dat
[2011/02/17 17:03:07 | 000,153,487 | —- | C] () – C:\Windows\System32\hppins07.dat
[2011/02/17 17:03:07 | 000,000,838 | —- | C] () – C:\Windows\hppmdl07.dat
[2011/02/02 20:39:12 | 000,016,968 | —- | C] () – C:\Windows\System32\drivers\hitmanpro35.sys
[2011/01/14 16:48:18 | 000,000,200 | —- | C] () – C:\Windows\ulead32.ini
[2010/12/06 12:14:23 | 000,000,841 | —- | C] () – \COMODO GeekBuddy.lnk
[2010/10/11 09:27:53 | 000,559,135 | —- | C] () – C:\Windows\hpoins16.dat.temp
[2010/10/11 09:27:53 | 000,004,602 | —- | C] () – C:\Windows\hpomdl16.dat.temp
[2010/09/26 19:57:21 | 000,559,135 | —- | C] () – C:\Windows\hpoins16.dat
[2010/09/26 19:57:21 | 000,004,602 | —- | C] () – C:\Windows\hpomdl16.dat
[2010/09/14 07:46:30 | 000,000,120 | —- | C] () – C:\Users\Richie\AppData\Local\Wwiwanofowacehe.dat
[2010/09/14 07:46:30 | 000,000,000 | —- | C] () – C:\Users\Richie\AppData\Local\Bpovepova.bin
[2010/08/22 12:42:05 | 000,000,000 | —- | C] () – C:\Windows\PCFriend.INI
[2010/05/23 16:59:34 | 000,059,924 | —- | C] () – C:\Windows\System32\libdvdcss-2.dll
[2010/04/24 18:12:30 | 000,000,217 | —- | C] () – \WirelessDiagLog.csv
[2010/04/03 17:50:32 | 000,000,000 | —- | C] () – C:\Users\Richie\AppData\Local\prvlcl.dat
[2010/02/06 19:24:39 | 000,001,090 | -H– | C] () – \IPH.PH
[2009/12/20 15:05:52 | 000,086,016 | —- | C] () – C:\Windows\System32\Machinist2.dll
[2009/09/17 21:52:16 | 000,000,552 | —- | C] () – C:\Users\Richie\AppData\Local\d3d8caps.dat
[2009/07/30 21:21:07 | 000,107,612 | —- | C] () – C:\Windows\System32\StructuredQuerySchema.bin
[2009/07/30 21:21:06 | 000,117,248 | —- | C] () – C:\Windows\System32\EhStorAuthn.dll
[2009/06/20 01:03:33 | 000,000,021 | —- | C] () – C:\Windows\atid.ini
[2009/05/06 07:31:19 | 000,294,912 | —- | C] () – C:\Windows\System32\SP_encore.dll
[2009/05/06 07:31:18 | 000,131,072 | —- | C] () – C:\Windows\System32\3GP_CREATOR_DLL_FILES.dll
[2009/05/06 07:30:00 | 000,135,168 | —- | C] () – C:\Windows\System32\SP_decore.dll
[2009/05/06 07:30:00 | 000,098,304 | —- | C] () – C:\Windows\System32\ResampleRateDll.dll
[2009/05/06 07:29:59 | 000,180,224 | —- | C] () – C:\Windows\System32\AMRDecore_Dll.dll
[2009/05/06 07:29:59 | 000,167,936 | —- | C] () – C:\Windows\System32\AMREncore_Dll.dll
[2009/05/01 00:12:13 | 000,000,094 | —- | C] () – C:\Users\Richie\AppData\Local\fusioncache.dat
[2009/04/19 18:25:05 | 000,009,728 | —- | C] () – C:\Windows\System32\BASSMOD.dll
[2009/04/15 01:00:56 | 000,000,220 | -HS- | C] () – C:\Windows\WSYS049.SYS
[2009/03/12 07:36:54 | 000,000,335 | —- | C] () – C:\Windows\nsreg.dat
[2009/03/07 18:57:31 | 000,002,766 | —- | C] () – C:\Windows\wininit.ini
[2009/03/05 06:54:58 | 000,073,728 | —- | C] () – C:\Windows\System32\RtNicProp32.dll
[2009/01/31 12:00:32 | 000,093,184 | —- | C] () – C:\Users\Richie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/01/26 23:45:07 | 000,028,672 | —- | C] () – C:\Windows\hookdllX.dll
[2009/01/26 23:44:48 | 000,011,776 | —- | C] () – C:\Windows\System32\pmsbfn32.dll
[2009/01/26 23:43:39 | 000,045,056 | —- | C] () – C:\Windows\System32\lxcqpmon.dll
[2009/01/26 23:43:39 | 000,032,768 | —- | C] () – C:\Windows\System32\LXCQFXPU.DLL
[2009/01/25 02:42:19 | 000,000,498 | —- | C] () – C:\Windows\ODBC.INI
[2009/01/18 16:21:18 | 000,001,356 | —- | C] () – C:\Users\Richie\AppData\Local\d3d9caps.dat
[2009/01/18 05:07:38 | 000,018,904 | —- | C] () – C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009/01/18 03:59:35 | 000,000,007 | —- | C] () – C:\Windows\System32\mkghj.dll
[2008/09/03 20:11:24 | 000,054,600 | —- | C] () – \npbittorrent.dll
[2008/06/18 23:05:52 | 000,000,000 | RHS- | C] () – \MSDOS.SYS
[2008/06/18 23:05:52 | 000,000,000 | RHS- | C] () – \IO.SYS
[2008/04/30 10:40:27 | 000,003,072 | —- | C] () – C:\Windows\System32\716xCoInstaller.dll
[2008/04/30 09:04:34 | 000,008,192 | R-S- | C] () – \BOOTSECT.BAK
[2008/04/30 09:04:33 | 000,333,257 | RHS- | C] () – \bootmgr
[2007/06/01 13:58:40 | 000,999,424 | —- | C] () – C:\Windows\System32\WLIHVUI.dll
[2007/03/16 18:00:00 | 000,003,403 | —- | C] () – C:\Windows\System32\hptcpmon.ini
[2007/01/11 20:24:32 | 000,000,685 | —- | C] () – C:\Windows\System32\hppapr07.dat
[2006/11/12 21:30:54 | 000,204,800 | —- | C] () – C:\Windows\System32\lxcqgrd.dll
[2006/11/02 08:57:28 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat
[2006/11/02 08:35:32 | 000,005,632 | —- | C] () – C:\Windows\System32\sysprepMCE.dll
[2006/11/02 06:33:01 | 000,728,632 | —- | C] () – C:\Windows\System32\perfh009.dat
[2006/11/02 06:33:01 | 000,287,440 | —- | C] () – C:\Windows\System32\perfi009.dat
[2006/11/02 06:33:01 | 000,148,558 | —- | C] () – C:\Windows\System32\perfc009.dat
[2006/11/02 06:33:01 | 000,030,674 | —- | C] () – C:\Windows\System32\perfd009.dat
[2006/11/02 06:23:21 | 000,215,943 | —- | C] () – C:\Windows\System32\dssec.dat
[2006/11/02 06:23:09 | 000,000,024 | —- | C] () – \autoexec.bat
[2006/11/02 04:58:30 | 000,043,131 | —- | C] () – C:\Windows\mib.bin
[2006/11/02 04:19:00 | 000,000,741 | —- | C] () – C:\Windows\System32\NOISE.DAT
[2006/11/02 03:40:29 | 000,013,750 | —- | C] () – C:\Windows\System32\pacerprf.ini
[2006/11/02 03:25:31 | 000,673,088 | —- | C] () – C:\Windows\System32\mlang.dat
[2006/11/02 02:25:08 | 000,000,010 | —- | C] () – \config.sys
[2006/10/24 20:16:22 | 000,344,064 | —- | C] () – C:\Windows\System32\lxcqcoin.dll
[2006/09/18 14:37:50 | 000,000,530 | —- | C] () – C:\Windows\System32\tx12_ic.ini
[2006/09/18 14:37:48 | 000,667,280 | —- | C] () – C:\Windows\System32\tx12.dll
[2005/06/23 14:37:48 | 000,040,960 | —- | C] () – C:\Windows\System32\lxcqvs.dll
[2002/07/22 12:25:00 | 000,794,624 | —- | C] () – C:\Windows\System32\LTRTN13n.DLL
[1998/10/11 00:07:38 | 000,088,576 | —- | C] () – C:\Windows\System32\Iticheck.dll
< End of report >
Appreciate any help! Thank you in advance.
OTL logfile created on: 10/23/2011 1:28:29 AM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Richie\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.25 Gb Total Physical Memory | 1.77 Gb Available Physical Memory | 54.35% Memory free
6.68 Gb Paging File | 5.19 Gb Available in Paging File | 77.57% Paging File free
Paging file location(s): ?:\pagefile.sys
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 298.09 Gb Total Space | 91.63 Gb Free Space | 30.74% Space Free | Partition Type: NTFS
Computer Name: THEFAMILYDEN | User Name: Richie | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/10/23 01:25:50 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Users\Richie\Desktop\OTL.exe
PRC - [2011/10/18 13:07:14 | 000,140,952 | —- | M] (Google Inc.) – C:\Program Files\Google\Update\1.3.21.79\GoogleCrashHandler.exe
PRC - [2011/10/08 17:34:24 | 000,820,568 | —- | M] (IObit) – C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
PRC - [2011/10/05 06:12:54 | 000,924,632 | —- | M] (Mozilla Corporation) – C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/09/09 07:51:24 | 000,116,608 | —- | M] (SUPERAntiSpyware.com) – C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
PRC - [2011/09/05 13:04:56 | 001,489,304 | —- | M] (Adobe Systems Incorporated) – C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe
PRC - [2011/07/28 19:08:12 | 001,259,376 | —- | M] () – C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2011/07/06 09:39:58 | 000,045,056 | —- | M] (Intuit) – C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
PRC - [2011/06/30 13:25:52 | 001,248,256 | —- | M] (Intuit Inc.) – C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe
PRC - [2011/06/06 12:55:28 | 000,064,952 | —- | M] (Adobe Systems Incorporated) – C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/04/27 15:39:26 | 000,208,944 | —- | M] (Microsoft Corporation) – c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
PRC - [2011/04/27 15:39:26 | 000,011,736 | —- | M] (Microsoft Corporation) – c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
PRC - [2011/04/14 18:08:52 | 000,352,144 | —- | M] (IObit) – C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
PRC - [2011/01/07 21:06:12 | 000,803,432 | —- | M] (NVIDIA Corporation) – C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
PRC - [2011/01/07 19:48:56 | 000,378,984 | —- | M] (NVIDIA Corporation) – C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2009/04/11 02:27:36 | 002,926,592 | —- | M] (Microsoft Corporation) – C:\Windows\explorer.exe
PRC - [2009/01/26 15:31:10 | 001,153,368 | —- | M] (Safer Networking Ltd.) – C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
PRC - [2008/10/27 19:03:46 | 000,759,072 | —- | M] (ABBYY (BIT Software)) – C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
PRC - [2008/09/16 12:03:18 | 000,169,312 | —- | M] (Adobe Systems Incorporated) – C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe
PRC - [2008/05/19 13:28:52 | 000,065,536 | —- | M] () – C:\Program Files\VService\VService.exe
PRC - [2006/12/19 18:23:20 | 000,094,208 | —- | M] (SEIKO EPSON CORPORATION) – C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe
PRC - [2006/12/05 01:36:10 | 000,537,520 | —- | M] ( ) – C:\Windows\System32\lxcqcoms.exe
PRC - [2006/10/23 08:50:35 | 000,046,640 | R— | M] (AOL LLC) – C:\Program Files\Common Files\AOL\acs\AOLacsd.exe
========== Modules (No Company Name) ==========
MOD - [2011/10/10 20:09:28 | 008,522,400 | —- | M] () – C:\Windows\System32\Macromed\Flash\NPSWF32.dll
MOD - [2011/10/05 06:12:54 | 001,833,944 | —- | M] () – C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011/07/28 19:09:42 | 000,096,112 | —- | M] () – C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2011/07/28 19:08:12 | 001,259,376 | —- | M] () – C:\Program Files\DivX\DivX Update\DivXUpdate.exe
MOD - [2011/01/07 19:48:38 | 000,235,624 | —- | M] () – C:\Program Files\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll
MOD - [2009/02/14 05:04:38 | 000,756,040 | —- | M] () – C:\Program Files\Common Files\microsoft shared\OFFICE12\MSPTLS.DLL
========== Win32 Services (SafeList) ==========
SRV - [2011/10/10 05:53:18 | 003,552,856 | —- | M] () [Auto | Running] – C:\Program Files\Common Files\Akamai\netsession_win_807ba95.dll – (Akamai)
SRV - [2011/10/08 17:34:24 | 000,820,568 | —- | M] (IObit) [Auto | Running] – C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe – (IMFservice)
SRV - [2011/09/09 07:51:24 | 000,116,608 | —- | M] (SUPERAntiSpyware.com) [Auto | Running] – C:\Program Files\SUPERAntiSpyware\SASCORE.EXE – (!SASCORE)
SRV - [2011/07/06 09:39:58 | 000,045,056 | —- | M] (Intuit) [Auto | Running] – C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe – (QBCFMonitorService)
SRV - [2011/06/30 13:25:52 | 001,248,256 | —- | M] (Intuit Inc.) [Auto | Running] – C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe – (QBVSS)
SRV - [2011/06/06 12:55:28 | 000,064,952 | —- | M] (Adobe Systems Incorporated) [Auto | Running] – C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe – (AdobeARMservice)
SRV - [2011/04/27 15:39:26 | 000,208,944 | —- | M] (Microsoft Corporation) [On_Demand | Running] – c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe – (NisSrv)
SRV - [2011/04/27 15:39:26 | 000,011,736 | —- | M] (Microsoft Corporation) [Auto | Running] – c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe – (MsMpSvc)
SRV - [2011/04/14 18:08:52 | 000,352,144 | —- | M] (IObit) [Auto | Running] – C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe – (AdvancedSystemCareService)
SRV - [2011/01/07 19:48:56 | 000,378,984 | —- | M] (NVIDIA Corporation) [Auto | Running] – C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe – (Stereo Service)
SRV - [2010/02/19 13:37:14 | 000,517,096 | —- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] – C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe – (SwitchBoard)
SRV - [2009/11/02 14:17:00 | 001,098,968 | —- | M] (TiVo Inc.) [Disabled | Stopped] – C:\Program Files\TiVo\Desktop\TiVoBeacon.exe – (TivoBeacon2)
SRV - [2009/07/23 21:10:38 | 000,061,440 | —- | M] (Intuit Inc.) [On_Demand | Stopped] – C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe – (QBFCService)
SRV - [2009/04/14 00:07:42 | 000,651,720 | —- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] – C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe – (FLEXnet Licensing Service)
SRV - [2009/01/26 15:31:10 | 001,153,368 | —- | M] (Safer Networking Ltd.) [Auto | Running] – C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe – (SBSDWSCService)
SRV - [2008/10/27 19:03:46 | 000,759,072 | —- | M] (ABBYY (BIT Software)) [Auto | Running] – C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe – (ABBYY.Licensing.FineReader.Professional.9.0)
SRV - [2008/09/16 12:03:18 | 000,169,312 | —- | M] (Adobe Systems Incorporated) [Auto | Running] – C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe – (AdobeActiveFileMonitor7.0)
SRV - [2008/05/19 13:28:52 | 000,065,536 | —- | M] () [Auto | Running] – C:\Program Files\VService\VService.exe – (VService)
SRV - [2008/01/20 22:23:32 | 000,272,952 | —- | M] (Microsoft Corporation) [Auto | Stopped] – C:\Program Files\Windows Defender\MpSvc.dll – (WinDefend)
SRV - [2007/12/19 15:28:38 | 000,181,784 | —- | M] (WildTangent, Inc.) [On_Demand | Stopped] – C:\Program Files\WildGames\Game Console - WildGames\GameConsoleService.exe – (GameConsoleService)
SRV - [2006/12/19 18:23:20 | 000,094,208 | —- | M] (SEIKO EPSON CORPORATION) [Auto | Running] – C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe – (EpsonBidirectionalService)
SRV - [2006/12/05 01:36:10 | 000,537,520 | —- | M] ( ) [Auto | Running] – C:\Windows\System32\lxcqcoms.exe – (lxcq_device)
SRV - [2006/10/23 08:50:35 | 000,046,640 | R— | M] (AOL LLC) [Auto | Running] – C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe – (AOL ACS)
========== Driver Services (SafeList) ==========
DRV - [2011/10/22 23:47:58 | 000,028,752 | —- | M] (Microsoft Corporation) [Kernel | System | Running] – c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{137C3209-B436-4F72-B768-1FAC6A511533}\MpKsl58e2081b.sys – (MpKsl58e2081b)
DRV - [2011/10/08 17:04:26 | 000,018,768 | —- | M] () [File_System | Disabled | Stopped] – C:\Program Files\IObit\IObit Malware Fighter\Drivers\wlh_x86\FileMonitor.sys – (FileMonitor)
DRV - [2011/09/20 14:28:42 | 000,019,792 | —- | M] (IObit.com) [Kernel | On_Demand | Stopped] – C:\Program Files\IObit\IObit Malware Fighter\Drivers\wlh_x86\UrlFilter.sys – (UrlFilter)
DRV - [2011/09/20 14:28:36 | 000,030,600 | —- | M] (IObit.com) [Kernel | On_Demand | Stopped] – C:\Program Files\IObit\IObit Malware Fighter\Drivers\wlh_x86\RegFilter.sys – (RegFilter)
DRV - [2011/09/09 07:51:18 | 000,067,664 | —- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS – (SASKUTIL)
DRV - [2011/04/27 15:25:24 | 000,065,024 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\NisDrvWFP.sys – (NisDrv)
DRV - [2011/04/18 13:18:50 | 000,043,392 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\MpNWMon.sys – (MpNWMon)
DRV - [2011/03/24 23:31:06 | 000,023,456 | —- | M] (Phoenix Technologies) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\DrvAgent32.sys – (DrvAgent32)
DRV - [2011/03/16 19:00:08 | 000,032,672 | —- | M] (IObit Information Technology) [File_System | Auto | Running] – C:\Program Files\IObit\Protected Folder\pffilter.sys – (PfFilter)
DRV - [2011/01/07 23:27:00 | 010,467,656 | —- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\nvlddmkm.sys – (nvlddmkm)
DRV - [2010/08/23 10:56:04 | 000,223,128 | —- | M] (Alcohol Soft Co., Ltd.) [Kernel | On_Demand | Stopped] – C:\Windows\System32\Drivers\vaxscsi.sys – (vaxscsi)
DRV - [2010/04/13 06:47:22 | 000,023,096 | —- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\SndTAudio.sys – (SndTAudio)
DRV - [2010/02/19 11:36:05 | 000,012,872 | —- | M] ( SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | On_Demand | Stopped] – C:\Program Files\SUPERAntiSpyware\SASENUM.SYS – (SASENUM)
DRV - [2010/01/20 23:47:54 | 000,836,384 | —- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\netr28u.sys – (netr28u)
DRV - [2009/09/02 04:09:24 | 000,176,128 | —- | M] (Realtek ) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\Rtlh86.sys – (RTL8169)
DRV - [2009/04/11 01:06:26 | 000,019,968 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\WSDScan.sys – (WSDScan)
DRV - [2009/02/24 18:42:14 | 000,116,736 | —- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\mcdbus.sys – (mcdbus)
DRV - [2008/11/28 15:26:56 | 000,010,704 | —- | M] (Pixbyte Development SL) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\iTurnsDriver.sys – (iTurns)
DRV - [2008/11/07 10:35:54 | 000,455,168 | —- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\emOEM.sys – (USB28xxOEM)
DRV - [2008/11/07 10:35:52 | 000,561,536 | —- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\emBDA.sys – (USB28xxBGA)
DRV - [2008/03/13 03:18:34 | 000,932,864 | —- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\AVerBDA716x.sys – (AVerBDA6x)
DRV - [2008/02/29 12:38:36 | 000,131,712 | —- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\etDevice.sys – (DCamUSBET)
DRV - [2008/01/20 22:23:21 | 000,016,896 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\WSDPrint.sys – (WSDPrintDevice)
DRV - [2008/01/20 22:23:20 | 002,225,664 | —- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\NETw3v32.sys – (NETw3v32) Intel®
DRV - [2007/09/07 06:43:56 | 000,006,656 | —- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\etScan.sys – (ScanUSBET)
DRV - [2007/07/17 06:29:44 | 000,020,504 | —- | M] (Hewlett Packard) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\hpfxfax.sys – (HPFXFAX)
DRV - [2007/07/17 06:29:34 | 000,017,432 | —- | M] (Hewlett Packard) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\hpfxbulk.sys – (HPFXBULK)
DRV - [2007/07/03 20:59:10 | 000,086,824 | —- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\sscdserd.sys – (sscdserd) SAMSUNG Mobile Modem Diagnostic Serial Port (WDM)
DRV - [2007/07/03 20:58:20 | 000,106,792 | —- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\sscdmdm.sys – (sscdmdm)
DRV - [2007/07/03 20:57:24 | 000,011,944 | —- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\sscdmdfl.sys – (sscdmdfl)
DRV - [2007/07/03 20:54:24 | 000,080,552 | —- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\System32\drivers\sscdbus.sys – (sscdbus) SAMSUNG USB Composite Device driver (WDM)
DRV - [2007/06/21 07:51:28 | 002,222,080 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\NETw4v32.sys – (NETw4v32) Intel®
DRV - [2007/01/05 12:54:30 | 000,183,168 | —- | M] (eMPIA Technology Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\etFilter.sys – (FiltUSBET)
DRV - [2006/11/29 18:24:57 | 000,033,588 | —- | M] (America Online, Inc.) [Kernel | On_Demand | Running] – C:\Windows\System32\drivers\wanatw4.sys – (wanatw) WAN Miniport (ATW)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.google.com/ig?hl=en
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@bittorrent.com/BitTorrentDNA: C:\Program Files\DNA\plugins\npbtdna.dll (BitTorrent, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=13: C:\Program Files\Google\Google Updater\2.4.1698.5652\npCIDetect13.dll (Google)
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Media Player\npViewpoint.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{000a9d1c-beef-4f90-9363-039d445309b8}: C:\Program Files\Google\Google Gears\Firefox\ [2010/06/12 20:52:31 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011/01/12 07:26:24 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011/01/12 07:26:24 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/10/05 06:12:55 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/09/18 15:11:12 | 000,000,000 | —D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{9179CC56-54BE-440B-B5A7-01F26C940093}: C:\Users\Richie\AppData\Local\{9179CC56-54BE-440B-B5A7-01F26C940093}
[2010/10/03 15:03:32 | 000,001,919 | —- | M] () – \Users\Richie\AppData\Roaming\Mozilla\Firefox\Profiles\jad3mhtm.default\searchplugins\bing-zugo.xml
[2011/03/08 20:23:08 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/02/17 09:11:47 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/03/12 12:59:38 | 000,000,000 | —D | M] (Personas) – C:\USERS\RICHIE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\JAD3MHTM.DEFAULT\EXTENSIONS\[removed]
[2011/10/05 06:12:55 | 000,134,104 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/02/17 09:11:35 | 000,472,808 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/10/05 06:12:53 | 000,002,252 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\bing.xml
========== Chrome ==========
CHR - Extension: DivX HiQ = C:\Users\Richie\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_0\
O1 HOSTS File: ([2011/08/27 19:53:24 | 000,000,027 | —- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (DivX Plus Web Player HTML5 ) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Google Gears Helper) - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {10134636-E7AF-4AC5-A1DC-C7C44BB97D81} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {35065594-9169-4A34-B167-FC4865038E53} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {577EBCA9-8ED3-45FC-A514-55B3817D4BCF} - No CLSID value found.
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Intuit SyncManager] C:\Program Files\Common Files\Intuit\Sync\IntuitSyncManager.exe (Intuit Inc. All rights reserved.)
O4 - HKLM..\Run: [IObit Malware Fighter] C:\Program Files\IObit\IObit Malware Fighter\IMF.exe (IObit)
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Advanced SystemCare 4] C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe (IObit)
O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKLM..\RunOnce: [InnoSetupRegFile.0000000001] C:\Windows\is-ALUS6.exe ()
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html File not found
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html File not found
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html File not found
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html File not found
O8 - Extra context menu item: Google Sidewiki… - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll (Google Inc.)
O9 - Extra 'Tools' menuitem : &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.)
O9 - Extra Button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra 'Tools' menuitem : ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra 'Tools' menuitem : ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra Button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe (PokerStars)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKCU\..Trusted Domains: morganstanleyclientserv.com ([www] https in Trusted sites)
O15 - HKCU\..Trusted Domains: real.com ([rhap-app-4-0] https in Trusted sites)
O15 - HKCU\..Trusted Domains: real.com ([rhapreg] https in Trusted sites)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/flas…ent/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3CC27286-417C-430D-9F20-96EA12BD0B3D}: DhcpNameServer = [removed] [removed]
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{88A9763F-2AFD-4150-9A59-374CA5F64041}: DhcpNameServer = [removed] [removed]
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FF2AAF1F-BD49-4D72-AF7E-3FA68B18A59E}: DhcpNameServer = 192.168.1.1 192.168.1.1
O18 - Protocol\Handler\intu-help-qb4 {ACE22922-D07C-4860-B51B-8CF472FEC2CB} - C:\Program Files\Intuit\QuickBooks 2011\HelpAsyncPluggableProtocol.dll (Intuit, Inc.)
O18 - Protocol\Filter\text/x-mrml {C51721BE-858B-4A66-A8BF-D2882FF49820} - C:\Program Files\Common Files\A&W\MidRadio.ocx (YAMAHA CORPORATION)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Richie\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\Richie\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 17:43:36 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = ComFile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
O37 - HKCU\…exe [@ = exefile] – Reg Error: Key error. File not found
========== Files/Folders - Created Within 30 Days ==========
[2011/10/23 01:27:05 | 000,388,608 | —- | C] (Trend Micro Inc.) – C:\Users\Richie\Desktop\HiJackThis.exe
[2011/10/23 01:25:45 | 000,584,192 | —- | C] (OldTimer Tools) – C:\Users\Richie\Desktop\OTL.exe
[2011/10/22 23:47:32 | 000,000,000 | —D | C] – C:\ProgramData\NVIDIA
[2011/10/22 17:42:09 | 000,000,000 | —D | C] – C:\Users\Richie\AppData\Local\{3200B103-746B-4717-B250-9BB887AD687D}
[2011/10/22 17:41:58 | 000,000,000 | —D | C] – C:\Users\Richie\Documents\My Weblog Posts
[2011/10/22 17:41:54 | 000,000,000 | —D | C] – C:\Users\Richie\AppData\Local\Windows Live Writer
[2011/10/16 08:20:23 | 000,000,000 | —D | C] – C:\Users\Richie\AppData\Local\Intuit
[2011/10/16 08:13:21 | 000,000,000 | —D | C] – C:\Users\Public\Documents\Intuit
[2011/10/16 08:13:21 | 000,000,000 | —D | C] – C:\ProgramData\Intuit
[2011/10/16 08:13:21 | 000,000,000 | —D | C] – C:\Program Files\Intuit
[2011/10/16 08:13:21 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Intuit
[2011/10/16 08:12:34 | 000,000,000 | —D | C] – C:\ProgramData\COMMON FILES
[2011/10/16 08:07:11 | 000,000,000 | —D | C] – C:\Windows\Intuit
[2011/10/16 07:10:58 | 567,708,432 | —- | C] (Intuit, Inc. ) – C:\Users\Richie\Desktop\QuickBooksPremier2011.exe
[2011/10/16 07:10:56 | 000,000,000 | —D | C] – C:\Windows\Download Manager
[2011/10/16 07:10:54 | 000,000,000 | —D | C] – C:\Program Files\Akamai
[2011/10/15 19:03:00 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Akamai
[2011/10/13 06:57:15 | 002,382,848 | —- | C] (Microsoft Corporation) – C:\Windows\System32\mshtml.tlb
[2011/10/13 06:57:13 | 001,798,144 | —- | C] (Microsoft Corporation) – C:\Windows\System32\jscript9.dll
[2011/10/13 06:57:13 | 000,176,640 | —- | C] (Microsoft Corporation) – C:\Windows\System32\ieui.dll
[2011/10/13 06:57:12 | 000,231,936 | —- | C] (Microsoft Corporation) – C:\Windows\System32\url.dll
[2011/10/13 06:57:12 | 000,065,024 | —- | C] (Microsoft Corporation) – C:\Windows\System32\jsproxy.dll
[2011/10/13 05:48:44 | 000,293,376 | —- | C] (Microsoft Corporation) – C:\Windows\System32\psisdecd.dll
[2011/10/13 05:48:44 | 000,217,088 | —- | C] (Microsoft Corporation) – C:\Windows\System32\psisrndr.ax
[2011/10/13 05:48:44 | 000,069,632 | —- | C] (Microsoft Corporation) – C:\Windows\System32\Mpeg2Data.ax
[2011/10/13 05:48:44 | 000,057,856 | —- | C] (Microsoft Corporation) – C:\Windows\System32\MSDvbNP.ax
[2011/10/13 05:48:20 | 000,555,520 | —- | C] (Microsoft Corporation) – C:\Windows\System32\UIAutomationCore.dll
[2011/10/13 05:48:20 | 000,004,096 | —- | C] (Microsoft Corporation) – C:\Windows\System32\oleaccrc.dll
[2011/10/13 05:48:15 | 002,043,392 | —- | C] (Microsoft Corporation) – C:\Windows\System32\win32k.sys
[2009/03/24 18:59:37 | 000,081,408 | —- | C] (Microsoft Corporation) – C:\Program Files\taskkill.exe
[2006/12/04 21:36:12 | 000,385,968 | —- | C] ( ) – C:\Windows\System32\lxcqih.exe
[2006/12/04 21:36:10 | 000,537,520 | —- | C] ( ) – C:\Windows\System32\lxcqcoms.exe
[2006/12/04 21:36:06 | 000,381,872 | —- | C] ( ) – C:\Windows\System32\lxcqcfg.exe
[2006/11/06 04:37:46 | 000,643,072 | —- | C] ( ) – C:\Windows\System32\lxcqpmui.dll
[2006/11/06 04:35:50 | 001,224,704 | —- | C] ( ) – C:\Windows\System32\lxcqserv.dll
[2006/11/06 04:28:08 | 000,421,888 | —- | C] ( ) – C:\Windows\System32\lxcqcomm.dll
[2006/11/06 04:26:14 | 000,585,728 | —- | C] ( ) – C:\Windows\System32\lxcqlmpm.dll
[2006/11/06 04:24:44 | 000,397,312 | —- | C] ( ) – C:\Windows\System32\lxcqiesc.dll
[2006/11/06 04:21:48 | 000,094,208 | —- | C] ( ) – C:\Windows\System32\lxcqpplc.dll
[2006/11/06 04:20:48 | 000,684,032 | —- | C] ( ) – C:\Windows\System32\lxcqcomc.dll
[2006/11/06 04:20:14 | 000,163,840 | —- | C] ( ) – C:\Windows\System32\lxcqprox.dll
[2006/11/06 04:12:44 | 000,413,696 | —- | C] ( ) – C:\Windows\System32\lxcqinpa.dll
[2006/11/06 04:11:58 | 000,991,232 | —- | C] ( ) – C:\Windows\System32\lxcqusb1.dll
[2006/11/06 04:07:04 | 000,696,320 | —- | C] ( ) – C:\Windows\System32\lxcqhbn3.dll
========== Files - Modified Within 30 Days ==========
[2011/10/23 01:27:10 | 000,388,608 | —- | M] (Trend Micro Inc.) – C:\Users\Richie\Desktop\HiJackThis.exe
[2011/10/23 01:25:50 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Users\Richie\Desktop\OTL.exe
[2011/10/23 01:12:00 | 000,000,886 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/10/22 23:50:03 | 003,811,640 | —- | M] () – C:\Windows\System32\FNTCACHE.DAT
[2011/10/22 23:49:32 | 000,003,744 | -H– | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/10/22 23:49:31 | 000,003,744 | -H– | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/10/22 23:47:44 | 000,000,882 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/10/22 23:47:20 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2011/10/22 21:23:51 | 000,000,926 | —- | M] () – C:\Users\Public\Desktop\IObit Malware Fighter.lnk
[2011/10/21 22:46:10 | 000,025,120 | —- | M] () – C:\Users\Richie\Documents\cc_20111021_224605.reg
[2011/10/21 22:45:25 | 000,000,764 | —- | M] () – C:\Users\Public\Desktop\CCleaner.lnk
[2011/10/18 06:46:04 | 000,000,000 | —- | M] () – C:\Users\Richie\Documents\NEWSOFT
[2011/10/17 21:52:00 | 000,086,151 | —- | M] () – C:\Users\Richie\Desktop\fml.xml
[2011/10/17 20:44:00 | 000,008,967 | —- | M] () – C:\Users\Richie\Desktop\truestory.m3u
[2011/10/17 20:43:29 | 000,781,312 | -HS- | M] () – C:\Users\Richie\ehthumbs_vista.db
[2011/10/17 19:40:04 | 000,093,184 | —- | M] () – C:\Users\Richie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/10/16 08:17:24 | 000,000,095 | —- | M] () – C:\Windows\QBChanUtil_Trigger.ini
[2011/10/16 08:17:02 | 000,002,006 | —- | M] () – C:\Users\Public\Desktop\QuickBooks Premier - Contractor Edition 2011.lnk
[2011/10/16 08:11:53 | 000,001,915 | —- | M] () – C:\Users\Richie\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/10/16 08:05:56 | 567,708,432 | —- | M] (Intuit, Inc. ) – C:\Users\Richie\Desktop\QuickBooksPremier2011.exe
[2011/10/16 07:44:54 | 000,001,857 | —- | M] () – C:\Users\Public\Desktop\DivX Plus Converter.lnk
[2011/10/16 07:44:54 | 000,001,437 | —- | M] () – C:\Users\Richie\Desktop\DivX Movies.lnk
[2011/10/16 07:44:18 | 000,000,885 | —- | M] () – C:\Users\Public\Desktop\DivX Plus Player.lnk
[2011/10/16 07:10:58 | 000,000,710 | —- | M] () – C:\Users\Richie\Desktop\Setup_QuickBooksPremier2011.lnk
[2011/10/13 06:52:18 | 000,728,632 | —- | M] () – C:\Windows\System32\perfh009.dat
[2011/10/13 06:52:17 | 000,148,558 | —- | M] () – C:\Windows\System32\perfc009.dat
[2011/10/12 05:57:42 | 000,000,805 | —- | M] () – C:\Users\Public\Desktop\DVDneXtCOPY Ultimate.lnk
[2011/10/10 20:09:29 | 000,414,368 | —- | M] (Adobe Systems Incorporated) – C:\Windows\System32\FlashPlayerCPLApp.cpl
[2011/10/01 03:02:27 | 000,001,945 | —- | M] () – C:\Windows\epplauncher.mif
[2011/09/30 03:00:59 | 000,000,258 | RHS- | M] () – C:\ProgramData\ntuser.pol
[2011/09/23 23:45:52 | 000,709,968 | —- | M] () – C:\Windows\is-ALUS6.exe
[2011/09/23 23:45:52 | 000,010,498 | —- | M] () – C:\Windows\is-ALUS6.msg
[2011/09/23 23:45:52 | 000,000,890 | —- | M] () – C:\Users\Richie\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk
[2011/09/23 23:45:52 | 000,000,381 | —- | M] () – C:\Windows\is-ALUS6.lst
========== Files Created - No Company Name ==========
[2011/10/22 23:47:10 | 003,811,640 | —- | C] () – C:\Windows\System32\FNTCACHE.DAT
[2011/10/22 21:23:51 | 000,000,926 | —- | C] () – C:\Users\Public\Desktop\IObit Malware Fighter.lnk
[2011/10/21 22:46:07 | 000,025,120 | —- | C] () – C:\Users\Richie\Documents\cc_20111021_224605.reg
[2011/10/18 06:46:04 | 000,000,000 | —- | C] () – C:\Users\Richie\Documents\NEWSOFT
[2011/10/17 21:52:00 | 000,086,151 | —- | C] () – C:\Users\Richie\Desktop\fml.xml
[2011/10/17 20:44:00 | 000,008,967 | —- | C] () – C:\Users\Richie\Desktop\truestory.m3u
[2011/10/17 19:37:09 | 000,781,312 | -HS- | C] () – C:\Users\Richie\ehthumbs_vista.db
[2011/10/16 08:17:02 | 000,002,006 | —- | C] () – C:\Users\Public\Desktop\QuickBooks Premier - Contractor Edition 2011.lnk
[2011/10/16 08:12:35 | 000,000,095 | —- | C] () – C:\Windows\QBChanUtil_Trigger.ini
[2011/10/16 08:11:53 | 000,001,915 | —- | C] () – C:\Users\Richie\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/10/16 07:44:18 | 000,000,885 | —- | C] () – C:\Users\Public\Desktop\DivX Plus Player.lnk
[2011/10/16 07:10:56 | 000,000,710 | —- | C] () – C:\Users\Richie\Desktop\Setup_QuickBooksPremier2011.lnk
[2011/09/23 23:45:52 | 000,709,968 | —- | C] () – C:\Windows\is-ALUS6.exe
[2011/09/23 23:45:52 | 000,010,498 | —- | C] () – C:\Windows\is-ALUS6.msg
[2011/09/23 23:45:52 | 000,000,381 | —- | C] () – C:\Windows\is-ALUS6.lst
[2011/07/13 09:47:23 | 000,004,096 | -H– | C] () – C:\Users\Richie\AppData\Local\keyfile3.drm
[2011/05/22 09:07:27 | 000,073,220 | —- | C] () – C:\Windows\System32\EPPICPrinterDB.dat
[2011/05/22 09:07:27 | 000,031,053 | —- | C] () – C:\Windows\System32\EPPICPattern131.dat
[2011/05/22 09:07:27 | 000,029,114 | —- | C] () – C:\Windows\System32\EPPICPattern1.dat
[2011/05/22 09:07:27 | 000,027,417 | —- | C] () – C:\Windows\System32\EPPICPattern121.dat
[2011/05/22 09:07:27 | 000,021,021 | —- | C] () – C:\Windows\System32\EPPICPattern3.dat
[2011/05/22 09:07:27 | 000,015,670 | —- | C] () – C:\Windows\System32\EPPICPattern5.dat
[2011/05/22 09:07:27 | 000,013,280 | —- | C] () – C:\Windows\System32\EPPICPattern2.dat
[2011/05/22 09:07:27 | 000,010,673 | —- | C] () – C:\Windows\System32\EPPICPattern4.dat
[2011/05/22 09:07:27 | 000,004,943 | —- | C] () – C:\Windows\System32\EPPICPattern6.dat
[2011/05/22 09:07:27 | 000,001,140 | —- | C] () – C:\Windows\System32\EPPICPresetData_PT.dat
[2011/05/22 09:07:27 | 000,001,140 | —- | C] () – C:\Windows\System32\EPPICPresetData_BP.dat
[2011/05/22 09:07:27 | 000,001,137 | —- | C] () – C:\Windows\System32\EPPICPresetData_ES.dat
[2011/05/22 09:07:27 | 000,001,130 | —- | C] () – C:\Windows\System32\EPPICPresetData_FR.dat
[2011/05/22 09:07:27 | 000,001,130 | —- | C] () – C:\Windows\System32\EPPICPresetData_CF.dat
[2011/05/22 09:07:27 | 000,001,104 | —- | C] () – C:\Windows\System32\EPPICPresetData_EN.dat
[2011/05/22 09:07:27 | 000,000,097 | —- | C] () – C:\Windows\System32\PICSDK.ini
[2011/05/22 09:01:23 | 000,000,090 | —- | C] () – C:\Windows\EPART810.ini
[2011/05/15 16:04:25 | 000,237,568 | —- | C] () – C:\Windows\System32\lame_enc.dll
[2011/03/22 16:07:02 | 000,000,023 | —- | C] () – C:\Windows\ODBCINST.INI
[2011/03/05 11:08:06 | 000,000,148 | —- | C] () – C:\Windows\Readiris.ini
[2011/02/19 23:17:13 | 000,256,000 | —- | C] () – C:\Windows\PEV.exe
[2011/02/19 23:17:13 | 000,208,896 | —- | C] () – C:\Windows\MBR.exe
[2011/02/19 23:17:13 | 000,098,816 | —- | C] () – C:\Windows\sed.exe
[2011/02/19 23:17:13 | 000,080,412 | —- | C] () – C:\Windows\grep.exe
[2011/02/19 23:17:13 | 000,068,096 | —- | C] () – C:\Windows\zip.exe
[2011/02/17 17:08:38 | 000,000,608 | -HS- | C] () – C:\Windows\System32\winzvprt5.sys
[2011/02/17 17:03:07 | 000,153,528 | —- | C] () – C:\Windows\hppins07.dat
[2011/02/17 17:03:07 | 000,153,487 | —- | C] () – C:\Windows\System32\hppins07.dat
[2011/02/17 17:03:07 | 000,000,838 | —- | C] () – C:\Windows\hppmdl07.dat
[2011/02/02 20:39:12 | 000,016,968 | —- | C] () – C:\Windows\System32\drivers\hitmanpro35.sys
[2011/01/14 16:48:18 | 000,000,200 | —- | C] () – C:\Windows\ulead32.ini
[2010/12/06 12:14:23 | 000,000,841 | —- | C] () – \COMODO GeekBuddy.lnk
[2010/10/11 09:27:53 | 000,559,135 | —- | C] () – C:\Windows\hpoins16.dat.temp
[2010/10/11 09:27:53 | 000,004,602 | —- | C] () – C:\Windows\hpomdl16.dat.temp
[2010/09/26 19:57:21 | 000,559,135 | —- | C] () – C:\Windows\hpoins16.dat
[2010/09/26 19:57:21 | 000,004,602 | —- | C] () – C:\Windows\hpomdl16.dat
[2010/09/14 07:46:30 | 000,000,120 | —- | C] () – C:\Users\Richie\AppData\Local\Wwiwanofowacehe.dat
[2010/09/14 07:46:30 | 000,000,000 | —- | C] () – C:\Users\Richie\AppData\Local\Bpovepova.bin
[2010/08/22 12:42:05 | 000,000,000 | —- | C] () – C:\Windows\PCFriend.INI
[2010/05/23 16:59:34 | 000,059,924 | —- | C] () – C:\Windows\System32\libdvdcss-2.dll
[2010/04/24 18:12:30 | 000,000,217 | —- | C] () – \WirelessDiagLog.csv
[2010/04/03 17:50:32 | 000,000,000 | —- | C] () – C:\Users\Richie\AppData\Local\prvlcl.dat
[2010/02/06 19:24:39 | 000,001,090 | -H– | C] () – \IPH.PH
[2009/12/20 15:05:52 | 000,086,016 | —- | C] () – C:\Windows\System32\Machinist2.dll
[2009/09/17 21:52:16 | 000,000,552 | —- | C] () – C:\Users\Richie\AppData\Local\d3d8caps.dat
[2009/07/30 21:21:07 | 000,107,612 | —- | C] () – C:\Windows\System32\StructuredQuerySchema.bin
[2009/07/30 21:21:06 | 000,117,248 | —- | C] () – C:\Windows\System32\EhStorAuthn.dll
[2009/06/20 01:03:33 | 000,000,021 | —- | C] () – C:\Windows\atid.ini
[2009/05/06 07:31:19 | 000,294,912 | —- | C] () – C:\Windows\System32\SP_encore.dll
[2009/05/06 07:31:18 | 000,131,072 | —- | C] () – C:\Windows\System32\3GP_CREATOR_DLL_FILES.dll
[2009/05/06 07:30:00 | 000,135,168 | —- | C] () – C:\Windows\System32\SP_decore.dll
[2009/05/06 07:30:00 | 000,098,304 | —- | C] () – C:\Windows\System32\ResampleRateDll.dll
[2009/05/06 07:29:59 | 000,180,224 | —- | C] () – C:\Windows\System32\AMRDecore_Dll.dll
[2009/05/06 07:29:59 | 000,167,936 | —- | C] () – C:\Windows\System32\AMREncore_Dll.dll
[2009/05/01 00:12:13 | 000,000,094 | —- | C] () – C:\Users\Richie\AppData\Local\fusioncache.dat
[2009/04/19 18:25:05 | 000,009,728 | —- | C] () – C:\Windows\System32\BASSMOD.dll
[2009/04/15 01:00:56 | 000,000,220 | -HS- | C] () – C:\Windows\WSYS049.SYS
[2009/03/12 07:36:54 | 000,000,335 | —- | C] () – C:\Windows\nsreg.dat
[2009/03/07 18:57:31 | 000,002,766 | —- | C] () – C:\Windows\wininit.ini
[2009/03/05 06:54:58 | 000,073,728 | —- | C] () – C:\Windows\System32\RtNicProp32.dll
[2009/01/31 12:00:32 | 000,093,184 | —- | C] () – C:\Users\Richie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/01/26 23:45:07 | 000,028,672 | —- | C] () – C:\Windows\hookdllX.dll
[2009/01/26 23:44:48 | 000,011,776 | —- | C] () – C:\Windows\System32\pmsbfn32.dll
[2009/01/26 23:43:39 | 000,045,056 | —- | C] () – C:\Windows\System32\lxcqpmon.dll
[2009/01/26 23:43:39 | 000,032,768 | —- | C] () – C:\Windows\System32\LXCQFXPU.DLL
[2009/01/25 02:42:19 | 000,000,498 | —- | C] () – C:\Windows\ODBC.INI
[2009/01/18 16:21:18 | 000,001,356 | —- | C] () – C:\Users\Richie\AppData\Local\d3d9caps.dat
[2009/01/18 05:07:38 | 000,018,904 | —- | C] () – C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009/01/18 03:59:35 | 000,000,007 | —- | C] () – C:\Windows\System32\mkghj.dll
[2008/09/03 20:11:24 | 000,054,600 | —- | C] () – \npbittorrent.dll
[2008/06/18 23:05:52 | 000,000,000 | RHS- | C] () – \MSDOS.SYS
[2008/06/18 23:05:52 | 000,000,000 | RHS- | C] () – \IO.SYS
[2008/04/30 10:40:27 | 000,003,072 | —- | C] () – C:\Windows\System32\716xCoInstaller.dll
[2008/04/30 09:04:34 | 000,008,192 | R-S- | C] () – \BOOTSECT.BAK
[2008/04/30 09:04:33 | 000,333,257 | RHS- | C] () – \bootmgr
[2007/06/01 13:58:40 | 000,999,424 | —- | C] () – C:\Windows\System32\WLIHVUI.dll
[2007/03/16 18:00:00 | 000,003,403 | —- | C] () – C:\Windows\System32\hptcpmon.ini
[2007/01/11 20:24:32 | 000,000,685 | —- | C] () – C:\Windows\System32\hppapr07.dat
[2006/11/12 21:30:54 | 000,204,800 | —- | C] () – C:\Windows\System32\lxcqgrd.dll
[2006/11/02 08:57:28 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat
[2006/11/02 08:35:32 | 000,005,632 | —- | C] () – C:\Windows\System32\sysprepMCE.dll
[2006/11/02 06:33:01 | 000,728,632 | —- | C] () – C:\Windows\System32\perfh009.dat
[2006/11/02 06:33:01 | 000,287,440 | —- | C] () – C:\Windows\System32\perfi009.dat
[2006/11/02 06:33:01 | 000,148,558 | —- | C] () – C:\Windows\System32\perfc009.dat
[2006/11/02 06:33:01 | 000,030,674 | —- | C] () – C:\Windows\System32\perfd009.dat
[2006/11/02 06:23:21 | 000,215,943 | —- | C] () – C:\Windows\System32\dssec.dat
[2006/11/02 06:23:09 | 000,000,024 | —- | C] () – \autoexec.bat
[2006/11/02 04:58:30 | 000,043,131 | —- | C] () – C:\Windows\mib.bin
[2006/11/02 04:19:00 | 000,000,741 | —- | C] () – C:\Windows\System32\NOISE.DAT
[2006/11/02 03:40:29 | 000,013,750 | —- | C] () – C:\Windows\System32\pacerprf.ini
[2006/11/02 03:25:31 | 000,673,088 | —- | C] () – C:\Windows\System32\mlang.dat
[2006/11/02 02:25:08 | 000,000,010 | —- | C] () – \config.sys
[2006/10/24 20:16:22 | 000,344,064 | —- | C] () – C:\Windows\System32\lxcqcoin.dll
[2006/09/18 14:37:50 | 000,000,530 | —- | C] () – C:\Windows\System32\tx12_ic.ini
[2006/09/18 14:37:48 | 000,667,280 | —- | C] () – C:\Windows\System32\tx12.dll
[2005/06/23 14:37:48 | 000,040,960 | —- | C] () – C:\Windows\System32\lxcqvs.dll
[2002/07/22 12:25:00 | 000,794,624 | —- | C] () – C:\Windows\System32\LTRTN13n.DLL
[1998/10/11 00:07:38 | 000,088,576 | —- | C] () – C:\Windows\System32\Iticheck.dll
< End of report >