OTL logfile created on: 11/16/2011 2:44:38 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Matt\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.50 Gb Total Physical Memory | 2.78 Gb Available Physical Memory | 79.52% Memory free
5.34 Gb Paging File | 4.71 Gb Available in Paging File | 88.29% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 465.74 Gb Total Space | 293.50 Gb Free Space | 63.02% Space Free | Partition Type: NTFS
Drive D: | 631.68 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: MATT-RAIDMAX | User Name: Matt | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Matt\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2012\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2012\avgemcx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2012\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2012\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2012\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\Steam\Steam.exe (Valve Corporation)
PRC - C:\Program Files\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
PRC - C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
PRC - C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe (Logitech, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\GIGABYTE\ET5Pro\GUI.exe ()
PRC - C:\WINDOWS\system32\WTablet\Wacom_TabletUser.exe (Wacom Technology, Corp.)
PRC - C:\WINDOWS\system32\Wacom_Tablet.exe (Wacom Technology, Corp.)
PRC - C:\WINDOWS\system32\xRaidSetup.exe (Gigabyte Technology Corp.)
PRC - C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe (SEIKO EPSON CORPORATION)
PRC - C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe (Jetsoft Development Company)
PRC - C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe (Lexmark International, Inc.)
PRC - C:\WINDOWS\system32\grxp4exe.exe (Kensington Technology Group)
========== Modules (No Company Name) ==========
MOD - C:\Program Files\Steam\bin\libcef.dll ()
MOD - C:\Program Files\Steam\bin\avcodec-52.dll ()
MOD - C:\Program Files\Steam\bin\chromehtml.dll ()
MOD - C:\Program Files\Steam\bin\avformat-52.dll ()
MOD - C:\Program Files\Steam\bin\avutil-50.dll ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\work.dll ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\Normal.dll ()
MOD - C:\Program Files\Logitech\SetPoint\khalwrapper.dll ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\GVTunner.dll ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\GUI.exe ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\etiv.dll ()
MOD - C:\Program Files\WinRAR\RarExt.dll ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\MarkFunDrv.dll ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\W83781D.DLL ()
MOD - C:\WINDOWS\system32\spool\prtprocs\w32x86\LXBVPP5C.DLL ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\mibdata.dll ()
MOD - C:\Program Files\GIGABYTE\ET5Pro\Sound.dll ()
========== Win32 Services (SafeList) ==========
SRV - (RoxLiveShare9) – File not found
SRV - (NMIndexingService) – File not found
SRV - (intelusb3) – File not found
SRV - (helpsvc) – File not found
SRV - (AppMgmt) – File not found
SRV - (6to4) – File not found
SRV - (AVGIDSAgent) – C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe (AVG Technologies CZ, s.r.o.)
SRV - (avgwd) – C:\Program Files\AVG\AVG2012\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (LBTServ) – C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (TabletServiceWacom) – C:\WINDOWS\system32\Wacom_Tablet.exe (Wacom Technology, Corp.)
SRV - (EpsonBidirectionalService) – C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe (SEIKO EPSON CORPORATION)
========== Driver Services (SafeList) ==========
DRV - (GVTDrv) – C:\WINDOWS\system32\drivers\GVTDrv.sys ()
DRV - (Avgldx86) – C:\WINDOWS\system32\drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AVGIDSShim) – C:\WINDOWS\system32\drivers\AVGIDSShim.sys (AVG Technologies CZ, s.r.o. )
DRV - (Avgrkx86) – C:\WINDOWS\system32\DRIVERS\avgrkx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgmfx86) – C:\WINDOWS\system32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgtdix) – C:\WINDOWS\system32\drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (AVGIDSFilter) – C:\WINDOWS\system32\drivers\AVGIDSFilter.sys (AVG Technologies CZ, s.r.o. )
DRV - (AVGIDSEH) – C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys (AVG Technologies CZ, s.r.o. )
DRV - (AVGIDSDriver) – C:\WINDOWS\system32\drivers\AVGIDSDriver.sys (AVG Technologies CZ, s.r.o. )
DRV - (MarkFun_NT) – C:\Program Files\GIGABYTE\ET5Pro\MARKFUN.W32 (Windows ® 2000 DDK provider)
DRV - (gdrv) – C:\WINDOWS\gdrv.sys (Windows ® 2000 DDK provider)
DRV - (sptd) – C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (LUsbFilt) – C:\WINDOWS\system32\drivers\LUsbFilt.sys (Logitech, Inc.)
DRV - (LMouFilt) – C:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) – C:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (LBeepKE) – C:\WINDOWS\system32\drivers\LBeepKE.sys (Logitech, Inc.)
DRV - (L8042Kbd) – C:\WINDOWS\system32\drivers\L8042Kbd.sys (Logitech, Inc.)
DRV - (hamachi) – C:\WINDOWS\system32\drivers\hamachi.sys (LogMeIn, Inc.)
DRV - (RTLE8023xp) – C:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (ET5Drv) – C:\WINDOWS\system32\drivers\ET5Drv.sys (Windows ® 2000 DDK provider)
DRV - (jraid) – C:\WINDOWS\system32\drivers\jraid.sys (JMicron Technology Corp.)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) – C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (wacommousefilter) – C:\WINDOWS\system32\drivers\wacommousefilter.sys (Wacom Technology)
DRV - (wacomvhid) – C:\WINDOWS\system32\drivers\wacomvhid.sys (Wacom Technology)
DRV - (WacomVKHid) – C:\WINDOWS\system32\drivers\WacomVKHid.sys (Wacom Technology)
DRV - (ntxpusb) – C:\WINDOWS\system32\drivers\ntxpusb.sys (Kensington Technology Group)
DRV - (kid_sys) – C:\WINDOWS\system32\drivers\KID_SYS.sys (Kensington Technology Group)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search"
FF - prefs.js..browser.search.selectedEngine: "Yahoo! Search"
FF - prefs.js..browser.startup.homepage: "http://www.yahoo.com/"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: [removed]:1.0
FF - prefs.js..extensions.enabledItems: [removed]:1.4
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1319
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@bittorrent.com/BitTorrentDNA: C:\Program Files\DNA\plugins\npbtdna.dll (BitTorrent, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.647: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.647: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.652: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.652: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.647: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@veoh.com/VeohTVPlugin: C:\Program Files\Veoh Networks\VeohWebPlayer\NPVeohTVPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@veoh.com/VeohWebPlayer: C:\Program Files\Veoh Networks\VeohWebPlayer\npWebPlayerVideoPluginATL.dll (Veoh)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\ [2011/11/04 07:57:45 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011/07/05 13:00:56 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/11/09 22:35:58 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/07/05 13:01:12 | 000,000,000 | —D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files\Veoh Networks\VeohWebPlayer\FFVideoFinder [2008/10/04 19:36:36 | 000,000,000 | —D | M]
[2008/08/27 23:28:49 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Matt\Application Data\Mozilla\Extensions
[2011/05/06 06:20:19 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\eh2oyyqr.default\extensions
[2010/04/27 00:33:19 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\eh2oyyqr.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/11/09 22:36:08 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/11/09 22:35:58 | 000,134,104 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2008/09/03 19:11:24 | 000,054,600 | —- | M] (BitTorrent, Inc.) – C:\Program Files\mozilla firefox\plugins\npbittorrent.dll
[2011/05/04 03:52:23 | 000,476,904 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/05/06 06:42:33 | 000,002,252 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/11/09 22:35:58 | 000,002,040 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\twitter.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{googl
e:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chro
me&ie;={inputEncoding}&q;={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client
=chrome&hl;={language}&q;={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Chrome\Application\15.0.874.120\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.4.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
CHR - plugin: RealPlayer™ G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
CHR - plugin: RealNetworks™ RealPlayer Chrome Background Extension Plug-In (32-bit) (Enabled) = C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
CHR - plugin: RealPlayer™ HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Chrome\Application\15.0.874.120\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Chrome\Application\15.0.874.120\pdf.dll
CHR - plugin: AVG Internet Security (Enabled) = C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll
CHR - plugin: BitTorrent (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npbittorrent.dll
CHR - plugin: RealJukebox NS Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: DNA Plug-in (Enabled) = C:\Program Files\DNA\plugins\npbtdna.dll
CHR - plugin: Veoh Web Player Beta (Enabled) = C:\Program Files\Veoh Networks\VeohWebPlayer\npWebPlayerVideoPluginATL.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Easy Youtube Video Downloader = C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fmknocfkgffdgekmfonabppnhdgmghem\4.1_0\
CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.4_0\
CHR - Extension: AVG Safe Search = C:\Documents and Settings\Matt\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1857_0\
Hosts file not found
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O3 - HKLM\..\Toolbar: (Veoh Web Player Video Finder) - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll (Veoh Networks Inc)
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS\System32\xRaidSetup.exe (Gigabyte Technology Corp.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [EasyTuneVPro] C:\Program Files\GIGABYTE\ET5Pro\ETcall.exe ()
O4 - HKLM..\Run: [Gravis Xperience Driver Support] C:\WINDOWS\System32\grxp4exe.exe (Kensington Technology Group)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe ()
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\WINDOWS\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [Lexmark 2200 Series] C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe (Lexmark International, Inc.)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE (FUJI PHOTO FILM CO., LTD.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" File not found
O4 - HKCU..\Run: [EPSON Stylus NX200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFA.EXE (SEIKO EPSON CORPORATION)
O4 - HKCU..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear File not found
O4 - HKCU..\Run: [Steam] C:\Program Files\Steam\Steam.exe (Valve Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
O4 - Startup: C:\Documents and Settings\Matt\Start Menu\Programs\Startup\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\Matt\Start Menu\Programs\Startup\Epson printer Registration.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flash…t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FAC0FF6F-7ACC-4596-BFFC-D36644BB5D6D}: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\Matt\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Matt\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O29 - HKLM SecurityProviders - (digeste.dll) - File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/05/11 00:50:07 | 000,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O32 - AutoRun File - [2002/06/06 01:56:50 | 000,061,440 | R— | M] () - D:\autoplay.exe – [ CDFS ]
O32 - AutoRun File - [2001/07/23 07:25:04 | 000,000,047 | R— | M] () - D:\autorun.inf – [ CDFS ]
O33 - MountPoints2\{a21424c3-7264-11de-9a22-001d7d0527cb}\Shell - "" = AutoRun
O33 - MountPoints2\{a21424c3-7264-11de-9a22-001d7d0527cb}\Shell\AutoRun - "" = Auto&Play;
O33 - MountPoints2\{a21424c3-7264-11de-9a22-001d7d0527cb}\Shell\AutoRun\command - "" = E:\SETUP.EXE
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun - "" = Auto&Play;
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2012\avgrsx.exe /sync /restart)
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: helpsvc - File not found
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011/11/16 14:42:39 | 000,584,192 | —- | C] (OldTimer Tools) – C:\Documents and Settings\Matt\Desktop\OTL.exe
[2011/11/16 14:38:07 | 001,564,976 | —- | C] (Kaspersky Lab ZAO) – C:\Documents and Settings\Matt\Desktop\TDSSKiller.exe
[2011/11/16 07:46:18 | 000,000,000 | —D | C] – C:\Documents and Settings\Matt\Start Menu\Programs\HiJackThis
[2011/11/16 07:21:02 | 000,000,000 | —D | C] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Adobe
[2011/11/15 17:08:51 | 000,000,000 | —D | C] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple Computer
[2011/11/15 16:48:27 | 000,000,000 | —D | C] – C:\Documents and Settings\NetworkService\Application Data\Sun
[2011/11/15 16:43:16 | 000,000,000 | —D | C] – C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2011/11/15 16:43:14 | 000,000,000 | —D | C] – C:\Documents and Settings\NetworkService\Application Data\Adobe
[2011/11/08 04:36:02 | 000,000,000 | —D | C] – C:\Documents and Settings\Matt\Application Data\uP00uucS1ibD
[2011/11/08 04:36:02 | 000,000,000 | —D | C] – C:\Documents and Settings\Matt\Start Menu\Programs\System Security 2012
[2011/11/08 04:36:02 | 000,000,000 | —D | C] – C:\Documents and Settings\Matt\Application Data\KqqqhYYXwkUrlBt
[2011/11/08 04:35:57 | 000,000,000 | —D | C] – C:\Documents and Settings\Matt\Application Data\zdEEKK8gRZ9hXwU
[2011/11/08 04:35:56 | 000,000,000 | —D | C] – C:\Documents and Settings\Matt\Application Data\EVVVellIBtz0yA1
[2011/11/04 18:11:32 | 000,126,976 | —- | C] (Blizzard Entertainment) – C:\WINDOWS\War3Unin.exe
[2011/11/04 18:11:32 | 000,000,000 | —D | C] – C:\Documents and Settings\Matt\Start Menu\Programs\Warcraft III
[2011/11/04 18:08:35 | 000,000,000 | —D | C] – C:\Program Files\Warcraft III
[2011/10/29 15:33:15 | 000,000,000 | —D | C] – C:\Documents and Settings\Matt\Desktop\Pictures
========== Files - Modified Within 30 Days ==========
[2011/11/16 14:44:36 | 000,000,284 | —- | M] () – C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-2000478354-879983540-682003330-1004.job
[2011/11/16 14:44:36 | 000,000,276 | —- | M] () – C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-2000478354-879983540-682003330-1004.job
[2011/11/16 14:42:39 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Matt\Desktop\OTL.exe
[2011/11/16 14:42:01 | 000,024,944 | —- | M] () – C:\WINDOWS\System32\drivers\GVTDrv.sys
[2011/11/16 14:42:01 | 000,000,004 | —- | M] () – C:\WINDOWS\System32\GVTunner.ref
[2011/11/16 14:41:06 | 000,002,048 | –S- | M] () – C:\WINDOWS\bootstat.dat
[2011/11/16 14:36:01 | 000,000,308 | —- | M] () – C:\WINDOWS\tasks\nlpwqyya.job
[2011/11/16 14:06:00 | 000,000,974 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2000478354-879983540-682003330-1004UA.job
[2011/11/16 13:16:25 | 000,000,664 | —- | M] () – C:\WINDOWS\System32\d3d9caps.dat
[2011/11/16 12:21:12 | 001,564,976 | —- | M] (Kaspersky Lab ZAO) – C:\Documents and Settings\Matt\Desktop\TDSSKiller.exe
[2011/11/16 12:10:49 | 000,100,702 | —- | M] () – C:\WINDOWS\System32\itusbcore.dat
[2011/11/16 12:10:49 | 000,000,196 | —- | M] () – C:\WINDOWS\System32\itlsvc.dat
[2011/11/16 09:08:40 | 109,888,454 | —- | M] () – C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/11/16 07:46:37 | 000,002,445 | —- | M] () – C:\Documents and Settings\Matt\Desktop\HiJackThis.lnk
[2011/11/16 07:45:56 | 001,402,880 | —- | M] () – C:\Documents and Settings\Matt\Desktop\HiJackThis.msi
[2011/11/15 18:04:02 | 000,000,352 | —- | M] () – C:\WINDOWS\tasks\At2.job
[2011/11/15 18:04:02 | 000,000,350 | —- | M] () – C:\WINDOWS\tasks\At3.job
[2011/11/15 18:04:02 | 000,000,350 | —- | M] () – C:\WINDOWS\tasks\At1.job
[2011/11/15 16:49:17 | 000,414,368 | —- | M] (Adobe Systems Incorporated) – C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/11/15 16:30:39 | 000,013,646 | —- | M] () – C:\WINDOWS\System32\wpa.dbl
[2011/11/15 15:55:01 | 000,000,284 | —- | M] () – C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/11/15 15:06:00 | 000,000,922 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2000478354-879983540-682003330-1004Core.job
[2011/11/14 03:25:19 | 000,062,976 | —- | M] () – C:\Documents and Settings\Matt\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/11 20:26:09 | 000,058,619 | —- | M] () – C:\Documents and Settings\Matt\Desktop\002AP111109032115_225803.jpg
[2011/11/10 03:02:55 | 000,001,393 | —- | M] () – C:\WINDOWS\imsins.BAK
[2011/11/06 17:31:22 | 000,269,877 | —- | M] () – C:\WINDOWS\System32\drivers\AVG\iavichjg.avm
[2011/11/06 11:54:29 | 000,433,122 | —- | M] () – C:\WINDOWS\System32\perfh009.dat
[2011/11/06 11:54:29 | 000,067,952 | —- | M] () – C:\WINDOWS\System32\perfc009.dat
[2011/11/04 18:12:08 | 000,017,615 | —- | M] () – C:\WINDOWS\War3Unin.dat
[2011/11/04 18:12:08 | 000,001,612 | —- | M] () – C:\Documents and Settings\Matt\Desktop\Warcraft III.lnk
[2011/11/04 18:11:32 | 000,126,976 | —- | M] (Blizzard Entertainment) – C:\WINDOWS\War3Unin.exe
[2011/11/04 18:11:32 | 000,002,829 | —- | M] () – C:\WINDOWS\War3Unin.pif
[2011/11/04 07:57:46 | 000,000,702 | —- | M] () – C:\Documents and Settings\All Users\Desktop\AVG 2012.lnk
[2011/11/03 20:41:09 | 000,120,419 | —- | M] () – C:\Documents and Settings\Matt\Desktop\squeenix.jpg
[2011/11/01 21:46:33 | 000,023,562 | —- | M] () – C:\Documents and Settings\Matt\Desktop\heaume de joute 1480.jpg
[2011/10/26 02:33:36 | 000,232,968 | —- | M] () – C:\WINDOWS\System32\nvdrsdb1.bin
[2011/10/26 02:33:36 | 000,000,001 | —- | M] () – C:\WINDOWS\System32\nvdrssel.bin
[2011/10/24 23:27:54 | 000,232,968 | —- | M] () – C:\WINDOWS\System32\nvdrsdb0.bin
========== Files Created - No Company Name ==========
[2011/11/16 12:10:49 | 000,100,702 | —- | C] () – C:\WINDOWS\System32\itusbcore.dat
[2011/11/16 12:10:49 | 000,000,196 | —- | C] () – C:\WINDOWS\System32\itlsvc.dat
[2011/11/16 07:46:18 | 000,002,445 | —- | C] () – C:\Documents and Settings\Matt\Desktop\HiJackThis.lnk
[2011/11/16 07:45:56 | 001,402,880 | —- | C] () – C:\Documents and Settings\Matt\Desktop\HiJackThis.msi
[2011/11/15 18:04:02 | 000,000,352 | —- | C] () – C:\WINDOWS\tasks\At2.job
[2011/11/15 18:04:02 | 000,000,350 | —- | C] () – C:\WINDOWS\tasks\At3.job
[2011/11/15 18:04:02 | 000,000,350 | —- | C] () – C:\WINDOWS\tasks\At1.job
[2011/11/15 16:48:27 | 000,000,664 | —- | C] () – C:\WINDOWS\System32\d3d9caps.dat
[2011/11/11 20:26:07 | 000,058,619 | —- | C] () – C:\Documents and Settings\Matt\Desktop\002AP111109032115_225803.jpg
[2011/11/04 18:12:08 | 000,001,612 | —- | C] () – C:\Documents and Settings\Matt\Desktop\Warcraft III.lnk
[2011/11/04 18:11:32 | 000,017,615 | —- | C] () – C:\WINDOWS\War3Unin.dat
[2011/11/04 18:11:32 | 000,002,829 | —- | C] () – C:\WINDOWS\War3Unin.pif
[2011/11/03 20:41:09 | 000,120,419 | —- | C] () – C:\Documents and Settings\Matt\Desktop\squeenix.jpg
[2011/11/01 21:46:32 | 000,023,562 | —- | C] () – C:\Documents and Settings\Matt\Desktop\heaume de joute 1480.jpg
[2011/04/30 07:20:13 | 000,387,495 | —- | C] () – C:\Documents and Settings\Matt\Local Settings\Application Data\census.cache
[2011/04/30 07:19:41 | 000,178,901 | —- | C] () – C:\Documents and Settings\Matt\Local Settings\Application Data\ars.cache
[2011/04/30 07:13:03 | 000,000,036 | —- | C] () – C:\Documents and Settings\Matt\Local Settings\Application Data\housecall.guid.cache
[2011/03/07 19:26:37 | 000,000,068 | —- | C] () – C:\WINDOWS\EPSP3880.ini
[2011/02/25 02:00:00 | 000,000,020 | —- | C] () – C:\WINDOWS\System32\MLJASRJB.DLL
[2010/10/12 23:57:08 | 000,232,968 | —- | C] () – C:\WINDOWS\System32\nvdrsdb0.bin
[2010/10/12 23:57:06 | 000,232,968 | —- | C] () – C:\WINDOWS\System32\nvdrsdb1.bin
[2010/10/12 23:57:06 | 000,000,001 | —- | C] () – C:\WINDOWS\System32\nvdrssel.bin
[2010/10/12 23:56:24 | 002,195,030 | —- | C] () – C:\WINDOWS\System32\nvdata.bin
[2010/01/05 22:21:51 | 000,000,000 | —- | C] () – C:\Documents and Settings\Matt\Local Settings\Application Data\prvlcl.dat
[2009/11/25 18:55:55 | 003,502,256 | —- | C] () – C:\Documents and Settings\Matt\Local Settings\Application Data\rx_image.Cache
[2009/11/25 18:55:50 | 000,035,836 | —- | C] () – C:\Documents and Settings\Matt\Local Settings\Application Data\rx_audio.Cache
[2009/11/20 21:48:57 | 000,000,055 | —- | C] () – C:\WINDOWS\WININIT.INI
[2009/11/19 17:56:54 | 000,024,944 | —- | C] () – C:\WINDOWS\System32\drivers\GVTDrv.sys
[2009/08/14 13:55:48 | 000,073,220 | —- | C] () – C:\WINDOWS\System32\EPPICPrinterDB.dat
[2009/08/14 13:55:48 | 000,031,053 | —- | C] () – C:\WINDOWS\System32\EPPICPattern131.dat
[2009/08/14 13:55:48 | 000,029,114 | —- | C] () – C:\WINDOWS\System32\EPPICPattern1.dat
[2009/08/14 13:55:48 | 000,027,417 | —- | C] () – C:\WINDOWS\System32\EPPICPattern121.dat
[2009/08/14 13:55:48 | 000,021,021 | —- | C] () – C:\WINDOWS\System32\EPPICPattern3.dat
[2009/08/14 13:55:48 | 000,015,670 | —- | C] () – C:\WINDOWS\System32\EPPICPattern5.dat
[2009/08/14 13:55:48 | 000,013,280 | —- | C] () – C:\WINDOWS\System32\EPPICPattern2.dat
[2009/08/14 13:55:48 | 000,010,673 | —- | C] () – C:\WINDOWS\System32\EPPICPattern4.dat
[2009/08/14 13:55:48 | 000,004,943 | —- | C] () – C:\WINDOWS\System32\EPPICPattern6.dat
[2009/08/14 13:55:48 | 000,001,140 | —- | C] () – C:\WINDOWS\System32\EPPICPresetData_PT.dat
[2009/08/14 13:55:48 | 000,001,140 | —- | C] () – C:\WINDOWS\System32\EPPICPresetData_BP.dat
[2009/08/14 13:55:48 | 000,001,137 | —- | C] () – C:\WINDOWS\System32\EPPICPresetData_ES.dat
[2009/08/14 13:55:48 | 000,001,130 | —- | C] () – C:\WINDOWS\System32\EPPICPresetData_FR.dat
[2009/08/14 13:55:48 | 000,001,130 | —- | C] () – C:\WINDOWS\System32\EPPICPresetData_CF.dat
[2009/08/14 13:55:48 | 000,001,104 | —- | C] () – C:\WINDOWS\System32\EPPICPresetData_EN.dat
[2009/08/14 13:55:48 | 000,000,097 | —- | C] () – C:\WINDOWS\System32\PICSDK.ini
[2009/08/14 13:55:04 | 000,000,078 | —- | C] () – C:\WINDOWS\EPSNX200.ini
[2009/08/04 23:28:40 | 000,016,384 | —- | C] () – C:\WINDOWS\System32\FileOps.exe
[2008/06/11 14:59:14 | 000,000,318 | —- | C] () – C:\WINDOWS\PowerReg.dat
[2008/06/04 21:31:39 | 000,001,160 | —- | C] () – C:\WINDOWS\mozver.dat
[2008/06/04 21:27:28 | 000,000,000 | —- | C] () – C:\WINDOWS\nsreg.dat
[2008/06/03 11:50:36 | 000,038,170 | —- | C] () – C:\WINDOWS\DIIUnin.dat
[2008/06/02 23:03:06 | 000,043,520 | —- | C] () – C:\WINDOWS\System32\CmdLineExt03.dll
[2008/06/02 22:51:31 | 000,021,840 | —- | C] () – C:\WINDOWS\System32\SIntfNT.dll
[2008/06/02 22:51:31 | 000,017,212 | —- | C] () – C:\WINDOWS\System32\SIntf32.dll
[2008/06/02 22:51:31 | 000,012,067 | —- | C] () – C:\WINDOWS\System32\SIntf16.dll
[2008/05/31 02:41:13 | 000,000,069 | —- | C] () – C:\WINDOWS\NeroDigital.ini
[2008/05/17 22:10:39 | 000,000,013 | —- | C] () – C:\WINDOWS\System32\nvModes.dat
[2008/05/17 01:53:59 | 002,463,976 | —- | C] () – C:\WINDOWS\System32\NPSWF32.dll
[2008/05/16 18:33:16 | 000,000,348 | —- | C] () – C:\WINDOWS\lexstat.ini
[2008/05/16 18:33:00 | 000,040,960 | —- | C] () – C:\WINDOWS\System32\lxbvvs.dll
[2008/05/16 18:33:00 | 000,040,960 | —- | C] () – C:\WINDOWS\System32\INSTMON.EXE
[2008/05/16 18:32:51 | 000,000,187 | —- | C] () – C:\WINDOWS\System32\lxbvcoin.ini
[2008/05/13 23:45:55 | 000,000,426 | —- | C] () – C:\WINDOWS\brwmark.ini
[2008/05/13 23:45:55 | 000,000,210 | —- | C] () – C:\WINDOWS\Brpfx04a.ini
[2008/05/13 23:45:55 | 000,000,093 | —- | C] () – C:\WINDOWS\brpcfx.ini
[2008/05/13 23:45:55 | 000,000,065 | —- | C] () – C:\WINDOWS\System32\BD7220.dat
[2008/05/13 23:45:55 | 000,000,052 | —- | C] () – C:\WINDOWS\BRPP2KA.INI
[2008/05/12 02:11:56 | 000,062,976 | —- | C] () – C:\Documents and Settings\Matt\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/05/11 01:00:29 | 000,049,152 | R— | C] () – C:\WINDOWS\System32\ChCfg.exe
[2008/05/11 00:51:33 | 000,002,048 | –S- | C] () – C:\WINDOWS\bootstat.dat
[2008/05/11 00:48:16 | 000,021,640 | —- | C] () – C:\WINDOWS\System32\emptyregdb.dat
[2008/05/10 20:13:41 | 000,004,161 | —- | C] () – C:\WINDOWS\ODBCINST.INI
[2008/05/10 20:12:42 | 001,446,520 | —- | C] () – C:\WINDOWS\System32\FNTCACHE.DAT
[2008/01/03 22:26:00 | 000,286,720 | —- | C] () – C:\WINDOWS\System32\nvnt4cpl.dll
[2006/02/28 07:00:00 | 013,107,200 | —- | C] () – C:\WINDOWS\System32\oembios.bin
[2006/02/28 07:00:00 | 000,673,088 | —- | C] () – C:\WINDOWS\System32\mlang.dat
[2006/02/28 07:00:00 | 000,433,122 | —- | C] () – C:\WINDOWS\System32\perfh009.dat
[2006/02/28 07:00:00 | 000,272,128 | —- | C] () – C:\WINDOWS\System32\perfi009.dat
[2006/02/28 07:00:00 | 000,218,003 | —- | C] () – C:\WINDOWS\System32\dssec.dat
[2006/02/28 07:00:00 | 000,067,952 | —- | C] () – C:\WINDOWS\System32\perfc009.dat
[2006/02/28 07:00:00 | 000,046,258 | —- | C] () – C:\WINDOWS\System32\mib.bin
[2006/02/28 07:00:00 | 000,028,626 | —- | C] () – C:\WINDOWS\System32\perfd009.dat
[2006/02/28 07:00:00 | 000,004,569 | —- | C] () – C:\WINDOWS\System32\secupd.dat
[2006/02/28 07:00:00 | 000,004,461 | —- | C] () – C:\WINDOWS\System32\oembios.dat
[2006/02/28 07:00:00 | 000,001,804 | —- | C] () – C:\WINDOWS\System32\dcache.bin
[2006/02/28 07:00:00 | 000,000,741 | —- | C] () – C:\WINDOWS\System32\noise.dat
[2005/07/15 13:36:35 | 000,524,288 | —- | C] () – C:\WINDOWS\System32\DivXsm.exe
[2005/07/15 13:35:56 | 000,831,488 | —- | C] () – C:\WINDOWS\System32\libeay32.dll
[2005/07/15 13:35:56 | 000,159,744 | —- | C] () – C:\WINDOWS\System32\ssleay32.dll
[2005/07/15 13:35:24 | 003,596,288 | —- | C] () – C:\WINDOWS\System32\qt-dx331.dll
[1996/04/03 14:33:26 | 000,005,248 | —- | C] () – C:\WINDOWS\System32\giveio.sys
========== LOP Check ==========
[2011/11/16 12:39:12 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\AVG2012
[2010/10/25 08:56:12 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\avg9
[2010/10/26 09:31:42 | 000,000,000 | -H-D | M] – C:\Documents and Settings\All Users\Application Data\Common Files
[2011/03/07 19:28:38 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\EPSON
[2009/11/25 21:50:01 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\LightScribe
[2011/11/16 09:08:42 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\MFAData
[2009/08/14 13:58:26 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\UDL
[2011/09/14 05:31:27 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/09/25 08:13:52 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\AVG2012
[2011/11/12 05:17:36 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\BitTorrent
[2008/10/05 19:39:09 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\DAEMON Tools
[2011/09/01 02:50:40 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\DeepBurner
[2008/08/30 22:41:44 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\DNA
[2009/09/13 00:31:47 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\EPSON
[2011/11/08 04:35:56 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\EVVVellIBtz0yA1
[2008/10/05 19:23:00 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\fltk.org
[2011/03/10 01:56:26 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\FUJIFILM
[2011/11/08 04:36:02 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\KqqqhYYXwkUrlBt
[2009/08/14 14:00:38 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\Leadertech
[2009/02/01 15:27:17 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\OpenOffice.org
[2009/07/13 11:24:39 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\Opera
[2011/11/08 04:36:02 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\uP00uucS1ibD
[2008/11/25 21:23:51 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\Wizards of the Coast
[2011/11/08 04:35:57 | 000,000,000 | —D | M] – C:\Documents and Settings\Matt\Application Data\zdEEKK8gRZ9hXwU
[2011/11/15 18:04:02 | 000,000,350 | —- | M] () – C:\WINDOWS\Tasks\At1.job
[2011/11/15 18:04:02 | 000,000,352 | —- | M] () – C:\WINDOWS\Tasks\At2.job
[2011/11/15 18:04:02 | 000,000,350 | —- | M] () – C:\WINDOWS\Tasks\At3.job
[2011/11/16 14:36:01 | 000,000,308 | —- | M] () – C:\WINDOWS\Tasks\nlpwqyya.job
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.exe >
< MD5 for: EXPLORER.EXE >
[2008/04/13 19:12:19 | 001,033,728 | —- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 – C:\WINDOWS\explorer.exe
[2008/04/13 19:12:19 | 001,033,728 | —- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 – C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2008/04/13 19:12:19 | 001,033,728 | —- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 – C:\WINDOWS\system32\dllcache\explorer.exe
[2007/06/13 06:26:03 | 001,033,216 | —- | M] (Microsoft Corporation) MD5=7712DF0CDDE3A5AC89843E61CD5B3658 – C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2007/06/13 05:23:07 | 001,033,216 | —- | M] (Microsoft Corporation) MD5=97BD6515465659FF8F3B7BE375B2EA87 – C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
[2006/02/28 07:00:00 | 001,032,192 | —- | M] (Microsoft Corporation) MD5=A0732187050030AE399B241436565E64 – C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
< MD5 for: SVCHOST.EXE >
[2008/04/13 19:12:36 | 000,014,336 | —- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 – C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008/04/13 19:12:36 | 000,014,336 | —- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 – C:\WINDOWS\system32\dllcache\svchost.exe
[2008/04/13 19:12:36 | 000,014,336 | —- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 – C:\WINDOWS\system32\svchost.exe
[2006/02/28 07:00:00 | 000,014,336 | —- | M] (Microsoft Corporation) MD5=8F078AE4ED187AAABC0A305146DE6716 – C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: USERINIT.EXE >
[2006/02/28 07:00:00 | 000,024,576 | —- | M] (Microsoft Corporation) MD5=39B1FFB03C2296323832ACBAE50D2AFF – C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
[2008/04/13 19:12:38 | 000,026,112 | —- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 – C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008/04/13 19:12:38 | 000,026,112 | —- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 – C:\WINDOWS\system32\dllcache\userinit.exe
[2008/04/13 19:12:38 | 000,026,112 | —- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 – C:\WINDOWS\system32\userinit.exe
< MD5 for: WINLOGON.EXE >
[2006/02/28 07:00:00 | 000,502,272 | —- | M] (Microsoft Corporation) MD5=01C3346C241652F43AED8E2149881BFE – C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008/04/13 19:12:39 | 000,507,904 | —- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E – C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008/04/13 19:12:39 | 000,507,904 | —- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E – C:\WINDOWS\system32\dllcache\winlogon.exe
[2008/04/13 19:12:39 | 000,507,904 | —- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E – C:\WINDOWS\system32\winlogon.exe
< C:\Windows\assembly\tmp\U\*.* /s >
< End of report >