This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Ping.exe

1 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Recently a process called ping.exe started showing up in my task manager and is often using 50-100% of my CPU. When this happens, everything starts moving really slow. When I end the process ping.exe, sometimes another process starts using up 50-100% of the cpu or it will get better for a couple minutes until ping.exe reappears and starts the whole cycle again.

Any advice would be greatly appreciated.


Logs:


OTL logfile created on: 12/2/2011 3:34:38 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Localadmin\My Documents\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.50 Gb Total Physical Memory | 2.41 Gb Available Physical Memory | 68.82% Memory free
5.34 Gb Paging File | 4.02 Gb Available in Paging File | 75.35% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 298.04 Gb Total Space | 278.65 Gb Free Space | 93.49% Space Free | Partition Type: NTFS

Computer Name: M-BEARDSLEY-D83 | User Name: Localadmin | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Localadmin\My Documents\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
PRC - C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
PRC - C:\Program Files\Emsisoft Anti-Malware\a2service.exe (Emsi Software GmbH)
PRC - C:\Program Files\Emsisoft Anti-Malware\a2guard.exe (Emsi Software GmbH)
PRC - C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (Google Inc.)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\WINDOWS\system32\ping.exe (Microsoft Corporation)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\McAfee\VirusScan Enterprise\mcshield.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\VirusScan Enterprise\shstat.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\VirusScan Enterprise\vstskmgr.exe (McAfee, Inc.)
PRC - C:\Program Files\Canon\IJPLM\ijplmsvc.exe ()
PRC - C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE (CANON INC.)
PRC - C:\WINDOWS\system32\stacsv.exe (SigmaTel, Inc.)
PRC - C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe (Nuance Communications, Inc.)
PRC - C:\Program Files\McAfee\Common Framework\UdaterUI.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\Common Framework\naPrdMgr.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\Common Framework\FrameworkService.exe (McAfee, Inc.)
PRC - C:\Program Files\McAfee\Common Framework\Mctray.exe (McAfee, Inc.)


========== Modules (No Company Name) ==========

MOD - C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll ()
MOD - C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll ()
MOD - C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL ()
MOD - C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll ()
MOD - C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\ppgooglenaclpluginchrome.dll ()
MOD - C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\pdf.dll ()
MOD - C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\avutil-51.dll ()
MOD - C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\avformat-53.dll ()
MOD - C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\avcodec-53.dll ()
MOD - C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\gcswf32.dll ()
MOD - C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - \\?\globalroot\systemroot\system32\mswsock.dll ()
MOD - \\.\globalroot\systemroot\system32\mswsock.dll ()
MOD - C:\Program Files\Canon\IJPLM\ijplmsvc.exe ()
MOD - C:\Program Files\McAfee\Common Framework\naXML71.dll ()
MOD - C:\Program Files\McAfee\Common Framework\naisign.dll ()


========== Win32 Services (SafeList) ==========

SRV - (HidServ) – File not found
SRV - (!SASCORE) – C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
SRV - (a2AntiMalware) – C:\Program Files\Emsisoft Anti-Malware\a2service.exe (Emsi Software GmbH)
SRV - (MBAMService) – C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (McShield) – C:\Program Files\McAfee\VirusScan Enterprise\mcshield.exe (McAfee, Inc.)
SRV - (McTaskManager) – C:\Program Files\McAfee\VirusScan Enterprise\vstskmgr.exe (McAfee, Inc.)
SRV - (IJPLMSVC) – C:\Program Files\Canon\IJPLM\ijplmsvc.exe ()
SRV - (STacSV) – C:\WINDOWS\system32\stacsv.exe (SigmaTel, Inc.)
SRV - (McAfeeFramework) – C:\Program Files\McAfee\Common Framework\FrameworkService.exe (McAfee, Inc.)


========== Driver Services (SafeList) ==========

DRV - (NPF) WinPcap Packet Driver (NPF) – C:\WINDOWS\system32\drivers\npf.sys (CACE Technologies, Inc.)
DRV - (a2injectiondriver) – C:\Program Files\Emsisoft Anti-Malware\a2dix86.sys (Emsi Software GmbH)
DRV - (a2acc) – C:\Program Files\Emsisoft Anti-Malware\a2accx86.sys (Emsi Software GmbH)
DRV - (MBAMProtector) – C:\WINDOWS\system32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (SASDIFSV) – C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (A2DDA) – C:\Program Files\Emsisoft Anti-Malware\a2ddax86.sys (Emsi Software GmbH)
DRV - (a2util) – C:\Program Files\Emsisoft Anti-Malware\a2util32.sys (Emsi Software GmbH)
DRV - (mferkdk) – C:\Program Files\McAfee\VirusScan Enterprise\mferkdk.sys (McAfee, Inc.)
DRV - (mfehidk) – C:\WINDOWS\system32\drivers\mfehidk.sys (McAfee, Inc.)
DRV - (mfeavfk) – C:\WINDOWS\system32\drivers\mfeavfk.sys (McAfee, Inc.)
DRV - (mfeapfk) – C:\WINDOWS\system32\drivers\mfeapfk.sys (McAfee, Inc.)
DRV - (mfetdik) – C:\WINDOWS\system32\drivers\mfetdik.sys (McAfee, Inc.)
DRV - (mfebopk) – C:\WINDOWS\system32\drivers\mfebopk.sys (McAfee, Inc.)
DRV - (NETw4x32) Intel® – C:\WINDOWS\system32\drivers\NETw4x32.sys (Intel Corporation)
DRV - (guardian2) – C:\WINDOWS\system32\drivers\oz776.sys (O2Micro)
DRV - (STHDA) – C:\WINDOWS\system32\drivers\sthda.sys (SigmaTel, Inc.)
DRV - (b57w2k) – C:\WINDOWS\system32\drivers\b57xp32.sys (Broadcom Corporation)
DRV - (HSF_DPV) – C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)
DRV - (HSFHWAZL) – C:\WINDOWS\system32\drivers\HSFHWAZL.sys (Conexant Systems, Inc.)
DRV - (winachsf) – C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.unh.edu/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/11/11 13:24:33 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/11/04 16:27:24 | 000,000,000 | —D | M]

[2011/11/02 15:43:53 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Localadmin\Application Data\Mozilla\Extensions
[2011/11/02 15:43:54 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Localadmin\Application Data\Mozilla\Firefox\Profiles\j3mctnv8.default\extensions
[2011/11/02 15:43:49 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/11/11 13:24:32 | 000,134,104 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/11/04 16:27:11 | 000,476,904 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/09/28 19:26:50 | 000,002,252 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/11/11 13:24:32 | 000,002,040 | —- | M] () – C:\Program Files\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{googl
e:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chro
me&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client
=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U29 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\pdf.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin

Hosts file not found
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll (McAfee, Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [emsisoft anti-malware] c:\program files\emsisoft anti-malware\a2guard.exe (Emsi Software GmbH)
O4 - HKLM..\Run: [ISUSPM Startup] c:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup File not found
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [McAfeeUpdaterUI] C:\Program Files\McAfee\Common Framework\UdaterUI.exe (McAfee, Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [ShStatEXE] C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE (McAfee, Inc.)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe ()
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = [removed] [removed]
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0C4D4585-8C45-462A-B6EE-C2228C23BBD3}: DhcpNameServer = [removed] [removed]
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4ABB1887-333A-4B3D-AF31-28AECBEA3CB9}: DhcpNameServer = [removed] [removed]
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/08/02 09:44:56 | 000,000,000 | —- | M] () - C:\AUTOEXEC.BAT – [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: HidServ - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2011/11/20 20:29:19 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Application Data\Malwarebytes
[2011/11/20 20:29:13 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/11/20 20:29:11 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/11/20 20:29:07 | 000,022,216 | —- | C] (Malwarebytes Corporation) – C:\WINDOWS\System32\drivers\mbam.sys
[2011/11/20 20:29:06 | 000,000,000 | —D | C] – C:\Program Files\Malwarebytes' Anti-Malware
[2011/11/20 20:23:46 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Application Data\SUPERAntiSpyware.com
[2011/11/20 20:23:05 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\!SASCORE
[2011/11/20 20:23:04 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\SUPERAntiSpyware
[2011/11/20 20:22:59 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2011/11/20 20:22:59 | 000,000,000 | —D | C] – C:\Program Files\SUPERAntiSpyware
[2011/11/20 15:09:36 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Start Menu\Programs\Google Chrome
[2011/11/20 15:08:39 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Local Settings\Application Data\Google
[2011/11/20 15:08:18 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Local Settings\Application Data\Deployment
[2011/11/20 14:02:06 | 000,050,704 | —- | C] (CACE Technologies, Inc.) – C:\WINDOWS\System32\drivers\npf.sys
[2011/11/20 14:02:03 | 000,281,104 | —- | C] (CACE Technologies, Inc.) – C:\WINDOWS\System32\wpcap.dll
[2011/11/20 14:02:01 | 000,100,880 | —- | C] (CACE Technologies, Inc.) – C:\WINDOWS\System32\Packet.dll
[2011/11/20 00:02:05 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Emsisoft Anti-Malware
[2011/11/20 00:01:46 | 000,000,000 | —D | C] – C:\Program Files\Emsisoft Anti-Malware
[2011/11/20 00:01:46 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\My Documents\Anti-Malware
[2011/11/19 23:11:53 | 000,000,000 | —D | C] – C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2011/11/19 23:11:04 | 000,000,000 | —D | C] – C:\Documents and Settings\NetworkService\Application Data\Sun
[2011/11/08 22:37:01 | 000,000,000 | —D | C] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple
[2011/11/08 18:50:32 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Local Settings\Application Data\Scansoft
[2011/11/08 17:30:37 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\My Documents\Strategic Management
[2011/11/08 17:18:22 | 000,000,000 | —D | C] – C:\Program Files\Microsoft CAPICOM 2.1.0.2
[2011/11/08 17:18:17 | 000,000,000 | —D | C] – C:\Program Files\MSXML 4.0
[2011/11/08 14:24:38 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\CanonIJPLM
[2011/11/08 14:24:18 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Canon MP210 series User Registration
[2011/11/08 14:22:28 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Application Data\ScanSoft
[2011/11/08 14:22:22 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\ScanSoft OmniPage SE 4
[2011/11/08 14:22:21 | 000,000,000 | —D | C] – C:\Program Files\Common Files\ScanSoft Shared
[2011/11/08 14:22:21 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\ScanSoft
[2011/11/08 14:21:52 | 000,000,000 | —D | C] – C:\Program Files\ScanSoft
[2011/11/08 14:19:22 | 000,000,000 | —D | C] – C:\Program Files\Common Files\CANON
[2011/11/08 14:16:14 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities
[2011/11/08 14:15:31 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Canon MP210 series Manual
[2011/11/08 14:15:21 | 000,000,000 | -H-D | C] – C:\WINDOWS\System32\CanonIJ Uninstaller Information
[2011/11/08 14:15:21 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Canon MP210 series
[2011/11/08 14:15:09 | 000,000,000 | -H-D | C] – C:\Program Files\CanonBJ
[2011/11/08 14:14:35 | 000,000,000 | —D | C] – C:\Program Files\Canon
[2011/11/08 14:12:37 | 000,000,000 | -H-D | C] – C:\Documents and Settings\All Users\Application Data\CanonBJ
[2011/11/08 14:12:33 | 000,215,040 | —- | C] (CANON INC.) – C:\WINDOWS\System32\CNMLM8S.DLL
[2011/11/08 14:12:10 | 000,025,856 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\usbprint.sys
[2011/11/08 14:11:33 | 000,015,104 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\usbscan.sys
[2011/11/08 14:10:21 | 000,032,128 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\usbccgp.sys
[2011/11/04 16:27:38 | 000,000,000 | —D | C] – C:\WINDOWS\Sun
[2011/11/04 16:27:33 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Sun
[2011/11/04 16:27:32 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Java
[2011/11/04 16:27:24 | 000,073,728 | —- | C] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javacpl.cpl
[2011/11/04 16:27:23 | 000,472,808 | —- | C] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\deployJava1.dll
[2011/11/04 16:27:23 | 000,157,472 | —- | C] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javaws.exe
[2011/11/04 16:27:23 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javaw.exe
[2011/11/04 16:27:23 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\java.exe
[2011/11/04 16:27:08 | 000,000,000 | —D | C] – C:\Program Files\Java
[2011/11/04 16:26:50 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Application Data\Sun
[2011/11/04 10:16:01 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\My Documents\Updater5
[2011/11/03 18:00:20 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Local Settings\Application Data\Apple Computer
[2011/11/03 18:00:19 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Application Data\Apple Computer
[2011/11/03 18:00:14 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
[2011/11/03 18:00:12 | 000,107,368 | —- | C] (GEAR Software Inc.) – C:\WINDOWS\System32\GEARAspi.dll
[2011/11/03 17:58:37 | 000,000,000 | —D | C] – C:\Program Files\iPod
[2011/11/03 17:58:35 | 000,000,000 | —D | C] – C:\Program Files\iTunes
[2011/11/03 17:58:35 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Apple Computer
[2011/11/03 17:58:35 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/11/03 17:58:21 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Local Settings\Application Data\Apple
[2011/11/03 17:58:16 | 000,000,000 | —D | C] – C:\Program Files\Apple Software Update
[2011/11/03 17:58:12 | 000,000,000 | —D | C] – C:\Documents and Settings\LocalService\Application Data\Apple Computer
[2011/11/03 17:58:07 | 004,517,664 | —- | C] (Apple, Inc.) – C:\WINDOWS\System32\usbaaplrc.dll
[2011/11/03 17:57:38 | 000,000,000 | —D | C] – C:\Program Files\Bonjour
[2011/11/03 17:57:15 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Apple
[2011/11/03 17:57:15 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Apple
[2011/11/03 17:53:16 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\My Documents\Downloads
[2011/11/03 16:23:01 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Application Data\Windows Search
[2011/11/03 13:36:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Application Data\Macromedia
[2011/11/03 13:36:46 | 000,414,368 | —- | C] (Adobe Systems Incorporated) – C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/11/03 13:34:39 | 000,012,160 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\mouhid.sys
[2011/11/03 13:34:33 | 000,010,368 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\hidusb.sys
[2011/11/03 10:44:19 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office
[2011/11/03 10:43:45 | 000,000,000 | —D | C] – C:\Program Files\Microsoft Works
[2011/11/03 10:43:26 | 000,000,000 | —D | C] – C:\Program Files\Microsoft Visual Studio
[2011/11/03 10:43:25 | 000,000,000 | —D | C] – C:\Program Files\Common Files\DESIGNER
[2011/11/03 10:40:01 | 000,000,000 | —D | C] – C:\Program Files\Microsoft Visual Studio 8
[2011/11/03 10:39:28 | 000,000,000 | —D | C] – C:\WINDOWS\SHELLNEW
[2011/11/03 10:39:10 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Local Settings\Application Data\Microsoft Help
[2011/11/03 10:39:05 | 000,000,000 | —D | C] – C:\Program Files\Microsoft Office
[2011/11/03 10:39:04 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Microsoft Help
[2011/11/03 10:38:29 | 000,000,000 | RH-D | C] – C:\MSOCache
[2011/11/03 08:45:45 | 000,000,000 | —D | C] – C:\WINDOWS\Prefetch
[2011/11/03 08:35:32 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Silverlight
[2011/11/03 08:35:03 | 000,000,000 | —D | C] – C:\Program Files\Microsoft Silverlight
[2011/11/03 08:23:49 | 000,000,000 | —D | C] – C:\WINDOWS\System32\WindowsPowerShell
[2011/11/03 08:23:48 | 000,000,000 | —D | C] – C:\WINDOWS\System32\winrm
[2011/11/03 08:23:43 | 000,000,000 | -H-D | C] – C:\WINDOWS\$968930Uinstall_KB968930$
[2011/11/03 08:14:24 | 000,000,000 | —D | C] – C:\WINDOWS\ie7updates
[2011/11/03 08:14:03 | 000,052,224 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2011/11/03 08:14:02 | 006,076,416 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\ieframe.dll
[2011/11/03 08:14:02 | 002,452,872 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\ieapfltr.dat
[2011/11/03 08:14:02 | 000,991,232 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\ieframe.dll.mui
[2011/11/03 08:14:02 | 000,468,480 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\msfeeds.dll
[2011/11/03 08:14:02 | 000,380,928 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\ieapfltr.dll
[2011/11/03 08:14:02 | 000,268,288 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\iertutil.dll
[2011/11/03 08:14:02 | 000,063,488 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\icardie.dll
[2011/11/03 08:14:02 | 000,013,824 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\ieudinit.exe
[2011/11/03 08:13:52 | 000,000,000 | —D | C] – C:\WINDOWS\WBEM
[2011/11/03 08:12:45 | 000,000,000 | -H-D | C] – C:\WINDOWS\ie7
[2011/11/03 08:12:35 | 000,000,000 | -H-D | C] – C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
[2011/11/03 08:12:13 | 000,000,000 | -H-D | C] – C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
[2011/11/02 15:42:18 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Local Settings\Application Data\Mozilla
[2011/11/02 15:42:18 | 000,000,000 | —D | C] – C:\Documents and Settings\Localadmin\Application Data\Mozilla
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/12/02 15:13:00 | 000,000,998 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2237382956-1305487552-4146120090-500UA.job
[2011/12/02 15:13:00 | 000,000,946 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2237382956-1305487552-4146120090-500Core.job
[2011/12/02 13:36:11 | 000,506,208 | —- | M] () – C:\WINDOWS\System32\perfh009.dat
[2011/12/02 13:36:11 | 000,088,066 | —- | M] () – C:\WINDOWS\System32\perfc009.dat
[2011/12/02 13:32:43 | 000,001,158 | —- | M] () – C:\WINDOWS\System32\wpa.dbl
[2011/12/02 13:32:09 | 000,037,192 | —- | M] () – C:\WINDOWS\System32\nvModes.001
[2011/12/02 13:31:53 | 000,002,048 | –S- | M] () – C:\WINDOWS\bootstat.dat
[2011/12/02 00:11:47 | 000,000,664 | —- | M] () – C:\WINDOWS\System32\d3d9caps.dat
[2011/11/29 22:37:01 | 000,000,284 | —- | M] () – C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/11/27 16:23:29 | 000,592,063 | —- | M] () – C:\Documents and Settings\Localadmin\Desktop\lor_eform_wsbe.pdf
[2011/11/27 14:33:36 | 000,037,192 | —- | M] () – C:\WINDOWS\System32\nvModes.dat
[2011/11/20 20:29:13 | 000,000,789 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/11/20 20:23:05 | 000,001,683 | —- | M] () – C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/11/20 15:35:25 | 000,002,515 | —- | M] () – C:\Documents and Settings\Localadmin\Desktop\Microsoft Office Word 2007.lnk
[2011/11/20 15:09:42 | 000,002,328 | —- | M] () – C:\Documents and Settings\Localadmin\Desktop\Google Chrome.lnk
[2011/11/20 15:09:42 | 000,002,306 | —- | M] () – C:\Documents and Settings\Localadmin\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/11/20 14:02:06 | 000,281,104 | —- | M] (CACE Technologies, Inc.) – C:\WINDOWS\System32\wpcap.dll
[2011/11/20 14:02:06 | 000,050,704 | —- | M] (CACE Technologies, Inc.) – C:\WINDOWS\System32\drivers\npf.sys
[2011/11/20 14:02:03 | 000,100,880 | —- | M] (CACE Technologies, Inc.) – C:\WINDOWS\System32\Packet.dll
[2011/11/20 00:02:05 | 000,000,789 | —- | M] () – C:\Documents and Settings\Localadmin\Application Data\Microsoft\Internet Explorer\Quick Launch\Emsisoft Anti-Malware.lnk
[2011/11/20 00:02:05 | 000,000,771 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Emsisoft Anti-Malware.lnk
[2011/11/19 14:11:09 | 000,002,473 | —- | M] () – C:\Documents and Settings\Localadmin\Desktop\Microsoft Office Excel 2007.lnk
[2011/11/18 14:39:05 | 000,414,368 | —- | M] (Adobe Systems Incorporated) – C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/11/08 17:19:41 | 000,001,374 | —- | M] () – C:\WINDOWS\imsins.BAK
[2011/11/08 14:24:18 | 000,001,690 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Canon MP210 series User Registration.LNK
[2011/11/08 14:22:31 | 000,000,412 | —- | M] () – C:\WINDOWS\MAXLINK.INI
[2011/11/08 14:17:30 | 000,001,649 | —- | M] () – C:\Documents and Settings\All Users\Desktop\My Printer.lnk
[2011/11/08 14:17:17 | 000,001,685 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Canon Solution Menu.lnk
[2011/11/08 14:17:06 | 000,001,739 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Easy-PhotoPrint EX.lnk
[2011/11/08 14:16:14 | 000,001,741 | —- | M] () – C:\Documents and Settings\All Users\Desktop\MP Navigator EX 1.0.lnk
[2011/11/08 14:15:31 | 000,001,919 | —- | M] () – C:\Documents and Settings\All Users\Desktop\MP210 series On-screen Manual.lnk
[2011/11/06 16:27:52 | 000,267,800 | —- | M] () – C:\WINDOWS\System32\FNTCACHE.DAT
[2011/11/04 16:27:10 | 000,157,472 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javaws.exe
[2011/11/04 16:27:10 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javaw.exe
[2011/11/04 16:27:10 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\java.exe
[2011/11/04 16:27:10 | 000,073,728 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\javacpl.cpl
[2011/11/04 16:27:09 | 000,472,808 | —- | M] (Sun Microsystems, Inc.) – C:\WINDOWS\System32\deployJava1.dll
[2011/11/03 18:02:55 | 000,056,532 | -H– | M] () – C:\WINDOWS\System32\mlfcache.dat
[2011/11/03 18:00:14 | 000,001,547 | —- | M] () – C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2011/11/03 08:21:22 | 000,000,820 | —- | M] () – C:\Documents and Settings\Localadmin\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/11/02 15:43:50 | 000,000,747 | —- | M] () – C:\Documents and Settings\Localadmin\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/11/02 15:43:49 | 000,000,729 | —- | M] () – C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2011/11/02 15:42:22 | 000,000,000 | —- | M] () – C:\WINDOWS\nsreg.dat
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/11/27 16:18:34 | 000,592,063 | —- | C] () – C:\Documents and Settings\Localadmin\Desktop\lor_eform_wsbe.pdf
[2011/11/20 20:29:13 | 000,000,789 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/11/20 20:23:05 | 000,001,683 | —- | C] () – C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/11/20 15:09:42 | 000,002,328 | —- | C] () – C:\Documents and Settings\Localadmin\Desktop\Google Chrome.lnk
[2011/11/20 15:09:42 | 000,002,306 | —- | C] () – C:\Documents and Settings\Localadmin\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/11/20 15:08:44 | 000,000,998 | —- | C] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2237382956-1305487552-4146120090-500UA.job
[2011/11/20 15:08:43 | 000,000,946 | —- | C] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2237382956-1305487552-4146120090-500Core.job
[2011/11/20 00:02:05 | 000,000,789 | —- | C] () – C:\Documents and Settings\Localadmin\Application Data\Microsoft\Internet Explorer\Quick Launch\Emsisoft Anti-Malware.lnk
[2011/11/20 00:02:05 | 000,000,771 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Emsisoft Anti-Malware.lnk
[2011/11/19 23:11:04 | 000,000,664 | —- | C] () – C:\WINDOWS\System32\d3d9caps.dat
[2011/11/08 14:24:18 | 000,001,690 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Canon MP210 series User Registration.LNK
[2011/11/08 14:22:31 | 000,000,412 | —- | C] () – C:\WINDOWS\MAXLINK.INI
[2011/11/08 14:17:30 | 000,001,649 | —- | C] () – C:\Documents and Settings\All Users\Desktop\My Printer.lnk
[2011/11/08 14:17:17 | 000,001,685 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Canon Solution Menu.lnk
[2011/11/08 14:17:06 | 000,001,739 | —- | C] () – C:\Documents and Settings\All Users\Desktop\Easy-PhotoPrint EX.lnk
[2011/11/08 14:16:14 | 000,001,741 | —- | C] () – C:\Documents and Settings\All Users\Desktop\MP Navigator EX 1.0.lnk
[2011/11/08 14:15:31 | 000,001,919 | —- | C] () – C:\Documents and Settings\All Users\Desktop\MP210 series On-screen Manual.lnk
[2011/11/03 18:02:55 | 000,056,532 | -H– | C] () – C:\WINDOWS\System32\mlfcache.dat
[2011/11/03 18:00:14 | 000,001,547 | —- | C] () – C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2011/11/03 17:58:22 | 000,000,284 | —- | C] () – C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/11/03 17:58:19 | 000,001,830 | —- | C] () – C:\Documents and Settings\All Users\Start Menu\Programs\Apple Software Update.lnk
[2011/11/03 10:44:20 | 000,002,515 | —- | C] () – C:\Documents and Settings\Localadmin\Desktop\Microsoft Office Word 2007.lnk
[2011/11/03 10:44:19 | 000,002,473 | —- | C] () – C:\Documents and Settings\Localadmin\Desktop\Microsoft Office Excel 2007.lnk
[2011/11/03 08:10:11 | 000,225,262 | —- | C] () – C:\WINDOWS\System32\dllcache\msimain.sdb
[2011/11/02 15:43:49 | 000,000,747 | —- | C] () – C:\Documents and Settings\Localadmin\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/11/02 15:43:49 | 000,000,735 | —- | C] () – C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnk
[2011/11/02 15:42:22 | 000,000,000 | —- | C] () – C:\WINDOWS\nsreg.dat
[2008/12/11 13:37:45 | 000,000,280 | —- | C] () – C:\WINDOWS\System32\epoPGPsdk.dll.sig
[2008/12/11 13:37:22 | 000,000,175 | —- | C] () – C:\WINDOWS\wininit.ini
[2008/05/26 20:59:42 | 000,018,904 | —- | C] () – C:\WINDOWS\System32\structuredqueryschematrivial.bin
[2008/05/26 20:59:40 | 000,106,605 | —- | C] () – C:\WINDOWS\System32\structuredqueryschema.bin
[2007/09/27 09:51:02 | 000,020,698 | —- | C] () – C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 09:48:48 | 000,030,628 | —- | C] () – C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 09:48:28 | 000,031,698 | —- | C] () – C:\WINDOWS\System32\gthrctr.ini
[2007/08/02 13:04:34 | 000,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2007/08/02 10:11:04 | 000,037,192 | —- | C] () – C:\WINDOWS\System32\nvModes.dat
[2007/08/02 09:47:37 | 000,002,048 | –S- | C] () – C:\WINDOWS\bootstat.dat
[2007/08/02 09:42:07 | 000,021,640 | —- | C] () – C:\WINDOWS\System32\emptyregdb.dat
[2007/08/02 04:35:37 | 000,004,161 | —- | C] () – C:\WINDOWS\ODBCINST.INI
[2007/08/02 04:34:30 | 000,267,800 | —- | C] () – C:\WINDOWS\System32\FNTCACHE.DAT
[2007/08/02 03:47:42 | 001,703,936 | —- | C] () – C:\WINDOWS\System32\nvwdmcpl.dll
[2007/08/02 03:47:42 | 001,626,112 | —- | C] () – C:\WINDOWS\System32\nwiz.exe
[2007/08/02 03:47:42 | 001,019,904 | —- | C] () – C:\WINDOWS\System32\nvwimg.dll
[2007/08/02 03:47:41 | 001,474,560 | —- | C] () – C:\WINDOWS\System32\nview.dll
[2007/08/02 03:47:41 | 001,339,392 | —- | C] () – C:\WINDOWS\System32\nvdspsch.exe
[2007/08/02 03:47:41 | 001,018,748 | —- | C] () – C:\WINDOWS\System32\nvucode.bin
[2007/08/02 03:47:41 | 000,466,944 | —- | C] () – C:\WINDOWS\System32\nvshell.dll
[2007/08/02 03:47:40 | 000,442,368 | —- | C] () – C:\WINDOWS\System32\nvappbar.exe
[2007/08/02 03:47:40 | 000,425,984 | —- | C] () – C:\WINDOWS\System32\keystone.exe
[2005/11/18 13:47:26 | 000,000,000 | —- | C] () – C:\WINDOWS\System32\px.ini
[2005/03/21 18:48:05 | 013,107,200 | —- | C] () – C:\WINDOWS\System32\oembios.bin
[2005/03/21 18:48:05 | 000,004,627 | —- | C] () – C:\WINDOWS\System32\oembios.dat
[2004/08/04 05:00:00 | 000,673,088 | —- | C] () – C:\WINDOWS\System32\mlang.dat
[2004/08/04 05:00:00 | 000,506,208 | —- | C] () – C:\WINDOWS\System32\perfh009.dat
[2004/08/04 05:00:00 | 000,272,128 | —- | C] () – C:\WINDOWS\System32\perfi009.dat
[2004/08/04 05:00:00 | 000,218,003 | —- | C] () – C:\WINDOWS\System32\dssec.dat
[2004/08/04 05:00:00 | 000,088,066 | —- | C] () – C:\WINDOWS\System32\perfc009.dat
[2004/08/04 05:00:00 | 000,046,258 | —- | C] () – C:\WINDOWS\System32\mib.bin
[2004/08/04 05:00:00 | 000,028,626 | —- | C] () – C:\WINDOWS\System32\perfd009.dat
[2004/08/04 05:00:00 | 000,004,569 | —- | C] () – C:\WINDOWS\System32\secupd.dat
[2004/08/04 05:00:00 | 000,001,804 | —- | C] () – C:\WINDOWS\System32\dcache.bin
[2004/08/04 05:00:00 | 000,000,741 | —- | C] () – C:\WINDOWS\System32\noise.dat

========== LOP Check ==========

[2011/11/20 20:23:05 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\!SASCORE
[2011/11/08 14:12:37 | 000,000,000 | -H-D | M] – C:\Documents and Settings\All Users\Application Data\CanonBJ
[2011/11/08 14:24:38 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\CanonIJPLM
[2011/11/08 14:22:25 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\ScanSoft
[2011/11/03 18:00:10 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/11/08 14:22:28 | 000,000,000 | —D | M] – C:\Documents and Settings\Localadmin\Application Data\ScanSoft
[2011/11/02 14:13:14 | 000,000,000 | —D | M] – C:\Documents and Settings\Localadmin\Application Data\Windows Desktop Search
[2011/11/03 16:23:01 | 000,000,000 | —D | M] – C:\Documents and Settings\Localadmin\Application Data\Windows Search

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2007/08/02 09:44:56 | 000,000,000 | —- | M] () – C:\AUTOEXEC.BAT
[2008/12/11 13:35:05 | 000,000,234 | RHS- | M] () – C:\boot.ini
[2007/08/02 09:44:56 | 000,000,000 | —- | M] () – C:\CONFIG.SYS
[2007/08/02 09:44:56 | 000,000,000 | RHS- | M] () – C:\IO.SYS
[2007/08/02 09:44:56 | 000,000,000 | RHS- | M] () – C:\MSDOS.SYS
[2004/08/04 05:00:00 | 000,047,564 | RHS- | M] () – C:\NTDETECT.COM
[2011/11/02 13:16:30 | 000,250,048 | RHS- | M] () – C:\ntldr
[2011/12/02 13:31:48 | 2145,386,496 | -HS- | M] () – C:\pagefile.sys

< %systemroot%\Fonts\*.com >
[2006/04/18 14:39:28 | 000,026,040 | —- | M] () – C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2006/06/29 13:53:56 | 000,026,489 | —- | M] () – C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006/04/18 14:39:28 | 000,029,779 | —- | M] () – C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006/06/29 13:58:52 | 000,030,808 | —- | M] () – C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont

< %systemroot%\Fonts\*.dll >

< %systemroot%\Fonts\LS\x00\x00\x00\x00
Your post has been Moved, Closed or Edited for one of the following reasons: 1.) You posted multiple topics and only one is required 2.) You are spamming links to other places without approval 3.) Abusive language or other problems in your text 4.) Your topic is too old (20 days or more) and no replies from you after a volunteer tried to help you This is a family oriented forum to help those that need help. ==============================

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI