kekuaaokalani1
Topic Starter
Hi,
I have been having issues that I believe started when I did an Adobe update several weeks ago. Not definite, but that's all I can recall doing before this mess started.
I have tried using Super Anti-Spyware and Malware Bytes, both of which have not resolved anything. I tried restoring with no luck. And my Windows Auto-Update keeps giving me error messages of not completed & then it reverts back.
When this initially happened, my files seemed to disappear and program folders in my Start Menu were empty. I tried "self-diagnosing" and restored some of my programs but still have numerous empty folders scattered about my laptop. My laptop is extremely slow now.
When I try to run Internet Explorer or Mozilla Firefox, I get an error message stating it has stopped working. I figured out how to install Safari and can access the internet. However, I am plagued with webpage re-directs.
Please help! and Thank You
OTL.Txt log:
OTL logfile created on: 1/28/2012 1:40:08 AM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\skiesthelimit\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
893.31 Mb Total Physical Memory | 245.04 Mb Available Physical Memory | 27.43% Memory free
2.77 Gb Paging File | 0.60 Gb Available in Paging File | 21.64% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 147.58 Gb Total Space | 18.02 Gb Free Space | 12.21% Space Free | Partition Type: NTFS
Computer Name: SKIES-PC | User Name: skiesthelimit | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Program Files\Safari\Safari.exe (Apple Inc.)
PRC - C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe (Apple Inc.)
PRC - C:\Users\skiesthelimit\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Adobe\Acrobat 10.0\Acrobat\acrotray.exe (Adobe Systems Inc.)
PRC - C:\Program Files\SUPERAntiSpyware\SASCore.exe (SUPERAntiSpyware.com)
PRC - C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe (Affinegy, Inc.)
PRC - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Synaptics\SynTP\SynToshiba.exe (Synaptics Incorporated)
PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
PRC - C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
PRC - C:\Program Files\Toshiba\SmoothView\SmoothView.exe (TOSHIBA Corporation)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
PRC - c:\Toshiba\IVP\swupdate\swupdtmr.exe ()
PRC - C:\Toshiba\IVP\ISM\pinger.exe ()
PRC - C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\Toshiba\Utilities\KeNotify.exe ()
PRC - C:\Windows\System32\agrsmsvc.exe (Agere Systems)
PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
PRC - C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
========== Modules (No Company Name) ==========
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.HydraVision.Runtime\2.0.3693.42552__90ba9c70f846762e\CLI.Caste.HydraVision.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.HydraVision.Shared\2.0.3693.42552__90ba9c70f846762e\CLI.Caste.HydraVision.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.HydraVision.Wizard\2.0.3693.42556__90ba9c70f846762e\CLI.Caste.HydraVision.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.HydraVision.Dashboard\2.0.3693.42552__90ba9c70f846762e\CLI.Caste.HydraVision.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard\2.0.3693.42456__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime\2.0.3693.42442__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Wizard\2.0.3693.42460__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Wizard\2.0.3693.42522__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Wizard\2.0.3693.42461__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Runtime\2.0.3693.42451__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Runtime\2.0.3693.42517__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Runtime\2.0.3693.42499__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Runtime\2.0.3693.42486__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Wizard\2.0.3693.42537__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard\2.0.3693.42450__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Welcome.Graphics.Dashboard\2.0.3693.42537__90ba9c70f846762e\CLI.Aspect.Welcome.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Dashboard\2.0.3693.42504__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Wizard\2.0.3693.42504__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Runtime\2.0.3693.42503__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime\2.0.3693.42536__90ba9c70f846762e\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Dashboard\2.0.3693.42488__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Wizard\2.0.3693.42512__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Runtime\2.0.3693.42487__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Dashboard\2.0.3693.42452__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Dashboard\2.0.3693.42462__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Dashboard\2.0.3693.42462__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Dashboard\2.0.3693.42496__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Runtime\2.0.3693.42496__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Dashboard\2.0.3693.42518__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Dashboard\2.0.3693.42498__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Wizard\2.0.3693.42466__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Runtime\2.0.3693.42466__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Runtime\2.0.3693.42497__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Runtime\2.0.3693.42486__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Dashboard\2.0.3693.42487__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Runtime\2.0.3693.42487__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.Hotkeys.Shared\2.0.3309.28617__90ba9c70f846762e\AEM.Plugin.Hotkeys.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Actions.CCAA.Shared\2.0.3309.28608__90ba9c70f846762e\AEM.Actions.CCAA.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.WinMessages.Shared\2.0.3309.28629__90ba9c70f846762e\AEM.Plugin.WinMessages.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.REG.Shared\2.0.3309.28645__90ba9c70f846762e\AEM.Plugin.REG.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.GD.Shared\2.0.3309.28647__90ba9c70f846762e\AEM.Plugin.GD.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.EEU.Shared\2.0.3309.28627__90ba9c70f846762e\AEM.Plugin.EEU.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.DPPE.Shared\2.0.3309.28647__90ba9c70f846762e\AEM.Plugin.DPPE.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\atixclib\1.0.0.0__90ba9c70f846762e\atixclib.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\LOG.Foundation\2.0.3309.28601__90ba9c70f846762e\LOG.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\NEWAEM.Foundation\2.0.3309.28603__90ba9c70f846762e\NEWAEM.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.OS.I0602\2.0.3309.28630__90ba9c70f846762e\DEM.OS.I0602.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\MOM.Foundation\2.0.3309.28626__90ba9c70f846762e\MOM.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.OS\2.0.3309.28645__90ba9c70f846762e\DEM.OS.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.Graphics.I0706\2.0.2743.23304__90ba9c70f846762e\DEM.Graphics.I0706.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Foundation\2.0.3309.28604__90ba9c70f846762e\CLI.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Shared\2.0.3309.28618__90ba9c70f846762e\CLI.Caste.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.Graphics.I0601\2.0.2573.17685__90ba9c70f846762e\DEM.Graphics.I0601.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Foundation.XManifest\2.0.3309.28669__90ba9c70f846762e\CLI.Foundation.XManifest.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Wizard.Shared\2.0.3309.28620__90ba9c70f846762e\CLI.Component.Wizard.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared\2.0.3309.28617__90ba9c70f846762e\CLI.Component.Dashboard.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Client.Shared\2.0.3309.28611__90ba9c70f846762e\CLI.Component.Client.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.Graphics\2.0.3309.28630__90ba9c70f846762e\DEM.Graphics.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.Foundation\2.0.2573.17684__90ba9c70f846762e\DEM.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime.Shared\2.0.3309.28617__90ba9c70f846762e\CLI.Component.Runtime.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard.Shared\2.0.3309.28631__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard.Shared\2.0.3309.28630__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Shared\2.0.3309.28636__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Shared\2.0.3309.28644__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.PowerPlayDPPE.Graphics.Shared\2.0.3309.28644__90ba9c70f846762e\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Shared\2.0.3309.28636__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Shared\2.0.3309.28634__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Shared\2.0.3309.28624__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Shared\2.0.3309.28632__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Shared\2.0.3309.28635__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Shared\2.0.3309.28630__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Shared\2.0.3309.28634__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Shared\2.0.3309.28634__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Shared\2.0.3309.28636__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Shared\2.0.3309.28630__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CustomFormats.Graphics.Shared\2.0.3309.28627__90ba9c70f846762e\CLI.Aspect.CustomFormats.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ACE.Graphics.DisplaysManager.Shared\2.0.2573.17685__90ba9c70f846762e\ACE.Graphics.DisplaysManager.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\APM.Foundation\2.0.3309.28626__90ba9c70f846762e\APM.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Server.Shared\2.0.3309.28617__90ba9c70f846762e\AEM.Server.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ResourceManagement.Foundation.Implementation\2.0.3693.42564__90ba9c70f846762e\ResourceManagement.Foundation.Implementation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.Source.Kit.Server\2.0.3693.42545__90ba9c70f846762e\AEM.Plugin.Source.Kit.Server.dll ()
MOD - C:\Windows\assembly\GAC\Interop.WBOCXLib\1.0.0.0__90ba9c70f846762e\Interop.WBOCXLib.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime.Extension.EEU\2.0.3693.42437__90ba9c70f846762e\CLI.Component.Runtime.Extension.EEU.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\MOM.Implementation\2.0.3693.42531__90ba9c70f846762e\MOM.Implementation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\LOG.Foundation.Private\2.0.3309.28614__90ba9c70f846762e\LOG.Foundation.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ResourceManagement.Foundation.Private\2.0.3309.28612__90ba9c70f846762e\ResourceManagement.Foundation.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\LOG.Foundation.Implementation.Private\2.0.3309.28626__90ba9c70f846762e\LOG.Foundation.Implementation.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\LOG.Foundation.Implementation\2.0.3693.42530__90ba9c70f846762e\LOG.Foundation.Implementation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Foundation.Private\2.0.3309.28608__90ba9c70f846762e\CLI.Foundation.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Wizard.Shared.Private\2.0.3309.28627__90ba9c70f846762e\CLI.Component.Wizard.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Systemtray\2.0.3693.42525__90ba9c70f846762e\CLI.Component.Systemtray.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Wizard\2.0.3693.42455__90ba9c70f846762e\CLI.Component.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime\2.0.3693.42440__90ba9c70f846762e\CLI.Component.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.SkinFactory\2.0.3693.42441__90ba9c70f846762e\CLI.Component.SkinFactory.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime.Shared.Private\2.0.3309.28628__90ba9c70f846762e\CLI.Component.Runtime.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared.Private\2.0.3309.28624__90ba9c70f846762e\CLI.Component.Dashboard.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Dashboard\2.0.3693.42446__90ba9c70f846762e\CLI.Component.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ATIDEMOS\2.0.3693.42440__90ba9c70f846762e\ATIDEMOS.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Client.Shared.Private\2.0.3309.28621__90ba9c70f846762e\CLI.Component.Client.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ATICCCom\2.0.0.0__90ba9c70f846762e\ATICCCom.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CCC.Implementation\2.0.3693.42531__90ba9c70f846762e\CCC.Implementation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime.Shared.Private\2.0.3309.28637__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\APM.Server\2.0.3693.42439__90ba9c70f846762e\APM.Server.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Server\2.0.3693.42438__90ba9c70f846762e\AEM.Server.dll ()
MOD - C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\e00630ec1e225a2376fdd430645e20f7\System.Web.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\6d2f689baff5da3df134fdec0742a13c\System.Runtime.Remoting.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\40da9084d0863e07d7ce55953833b8b0\System.Configuration.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\bcb66dbad2b45d05235b37a02f737eb5\Accessibility.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\c1c06a392871267db27f7cbc40e1c4fb\System.Xml.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1363115565fff5a641243a48f396f107\System.Windows.Forms.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\367c4043efc2f32d843cb588b0dc97fc\System.Drawing.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\f9c36ea806e77872dce891c77b68fac3\System.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\b6632a8b2f276a8e31f5b0f6b2006cd1\mscorlib.ni.dll ()
MOD - C:\Program Files\Java\jre6\bin\jp2iexp.dll ()
MOD - C:\Program Files\Java\jre6\bin\jp2native.dll ()
MOD - C:\Windows\System32\atitmmxx.dll ()
MOD - C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll ()
MOD - C:\Program Files\WinRAR\RarExt.dll ()
MOD - C:\Program Files\Toshiba\Utilities\KeNotify.exe ()
========== Win32 Services (SafeList) ==========
SRV - (!SASCORE) – C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
SRV - (AVP) – C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe (Kaspersky Lab)
SRV - (AffinegyService) – C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe (Affinegy, Inc.)
SRV - (SwitchBoard) – C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (SupportSoft RemoteAssist) – C:\Program Files\Common Files\Supportsoft\bin\ssrc.exe (SupportSoft, Inc.)
SRV - (ACDaemon) – C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (LiveUpdate) – C:\Program Files\Symantec\LiveUpdate\LuComServer_3_3.EXE (Symantec Corporation)
SRV - (WinDefend) – C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (TNaviSrv) – C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
SRV - (TosCoSrv) – C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
SRV - (TOSHIBA Bluetooth Service) – C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
SRV - (Swupdtmr) – c:\Toshiba\IVP\swupdate\swupdtmr.exe ()
SRV - (pinger) – C:\Toshiba\IVP\ISM\pinger.exe ()
SRV - (CFSvcs) – C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
SRV - (AgereModemAudio) – C:\Windows\System32\agrsmsvc.exe (Agere Systems)
SRV - (UleadBurningHelper) – C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
SRV - (TODDSrv) – C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
========== Driver Services (SafeList) ==========
DRV - (msvad_simple) – C:\Windows\System32\drivers\povrtdev.sys (MediaMall Technologies, Inc.)
DRV - (SASDIFSV) – C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (KLIF) – C:\Windows\System32\drivers\klif.sys (Kaspersky Lab)
DRV - (FTDIBUS) – C:\Windows\System32\drivers\ftdibus.sys (FTDI Ltd.)
DRV - (FTSER2K) – C:\Windows\System32\drivers\ftser2k.sys (FTDI Ltd.)
DRV - (RTL8169) – C:\Windows\System32\drivers\Rtlh86.sys (Realtek )
DRV - (atikmdag) – C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (Revoflt) – C:\Windows\System32\drivers\revoflt.sys (VS Revo Group)
DRV - (KLIM6) – C:\Windows\System32\drivers\klim6.sys (Kaspersky Lab)
DRV - (klbg) – C:\Windows\system32\drivers\klbg.sys (Kaspersky Lab)
DRV - (klmouflt) – C:\Windows\System32\drivers\klmouflt.sys (Kaspersky Lab)
DRV - (kl1) – C:\Windows\System32\drivers\kl1.sys (Kaspersky Lab)
DRV - (tifm21) – C:\Windows\System32\drivers\tifm21.sys (Texas Instruments)
DRV - (mcdbus) – C:\Windows\System32\drivers\mcdbus.sys (MagicISO, Inc.)
DRV - (bcm) – C:\Windows\System32\drivers\drxvi314.sys (Beceem communications pvt ltd.)
DRV - (bcmbusctr) – C:\Windows\System32\drivers\BcmBusCtr.sys (Beceem communications pvt ltd.)
DRV - (athr) – C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.)
DRV - (TVALZ) – C:\Windows\system32\DRIVERS\TVALZ_O.SYS (TOSHIBA Corporation)
DRV - (tos_sps32) – C:\Windows\system32\DRIVERS\tos_sps32.sys (TOSHIBA Corporation)
DRV - (AgereSoftModem) – C:\Windows\System32\drivers\AGRSM.sys (Agere Systems)
DRV - (tdcmdpst) – C:\Windows\System32\drivers\tdcmdpst.sys (TOSHIBA Corporation.)
DRV - (KR3NPXP) – C:\Windows\system32\drivers\kr3npxp.sys (TOSHIBA CORPORATION)
DRV - (ApfiltrService) – C:\Windows\System32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (LPCFilter) – C:\Windows\system32\DRIVERS\LPCFilter.sys (COMPAL ELECTRONIC INC.)
DRV - (KR10I) – C:\Windows\system32\drivers\kr10i.sys (TOSHIBA CORPORATION)
DRV - (KR10N) – C:\Windows\system32\drivers\kr10n.sys (TOSHIBA CORPORATION)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.bing.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.selectedEngine: "Bing"
FF - prefs.js..browser.startup.homepage: "http://en-US.start2.mozilla.com/firefox?client=firefox-a&rls;=org.mozilla:en-US:official"
FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0
FF - prefs.js..extensions.enabledItems: [removed]:9.0.0.736
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [removed]:1.0
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.1.94
FF - prefs.js..extensions.enabledItems: {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.1.94
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/02/24 14:16:58 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011/05/17 23:06:42 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011/05/17 23:06:42 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2011/09/20 18:36:29 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/01/21 15:11:21 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/11/29 23:18:38 | 000,000,000 | —D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/02/24 14:16:58 | 000,000,000 | —D | M]
[2010/06/14 13:14:32 | 000,000,000 | —D | M] (No name found) – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Extensions
[2010/06/14 13:14:32 | 000,000,000 | —D | M] (No name found) – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Extensions\[removed]
[2011/04/26 22:10:41 | 000,000,000 | —D | M] (No name found) – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Firefox\Profiles\7vmqx1pm.default\extensions
[2010/12/06 15:58:55 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Firefox\Profiles\7vmqx1pm.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/01/29 18:29:49 | 000,000,000 | —D | M] ("Savevid.com Easy Video Downloader") – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Firefox\Profiles\7vmqx1pm.default\extensions\[removed]
[2012/01/21 14:39:30 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/07/10 22:12:21 | 000,000,000 | —D | M] (Skype extension) – C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2009/10/25 14:29:44 | 000,000,000 | —D | M] (flashget3 Extension) – C:\Program Files\Mozilla Firefox\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2010/09/13 14:04:19 | 000,000,000 | —D | M] (Kaspersky URL Advisor) – C:\Program Files\Mozilla Firefox\extensions\[removed]
[2012/01/12 13:13:41 | 000,121,816 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/10/03 04:06:04 | 000,476,904 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2007/12/17 11:16:14 | 000,065,536 | —- | M] ( ) – C:\Program Files\mozilla firefox\plugins\npkimi.dll
O1 HOSTS File: ([2011/12/08 13:55:38 | 000,001,255 | —- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 3dns.adobe.com 3dns-1.adobe.com 3dns-2.adobe.com 3dns-3.adobe.com 3dns-4.adobe.com activate.adobe.com activate-sea.adobe.com activate-sjc0.adobe.com activate.wip.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip1.adobe.com activate.wip2.adobe.com activate.wip3.adobe.com activate.wip4.adobe.com adobe-dns.adobe.com adobe-dns-1.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com adobe-dns-4.adobe.com
O1 - Hosts: 127.0.0.1 adobeereg.com practivate.adobe practivate.adobe.com practivate.adobe.newoa practivate.adobe.ntp practivate.adobe.ipp ereg.adobe.com ereg.wip.adobe.com ereg.wip1.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip2.adobe.com ereg.wip3.adobe.com ereg.wip4.adobe.com hl2rcv.adobe.com wip.adobe.com wip1.adobe.com wip2.adobe.com wip3.adobe.com wip4.adobe.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com wwis-dubc1-vip60.adobe.com www.wip.adobe.com www.wip1.adobe.com
O1 - Hosts: 127.0.0.1 www.wip2.adobe.com www.wip3.adobe.com www.wip4.adobe.com wwis-dubc1-vip60.adobe.com crl.verisign.net CRL.VERISIGN.NET ood.opsource.net
O1 - Hosts: 127.0.0.1 license.superantispyware.com
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (DivX Plus Web Player HTML5 ) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll (Kaspersky Lab)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll (Google Inc.)
O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll (Google Inc.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No CLSID value found.
O3 - HKLM\..\Toolbar: (&Google; Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Google; Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [HSON] C:\Program Files\Toshiba\TBS\HSON.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [HWSetup] \HWSetup.exe hwSetUP File not found
O4 - HKLM..\Run: [KeNotify] C:\Program Files\Toshiba\Utilities\KeNotify.exe ()
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SmoothView] C:\Program Files\Toshiba\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [AdobeBridge] File not found
O4 - HKCU..\RunOnce: [Shockwave Updater] C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1100465 -"Mozilla/5.0 (Windows NT 6.0; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" -"http://g1.racerinc.com/realm/fsca/game/video_poker_02/video_poker_02.php?WhatUID=2953617658=fsca⟨=en&gm;=video_poker_02" File not found
O4 - Startup: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop (2).ini ()
O4 - Startup: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk = C:\Program Files\MagicISO\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
O4 - Startup: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk = File not found
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Recovery present
O9 - Extra Button: &Virtual; keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: @shdoclc.dll,-866 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Windows\web\related.htm File not found
O9 - Extra 'Tools' menuitem : @shdoclc.dll,-864 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Windows\web\related.htm File not found
O9 - Extra Button: URLs c&heck; - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash…t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1EBD1AD5-B923-4FEF-90FB-BB0E04A48433}: DhcpNameServer = 192.168.2.1 192.168.2.1 [removed] [removed]
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C6B921E9-D3F4-4C94-84B9-61A5451FFCBD}: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) -C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\mzvkbd3.dll (Kaspersky Lab)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\klogon: DllName - (C:\Windows\system32\klogon.dll) - C:\Windows\System32\klogon.dll (Kaspersky Lab)
O24 - Desktop WallPaper: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 15:43:36 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O33 - MountPoints2\{07b37944-8e77-11de-b922-0016d4fea2b3}\Shell - "" = AutoRun
O33 - MountPoints2\{07b37944-8e77-11de-b922-0016d4fea2b3}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O33 - MountPoints2\{19e75a36-cf07-11dc-8f5a-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\tcawtofo.exe
O33 - MountPoints2\{19e75a36-cf07-11dc-8f5a-0016d4fea2b3}\Shell\explore\Command - "" = E:\tcawtofo.exe
O33 - MountPoints2\{19e75a36-cf07-11dc-8f5a-0016d4fea2b3}\Shell\open\Command - "" = E:\tcawtofo.exe
O33 - MountPoints2\{1b89afba-e11b-11de-8c67-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\Setup.exe
O33 - MountPoints2\{ac48b85c-0aab-11df-b870-0016d4fea2b3}\Shell - "" = AutoRun
O33 - MountPoints2\{ac48b85c-0aab-11df-b870-0016d4fea2b3}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -a
O33 - MountPoints2\{af4442ce-73cd-11df-828c-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\InstallTomTomHOME.exe
O33 - MountPoints2\{af4442ee-73cd-11df-828c-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\slacker.synclauncher.exe
O33 - MountPoints2\{af4442ee-73cd-11df-828c-0016d4fea2b3}\Shell\slacker\command - "" = E:\slacker.synclauncher.exe
O33 - MountPoints2\{b52435af-c072-11dd-81a3-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\autorun.exe
O33 - MountPoints2\{b52435af-c072-11dd-81a3-0016d4fea2b3}\Shell\phone\command - "" = E:\autorun.exe
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\WDSetup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.ac3acm - C:\Windows\System32\AC3ACM.acm (fccHandler)
Drivers32: msacm.ac3filter - C:\Windows\System32\ac3filter.acm ()
Drivers32: msacm.alf2cd - C:\Windows\System32\alf2cd.acm (NCT Company)
Drivers32: msacm.dvacm - C:\Program Files\Common Files\Ulead Systems\vio\DVACM.acm (Ulead Systems, Inc.)
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.scg726 - C:\Windows\System32\Scg726.acm (SHARP Corporation)
Drivers32: msacm.voxacm160 - C:\Windows\System32\vct3216.acm (Voxware, Inc.)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.dvsd - C:\Windows\System32\mcdvd_32.dll (MainConcept)
Drivers32: vidc.xvid - C:\Windows\System32\xvidvfw.dll ()
Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2012/01/28 01:34:18 | 000,584,192 | —- | C] (OldTimer Tools) – C:\Users\skiesthelimit\Desktop\OTL.exe
[2012/01/22 22:17:32 | 000,000,000 | —D | C] – C:\Program Files\Safari
[2012/01/22 02:09:47 | 000,000,000 | —D | C] – C:\Program Files\Bonjour
[2012/01/12 15:07:05 | 000,117,760 | —- | C] (Hewlett-Packard Company) – C:\Windows\System32\hpzll5mu.dll
[2012/01/12 14:56:30 | 000,372,736 | —- | C] (Hewlett-Packard) – C:\Windows\System32\hppldcoi.dll
[2012/01/12 14:56:29 | 000,729,088 | —- | C] (Hewlett-Packard) – C:\Windows\System32\hpowiax7.dll
[2012/01/12 14:56:29 | 000,303,104 | —- | C] (Hewlett-Packard Co.) – C:\Windows\System32\hpovst15.dll
[2012/01/12 14:56:28 | 000,581,632 | —- | C] (Hewlett-Packard Co.) – C:\Windows\System32\hpotscl6.dll
[2012/01/11 15:39:09 | 001,314,816 | —- | C] (Microsoft Corporation) – C:\Windows\System32\quartz.dll
[2012/01/11 15:39:07 | 000,497,152 | —- | C] (Microsoft Corporation) – C:\Windows\System32\qdvd.dll
[2012/01/06 21:08:44 | 000,000,000 | —D | C] – C:\Users\skiesthelimit\AppData\Roaming\Gogii
[2012/01/06 15:15:08 | 000,000,000 | —D | C] – C:\Users\skiesthelimit\AppData\Roaming\BlamGames
[2012/01/06 01:45:51 | 000,000,000 | —D | C] – C:\Users\skiesthelimit\Documents\Green Gamer
========== Files - Modified Within 30 Days ==========
[2012/01/28 02:05:03 | 000,000,900 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/01/28 01:29:53 | 000,003,568 | —- | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/01/28 01:29:53 | 000,003,568 | —- | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/01/27 13:05:01 | 000,000,896 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/01/27 03:02:38 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2012/01/27 00:20:38 | 000,002,305 | —- | M] () – C:\Users\skiesthelimit\Application Data\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk
[2012/01/26 03:34:58 | 000,016,384 | —- | M] () – C:\Windows\System32\Ikeext.etl
[2012/01/25 00:31:33 | 000,248,832 | —- | M] () – C:\Users\skiesthelimit\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/01/24 16:45:11 | 000,645,944 | —- | M] () – C:\Windows\System32\perfh009.dat
[2012/01/24 16:45:11 | 000,121,042 | —- | M] () – C:\Windows\System32\perfc009.dat
[2012/01/22 23:17:54 | 000,008,004 | —- | M] () – C:\ProgramData\LUUnInstall.LiveUpdate
[2012/01/22 22:17:54 | 000,001,854 | —- | M] () – C:\Users\Public\Desktop\Safari.lnk
[2012/01/22 00:41:25 | 000,001,356 | —- | M] () – C:\Users\skiesthelimit\AppData\Local\d3d9caps.dat
[2012/01/12 15:20:59 | 000,141,052 | —- | M] () – C:\Windows\hpoins27.dat
[2012/01/09 22:15:59 | 000,074,820 | —- | M] () – C:\Windows\System32\iFunBox_Build_0438_0430_4f0bbb76.dmp
[2012/01/09 22:15:35 | 000,074,401 | —- | M] () – C:\Windows\System32\iFunBox_Build_0438_0430_4f0bbb4b.dmp
[2012/01/06 18:27:15 | 000,001,101 | —- | M] () – C:\Users\skiesthelimit\Desktop\TheKeepersLostProgenyCE - Shortcut.lnk
[2012/01/06 18:26:45 | 000,000,777 | —- | M] () – C:\Users\skiesthelimit\Desktop\MysteryValleyXT - Shortcut.lnk
[2012/01/02 19:07:40 | 004,403,920 | —- | M] () – C:\Windows\System32\FNTCACHE.DAT
========== Files Created - No Company Name ==========
[2012/01/22 22:17:54 | 000,002,305 | —- | C] () – C:\Users\skiesthelimit\Application Data\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk
[2012/01/22 22:17:54 | 000,001,854 | —- | C] () – C:\Users\Public\Desktop\Safari.lnk
[2012/01/22 22:17:54 | 000,001,854 | —- | C] () – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
[2012/01/12 14:57:13 | 000,141,052 | —- | C] () – C:\Windows\hpoins27.dat
[2012/01/12 14:57:13 | 000,000,932 | —- | C] () – C:\Windows\hpomdl27.dat
[2012/01/09 22:15:50 | 000,074,820 | —- | C] () – C:\Windows\System32\iFunBox_Build_0438_0430_4f0bbb76.dmp
[2012/01/09 22:15:18 | 000,074,401 | —- | C] () – C:\Windows\System32\iFunBox_Build_0438_0430_4f0bbb4b.dmp
[2012/01/06 18:27:15 | 000,001,101 | —- | C] () – C:\Users\skiesthelimit\Desktop\TheKeepersLostProgenyCE - Shortcut.lnk
[2012/01/06 18:26:45 | 000,000,777 | —- | C] () – C:\Users\skiesthelimit\Desktop\MysteryValleyXT - Shortcut.lnk
[2011/11/28 19:22:29 | 000,000,000 | —- | C] () – C:\Windows\ativpsrm.bin
[2011/11/27 16:27:11 | 000,000,224 | —- | C] () – C:\ProgramData\~NvdWxKDQoHGaJOr
[2011/11/27 16:27:10 | 000,000,320 | —- | C] () – C:\ProgramData\~NvdWxKDQoHGaJO
[2011/11/27 16:24:58 | 000,000,448 | —- | C] () – C:\ProgramData\NvdWxKDQoHGaJO
[2011/10/16 15:34:14 | 000,000,133 | —- | C] () – C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2011/09/22 06:51:13 | 000,000,132 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011/08/28 02:42:00 | 000,180,624 | —- | C] () – C:\Windows\System32\Primomonnt.dll
[2011/06/13 06:27:25 | 000,000,000 | —- | C] () – C:\Windows\nsreg.dat
[2011/02/09 22:03:48 | 000,000,314 | —- | C] () – C:\Windows\primopdf.ini
[2011/01/29 19:51:28 | 000,000,056 | —- | C] () – C:\Windows\System32\ezsidmv.dat
[2011/01/27 05:36:11 | 000,000,600 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\winscp.rnd
[2011/01/18 22:33:09 | 000,010,709 | —- | C] () – C:\Windows\hpwscr19.dat
[2011/01/07 20:13:22 | 000,000,000 | —- | C] () – C:\Windows\ToDisc.INI
[2011/01/04 18:09:49 | 000,000,437 | —- | C] () – C:\Windows\ulead32.ini
[2010/09/13 14:03:51 | 000,113,933 | —- | C] () – C:\Windows\System32\drivers\klin.dat
[2010/09/13 14:03:51 | 000,097,549 | —- | C] () – C:\Windows\System32\drivers\klick.dat
[2010/09/13 09:02:03 | 000,008,004 | —- | C] () – C:\ProgramData\LUUnInstall.LiveUpdate
[2010/09/01 00:42:28 | 000,000,000 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\bibstats
[2010/03/24 03:14:42 | 000,749,568 | —- | C] () – C:\Windows\System32\swfgen.dll
[2010/03/24 03:14:40 | 000,131,584 | —- | C] () – C:\Windows\System32\SpoonUninstall.exe
[2010/03/24 03:14:40 | 000,002,680 | —- | C] () – C:\Windows\System32\SpoonUninstall-FlashWebKit v2.0 Trial.dat
[2010/02/24 14:16:25 | 000,023,115 | —- | C] () – C:\Windows\hpqins15.dat
[2010/02/24 14:12:34 | 000,077,379 | —- | C] () – C:\Windows\hpqins05.dat
[2009/12/04 15:36:20 | 001,739,180 | —- | C] () – C:\Windows\System32\drivers\macxvi200.bin
[2009/12/04 15:36:07 | 000,000,258 | RHS- | C] () – C:\ProgramData\ntuser.pol
[2009/12/02 17:27:30 | 000,080,416 | —- | C] () – C:\Windows\System32\RtNicProp32.dll
[2009/10/25 22:02:41 | 000,001,356 | —- | C] () – C:\Users\skiesthelimit\AppData\Local\d3d9caps.dat
[2009/09/24 17:24:14 | 000,000,101 | —- | C] () – C:\Users\skiesthelimit\AppData\Local\fusioncache.dat
[2009/09/24 17:23:47 | 000,010,875 | —- | C] () – C:\Windows\ESOA.INI
[2009/09/24 17:23:47 | 000,003,679 | —- | C] () – C:\Windows\GrAddrBk.ini
[2009/09/24 17:23:47 | 000,000,995 | —- | C] () – C:\Windows\GRACE.INI
[2009/09/24 17:23:47 | 000,000,053 | —- | C] () – C:\Windows\PRSRVDLL.INI
[2009/09/24 17:22:25 | 000,000,383 | —- | C] () – C:\Windows\winpoint.ini
[2009/09/17 15:57:10 | 000,117,248 | —- | C] () – C:\Windows\System32\EhStorAuthn.dll
[2009/09/17 15:57:10 | 000,107,612 | —- | C] () – C:\Windows\System32\StructuredQuerySchema.bin
[2009/09/09 22:01:40 | 000,027,675 | —- | C] () – C:\Windows\System32\drivers\klopp.dat
[2009/08/03 19:07:42 | 000,403,816 | —- | C] () – C:\Windows\System32\OGACheckControl.dll
[2009/08/03 19:07:42 | 000,230,768 | —- | C] () – C:\Windows\System32\OGAEXEC.exe
[2009/06/17 16:45:45 | 000,073,220 | —- | C] () – C:\Windows\System32\EPPICPrinterDB.dat
[2009/06/17 16:45:45 | 000,031,053 | —- | C] () – C:\Windows\System32\EPPICPattern131.dat
[2009/06/17 16:45:45 | 000,029,114 | —- | C] () – C:\Windows\System32\EPPICPattern1.dat
[2009/06/17 16:45:45 | 000,027,417 | —- | C] () – C:\Windows\System32\EPPICPattern121.dat
[2009/06/17 16:45:45 | 000,021,021 | —- | C] () – C:\Windows\System32\EPPICPattern3.dat
[2009/06/17 16:45:45 | 000,015,670 | —- | C] () – C:\Windows\System32\EPPICPattern5.dat
[2009/06/17 16:45:45 | 000,013,280 | —- | C] () – C:\Windows\System32\EPPICPattern2.dat
[2009/06/17 16:45:45 | 000,010,673 | —- | C] () – C:\Windows\System32\EPPICPattern4.dat
[2009/06/17 16:45:45 | 000,004,943 | —- | C] () – C:\Windows\System32\EPPICPattern6.dat
[2009/06/17 16:45:45 | 000,001,140 | —- | C] () – C:\Windows\System32\EPPICPresetData_PT.dat
[2009/06/17 16:45:45 | 000,001,140 | —- | C] () – C:\Windows\System32\EPPICPresetData_BP.dat
[2009/06/17 16:45:45 | 000,001,137 | —- | C] () – C:\Windows\System32\EPPICPresetData_ES.dat
[2009/06/17 16:45:45 | 000,001,130 | —- | C] () – C:\Windows\System32\EPPICPresetData_FR.dat
[2009/06/17 16:45:45 | 000,001,130 | —- | C] () – C:\Windows\System32\EPPICPresetData_CF.dat
[2009/06/17 16:45:45 | 000,001,104 | —- | C] () – C:\Windows\System32\EPPICPresetData_EN.dat
[2009/06/17 16:45:45 | 000,000,097 | —- | C] () – C:\Windows\System32\PICSDK.ini
[2009/06/17 16:38:43 | 000,000,044 | —- | C] () – C:\Windows\EPSNX400.ini
[2009/06/14 14:16:22 | 000,000,000 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\AVSMediaPlayer.m3u
[2009/06/14 14:12:05 | 000,524,288 | —- | C] () – C:\Windows\System32\xvidcore.dll
[2009/06/14 14:12:05 | 000,139,264 | —- | C] () – C:\Windows\System32\xvidvfw.dll
[2009/05/26 14:39:40 | 000,088,576 | —- | C] () – C:\Windows\AmCap.exe
[2009/04/23 16:29:16 | 000,189,051 | —- | C] () – C:\Windows\System32\atiicdxx.dat
[2008/12/02 07:03:00 | 000,018,904 | —- | C] () – C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008/10/07 13:33:57 | 000,000,376 | —- | C] () – C:\Windows\ODBC.INI
[2008/06/24 14:52:25 | 000,025,710 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\UserTile.png
[2008/01/11 20:54:28 | 000,000,104 | —- | C] () – C:\Windows\OPHC.ini
[2007/12/09 22:43:32 | 000,001,946 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\wklnhst.dat
[2007/08/19 07:18:56 | 000,004,096 | —- | C] () – C:\Users\skiesthelimit\AppData\Local\keyfile3.drm
[2007/08/05 21:46:47 | 000,248,832 | —- | C] () – C:\Users\skiesthelimit\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/05/16 19:40:56 | 000,204,800 | —- | C] () – C:\Windows\System32\IVIresizeW7.dll
[2007/05/16 19:40:55 | 000,200,704 | —- | C] () – C:\Windows\System32\IVIresizeA6.dll
[2007/05/16 19:40:55 | 000,192,512 | —- | C] () – C:\Windows\System32\IVIresizeP6.dll
[2007/05/16 19:40:55 | 000,192,512 | —- | C] () – C:\Windows\System32\IVIresizeM6.dll
[2007/05/16 19:40:55 | 000,188,416 | —- | C] () – C:\Windows\System32\IVIresizePX.dll
[2007/05/16 19:40:55 | 000,020,480 | —- | C] () – C:\Windows\System32\IVIresize.dll
[2007/05/16 18:46:42 | 000,000,000 | —- | C] () – C:\Windows\NDSTray.INI
[2007/05/16 18:30:13 | 000,036,864 | —- | C] () – C:\Windows\System32\HWS_Ctrl.dll
[2007/05/16 18:15:16 | 000,128,113 | —- | C] () – C:\Windows\System32\csellang.ini
[2007/05/16 18:15:16 | 000,045,056 | —- | C] () – C:\Windows\System32\csellang.dll
[2007/05/16 18:15:16 | 000,010,150 | —- | C] () – C:\Windows\System32\tosmreg.ini
[2007/05/16 18:15:16 | 000,007,671 | —- | C] () – C:\Windows\System32\cseltbl.ini
[2007/05/16 18:13:14 | 000,000,291 | —- | C] () – C:\Windows\RtDefLvl.ini
[2007/05/16 18:13:14 | 000,000,176 | —- | C] () – C:\Windows\System32\drivers\RTHDAEQ1.dat
[2007/05/16 18:13:14 | 000,000,176 | —- | C] () – C:\Windows\System32\drivers\RTHDAEQ0.dat
[2007/05/16 18:13:14 | 000,000,008 | —- | C] () – C:\Windows\System32\drivers\RtkHDAud.dat
[2007/04/24 22:57:36 | 000,159,744 | —- | C] () – C:\Windows\System32\atitmmxx.dll
[2007/04/24 22:32:44 | 003,107,788 | —- | C] () – C:\Windows\System32\atiumdva.dat
[2006/12/05 14:05:06 | 000,114,688 | —- | C] () – C:\Windows\System32\TosBtAcc.dll
[2006/11/02 06:57:28 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat
[2006/11/02 06:47:37 | 004,403,920 | —- | C] () – C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 06:35:32 | 000,005,632 | —- | C] () – C:\Windows\System32\sysprepMCE.dll
[2006/11/02 04:33:01 | 000,645,944 | —- | C] () – C:\Windows\System32\perfh009.dat
[2006/11/02 04:33:01 | 000,287,440 | —- | C] () – C:\Windows\System32\perfi009.dat
[2006/11/02 04:33:01 | 000,121,042 | —- | C] () – C:\Windows\System32\perfc009.dat
[2006/11/02 04:33:01 | 000,030,674 | —- | C] () – C:\Windows\System32\perfd009.dat
[2006/11/02 04:23:21 | 000,215,943 | —- | C] () – C:\Windows\System32\dssec.dat
[2006/11/02 02:58:30 | 000,043,131 | —- | C] () – C:\Windows\mib.bin
[2006/11/02 02:19:00 | 000,000,741 | —- | C] () – C:\Windows\System32\NOISE.DAT
[2006/11/02 01:40:29 | 000,013,750 | —- | C] () – C:\Windows\System32\pacerprf.ini
[2006/11/02 01:25:31 | 000,673,088 | —- | C] () – C:\Windows\System32\mlang.dat
[2005/11/23 15:55:42 | 000,024,576 | —- | C] () – C:\Windows\System32\SPCtl.dll
[2005/07/22 22:30:20 | 000,065,536 | —- | C] () – C:\Windows\System32\TosCommAPI.dll
[1999/01/22 12:46:58 | 000,065,536 | —- | C] () – C:\Windows\System32\MSRTEDIT.DLL
[1998/01/12 02:00:00 | 000,040,448 | —- | C] () – C:\Windows\System32\REGOBJ.DLL
========== LOP Check ==========
[2011/03/30 17:21:25 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\AMPSoft
[2009/06/11 13:54:09 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Application Data
[2011/05/17 07:14:59 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Az-Art
[2011/10/04 06:02:51 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Big Fish Games
[2009/06/11 15:04:25 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\BITS
[2012/01/06 15:15:08 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\BlamGames
[2011/12/06 11:39:59 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2009/03/14 03:23:42 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2008/01/11 20:52:46 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\eFax Messenger
[2011/10/08 09:12:15 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Elephant Games
[2009/06/11 13:57:40 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\FlashGetBHO
[2009/06/11 13:57:36 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\FlashgetSetup
[2011/04/28 16:19:31 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\FreeFox
[2009/07/19 17:28:19 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\GetRightToGo
[2007/08/11 21:06:52 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Global Forex Trading
[2012/01/06 21:08:44 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Gogii
[2011/01/04 06:32:51 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\gtk-2.0
[2011/07/24 23:24:19 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\ImgBurn
[2011/08/24 07:51:36 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\IrfanView
[2009/11/21 07:15:20 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\j2 Global
[2011/10/01 09:14:23 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Masque
[2011/09/08 00:03:53 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\mjusbsp
[2009/06/13 19:33:37 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\MxBoost
[2011/11/13 23:29:15 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Nitro PDF
[2011/08/28 02:41:48 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\OpenCandy
[2010/08/24 15:09:16 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\PeerNetworking
[2009/07/12 21:51:25 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\SmartDraw
[2011/09/10 12:43:10 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2007/12/09 22:43:34 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Template
[2009/02/16 13:35:55 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Toshiba
[2010/09/13 02:27:46 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Uniblue
[2012/01/28 01:38:10 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\uTorrent
[2011/11/19 01:54:17 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\VampireSagaHL
[2011/01/27 00:32:54 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\VSO
[2009/05/19 09:48:54 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\WD
[2007/11/20 11:56:41 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\WildTangent
[2010/02/25 13:43:06 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\WinBatch
[2011/01/23 19:58:01 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Windows Live Writer
[2011/10/25 19:46:15 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\World-LooM
[2012/01/26 03:31:09 | 000,032,572 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2006/09/18 15:43:36 | 000,000,024 | —- | M] () – C:\autoexec.bat
[2009/04/11 00:36:36 | 000,333,257 | RHS- | M] () – C:\bootmgr
[2007/05/16 17:47:29 | 000,008,192 | R-S- | M] () – C:\BOOTSECT.BAK
[2006/09/18 15:43:37 | 000,000,010 | —- | M] () – C:\config.sys
[2012/01/28 00:49:29 | 2074,927,104 | -HS- | M] () – C:\pagefile.sys
< %systemroot%\Fonts\*.com >
[2006/11/02 06:37:12 | 000,026,040 | —- | M] () – C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006/11/02 06:37:12 | 000,026,489 | —- | M] () – C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006/11/02 06:37:12 | 000,029,779 | —- | M] () – C:\Windows\Fonts\GlobalSerif.CompositeFont
[2009/10/26 14:36:00 | 000,037,665 | —- | M] () – C:\Windows\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2006/09/18 15:37:34 | 000,000,065 | —- | M] () – C:\Windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2008/08/12 14:58:10 | 000,314,880 | —- | M] (Hewlett-Packard Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\hpfpp082.dll
[2007/11/05 19:06:06 | 000,278,016 | —- | M] (Hewlett-Packard Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\hpzpp5mu.dll
[2006/11/02 06:35:48 | 000,022,528 | —- | M] (Microsoft Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\jnwppr.dll
[2006/10/26 03:56:12 | 000,033,104 | —- | M] (Microsoft Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\msonpppr.dll
[2005/06/21 09:32:04 | 000,030,802 | —- | M] (Oki Data Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\OPHCPP3.DLL
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2010/11/09 10:28:46 | 000,301,936 | —- | M] (Microsoft Corporation) – C:\Windows\WLXPGSS.SCR
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008/12/01 09:56:08 | 000,000,174 | -HS- | M] () – C:\Program Files\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2007/05/16 17:47:12 | 006,602,752 | —- | M] () – C:\Windows\System32\config\COMPONENTS.SAV
[2007/05/16 17:47:10 | 000,102,400 | —- | M] () – C:\Windows\System32\config\DEFAULT.SAV
[2007/05/16 17:47:12 | 000,020,480 | —- | M] () – C:\Windows\System32\config\SECURITY.SAV
[2007/05/16 17:47:24 | 015,556,608 | —- | M] () – C:\Windows\System32\config\SOFTWARE.SAV
[2007/05/16 17:47:27 | 006,012,928 | —- | M] () – C:\Windows\System32\config\SYSTEM.SAV
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
[2007/01/14 19:49:12 | 000,004,096 | -HS- | M] () – C:\Windows\system32\Thumbs.db
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2011/12/03 07:33:23 | 000,000,212 | -HS- | M] () – C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
< %USERPROFILE%\Desktop\*.exe >
[2011/11/29 01:00:28 | 001,566,512 | —- | M] (Kaspersky Lab ZAO) – C:\Users\skiesthelimit\Desktop\123abc.com.exe
[2011/11/29 20:34:11 | 000,050,477 | —- | M] () – C:\Users\skiesthelimit\Desktop\Defogger.exe
[2011/10/16 07:22:40 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Users\skiesthelimit\Desktop\OTL.exe
[2011/11/29 01:09:59 | 000,446,464 | —- | M] (OldTimer Tools) – C:\Users\skiesthelimit\Desktop\TFC.exe
[2011/11/28 22:59:47 | 000,684,297 | —- | M] () – C:\Users\skiesthelimit\Desktop\unhide.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2012-01-26 09:12:33
========== Alternate Data Streams ==========
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:5C6EBC69
@Alternate Data Stream - 165 bytes -> C:\ProgramData\TEMP:B4258C5D
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:B429712D
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:C5DF04A9
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:164561C8
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:2F8138B7
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:4673E9EA
< End of report >
I have been having issues that I believe started when I did an Adobe update several weeks ago. Not definite, but that's all I can recall doing before this mess started.
I have tried using Super Anti-Spyware and Malware Bytes, both of which have not resolved anything. I tried restoring with no luck. And my Windows Auto-Update keeps giving me error messages of not completed & then it reverts back.
When this initially happened, my files seemed to disappear and program folders in my Start Menu were empty. I tried "self-diagnosing" and restored some of my programs but still have numerous empty folders scattered about my laptop. My laptop is extremely slow now.
When I try to run Internet Explorer or Mozilla Firefox, I get an error message stating it has stopped working. I figured out how to install Safari and can access the internet. However, I am plagued with webpage re-directs.
Please help! and Thank You
OTL.Txt log:
OTL logfile created on: 1/28/2012 1:40:08 AM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\skiesthelimit\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
893.31 Mb Total Physical Memory | 245.04 Mb Available Physical Memory | 27.43% Memory free
2.77 Gb Paging File | 0.60 Gb Available in Paging File | 21.64% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 147.58 Gb Total Space | 18.02 Gb Free Space | 12.21% Space Free | Partition Type: NTFS
Computer Name: SKIES-PC | User Name: skiesthelimit | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Program Files\Safari\Safari.exe (Apple Inc.)
PRC - C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe (Apple Inc.)
PRC - C:\Users\skiesthelimit\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Adobe\Acrobat 10.0\Acrobat\acrotray.exe (Adobe Systems Inc.)
PRC - C:\Program Files\SUPERAntiSpyware\SASCore.exe (SUPERAntiSpyware.com)
PRC - C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe (Affinegy, Inc.)
PRC - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Synaptics\SynTP\SynToshiba.exe (Synaptics Incorporated)
PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
PRC - C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
PRC - C:\Program Files\Toshiba\SmoothView\SmoothView.exe (TOSHIBA Corporation)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
PRC - c:\Toshiba\IVP\swupdate\swupdtmr.exe ()
PRC - C:\Toshiba\IVP\ISM\pinger.exe ()
PRC - C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\Toshiba\Utilities\KeNotify.exe ()
PRC - C:\Windows\System32\agrsmsvc.exe (Agere Systems)
PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
PRC - C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
========== Modules (No Company Name) ==========
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.HydraVision.Runtime\2.0.3693.42552__90ba9c70f846762e\CLI.Caste.HydraVision.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.HydraVision.Shared\2.0.3693.42552__90ba9c70f846762e\CLI.Caste.HydraVision.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.HydraVision.Wizard\2.0.3693.42556__90ba9c70f846762e\CLI.Caste.HydraVision.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.HydraVision.Dashboard\2.0.3693.42552__90ba9c70f846762e\CLI.Caste.HydraVision.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard\2.0.3693.42456__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime\2.0.3693.42442__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Wizard\2.0.3693.42460__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Wizard\2.0.3693.42522__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Wizard\2.0.3693.42461__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Runtime\2.0.3693.42451__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Runtime\2.0.3693.42517__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Runtime\2.0.3693.42499__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Runtime\2.0.3693.42486__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Wizard\2.0.3693.42537__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard\2.0.3693.42450__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Welcome.Graphics.Dashboard\2.0.3693.42537__90ba9c70f846762e\CLI.Aspect.Welcome.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Dashboard\2.0.3693.42504__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Wizard\2.0.3693.42504__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Runtime\2.0.3693.42503__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime\2.0.3693.42536__90ba9c70f846762e\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Dashboard\2.0.3693.42488__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Wizard\2.0.3693.42512__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Runtime\2.0.3693.42487__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Dashboard\2.0.3693.42452__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Dashboard\2.0.3693.42462__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Dashboard\2.0.3693.42462__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Dashboard\2.0.3693.42496__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Runtime\2.0.3693.42496__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Dashboard\2.0.3693.42518__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Dashboard\2.0.3693.42498__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Wizard\2.0.3693.42466__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Runtime\2.0.3693.42466__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Runtime\2.0.3693.42497__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Runtime\2.0.3693.42486__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Dashboard\2.0.3693.42487__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Runtime\2.0.3693.42487__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.Hotkeys.Shared\2.0.3309.28617__90ba9c70f846762e\AEM.Plugin.Hotkeys.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Actions.CCAA.Shared\2.0.3309.28608__90ba9c70f846762e\AEM.Actions.CCAA.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.WinMessages.Shared\2.0.3309.28629__90ba9c70f846762e\AEM.Plugin.WinMessages.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.REG.Shared\2.0.3309.28645__90ba9c70f846762e\AEM.Plugin.REG.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.GD.Shared\2.0.3309.28647__90ba9c70f846762e\AEM.Plugin.GD.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.EEU.Shared\2.0.3309.28627__90ba9c70f846762e\AEM.Plugin.EEU.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.DPPE.Shared\2.0.3309.28647__90ba9c70f846762e\AEM.Plugin.DPPE.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\atixclib\1.0.0.0__90ba9c70f846762e\atixclib.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\LOG.Foundation\2.0.3309.28601__90ba9c70f846762e\LOG.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\NEWAEM.Foundation\2.0.3309.28603__90ba9c70f846762e\NEWAEM.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.OS.I0602\2.0.3309.28630__90ba9c70f846762e\DEM.OS.I0602.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\MOM.Foundation\2.0.3309.28626__90ba9c70f846762e\MOM.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.OS\2.0.3309.28645__90ba9c70f846762e\DEM.OS.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.Graphics.I0706\2.0.2743.23304__90ba9c70f846762e\DEM.Graphics.I0706.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Foundation\2.0.3309.28604__90ba9c70f846762e\CLI.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Shared\2.0.3309.28618__90ba9c70f846762e\CLI.Caste.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.Graphics.I0601\2.0.2573.17685__90ba9c70f846762e\DEM.Graphics.I0601.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Foundation.XManifest\2.0.3309.28669__90ba9c70f846762e\CLI.Foundation.XManifest.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Wizard.Shared\2.0.3309.28620__90ba9c70f846762e\CLI.Component.Wizard.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared\2.0.3309.28617__90ba9c70f846762e\CLI.Component.Dashboard.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Client.Shared\2.0.3309.28611__90ba9c70f846762e\CLI.Component.Client.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.Graphics\2.0.3309.28630__90ba9c70f846762e\DEM.Graphics.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\DEM.Foundation\2.0.2573.17684__90ba9c70f846762e\DEM.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime.Shared\2.0.3309.28617__90ba9c70f846762e\CLI.Component.Runtime.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard.Shared\2.0.3309.28631__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard.Shared\2.0.3309.28630__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Shared\2.0.3309.28636__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Shared\2.0.3309.28644__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.PowerPlayDPPE.Graphics.Shared\2.0.3309.28644__90ba9c70f846762e\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Shared\2.0.3309.28636__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Shared\2.0.3309.28634__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Shared\2.0.3309.28624__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Shared\2.0.3309.28632__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Shared\2.0.3309.28635__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Shared\2.0.3309.28630__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Shared\2.0.3309.28634__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Shared\2.0.3309.28634__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Shared\2.0.3309.28636__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Shared\2.0.3309.28630__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CustomFormats.Graphics.Shared\2.0.3309.28627__90ba9c70f846762e\CLI.Aspect.CustomFormats.Graphics.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ACE.Graphics.DisplaysManager.Shared\2.0.2573.17685__90ba9c70f846762e\ACE.Graphics.DisplaysManager.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\APM.Foundation\2.0.3309.28626__90ba9c70f846762e\APM.Foundation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Server.Shared\2.0.3309.28617__90ba9c70f846762e\AEM.Server.Shared.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ResourceManagement.Foundation.Implementation\2.0.3693.42564__90ba9c70f846762e\ResourceManagement.Foundation.Implementation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Plugin.Source.Kit.Server\2.0.3693.42545__90ba9c70f846762e\AEM.Plugin.Source.Kit.Server.dll ()
MOD - C:\Windows\assembly\GAC\Interop.WBOCXLib\1.0.0.0__90ba9c70f846762e\Interop.WBOCXLib.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime.Extension.EEU\2.0.3693.42437__90ba9c70f846762e\CLI.Component.Runtime.Extension.EEU.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\MOM.Implementation\2.0.3693.42531__90ba9c70f846762e\MOM.Implementation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\LOG.Foundation.Private\2.0.3309.28614__90ba9c70f846762e\LOG.Foundation.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ResourceManagement.Foundation.Private\2.0.3309.28612__90ba9c70f846762e\ResourceManagement.Foundation.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\LOG.Foundation.Implementation.Private\2.0.3309.28626__90ba9c70f846762e\LOG.Foundation.Implementation.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\LOG.Foundation.Implementation\2.0.3693.42530__90ba9c70f846762e\LOG.Foundation.Implementation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Foundation.Private\2.0.3309.28608__90ba9c70f846762e\CLI.Foundation.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Wizard.Shared.Private\2.0.3309.28627__90ba9c70f846762e\CLI.Component.Wizard.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Systemtray\2.0.3693.42525__90ba9c70f846762e\CLI.Component.Systemtray.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Wizard\2.0.3693.42455__90ba9c70f846762e\CLI.Component.Wizard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime\2.0.3693.42440__90ba9c70f846762e\CLI.Component.Runtime.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.SkinFactory\2.0.3693.42441__90ba9c70f846762e\CLI.Component.SkinFactory.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime.Shared.Private\2.0.3309.28628__90ba9c70f846762e\CLI.Component.Runtime.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared.Private\2.0.3309.28624__90ba9c70f846762e\CLI.Component.Dashboard.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Dashboard\2.0.3693.42446__90ba9c70f846762e\CLI.Component.Dashboard.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ATIDEMOS\2.0.3693.42440__90ba9c70f846762e\ATIDEMOS.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Component.Client.Shared.Private\2.0.3309.28621__90ba9c70f846762e\CLI.Component.Client.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\ATICCCom\2.0.0.0__90ba9c70f846762e\ATICCCom.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CCC.Implementation\2.0.3693.42531__90ba9c70f846762e\CCC.Implementation.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime.Shared.Private\2.0.3309.28637__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.Shared.Private.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\APM.Server\2.0.3693.42439__90ba9c70f846762e\APM.Server.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\AEM.Server\2.0.3693.42438__90ba9c70f846762e\AEM.Server.dll ()
MOD - C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\e00630ec1e225a2376fdd430645e20f7\System.Web.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\6d2f689baff5da3df134fdec0742a13c\System.Runtime.Remoting.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\40da9084d0863e07d7ce55953833b8b0\System.Configuration.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\bcb66dbad2b45d05235b37a02f737eb5\Accessibility.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\c1c06a392871267db27f7cbc40e1c4fb\System.Xml.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1363115565fff5a641243a48f396f107\System.Windows.Forms.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\367c4043efc2f32d843cb588b0dc97fc\System.Drawing.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\f9c36ea806e77872dce891c77b68fac3\System.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\b6632a8b2f276a8e31f5b0f6b2006cd1\mscorlib.ni.dll ()
MOD - C:\Program Files\Java\jre6\bin\jp2iexp.dll ()
MOD - C:\Program Files\Java\jre6\bin\jp2native.dll ()
MOD - C:\Windows\System32\atitmmxx.dll ()
MOD - C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll ()
MOD - C:\Program Files\WinRAR\RarExt.dll ()
MOD - C:\Program Files\Toshiba\Utilities\KeNotify.exe ()
========== Win32 Services (SafeList) ==========
SRV - (!SASCORE) – C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
SRV - (AVP) – C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe (Kaspersky Lab)
SRV - (AffinegyService) – C:\Program Files\Belkin\Router Setup and Monitor\BelkinService.exe (Affinegy, Inc.)
SRV - (SwitchBoard) – C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (SupportSoft RemoteAssist) – C:\Program Files\Common Files\Supportsoft\bin\ssrc.exe (SupportSoft, Inc.)
SRV - (ACDaemon) – C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (LiveUpdate) – C:\Program Files\Symantec\LiveUpdate\LuComServer_3_3.EXE (Symantec Corporation)
SRV - (WinDefend) – C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (TNaviSrv) – C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
SRV - (TosCoSrv) – C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
SRV - (TOSHIBA Bluetooth Service) – C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
SRV - (Swupdtmr) – c:\Toshiba\IVP\swupdate\swupdtmr.exe ()
SRV - (pinger) – C:\Toshiba\IVP\ISM\pinger.exe ()
SRV - (CFSvcs) – C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
SRV - (AgereModemAudio) – C:\Windows\System32\agrsmsvc.exe (Agere Systems)
SRV - (UleadBurningHelper) – C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
SRV - (TODDSrv) – C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
========== Driver Services (SafeList) ==========
DRV - (msvad_simple) – C:\Windows\System32\drivers\povrtdev.sys (MediaMall Technologies, Inc.)
DRV - (SASDIFSV) – C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (KLIF) – C:\Windows\System32\drivers\klif.sys (Kaspersky Lab)
DRV - (FTDIBUS) – C:\Windows\System32\drivers\ftdibus.sys (FTDI Ltd.)
DRV - (FTSER2K) – C:\Windows\System32\drivers\ftser2k.sys (FTDI Ltd.)
DRV - (RTL8169) – C:\Windows\System32\drivers\Rtlh86.sys (Realtek )
DRV - (atikmdag) – C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (Revoflt) – C:\Windows\System32\drivers\revoflt.sys (VS Revo Group)
DRV - (KLIM6) – C:\Windows\System32\drivers\klim6.sys (Kaspersky Lab)
DRV - (klbg) – C:\Windows\system32\drivers\klbg.sys (Kaspersky Lab)
DRV - (klmouflt) – C:\Windows\System32\drivers\klmouflt.sys (Kaspersky Lab)
DRV - (kl1) – C:\Windows\System32\drivers\kl1.sys (Kaspersky Lab)
DRV - (tifm21) – C:\Windows\System32\drivers\tifm21.sys (Texas Instruments)
DRV - (mcdbus) – C:\Windows\System32\drivers\mcdbus.sys (MagicISO, Inc.)
DRV - (bcm) – C:\Windows\System32\drivers\drxvi314.sys (Beceem communications pvt ltd.)
DRV - (bcmbusctr) – C:\Windows\System32\drivers\BcmBusCtr.sys (Beceem communications pvt ltd.)
DRV - (athr) – C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.)
DRV - (TVALZ) – C:\Windows\system32\DRIVERS\TVALZ_O.SYS (TOSHIBA Corporation)
DRV - (tos_sps32) – C:\Windows\system32\DRIVERS\tos_sps32.sys (TOSHIBA Corporation)
DRV - (AgereSoftModem) – C:\Windows\System32\drivers\AGRSM.sys (Agere Systems)
DRV - (tdcmdpst) – C:\Windows\System32\drivers\tdcmdpst.sys (TOSHIBA Corporation.)
DRV - (KR3NPXP) – C:\Windows\system32\drivers\kr3npxp.sys (TOSHIBA CORPORATION)
DRV - (ApfiltrService) – C:\Windows\System32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (LPCFilter) – C:\Windows\system32\DRIVERS\LPCFilter.sys (COMPAL ELECTRONIC INC.)
DRV - (KR10I) – C:\Windows\system32\drivers\kr10i.sys (TOSHIBA CORPORATION)
DRV - (KR10N) – C:\Windows\system32\drivers\kr10n.sys (TOSHIBA CORPORATION)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.bing.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.selectedEngine: "Bing"
FF - prefs.js..browser.startup.homepage: "http://en-US.start2.mozilla.com/firefox?client=firefox-a&rls;=org.mozilla:en-US:official"
FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0
FF - prefs.js..extensions.enabledItems: [removed]:9.0.0.736
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [removed]:1.0
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.1.94
FF - prefs.js..extensions.enabledItems: {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.1.94
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/02/24 14:16:58 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011/05/17 23:06:42 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011/05/17 23:06:42 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2011/09/20 18:36:29 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/01/21 15:11:21 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/11/29 23:18:38 | 000,000,000 | —D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/02/24 14:16:58 | 000,000,000 | —D | M]
[2010/06/14 13:14:32 | 000,000,000 | —D | M] (No name found) – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Extensions
[2010/06/14 13:14:32 | 000,000,000 | —D | M] (No name found) – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Extensions\[removed]
[2011/04/26 22:10:41 | 000,000,000 | —D | M] (No name found) – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Firefox\Profiles\7vmqx1pm.default\extensions
[2010/12/06 15:58:55 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Firefox\Profiles\7vmqx1pm.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/01/29 18:29:49 | 000,000,000 | —D | M] ("Savevid.com Easy Video Downloader") – C:\Users\skiesthelimit\AppData\Roaming\mozilla\Firefox\Profiles\7vmqx1pm.default\extensions\[removed]
[2012/01/21 14:39:30 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions
[2011/07/10 22:12:21 | 000,000,000 | —D | M] (Skype extension) – C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2009/10/25 14:29:44 | 000,000,000 | —D | M] (flashget3 Extension) – C:\Program Files\Mozilla Firefox\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2010/09/13 14:04:19 | 000,000,000 | —D | M] (Kaspersky URL Advisor) – C:\Program Files\Mozilla Firefox\extensions\[removed]
[2012/01/12 13:13:41 | 000,121,816 | —- | M] (Mozilla Foundation) – C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/10/03 04:06:04 | 000,476,904 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2007/12/17 11:16:14 | 000,065,536 | —- | M] ( ) – C:\Program Files\mozilla firefox\plugins\npkimi.dll
O1 HOSTS File: ([2011/12/08 13:55:38 | 000,001,255 | —- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 3dns.adobe.com 3dns-1.adobe.com 3dns-2.adobe.com 3dns-3.adobe.com 3dns-4.adobe.com activate.adobe.com activate-sea.adobe.com activate-sjc0.adobe.com activate.wip.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip1.adobe.com activate.wip2.adobe.com activate.wip3.adobe.com activate.wip4.adobe.com adobe-dns.adobe.com adobe-dns-1.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com adobe-dns-4.adobe.com
O1 - Hosts: 127.0.0.1 adobeereg.com practivate.adobe practivate.adobe.com practivate.adobe.newoa practivate.adobe.ntp practivate.adobe.ipp ereg.adobe.com ereg.wip.adobe.com ereg.wip1.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip2.adobe.com ereg.wip3.adobe.com ereg.wip4.adobe.com hl2rcv.adobe.com wip.adobe.com wip1.adobe.com wip2.adobe.com wip3.adobe.com wip4.adobe.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com wwis-dubc1-vip60.adobe.com www.wip.adobe.com www.wip1.adobe.com
O1 - Hosts: 127.0.0.1 www.wip2.adobe.com www.wip3.adobe.com www.wip4.adobe.com wwis-dubc1-vip60.adobe.com crl.verisign.net CRL.VERISIGN.NET ood.opsource.net
O1 - Hosts: 127.0.0.1 license.superantispyware.com
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (DivX Plus Web Player HTML5 ) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll (Kaspersky Lab)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll (Google Inc.)
O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll (Google Inc.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No CLSID value found.
O3 - HKLM\..\Toolbar: (&Google; Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Google; Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [HSON] C:\Program Files\Toshiba\TBS\HSON.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [HWSetup] \HWSetup.exe hwSetUP File not found
O4 - HKLM..\Run: [KeNotify] C:\Program Files\Toshiba\Utilities\KeNotify.exe ()
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SmoothView] C:\Program Files\Toshiba\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [AdobeBridge] File not found
O4 - HKCU..\RunOnce: [Shockwave Updater] C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1100465 -"Mozilla/5.0 (Windows NT 6.0; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" -"http://g1.racerinc.com/realm/fsca/game/video_poker_02/video_poker_02.php?WhatUID=2953617658=fsca⟨=en&gm;=video_poker_02" File not found
O4 - Startup: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop (2).ini ()
O4 - Startup: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk = C:\Program Files\MagicISO\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
O4 - Startup: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk = File not found
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Recovery present
O9 - Extra Button: &Virtual; keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: @shdoclc.dll,-866 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Windows\web\related.htm File not found
O9 - Extra 'Tools' menuitem : @shdoclc.dll,-864 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Windows\web\related.htm File not found
O9 - Extra Button: URLs c&heck; - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash…t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1EBD1AD5-B923-4FEF-90FB-BB0E04A48433}: DhcpNameServer = 192.168.2.1 192.168.2.1 [removed] [removed]
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C6B921E9-D3F4-4C94-84B9-61A5451FFCBD}: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) -C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\mzvkbd3.dll (Kaspersky Lab)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\klogon: DllName - (C:\Windows\system32\klogon.dll) - C:\Windows\System32\klogon.dll (Kaspersky Lab)
O24 - Desktop WallPaper: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 15:43:36 | 000,000,024 | —- | M] () - C:\autoexec.bat – [ NTFS ]
O33 - MountPoints2\{07b37944-8e77-11de-b922-0016d4fea2b3}\Shell - "" = AutoRun
O33 - MountPoints2\{07b37944-8e77-11de-b922-0016d4fea2b3}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O33 - MountPoints2\{19e75a36-cf07-11dc-8f5a-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\tcawtofo.exe
O33 - MountPoints2\{19e75a36-cf07-11dc-8f5a-0016d4fea2b3}\Shell\explore\Command - "" = E:\tcawtofo.exe
O33 - MountPoints2\{19e75a36-cf07-11dc-8f5a-0016d4fea2b3}\Shell\open\Command - "" = E:\tcawtofo.exe
O33 - MountPoints2\{1b89afba-e11b-11de-8c67-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\Setup.exe
O33 - MountPoints2\{ac48b85c-0aab-11df-b870-0016d4fea2b3}\Shell - "" = AutoRun
O33 - MountPoints2\{ac48b85c-0aab-11df-b870-0016d4fea2b3}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -a
O33 - MountPoints2\{af4442ce-73cd-11df-828c-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\InstallTomTomHOME.exe
O33 - MountPoints2\{af4442ee-73cd-11df-828c-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\slacker.synclauncher.exe
O33 - MountPoints2\{af4442ee-73cd-11df-828c-0016d4fea2b3}\Shell\slacker\command - "" = E:\slacker.synclauncher.exe
O33 - MountPoints2\{b52435af-c072-11dd-81a3-0016d4fea2b3}\Shell\AutoRun\command - "" = E:\autorun.exe
O33 - MountPoints2\{b52435af-c072-11dd-81a3-0016d4fea2b3}\Shell\phone\command - "" = E:\autorun.exe
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\WDSetup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.ac3acm - C:\Windows\System32\AC3ACM.acm (fccHandler)
Drivers32: msacm.ac3filter - C:\Windows\System32\ac3filter.acm ()
Drivers32: msacm.alf2cd - C:\Windows\System32\alf2cd.acm (NCT Company)
Drivers32: msacm.dvacm - C:\Program Files\Common Files\Ulead Systems\vio\DVACM.acm (Ulead Systems, Inc.)
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.scg726 - C:\Windows\System32\Scg726.acm (SHARP Corporation)
Drivers32: msacm.voxacm160 - C:\Windows\System32\vct3216.acm (Voxware, Inc.)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.dvsd - C:\Windows\System32\mcdvd_32.dll (MainConcept)
Drivers32: vidc.xvid - C:\Windows\System32\xvidvfw.dll ()
Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2012/01/28 01:34:18 | 000,584,192 | —- | C] (OldTimer Tools) – C:\Users\skiesthelimit\Desktop\OTL.exe
[2012/01/22 22:17:32 | 000,000,000 | —D | C] – C:\Program Files\Safari
[2012/01/22 02:09:47 | 000,000,000 | —D | C] – C:\Program Files\Bonjour
[2012/01/12 15:07:05 | 000,117,760 | —- | C] (Hewlett-Packard Company) – C:\Windows\System32\hpzll5mu.dll
[2012/01/12 14:56:30 | 000,372,736 | —- | C] (Hewlett-Packard) – C:\Windows\System32\hppldcoi.dll
[2012/01/12 14:56:29 | 000,729,088 | —- | C] (Hewlett-Packard) – C:\Windows\System32\hpowiax7.dll
[2012/01/12 14:56:29 | 000,303,104 | —- | C] (Hewlett-Packard Co.) – C:\Windows\System32\hpovst15.dll
[2012/01/12 14:56:28 | 000,581,632 | —- | C] (Hewlett-Packard Co.) – C:\Windows\System32\hpotscl6.dll
[2012/01/11 15:39:09 | 001,314,816 | —- | C] (Microsoft Corporation) – C:\Windows\System32\quartz.dll
[2012/01/11 15:39:07 | 000,497,152 | —- | C] (Microsoft Corporation) – C:\Windows\System32\qdvd.dll
[2012/01/06 21:08:44 | 000,000,000 | —D | C] – C:\Users\skiesthelimit\AppData\Roaming\Gogii
[2012/01/06 15:15:08 | 000,000,000 | —D | C] – C:\Users\skiesthelimit\AppData\Roaming\BlamGames
[2012/01/06 01:45:51 | 000,000,000 | —D | C] – C:\Users\skiesthelimit\Documents\Green Gamer
========== Files - Modified Within 30 Days ==========
[2012/01/28 02:05:03 | 000,000,900 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/01/28 01:29:53 | 000,003,568 | —- | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/01/28 01:29:53 | 000,003,568 | —- | M] () – C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/01/27 13:05:01 | 000,000,896 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/01/27 03:02:38 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2012/01/27 00:20:38 | 000,002,305 | —- | M] () – C:\Users\skiesthelimit\Application Data\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk
[2012/01/26 03:34:58 | 000,016,384 | —- | M] () – C:\Windows\System32\Ikeext.etl
[2012/01/25 00:31:33 | 000,248,832 | —- | M] () – C:\Users\skiesthelimit\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/01/24 16:45:11 | 000,645,944 | —- | M] () – C:\Windows\System32\perfh009.dat
[2012/01/24 16:45:11 | 000,121,042 | —- | M] () – C:\Windows\System32\perfc009.dat
[2012/01/22 23:17:54 | 000,008,004 | —- | M] () – C:\ProgramData\LUUnInstall.LiveUpdate
[2012/01/22 22:17:54 | 000,001,854 | —- | M] () – C:\Users\Public\Desktop\Safari.lnk
[2012/01/22 00:41:25 | 000,001,356 | —- | M] () – C:\Users\skiesthelimit\AppData\Local\d3d9caps.dat
[2012/01/12 15:20:59 | 000,141,052 | —- | M] () – C:\Windows\hpoins27.dat
[2012/01/09 22:15:59 | 000,074,820 | —- | M] () – C:\Windows\System32\iFunBox_Build_0438_0430_4f0bbb76.dmp
[2012/01/09 22:15:35 | 000,074,401 | —- | M] () – C:\Windows\System32\iFunBox_Build_0438_0430_4f0bbb4b.dmp
[2012/01/06 18:27:15 | 000,001,101 | —- | M] () – C:\Users\skiesthelimit\Desktop\TheKeepersLostProgenyCE - Shortcut.lnk
[2012/01/06 18:26:45 | 000,000,777 | —- | M] () – C:\Users\skiesthelimit\Desktop\MysteryValleyXT - Shortcut.lnk
[2012/01/02 19:07:40 | 004,403,920 | —- | M] () – C:\Windows\System32\FNTCACHE.DAT
========== Files Created - No Company Name ==========
[2012/01/22 22:17:54 | 000,002,305 | —- | C] () – C:\Users\skiesthelimit\Application Data\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk
[2012/01/22 22:17:54 | 000,001,854 | —- | C] () – C:\Users\Public\Desktop\Safari.lnk
[2012/01/22 22:17:54 | 000,001,854 | —- | C] () – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
[2012/01/12 14:57:13 | 000,141,052 | —- | C] () – C:\Windows\hpoins27.dat
[2012/01/12 14:57:13 | 000,000,932 | —- | C] () – C:\Windows\hpomdl27.dat
[2012/01/09 22:15:50 | 000,074,820 | —- | C] () – C:\Windows\System32\iFunBox_Build_0438_0430_4f0bbb76.dmp
[2012/01/09 22:15:18 | 000,074,401 | —- | C] () – C:\Windows\System32\iFunBox_Build_0438_0430_4f0bbb4b.dmp
[2012/01/06 18:27:15 | 000,001,101 | —- | C] () – C:\Users\skiesthelimit\Desktop\TheKeepersLostProgenyCE - Shortcut.lnk
[2012/01/06 18:26:45 | 000,000,777 | —- | C] () – C:\Users\skiesthelimit\Desktop\MysteryValleyXT - Shortcut.lnk
[2011/11/28 19:22:29 | 000,000,000 | —- | C] () – C:\Windows\ativpsrm.bin
[2011/11/27 16:27:11 | 000,000,224 | —- | C] () – C:\ProgramData\~NvdWxKDQoHGaJOr
[2011/11/27 16:27:10 | 000,000,320 | —- | C] () – C:\ProgramData\~NvdWxKDQoHGaJO
[2011/11/27 16:24:58 | 000,000,448 | —- | C] () – C:\ProgramData\NvdWxKDQoHGaJO
[2011/10/16 15:34:14 | 000,000,133 | —- | C] () – C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2011/09/22 06:51:13 | 000,000,132 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011/08/28 02:42:00 | 000,180,624 | —- | C] () – C:\Windows\System32\Primomonnt.dll
[2011/06/13 06:27:25 | 000,000,000 | —- | C] () – C:\Windows\nsreg.dat
[2011/02/09 22:03:48 | 000,000,314 | —- | C] () – C:\Windows\primopdf.ini
[2011/01/29 19:51:28 | 000,000,056 | —- | C] () – C:\Windows\System32\ezsidmv.dat
[2011/01/27 05:36:11 | 000,000,600 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\winscp.rnd
[2011/01/18 22:33:09 | 000,010,709 | —- | C] () – C:\Windows\hpwscr19.dat
[2011/01/07 20:13:22 | 000,000,000 | —- | C] () – C:\Windows\ToDisc.INI
[2011/01/04 18:09:49 | 000,000,437 | —- | C] () – C:\Windows\ulead32.ini
[2010/09/13 14:03:51 | 000,113,933 | —- | C] () – C:\Windows\System32\drivers\klin.dat
[2010/09/13 14:03:51 | 000,097,549 | —- | C] () – C:\Windows\System32\drivers\klick.dat
[2010/09/13 09:02:03 | 000,008,004 | —- | C] () – C:\ProgramData\LUUnInstall.LiveUpdate
[2010/09/01 00:42:28 | 000,000,000 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\bibstats
[2010/03/24 03:14:42 | 000,749,568 | —- | C] () – C:\Windows\System32\swfgen.dll
[2010/03/24 03:14:40 | 000,131,584 | —- | C] () – C:\Windows\System32\SpoonUninstall.exe
[2010/03/24 03:14:40 | 000,002,680 | —- | C] () – C:\Windows\System32\SpoonUninstall-FlashWebKit v2.0 Trial.dat
[2010/02/24 14:16:25 | 000,023,115 | —- | C] () – C:\Windows\hpqins15.dat
[2010/02/24 14:12:34 | 000,077,379 | —- | C] () – C:\Windows\hpqins05.dat
[2009/12/04 15:36:20 | 001,739,180 | —- | C] () – C:\Windows\System32\drivers\macxvi200.bin
[2009/12/04 15:36:07 | 000,000,258 | RHS- | C] () – C:\ProgramData\ntuser.pol
[2009/12/02 17:27:30 | 000,080,416 | —- | C] () – C:\Windows\System32\RtNicProp32.dll
[2009/10/25 22:02:41 | 000,001,356 | —- | C] () – C:\Users\skiesthelimit\AppData\Local\d3d9caps.dat
[2009/09/24 17:24:14 | 000,000,101 | —- | C] () – C:\Users\skiesthelimit\AppData\Local\fusioncache.dat
[2009/09/24 17:23:47 | 000,010,875 | —- | C] () – C:\Windows\ESOA.INI
[2009/09/24 17:23:47 | 000,003,679 | —- | C] () – C:\Windows\GrAddrBk.ini
[2009/09/24 17:23:47 | 000,000,995 | —- | C] () – C:\Windows\GRACE.INI
[2009/09/24 17:23:47 | 000,000,053 | —- | C] () – C:\Windows\PRSRVDLL.INI
[2009/09/24 17:22:25 | 000,000,383 | —- | C] () – C:\Windows\winpoint.ini
[2009/09/17 15:57:10 | 000,117,248 | —- | C] () – C:\Windows\System32\EhStorAuthn.dll
[2009/09/17 15:57:10 | 000,107,612 | —- | C] () – C:\Windows\System32\StructuredQuerySchema.bin
[2009/09/09 22:01:40 | 000,027,675 | —- | C] () – C:\Windows\System32\drivers\klopp.dat
[2009/08/03 19:07:42 | 000,403,816 | —- | C] () – C:\Windows\System32\OGACheckControl.dll
[2009/08/03 19:07:42 | 000,230,768 | —- | C] () – C:\Windows\System32\OGAEXEC.exe
[2009/06/17 16:45:45 | 000,073,220 | —- | C] () – C:\Windows\System32\EPPICPrinterDB.dat
[2009/06/17 16:45:45 | 000,031,053 | —- | C] () – C:\Windows\System32\EPPICPattern131.dat
[2009/06/17 16:45:45 | 000,029,114 | —- | C] () – C:\Windows\System32\EPPICPattern1.dat
[2009/06/17 16:45:45 | 000,027,417 | —- | C] () – C:\Windows\System32\EPPICPattern121.dat
[2009/06/17 16:45:45 | 000,021,021 | —- | C] () – C:\Windows\System32\EPPICPattern3.dat
[2009/06/17 16:45:45 | 000,015,670 | —- | C] () – C:\Windows\System32\EPPICPattern5.dat
[2009/06/17 16:45:45 | 000,013,280 | —- | C] () – C:\Windows\System32\EPPICPattern2.dat
[2009/06/17 16:45:45 | 000,010,673 | —- | C] () – C:\Windows\System32\EPPICPattern4.dat
[2009/06/17 16:45:45 | 000,004,943 | —- | C] () – C:\Windows\System32\EPPICPattern6.dat
[2009/06/17 16:45:45 | 000,001,140 | —- | C] () – C:\Windows\System32\EPPICPresetData_PT.dat
[2009/06/17 16:45:45 | 000,001,140 | —- | C] () – C:\Windows\System32\EPPICPresetData_BP.dat
[2009/06/17 16:45:45 | 000,001,137 | —- | C] () – C:\Windows\System32\EPPICPresetData_ES.dat
[2009/06/17 16:45:45 | 000,001,130 | —- | C] () – C:\Windows\System32\EPPICPresetData_FR.dat
[2009/06/17 16:45:45 | 000,001,130 | —- | C] () – C:\Windows\System32\EPPICPresetData_CF.dat
[2009/06/17 16:45:45 | 000,001,104 | —- | C] () – C:\Windows\System32\EPPICPresetData_EN.dat
[2009/06/17 16:45:45 | 000,000,097 | —- | C] () – C:\Windows\System32\PICSDK.ini
[2009/06/17 16:38:43 | 000,000,044 | —- | C] () – C:\Windows\EPSNX400.ini
[2009/06/14 14:16:22 | 000,000,000 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\AVSMediaPlayer.m3u
[2009/06/14 14:12:05 | 000,524,288 | —- | C] () – C:\Windows\System32\xvidcore.dll
[2009/06/14 14:12:05 | 000,139,264 | —- | C] () – C:\Windows\System32\xvidvfw.dll
[2009/05/26 14:39:40 | 000,088,576 | —- | C] () – C:\Windows\AmCap.exe
[2009/04/23 16:29:16 | 000,189,051 | —- | C] () – C:\Windows\System32\atiicdxx.dat
[2008/12/02 07:03:00 | 000,018,904 | —- | C] () – C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008/10/07 13:33:57 | 000,000,376 | —- | C] () – C:\Windows\ODBC.INI
[2008/06/24 14:52:25 | 000,025,710 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\UserTile.png
[2008/01/11 20:54:28 | 000,000,104 | —- | C] () – C:\Windows\OPHC.ini
[2007/12/09 22:43:32 | 000,001,946 | —- | C] () – C:\Users\skiesthelimit\AppData\Roaming\wklnhst.dat
[2007/08/19 07:18:56 | 000,004,096 | —- | C] () – C:\Users\skiesthelimit\AppData\Local\keyfile3.drm
[2007/08/05 21:46:47 | 000,248,832 | —- | C] () – C:\Users\skiesthelimit\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/05/16 19:40:56 | 000,204,800 | —- | C] () – C:\Windows\System32\IVIresizeW7.dll
[2007/05/16 19:40:55 | 000,200,704 | —- | C] () – C:\Windows\System32\IVIresizeA6.dll
[2007/05/16 19:40:55 | 000,192,512 | —- | C] () – C:\Windows\System32\IVIresizeP6.dll
[2007/05/16 19:40:55 | 000,192,512 | —- | C] () – C:\Windows\System32\IVIresizeM6.dll
[2007/05/16 19:40:55 | 000,188,416 | —- | C] () – C:\Windows\System32\IVIresizePX.dll
[2007/05/16 19:40:55 | 000,020,480 | —- | C] () – C:\Windows\System32\IVIresize.dll
[2007/05/16 18:46:42 | 000,000,000 | —- | C] () – C:\Windows\NDSTray.INI
[2007/05/16 18:30:13 | 000,036,864 | —- | C] () – C:\Windows\System32\HWS_Ctrl.dll
[2007/05/16 18:15:16 | 000,128,113 | —- | C] () – C:\Windows\System32\csellang.ini
[2007/05/16 18:15:16 | 000,045,056 | —- | C] () – C:\Windows\System32\csellang.dll
[2007/05/16 18:15:16 | 000,010,150 | —- | C] () – C:\Windows\System32\tosmreg.ini
[2007/05/16 18:15:16 | 000,007,671 | —- | C] () – C:\Windows\System32\cseltbl.ini
[2007/05/16 18:13:14 | 000,000,291 | —- | C] () – C:\Windows\RtDefLvl.ini
[2007/05/16 18:13:14 | 000,000,176 | —- | C] () – C:\Windows\System32\drivers\RTHDAEQ1.dat
[2007/05/16 18:13:14 | 000,000,176 | —- | C] () – C:\Windows\System32\drivers\RTHDAEQ0.dat
[2007/05/16 18:13:14 | 000,000,008 | —- | C] () – C:\Windows\System32\drivers\RtkHDAud.dat
[2007/04/24 22:57:36 | 000,159,744 | —- | C] () – C:\Windows\System32\atitmmxx.dll
[2007/04/24 22:32:44 | 003,107,788 | —- | C] () – C:\Windows\System32\atiumdva.dat
[2006/12/05 14:05:06 | 000,114,688 | —- | C] () – C:\Windows\System32\TosBtAcc.dll
[2006/11/02 06:57:28 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat
[2006/11/02 06:47:37 | 004,403,920 | —- | C] () – C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 06:35:32 | 000,005,632 | —- | C] () – C:\Windows\System32\sysprepMCE.dll
[2006/11/02 04:33:01 | 000,645,944 | —- | C] () – C:\Windows\System32\perfh009.dat
[2006/11/02 04:33:01 | 000,287,440 | —- | C] () – C:\Windows\System32\perfi009.dat
[2006/11/02 04:33:01 | 000,121,042 | —- | C] () – C:\Windows\System32\perfc009.dat
[2006/11/02 04:33:01 | 000,030,674 | —- | C] () – C:\Windows\System32\perfd009.dat
[2006/11/02 04:23:21 | 000,215,943 | —- | C] () – C:\Windows\System32\dssec.dat
[2006/11/02 02:58:30 | 000,043,131 | —- | C] () – C:\Windows\mib.bin
[2006/11/02 02:19:00 | 000,000,741 | —- | C] () – C:\Windows\System32\NOISE.DAT
[2006/11/02 01:40:29 | 000,013,750 | —- | C] () – C:\Windows\System32\pacerprf.ini
[2006/11/02 01:25:31 | 000,673,088 | —- | C] () – C:\Windows\System32\mlang.dat
[2005/11/23 15:55:42 | 000,024,576 | —- | C] () – C:\Windows\System32\SPCtl.dll
[2005/07/22 22:30:20 | 000,065,536 | —- | C] () – C:\Windows\System32\TosCommAPI.dll
[1999/01/22 12:46:58 | 000,065,536 | —- | C] () – C:\Windows\System32\MSRTEDIT.DLL
[1998/01/12 02:00:00 | 000,040,448 | —- | C] () – C:\Windows\System32\REGOBJ.DLL
========== LOP Check ==========
[2011/03/30 17:21:25 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\AMPSoft
[2009/06/11 13:54:09 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Application Data
[2011/05/17 07:14:59 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Az-Art
[2011/10/04 06:02:51 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Big Fish Games
[2009/06/11 15:04:25 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\BITS
[2012/01/06 15:15:08 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\BlamGames
[2011/12/06 11:39:59 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2009/03/14 03:23:42 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2008/01/11 20:52:46 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\eFax Messenger
[2011/10/08 09:12:15 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Elephant Games
[2009/06/11 13:57:40 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\FlashGetBHO
[2009/06/11 13:57:36 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\FlashgetSetup
[2011/04/28 16:19:31 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\FreeFox
[2009/07/19 17:28:19 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\GetRightToGo
[2007/08/11 21:06:52 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Global Forex Trading
[2012/01/06 21:08:44 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Gogii
[2011/01/04 06:32:51 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\gtk-2.0
[2011/07/24 23:24:19 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\ImgBurn
[2011/08/24 07:51:36 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\IrfanView
[2009/11/21 07:15:20 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\j2 Global
[2011/10/01 09:14:23 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Masque
[2011/09/08 00:03:53 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\mjusbsp
[2009/06/13 19:33:37 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\MxBoost
[2011/11/13 23:29:15 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Nitro PDF
[2011/08/28 02:41:48 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\OpenCandy
[2010/08/24 15:09:16 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\PeerNetworking
[2009/07/12 21:51:25 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\SmartDraw
[2011/09/10 12:43:10 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2007/12/09 22:43:34 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Template
[2009/02/16 13:35:55 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Toshiba
[2010/09/13 02:27:46 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Uniblue
[2012/01/28 01:38:10 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\uTorrent
[2011/11/19 01:54:17 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\VampireSagaHL
[2011/01/27 00:32:54 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\VSO
[2009/05/19 09:48:54 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\WD
[2007/11/20 11:56:41 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\WildTangent
[2010/02/25 13:43:06 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\WinBatch
[2011/01/23 19:58:01 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\Windows Live Writer
[2011/10/25 19:46:15 | 000,000,000 | —D | M] – C:\Users\skiesthelimit\AppData\Roaming\World-LooM
[2012/01/26 03:31:09 | 000,032,572 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2006/09/18 15:43:36 | 000,000,024 | —- | M] () – C:\autoexec.bat
[2009/04/11 00:36:36 | 000,333,257 | RHS- | M] () – C:\bootmgr
[2007/05/16 17:47:29 | 000,008,192 | R-S- | M] () – C:\BOOTSECT.BAK
[2006/09/18 15:43:37 | 000,000,010 | —- | M] () – C:\config.sys
[2012/01/28 00:49:29 | 2074,927,104 | -HS- | M] () – C:\pagefile.sys
< %systemroot%\Fonts\*.com >
[2006/11/02 06:37:12 | 000,026,040 | —- | M] () – C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006/11/02 06:37:12 | 000,026,489 | —- | M] () – C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006/11/02 06:37:12 | 000,029,779 | —- | M] () – C:\Windows\Fonts\GlobalSerif.CompositeFont
[2009/10/26 14:36:00 | 000,037,665 | —- | M] () – C:\Windows\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2006/09/18 15:37:34 | 000,000,065 | —- | M] () – C:\Windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2008/08/12 14:58:10 | 000,314,880 | —- | M] (Hewlett-Packard Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\hpfpp082.dll
[2007/11/05 19:06:06 | 000,278,016 | —- | M] (Hewlett-Packard Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\hpzpp5mu.dll
[2006/11/02 06:35:48 | 000,022,528 | —- | M] (Microsoft Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\jnwppr.dll
[2006/10/26 03:56:12 | 000,033,104 | —- | M] (Microsoft Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\msonpppr.dll
[2005/06/21 09:32:04 | 000,030,802 | —- | M] (Oki Data Corporation) – C:\Windows\system32\spool\prtprocs\w32x86\OPHCPP3.DLL
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2010/11/09 10:28:46 | 000,301,936 | —- | M] (Microsoft Corporation) – C:\Windows\WLXPGSS.SCR
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008/12/01 09:56:08 | 000,000,174 | -HS- | M] () – C:\Program Files\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2007/05/16 17:47:12 | 006,602,752 | —- | M] () – C:\Windows\System32\config\COMPONENTS.SAV
[2007/05/16 17:47:10 | 000,102,400 | —- | M] () – C:\Windows\System32\config\DEFAULT.SAV
[2007/05/16 17:47:12 | 000,020,480 | —- | M] () – C:\Windows\System32\config\SECURITY.SAV
[2007/05/16 17:47:24 | 015,556,608 | —- | M] () – C:\Windows\System32\config\SOFTWARE.SAV
[2007/05/16 17:47:27 | 006,012,928 | —- | M] () – C:\Windows\System32\config\SYSTEM.SAV
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
[2007/01/14 19:49:12 | 000,004,096 | -HS- | M] () – C:\Windows\system32\Thumbs.db
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2011/12/03 07:33:23 | 000,000,212 | -HS- | M] () – C:\Users\skiesthelimit\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
< %USERPROFILE%\Desktop\*.exe >
[2011/11/29 01:00:28 | 001,566,512 | —- | M] (Kaspersky Lab ZAO) – C:\Users\skiesthelimit\Desktop\123abc.com.exe
[2011/11/29 20:34:11 | 000,050,477 | —- | M] () – C:\Users\skiesthelimit\Desktop\Defogger.exe
[2011/10/16 07:22:40 | 000,584,192 | —- | M] (OldTimer Tools) – C:\Users\skiesthelimit\Desktop\OTL.exe
[2011/11/29 01:09:59 | 000,446,464 | —- | M] (OldTimer Tools) – C:\Users\skiesthelimit\Desktop\TFC.exe
[2011/11/28 22:59:47 | 000,684,297 | —- | M] () – C:\Users\skiesthelimit\Desktop\unhide.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2012-01-26 09:12:33
========== Alternate Data Streams ==========
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:5C6EBC69
@Alternate Data Stream - 165 bytes -> C:\ProgramData\TEMP:B4258C5D
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:B429712D
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:C5DF04A9
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:164561C8
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:2F8138B7
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:4673E9EA
< End of report >