Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

very difficult removal

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Re: very difficult removal

Unread postby ronecc » October 30th, 2010, 6:05 pm

Hi.
7 hours and Kapersky has not updated yet, so I have stopped it. Have checked with Norton and SuperAntispyware. Both have found nothing. What should I do now?
ronecc
Regular Member
 
Posts: 21
Joined: October 26th, 2010, 1:27 pm
Advertisement
Register to Remove

Re: very difficult removal

Unread postby peku006 » October 31st, 2010, 5:06 am

Hi Ron

Security Check
Please download Security Check ... by screen317. Save it to your desktop.
Alternate download site: Link 2
  1. Double click the SecurityCheck.exe icon to begin.
  2. Press the Space Bar when you see the "press any key to continue..." message.
    A Notepad results file will open automatically called checkup.txt
  3. Save "checkup.txt" to your desktop. (This output file is NOT automatically saved!)
  4. Please copy/paste the entire contents of the checkup.txt file into your next reply.

How's the computer running now? Any problems?

Thanks peku006
User avatar
peku006
MRU Emeritus
MRU Emeritus
 
Posts: 3357
Joined: May 14th, 2007, 2:18 pm
Location: Norway

Re: very difficult removal

Unread postby ronecc » October 31st, 2010, 6:48 am

Good Morning.
Here are the results from the Security check. I will see how the computer is running. I did not want to try any web sites until you said it was ok.
Ron
Results of screen317's Security Check version 0.99.6
Windows Vista Service Pack 2 (UAC is enabled)
Internet Explorer 8
``````````````````````````````
Antivirus/Firewall Check:

Windows Firewall Disabled!
Norton Internet Security
Microsoft Security Essentials
WMI entry may not exist for antivirus; attempting automatic update.
```````````````````````````````
Anti-malware/Other Utilities Check:

MVPS Hosts File
Malwarebytes' Anti-Malware
CCleaner
Java(TM) 6 Update 22
Adobe Flash Player 10.1.85.3
Adobe Reader 9.4.0
````````````````````````````````
Process Check:
objlist.exe by Laurent

Norton ccSvcHst.exe
Empowering Technology eSettings Service capuserv.exe
````````````````````````````````
DNS Vulnerability Check:

GREAT! (Not vulnerable to DNS cache poisoning)

``````````End of Log````````````
ronecc
Regular Member
 
Posts: 21
Joined: October 26th, 2010, 1:27 pm

Re: very difficult removal

Unread postby ronecc » October 31st, 2010, 6:51 am

Hi. Still the same, unfortunately. I have copied the page source, if it helps. Here it is below.
<!doctype html><html lang="en"><head><meta http-equiv="content-type" content="text/html; charset=UTF-8"><script>(function(){var h=document.documentElement;h.className+=" js";(new Image()).src='http://a.l.yimg.com/a/i/eu/sch/uk_srp_metro_20090914.png';})();</script><link rel="alternate" type="application/rss+xml" title="Yahoo! 404 - Page Not Found" href="http://api.search.yahoo.com/WebSearchService/rss/webSearch.xml?appid=yahoosearchwebrss&query=rc+23+overture&region=uk"><title>Yahoo! 404 - Page Not Found</title><link rel="stylesheet" type="text/css" href="http://a.l.yimg.com/a/lib/s7/srp_metro_yui3_201010131026.css"><style type="text/css">s,.sprt,#logo,#att_icon,#verizon_icon .ico,#at-tog,.h-gui-icon,.ssbang,.sschk,.ssochk,.ssbx,#ss a.ss-remove,.ads a.pp-l,.news-nph,.stars-sm span,.stars-lg span,.thmbplay,.sc-promo-img,.sc-close{background-image:url(http://a.l.yimg.com/a/i/eu/sch/uk_srp_m ... 090914.png);}.alsotry{font-size:1.1em;}.msg404{background-color:#7B0099;color:#FFF;margin-left:197px;padding:5px;line-height:1.5em}.msg404 h1{font-size:138.5%;display:inline;margin-left:5px;*margin-left:0}.msg404 .ico{float:left;width:22px;height:22px;top:-2px;left:-2px;border:none;margin-right:2px}.msg404 .ico img{width:22px;height:22px;vertical-align:top;border:1px solid #7B0099}.msg404 a,.custom a:visited{color:#FFF}.msg404 p{margin-left:28px}.msg404 .relmsg{font-weight:bold}.msg404 .relmsg cite{font-weight:normal}</style></head><body id="ysch" class="firefox gecko windows v1_9"><div id="doc"><h1 class="off-left">Yahoo! Web Search</h1><div id="uh"><ul class="l"><li class="hi">Hi, <strong>ronandkate@rocket...</strong></li><li><a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBC4r_JnRG/SIG=1tf9c3etc/EXP=1288608543/**http%3a//login.yahoo.com/config/login%3flogout=1%26.intl=uk%26.src=srch%26.done=http%253A%252F%252Fuk.search.yahoo.com%252F404handler%253Fei%253DUTF-8%2526p%253Drc%252B23%252Boverture%2526url%253Dhttp%25253A%25252F%25252Frc23.overture.com%25252Fd%25252Fsr%25252F%25253Fxargs%25253D15KPjg1%2525252DhSmpamwr%2525252DpdrTKTuCGylsaxca5%2525252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%2525252DF%2525252DNwPOT%2525255FacfLvP6mPuPEQ%2525252DJQ1GMHOD%2525255Fyt2awI4%2525252DNqyjUNhEh%2525255Fca%2525255FrXknI9LP34PZG%2525252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%2525252D8eF7LZ3lR57Q2FLJkZk%2525255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%2525252DL8lcdcbkaFpaButE%2525255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%2525252D%2525255F6OW3aqEdrM%2525252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%2525255FQmuZUMTauQ55Ag%2525252E%2525252E%2526src%253Dtoolbar%2526nrd%253D1%2526fr2%253Dsignout" target="_top">Sign Out</a></li><li><a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBDIr_JnRG/SIG=11rql2i9b/EXP=1288608543/**http%3a//help.yahoo.com/l/uk/yahoo/search">Help</a></li></ul><ul class="r"><li><a href="http://uk.yahoo.com/set">Make Yahoo! your homepage</a></li><li><a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBDYr_JnRG/SIG=11l6odndm/EXP=1288608543/**http%3a//mail.yahoo.com/%3f.intl=uk">Mail</a></li></ul></div><div id="hd"><a id="logo" href="http://uk.yahoo.com/">Yahoo!</a><form id="sf" name="s" method="get" action="http://uk.search.yahoo.com/search;_ylt=A03uv8OfSc1M8jIBDor_JnRG" accept-charset="utf-8"><div class="bd"><ul id="tabs" class="tabs"><li class="on"><strong>Web</strong></li><li><a href="http://uk.images.search.yahoo.com/search/images;_ylt=A03uv8OfSc1M8jIBD4r_JnRG?ei=UTF-8&p=rc+23+overture&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&fr2=tab-web&p=rc+23+overture">Images</a></li><li><a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBEIr_JnRG/SIG=1oc65btfj/EXP=1288608543/**http%3a//uk.video.search.yahoo.com/search/video%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26fr2=tab-web%26p=rc%2b23%2boverture">Video</a></li><li><a href="http://uk.search.yahoo.com/ypredirect;_ylt=A03uv8OfSc1M8jIBEYr_JnRG?ei=UTF-8&p=rc+23+overture&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&fr2=tab-web&p=rc+23+overture">Local</a></li><li><a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBEor_JnRG/SIG=1onkj5kf0/EXP=1288608543/**http%3a//cgi.europe.yahoo.com/cgi/de/uk_kelk.cgi%3fcop=mss%26ei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26fr2=tab-web%26p=rc%2b23%2boverture">Shopping</a></li><li><a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBE4r_JnRG/SIG=1oa6ch15d/EXP=1288608543/**http%3a//uk.news.search.yahoo.com/search/news%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26fr2=tab-web%26p=rc%2b23%2boverture">News</a></li><li class="menu"><a id="vm-link" class="menu-link" href="http://uk.docs.yahoo.com/yahoo-search-services.html">More<s></s></a><div id="vm-menu" class="menu-bd"><ul><li><a href="http://uk.answers.yahoo.com/search/search_result;_ylt=A03uv8OfSc1M8jIBFIr_JnRG?ei=UTF-8&p=rc+23+overture&src=toolbar&nrd=1&fr2=tab-web&fr=&p=rc+23+overture">Answers</a></li><li><a href="http://uk.search.yahoo.com/web/advanced?ei=UTF-8&p=rc+23+overture&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&p=rc+23+overture">Advanced Search</a></li><li><a href="http://uk.search.yahoo.com/info/shortcuts">Search Shortcuts</a></li><li><a href="http://uk.search.yahoo.com/info/servicesandtools;_ylt=A03uv8OfSc1M8jIBFYr_JnRG">All Search Services</a></li></ul><hr><ul><li><a href="http://searchmarketing.yahoo.com/en_GB/srch/yahoo-search-marketing.php">Search Marketing</a></li></ul></div></li></ul><div id="sbx"><label for="yschsp" class="off-left">Search query</label><input type="text" class="sbq" id="yschsp" name="p" role="search" value="rc 23 overture" tabindex="1" autocomplete="off"><input type="submit" class="sbb" value="Search" tabindex="2"><input type="hidden" name="fr2" value="sb-top"></div><div id="so" class="menu"><a id="so-link" class="menu-link" href="http://uk.search.yahoo.com/preferences/preferences">Options<s></s></a><div id="so-menu" class="menu-bd"><ul><li><a href="http://uk.search.yahoo.com/web/advanced?ei=UTF-8&p=rc+23+overture&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&p=rc+23+overture">Advanced Search</a></li><li><a href="http://uk.search.yahoo.com/preferences/preferences?pref_done=http%3A%2F%2Fuk.search.yahoo.com%2F404handler%3Fei%3DUTF-8%26p%3Drc%2B23%2Boverture%26url%3Dhttp%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src%3Dtoolbar%26nrd%3D1&.bcrumb=ai75m1TAj4.">Preferences</a></li></ul><hr><ul><li><a href="http://uk.docs.yahoo.com/searchtour.html">Page Tour</a></li></ul></div></div><div role="application"><h2 class="off-left">Search Assist</h2><a id="at-tog" href="#">Toggle Search Assist</a><div id="atlr" role="status" aria-live="polite"></div><div id="at" class="sa-hidden"><div id="atgrad"></div><div id="at-l"><div id="atg"></div><div id="atf"></div></div><div id="at-r"><div id="atv"></div><div id="atlinks"><a href="http://uk.search.yahoo.com/preferences/preferences;_ylt=A03uv8OfSc1M8jIBFor_JnRG?page=search_assist&pref_done=http%3A%2F%2Fuk.search.yahoo.com%2F404handler%3Fei%3DUTF-8%26p%3Drc%2B23%2Boverture%26url%3Dhttp%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src%3Dtoolbar%26nrd%3D1&.bcrumb=ai75m1TAj4.">Settings</a></div></div></div></div></div><div class="ft"><ul id="ss"><li><input type="radio" name="rd" onclick="submit()" id="srd1" value="r1" checked="checked"><label for="srd1">the Web</label><input type="radio" name="rd" onclick="submit()" id="srd2" value="r2"><label for="srd2">only in UK</label><input type="radio" name="rd" onclick="submit()" id="srd3" value="r3"><label for="srd3">only in Ireland</label></li></ul></div></form></div><div id="bd" role="document"><div id="sidebar"><div class="hd"><div id="h-status" class="app sp"><h2 class="off-left">Search Pad</h2><div class="app-ico menu"><a id="h-status-icon-link" class="ico-c" href="#"><s id="h-status-icon" class="ico"></s><s class="ico-a"></s>Search Pad Options</a><div id="h-status-menu" class="menu-bd"><ul><li><a id="h-status-new" href="#">New&hellip;</a></li><li><a id="h-status-open" href="#">Open&hellip;</a></li><li class="h-enabled-only"><a id="h-status-save" href="#">Save&hellip;</a></li><li class="h-enabled-only"><a id="h-status-close" href="#">Close</a></li></ul><hr class="h-enabled-only"><h3 class="h-enabled-only">Recent Documents</h3><ul id="h-status-recent" class="h-enabled-only"></ul><hr><h3>Search Pad</h3><ul><li><a id="h-status-off" href="#">Turn Off</a><a id="h-status-on" href="#" class="hidden">Turn On</a></li><li><a href="http://uk.search.yahoo.com/preferences/preferences;_ylt=A03uv8OfSc1M8jIBHYr_JnRG?page=search_pad&pref_done=http%3A%2F%2Fuk.search.yahoo.com%2F404handler%3Fei%3DUTF-8%26p%3Drc%2B23%2Boverture%26url%3Dhttp%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src%3Dtoolbar%26nrd%3D1&.bcrumb=ai75m1TAj4.">Preferences</a></li><li><a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBHIr_JnRG/SIG=11r71opme/EXP=1288608543/**http%3a//uk.docs.yahoo.com/searchpad.html">About</a></li></ul></div></div><h3 class="app-lbl"><a id="h-status-title" href="#"><span id="h-status-view" class="hidden"><strong>View Notes</strong></span><span id="h-status-name">Search Pad</span></a></h3></div><div id="safety-status" class="app safety"><h2 class="app-lbl"><a href="http://uk.search.yahoo.com/preferences/preferences;_ylt=A03uv8OfSc1M8jIBIIr_JnRG?pref_done=http%3A%2F%2Fuk.search.yahoo.com%2F404handler%3Fei%3DUTF-8%26p%3Drc%2B23%2Boverture%26url%3Dhttp%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src%3Dtoolbar%26nrd%3D1&.bcrumb=ai75m1TAj4.#safesearch"><s class="ico"></s>SafeSearch - On</a></h2></div></div><div class="bd"><hr><h3 class="query"><span class="count"><strong id="resultCount">179,000</strong> results for</span><br><span class="query">rc 23 overture:</span></h3><h2 class="off-left">Search Refiners</h2><ul><li class="flt"><a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBG4r_JnRG?fr2=showall&p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1" class="ajax active" beacon="http://uk.wrs.yahoo.com/b.gif;_ylt=A03uv8OfSc1M8jIBG4r_JnRG"><span class="ico flt all"><s></s></span>Show All</a></li><li class="flt"><a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBF4r_JnRG?fr2=site&p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&vst=0&vs=youtube.com" class="ajax" beacon="http://uk.wrs.yahoo.com/b.gif;_ylt=A03uv8OfSc1M8jIBF4r_JnRG"><span class="ico flt"><img class="js" __src="http://a.l.yimg.com/a/i/us/search/favicon/y/o/youtube.com.png" alt=""><noscript><img class="nojs" src="http://a.l.yimg.com/a/i/us/search/favicon/y/o/youtube.com.png" alt=""></noscript></span>Youtube</a></li><li class="flt"><a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBGIr_JnRG?fr2=site&p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&vst=0&vs=shopping.com" class="ajax" beacon="http://uk.wrs.yahoo.com/b.gif;_ylt=A03uv8OfSc1M8jIBGIr_JnRG"><span class="ico flt"><img class="js" __src="http://a.l.yimg.com/a/i/us/search/favicon/s/h/shopping.com.png" alt=""><noscript><img class="nojs" src="http://a.l.yimg.com/a/i/us/search/favicon/s/h/shopping.com.png" alt=""></noscript></span>Shopping.com</a></li><li class="flt last"><a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBGYr_JnRG?fr2=site&p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&vst=0&vs=pocket-lint.com" class="ajax" beacon="http://uk.wrs.yahoo.com/b.gif;_ylt=A03uv8OfSc1M8jIBGYr_JnRG"><span class="ico flt"><img class="js" __src="http://a.l.yimg.com/a/i/us/search/default_favicon.gif" alt=""><noscript><img class="nojs" src="http://a.l.yimg.com/a/i/us/search/default_favicon.gif" alt=""></noscript></span>Pocket-lint</a></li></ul><hr><ul><li class="flt last"><a href="http://uk.search.yahoo.com/search;_ylt=A03uv8OfSc1M8jIBGor_JnRG?fr2=obj&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&p=rc+23+overture+refineobj:video&obj=video" class="ajax" beacon="http://uk.wrs.yahoo.com/b.gif;_ylt=A03uv8OfSc1M8jIBGor_JnRG"><span class="ico flt vid"><s></s></span>Video Sites</a></li></ul></div></div><div class="msg404"><span class="ico"><img __src="http://l.yimg.com/a/i/us/search/info22x22.png" alt="" class="js"><noscript><img class="nojs" src="http://l.yimg.com/a/i/us/search/info22x22.png" alt=""></noscript></span><h1>Sorry, the page you were looking for could not be found </h1><p class="relmsg">Showing related results for: <cite>http://rc23.overture.com/d/sr/?xargs=15KPjg1%2DhSmpamwr%2DpdrTKT...</cite></p></div><div id="results"><div id="super"></div><style type="text/css">#web .ext{font-size:85%;color:#0000de}#web .ext a:link{color:#0000de;text-decoration:none}#web .ext a:hover{text-decoration:underline}#web .format{color:#666}#web .format a:link{color:#0000de}.sm-plain .thmbplay,span.sm-ldg,a.sm-cls,span.sm-flg,a.sm-flg,a.sm-snd,a.sm-hlp,a.sm-ext,a.sm-ext-u,.bbl-cls,#ysch .yui-dialog .container-close,#ysch .yui-dialog div.on,.sm-ctl-b,.sm-ctl-t{background-image:url(http://a.l.yimg.com/a/i/us/sch/gr4/smsprt_20090407.png);background-repeat:no-repeat;font-size: 0;}.sm-bd{position:relative}.sm-flash .sm-hd{width:72%}.sm-flash .sm-r .sm-i{width:77%}.sm-flash .sm-media{border-color:#0000de;height:74px;margin-top:-15px;margin-right:1px;padding:1px;position:relative;width:98px}.v7_0 .sm-flash .sm-media,.v6_0 .sm-flash .sm-media{*width:102px;*font-size:66.97px}.sm-flash .sm-media a{background:#000;text-decoration:none;width:98px;height:74px}.sm-flash .sm-media a img{max-width:98px;max-height:74px}.sm-flash .sm-media a:hover span{text-decoration:underline}.sm-flash .sm-media .sm-open img{filter:alpha(opacity=40);opacity:.4}.sm-flash .sm-media em,.sm-flash .sm-media span{color:#fff;bottom:1px;cursor:pointer;display:block;font-size:108%;left:0;padding:3px 0 3px 25px;margin:0 1px;position:absolute;right:0;text-align:left;white-space:nowrap;_width:73px}.sm-flash .sm-media em{background:#000;filter:alpha(opacity=60);opacity:.6;text-indent:-999px}.sm-flash .sm-media span.thmbplay{background-position:-183px -376px;bottom:3px;height:17px;left:3px;padding:0;position:absolute;width:17px}.sm-flash .sm-media .sm-open em,.sm-flash .sm-media .sm-open span{padding-left:0;text-align:center;_width:98px}.sm-flash .sm-media .sm-open span.thmbplay{background:none}.sm-expando{_display:none;_height:0;line-height:0;position:relative;width:518px}div.sm-open{_display:block;margin-top:5px}.sm-expando .sm-cls{height:16px;position:absolute;right:-27px;_right:-2px;top:0;width:16px}.sm-license{color:#666;font-size:85%;line-height:1em;margin-top:-10px}.sm-license a,#web ol li .sm-license a:link{color:#417bff}.sm-flash .sm-plain{border:0}.sm-flash .sm-plain a{background:transparent;outline:none}.sm-flash .sm-plain em{background:transparent;border-top:1px solid #999}.sm-flash .sm-plain span{color:#417bff}.sm-flash .sm-plain span.thmbplay{background-position:-80px -17px}.sm-flash .sm-plain .sm-open img{filter:alpha(opacity=100);opacity:1.0}</style><div id="cols"><div id="left"><div id="main"><div id="web" role="main"><h2>search results</h2><ol start="1"><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBIYr_JnRG;_ylu=X3oDMTByNGxmazk4BHNlYwNzcgRwb3MDMQRjb2xvA2lyZAR2dGlkAw--/SIG=12467lfj1/EXP=1288608543/**http%3a//www.[redacted]/penumbra-overture-procyon/">Releaselog | [redacted] " Penumbra <wbr /><b>Overture</b>-PROCYON</a></h3></div><div class="abstr">Penumbra: <b>Overture</b> is a first person adventure game which focuses on <b>...</b> March 29th, 2007 | <b>23</b>:16. The game is indeed fucking awesome, I must admit I didn't feel <b>...</b></div><span class=url>www.<b>[redacted]</b>/<wbr>penumbra-<b>overture</b>-<wbr />procyon</span> - <em>60k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBIor_JnRG/SIG=1reu0jjgr/EXP=1288608543/**http%3a//74.6.146.127/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.[redacted]/penumbra-overture-procyon/%26w=rc%2b23%2boverture%2bovertures%26d=CqgYhO_ZVrsQ%26icp=1%26.intl=uk%26sig=3qp4sEKKrZUMzm2UBINxtg--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBI4r_JnRG;_ylu=X3oDMTBybWpoN25zBHNlYwNzcgRwb3MDMgRjb2xvA2lyZAR2dGlkAw--/SIG=122cej6uf/EXP=1288608543/**http%3a//mac.wareseeker.com/free-overture-3.6.1/">Free <b>overture</b> 3.6.1 Download - mac <wbr />software</a></h3></div><div class="abstr">Free <b>overture</b> 3.6.1 Download - mac software at WareSeeker.com - The Persistence of Vision Ray Tracer or POV-Ray for short, is a ray tracer graphics software that can <b>...</b></div><span class=url><b>mac.wareseeker.com</b>/<wbr>free-<b>overture</b>-3.6.1</span> - <em>60k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBJIr_JnRG/SIG=1rb0kkmh3/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=mac.wareseeker.com/free-overture-3.6.1/%26w=rc%2b23%2boverture%2bovertures%26d=P9DGou_ZVrDT%26icp=1%26.intl=uk%26sig=jhO33VBs6.ohwuat3on7aw--">Cached</a></div></li><li><div class="res"><div> <span class="ext">[<a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBJYr_JnRG;_ylu=X3oDMTByazUxbmZ2BHNlYwNzcgRwb3MDMwRjb2xvA2lyZAR2dGlkAw--/SIG=1316f1sep/EXP=1288608543/**http%3a//www.datasheetcatalog.org/datasheet2/0/01gw4j1yy9pcqcq6dioz0y58y4wy.pdf">PDF</a>]</span> <h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBJYr_JnRG;_ylu=X3oDMTByazUxbmZ2BHNlYwNzcgRwb3MDMwRjb2xvA2lyZAR2dGlkAw--/SIG=1316f1sep/EXP=1288608543/**http%3a//www.datasheetcatalog.org/datasheet2/0/01gw4j1yy9pcqcq6dioz0y58y4wy.pdf">LM4780 <b>Overture</b></a></h3></div><div class="format">1048k - Adobe PDF - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBJor_JnRG/SIG=1sbobrrbu/EXP=1288608543/**http%3a//74.6.146.127/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.datasheetcatalog.org/datasheet2/0/01gw4j1yy9pcqcq6dioz0y58y4wy.pdf%26w=rc%2b23%2boverture%2bovertures%26d=X4N0qO_ZVmrt%26icp=1%26.intl=uk%26sig=iXH74IZ.p5M1OE2drzY4SQ--">View as html</a></div><div class="abstr">series <b>RC</b> load (large capacitive load due to long speaker <b>...</b> <b>23</b>. Physical Dimensions. inches (millimeters) unless otherwise noted. Non-Isolated TO-220 27 <b>...</b></div><span class=url><b>datasheetcatalog.org</b>/<wbr>datasheet2/0/<wbr />01gw4j1yy9pcqcq6dioz0y5<b>...</b></span></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBJ4r_JnRG;_ylu=X3oDMTBybWdtbzZ2BHNlYwNzcgRwb3MDNARjb2xvA2lyZAR2dGlkAw--/SIG=14ehlena1/EXP=1288608543/**http%3a//www.wfmt.com/main.taf%3ferube_fh=wttw%26wttw.submit.SimpSchedDay=1%26wttw.Channel=bsn%26wttw.Date=08%252F1%252F2006">WFMT - BSN Schedule</a></h3></div><div class="abstr"><b>23</b>. 24. 25. 26. 27. 28. 29. 30. October 2010. s. m. t. w. t. f. s. 1. 2. 3. 4. 5. 6. 7. 8. 9 <b>...</b> DG 459680-2 0:08:59 <b>Overture</b> tian Thielemann Schubert "Die Freunde von Toscana <b>...</b></div><span class=url><b>wfmt.com</b>/main.taf?<wbr>erube_<wbr />fh=wttw&amp;<b>...</b>&amp;wttw.Date=08/1/2006</span> - <em>111k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBKIr_JnRG/SIG=1ujno2rmm/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.wfmt.com/main.taf%253Ferube_fh%253Dwttw%2526wttw.submit.SimpSchedDay%253D1%2526wttw.Channel%253Dbsn%2526wttw.Date%253D08%25252F1%25252F2006%26w=rc%2b23%2boverture%2bovertures%26d=EYGTvu_ZVmNq%26icp=1%26.intl=uk%26sig=rw9sG4dSBNCkyPsyxPB8qw--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBKYr_JnRG;_ylu=X3oDMTBydXF0bjc3BHNlYwNzcgRwb3MDNQRjb2xvA2lyZAR2dGlkAw--/SIG=123pm8cnn/EXP=1288608543/**http%3a//searchmarketing.yahoo.com/nl/may05ts.php">Newsletter: Yahoo! Search Marketing <wbr />(formerly <b>Overture</b>) - May <b>...</b></a></h3></div><div class="abstr">Yahoo! Search Marketing Newsletter: The source for tools, tips and the latest industry news.</div><span class=url><b>searchmarketing.yahoo.com</b>/nl/<wbr /><wbr>may05ts.php</span> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBKor_JnRG/SIG=1rd2guddu/EXP=1288608543/**http%3a//74.6.146.127/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=searchmarketing.yahoo.com/nl/may05ts.php%26w=rc%2b23%2boverture%2bovertures%26d=WVM4tu_ZVthU%26icp=1%26.intl=uk%26sig=z.g9MSLzQWmtUoo2ubtsrA--">Cached</a></div></li><li><div class="res"><div> <span class="ext">[<a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBK4r_JnRG;_ylu=X3oDMTBybWh0ZnN2BHNlYwNzcgRwb3MDNgRjb2xvA2lyZAR2dGlkAw--/SIG=11slmu8lu/EXP=1288608543/**http%3a//www.national.com/ds/LM/LM3886.pdf">PDF</a>]</span> <h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBK4r_JnRG;_ylu=X3oDMTBybWh0ZnN2BHNlYwNzcgRwb3MDNgRjb2xvA2lyZAR2dGlkAw--/SIG=11slmu8lu/EXP=1288608543/**http%3a//www.national.com/ds/LM/LM3886.pdf">LM3886 <b>Overture</b> Audio Power Amplifier <wbr />Series High-Performance <b>...</b></a></h3></div><div class="format">873k - Adobe PDF - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBLIr_JnRG/SIG=1r62sf79e/EXP=1288608543/**http%3a//74.6.146.127/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.national.com/ds/LM/LM3886.pdf%26w=rc%2b23%2boverture%2bovertures%26d=Bq5cGe_ZVuL1%26icp=1%26.intl=uk%26sig=TimnwqmFn_yM2dH3N3XYqQ--">View as html</a></div><div class="abstr">the amplifier to drive the series <b>RC</b> load (large capacitive <b>...</b> <b>23</b>. Notes. LIFE SUPPORT POLICY. NATIONAL'S PRODUCTS ARE NOT AUTHORIZED FOR USE AS CRITICAL <b>...</b></div><span class=url>www.<b>national.com</b>/ds/LM/<wbr>LM3886.pdf</span></div></li><li><div id="sm-7" class="res sm sm-flash sm-noctl"><div class="sm-hd" id="sm-hd-7-1"><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBLor_JnRG;_ylu=X3oDMTByM2o5MmIwBHNlYwNzcgRwb3MDNwRjb2xvA2lyZAR2dGlkAw--/SIG=120fme6fe/EXP=1288608543/**http%3a//www.youtube.com/watch%3fv=tg6eH6Fb7YI">YouTube - How to build an Aeroplane in <wbr />4 minutes</a></h3></div><div class="sm-bd sm-r" id="sm-bd-7-1"><div class="sm-i"><div class="sm-abs">The building of a model aeroplane from the box to being ready to fly. 4 minutes of your time 4 months of mine !</div><div class="sm-url"><span class=url>www.<b>youtube.com</b>/watch?<wbr>v=tg6eH6Fb7YI</span> - <em>127k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBLYr_JnRG/SIG=1rem2t1s1/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=uk.youtube.com/watch%253Fv%253Dtg6eH6Fb7YI%26w=rc%2b23%2boverture%2bovertures%26d=JkslYO_ZVuKe%26icp=1%26.intl=uk%26sig=R6RUIzEdVIcjbA6.Yi6gbg--">Cached</a></div></div><div class="sm-media"><a id="sm-ext-7-1" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBL4r_JnRG/SIG=120fme6fe/EXP=1288608543/**http%3a//www.youtube.com/watch%3fv=tg6eH6Fb7YI" ><img class="sm-thumb hidden" _src="http://ec.yimg.com/ec/?url=http%3A%2F%2Fimg.youtube.com%2Fvi%2Ftg6eH6Fb7YI%2Fdefault.jpg&t=1288522143&ttl=43200&maxWidth=98&maxHeight=74&sig=RR90kxT2HBUJmbj4a9x7kQ--~B"/><noscript><img src="http://ec.yimg.com/ec/?url=http%3A%2F%2Fimg.youtube.com%2Fvi%2Ftg6eH6Fb7YI%2Fdefault.jpg&t=1288522143&ttl=43200&maxWidth=98&maxHeight=74&sig=RR90kxT2HBUJmbj4a9x7kQ--~B" alt="Video"></noscript><em>.</em><span class="thmbplay"></span><span>Play Video</span></a></div></div><div id="sm-exp-7-1" class="sm-expando"></div></div></li><li><div class="res"><div> <span class="ext">[<a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBMIr_JnRG;_ylu=X3oDMTByOGI2MXI2BHNlYwNzcgRwb3MDOARjb2xvA2lyZAR2dGlkAw--/SIG=12r0vkc25/EXP=1288608543/**https%3a//computation.llnl.gov/casc/Overture/henshaw/documentation/gf.pdf">PDF</a>]</span> <h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBMIr_JnRG;_ylu=X3oDMTByOGI2MXI2BHNlYwNzcgRwb3MDOARjb2xvA2lyZAR2dGlkAw--/SIG=12r0vkc25/EXP=1288608543/**https%3a//computation.llnl.gov/casc/Overture/henshaw/documentation/gf.pdf">Grid Functions for <b>Overture</b> User Guide, <wbr />Version 1 <b>...</b></a></h3></div><div class="format">245k - Adobe PDF - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBMYr_JnRG/SIG=1sdu7rtkm/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=https%3a//computation.llnl.gov/casc/Overture/henshaw/documentation/gf.pdf%26w=rc%2b23%2boverture%2bovertures%26d=ZAge6u_ZVr2V%26icp=1%26.intl=uk%26sig=eqzFMer3NZdJKqyKErO73g--">View as html</a></div><div class="abstr"><b>23</b>. 3.1.24 getGridFunctionTypeWithCompone<wbr>nts. <b>23</b>. 1. This work was partially supported by <b>...</b> Figure 1 gives an overview of the classes that make up <b>Overture</b>. <b>...</b></div><span class=url><b>computation.llnl.gov</b>/casc/<b>...</b><wbr>/henshaw/<wbr />documentation/gf.pdf</span></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBMor_JnRG;_ylu=X3oDMTByNzk4cXAwBHNlYwNzcgRwb3MDOQRjb2xvA2lyZAR2dGlkAw--/SIG=14521763g/EXP=1288608543/**http%3a//www.dogpile.com/dogpile_other/ws/redir/qcat=Web/qcoll=relevance/qkw=Overture%2520Monitor%2520Five%2520Bids"><b>Overture</b> Monitor Five Bids - Dogpile <wbr />Web Search</a></h3></div><div class="abstr">Find <b>Overture</b> Monitor Five Bids websites, images, videos, news and more. Get all the best search engines piled into one on Dogpile.com</div><span class=url><b>dogpile.com</b>/dogpile_other/<b>...</b><wbr>/<wbr />qkw=<b>Overture</b> Monitor Five Bids</span> - <em>131k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBM4r_JnRG/SIG=1u0l4ksnu/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.dogpile.com/dogpile_other/ws/redir/qcat%253DWeb/qcoll%253Drelevance/qkw%253DOverture%252520Monitor%252520Five%252520Bids%26w=rc%2b23%2boverture%2bovertures%26d=KIPmqO_ZVupC%26icp=1%26.intl=uk%26sig=d8PwDZ5AKJgH.QwaJWjimw--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBNIr_JnRG;_ylu=X3oDMTBzN25kaGFvBHNlYwNzcgRwb3MDMTAEY29sbwNpcmQEdnRpZAM-/SIG=1313ni7nm/EXP=1288608543/**http%3a//www.pressreleasepoint.com/overture-networks-achieves-mef-certification"><b>Overture</b> Networks Achieves MEF <wbr />Certification | PressReleasePoint</a></h3></div><div class="abstr">ISG Family of Products certified as compliant for Carrier Ethernet services RESEARCH TRIANGLE PARK, N.C., January <b>23</b>, 2007</div><span class=url><b>pressreleasepoint.com</b>/<wbr><b>overture</b>-networks-<wbr />achieves-mef-cert<b>...</b></span> - <em>66k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBNYr_JnRG/SIG=1saopii3r/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.pressreleasepoint.com/overture-networks-achieves-mef-certification%26w=rc%2b23%2boverture%2bovertures%26d=W8dDq-_ZVkw1%26icp=1%26.intl=uk%26sig=_ebhZLSStBEaCCEBlkaCSw--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBNor_JnRG;_ylu=X3oDMTBzcG12Mm9lBHNlYwNzcgRwb3MDMTEEY29sbwNpcmQEdnRpZAM-/SIG=11b983f7s/EXP=1288608543/**http%3a//www.sailasi.org/">American Sailing Institute - Southeast <wbr />Michigan Boating Club <b>...</b></a></h3></div><div class="abstr">Memebers and guests: - The October <b>23</b>, 2010 dinner meeting is at the Monaghan K <b>...</b> 6-16-2010: <b>Overture</b> has a temporary VHF radio to replace the original radio as <b>...</b></div><span class=url>www.<b>sailasi.org</b></span> - <em>62k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBN4r_JnRG/SIG=1qkt5q844/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.sailasi.org/%26w=rc%2b23%2boverture%2bovertures%26d=DMBRDO_ZVt9M%26icp=1%26.intl=uk%26sig=2g7rKnIT8dp1mFv2.UhZpw--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBOIr_JnRG;_ylu=X3oDMTBzNm9uM2F2BHNlYwNzcgRwb3MDMTIEY29sbwNpcmQEdnRpZAM-/SIG=14fbtv9fp/EXP=1288608543/**http%3a//www.wfmt.com/main.taf%3ferube_fh=wttw%26wttw.submit.SimpSchedDay=1%26wttw.Channel=bsn%26wttw.Date=10%252F25%252F2006">WFMT - BSN Schedule</a></h3></div><div class="abstr"><b>23</b>. 24. 25. 26. 27. 28. 29. 30. July 2010. s. m. t. w. t. f. s. 1. 2. 3. 4. 5. 6. 7. 8. 9. 10. 11. 12. 13. 14. 15. 16. 17 <b>...</b> 37 <b>Overture</b>* tr; Baroque Instrumental Ensemble Schreker "<b>Overture</b> to <b>...</b></div><span class=url><b>wfmt.com</b>/main.taf?<wbr>erube_<wbr />fh=wttw&amp;<b>...</b>&amp;wttw.Date=10/25/<wbr />2006</span> - <em>108k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBOYr_JnRG/SIG=1ukbg3esi/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.wfmt.com/main.taf%253Ferube_fh%253Dwttw%2526wttw.submit.SimpSchedDay%253D1%2526wttw.Channel%253Dbsn%2526wttw.Date%253D10%25252F25%25252F2006%26w=rc%2b23%2boverture%2bovertures%26d=X00FXe_ZVOiZ%26icp=1%26.intl=uk%26sig=Z403Y05RLk13lc7MKSVJZA--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBOor_JnRG;_ylu=X3oDMTBzanEyMWhtBHNlYwNzcgRwb3MDMTMEY29sbwNpcmQEdnRpZAM-/SIG=1226f7s56/EXP=1288608543/**http%3a//www.shopping.com/RC%2bberenson/products"><b>RC</b> Berenson - Building Supplies - <wbr />Product Reviews, Compare <b>...</b></a></h3></div><div class="abstr">Shop for <b>RC</b> Berenson Building Supplies and read product reviews. Find cheap prices on Berenson Building Supplies from a selection of Berenson brands and stores Amazon <b>...</b></div><span class=url>www.<b>shopping.com</b>/<b>RC</b>+berenson/<wbr>products</span> - <em>148k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBO4r_JnRG/SIG=1r6mg6fm0/EXP=1288608543/**http%3a//74.6.146.127/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.shopping.com/xCC-RC--berenson%26w=rc%2b23%2boverture%2bovertures%26d=EaTfwe_ZVuSZ%26icp=1%26.intl=uk%26sig=X3x7DqfSQNlVz8NyjvASGA--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBPIr_JnRG;_ylu=X3oDMTBzNnVwazkyBHNlYwNzcgRwb3MDMTQEY29sbwNpcmQEdnRpZAM-/SIG=12ns0od0r/EXP=1288608543/**http%3a//sluggerotoole.com/2010/05/10/sammy-in-early-overture-to-uup/">Sammy in early <b>overture</b> to UUP... " <wbr />Slugger O'Toole</a></h3></div><div class="abstr">Please have a look around and report any bugs you come across. <b>...</b> politically within the AP or some (i.e any remaining <b>RC</b> unionists ) in the SDLP. <b>...</b></div><span class=url><b>sluggerotoole.com</b>/2010/05/10/<wbr>sammy-in-<wbr />early-<b>overture</b>-to-uup</span> - <em>78k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBPYr_JnRG/SIG=1s10n25ft/EXP=1288608543/**http%3a//74.6.146.127/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=sluggerotoole.com/2010/05/10/sammy-in-early-overture-to-uup/%26w=rc%2b23%2boverture%2bovertures%26d=ICszj-_ZVujY%26icp=1%26.intl=uk%26sig=OFsYXZugcnO_AtDmtH999g--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBPor_JnRG;_ylu=X3oDMTBzaG01cWJvBHNlYwNzcgRwb3MDMTUEY29sbwNpcmQEdnRpZAM-/SIG=12bjuuuq2/EXP=1288608543/**http%3a//wsum.org/home/events/overture-center-open-house/">WSUM 91.7FM Student Radio: The Snake on <wbr />the Lake! - WSUM 91.7 <b>...</b></a></h3></div><div class="abstr">UW-Madison student radio station in Madison, Wisconsin covering a wide range of music, talk and sports programming.</div><span class=url><b>wsum.org</b>/home/events/<wbr><b>overture</b>-center-<wbr />open-house</span> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBP4r_JnRG/SIG=1rklg9b9m/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=wsum.org/home/events/overture-center-open-house/%26w=rc%2b23%2boverture%2bovertures%26d=Af3AXe_ZVkq4%26icp=1%26.intl=uk%26sig=r4QFMt1fMZA7xdMnF2Bzcw--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBQIr_JnRG;_ylu=X3oDMTBzOGdmZWZlBHNlYwNzcgRwb3MDMTYEY29sbwNpcmQEdnRpZAM-/SIG=1252t8j8a/EXP=1288608543/**http%3a//www.pocket-lint.com/archive/news/2009/10/8">News archive for 10/2009, page 8 - <wbr />Pocket-lint</a></h3></div><div class="abstr">Pocket-lint present an archive of gadget and gizmo reviews in their technology reviews <b>...</b> up to speed from XP, Vista or the 7 <b>RC</b> <b>23</b> October 2009 10:41 GMT Tweet. So, you want <b>...</b></div><span class=url>www.<b>pocket-lint.com</b>/archive/<wbr>news/2009/<wbr />10/8</span> - <em>58k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBQYr_JnRG/SIG=1rem22mmg/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.pocket-lint.com/archive/news/2009/10/8%26w=rc%2b23%2boverture%2bovertures%26d=TkiIQO_ZVnWu%26icp=1%26.intl=uk%26sig=OtCoizSy80dNy5759hykNw--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBQor_JnRG;_ylu=X3oDMTBzNG1waWFxBHNlYwNzcgRwb3MDMTcEY29sbwNpcmQEdnRpZAM-/SIG=11tggd3it/EXP=1288608543/**http%3a//linkedwords.com/se.php%3fkw=m%2brc">Search engines: m <b>rc</b> &lt;/&gt; <wbr />LinkedWords™ - Contextually find and <wbr /><b>...</b></a></h3></div><div class="abstr"><b>Overture</b>: m <b>rc</b>. Google Sponsored: m <b>rc</b>. World Wide Web - Search the whole web for " m <b>rc</b> " <b>...</b> © 2004-2007 | October <b>23</b>, 2010 | LinkedWords.com™. All Rights Reserved. <b>...</b></div><span class=url><b>linkedwords.com</b>/se.php?kw=m+<b>rc</b></span> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBQ4r_JnRG/SIG=1rhihhlhv/EXP=1288608543/**http%3a//74.6.146.127/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=linkedwords.com/se.php%253Fkw%253Dm%252520rc%26w=rc%2b23%2boverture%2bovertures%26d=REclT-_ZVsbI%26icp=1%26.intl=uk%26sig=jaCcSyrRFV.NWaWsZJClPQ--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBRIr_JnRG;_ylu=X3oDMTBzYTg1OTJ2BHNlYwNzcgRwb3MDMTgEY29sbwNpcmQEdnRpZAM-/SIG=133jfuc6n/EXP=1288608543/**http%3a//www.ditii.com/2008/07/01/yahoo-retires-overture-keyword-suggestion-tool/">Yahoo retires "<b>Overture</b> Keyword <wbr />Suggestion Tool"</a></h3></div><div class="abstr">The <b>Overture</b> tool has been plagued with issues for a long time, and the page now <b>...</b> <b>RC</b>-Escrow Build 7601.17104 Out In The Wild – Official <b>RC</b> Download Expected On October <b>23</b> " <b>...</b></div><span class=url><b>ditii.com</b>/<b>...</b><wbr>/yahoo-retires-<b>overture</b>-<wbr />keyword-suggestion-tool</span> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBRYr_JnRG/SIG=1sc0i49vs/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.ditii.com/2008/07/01/yahoo-retires-overture-keyword-suggestion-tool/%26w=rc%2b23%2boverture%2bovertures%26d=CTCGoO_ZVrfA%26icp=1%26.intl=uk%26sig=FrtvUwutuP8Sz7exquUuPg--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBRor_JnRG;_ylu=X3oDMTBzNW1rMWRnBHNlYwNzcgRwb3MDMTkEY29sbwNpcmQEdnRpZAM-/SIG=146qspllb/EXP=1288608543/**http%3a//www.mydigitallife.info/2008/07/17/free-100-yahoo-search-marketing-overture-clicks-credit/comment-page-1/el/">_ _ _ _ _ _ 100 Yahoo! _ _ _ _ _ _<wbr /><b>Overture</b>) _ _ _ _ _</a></h3></div><div class="abstr">4 _ _ _ _ _ _100 Yahoo! _ _ _ _ _ _<b>Overture</b>) _ _ _ _ _ <b>23</b>_ _ _ _ _ _ 2009 <b>23</b>:57. 4 $100 <b>...</b> Rudolf: 7 Profesional _ _ _ _ _ _thx _ _ _ _ _ _7 _ _ _ _ _ _<b>RC</b>) <b>...</b></div><span class=url><b>mydigitallife.info</b>/2008/07/17/<b>...</b><wbr>/<wbr />comment-page-1/el</span> - <em>69k</em> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBR4r_JnRG/SIG=1tf7bmmpf/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.mydigitallife.info/2008/07/17/free-100-yahoo-search-marketing-overture-clicks-credit/comment-page-1/el/%26w=rc%2b23%2boverture%2bovertures%26d=a3luBe_ZVOWz%26icp=1%26.intl=uk%26sig=3Ferl33oaJWq5SS.c4uWPw--">Cached</a></div></li><li><div class="res"><div><h3><a class="yschttl spt" href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBSIr_JnRG;_ylu=X3oDMTBzZ3FjNDRwBHNlYwNzcgRwb3MDMjAEY29sbwNpcmQEdnRpZAM-/SIG=130fee6ir/EXP=1288608543/**http%3a//www.highrankings.com/forum/index.php%3fshowtopic=1418%26mode=threaded"><b>Overture</b> &amp; Msn - High Rankings <wbr />Search Engine Optimization Forum</a></h3></div><div class="abstr">SEO forum for anyone looking to learn more about search marketing. For beginner SEOs through advanced. Come hang out with the best search marketers in the biz!</div><span class=url><b>highrankings.com</b>/forum/<wbr /><wbr>index.php?showtopic=1418&amp;<b>...</b></span> - <a href="http://uk.wrs.yahoo.com/_ylt=A03uv8OfSc1M8jIBSYr_JnRG/SIG=1sl1p7ipe/EXP=1288608543/**http%3a//74.6.239.67/search/cache%3fei=UTF-8%26p=rc%2b23%2boverture%26url=http%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src=toolbar%26nrd=1%26u=www.highrankings.com/forum/index.php%253Fshowtopic%253D1418%2526mode%253Dthreaded%26w=rc%2b23%2boverture%2bovertures%26d=VgK7Tu_ZVsMd%26icp=1%26.intl=uk%26sig=wX5vh29cUXuzXKFnoXMcVw--">Cached</a></div></li></ol></div></div></div><div id="right"></div></div><h2 class="off-left">More search results</h2><div id="pg"><strong>1</strong> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBSor_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=21" title="Results 21 - 40">2</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBS4r_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=41" title="Results 41 - 60">3</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBTIr_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=61" title="Results 61 - 80">4</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBTYr_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=81" title="Results 81 - 100">5</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBTor_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=101" title="Results 101 - 120">6</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBT4r_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=121" title="Results 121 - 140">7</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBUIr_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=141" title="Results 141 - 160">8</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBUYr_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=161" title="Results 161 - 180">9</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBUor_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=181" title="Results 181 - 200">10</a> <a href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBU4r_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=201" title="Results 201 - 220">11</a> <a id="pg-next" href="http://uk.search.yahoo.com/404handler;_ylt=A03uv8OfSc1M8jIBVIr_JnRG?p=rc+23+overture&ei=UTF-8&url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E&src=toolbar&nrd=1&xargs=0&pstart=1&b=21">Next &gt;</a></div></div><div class="bdc"><form method="get" name="sB" id="sB" action="http://uk.search.yahoo.com/search;_ylt=A03uv8OfSc1M8jIBVYr_JnRG" accept-charset="utf-8"><div id="sbx-bot"><label for="yschsp-bot" class="off-left">Search query</label><input type="text" class="sbq" id="yschsp-bot" name="p" role="search" value="rc 23 overture"><input type="submit" class="sbb" value="Search"><input type="hidden" name="fr2" value="sb-bot"></div></form></div></div><div id="ft" role="contentinfo"><span class="copyright">&copy; 2010 Yahoo! All rights reserved.</span> <a href="http://uk.docs.yahoo.com/searchtour.html">Page Tour</a> - <a href="http://info.yahoo.com/privacy/uk/yahoo/">Privacy Policy</a> - <a href="http://help.yahoo.com/l/uk/yahoo/search/abuse01.html">Report Abuse</a> - <a href="http://uk.docs.yahoo.com/info/terms.html">Terms of Service</a><br><p class="ssft">SearchScan displays McAfee alerts optimal for the Yahoo! Search user and does not include all McAfee SiteAdvisor red ratings.</p></div></div><script src="http://a.l.yimg.com/a/lib/s7/srp_metro_yui3_201009011029.js"></script><form><input type="text" class="hidden" id="h-session"></form><script>Y.use("srp",function(){Y.Search.SRP.init({"enable_sidebar_collapse":false,"pvid":"L1SXN1f4cAiqFUdSTMb_ywRgUYEjPkzNSZ8AA2EV","url_img_progress":"http:\/\/a.l.yimg.com\/a\/i\/us\/sch\/gr4\/sp-progress2.gif"},{"aria_loading_results":"Retrieving search results. Please wait.","aria_results_loaded":"New search results have been retrieved. Press control shift and down arrow key to jump to the first search result. Press control shift and up arrow key to jump back to the search box.","common.expando.playvideo":"Play Video","common.expando.closevideo":"Close Video","common.results.error":"Sorry, there was a problem retrieving search results. Please try again.","common.results.loading":"Loading results...","srp.title":"%q - Yahoo! Search Results"});});Y.Search.addEventListener(window,"load",function(){Y.use("srp-bing-beacon", function(){Y.Search.SRP.initBTrack(null);});});Y.use('loader','srp-lazy',function(){var a=true,b='http://a.l.yimg.com/a/combo?';Y.config=Y.merge(Y.config,{bootstrap:a,combine:a,comboBase:b,ignore:['base','dom','event-custom','skin-sam-tabview'],root:'yui/3.1.1/build/',groups:{a:{combine:a,comboBase:b,ext:false,root:'/',modules:{"searchmonkey":{"path":"s6\/srp_metro_yui3_searchmonkey_201003291253.js"},"searchmonkey-expando":{"path":"s6\/srp_metro_yui3_searchmonkey_expando_201006280257.js","requires":["flash-movie","flash-version","searchmonkey"]},"flash-movie":{"path":"s6\/flash_movie_yui3_201004272245.js"},"flash-version":{"path":"s6\/flash_version_yui3_201003291251.js"}}}}});Y._use('searchmonkey','searchmonkey-expando','flash-movie','flash-version',function(){(function(){Y.use('searchmonkey-expando',function(Y){Y.Search.Monkey.Expando.init()});}());(function(){Y.use('searchmonkey','searchmonkey-expando',function(Y){Y.Search.Monkey.init({"results":{"7":{"plugins":{"1":{"nm":"OpenVideo","id":"sss","def":1,"app_type":"expando","flash":{"text":{"collapse":"Close Video","expand":"Play Video"},"href":{"collapse":"http:\/\/uk.wrs.yahoo.com\/b.gif;_ylt=A03uv8OfSc1M8jIBVor_JnRG","expand":"http:\/\/uk.wrs.yahoo.com\/b.gif;_ylt=A03uv8OfSc1M8jIBV4r_JnRG"},"width":425,"height":350,"attributes":{"src":"http:\/\/www.youtube.com\/v\/tg6eH6Fb7YI\u0026autoplay=1","type":"application\/x-shockwave-flash","allowscriptaccess":"never","wmode":"transparent"},"params":{"movie":"http:\/\/www.youtube.com\/v\/tg6eH6Fb7YI\u0026autoplay=1","allowscriptaccess":"never","wmode":"transparent"}},"flex":false,"rmClkable":true,"cls":"sm-flash"}}}}})});}());});});Y.use("srp-assist",function(){Y.Search.SRP.Assist.init({"p":"rc 23 overture","gp":{"q":"rc 23 overture","u":"http:\/\/sugg.uk.search.yahoo.net\/gossip-uk-sayt?output=yjsonp\u0026nresults=10\u0026command=#{q}","i":null,"s":"http:\/\/uk.search.yahoo.com\/search;_ylt=A03uv8OfSc1M8jIBWIr_JnRG","r":[]},"vp":{"q":"rc 23 overture","s":"http:\/\/uk.search.yahoo.com\/search;_ylt=A03uv8OfSc1M8jIBWYr_JnRG?rp=rc+23+overture","v":[["Overture","rc 23 Overture","\u003Cb\u003EOverture\u003C\/b\u003E"],["Search Marketing","rc 23 overture \u0022Search Marketing\u0022","Search Marketing"],["downloads","rc 23 overture downloads","downloads"],["heat sink","rc 23 overture \u0022heat sink\u0022","heat sink"],["amplifier","rc 23 overture amplifier","amplifier"],["THD","rc 23 overture THD","THD"],["Supply Voltage","rc 23 overture \u0022Supply Voltage\u0022","Supply Voltage"],["power dissipation","rc 23 overture \u0022power dissipation\u0022","power dissipation"],["Output Power","rc 23 overture \u0022Output Power\u0022","Output Power"],["yahoo search marketing","rc 23 overture \u0022yahoo search marketing\u0022","yahoo search marketing"],["Search engines","rc 23 overture \u0022Search engines\u0022","Search engines"],["Windows 7","rc 23 overture \u0022Windows 7\u0022","Windows 7"],["LM4780","rc 23 overture LM4780","LM4780"],["Penumbra Overture","rc 23 \u0022Penumbra Overture\u0022","Penumbra \u003Cb\u003EOverture\u003C\/b\u003E"],["voltage","rc 23 overture voltage","voltage"],["NFO","rc 23 overture NFO","NFO"],["high frequency","rc 23 overture \u0022high frequency\u0022","high frequency"],["ground","rc 23 overture ground","ground"],["procyon","rc 23 overture procyon","procyon"],["Phil","rc 23 overture Phil","Phil"],["RLSLOG","rc 23 overture RLSLOG","RLSLOG"],["Chamber Orch","rc 23 overture \u0022Chamber Orch\u0022","Chamber Orch"],["RSS","rc 23 overture RSS","RSS"],["Console","rc 23 overture Console","Console"],["POV-Ray","rc 23 overture POV-Ray","POV-Ray"],["Facebook","rc 23 overture Facebook","Facebook"],["values","rc 23 overture values","values"],["grid","rc 23 overture grid","grid"],["model aeroplane","rc 23 overture \u0022model aeroplane\u0022","model aeroplane"],["CD fix","rc 23 overture \u0022CD fix\u0022","CD fix"],["overture monitor five bids","rc 23 \u0022overture monitor five bids\u0022","\u003Cb\u003Eoverture \u003C\/b\u003Emonitor five bids"],["Releaselog","rc 23 overture Releaselog","Releaselog"],["adventure game","rc 23 overture \u0022adventure game\u0022","adventure game"],["rapidshare","rc 23 overture rapidshare","rapidshare"],["Trash","rc 23 overture Trash","Trash"],["physics","rc 23 overture physics","physics"],["adventure","rc 23 overture adventure","adventure"],["physics system","rc 23 overture \u0022physics system\u0022","physics system"],["New World Sym","rc 23 overture \u0022New World Sym\u0022","New World Sym"],["openAL","rc 23 overture openAL","openAL"],["LM3886 Overture","rc 23 \u0022LM3886 Overture\u0022","LM3886 \u003Cb\u003EOverture\u003C\/b\u003E"],["Phi","rc 23 overture Phi","Phi"],["update\/patch","rc 23 overture update\/patch","update\/patch"],["geniesoft overture","rc 23 \u0022geniesoft overture\u0022","geniesoft \u003Cb\u003Eoverture\u003C\/b\u003E"],["MEF","rc 23 overture MEF","MEF"],["ready to fly","rc 23 overture \u0022ready to fly\u0022","ready to fly"],["plane","rc 23 overture plane","plane"],["great game","rc 23 overture \u0022great game\u0022","great game"],["realistic computer","rc 23 overture \u0022realistic computer\u0022","realistic computer"],["WSUM","rc 23 overture WSUM","WSUM"]]},"beacons":{"sa-op":"http:\/\/uk.wrs.yahoo.com\/b.gif;_ylt=A03uv8OfSc1M8jIBWor_JnRG","sa-cl":"http:\/\/uk.wrs.yahoo.com\/b.gif;_ylt=A03uv8OfSc1M8jIBW4r_JnRG","sa-aop":"http:\/\/uk.wrs.yahoo.com\/b.gif;_ylt=A03uv8OfSc1M8jIBXIr_JnRG"},"spaceid":"1182017279","testid":"","hostpvid":"L1SXN1f4cAiqFUdSTMb_ywRgUYEjPkzNSZ8AA2EV","ss":2,"zipWoeId":26787718},{"aria_available_suggestions":"Search suggestions are available, use up and down arrows to review them.","aria_no_available_suggestions":"No suggestions are available.","inputTitle":"Use the up and down arrow keys to select suggestions, or press down and then right to explore concepts.","linkTitle":"Search for #{q}","gossip_desc":"Search suggestions:","viewpoint_desc":"Explore concepts:","scroll_up":"Scroll up","scroll_down":"Scroll down","scroll_left":"Scroll left","scroll_right":"Scroll right","start_typing":"Start typing to see suggestions.","no_suggestions":"No available suggestions.","filter_desc":"Showing results containing:"});});Y.use('searchpad',function(){Y.Search.Pad.init({"config":{"aboutUrl":"http:\/\/uk.docs.yahoo.com\/searchpad.html","aboutUrlTrack":"http:\/\/uk.wrs.yahoo.com\/_ylt=A03uv8OfSc1M8jIBHIr_JnRG\/SIG=11r71opme\/EXP=1288608543\/**http%3a\/\/uk.docs.yahoo.com\/searchpad.html","ajaxParams":[],"appCssUrl":"http:\/\/a.l.yimg.com\/a\/lib\/s6\/searchpad_app_metro_yui3_201003291245.css","appJsUrl":"http:\/\/a.l.yimg.com\/a\/lib\/s6\/searchpad_app_metro_yui3_201006221739.js","hideUI":false,"loginUrl":{"url":"http:\/\/login.yahoo.com\/config\/login?.intl=uk\u0026.src=srch\u0026.done=http%3A%2F%2Fuk.search.yahoo.com%2F404handler%3Fei%3DUTF-8%26p%3Drc%2B23%2Boverture%26url%3Dhttp%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src%3Dtoolbar%26nrd%3D1","linkParams":{"slk":"signin"},"urlParams":null,"group":9,"type":0,"force":2,"context":null},"prefsUrl":"http:\/\/uk.search.yahoo.com\/preferences\/preferences;_ylt=A03uv8OfSc1M8jIBHYr_JnRG?page=search_pad\u0026pref_done=http%3A%2F%2Fuk.search.yahoo.com%2F404handler%3Fei%3DUTF-8%26p%3Drc%2B23%2Boverture%26url%3Dhttp%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src%3Dtoolbar%26nrd%3D1\u0026.bcrumb=ai75m1TAj4.","userSession":"true","appHtmlUrl":"\/ra","beaconUrl":"\/ra\/click","disableUrl":"\/ra\/disable","disengageUrl":"\/ra\/disengage","docInfoUrl":"\/ra\/docs","enableUrl":"\/ra\/enable","engageUrl":"\/ra\/engage","sessionInfoUrl":"\/ra\/session","switchUrl":"\/ra\/switch","abuseUrl":"http:\/\/help.yahoo.com\/l\/uk\/yahoo\/search\/abuse01.html;_ylt=A03uv8OfSc1M8jIBHor_JnRG?from_url=","feedbackUrl":"http:\/\/help.yahoo.com\/l\/uk\/yahoo\/search\/searchpad.html;_ylt=A03uv8OfSc1M8jIBH4r_JnRG","loginGuiUrl":"http:\/\/login.yahoo.com\/config\/login?.intl=uk\u0026.src=srch\u0026.done=http%3A%2F%2Fuk.search.yahoo.com%2F404handler%3Fei%3DUTF-8%26p%3Drc%2B23%2Boverture%26url%3Dhttp%253A%252F%252Frc23.overture.com%252Fd%252Fsr%252F%253Fxargs%253D15KPjg1%25252DhSmpamwr%25252DpdrTKTuCGylsaxca5%25252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%25252DF%25252DNwPOT%25255FacfLvP6mPuPEQ%25252DJQ1GMHOD%25255Fyt2awI4%25252DNqyjUNhEh%25255Fca%25255FrXknI9LP34PZG%25252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%25252D8eF7LZ3lR57Q2FLJkZk%25255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%25252DL8lcdcbkaFpaButE%25255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%25252D%25255F6OW3aqEdrM%25252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%25255FQmuZUMTauQ55Ag%25252E%25252E%26src%3Dtoolbar%26nrd%3D1%23sp%3D","searchUrl":"http:\/\/uk.search.yahoo.com\/404handler?ei=UTF-8\u0026url=http%3A%2F%2Frc23.overture.com%2Fd%2Fsr%2F%3Fxargs%3D15KPjg1%252DhSmpamwr%252DpdrTKTuCGylsaxca5%252DspqCJJ8GtZf5iMxXOF3aqvBnMF6RO1u%252DF%252DNwPOT%255FacfLvP6mPuPEQ%252DJQ1GMHOD%255Fyt2awI4%252DNqyjUNhEh%255Fca%255FrXknI9LP34PZG%252D13eqOga7BIdP5P2gav4ICzxyZ64I2gsK3w%252D8eF7LZ3lR57Q2FLJkZk%255F9rxZTVeMgEQ7NQed3qlVLgdO5AuN9wmfv1bS0SeBuSz24O2VqBUTd41djPatAEsbLvmIuQd%252DL8lcdcbkaFpaButE%255FInW7flsw2dGzT3KhcoBsfT5vMSWzQiR1%252D%255F6OW3aqEdrM%252D4Xr2FZCIeDizNxRmOAwiPeerbQudMzB47xaRIs0TRJPuyhb9DbeCG3FlbyosqZKEf4Y22kXFzyw%255FQmuZUMTauQ55Ag%252E%252E\u0026src=toolbar\u0026nrd=1","abUrl":"ygsh\/ab.php","validateCaptchaUrl":"ygsh\/validcaptcha.php","alertImgUrl":"http:\/\/a.l.yimg.com\/a\/i\/nt\/ic\/ut\/bsc\/alrt16_1.gif","prgImgUrl":"http:\/\/a.l.yimg.com\/a\/i\/us\/sch\/gr4\/sp-progress2.gif","delUrl":"\/ra\/delete","emailFormUrl":"\/ra\/eform","emailUrl":"\/ra\/email","lookupUrl":"\/ra\/lookup","msgUrl":"\/ra\/dialog","newUrl":"\/ra\/new","openUrl":"\/ra\/open","printUrl":"\/ra\/print","publishUrl":"\/ra\/publish","renameUrl":"\/ra\/rename","saveUrl":"\/ra\/save","thumbUrl":"\/ra\/thumbs"},"session":{"bcrumb":"ai75m1TAj4.","documentId":null,"enabled":true,"engaged":false,"expires":1800,"loggedIn":true,"prompt":0,"science":true,"skey":"1p93_b4oPCBNnq0g8UPYUw--","skey2":"oYEqJO5bHNUQ5Xa.q1xPTA--","ssid":"gf12pVf4cAiqFUdSTMb_yws.UYEjPkzNR9AADFkK","turnoff":false}},{"document":{"config":{"thumbNew":"http:\/\/a.l.yimg.com\/a\/i\/us\/sch\/gr3\/note_prmpt.png","thumbNone":"http:\/\/a.l.yimg.com\/a\/i\/us\/sch\/gr4\/h-noimage_20081211.png","thumbText":"http:\/\/a.l.yimg.com\/a\/i\/us\/sch\/gr4\/h-freenote_20081211.png"}}},{"hermes.connectError":"Sorry, an error occurred. Please reload the page and try again.","hermes.dialog.confirmEnable":"Yahoo! Search Pad is currently turn off. Would you like to turn it on?","hermes.misc.draft":"draft","hermes.sessionContinue":"Your Search Pad session will expire soon due to inactivity. Would you like to continue taking notes?","hermes.status.docError":"Error refreshing documents","hermes.status.noRecent":"No recent documents","hermes.status.unsaved":"If you turn Search Pad off, you will lose your unsaved changes. Are you sure you want to turn Search Pad off?","hermes.untitled":"Untitled"});});Y.Search.addEventListener(window,'load',function(){setTimeout(function(){Y.use('simple-loader',function(){Y.Search.Loader.js('http://a.l.yimg.com/a/lib/s6/yui-3.1.1-lazy_201008121144.js','http://a.l.yimg.com/a/lib/s7/srp_metro_lazy_yui3_201010132202.js','http://a.l.yimg.com/a/lib/s6/searchpad_201006280129.js');});},0);});</script></body></html><script language=javascript>
if(window.yzq_p==null)document.write("<scr"+"ipt language=javascript src=http://l.yimg.com/d/lib/bc/bcr_2.0.4.js></scr"+"ipt>");

</script><script language=javascript>
if(window.yzq_p)yzq_p('P=L1SXN1f4cAiqFUdSTMb_ywRgUYEjPkzNSZ8AA2EV&T=17b8snbla%2fX%3d1288522144%2fE%3d1182017279%2fR%3duksrcgspw%2fK%3d5%2fV%3d1.1%2fW%3dJR%2fY%3dUKIE%2fF%3d2098606539%2fH%3dc2VydmVJZD0iTDFTWE4xZjRjQWlxRlVkU1RNYl95d1JnVVlFalBrek5TWjhBQTJFViIgdFN0bXA9IjEyODg1MjIxNDQyOTQxODQiIA--%2fS%3d1%2fJ%3dC3BFEE4D');
if(window.yzq_s)yzq_s();
</script><noscript><img width=1 height=1 alt="" src="http://row.bc.yahoo.com/b?P=L1SXN1f4cAiqFUdSTMb_ywRgUYEjPkzNSZ8AA2EV&T=17g296uhn%2fX%3d1288522144%2fE%3d1182017279%2fR%3duksrcgspw%2fK%3d5%2fV%3d3.1%2fW%3dJR%2fY%3dUKIE%2fF%3d1923424469%2fH%3dc2VydmVJZD0iTDFTWE4xZjRjQWlxRlVkU1RNYl95d1JnVVlFalBrek5TWjhBQTJFViIgdFN0bXA9IjEyODg1MjIxNDQyOTQxODQiIA--%2fQ%3d-1%2fS%3d1%2fJ%3dC3BFEE4D"></noscript>
<!-- fe13.gsp.search.ird.yahoo.com compressed/chunked Sun Oct 31 10:49:03 GMT 2010 -->
ronecc
Regular Member
 
Posts: 21
Joined: October 26th, 2010, 1:27 pm

Re: very difficult removal

Unread postby peku006 » October 31st, 2010, 8:00 am

Hi Ron

Download and run OTS

  • Download OTS by Oldtimer to your Desktop and double-click on it to extract the files.

      NOTE: You must be logged on to the system with an account that has Administrator privileges to run this program.
  • Close ALL OTHER PROGRAMS.
  • Double-click on OTS.exe to start the program (if you are running on Vista then right-click the program and choose Run as Administrator).
  • Click the Scan All Users checkbox on the toolbar.
  • Do not change any other settings.
  • Now click the Run Scan button on the toolbar.
  • Let it run unhindered until it finishes.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.
  • Close Notepad (saving the change if necessry).

Thanks peku006
User avatar
peku006
MRU Emeritus
MRU Emeritus
 
Posts: 3357
Joined: May 14th, 2007, 2:18 pm
Location: Norway

Re: very difficult removal

Unread postby ronecc » October 31st, 2010, 3:14 pm

Hi peku006. Here is the OTS file.
Code: Select all
OTS logfile created on: 31/10/2010 19:04:17 - Run 1
OTS by OldTimer - Version 3.1.40.0     Folder = C:\Users\Vista User\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18975)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
 
3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 57.00% Memory free
9.00 Gb Paging File | 8.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): c:\pagefile.sys 3113 4219d:\pagefile.sys 0 0 [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 51.99 Gb Total Space | 11.79 Gb Free Space | 22.68% Space Free | Partition Type: NTFS
Drive D: | 51.98 Gb Total Space | 37.24 Gb Free Space | 71.65% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
 
Computer Name: VISTAUSER-PC
Current User Name: Vista User
Logged in as Administrator.
 
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
 
[Processes - Safe List]
ots.exe -> C:\Users\Vista User\Desktop\OTS.exe -> [2010/10/31 19:00:54 | 000,641,536 | ---- | M] (OldTimer Tools)
rtkbtmnt.exe -> C:\Users\VISTAU~1\AppData\Local\Temp\RtkBtMnt.exe -> [2010/10/30 15:56:45 | 000,208,896 | ---- | M] (Realtek Semiconductor Corp.)
symcpcculaunchsvc.exe -> C:\Program Files\Norton PC Checkup\Engine\2.0.2.547\SymcPCCULaunchSvc.exe -> [2010/09/25 08:52:37 | 000,115,056 | ---- | M] (Symantec Corporation)
psiservice_2.exe -> c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -> [2010/03/10 13:26:48 | 000,189,728 | ---- | M] (Protexis Inc.)
ccsvchst.exe -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ccsvchst.exe -> [2010/02/26 00:21:50 | 000,126,392 | R--- | M] (Symantec Corporation)
sesvc.exe -> C:\Program Files\ShadowExplorer\sesvc.exe -> [2010/01/23 14:18:54 | 000,009,216 | ---- | M] (www.shadowexplorer.com)
googlequicksearchbox.exe -> C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe -> [2009/12/11 18:51:43 | 000,122,880 | ---- | M] (Google Inc.)
ccsvchst.exe -> C:\Program Files\Norton PC Checkup\Engine\2.0.2.547\ccSvcHst.exe -> [2009/08/24 22:49:41 | 000,126,392 | R--- | M] (Symantec Corporation)
explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 06:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation)
searchprotection.exe -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe -> [2008/07/11 17:06:38 | 000,223,984 | ---- | M] (Yahoo! Inc.)
acrotray.exe -> C:\Program Files\Adobe\Acrobat 7.0\Distillr\acrotray.exe -> [2008/04/23 02:08:13 | 000,483,328 | ---- | M] (Adobe Systems Inc.)
coreliomonitor.exe -> C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe -> [2007/10/30 18:52:34 | 000,016,200 | ---- | M] ()
edsservice.exe -> C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe -> [2007/01/02 18:58:58 | 000,457,512 | ---- | M] (HiTRSUT)
capuserv.exe -> C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe -> [2007/01/02 16:46:52 | 000,024,576 | ---- | M] ()
epowersvc.exe -> C:\Acer\Empowering Technology\ePower\ePowerSvc.exe -> [2007/01/02 09:33:24 | 000,135,168 | ---- | M] (acer)
enet service.exe -> C:\Acer\Empowering Technology\eNet\eNet Service.exe -> [2006/12/28 20:07:22 | 000,126,976 | ---- | M] (Acer Inc.)
erecoveryservice.exe -> C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe -> [2006/12/28 18:24:14 | 000,049,152 | ---- | M] (Acer Inc.)
elockserv.exe -> C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe -> [2006/12/22 14:43:18 | 000,024,576 | ---- | M] (Acer Inc.)
lmanager.exe -> C:\Program Files\Launch Manager\LManager.exe -> [2006/12/21 00:02:14 | 000,659,456 | ---- | M] (Dritek System Inc.)
mobilityservice.exe -> C:\Acer\Mobility Center\MobilityService.exe -> [2006/11/24 12:57:54 | 000,107,008 | ---- | M] ()
rthdvcpl.exe -> C:\Windows\RtHDVCpl.exe -> [2006/11/09 18:57:52 | 003,784,704 | ---- | M] (Realtek Semiconductor)
psiservice.exe -> C:\Windows\System32\PSIService.exe -> [2006/11/02 20:40:12 | 000,174,656 | ---- | M] ()
 
[Modules - Safe List]
ots.exe -> C:\Users\Vista User\Desktop\OTS.exe -> [2010/10/31 19:00:54 | 000,641,536 | ---- | M] (OldTimer Tools)
asoehook.dll -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\asoehook.dll -> [2010/09/20 19:26:01 | 000,415,088 | R--- | M] (Symantec Corporation)
comctl32.dll -> C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll -> [2010/08/31 15:43:52 | 001,686,016 | ---- | M] (Microsoft Corporation)
msvcr90.dll -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\microsoft.vc90.crt\msvcr90.dll -> [2009/07/12 08:02:02 | 000,653,120 | R--- | M] (Microsoft Corporation)
msvcp90.dll -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\microsoft.vc90.crt\msvcp90.dll -> [2009/07/12 08:02:00 | 000,569,664 | R--- | M] (Microsoft Corporation)
 
[Win32 Services - Safe List]
(XAudioService) XAudioService [Auto | Stopped] ->  -> File not found
(nosGetPlusHelper) nosGetPlusHelper [Unknown | Stopped] -> C:\Program Files\NOS\bin\getPlus_Helper_3001.dll -> File not found
(NMIndexingService) NMIndexingService [On_Demand | Stopped] -> C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -> File not found
(Norton PC Checkup Application Launcher) Norton PC Checkup Application Launcher [Auto | Running] -> C:\Program Files\Norton PC Checkup\Engine\2.0.2.547\SymcPCCULaunchSvc.exe -> [2010/09/25 08:52:37 | 000,115,056 | ---- | M] (Symantec Corporation)
(MsMpSvc) Microsoft Antimalware Service [Disabled | Stopped] -> C:\Program Files\Microsoft Security Essentials\MsMpEng.exe -> [2010/03/25 20:40:44 | 000,017,904 | ---- | M] (Microsoft Corporation)
(WPFFontCache_v0400) Windows Presentation Foundation Font Cache 4.0.0.0 [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -> [2010/03/18 12:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation)
(clr_optimization_v4.0.30319_32) Microsoft .NET Framework NGEN v4.0.30319_X86 [Auto | Stopped] -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -> [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation)
(PSI_SVC_2) Protexis Licensing V2 [Auto | Running] -> c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -> [2010/03/10 13:26:48 | 000,189,728 | ---- | M] (Protexis Inc.)
(NIS) Norton Internet Security [Unknown | Running] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ccSvcHst.exe -> [2010/02/26 00:21:50 | 000,126,392 | R--- | M] (Symantec Corporation)
(sesvc) ShadowExplorer Service [Auto | Running] -> C:\Program Files\ShadowExplorer\sesvc.exe -> [2010/01/23 14:18:54 | 000,009,216 | ---- | M] (www.shadowexplorer.com)
(FontCache) Windows Font Cache Service [On_Demand | Stopped] -> C:\Windows\System32\FntCache.dll -> [2009/09/25 01:27:04 | 000,793,088 | ---- | M] (Microsoft Corporation)
(PCCUJobMgr) Common Client Job Manager Service [Unknown | Running] -> C:\Program Files\Norton PC Checkup\Engine\2.0.2.547\ccSvcHst.exe -> [2009/08/24 22:49:41 | 000,126,392 | R--- | M] (Symantec Corporation)
(WinDefend) Windows Defender [Disabled | Stopped] -> C:\Program Files\Windows Defender\MpSvc.dll -> [2008/01/19 07:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation)
(eDataSecurity Service) eDataSecurity Service [Auto | Running] -> C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe -> [2007/01/02 18:58:58 | 000,457,512 | ---- | M] (HiTRSUT)
(eSettingsService) eSettings Service [Auto | Running] -> C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe -> [2007/01/02 16:46:52 | 000,024,576 | ---- | M] ()
(WMIService) ePower Service [Auto | Running] -> C:\Acer\Empowering Technology\ePower\ePowerSvc.exe -> [2007/01/02 09:33:24 | 000,135,168 | ---- | M] (acer)
(eNet Service) eNet Service [Auto | Running] -> C:\Acer\Empowering Technology\eNet\eNet Service.exe -> [2006/12/28 20:07:22 | 000,126,976 | ---- | M] (Acer Inc.)
(eRecoveryService) eRecovery Service [Auto | Running] -> C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe -> [2006/12/28 18:24:14 | 000,049,152 | ---- | M] (Acer Inc.)
(eLockService) eLock Service [Auto | Running] -> C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe -> [2006/12/22 14:43:18 | 000,024,576 | ---- | M] (Acer Inc.)
(MobilityService) MobilityService [Auto | Running] -> C:\Acer\Mobility Center\MobilityService.exe -> [2006/11/24 12:57:54 | 000,107,008 | ---- | M] ()
(ProtexisLicensing) ProtexisLicensing [Auto | Running] -> C:\Windows\System32\PSIService.exe -> [2006/11/02 20:40:12 | 000,174,656 | ---- | M] ()
 
[Driver Services - Safe List]
(ZTEusbser6k) ZTE Diagnostic Port [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ZTEusbser6k.sys -> File not found
(ZTEusbnmea) ZTE NMEA Port [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ZTEusbnmea.sys -> File not found
(ZTEusbmdm6k) ZTE Proprietary USB Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ZTEusbmdm6k.sys -> File not found
(XAudio) XAudio [Kernel | Auto | Stopped] -> C:\Windows\System32\DRIVERS\xaudio.sys -> File not found
(upperdev) upperdev [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\usbser_lowerflt.sys -> File not found
(UIUSys) Conexant Setup API [Kernel | Disabled | Stopped] -> C:\Windows\System32\DRIVERS\UIUSYS.SYS -> File not found
(NwlnkFwd) IPX Traffic Forwarder Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\nwlnkfwd.sys -> File not found
(NwlnkFlt) IPX Traffic Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\nwlnkflt.sys -> File not found
(mdmxsdk) mdmxsdk [Kernel | Auto | Stopped] -> C:\Windows\System32\DRIVERS\mdmxsdk.sys -> File not found
(IpInIp) IP in IP Tunnel Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ipinip.sys -> File not found
(hwusbfake) Huawei DataCard USB Fake [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ewusbfake.sys -> File not found
(hwdatacard) Huawei DataCard USB Modem and USB Serial [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ewusbmdm.sys -> File not found
(HSXHWAZL) HSXHWAZL [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\HSXHWAZL.sys -> File not found
(EraserUtilDrvI7) EraserUtilDrvI7 [Kernel | On_Demand | Stopped] -> C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilDrvI7.sys -> File not found
(catchme) catchme [Kernel | On_Demand | Stopped] -> C:\Users\VISTAU~1\AppData\Local\Temp\catchme.sys -> File not found
(blbdrive) blbdrive [Kernel | Disabled | Stopped] -> C:\Windows\System32\drivers\blbdrive.sys -> File not found
(IDSVix86) IDSVix86 [Kernel | System | Running] -> C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\IPSDefs\20101028.001\IDSvix86.sys -> [2010/10/19 20:36:22 | 000,353,840 | ---- | M] (Symantec Corporation)
(NAVEX15) NAVEX15 [Kernel | On_Demand | Running] -> C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\VirusDefs\20101031.002\NAVEX15.SYS -> [2010/09/30 16:09:19 | 001,371,184 | ---- | M] (Symantec Corporation)
(NAVENG) NAVENG [Kernel | On_Demand | Running] -> C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\VirusDefs\20101031.002\NAVENG.SYS -> [2010/09/30 16:09:19 | 000,086,064 | ---- | M] (Symantec Corporation)
(BHDrvx86) BHDrvx86 [Kernel | System | Running] -> C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\BASHDefs\20101001.001\BHDrvx86.sys -> [2010/08/31 22:57:04 | 000,692,272 | ---- | M] (Symantec Corporation)
(eeCtrl) Symantec Eraser Control driver [Kernel | System | Running] -> C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -> [2010/05/27 08:03:50 | 000,371,248 | ---- | M] (Symantec Corporation)
(EraserUtilRebootDrv) EraserUtilRebootDrv [Kernel | On_Demand | Running] -> C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -> [2010/05/27 08:03:50 | 000,102,448 | ---- | M] (Symantec Corporation)
(SASKUTIL) SASKUTIL [Kernel | System | Running] -> C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -> [2010/05/10 18:41:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
(SYMTDIv) Symantec Vista Network Dispatch Driver [Kernel | System | Running] -> C:\Windows\System32\Drivers\NIS\1108000.005\SYMTDIV.SYS -> [2010/05/06 04:01:59 | 000,339,504 | ---- | M] (Symantec Corporation)
(SymIM) Symantec Network Security Intermediate Filter Driver [Kernel | System | Running] -> C:\Windows\System32\drivers\SymIMV.sys -> [2010/05/06 04:01:44 | 000,044,080 | R--- | M] (Symantec Corporation)
(SymIRON) Symantec Iron Driver [Kernel | System | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\Ironx86.SYS -> [2010/04/29 05:03:51 | 000,116,784 | ---- | M] (Symantec Corporation)
(SymEFA) Symantec Extended File Attributes [File_System | Boot | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\SYMEFA.SYS -> [2010/04/22 03:02:20 | 000,173,104 | ---- | M] (Symantec Corporation)
(SRTSP) Symantec Real Time Storage Protection [File_System | System | Running] -> C:\Windows\System32\Drivers\NIS\1108000.005\SRTSP.SYS -> [2010/04/22 02:29:50 | 000,325,680 | ---- | M] (Symantec Corporation)
(SRTSPX) Symantec Real Time Storage Protection (PEL) [Kernel | System | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\SRTSPX.SYS -> [2010/04/22 02:29:50 | 000,043,696 | ---- | M] (Symantec Corporation)
(MpNWMon) Microsoft Malware Protection Network Driver [File_System | On_Demand | Stopped] -> C:\Windows\System32\drivers\MpNWMon.sys -> [2010/03/25 20:30:22 | 000,042,368 | ---- | M] (Microsoft Corporation)
(ccHP) Symantec Hash Provider [Kernel | System | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\ccHPx86.sys -> [2010/02/26 00:22:57 | 000,501,888 | ---- | M] (Symantec Corporation)
(SASDIFSV) SASDIFSV [Kernel | System | Running] -> C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -> [2010/02/17 18:25:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
(SymEvent) SymEvent [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\SYMEVENT.SYS -> [2010/02/12 16:53:19 | 000,124,976 | ---- | M] (Symantec Corporation)
(SymDS) Symantec Data Store [Kernel | Boot | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\SYMDS.SYS -> [2009/10/15 03:50:05 | 000,328,752 | R--- | M] (Symantec Corporation)
(usbaudio) USB Audio Driver (WDM) [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\USBAUDIO.sys -> [2009/04/11 04:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation)
(mcdbus) Driver for MagicISO SCSI Host Controller [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\mcdbus.sys -> [2008/07/28 17:19:28 | 000,116,736 | ---- | M] (MagicISO, Inc.)
(NVENETFD) NVIDIA nForce Networking Controller Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\nvmfdx32.sys -> [2007/11/18 03:39:50 | 001,040,544 | ---- | M] (NVIDIA Corporation)
(nvstor) nvstor [Kernel | Boot | Running] -> C:\Windows\system32\drivers\nvstor.sys -> [2007/01/05 21:59:42 | 000,035,920 | ---- | M] (NVIDIA Corporation)
(PSDNServ) PSDNSERVER [Kernel | Boot | Running] -> C:\Windows\system32\drivers\PSDNServ.sys -> [2007/01/02 18:59:24 | 000,016,680 | ---- | M] (HiTRUST)
(psdvdisk) psdvdisk [Kernel | Boot | Running] -> C:\Windows\system32\drivers\psdvdisk.sys -> [2007/01/02 18:59:20 | 000,060,712 | ---- | M] (HiTRUST)
(PSDFilter) PSDFilter [File_System | Boot | Running] -> C:\Windows\system32\DRIVERS\psdfilter.sys -> [2007/01/02 18:59:18 | 000,020,264 | ---- | M] (HiTRUST)
(int15) int15 [Kernel | Auto | Running] -> C:\Windows\System32\drivers\int15.sys -> [2007/01/02 16:43:34 | 000,076,584 | ---- | M] ()
(nvlddmkm) nvlddmkm [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nvlddmkm.sys -> [2006/12/20 20:50:00 | 004,448,160 | ---- | M] (NVIDIA Corporation)
(BCM43XX) Broadcom 802.11 Network Adapter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\BCMWL6.SYS -> [2006/12/19 19:18:28 | 000,534,016 | ---- | M] (Broadcom Corporation)
(BCM43XV) Broadcom Extensible 802.11 Network Adapter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\BCMWL6.SYS -> [2006/12/19 19:18:28 | 000,534,016 | ---- | M] (Broadcom Corporation)
(nvstor32) nvstor32 [Kernel | Boot | Running] -> C:\Windows\system32\DRIVERS\nvstor32.sys -> [2006/12/11 09:34:22 | 000,097,576 | ---- | M] (NVIDIA Corporation)
(NTIDrvr) Upper Class Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\NTIDrvr.sys -> [2006/12/07 12:04:45 | 000,006,144 | ---- | M] (NewTech Infosystems, Inc.)
(IntcAzAudAddService) Service for Realtek HD Audio (WDM) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\RTKVHDA.sys -> [2006/11/09 03:09:24 | 001,647,976 | ---- | M] (Realtek Semiconductor Corp.)
(DKbFltr) Dritek Keyboard Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\DKbFltr.sys -> [2006/11/03 04:29:38 | 000,021,264 | ---- | M] (Dritek System Inc.)
(ql2300) QLogic Fibre Channel Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql2300.sys -> [2006/11/02 09:51:45 | 000,900,712 | ---- | M] (QLogic Corporation)
(adp94xx) adp94xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adp94xx.sys -> [2006/11/02 09:51:38 | 000,420,968 | ---- | M] (Adaptec, Inc.)
(elxstor) elxstor [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\elxstor.sys -> [2006/11/02 09:51:34 | 000,316,520 | ---- | M] (Emulex)
(adpahci) adpahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpahci.sys -> [2006/11/02 09:51:32 | 000,297,576 | ---- | M] (Adaptec, Inc.)
(uliahci) uliahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\uliahci.sys -> [2006/11/02 09:51:25 | 000,235,112 | ---- | M] (ULi Electronics Inc.)
(iaStorV) Intel RAID Controller Vista [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iastorv.sys -> [2006/11/02 09:51:25 | 000,232,040 | ---- | M] (Intel Corporation)
(adpu320) adpu320 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu320.sys -> [2006/11/02 09:51:00 | 000,147,048 | ---- | M] (Adaptec, Inc.)
(ulsata2) ulsata2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata2.sys -> [2006/11/02 09:50:45 | 000,115,816 | ---- | M] (Promise Technology, Inc.)
(vsmraid) vsmraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\vsmraid.sys -> [2006/11/02 09:50:41 | 000,112,232 | ---- | M] (VIA Technologies Inc.,Ltd)
(ql40xx) QLogic iSCSI Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql40xx.sys -> [2006/11/02 09:50:35 | 000,106,088 | ---- | M] (QLogic Corporation)
(UlSata) UlSata [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata.sys -> [2006/11/02 09:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.)
(adpu160m) adpu160m [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu160m.sys -> [2006/11/02 09:50:35 | 000,098,408 | ---- | M] (Adaptec, Inc.)
(nvraid) nvraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nvraid.sys -> [2006/11/02 09:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation)
(nfrd960) nfrd960 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nfrd960.sys -> [2006/11/02 09:50:19 | 000,045,160 | ---- | M] (IBM Corporation)
(iirsp) iirsp [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iirsp.sys -> [2006/11/02 09:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH)
(SiSRaid4) SiSRaid4 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid4.sys -> [2006/11/02 09:50:16 | 000,071,784 | ---- | M] (Silicon Integrated Systems)
(aic78xx) aic78xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\djsvs.sys -> [2006/11/02 09:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.)
(arcsas) arcsas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arcsas.sys -> [2006/11/02 09:50:10 | 000,067,688 | ---- | M] (Adaptec, Inc.)
(LSI_SCSI) LSI_SCSI [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_scsi.sys -> [2006/11/02 09:50:10 | 000,065,640 | ---- | M] (LSI Logic)
(SiSRaid2) SiSRaid2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid2.sys -> [2006/11/02 09:50:10 | 000,038,504 | ---- | M] (Silicon Integrated Systems Corp.)
(HpCISSs) HpCISSs [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\hpcisss.sys -> [2006/11/02 09:50:10 | 000,037,480 | ---- | M] (Hewlett-Packard Company)
(arc) arc [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arc.sys -> [2006/11/02 09:50:09 | 000,067,688 | ---- | M] (Adaptec, Inc.)
(iteraid) ITERAID_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteraid.sys -> [2006/11/02 09:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.)
(iteatapi) ITEATAPI_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteatapi.sys -> [2006/11/02 09:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.)
(LSI_SAS) LSI_SAS [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_sas.sys -> [2006/11/02 09:50:05 | 000,065,640 | ---- | M] (LSI Logic)
(Symc8xx) Symc8xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\symc8xx.sys -> [2006/11/02 09:50:05 | 000,035,944 | ---- | M] (LSI Logic)
(LSI_FC) LSI_FC [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_fc.sys -> [2006/11/02 09:50:04 | 000,065,640 | ---- | M] (LSI Logic)
(Sym_u3) Sym_u3 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_u3.sys -> [2006/11/02 09:50:03 | 000,034,920 | ---- | M] (LSI Logic)
(Mraid35x) Mraid35x [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\mraid35x.sys -> [2006/11/02 09:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation)
(Sym_hi) Sym_hi [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_hi.sys -> [2006/11/02 09:49:56 | 000,031,848 | ---- | M] (LSI Logic)
(megasas) megasas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\megasas.sys -> [2006/11/02 09:49:53 | 000,028,776 | ---- | M] (LSI Logic Corporation)
(viaide) viaide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\viaide.sys -> [2006/11/02 09:49:30 | 000,017,512 | ---- | M] (VIA Technologies, Inc.)
(cmdide) cmdide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\cmdide.sys -> [2006/11/02 09:49:28 | 000,016,488 | ---- | M] (CMD Technology, Inc.)
(aliide) aliide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\aliide.sys -> [2006/11/02 09:49:20 | 000,014,952 | ---- | M] (Acer Laboratories Inc.)
(Brserid) Brother MFC Serial Port Interface Driver (WDM) [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserid.sys -> [2006/11/02 08:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.)
(BrUsbSer) Brother MFC USB Serial WDM Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brusbser.sys -> [2006/11/02 08:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.)
(BrFiltUp) Brother USB Mass-Storage Upper Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltup.sys -> [2006/11/02 08:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.)
(BrFiltLo) Brother USB Mass-Storage Lower Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltlo.sys -> [2006/11/02 08:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.)
(BrSerWdm) Brother WDM Serial driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserwdm.sys -> [2006/11/02 08:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.)
(BrUsbMdm) Brother MFC USB Fax Only Modem [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brusbmdm.sys -> [2006/11/02 08:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.)
(HSF_DPV) HSF_DPV [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\VSTDPV3.SYS -> [2006/11/02 07:41:50 | 000,987,648 | ---- | M] (Conexant Systems, Inc.)
(HSFHWAZL) HSFHWAZL [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\VSTAZL3.SYS -> [2006/11/02 07:41:49 | 000,200,704 | ---- | M] (Conexant Systems, Inc.)
(winachsf) winachsf [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\VSTCNXT3.SYS -> [2006/11/02 07:41:48 | 000,654,336 | ---- | M] (Conexant Systems, Inc.)
(ntrigdigi) N-trig HID Tablet Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ntrigdigi.sys -> [2006/11/02 07:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies)
(RTL8169) Realtek 8169 NT Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\Rtlh86.sys -> [2006/11/02 07:30:56 | 000,044,544 | ---- | M] (Realtek Corporation)
(E1G60) Intel(R) PRO/1000 NDIS 6 Adapter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\E1G60I32.sys -> [2006/11/02 07:30:54 | 000,117,760 | ---- | M] (Intel Corporation)
(athr) Atheros Extensible Wireless LAN device driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\athr.sys -> [2006/11/02 07:30:52 | 000,467,456 | ---- | M] (Atheros Communications, Inc.)
(SynTP) Synaptics TouchPad Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\SynTP.sys -> [2006/10/23 19:17:32 | 000,179,896 | ---- | M] (Synaptics, Inc.)
(ialm) ialm [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\igdkmd32.sys -> [2006/10/19 02:10:57 | 001,380,864 | ---- | M] (Intel Corporation)
(nvsmu) nvsmu [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nvsmu.sys -> [2006/09/15 16:44:18 | 000,011,520 | ---- | M] (NVIDIA Corporation)
(UBHelper) UBHelper [Kernel | Boot | Running] -> C:\Windows\System32\drivers\UBHelper.sys -> [2006/08/29 02:30:04 | 000,013,952 | ---- | M] ()
(tifm21) tifm21 [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\tifm21.sys -> [2006/07/06 21:44:00 | 000,168,448 | ---- | M] (Texas Instruments)
(Cam5607) Acer OrbiCam [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\BisonC07.sys -> [2005/11/29 22:20:00 | 000,792,368 | ---- | M] (Bison Electronics. Inc. )
 
[Registry - Safe List]
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> 
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://en.uk.acer.yahoo.com -> 
< Internet Explorer Settings [HKEY_CURRENT_USER\] > -> -> 
HKEY_CURRENT_USER\: Main\\"SearchMigratedDefaultName" -> Yahoo! Search -> 
HKEY_CURRENT_USER\: Main\\"SearchMigratedDefaultURL" -> http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 -> 
HKEY_CURRENT_USER\: Main\\"Start Page" -> http://uk.mg40.mail.yahoo.com/dc/launch?.gx=1&.rand=bhc5b30d493of -> 
HKEY_CURRENT_USER\: SearchURL\\"" -> http://uk.rd.yahoo.com/customize/ycomp/defaults/su/*http://uk.yahoo.com -> 
HKEY_CURRENT_USER\: "ProxyEnable" -> 0 -> 
< FireFox Settings [Prefs.js] > -> C:\Users\Vista User\AppData\Roaming\Mozilla\FireFox\Profiles\9nao40ic.default\prefs.js -> 
browser.search.defaultenginename -> "Yahoo" ->
browser.search.defaulturl -> "http://uk.search.yahoo.com/search?ei=UTF-8&fr=ytff-tyc&p=" ->
browser.search.param.yahoo-fr -> "moz2-ytff-tyc" ->
browser.search.param.yahoo-fr-cjkt -> "moz2-ytff-tyc" ->
browser.search.selectedEngine -> "Yahoo" ->
browser.startup.homepage -> "http://uk.yahoo.com/" ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 ->
extensions.enabledItems -> {0545b830-f0aa-4d7e-8820-50a4629a56fe}:4.4 ->
extensions.enabledItems -> {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1 ->
extensions.enabledItems -> 6 ->
extensions.enabledItems -> 2 ->
extensions.enabledItems -> 44 ->
extensions.enabledItems -> {BBDA0591-3099-440a-AA10-41764D9DB4DB}:2.0 ->
extensions.enabledItems -> {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}:4.6 ->
extensions.enabledItems -> {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.2.20100119091315 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 ->
keyword.URL -> "http://uk.search.yahoo.com/search?ei=UTF-8&fr=ytff-tyc&p=" ->
< FireFox Settings [User.js] > -> C:\Users\Vista User\AppData\Roaming\Mozilla\FireFox\Profiles\9nao40ic.default\user.js -> 
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
HKLM\software\mozilla\Firefox\Extensions ->  -> 
HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB} -> C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\IPSFFPLGN\ [C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\IPSFFPLGN\] -> [2010/05/26 19:46:22 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62} -> C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\COFFPLGN\ [C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\COFFPLGN\] -> [2010/02/12 16:54:46 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions ->  -> 
HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components -> C:\Program Files\Mozilla Firefox\components [C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS] -> [2010/10/29 09:41:18 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins -> C:\Program Files\Mozilla Firefox\plugins [C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS] -> [2010/10/29 09:41:18 | 000,000,000 | ---D | M]
< FireFox Extensions [User Folders] > -> 
  -> C:\Users\Vista User\AppData\Roaming\mozilla\Extensions -> [2008/11/25 14:20:50 | 000,000,000 | ---D | M]
  -> C:\Users\Vista User\AppData\Roaming\mozilla\Extensions\home2@tomtom.com -> [2008/11/25 14:20:50 | 000,000,000 | ---D | M]
  -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions -> [2010/10/31 10:50:48 | 000,000,000 | ---D | M]
No name found   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe} -> [2010/04/29 16:55:08 | 000,000,000 | ---D | M]
Microsoft .NET Framework Assistant   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} -> [2009/06/28 16:07:51 | 000,000,000 | ---D | M]
Google Toolbar for Firefox   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} -> [2010/10/13 13:21:11 | 000,000,000 | ---D | M]
Yahoo! Toolbar   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} -> [2010/10/19 17:46:42 | 000,000,000 | ---D | M]
Adobe DLM (powered by getPlus(R))   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7} -> [2009/09/15 10:29:12 | 000,000,000 | ---D | M]
  -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\toolbar_extras@uk.yahoo.com -> [2008/12/17 15:39:37 | 000,000,000 | ---D | M]
< FireFox SearchPlugins [User Folders] > -> 
 MyStart Search.xml -> C:\Users\Vista User\AppData\Roaming\Mozilla\FireFox\Profiles\9nao40ic.default\searchplugins\MyStart Search.xml -> [2009/08/31 15:58:34 | 000,002,149 | ---- | M] ()
< FireFox Extensions [Program Folders] > -> 
  -> C:\Program Files\Mozilla Firefox\extensions -> [2010/10/22 11:30:24 | 000,000,000 | ---D | M]
Java Console   -> C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} -> [2010/04/29 16:54:08 | 000,000,000 | ---D | M]
Java Console   -> C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} -> [2010/08/02 10:08:12 | 000,000,000 | ---D | M]
Java Console   -> C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} -> [2010/10/22 11:30:24 | 000,000,000 | ---D | M]
< HOSTS File > ([2010/10/30 02:06:04 | 000,623,384 | ---- | M] - 16500 lines) -> C:\Windows\System32\drivers\etc\HOSTS -> 
First 25 entries...
Reset Hosts
127.0.0.1  localhost
127.0.0.1  fr.a2dfp.net #[server down?]
127.0.0.1  m.fr.a2dfp.net #[server down?]
127.0.0.1  ad.a8.net #[server down?]
127.0.0.1  asy.a8ww.net
127.0.0.1  abcstats.com
127.0.0.1  a.abv.bg
127.0.0.1  adserver.abv.bg
127.0.0.1  adv.abv.bg
127.0.0.1  bimg.abv.bg
127.0.0.1  ca.abv.bg
127.0.0.1  www2.a-counter.kiev.ua
127.0.0.1  track.acclaimnetwork.com
127.0.0.1  accuserveadsystem.com
127.0.0.1  www.accuserveadsystem.com
127.0.0.1  achmedia.com
127.0.0.1  aconti.net
127.0.0.1  secure.aconti.net
127.0.0.1  www.aconti.net #[Dialer.Aconti]
127.0.0.1  ads.active.com
127.0.0.1  am1.activemeter.com
127.0.0.1  www.activemeter.com #[Tracking.Cookie]
127.0.0.1  ads.activepower.net
127.0.0.1  stat.active24stats.nl #[Tracking.Cookie]
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> 
{02478D38-C3F9-4EFB-9B51-7695ECA05670} [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll [&Yahoo! Toolbar Helper] -> [2008/07/28 10:46:28 | 000,882,416 | ---- | M] (Yahoo! Inc.)
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [Adobe PDF Reader Link Helper] -> [2004/12/14 01:56:50 | 000,063,136 | ---- | M] (Adobe Systems Incorporated)
{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll [Symantec NCO BHO] -> [2010/09/03 23:31:29 | 000,396,144 | R--- | M] (Symantec Corporation)
{6D53EC84-6AAE-4787-AEEE-F4628F01010C} [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ipsbho.dll [Symantec Intrusion Prevention] -> [2010/05/14 01:41:20 | 000,079,224 | R--- | M] (Symantec Corporation)
{AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Toolbar Helper] -> [2010/10/26 13:59:36 | 000,297,648 | ---- | M] (Google Inc.)
{AE7CD045-E861-484f-8273-0445EE161910} [HKLM] -> C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [Adobe PDF Conversion Toolbar Helper] -> [2006/12/18 04:18:14 | 000,231,160 | ---- | M] (Adobe Systems Incorporated)
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} [HKLM] -> C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [Google Toolbar Notifier BHO] -> [2010/10/26 14:00:10 | 000,843,832 | ---- | M] (Google Inc.)
{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll [SingleInstance Class] -> [2008/07/28 10:46:28 | 000,160,496 | ---- | M] (Yahoo! Inc)
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar -> 
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Toolbar] -> [2010/10/26 13:59:36 | 000,297,648 | ---- | M] (Google Inc.)
"{47833539-D0C5-4125-9FA8-0819E2EAAC93}" [HKLM] -> C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [Adobe PDF] -> [2006/12/18 04:18:14 | 000,231,160 | ---- | M] (Adobe Systems Incorporated)
"{5CBE3B7C-1E47-477e-A7DD-396DB0476E29}" [HKLM] -> C:\Windows\System32\eDStoolbar.dll [Acer eDataSecurity Management] -> [2007/01/02 18:51:56 | 000,151,552 | ---- | M] (HiTRUST)
"{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll [Norton Toolbar] -> [2010/09/03 23:31:29 | 000,396,144 | R--- | M] (Symantec Corporation)
"{EF99BD32-C1FB-11D2-892F-0090271D4F88}" [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll [Yahoo! Toolbar] -> [2008/07/28 10:46:28 | 000,882,416 | ---- | M] (Yahoo! Inc.)
< Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ -> 
ShellBrowser\\"{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}" [HKLM] -> C:\Windows\System32\eDStoolbar.dll [Acer eDataSecurity Management] -> [2007/01/02 18:51:56 | 000,151,552 | ---- | M] (HiTRUST)
WebBrowser\\"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Toolbar] -> [2010/10/26 13:59:36 | 000,297,648 | ---- | M] (Google Inc.)
WebBrowser\\"{47833539-D0C5-4125-9FA8-0819E2EAAC93}" [HKLM] -> C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [Adobe PDF] -> [2006/12/18 04:18:14 | 000,231,160 | ---- | M] (Adobe Systems Incorporated)
WebBrowser\\"{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll [Norton Toolbar] -> [2010/09/03 23:31:29 | 000,396,144 | R--- | M] (Symantec Corporation)
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> 
"Acrobat Assistant 7.0" -> C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe ["C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"] -> [2008/04/23 02:08:13 | 000,483,328 | ---- | M] (Adobe Systems Inc.)
"Corel File Shell Monitor" -> C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe [C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe] -> [2007/10/30 18:52:34 | 000,016,200 | ---- | M] ()
"Google Quick Search Box" -> C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe ["C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe"  /autorun] -> [2009/12/11 18:51:43 | 000,122,880 | ---- | M] (Google Inc.)
"LManager" -> C:\Program Files\Launch Manager\LManager.exe [C:\PROGRA~1\LAUNCH~1\LManager.exe] -> [2006/12/21 00:02:14 | 000,659,456 | ---- | M] (Dritek System Inc.)
"Malwarebytes Anti-Malware (reboot)" -> C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe ["C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript] -> [2010/04/29 14:39:32 | 001,090,952 | ---- | M] (Malwarebytes Corporation)
"NvCplDaemon" -> C:\Windows\System32\NvCpl.DLL [RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup] -> [2006/12/20 20:50:00 | 007,766,016 | ---- | M] (NVIDIA Corporation)
"NvMediaCenter" -> C:\Windows\System32\NvMcTray.DLL [RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit] -> [2006/12/20 20:50:00 | 000,081,920 | ---- | M] (NVIDIA Corporation)
"NvSvc" -> C:\Windows\System32\nvsvc.DLL [RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart] -> [2006/12/20 20:50:00 | 000,090,191 | ---- | M] (NVIDIA Corporation)
"RtHDVCpl" -> C:\Windows\RtHDVCpl.exe [RtHDVCpl.exe] -> [2006/11/09 18:57:52 | 003,784,704 | ---- | M] (Realtek Semiconductor)
"YSearchProtection" -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe ["C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"] -> [2008/07/11 17:06:38 | 000,223,984 | ---- | M] (Yahoo! Inc.)
< Run [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> 
"ISUSPM Startup" -> C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe ["C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup] -> [2005/08/11 15:30:30 | 000,249,856 | ---- | M] (Macrovision Corporation)
"SUPERAntiSpyware" -> C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE [C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe] -> [2010/10/30 21:12:36 | 002,424,560 | ---- | M] (SUPERAntiSpyware.com)
"swg" -> C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ["C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"] -> [2008/11/25 16:40:23 | 000,039,408 | ---- | M] (Google Inc.)
"YSearchProtection" -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe] -> [2008/07/11 17:06:38 | 000,223,984 | ---- | M] (Yahoo! Inc.)
< Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer -> 
< Software Policy Settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Internet Explorer -> 
< CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDrives" ->  [0] -> File not found
< CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
< CurrentVersion Policy Settings - Explorer [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDrives" ->  [0] -> File not found
< CurrentVersion Policy Settings - System [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> 
< Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> 
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> 
< Trusted Sites Domains [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> 
< Trusted Sites Ranges [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> 
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> 
{0E5F0222-96B9-11D3-8997-00104BD12D94} [HKLM] -> http://pcpitstop.com/betapit/PCPitStop.CAB [PCPitstop Utility] -> 
{1C11B948-582A-433F-A98D-A8C4D5CC64F2} [HKLM] -> http://bq.kp.2020.net/planner/Core/Player/2020PlayerAX_Win32.cab [20-20 3D Viewer] -> 
{30528230-99f7-4bb4-88d8-fa1d4f56a2ab} [HKLM] -> C:\Program Files\Yahoo!\Common\Yinsthelper.dll [Installation Support] -> 
{31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} [HKLM] -> http://host.cycore.net/plugins/windows/ie/Cult3D_IE_5.3.0.228.cab [Cult3D ActiveX Player] -> 
{4871A87A-BFDD-4106-8153-FFDE2BAC2967} [HKLM] -> http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.4.1.cab [DLM Control] -> 
{6218F7B5-0D3A-48BA-AE4C-49DCFA63D400} [HKLM] -> http://www.myheritage.com/Genoogle/Components/ActiveX/SearchEngineQuery.dll [CSEQueryObject Object] -> 
{8100D56A-5661-482C-BEE8-AFECE305D968} [HKLM] -> http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab [Facebook Photo Uploader 5 Control] -> 
{8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] -> 
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] -> 
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] -> 
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} [HKLM] -> http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab [Reg Error: Key error.] -> 
{F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} [HKLM] -> http://216.249.24.62/code/iPIX-ImageWell-ipix.cab [iPIX Media Send Class] -> 
{FFB3A759-98B1-446F-BDA9-909C6EB18CC7} [HKLM] -> http://utilities.pcpitstop.com/da2/PCPitStop2.cab [PCPitstop Exam] -> 
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ -> 
DhcpNameServer -> 192.168.1.254 -> 
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> 
{7689D157-F0B9-48DA-8B0C-235DB4510B51}\\DhcpNameServer -> 192.168.1.254   (Broadcom 802.11g Network Adapter) -> 
{ED5973AF-F337-492D-9BDD-9273F4F194FE}\\DhcpNameServer -> 192.168.10.1   (NVIDIA nForce Networking Controller) -> 
IE Styles -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Styles
"MaxScriptStatements" -> Reg Error: Invalid data type.
"Use My Stylesheet" -> Reg Error: Invalid data type.
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> 
*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> 
Explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 06:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> -> 
< ShellExecuteHooks [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks -> 
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}" [HKLM] -> Reg Error: Key error. [] -> File not found
< Domain Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List -> 
< Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List -> 
"C:\Program Files\BitTorrent\bittorrent.exe" -> C:\Program Files\BitTorrent\bittorrent.exe [C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent] -> File not found
< SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot -> 
< CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
"AutoRun" -> 1 -> 
"DisplayName" -> CD-ROM Driver -> 
"ImagePath" ->  [system32\DRIVERS\cdrom.sys] -> File not found
< Drives with AutoRun files > ->  -> 
C:\autoexec.bat [REM Dummy file for NTVDMPATH=%PATH%;C:\PROGRA~1\COMMON~1\MUVEET~1\030625 | ] -> C:\autoexec.bat [ NTFS ] -> [2006/12/07 12:05:10 | 000,000,074 | ---- | M] ()
< MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 -> 
< Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command -> 
comfile [open] -> "%1" %* -> 
exefile [open] -> "%1" %* -> 
< File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ -> 
.com [@ = comfile] -> "%1" %* -> 
.exe [@ = exefile] -> "%1" %* -> 
< File Associations - Select to Repair > -> HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>\ -> 
.com [@ = ComFile] -> Reg Error: Key error. -> File not found
.exe [@ = exefile] -> Reg Error: Key error. -> File not found
 
 
[Files/Folders - Created Within 30 Days]
 OTS.exe -> C:\Users\Vista User\Desktop\OTS.exe -> [2010/10/31 19:00:51 | 000,641,536 | ---- | C] (OldTimer Tools)
 TFC.exe -> C:\Users\Vista User\Desktop\TFC.exe -> [2010/10/30 15:50:29 | 000,446,464 | ---- | C] (OldTimer Tools)
 HOSTS -> C:\Users\Vista User\Documents\HOSTS -> [2010/10/30 14:38:29 | 000,000,000 | ---D | C]
 OTL.exe -> C:\Users\Vista User\Desktop\OTL.exe -> [2010/10/30 11:43:32 | 000,575,488 | ---- | C] (OldTimer Tools)
 combofix -> C:\Users\Vista User\Documents\combofix -> [2010/10/30 10:48:07 | 000,000,000 | ---D | C]
 $RECYCLE.BIN -> C:\$RECYCLE.BIN -> [2010/10/30 10:41:00 | 000,000,000 | -HSD | C]
 temp -> C:\Windows\temp -> [2010/10/30 10:40:55 | 000,000,000 | ---D | C]
 NIRCMD.exe -> C:\Windows\NIRCMD.exe -> [2010/10/30 10:24:31 | 000,031,232 | ---- | C] (NirSoft)
 SWREG.exe -> C:\Windows\SWREG.exe -> [2010/10/30 10:24:30 | 000,161,792 | ---- | C] (SteelWerX)
 SWSC.exe -> C:\Windows\SWSC.exe -> [2010/10/30 10:24:30 | 000,136,704 | ---- | C] (SteelWerX)
 ERDNT -> C:\Windows\ERDNT -> [2010/10/30 10:24:11 | 000,000,000 | ---D | C]
 Qoobox -> C:\Qoobox -> [2010/10/30 10:23:12 | 000,000,000 | ---D | C]
 SWXCACLS.exe -> C:\Windows\SWXCACLS.exe -> [2010/10/30 10:22:46 | 000,212,480 | ---- | C] (SteelWerX)
 32788R22FWJFW -> C:\32788R22FWJFW -> [2010/10/30 10:22:40 | 000,000,000 | ---D | C]
 hijack this -> C:\Users\Vista User\Desktop\hijack this -> [2010/10/26 18:45:24 | 000,000,000 | ---D | C]
 gameux.dll -> C:\Windows\System32\gameux.dll -> [2010/10/26 18:43:52 | 001,696,256 | ---- | C] (Microsoft Corporation)
 GameUXLegacyGDFs.dll -> C:\Windows\System32\GameUXLegacyGDFs.dll -> [2010/10/26 18:43:51 | 004,240,384 | ---- | C] (Microsoft)
 Apphlpdm.dll -> C:\Windows\System32\Apphlpdm.dll -> [2010/10/26 18:43:51 | 000,028,672 | ---- | C] (Microsoft Corporation)
 PCPitstop -> C:\ProgramData\PCPitstop -> [2010/10/26 12:02:22 | 000,000,000 | ---D | C]
 PCPitstop -> C:\Program Files\PCPitstop -> [2010/10/26 12:02:21 | 000,000,000 | ---D | C]
 MpSigStub.exe -> C:\Windows\System32\MpSigStub.exe -> [2010/10/25 17:30:55 | 000,222,080 | ---- | C] (Microsoft Corporation)
 Microsoft Security Essentials -> C:\Program Files\Microsoft Security Essentials -> [2010/10/25 17:27:45 | 000,000,000 | ---D | C]
 Map Overlays -> C:\Users\Vista User\Documents\Map Overlays -> [2010/10/25 16:42:10 | 000,000,000 | ---D | C]
 Hitman Pro 3.5 -> C:\Program Files\Hitman Pro 3.5 -> [2010/10/22 15:19:25 | 000,000,000 | ---D | C]
 Hitman Pro -> C:\ProgramData\Hitman Pro -> [2010/10/22 15:18:45 | 000,000,000 | ---D | C]
 javaws.exe -> C:\Windows\System32\javaws.exe -> [2010/10/22 11:30:21 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.)
 javaw.exe -> C:\Windows\System32\javaw.exe -> [2010/10/22 11:30:21 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.)
 java.exe -> C:\Windows\System32\java.exe -> [2010/10/22 11:30:21 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.)
 Windows Easy Transfer 7 -> C:\Program Files\Windows Easy Transfer 7 -> [2010/10/21 11:21:28 | 000,000,000 | ---D | C]
 www.shadowexplorer.com -> C:\Users\Vista User\AppData\Local\www.shadowexplorer.com -> [2010/10/20 17:25:02 | 000,000,000 | ---D | C]
 ShadowExplorer -> C:\Program Files\ShadowExplorer -> [2010/10/20 17:07:10 | 000,000,000 | ---D | C]
 Malwarebytes -> C:\Users\Vista User\AppData\Roaming\Malwarebytes -> [2010/10/20 15:32:03 | 000,000,000 | ---D | C]
 mbamswissarmy.sys -> C:\Windows\System32\drivers\mbamswissarmy.sys -> [2010/10/20 15:31:53 | 000,038,224 | ---- | C] (Malwarebytes Corporation)
 mbam.sys -> C:\Windows\System32\drivers\mbam.sys -> [2010/10/20 15:31:51 | 000,020,952 | ---- | C] (Malwarebytes Corporation)
 Malwarebytes' Anti-Malware -> C:\Program Files\Malwarebytes' Anti-Malware -> [2010/10/20 15:31:51 | 000,000,000 | ---D | C]
 Malwarebytes -> C:\ProgramData\Malwarebytes -> [2010/10/20 15:31:51 | 000,000,000 | ---D | C]
 NPE -> C:\Users\Vista User\AppData\Local\NPE -> [2010/10/19 14:01:42 | 000,000,000 | ---D | C]
 vlc -> C:\Users\Vista User\AppData\Roaming\vlc -> [2010/10/18 16:59:47 | 000,000,000 | ---D | C]
 SUPERAntiSpyware.com -> C:\Users\Vista User\AppData\Roaming\SUPERAntiSpyware.com -> [2010/10/16 13:48:19 | 000,000,000 | ---D | C]
 SUPERAntiSpyware.com -> C:\ProgramData\SUPERAntiSpyware.com -> [2010/10/16 13:48:19 | 000,000,000 | ---D | C]
 SUPERAntiSpyware -> C:\Program Files\SUPERAntiSpyware -> [2010/10/16 13:48:11 | 000,000,000 | ---D | C]
 wmploc.DLL -> C:\Windows\System32\wmploc.DLL -> [2010/10/15 09:37:06 | 008,147,456 | ---- | C] (Microsoft Corporation)
 netevent.dll -> C:\Windows\System32\netevent.dll -> [2010/10/15 09:36:42 | 000,017,920 | ---- | C] (Microsoft Corporation)
 t2embed.dll -> C:\Windows\System32\t2embed.dll -> [2010/10/15 09:36:26 | 000,157,184 | ---- | C] (Microsoft Corporation)
 win32k.sys -> C:\Windows\System32\win32k.sys -> [2010/10/15 09:36:23 | 002,038,272 | ---- | C] (Microsoft Corporation)
 mfc40.dll -> C:\Windows\System32\mfc40.dll -> [2010/10/15 09:36:19 | 000,954,752 | ---- | C] (Microsoft Corporation)
 mfc40u.dll -> C:\Windows\System32\mfc40u.dll -> [2010/10/15 09:36:19 | 000,954,288 | ---- | C] (Microsoft Corporation)
 msfeeds.dll -> C:\Windows\System32\msfeeds.dll -> [2010/10/15 09:36:14 | 000,602,112 | ---- | C] (Microsoft Corporation)
 html.iec -> C:\Windows\System32\html.iec -> [2010/10/15 09:36:14 | 000,385,024 | ---- | C] (Microsoft Corporation)
 licmgr10.dll -> C:\Windows\System32\licmgr10.dll -> [2010/10/15 09:36:14 | 000,043,520 | ---- | C] (Microsoft Corporation)
 inetcpl.cpl -> C:\Windows\System32\inetcpl.cpl -> [2010/10/15 09:36:13 | 001,469,440 | ---- | C] (Microsoft Corporation)
 mstime.dll -> C:\Windows\System32\mstime.dll -> [2010/10/15 09:36:13 | 000,611,840 | ---- | C] (Microsoft Corporation)
 iedkcs32.dll -> C:\Windows\System32\iedkcs32.dll -> [2010/10/15 09:36:08 | 000,387,584 | ---- | C] (Microsoft Corporation)
 ieui.dll -> C:\Windows\System32\ieui.dll -> [2010/10/15 09:36:08 | 000,164,352 | ---- | C] (Microsoft Corporation)
 mshtml.tlb -> C:\Windows\System32\mshtml.tlb -> [2010/10/15 09:36:07 | 001,638,912 | ---- | C] (Microsoft Corporation)
 iepeers.dll -> C:\Windows\System32\iepeers.dll -> [2010/10/15 09:36:07 | 000,184,320 | ---- | C] (Microsoft Corporation)
 ie4uinit.exe -> C:\Windows\System32\ie4uinit.exe -> [2010/10/15 09:36:07 | 000,173,056 | ---- | C] (Microsoft Corporation)
 ieUnatt.exe -> C:\Windows\System32\ieUnatt.exe -> [2010/10/15 09:36:07 | 000,133,632 | ---- | C] (Microsoft Corporation)
 iesysprep.dll -> C:\Windows\System32\iesysprep.dll -> [2010/10/15 09:36:07 | 000,109,056 | ---- | C] (Microsoft Corporation)
 iesetup.dll -> C:\Windows\System32\iesetup.dll -> [2010/10/15 09:36:07 | 000,071,680 | ---- | C] (Microsoft Corporation)
 iernonce.dll -> C:\Windows\System32\iernonce.dll -> [2010/10/15 09:36:07 | 000,055,808 | ---- | C] (Microsoft Corporation)
 msfeedsbs.dll -> C:\Windows\System32\msfeedsbs.dll -> [2010/10/15 09:36:07 | 000,055,296 | ---- | C] (Microsoft Corporation)
 jsproxy.dll -> C:\Windows\System32\jsproxy.dll -> [2010/10/15 09:36:07 | 000,025,600 | ---- | C] (Microsoft Corporation)
 msfeedssync.exe -> C:\Windows\System32\msfeedssync.exe -> [2010/10/15 09:36:07 | 000,013,312 | ---- | C] (Microsoft Corporation)
 msshsq.dll -> C:\Windows\System32\msshsq.dll -> [2010/10/15 09:36:04 | 000,231,424 | ---- | C] (Microsoft Corporation)
 wmpmde.dll -> C:\Windows\System32\wmpmde.dll -> [2010/10/15 09:36:02 | 000,867,328 | ---- | C] (Microsoft Corporation)
 syncdb -> C:\Windows\System32\syncdb -> [2010/10/14 18:54:50 | 000,000,000 | ---D | C]
 Mswinsck.OCX -> C:\Windows\System32\Mswinsck.OCX -> [2010/10/13 11:11:02 | 000,108,336 | ---- | C] (Microsoft Corporation)
 MSINET.OCX -> C:\Windows\System32\MSINET.OCX -> [2010/10/13 11:11:01 | 000,132,880 | ---- | C] (Microsoft Corporation)
 regid.1986-12.com.adobe -> C:\ProgramData\regid.1986-12.com.adobe -> [2010/10/11 12:24:56 | 000,000,000 | ---D | C]
 Adobe -> C:\Users\Vista User\Documents\Adobe -> [2010/10/11 12:24:51 | 000,000,000 | ---D | C]
 vso -> C:\Program Files\vso -> [2010/10/08 20:31:45 | 000,000,000 | ---D | C]
 Video to DVD Burner -> C:\Users\Vista User\Documents\Video to DVD Burner -> [2010/10/06 18:19:47 | 000,000,000 | ---D | C]
 tv license -> C:\Users\Vista User\Documents\tv license -> [2010/10/05 19:52:30 | 000,000,000 | ---D | C]
 pcouffin.sys -> C:\Users\Vista User\AppData\Roaming\pcouffin.sys -> [2008/12/13 15:25:16 | 000,047,360 | ---- | C] (VSO Software)
 Interop.Shell32.dll -> C:\Windows\System32\Interop.Shell32.dll -> [2006/12/07 12:18:24 | 000,053,248 | ---- | C] ( )
 
[Files/Folders - Modified Within 30 Days]
 GoogleUpdateTaskUserS-1-5-21-1347133558-1696348400-1136593757-1000Core.job -> C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1347133558-1696348400-1136593757-1000Core.job -> [2010/10/31 19:04:57 | 000,000,874 | ---- | M] ()
 OTS.exe -> C:\Users\Vista User\Desktop\OTS.exe -> [2010/10/31 19:00:54 | 000,641,536 | ---- | M] (OldTimer Tools)
 GoogleUpdateTaskMachineUA.job -> C:\Windows\tasks\GoogleUpdateTaskMachineUA.job -> [2010/10/31 18:59:00 | 000,000,884 | ---- | M] ()
 nvModes.dat -> C:\Users\Vista User\AppData\Roaming\nvModes.dat -> [2010/10/31 18:57:24 | 000,013,260 | ---- | M] ()
 nvModes.001 -> C:\Users\Vista User\AppData\Roaming\nvModes.001 -> [2010/10/31 18:57:24 | 000,013,260 | ---- | M] ()
 bootstat.dat -> C:\Windows\bootstat.dat -> [2010/10/31 18:57:11 | 000,067,584 | --S- | M] ()
 Google Software Updater.job -> C:\Windows\tasks\Google Software Updater.job -> [2010/10/31 18:50:31 | 000,000,868 | ---- | M] ()
 GoogleUpdateTaskUserS-1-5-21-1347133558-1696348400-1136593757-1000UA.job -> C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1347133558-1696348400-1136593757-1000UA.job -> [2010/10/31 18:50:24 | 000,000,926 | ---- | M] ()
 7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> [2010/10/31 15:49:47 | 000,003,168 | -H-- | M] ()
 7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> [2010/10/31 15:49:46 | 000,003,168 | -H-- | M] ()
 GoogleUpdateTaskMachineCore.job -> C:\Windows\tasks\GoogleUpdateTaskMachineCore.job -> [2010/10/31 12:59:00 | 000,000,880 | ---- | M] ()
 SecurityCheck.exe -> C:\Users\Vista User\Desktop\SecurityCheck.exe -> [2010/10/31 10:42:09 | 000,869,086 | ---- | M] ()
 perfh009.dat -> C:\Windows\System32\perfh009.dat -> [2010/10/31 10:39:00 | 000,609,196 | ---- | M] ()
 perfc009.dat -> C:\Windows\System32\perfc009.dat -> [2010/10/31 10:39:00 | 000,108,672 | ---- | M] ()
 hosts.ics -> C:\Windows\System32\drivers\etc\hosts.ics -> [2010/10/31 10:36:25 | 000,000,436 | ---- | M] ()
 hiberfil.sys -> C:\hiberfil.sys -> [2010/10/31 10:33:47 | 2951,397,376 | -HS- | M] ()
 TFC.exe -> C:\Users\Vista User\Desktop\TFC.exe -> [2010/10/30 15:51:05 | 000,446,464 | ---- | M] (OldTimer Tools)
 KGyGaAvL.sys -> C:\Windows\System32\KGyGaAvL.sys -> [2010/10/30 14:55:12 | 000,007,048 | -HS- | M] ()
 OTL.exe -> C:\Users\Vista User\Desktop\OTL.exe -> [2010/10/30 11:43:34 | 000,575,488 | ---- | M] (OldTimer Tools)
 HOSTS.MVP -> C:\Windows\System32\drivers\etc\HOSTS.MVP -> [2010/10/30 02:06:04 | 000,623,384 | ---- | M] ()
 HOSTS -> C:\Windows\System32\drivers\etc\HOSTS -> [2010/10/30 02:06:04 | 000,623,384 | ---- | M] ()
 ComboFix.exe -> C:\Users\Vista User\Desktop\ComboFix.exe -> [2010/10/29 17:33:24 | 003,894,257 | R--- | M] ()
 RKUnhookerLE.EXE -> C:\Users\Vista User\Desktop\RKUnhookerLE.EXE -> [2010/10/29 09:45:16 | 000,133,632 | ---- | M] ()
 MBR.exe -> C:\Windows\MBR.exe -> [2010/10/28 17:21:27 | 000,084,992 | ---- | M] ()
 Microsoft Security Essentials.lnk -> C:\Users\Public\Desktop\Microsoft Security Essentials.lnk -> [2010/10/25 17:27:46 | 000,000,906 | ---- | M] ()
 hitmanpro35.sys -> C:\Windows\System32\drivers\hitmanpro35.sys -> [2010/10/22 15:19:27 | 000,016,968 | ---- | M] ()
 d3d9caps.dat -> C:\Users\Vista User\AppData\Local\d3d9caps.dat -> [2010/10/20 11:15:53 | 000,001,356 | ---- | M] ()
 MpSigStub.exe -> C:\Windows\System32\MpSigStub.exe -> [2010/10/19 20:51:33 | 000,222,080 | ---- | M] (Microsoft Corporation)
 Command Prompt.lnk -> C:\Users\Vista User\Desktop\Command Prompt.lnk -> [2010/10/19 16:51:30 | 000,001,659 | ---- | M] ()
 http___us.norton.com_support_premium_services_malware_removal_guide.pdf -> C:\Users\Vista User\Documents\http___us.norton.com_support_premium_services_malware_removal_guide.pdf -> [2010/10/19 16:15:40 | 001,641,025 | ---- | M] ()
 VLC media player.lnk -> C:\Users\Public\Desktop\VLC media player.lnk -> [2010/10/18 16:59:37 | 000,000,695 | ---- | M] ()
 FNTCACHE.DAT -> C:\Windows\System32\FNTCACHE.DAT -> [2010/10/16 09:25:39 | 000,306,144 | ---- | M] ()
 MRT.INI -> C:\Windows\System32\MRT.INI -> [2010/10/16 08:59:06 | 000,000,118 | ---- | M] ()
 mfc703.dll -> C:\Windows\System32\mfc703.dll -> [2010/10/11 16:37:13 | 000,116,736 | RHS- | M] ()
 Adobe Acrobat Speed Launcher.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk -> [2010/10/09 09:14:19 | 000,002,437 | ---- | M] ()
 Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2010/10/08 19:34:54 | 000,001,691 | ---- | M] ()
 
[Files - No Company Name]
 SecurityCheck.exe -> C:\Users\Vista User\Desktop\SecurityCheck.exe -> [2010/10/31 10:42:06 | 000,869,086 | ---- | C] ()
 PEV.exe -> C:\Windows\PEV.exe -> [2010/10/30 10:24:31 | 000,256,512 | ---- | C] ()
 MBR.exe -> C:\Windows\MBR.exe -> [2010/10/30 10:24:31 | 000,084,992 | ---- | C] ()
 sed.exe -> C:\Windows\sed.exe -> [2010/10/30 10:24:30 | 000,098,816 | ---- | C] ()
 grep.exe -> C:\Windows\grep.exe -> [2010/10/30 10:24:30 | 000,080,412 | ---- | C] ()
 zip.exe -> C:\Windows\zip.exe -> [2010/10/30 10:24:30 | 000,068,096 | ---- | C] ()
 ComboFix.exe -> C:\Users\Vista User\Desktop\ComboFix.exe -> [2010/10/29 17:33:09 | 003,894,257 | R--- | C] ()
 RKUnhookerLE.EXE -> C:\Users\Vista User\Desktop\RKUnhookerLE.EXE -> [2010/10/29 09:45:14 | 000,133,632 | ---- | C] ()
 Microsoft Security Essentials.lnk -> C:\Users\Public\Desktop\Microsoft Security Essentials.lnk -> [2010/10/25 17:27:46 | 000,000,906 | ---- | C] ()
 hitmanpro35.sys -> C:\Windows\System32\drivers\hitmanpro35.sys -> [2010/10/22 15:19:27 | 000,016,968 | ---- | C] ()
 hiberfil.sys -> C:\hiberfil.sys -> [2010/10/20 11:29:45 | 2951,397,376 | -HS- | C] ()
 Command Prompt.lnk -> C:\Users\Vista User\Desktop\Command Prompt.lnk -> [2010/10/19 16:51:30 | 000,001,659 | ---- | C] ()
 http___us.norton.com_support_premium_services_malware_removal_guide.pdf -> C:\Users\Vista User\Documents\http___us.norton.com_support_premium_services_malware_removal_guide.pdf -> [2010/10/19 16:15:39 | 001,641,025 | ---- | C] ()
 VLC media player.lnk -> C:\Users\Public\Desktop\VLC media player.lnk -> [2010/10/18 16:59:36 | 000,000,695 | ---- | C] ()
 MRT.INI -> C:\Windows\System32\MRT.INI -> [2010/10/16 08:59:06 | 000,000,118 | ---- | C] ()
 mfc703.dll -> C:\Windows\System32\mfc703.dll -> [2010/10/11 16:37:13 | 000,116,736 | RHS- | C] ()
 Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2010/10/08 19:34:52 | 000,001,691 | ---- | C] ()
 jhvr_b24.ini -> C:\Windows\jhvr_b24.ini -> [2010/05/20 10:36:17 | 000,003,689 | ---- | C] ()
 impborl.dll -> C:\Windows\impborl.dll -> [2010/02/24 17:02:06 | 000,012,288 | ---- | C] ()
 ntuser.pol -> C:\ProgramData\ntuser.pol -> [2009/09/12 09:18:54 | 000,000,258 | RHS- | C] ()
 EhStorAuthn.dll -> C:\Windows\System32\EhStorAuthn.dll -> [2009/08/19 09:16:35 | 000,117,248 | ---- | C] ()
 OGACheckControl.dll -> C:\Windows\System32\OGACheckControl.dll -> [2009/08/03 14:07:42 | 000,403,816 | ---- | C] ()
 .zreglib -> C:\ProgramData\.zreglib -> [2009/03/23 17:40:10 | 000,000,041 | -HS- | C] ()
 UserTile.png -> C:\Users\Vista User\AppData\Roaming\UserTile.png -> [2009/02/10 21:14:42 | 000,024,206 | ---- | C] ()
 msrctp.ini -> C:\Windows\System32\msrctp.ini -> [2009/01/10 18:06:40 | 000,000,003 | ---- | C] ()
 d3d9caps.dat -> C:\Users\Vista User\AppData\Local\d3d9caps.dat -> [2008/12/20 18:12:04 | 000,001,356 | ---- | C] ()
 pcouffin.log -> C:\Users\Vista User\AppData\Roaming\pcouffin.log -> [2008/12/13 15:25:56 | 000,000,034 | ---- | C] ()
 pcouffin.cat -> C:\Users\Vista User\AppData\Roaming\pcouffin.cat -> [2008/12/13 15:25:16 | 000,007,887 | ---- | C] ()
 pcouffin.inf -> C:\Users\Vista User\AppData\Roaming\pcouffin.inf -> [2008/12/13 15:25:16 | 000,001,144 | ---- | C] ()
 KGyGaAvL.sys -> C:\ProgramData\KGyGaAvL.sys -> [2008/11/26 14:37:19 | 000,011,270 | -HS- | C] ()
 EBFCAC4176.sys -> C:\ProgramData\EBFCAC4176.sys -> [2008/11/26 14:37:19 | 000,000,168 | RHS- | C] ()
 KGyGaAvL.sys -> C:\Windows\System32\KGyGaAvL.sys -> [2008/11/26 11:23:28 | 000,007,048 | -HS- | C] ()
 9DC5C30FED.sys -> C:\Windows\System32\9DC5C30FED.sys -> [2008/11/26 11:23:28 | 000,000,168 | RHS- | C] ()
 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> C:\Users\Vista User\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> [2008/11/25 21:59:21 | 000,010,752 | ---- | C] ()
 ezsidmv.dat -> C:\ProgramData\ezsidmv.dat -> [2008/11/25 20:26:18 | 000,000,056 | -H-- | C] ()
 hpzinstall.log -> C:\ProgramData\hpzinstall.log -> [2008/11/25 15:54:56 | 000,004,488 | ---- | C] ()
 M2000T07.ini -> C:\Windows\M2000T07.ini -> [2008/11/18 16:52:11 | 000,015,190 | ---- | C] ()
 int15.sys -> C:\Windows\System32\drivers\int15.sys -> [2008/11/18 11:21:55 | 000,076,584 | ---- | C] ()
 int15_64.sys -> C:\Windows\System32\drivers\int15_64.sys -> [2008/11/18 11:21:55 | 000,015,656 | ---- | C] ()
 NATTraversal.dll -> C:\Windows\System32\NATTraversal.dll -> [2008/11/18 11:20:08 | 000,065,536 | ---- | C] ()
 Acer.ini -> C:\Windows\Acer.ini -> [2008/11/18 11:05:49 | 000,000,037 | ---- | C] ()
 nvModes.001 -> C:\Users\Vista User\AppData\Roaming\nvModes.001 -> [2008/11/18 11:05:09 | 000,013,260 | ---- | C] ()
 nvModes.dat -> C:\Users\Vista User\AppData\Roaming\nvModes.dat -> [2008/11/18 11:05:02 | 000,013,260 | ---- | C] ()
 NotesExtmngr.dll -> C:\Windows\System32\NotesExtmngr.dll -> [2007/01/02 18:54:14 | 000,266,240 | ---- | C] ()
 NotesActnMenu.dll -> C:\Windows\System32\NotesActnMenu.dll -> [2007/01/02 18:53:54 | 000,204,800 | ---- | C] ()
 MSNSpook.dll -> C:\Windows\System32\MSNSpook.dll -> [2007/01/02 18:53:20 | 000,086,016 | ---- | C] ()
 MsnChatHook_org.dll -> C:\Windows\System32\MsnChatHook_org.dll -> [2007/01/02 18:52:40 | 000,037,376 | ---- | C] ()
 BatchCrypto.dll -> C:\Windows\System32\BatchCrypto.dll -> [2007/01/02 18:52:28 | 000,028,672 | ---- | C] ()
 APISlice.dll -> C:\Windows\System32\APISlice.dll -> [2007/01/02 18:52:26 | 000,073,728 | ---- | C] ()
 ShowErrMsg.dll -> C:\Windows\System32\ShowErrMsg.dll -> [2007/01/02 18:52:18 | 000,063,488 | ---- | C] ()
 MailFormat_U.dll -> C:\Windows\System32\MailFormat_U.dll -> [2006/12/25 15:44:48 | 000,022,016 | ---- | C] ()
 NTIBUN4.dll -> C:\Windows\System32\NTIBUN4.dll -> [2006/12/07 13:44:32 | 000,001,024 | RH-- | C] ()
 ScrollBarLib.dll -> C:\Windows\System32\ScrollBarLib.dll -> [2006/12/07 12:18:26 | 000,331,776 | ---- | C] ()
 UBHelper.sys -> C:\Windows\System32\drivers\UBHelper.sys -> [2006/12/07 12:05:27 | 000,013,952 | ---- | C] ()
 _psisdecd.dll -> C:\Windows\System32\_psisdecd.dll -> [2006/12/07 12:04:14 | 000,198,144 | ---- | C] ()
 iconv.dll -> C:\Windows\iconv.dll -> [2006/12/02 07:24:39 | 000,872,448 | ---- | C] ()
 libxml2.dll -> C:\Windows\libxml2.dll -> [2006/12/02 07:24:39 | 000,743,424 | ---- | C] ()
 Capsule.dll -> C:\Windows\Capsule.dll -> [2006/12/02 07:24:39 | 000,204,800 | ---- | C] ()
 PreLaunch.ini -> C:\Windows\PreLaunch.ini -> [2006/12/02 07:24:39 | 000,000,042 | ---- | C] ()
 WdfCoInstaller01000.dll -> C:\Windows\System32\WdfCoInstaller01000.dll -> [2006/12/02 07:24:38 | 001,060,424 | ---- | C] ()
 sysprepMCE.dll -> C:\Windows\System32\sysprepMCE.dll -> [2006/11/02 12:35:32 | 000,005,632 | ---- | C] ()
 igfxTMM.dll -> C:\Windows\System32\igfxTMM.dll -> [2006/11/02 10:25:21 | 000,061,440 | ---- | C] ()
 pacerprf.ini -> C:\Windows\System32\pacerprf.ini -> [2006/11/02 07:40:29 | 000,013,750 | ---- | C] ()
 multiplex_vcd.dll -> C:\Windows\System32\multiplex_vcd.dll -> [2001/12/26 23:12:30 | 000,065,536 | ---- | C] ()
 Hmpg12.dll -> C:\Windows\System32\Hmpg12.dll -> [2001/09/04 06:46:38 | 000,110,592 | ---- | C] ()
 HMPV2_ENC.dll -> C:\Windows\System32\HMPV2_ENC.dll -> [2001/07/30 23:33:56 | 000,118,784 | ---- | C] ()
 HMPV2_ENC_MMX.dll -> C:\Windows\System32\HMPV2_ENC_MMX.dll -> [2001/07/24 05:04:36 | 000,118,784 | ---- | C] ()
 
[Alternate Data Streams]
@Alternate Data Stream - 107 bytes -> C:\ProgramData\Temp:0B9D8E22
@Alternate Data Stream - 119 bytes -> C:\ProgramData\Temp:242231A9
< End of report >
ronecc
Regular Member
 
Posts: 21
Joined: October 26th, 2010, 1:27 pm

Re: very difficult removal

Unread postby peku006 » November 1st, 2010, 4:14 am

Hi Ron

Start OTS.

Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button.
[Registry - Safe List]
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
YY -> {02478D38-C3F9-4EFB-9B51-7695ECA05670} [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll [&Yahoo! Toolbar Helper]
YY -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll [Symantec NCO BHO]
YY -> {AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Toolbar Helper]
YY -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} [HKLM] -> C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [Google Toolbar Notifier BHO]
YY -> {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll [SingleInstance Class]
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar
YY -> "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Toolbar]
YY -> "{47833539-D0C5-4125-9FA8-0819E2EAAC93}" [HKLM] -> C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [Adobe PDF]
YY -> "{5CBE3B7C-1E47-477e-A7DD-396DB0476E29}" [HKLM] -> C:\Windows\System32\eDStoolbar.dll [Acer eDataSecurity Management]
YY -> "{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll [Norton Toolbar]
YY -> "{EF99BD32-C1FB-11D2-892F-0090271D4F88}" [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll [Yahoo! Toolbar]
< Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\
YY -> ShellBrowser\\"{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}" [HKLM] -> C:\Windows\System32\eDStoolbar.dll [Acer eDataSecurity Management]
YY -> WebBrowser\\"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [Google Toolbar]
YY -> WebBrowser\\"{47833539-D0C5-4125-9FA8-0819E2EAAC93}" [HKLM] -> C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [Adobe PDF]
YY -> WebBrowser\\"{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll [Norton Toolbar]
[Files - No Company Name]
NY -> DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> C:\Users\Vista User\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. Click the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here along with a new OTS log.

Thanks peku006
User avatar
peku006
MRU Emeritus
MRU Emeritus
 
Posts: 3357
Joined: May 14th, 2007, 2:18 pm
Location: Norway

Re: very difficult removal

Unread postby ronecc » November 1st, 2010, 6:26 am

Hi peku006
Here is the new Notepad log, followed by a newOTS log.
Ron

[Registry - Safe List]
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}\ deleted successfully.
C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll moved successfully.
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}\ scheduled to be deleted on reboot.
Unable to delete registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}\ .
File move failed. C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}\ deleted successfully.
C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ deleted successfully.
File C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93}\ deleted successfully.
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar\\{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5CBE3B7C-1E47-477e-A7DD-396DB0476E29}\ deleted successfully.
C:\Windows\System32\eDStoolbar.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully.
Unable to delete registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}\ .
File move failed. C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll scheduled to be moved on reboot.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\ deleted successfully.
File C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}\ not found.
File C:\Windows\System32\eDStoolbar.dll not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found.
File C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93}\ not found.
File C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully.
Unable to delete registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}\ .
File move failed. C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll scheduled to be moved on reboot.
[Files - No Company Name]
C:\Users\Vista User\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini moved successfully.
< End of fix log >
OTS by OldTimer - Version 3.1.40.0 fix logfile created on 11012010_100630


Files\Folders moved on Reboot...
File move failed. C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll scheduled to be moved on reboot.

Registry entries deleted on Reboot...
Registry delete failed. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}\ scheduled to be deleted on reboot.
Unable to delete registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}\ .

New OTS log
Code: Select all
OTS logfile created on: 01/11/2010 10:18:24 - Run 2
OTS by OldTimer - Version 3.1.40.0     Folder = C:\Users\Vista User\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18975)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
 
3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 57.00% Memory free
9.00 Gb Paging File | 8.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): c:\pagefile.sys 3113 4219d:\pagefile.sys 0 0 [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 51.99 Gb Total Space | 11.61 Gb Free Space | 22.33% Space Free | Partition Type: NTFS
Drive D: | 51.98 Gb Total Space | 37.24 Gb Free Space | 71.65% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
 
Computer Name: VISTAUSER-PC
Current User Name: Vista User
Logged in as Administrator.
 
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
 
[Processes - Safe List]
ots.exe -> C:\Users\Vista User\Desktop\OTS.exe -> [2010/10/31 19:00:54 | 000,641,536 | ---- | M] (OldTimer Tools)
rtkbtmnt.exe -> C:\Users\VISTAU~1\AppData\Local\Temp\RtkBtMnt.exe -> [2010/10/30 15:56:45 | 000,208,896 | ---- | M] (Realtek Semiconductor Corp.)
plugin-container.exe -> C:\Program Files\Mozilla Firefox\plugin-container.exe -> [2010/10/29 09:41:16 | 000,016,856 | ---- | M] (Mozilla Corporation)
firefox.exe -> C:\Program Files\Mozilla Firefox\firefox.exe -> [2010/10/29 09:41:14 | 000,912,344 | ---- | M] (Mozilla Corporation)
symcpcculaunchsvc.exe -> C:\Program Files\Norton PC Checkup\Engine\2.0.2.547\SymcPCCULaunchSvc.exe -> [2010/09/25 08:52:37 | 000,115,056 | ---- | M] (Symantec Corporation)
googletalkplugin.exe -> C:\Users\Vista User\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe -> [2010/09/21 10:33:36 | 000,083,440 | ---- | M] (Google)
psiservice_2.exe -> c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -> [2010/03/10 13:26:48 | 000,189,728 | ---- | M] (Protexis Inc.)
ccsvchst.exe -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ccsvchst.exe -> [2010/02/26 00:21:50 | 000,126,392 | R--- | M] (Symantec Corporation)
sesvc.exe -> C:\Program Files\ShadowExplorer\sesvc.exe -> [2010/01/23 14:18:54 | 000,009,216 | ---- | M] (www.shadowexplorer.com)
googlequicksearchbox.exe -> C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe -> [2009/12/11 18:51:43 | 000,122,880 | ---- | M] (Google Inc.)
ccsvchst.exe -> C:\Program Files\Norton PC Checkup\Engine\2.0.2.547\ccSvcHst.exe -> [2009/08/24 22:49:41 | 000,126,392 | R--- | M] (Symantec Corporation)
explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 06:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation)
searchprotection.exe -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe -> [2008/07/11 17:06:38 | 000,223,984 | ---- | M] (Yahoo! Inc.)
acrotray.exe -> C:\Program Files\Adobe\Acrobat 7.0\Distillr\acrotray.exe -> [2008/04/23 02:08:13 | 000,483,328 | ---- | M] (Adobe Systems Inc.)
coreliomonitor.exe -> C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe -> [2007/10/30 18:52:34 | 000,016,200 | ---- | M] ()
edsservice.exe -> C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe -> [2007/01/02 18:58:58 | 000,457,512 | ---- | M] (HiTRSUT)
capuserv.exe -> C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe -> [2007/01/02 16:46:52 | 000,024,576 | ---- | M] ()
epowersvc.exe -> C:\Acer\Empowering Technology\ePower\ePowerSvc.exe -> [2007/01/02 09:33:24 | 000,135,168 | ---- | M] (acer)
enet service.exe -> C:\Acer\Empowering Technology\eNet\eNet Service.exe -> [2006/12/28 20:07:22 | 000,126,976 | ---- | M] (Acer Inc.)
erecoveryservice.exe -> C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe -> [2006/12/28 18:24:14 | 000,049,152 | ---- | M] (Acer Inc.)
elockserv.exe -> C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe -> [2006/12/22 14:43:18 | 000,024,576 | ---- | M] (Acer Inc.)
lmanager.exe -> C:\Program Files\Launch Manager\LManager.exe -> [2006/12/21 00:02:14 | 000,659,456 | ---- | M] (Dritek System Inc.)
mobilityservice.exe -> C:\Acer\Mobility Center\MobilityService.exe -> [2006/11/24 12:57:54 | 000,107,008 | ---- | M] ()
rthdvcpl.exe -> C:\Windows\RtHDVCpl.exe -> [2006/11/09 18:57:52 | 003,784,704 | ---- | M] (Realtek Semiconductor)
psiservice.exe -> C:\Windows\System32\PSIService.exe -> [2006/11/02 20:40:12 | 000,174,656 | ---- | M] ()
 
[Modules - Safe List]
ots.exe -> C:\Users\Vista User\Desktop\OTS.exe -> [2010/10/31 19:00:54 | 000,641,536 | ---- | M] (OldTimer Tools)
asoehook.dll -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\asoehook.dll -> [2010/09/20 19:26:01 | 000,415,088 | R--- | M] (Symantec Corporation)
comctl32.dll -> C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll -> [2010/08/31 15:43:52 | 001,686,016 | ---- | M] (Microsoft Corporation)
msvcr90.dll -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\microsoft.vc90.crt\msvcr90.dll -> [2009/07/12 08:02:02 | 000,653,120 | R--- | M] (Microsoft Corporation)
msvcp90.dll -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\microsoft.vc90.crt\msvcp90.dll -> [2009/07/12 08:02:00 | 000,569,664 | R--- | M] (Microsoft Corporation)
 
[Win32 Services - Safe List]
(XAudioService) XAudioService [Auto | Stopped] ->  -> File not found
(nosGetPlusHelper) nosGetPlusHelper [Unknown | Stopped] -> C:\Program Files\NOS\bin\getPlus_Helper_3001.dll -> File not found
(NMIndexingService) NMIndexingService [On_Demand | Stopped] -> C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -> File not found
(Norton PC Checkup Application Launcher) Norton PC Checkup Application Launcher [Auto | Running] -> C:\Program Files\Norton PC Checkup\Engine\2.0.2.547\SymcPCCULaunchSvc.exe -> [2010/09/25 08:52:37 | 000,115,056 | ---- | M] (Symantec Corporation)
(MsMpSvc) Microsoft Antimalware Service [Disabled | Stopped] -> C:\Program Files\Microsoft Security Essentials\MsMpEng.exe -> [2010/03/25 20:40:44 | 000,017,904 | ---- | M] (Microsoft Corporation)
(WPFFontCache_v0400) Windows Presentation Foundation Font Cache 4.0.0.0 [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -> [2010/03/18 12:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation)
(clr_optimization_v4.0.30319_32) Microsoft .NET Framework NGEN v4.0.30319_X86 [Auto | Stopped] -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -> [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation)
(PSI_SVC_2) Protexis Licensing V2 [Auto | Running] -> c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -> [2010/03/10 13:26:48 | 000,189,728 | ---- | M] (Protexis Inc.)
(NIS) Norton Internet Security [Unknown | Running] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ccSvcHst.exe -> [2010/02/26 00:21:50 | 000,126,392 | R--- | M] (Symantec Corporation)
(sesvc) ShadowExplorer Service [Auto | Running] -> C:\Program Files\ShadowExplorer\sesvc.exe -> [2010/01/23 14:18:54 | 000,009,216 | ---- | M] (www.shadowexplorer.com)
(FontCache) Windows Font Cache Service [On_Demand | Stopped] -> C:\Windows\System32\FntCache.dll -> [2009/09/25 01:27:04 | 000,793,088 | ---- | M] (Microsoft Corporation)
(PCCUJobMgr) Common Client Job Manager Service [Unknown | Running] -> C:\Program Files\Norton PC Checkup\Engine\2.0.2.547\ccSvcHst.exe -> [2009/08/24 22:49:41 | 000,126,392 | R--- | M] (Symantec Corporation)
(WinDefend) Windows Defender [Disabled | Stopped] -> C:\Program Files\Windows Defender\MpSvc.dll -> [2008/01/19 07:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation)
(eDataSecurity Service) eDataSecurity Service [Auto | Running] -> C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe -> [2007/01/02 18:58:58 | 000,457,512 | ---- | M] (HiTRSUT)
(eSettingsService) eSettings Service [Auto | Running] -> C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe -> [2007/01/02 16:46:52 | 000,024,576 | ---- | M] ()
(WMIService) ePower Service [Auto | Running] -> C:\Acer\Empowering Technology\ePower\ePowerSvc.exe -> [2007/01/02 09:33:24 | 000,135,168 | ---- | M] (acer)
(eNet Service) eNet Service [Auto | Running] -> C:\Acer\Empowering Technology\eNet\eNet Service.exe -> [2006/12/28 20:07:22 | 000,126,976 | ---- | M] (Acer Inc.)
(eRecoveryService) eRecovery Service [Auto | Running] -> C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe -> [2006/12/28 18:24:14 | 000,049,152 | ---- | M] (Acer Inc.)
(eLockService) eLock Service [Auto | Running] -> C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe -> [2006/12/22 14:43:18 | 000,024,576 | ---- | M] (Acer Inc.)
(MobilityService) MobilityService [Auto | Running] -> C:\Acer\Mobility Center\MobilityService.exe -> [2006/11/24 12:57:54 | 000,107,008 | ---- | M] ()
(ProtexisLicensing) ProtexisLicensing [Auto | Running] -> C:\Windows\System32\PSIService.exe -> [2006/11/02 20:40:12 | 000,174,656 | ---- | M] ()
 
[Driver Services - Safe List]
(ZTEusbser6k) ZTE Diagnostic Port [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ZTEusbser6k.sys -> File not found
(ZTEusbnmea) ZTE NMEA Port [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ZTEusbnmea.sys -> File not found
(ZTEusbmdm6k) ZTE Proprietary USB Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ZTEusbmdm6k.sys -> File not found
(XAudio) XAudio [Kernel | Auto | Stopped] -> C:\Windows\System32\DRIVERS\xaudio.sys -> File not found
(upperdev) upperdev [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\usbser_lowerflt.sys -> File not found
(UIUSys) Conexant Setup API [Kernel | Disabled | Stopped] -> C:\Windows\System32\DRIVERS\UIUSYS.SYS -> File not found
(NwlnkFwd) IPX Traffic Forwarder Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\nwlnkfwd.sys -> File not found
(NwlnkFlt) IPX Traffic Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\nwlnkflt.sys -> File not found
(mdmxsdk) mdmxsdk [Kernel | Auto | Stopped] -> C:\Windows\System32\DRIVERS\mdmxsdk.sys -> File not found
(IpInIp) IP in IP Tunnel Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ipinip.sys -> File not found
(hwusbfake) Huawei DataCard USB Fake [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ewusbfake.sys -> File not found
(hwdatacard) Huawei DataCard USB Modem and USB Serial [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\ewusbmdm.sys -> File not found
(HSXHWAZL) HSXHWAZL [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\HSXHWAZL.sys -> File not found
(EraserUtilDrvI7) EraserUtilDrvI7 [Kernel | On_Demand | Stopped] -> C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilDrvI7.sys -> File not found
(catchme) catchme [Kernel | On_Demand | Stopped] -> C:\Users\VISTAU~1\AppData\Local\Temp\catchme.sys -> File not found
(blbdrive) blbdrive [Kernel | Disabled | Stopped] -> C:\Windows\System32\drivers\blbdrive.sys -> File not found
(IDSVix86) IDSVix86 [Kernel | System | Running] -> C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\IPSDefs\20101028.001\IDSvix86.sys -> [2010/10/19 20:36:22 | 000,353,840 | ---- | M] (Symantec Corporation)
(NAVEX15) NAVEX15 [Kernel | On_Demand | Running] -> C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\VirusDefs\20101031.002\NAVEX15.SYS -> [2010/09/30 16:09:19 | 001,371,184 | ---- | M] (Symantec Corporation)
(NAVENG) NAVENG [Kernel | On_Demand | Running] -> C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\VirusDefs\20101031.002\NAVENG.SYS -> [2010/09/30 16:09:19 | 000,086,064 | ---- | M] (Symantec Corporation)
(BHDrvx86) BHDrvx86 [Kernel | System | Running] -> C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\BASHDefs\20101001.001\BHDrvx86.sys -> [2010/08/31 22:57:04 | 000,692,272 | ---- | M] (Symantec Corporation)
(eeCtrl) Symantec Eraser Control driver [Kernel | System | Running] -> C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -> [2010/05/27 08:03:50 | 000,371,248 | ---- | M] (Symantec Corporation)
(EraserUtilRebootDrv) EraserUtilRebootDrv [Kernel | On_Demand | Running] -> C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -> [2010/05/27 08:03:50 | 000,102,448 | ---- | M] (Symantec Corporation)
(SASKUTIL) SASKUTIL [Kernel | System | Running] -> C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -> [2010/05/10 18:41:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
(SYMTDIv) Symantec Vista Network Dispatch Driver [Kernel | System | Running] -> C:\Windows\System32\Drivers\NIS\1108000.005\SYMTDIV.SYS -> [2010/05/06 04:01:59 | 000,339,504 | ---- | M] (Symantec Corporation)
(SymIM) Symantec Network Security Intermediate Filter Driver [Kernel | System | Running] -> C:\Windows\System32\drivers\SymIMV.sys -> [2010/05/06 04:01:44 | 000,044,080 | R--- | M] (Symantec Corporation)
(SymIRON) Symantec Iron Driver [Kernel | System | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\Ironx86.SYS -> [2010/04/29 05:03:51 | 000,116,784 | ---- | M] (Symantec Corporation)
(SymEFA) Symantec Extended File Attributes [File_System | Boot | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\SYMEFA.SYS -> [2010/04/22 03:02:20 | 000,173,104 | ---- | M] (Symantec Corporation)
(SRTSP) Symantec Real Time Storage Protection [File_System | System | Running] -> C:\Windows\System32\Drivers\NIS\1108000.005\SRTSP.SYS -> [2010/04/22 02:29:50 | 000,325,680 | ---- | M] (Symantec Corporation)
(SRTSPX) Symantec Real Time Storage Protection (PEL) [Kernel | System | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\SRTSPX.SYS -> [2010/04/22 02:29:50 | 000,043,696 | ---- | M] (Symantec Corporation)
(MpNWMon) Microsoft Malware Protection Network Driver [File_System | On_Demand | Stopped] -> C:\Windows\System32\drivers\MpNWMon.sys -> [2010/03/25 20:30:22 | 000,042,368 | ---- | M] (Microsoft Corporation)
(ccHP) Symantec Hash Provider [Kernel | System | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\ccHPx86.sys -> [2010/02/26 00:22:57 | 000,501,888 | ---- | M] (Symantec Corporation)
(SASDIFSV) SASDIFSV [Kernel | System | Running] -> C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -> [2010/02/17 18:25:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
(SymEvent) SymEvent [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\SYMEVENT.SYS -> [2010/02/12 16:53:19 | 000,124,976 | ---- | M] (Symantec Corporation)
(SymDS) Symantec Data Store [Kernel | Boot | Running] -> C:\Windows\system32\drivers\NIS\1108000.005\SYMDS.SYS -> [2009/10/15 03:50:05 | 000,328,752 | R--- | M] (Symantec Corporation)
(usbaudio) USB Audio Driver (WDM) [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\USBAUDIO.sys -> [2009/04/11 04:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation)
(mcdbus) Driver for MagicISO SCSI Host Controller [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\mcdbus.sys -> [2008/07/28 17:19:28 | 000,116,736 | ---- | M] (MagicISO, Inc.)
(NVENETFD) NVIDIA nForce Networking Controller Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\nvmfdx32.sys -> [2007/11/18 03:39:50 | 001,040,544 | ---- | M] (NVIDIA Corporation)
(nvstor) nvstor [Kernel | Boot | Running] -> C:\Windows\system32\drivers\nvstor.sys -> [2007/01/05 21:59:42 | 000,035,920 | ---- | M] (NVIDIA Corporation)
(PSDNServ) PSDNSERVER [Kernel | Boot | Running] -> C:\Windows\system32\drivers\PSDNServ.sys -> [2007/01/02 18:59:24 | 000,016,680 | ---- | M] (HiTRUST)
(psdvdisk) psdvdisk [Kernel | Boot | Running] -> C:\Windows\system32\drivers\psdvdisk.sys -> [2007/01/02 18:59:20 | 000,060,712 | ---- | M] (HiTRUST)
(PSDFilter) PSDFilter [File_System | Boot | Running] -> C:\Windows\system32\DRIVERS\psdfilter.sys -> [2007/01/02 18:59:18 | 000,020,264 | ---- | M] (HiTRUST)
(int15) int15 [Kernel | Auto | Running] -> C:\Windows\System32\drivers\int15.sys -> [2007/01/02 16:43:34 | 000,076,584 | ---- | M] ()
(nvlddmkm) nvlddmkm [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nvlddmkm.sys -> [2006/12/20 20:50:00 | 004,448,160 | ---- | M] (NVIDIA Corporation)
(BCM43XX) Broadcom 802.11 Network Adapter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\BCMWL6.SYS -> [2006/12/19 19:18:28 | 000,534,016 | ---- | M] (Broadcom Corporation)
(BCM43XV) Broadcom Extensible 802.11 Network Adapter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\BCMWL6.SYS -> [2006/12/19 19:18:28 | 000,534,016 | ---- | M] (Broadcom Corporation)
(nvstor32) nvstor32 [Kernel | Boot | Running] -> C:\Windows\system32\DRIVERS\nvstor32.sys -> [2006/12/11 09:34:22 | 000,097,576 | ---- | M] (NVIDIA Corporation)
(NTIDrvr) Upper Class Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\NTIDrvr.sys -> [2006/12/07 12:04:45 | 000,006,144 | ---- | M] (NewTech Infosystems, Inc.)
(IntcAzAudAddService) Service for Realtek HD Audio (WDM) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\RTKVHDA.sys -> [2006/11/09 03:09:24 | 001,647,976 | ---- | M] (Realtek Semiconductor Corp.)
(DKbFltr) Dritek Keyboard Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\DKbFltr.sys -> [2006/11/03 04:29:38 | 000,021,264 | ---- | M] (Dritek System Inc.)
(ql2300) QLogic Fibre Channel Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql2300.sys -> [2006/11/02 09:51:45 | 000,900,712 | ---- | M] (QLogic Corporation)
(adp94xx) adp94xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adp94xx.sys -> [2006/11/02 09:51:38 | 000,420,968 | ---- | M] (Adaptec, Inc.)
(elxstor) elxstor [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\elxstor.sys -> [2006/11/02 09:51:34 | 000,316,520 | ---- | M] (Emulex)
(adpahci) adpahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpahci.sys -> [2006/11/02 09:51:32 | 000,297,576 | ---- | M] (Adaptec, Inc.)
(uliahci) uliahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\uliahci.sys -> [2006/11/02 09:51:25 | 000,235,112 | ---- | M] (ULi Electronics Inc.)
(iaStorV) Intel RAID Controller Vista [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iastorv.sys -> [2006/11/02 09:51:25 | 000,232,040 | ---- | M] (Intel Corporation)
(adpu320) adpu320 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu320.sys -> [2006/11/02 09:51:00 | 000,147,048 | ---- | M] (Adaptec, Inc.)
(ulsata2) ulsata2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata2.sys -> [2006/11/02 09:50:45 | 000,115,816 | ---- | M] (Promise Technology, Inc.)
(vsmraid) vsmraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\vsmraid.sys -> [2006/11/02 09:50:41 | 000,112,232 | ---- | M] (VIA Technologies Inc.,Ltd)
(ql40xx) QLogic iSCSI Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql40xx.sys -> [2006/11/02 09:50:35 | 000,106,088 | ---- | M] (QLogic Corporation)
(UlSata) UlSata [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata.sys -> [2006/11/02 09:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.)
(adpu160m) adpu160m [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu160m.sys -> [2006/11/02 09:50:35 | 000,098,408 | ---- | M] (Adaptec, Inc.)
(nvraid) nvraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nvraid.sys -> [2006/11/02 09:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation)
(nfrd960) nfrd960 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nfrd960.sys -> [2006/11/02 09:50:19 | 000,045,160 | ---- | M] (IBM Corporation)
(iirsp) iirsp [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iirsp.sys -> [2006/11/02 09:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH)
(SiSRaid4) SiSRaid4 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid4.sys -> [2006/11/02 09:50:16 | 000,071,784 | ---- | M] (Silicon Integrated Systems)
(aic78xx) aic78xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\djsvs.sys -> [2006/11/02 09:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.)
(arcsas) arcsas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arcsas.sys -> [2006/11/02 09:50:10 | 000,067,688 | ---- | M] (Adaptec, Inc.)
(LSI_SCSI) LSI_SCSI [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_scsi.sys -> [2006/11/02 09:50:10 | 000,065,640 | ---- | M] (LSI Logic)
(SiSRaid2) SiSRaid2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid2.sys -> [2006/11/02 09:50:10 | 000,038,504 | ---- | M] (Silicon Integrated Systems Corp.)
(HpCISSs) HpCISSs [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\hpcisss.sys -> [2006/11/02 09:50:10 | 000,037,480 | ---- | M] (Hewlett-Packard Company)
(arc) arc [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arc.sys -> [2006/11/02 09:50:09 | 000,067,688 | ---- | M] (Adaptec, Inc.)
(iteraid) ITERAID_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteraid.sys -> [2006/11/02 09:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.)
(iteatapi) ITEATAPI_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteatapi.sys -> [2006/11/02 09:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.)
(LSI_SAS) LSI_SAS [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_sas.sys -> [2006/11/02 09:50:05 | 000,065,640 | ---- | M] (LSI Logic)
(Symc8xx) Symc8xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\symc8xx.sys -> [2006/11/02 09:50:05 | 000,035,944 | ---- | M] (LSI Logic)
(LSI_FC) LSI_FC [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_fc.sys -> [2006/11/02 09:50:04 | 000,065,640 | ---- | M] (LSI Logic)
(Sym_u3) Sym_u3 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_u3.sys -> [2006/11/02 09:50:03 | 000,034,920 | ---- | M] (LSI Logic)
(Mraid35x) Mraid35x [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\mraid35x.sys -> [2006/11/02 09:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation)
(Sym_hi) Sym_hi [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_hi.sys -> [2006/11/02 09:49:56 | 000,031,848 | ---- | M] (LSI Logic)
(megasas) megasas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\megasas.sys -> [2006/11/02 09:49:53 | 000,028,776 | ---- | M] (LSI Logic Corporation)
(viaide) viaide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\viaide.sys -> [2006/11/02 09:49:30 | 000,017,512 | ---- | M] (VIA Technologies, Inc.)
(cmdide) cmdide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\cmdide.sys -> [2006/11/02 09:49:28 | 000,016,488 | ---- | M] (CMD Technology, Inc.)
(aliide) aliide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\aliide.sys -> [2006/11/02 09:49:20 | 000,014,952 | ---- | M] (Acer Laboratories Inc.)
(Brserid) Brother MFC Serial Port Interface Driver (WDM) [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserid.sys -> [2006/11/02 08:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.)
(BrUsbSer) Brother MFC USB Serial WDM Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brusbser.sys -> [2006/11/02 08:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.)
(BrFiltUp) Brother USB Mass-Storage Upper Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltup.sys -> [2006/11/02 08:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.)
(BrFiltLo) Brother USB Mass-Storage Lower Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltlo.sys -> [2006/11/02 08:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.)
(BrSerWdm) Brother WDM Serial driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserwdm.sys -> [2006/11/02 08:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.)
(BrUsbMdm) Brother MFC USB Fax Only Modem [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brusbmdm.sys -> [2006/11/02 08:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.)
(HSF_DPV) HSF_DPV [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\VSTDPV3.SYS -> [2006/11/02 07:41:50 | 000,987,648 | ---- | M] (Conexant Systems, Inc.)
(HSFHWAZL) HSFHWAZL [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\VSTAZL3.SYS -> [2006/11/02 07:41:49 | 000,200,704 | ---- | M] (Conexant Systems, Inc.)
(winachsf) winachsf [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\VSTCNXT3.SYS -> [2006/11/02 07:41:48 | 000,654,336 | ---- | M] (Conexant Systems, Inc.)
(ntrigdigi) N-trig HID Tablet Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ntrigdigi.sys -> [2006/11/02 07:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies)
(RTL8169) Realtek 8169 NT Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\Rtlh86.sys -> [2006/11/02 07:30:56 | 000,044,544 | ---- | M] (Realtek Corporation)
(E1G60) Intel(R) PRO/1000 NDIS 6 Adapter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\E1G60I32.sys -> [2006/11/02 07:30:54 | 000,117,760 | ---- | M] (Intel Corporation)
(athr) Atheros Extensible Wireless LAN device driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\athr.sys -> [2006/11/02 07:30:52 | 000,467,456 | ---- | M] (Atheros Communications, Inc.)
(SynTP) Synaptics TouchPad Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\SynTP.sys -> [2006/10/23 19:17:32 | 000,179,896 | ---- | M] (Synaptics, Inc.)
(ialm) ialm [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\igdkmd32.sys -> [2006/10/19 02:10:57 | 001,380,864 | ---- | M] (Intel Corporation)
(nvsmu) nvsmu [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nvsmu.sys -> [2006/09/15 16:44:18 | 000,011,520 | ---- | M] (NVIDIA Corporation)
(UBHelper) UBHelper [Kernel | Boot | Running] -> C:\Windows\System32\drivers\UBHelper.sys -> [2006/08/29 02:30:04 | 000,013,952 | ---- | M] ()
(tifm21) tifm21 [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\tifm21.sys -> [2006/07/06 21:44:00 | 000,168,448 | ---- | M] (Texas Instruments)
(Cam5607) Acer OrbiCam [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\BisonC07.sys -> [2005/11/29 22:20:00 | 000,792,368 | ---- | M] (Bison Electronics. Inc. )
 
[Registry - Safe List]
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> 
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://en.uk.acer.yahoo.com -> 
< Internet Explorer Settings [HKEY_CURRENT_USER\] > -> -> 
HKEY_CURRENT_USER\: Main\\"SearchMigratedDefaultName" -> Yahoo! Search -> 
HKEY_CURRENT_USER\: Main\\"SearchMigratedDefaultURL" -> http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 -> 
HKEY_CURRENT_USER\: Main\\"Start Page" -> http://uk.mg40.mail.yahoo.com/dc/launch?.gx=1&.rand=bhc5b30d493of -> 
HKEY_CURRENT_USER\: SearchURL\\"" -> http://uk.rd.yahoo.com/customize/ycomp/defaults/su/*http://uk.yahoo.com -> 
HKEY_CURRENT_USER\: "ProxyEnable" -> 0 -> 
< FireFox Settings [Prefs.js] > -> C:\Users\Vista User\AppData\Roaming\Mozilla\FireFox\Profiles\9nao40ic.default\prefs.js -> 
browser.search.defaultenginename -> "Yahoo" ->
browser.search.defaulturl -> "http://uk.search.yahoo.com/search?ei=UTF-8&fr=ytff-tyc&p=" ->
browser.search.param.yahoo-fr -> "moz2-ytff-tyc" ->
browser.search.param.yahoo-fr-cjkt -> "moz2-ytff-tyc" ->
browser.search.selectedEngine -> "Yahoo" ->
browser.startup.homepage -> "http://uk.yahoo.com/" ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 ->
extensions.enabledItems -> {0545b830-f0aa-4d7e-8820-50a4629a56fe}:4.4 ->
extensions.enabledItems -> {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1 ->
extensions.enabledItems -> 6 ->
extensions.enabledItems -> 2 ->
extensions.enabledItems -> 44 ->
extensions.enabledItems -> {BBDA0591-3099-440a-AA10-41764D9DB4DB}:2.0 ->
extensions.enabledItems -> {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}:4.6 ->
extensions.enabledItems -> {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.2.20100119091315 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 ->
keyword.URL -> "http://uk.search.yahoo.com/search?ei=UTF-8&fr=ytff-tyc&p=" ->
< FireFox Settings [User.js] > -> C:\Users\Vista User\AppData\Roaming\Mozilla\FireFox\Profiles\9nao40ic.default\user.js -> 
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
HKLM\software\mozilla\Firefox\Extensions ->  -> 
HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB} -> C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\IPSFFPLGN\ [C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\IPSFFPLGN\] -> [2010/05/26 19:46:22 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62} -> C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\COFFPLGN\ [C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\COFFPLGN\] -> [2010/02/12 16:54:46 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions ->  -> 
HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components -> C:\Program Files\Mozilla Firefox\components [C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS] -> [2010/10/29 09:41:18 | 000,000,000 | ---D | M]
HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins -> C:\Program Files\Mozilla Firefox\plugins [C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS] -> [2010/10/29 09:41:18 | 000,000,000 | ---D | M]
< FireFox Extensions [User Folders] > -> 
  -> C:\Users\Vista User\AppData\Roaming\mozilla\Extensions -> [2008/11/25 14:20:50 | 000,000,000 | ---D | M]
  -> C:\Users\Vista User\AppData\Roaming\mozilla\Extensions\home2@tomtom.com -> [2008/11/25 14:20:50 | 000,000,000 | ---D | M]
  -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions -> [2010/10/31 10:50:48 | 000,000,000 | ---D | M]
No name found   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe} -> [2010/04/29 16:55:08 | 000,000,000 | ---D | M]
Microsoft .NET Framework Assistant   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} -> [2009/06/28 16:07:51 | 000,000,000 | ---D | M]
Google Toolbar for Firefox   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} -> [2010/10/13 13:21:11 | 000,000,000 | ---D | M]
Yahoo! Toolbar   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} -> [2010/10/19 17:46:42 | 000,000,000 | ---D | M]
Adobe DLM (powered by getPlus(R))   -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7} -> [2009/09/15 10:29:12 | 000,000,000 | ---D | M]
  -> C:\Users\Vista User\AppData\Roaming\mozilla\Firefox\Profiles\9nao40ic.default\extensions\toolbar_extras@uk.yahoo.com -> [2008/12/17 15:39:37 | 000,000,000 | ---D | M]
< FireFox SearchPlugins [User Folders] > -> 
 MyStart Search.xml -> C:\Users\Vista User\AppData\Roaming\Mozilla\FireFox\Profiles\9nao40ic.default\searchplugins\MyStart Search.xml -> [2009/08/31 15:58:34 | 000,002,149 | ---- | M] ()
< FireFox Extensions [Program Folders] > -> 
  -> C:\Program Files\Mozilla Firefox\extensions -> [2010/10/22 11:30:24 | 000,000,000 | ---D | M]
Java Console   -> C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} -> [2010/04/29 16:54:08 | 000,000,000 | ---D | M]
Java Console   -> C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} -> [2010/08/02 10:08:12 | 000,000,000 | ---D | M]
Java Console   -> C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} -> [2010/10/22 11:30:24 | 000,000,000 | ---D | M]
< HOSTS File > ([2010/10/30 02:06:04 | 000,623,384 | ---- | M] - 16500 lines) -> C:\Windows\System32\drivers\etc\HOSTS -> 
First 25 entries...
Reset Hosts
127.0.0.1  localhost
127.0.0.1  fr.a2dfp.net #[server down?]
127.0.0.1  m.fr.a2dfp.net #[server down?]
127.0.0.1  ad.a8.net #[server down?]
127.0.0.1  asy.a8ww.net
127.0.0.1  abcstats.com
127.0.0.1  a.abv.bg
127.0.0.1  adserver.abv.bg
127.0.0.1  adv.abv.bg
127.0.0.1  bimg.abv.bg
127.0.0.1  ca.abv.bg
127.0.0.1  www2.a-counter.kiev.ua
127.0.0.1  track.acclaimnetwork.com
127.0.0.1  accuserveadsystem.com
127.0.0.1  www.accuserveadsystem.com
127.0.0.1  achmedia.com
127.0.0.1  aconti.net
127.0.0.1  secure.aconti.net
127.0.0.1  www.aconti.net #[Dialer.Aconti]
127.0.0.1  ads.active.com
127.0.0.1  am1.activemeter.com
127.0.0.1  www.activemeter.com #[Tracking.Cookie]
127.0.0.1  ads.activepower.net
127.0.0.1  stat.active24stats.nl #[Tracking.Cookie]
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> 
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [Adobe PDF Reader Link Helper] -> [2004/12/14 01:56:50 | 000,063,136 | ---- | M] (Adobe Systems Incorporated)
{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll [Symantec NCO BHO] -> [2010/09/03 23:31:29 | 000,396,144 | R--- | M] (Symantec Corporation)
{6D53EC84-6AAE-4787-AEEE-F4628F01010C} [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ipsbho.dll [Symantec Intrusion Prevention] -> [2010/05/14 01:41:20 | 000,079,224 | R--- | M] (Symantec Corporation)
{AE7CD045-E861-484f-8273-0445EE161910} [HKLM] -> C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [Adobe PDF Conversion Toolbar Helper] -> File not found
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar -> 
"{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" [HKLM] -> C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll [Norton Toolbar] -> [2010/09/03 23:31:29 | 000,396,144 | R--- | M] (Symantec Corporation)
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> 
"Acrobat Assistant 7.0" -> C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe ["C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"] -> [2008/04/23 02:08:13 | 000,483,328 | ---- | M] (Adobe Systems Inc.)
"Corel File Shell Monitor" -> C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe [C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe] -> [2007/10/30 18:52:34 | 000,016,200 | ---- | M] ()
"Google Quick Search Box" -> C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe ["C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe"  /autorun] -> [2009/12/11 18:51:43 | 000,122,880 | ---- | M] (Google Inc.)
"LManager" -> C:\Program Files\Launch Manager\LManager.exe [C:\PROGRA~1\LAUNCH~1\LManager.exe] -> [2006/12/21 00:02:14 | 000,659,456 | ---- | M] (Dritek System Inc.)
"Malwarebytes Anti-Malware (reboot)" -> C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe ["C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript] -> [2010/04/29 14:39:32 | 001,090,952 | ---- | M] (Malwarebytes Corporation)
"NvCplDaemon" -> C:\Windows\System32\NvCpl.DLL [RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup] -> [2006/12/20 20:50:00 | 007,766,016 | ---- | M] (NVIDIA Corporation)
"NvMediaCenter" -> C:\Windows\System32\NvMcTray.DLL [RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit] -> [2006/12/20 20:50:00 | 000,081,920 | ---- | M] (NVIDIA Corporation)
"NvSvc" -> C:\Windows\System32\nvsvc.DLL [RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart] -> [2006/12/20 20:50:00 | 000,090,191 | ---- | M] (NVIDIA Corporation)
"RtHDVCpl" -> C:\Windows\RtHDVCpl.exe [RtHDVCpl.exe] -> [2006/11/09 18:57:52 | 003,784,704 | ---- | M] (Realtek Semiconductor)
"YSearchProtection" -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe ["C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"] -> [2008/07/11 17:06:38 | 000,223,984 | ---- | M] (Yahoo! Inc.)
< RunOnce [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce -> 
"OTS" -> C:\Users\Vista User\Desktop\OTS.exe ["C:\Users\Vista User\Desktop\OTS.exe"] -> [2010/10/31 19:00:54 | 000,641,536 | ---- | M] (OldTimer Tools)
< Run [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> 
"ISUSPM Startup" -> C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe ["C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup] -> [2005/08/11 15:30:30 | 000,249,856 | ---- | M] (Macrovision Corporation)
"SUPERAntiSpyware" -> C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE [C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe] -> [2010/10/30 21:12:36 | 002,424,560 | ---- | M] (SUPERAntiSpyware.com)
"swg" -> C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ["C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"] -> [2008/11/25 16:40:23 | 000,039,408 | ---- | M] (Google Inc.)
"YSearchProtection" -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe] -> [2008/07/11 17:06:38 | 000,223,984 | ---- | M] (Yahoo! Inc.)
< Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer -> 
< Software Policy Settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Internet Explorer -> 
< CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDrives" ->  [0] -> File not found
< CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
< CurrentVersion Policy Settings - Explorer [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDrives" ->  [0] -> File not found
< CurrentVersion Policy Settings - System [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> 
< Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> 
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> 
< Trusted Sites Domains [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> 
< Trusted Sites Ranges [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> 
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> 
{0E5F0222-96B9-11D3-8997-00104BD12D94} [HKLM] -> http://pcpitstop.com/betapit/PCPitStop.CAB [PCPitstop Utility] -> 
{1C11B948-582A-433F-A98D-A8C4D5CC64F2} [HKLM] -> http://bq.kp.2020.net/planner/Core/Player/2020PlayerAX_Win32.cab [20-20 3D Viewer] -> 
{30528230-99f7-4bb4-88d8-fa1d4f56a2ab} [HKLM] -> C:\Program Files\Yahoo!\Common\Yinsthelper.dll [Installation Support] -> 
{31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} [HKLM] -> http://host.cycore.net/plugins/windows/ie/Cult3D_IE_5.3.0.228.cab [Cult3D ActiveX Player] -> 
{4871A87A-BFDD-4106-8153-FFDE2BAC2967} [HKLM] -> http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.4.1.cab [DLM Control] -> 
{6218F7B5-0D3A-48BA-AE4C-49DCFA63D400} [HKLM] -> http://www.myheritage.com/Genoogle/Components/ActiveX/SearchEngineQuery.dll [CSEQueryObject Object] -> 
{8100D56A-5661-482C-BEE8-AFECE305D968} [HKLM] -> http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab [Facebook Photo Uploader 5 Control] -> 
{8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] -> 
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] -> 
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab [Java Plug-in 1.6.0_22] -> 
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} [HKLM] -> http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab [Reg Error: Key error.] -> 
{F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} [HKLM] -> http://216.249.24.62/code/iPIX-ImageWell-ipix.cab [iPIX Media Send Class] -> 
{FFB3A759-98B1-446F-BDA9-909C6EB18CC7} [HKLM] -> http://utilities.pcpitstop.com/da2/PCPitStop2.cab [PCPitstop Exam] -> 
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ -> 
DhcpNameServer -> 192.168.1.254 -> 
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> 
{7689D157-F0B9-48DA-8B0C-235DB4510B51}\\DhcpNameServer -> 192.168.1.254   (Broadcom 802.11g Network Adapter) -> 
{ED5973AF-F337-492D-9BDD-9273F4F194FE}\\DhcpNameServer -> 192.168.10.1   (NVIDIA nForce Networking Controller) -> 
IE Styles -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Styles
"MaxScriptStatements" -> Reg Error: Invalid data type.
"Use My Stylesheet" -> Reg Error: Invalid data type.
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> 
*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> 
Explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 06:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> -> 
< ShellExecuteHooks [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks -> 
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}" [HKLM] -> Reg Error: Key error. [] -> File not found
< Domain Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List -> 
< Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List -> 
"C:\Program Files\BitTorrent\bittorrent.exe" -> C:\Program Files\BitTorrent\bittorrent.exe [C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent] -> File not found
< SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot -> 
< CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
"AutoRun" -> 1 -> 
"DisplayName" -> CD-ROM Driver -> 
"ImagePath" ->  [system32\DRIVERS\cdrom.sys] -> File not found
< Drives with AutoRun files > ->  -> 
C:\autoexec.bat [REM Dummy file for NTVDMPATH=%PATH%;C:\PROGRA~1\COMMON~1\MUVEET~1\030625 | ] -> C:\autoexec.bat [ NTFS ] -> [2006/12/07 12:05:10 | 000,000,074 | ---- | M] ()
< MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 -> 
< Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command -> 
comfile [open] -> "%1" %* -> 
exefile [open] -> "%1" %* -> 
< File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ -> 
.com [@ = comfile] -> "%1" %* -> 
.exe [@ = exefile] -> "%1" %* -> 
< File Associations - Select to Repair > -> HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>\ -> 
.com [@ = ComFile] -> Reg Error: Key error. -> File not found
.exe [@ = exefile] -> Reg Error: Key error. -> File not found
 
 
[Files/Folders - Created Within 30 Days]
 _OTS -> C:\_OTS -> [2010/11/01 10:06:30 | 000,000,000 | ---D | C]
 OTS.exe -> C:\Users\Vista User\Desktop\OTS.exe -> [2010/10/31 19:00:51 | 000,641,536 | ---- | C] (OldTimer Tools)
 TFC.exe -> C:\Users\Vista User\Desktop\TFC.exe -> [2010/10/30 15:50:29 | 000,446,464 | ---- | C] (OldTimer Tools)
 HOSTS -> C:\Users\Vista User\Documents\HOSTS -> [2010/10/30 14:38:29 | 000,000,000 | ---D | C]
 OTL.exe -> C:\Users\Vista User\Desktop\OTL.exe -> [2010/10/30 11:43:32 | 000,575,488 | ---- | C] (OldTimer Tools)
 combofix -> C:\Users\Vista User\Documents\combofix -> [2010/10/30 10:48:07 | 000,000,000 | ---D | C]
 $RECYCLE.BIN -> C:\$RECYCLE.BIN -> [2010/10/30 10:41:00 | 000,000,000 | -HSD | C]
 temp -> C:\Windows\temp -> [2010/10/30 10:40:55 | 000,000,000 | ---D | C]
 NIRCMD.exe -> C:\Windows\NIRCMD.exe -> [2010/10/30 10:24:31 | 000,031,232 | ---- | C] (NirSoft)
 SWREG.exe -> C:\Windows\SWREG.exe -> [2010/10/30 10:24:30 | 000,161,792 | ---- | C] (SteelWerX)
 SWSC.exe -> C:\Windows\SWSC.exe -> [2010/10/30 10:24:30 | 000,136,704 | ---- | C] (SteelWerX)
 ERDNT -> C:\Windows\ERDNT -> [2010/10/30 10:24:11 | 000,000,000 | ---D | C]
 Qoobox -> C:\Qoobox -> [2010/10/30 10:23:12 | 000,000,000 | ---D | C]
 SWXCACLS.exe -> C:\Windows\SWXCACLS.exe -> [2010/10/30 10:22:46 | 000,212,480 | ---- | C] (SteelWerX)
 32788R22FWJFW -> C:\32788R22FWJFW -> [2010/10/30 10:22:40 | 000,000,000 | ---D | C]
 hijack this -> C:\Users\Vista User\Desktop\hijack this -> [2010/10/26 18:45:24 | 000,000,000 | ---D | C]
 gameux.dll -> C:\Windows\System32\gameux.dll -> [2010/10/26 18:43:52 | 001,696,256 | ---- | C] (Microsoft Corporation)
 GameUXLegacyGDFs.dll -> C:\Windows\System32\GameUXLegacyGDFs.dll -> [2010/10/26 18:43:51 | 004,240,384 | ---- | C] (Microsoft)
 Apphlpdm.dll -> C:\Windows\System32\Apphlpdm.dll -> [2010/10/26 18:43:51 | 000,028,672 | ---- | C] (Microsoft Corporation)
 PCPitstop -> C:\ProgramData\PCPitstop -> [2010/10/26 12:02:22 | 000,000,000 | ---D | C]
 PCPitstop -> C:\Program Files\PCPitstop -> [2010/10/26 12:02:21 | 000,000,000 | ---D | C]
 MpSigStub.exe -> C:\Windows\System32\MpSigStub.exe -> [2010/10/25 17:30:55 | 000,222,080 | ---- | C] (Microsoft Corporation)
 Microsoft Security Essentials -> C:\Program Files\Microsoft Security Essentials -> [2010/10/25 17:27:45 | 000,000,000 | ---D | C]
 Map Overlays -> C:\Users\Vista User\Documents\Map Overlays -> [2010/10/25 16:42:10 | 000,000,000 | ---D | C]
 Hitman Pro 3.5 -> C:\Program Files\Hitman Pro 3.5 -> [2010/10/22 15:19:25 | 000,000,000 | ---D | C]
 Hitman Pro -> C:\ProgramData\Hitman Pro -> [2010/10/22 15:18:45 | 000,000,000 | ---D | C]
 javaws.exe -> C:\Windows\System32\javaws.exe -> [2010/10/22 11:30:21 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.)
 javaw.exe -> C:\Windows\System32\javaw.exe -> [2010/10/22 11:30:21 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.)
 java.exe -> C:\Windows\System32\java.exe -> [2010/10/22 11:30:21 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.)
 Windows Easy Transfer 7 -> C:\Program Files\Windows Easy Transfer 7 -> [2010/10/21 11:21:28 | 000,000,000 | ---D | C]
 www.shadowexplorer.com -> C:\Users\Vista User\AppData\Local\www.shadowexplorer.com -> [2010/10/20 17:25:02 | 000,000,000 | ---D | C]
 ShadowExplorer -> C:\Program Files\ShadowExplorer -> [2010/10/20 17:07:10 | 000,000,000 | ---D | C]
 Malwarebytes -> C:\Users\Vista User\AppData\Roaming\Malwarebytes -> [2010/10/20 15:32:03 | 000,000,000 | ---D | C]
 mbamswissarmy.sys -> C:\Windows\System32\drivers\mbamswissarmy.sys -> [2010/10/20 15:31:53 | 000,038,224 | ---- | C] (Malwarebytes Corporation)
 mbam.sys -> C:\Windows\System32\drivers\mbam.sys -> [2010/10/20 15:31:51 | 000,020,952 | ---- | C] (Malwarebytes Corporation)
 Malwarebytes' Anti-Malware -> C:\Program Files\Malwarebytes' Anti-Malware -> [2010/10/20 15:31:51 | 000,000,000 | ---D | C]
 Malwarebytes -> C:\ProgramData\Malwarebytes -> [2010/10/20 15:31:51 | 000,000,000 | ---D | C]
 NPE -> C:\Users\Vista User\AppData\Local\NPE -> [2010/10/19 14:01:42 | 000,000,000 | ---D | C]
 vlc -> C:\Users\Vista User\AppData\Roaming\vlc -> [2010/10/18 16:59:47 | 000,000,000 | ---D | C]
 SUPERAntiSpyware.com -> C:\Users\Vista User\AppData\Roaming\SUPERAntiSpyware.com -> [2010/10/16 13:48:19 | 000,000,000 | ---D | C]
 SUPERAntiSpyware.com -> C:\ProgramData\SUPERAntiSpyware.com -> [2010/10/16 13:48:19 | 000,000,000 | ---D | C]
 SUPERAntiSpyware -> C:\Program Files\SUPERAntiSpyware -> [2010/10/16 13:48:11 | 000,000,000 | ---D | C]
 wmploc.DLL -> C:\Windows\System32\wmploc.DLL -> [2010/10/15 09:37:06 | 008,147,456 | ---- | C] (Microsoft Corporation)
 netevent.dll -> C:\Windows\System32\netevent.dll -> [2010/10/15 09:36:42 | 000,017,920 | ---- | C] (Microsoft Corporation)
 t2embed.dll -> C:\Windows\System32\t2embed.dll -> [2010/10/15 09:36:26 | 000,157,184 | ---- | C] (Microsoft Corporation)
 win32k.sys -> C:\Windows\System32\win32k.sys -> [2010/10/15 09:36:23 | 002,038,272 | ---- | C] (Microsoft Corporation)
 mfc40.dll -> C:\Windows\System32\mfc40.dll -> [2010/10/15 09:36:19 | 000,954,752 | ---- | C] (Microsoft Corporation)
 mfc40u.dll -> C:\Windows\System32\mfc40u.dll -> [2010/10/15 09:36:19 | 000,954,288 | ---- | C] (Microsoft Corporation)
 msfeeds.dll -> C:\Windows\System32\msfeeds.dll -> [2010/10/15 09:36:14 | 000,602,112 | ---- | C] (Microsoft Corporation)
 html.iec -> C:\Windows\System32\html.iec -> [2010/10/15 09:36:14 | 000,385,024 | ---- | C] (Microsoft Corporation)
 licmgr10.dll -> C:\Windows\System32\licmgr10.dll -> [2010/10/15 09:36:14 | 000,043,520 | ---- | C] (Microsoft Corporation)
 inetcpl.cpl -> C:\Windows\System32\inetcpl.cpl -> [2010/10/15 09:36:13 | 001,469,440 | ---- | C] (Microsoft Corporation)
 mstime.dll -> C:\Windows\System32\mstime.dll -> [2010/10/15 09:36:13 | 000,611,840 | ---- | C] (Microsoft Corporation)
 iedkcs32.dll -> C:\Windows\System32\iedkcs32.dll -> [2010/10/15 09:36:08 | 000,387,584 | ---- | C] (Microsoft Corporation)
 ieui.dll -> C:\Windows\System32\ieui.dll -> [2010/10/15 09:36:08 | 000,164,352 | ---- | C] (Microsoft Corporation)
 mshtml.tlb -> C:\Windows\System32\mshtml.tlb -> [2010/10/15 09:36:07 | 001,638,912 | ---- | C] (Microsoft Corporation)
 iepeers.dll -> C:\Windows\System32\iepeers.dll -> [2010/10/15 09:36:07 | 000,184,320 | ---- | C] (Microsoft Corporation)
 ie4uinit.exe -> C:\Windows\System32\ie4uinit.exe -> [2010/10/15 09:36:07 | 000,173,056 | ---- | C] (Microsoft Corporation)
 ieUnatt.exe -> C:\Windows\System32\ieUnatt.exe -> [2010/10/15 09:36:07 | 000,133,632 | ---- | C] (Microsoft Corporation)
 iesysprep.dll -> C:\Windows\System32\iesysprep.dll -> [2010/10/15 09:36:07 | 000,109,056 | ---- | C] (Microsoft Corporation)
 iesetup.dll -> C:\Windows\System32\iesetup.dll -> [2010/10/15 09:36:07 | 000,071,680 | ---- | C] (Microsoft Corporation)
 iernonce.dll -> C:\Windows\System32\iernonce.dll -> [2010/10/15 09:36:07 | 000,055,808 | ---- | C] (Microsoft Corporation)
 msfeedsbs.dll -> C:\Windows\System32\msfeedsbs.dll -> [2010/10/15 09:36:07 | 000,055,296 | ---- | C] (Microsoft Corporation)
 jsproxy.dll -> C:\Windows\System32\jsproxy.dll -> [2010/10/15 09:36:07 | 000,025,600 | ---- | C] (Microsoft Corporation)
 msfeedssync.exe -> C:\Windows\System32\msfeedssync.exe -> [2010/10/15 09:36:07 | 000,013,312 | ---- | C] (Microsoft Corporation)
 msshsq.dll -> C:\Windows\System32\msshsq.dll -> [2010/10/15 09:36:04 | 000,231,424 | ---- | C] (Microsoft Corporation)
 wmpmde.dll -> C:\Windows\System32\wmpmde.dll -> [2010/10/15 09:36:02 | 000,867,328 | ---- | C] (Microsoft Corporation)
 syncdb -> C:\Windows\System32\syncdb -> [2010/10/14 18:54:50 | 000,000,000 | ---D | C]
 Mswinsck.OCX -> C:\Windows\System32\Mswinsck.OCX -> [2010/10/13 11:11:02 | 000,108,336 | ---- | C] (Microsoft Corporation)
 MSINET.OCX -> C:\Windows\System32\MSINET.OCX -> [2010/10/13 11:11:01 | 000,132,880 | ---- | C] (Microsoft Corporation)
 regid.1986-12.com.adobe -> C:\ProgramData\regid.1986-12.com.adobe -> [2010/10/11 12:24:56 | 000,000,000 | ---D | C]
 Adobe -> C:\Users\Vista User\Documents\Adobe -> [2010/10/11 12:24:51 | 000,000,000 | ---D | C]
 vso -> C:\Program Files\vso -> [2010/10/08 20:31:45 | 000,000,000 | ---D | C]
 Video to DVD Burner -> C:\Users\Vista User\Documents\Video to DVD Burner -> [2010/10/06 18:19:47 | 000,000,000 | ---D | C]
 tv license -> C:\Users\Vista User\Documents\tv license -> [2010/10/05 19:52:30 | 000,000,000 | ---D | C]
 pcouffin.sys -> C:\Users\Vista User\AppData\Roaming\pcouffin.sys -> [2008/12/13 15:25:16 | 000,047,360 | ---- | C] (VSO Software)
 Interop.Shell32.dll -> C:\Windows\System32\Interop.Shell32.dll -> [2006/12/07 12:18:24 | 000,053,248 | ---- | C] ( )
 
[Files/Folders - Modified Within 30 Days]
 GoogleUpdateTaskUserS-1-5-21-1347133558-1696348400-1136593757-1000UA.job -> C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1347133558-1696348400-1136593757-1000UA.job -> [2010/11/01 10:19:00 | 000,000,926 | ---- | M] ()
 perfh009.dat -> C:\Windows\System32\perfh009.dat -> [2010/11/01 10:15:16 | 000,609,196 | ---- | M] ()
 perfc009.dat -> C:\Windows\System32\perfc009.dat -> [2010/11/01 10:15:16 | 000,108,672 | ---- | M] ()
 Google Software Updater.job -> C:\Windows\tasks\Google Software Updater.job -> [2010/11/01 10:12:42 | 000,000,868 | ---- | M] ()
 nvModes.001 -> C:\Users\Vista User\AppData\Roaming\nvModes.001 -> [2010/11/01 10:12:01 | 000,013,260 | ---- | M] ()
 hosts.ics -> C:\Windows\System32\drivers\etc\hosts.ics -> [2010/11/01 10:10:27 | 000,000,436 | ---- | M] ()
 7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> [2010/11/01 10:09:29 | 000,003,168 | -H-- | M] ()
 7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> [2010/11/01 10:09:29 | 000,003,168 | -H-- | M] ()
 GoogleUpdateTaskMachineCore.job -> C:\Windows\tasks\GoogleUpdateTaskMachineCore.job -> [2010/11/01 10:09:28 | 000,000,880 | ---- | M] ()
 bootstat.dat -> C:\Windows\bootstat.dat -> [2010/11/01 10:09:10 | 000,067,584 | --S- | M] ()
 hiberfil.sys -> C:\hiberfil.sys -> [2010/11/01 10:08:46 | 2951,397,376 | -HS- | M] ()
 GoogleUpdateTaskMachineUA.job -> C:\Windows\tasks\GoogleUpdateTaskMachineUA.job -> [2010/11/01 09:59:01 | 000,000,884 | ---- | M] ()
 GoogleUpdateTaskUserS-1-5-21-1347133558-1696348400-1136593757-1000Core.job -> C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1347133558-1696348400-1136593757-1000Core.job -> [2010/10/31 19:04:57 | 000,000,874 | ---- | M] ()
 OTS.exe -> C:\Users\Vista User\Desktop\OTS.exe -> [2010/10/31 19:00:54 | 000,641,536 | ---- | M] (OldTimer Tools)
 nvModes.dat -> C:\Users\Vista User\AppData\Roaming\nvModes.dat -> [2010/10/31 18:57:24 | 000,013,260 | ---- | M] ()
 SecurityCheck.exe -> C:\Users\Vista User\Desktop\SecurityCheck.exe -> [2010/10/31 10:42:09 | 000,869,086 | ---- | M] ()
 TFC.exe -> C:\Users\Vista User\Desktop\TFC.exe -> [2010/10/30 15:51:05 | 000,446,464 | ---- | M] (OldTimer Tools)
 KGyGaAvL.sys -> C:\Windows\System32\KGyGaAvL.sys -> [2010/10/30 14:55:12 | 000,007,048 | -HS- | M] ()
 OTL.exe -> C:\Users\Vista User\Desktop\OTL.exe -> [2010/10/30 11:43:34 | 000,575,488 | ---- | M] (OldTimer Tools)
 HOSTS.MVP -> C:\Windows\System32\drivers\etc\HOSTS.MVP -> [2010/10/30 02:06:04 | 000,623,384 | ---- | M] ()
 HOSTS -> C:\Windows\System32\drivers\etc\HOSTS -> [2010/10/30 02:06:04 | 000,623,384 | ---- | M] ()
 ComboFix.exe -> C:\Users\Vista User\Desktop\ComboFix.exe -> [2010/10/29 17:33:24 | 003,894,257 | R--- | M] ()
 RKUnhookerLE.EXE -> C:\Users\Vista User\Desktop\RKUnhookerLE.EXE -> [2010/10/29 09:45:16 | 000,133,632 | ---- | M] ()
 MBR.exe -> C:\Windows\MBR.exe -> [2010/10/28 17:21:27 | 000,084,992 | ---- | M] ()
 Microsoft Security Essentials.lnk -> C:\Users\Public\Desktop\Microsoft Security Essentials.lnk -> [2010/10/25 17:27:46 | 000,000,906 | ---- | M] ()
 hitmanpro35.sys -> C:\Windows\System32\drivers\hitmanpro35.sys -> [2010/10/22 15:19:27 | 000,016,968 | ---- | M] ()
 d3d9caps.dat -> C:\Users\Vista User\AppData\Local\d3d9caps.dat -> [2010/10/20 11:15:53 | 000,001,356 | ---- | M] ()
 MpSigStub.exe -> C:\Windows\System32\MpSigStub.exe -> [2010/10/19 20:51:33 | 000,222,080 | ---- | M] (Microsoft Corporation)
 Command Prompt.lnk -> C:\Users\Vista User\Desktop\Command Prompt.lnk -> [2010/10/19 16:51:30 | 000,001,659 | ---- | M] ()
 http___us.norton.com_support_premium_services_malware_removal_guide.pdf -> C:\Users\Vista User\Documents\http___us.norton.com_support_premium_services_malware_removal_guide.pdf -> [2010/10/19 16:15:40 | 001,641,025 | ---- | M] ()
 VLC media player.lnk -> C:\Users\Public\Desktop\VLC media player.lnk -> [2010/10/18 16:59:37 | 000,000,695 | ---- | M] ()
 FNTCACHE.DAT -> C:\Windows\System32\FNTCACHE.DAT -> [2010/10/16 09:25:39 | 000,306,144 | ---- | M] ()
 MRT.INI -> C:\Windows\System32\MRT.INI -> [2010/10/16 08:59:06 | 000,000,118 | ---- | M] ()
 mfc703.dll -> C:\Windows\System32\mfc703.dll -> [2010/10/11 16:37:13 | 000,116,736 | RHS- | M] ()
 Adobe Acrobat Speed Launcher.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk -> [2010/10/09 09:14:19 | 000,002,437 | ---- | M] ()
 Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2010/10/08 19:34:54 | 000,001,691 | ---- | M] ()
 
[Files - No Company Name]
 SecurityCheck.exe -> C:\Users\Vista User\Desktop\SecurityCheck.exe -> [2010/10/31 10:42:06 | 000,869,086 | ---- | C] ()
 PEV.exe -> C:\Windows\PEV.exe -> [2010/10/30 10:24:31 | 000,256,512 | ---- | C] ()
 MBR.exe -> C:\Windows\MBR.exe -> [2010/10/30 10:24:31 | 000,084,992 | ---- | C] ()
 sed.exe -> C:\Windows\sed.exe -> [2010/10/30 10:24:30 | 000,098,816 | ---- | C] ()
 grep.exe -> C:\Windows\grep.exe -> [2010/10/30 10:24:30 | 000,080,412 | ---- | C] ()
 zip.exe -> C:\Windows\zip.exe -> [2010/10/30 10:24:30 | 000,068,096 | ---- | C] ()
 ComboFix.exe -> C:\Users\Vista User\Desktop\ComboFix.exe -> [2010/10/29 17:33:09 | 003,894,257 | R--- | C] ()
 RKUnhookerLE.EXE -> C:\Users\Vista User\Desktop\RKUnhookerLE.EXE -> [2010/10/29 09:45:14 | 000,133,632 | ---- | C] ()
 Microsoft Security Essentials.lnk -> C:\Users\Public\Desktop\Microsoft Security Essentials.lnk -> [2010/10/25 17:27:46 | 000,000,906 | ---- | C] ()
 hitmanpro35.sys -> C:\Windows\System32\drivers\hitmanpro35.sys -> [2010/10/22 15:19:27 | 000,016,968 | ---- | C] ()
 hiberfil.sys -> C:\hiberfil.sys -> [2010/10/20 11:29:45 | 2951,397,376 | -HS- | C] ()
 Command Prompt.lnk -> C:\Users\Vista User\Desktop\Command Prompt.lnk -> [2010/10/19 16:51:30 | 000,001,659 | ---- | C] ()
 http___us.norton.com_support_premium_services_malware_removal_guide.pdf -> C:\Users\Vista User\Documents\http___us.norton.com_support_premium_services_malware_removal_guide.pdf -> [2010/10/19 16:15:39 | 001,641,025 | ---- | C] ()
 VLC media player.lnk -> C:\Users\Public\Desktop\VLC media player.lnk -> [2010/10/18 16:59:36 | 000,000,695 | ---- | C] ()
 MRT.INI -> C:\Windows\System32\MRT.INI -> [2010/10/16 08:59:06 | 000,000,118 | ---- | C] ()
 mfc703.dll -> C:\Windows\System32\mfc703.dll -> [2010/10/11 16:37:13 | 000,116,736 | RHS- | C] ()
 Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2010/10/08 19:34:52 | 000,001,691 | ---- | C] ()
 jhvr_b24.ini -> C:\Windows\jhvr_b24.ini -> [2010/05/20 10:36:17 | 000,003,689 | ---- | C] ()
 impborl.dll -> C:\Windows\impborl.dll -> [2010/02/24 17:02:06 | 000,012,288 | ---- | C] ()
 ntuser.pol -> C:\ProgramData\ntuser.pol -> [2009/09/12 09:18:54 | 000,000,258 | RHS- | C] ()
 EhStorAuthn.dll -> C:\Windows\System32\EhStorAuthn.dll -> [2009/08/19 09:16:35 | 000,117,248 | ---- | C] ()
 OGACheckControl.dll -> C:\Windows\System32\OGACheckControl.dll -> [2009/08/03 14:07:42 | 000,403,816 | ---- | C] ()
 .zreglib -> C:\ProgramData\.zreglib -> [2009/03/23 17:40:10 | 000,000,041 | -HS- | C] ()
 UserTile.png -> C:\Users\Vista User\AppData\Roaming\UserTile.png -> [2009/02/10 21:14:42 | 000,024,206 | ---- | C] ()
 msrctp.ini -> C:\Windows\System32\msrctp.ini -> [2009/01/10 18:06:40 | 000,000,003 | ---- | C] ()
 d3d9caps.dat -> C:\Users\Vista User\AppData\Local\d3d9caps.dat -> [2008/12/20 18:12:04 | 000,001,356 | ---- | C] ()
 pcouffin.log -> C:\Users\Vista User\AppData\Roaming\pcouffin.log -> [2008/12/13 15:25:56 | 000,000,034 | ---- | C] ()
 pcouffin.cat -> C:\Users\Vista User\AppData\Roaming\pcouffin.cat -> [2008/12/13 15:25:16 | 000,007,887 | ---- | C] ()
 pcouffin.inf -> C:\Users\Vista User\AppData\Roaming\pcouffin.inf -> [2008/12/13 15:25:16 | 000,001,144 | ---- | C] ()
 KGyGaAvL.sys -> C:\ProgramData\KGyGaAvL.sys -> [2008/11/26 14:37:19 | 000,011,270 | -HS- | C] ()
 EBFCAC4176.sys -> C:\ProgramData\EBFCAC4176.sys -> [2008/11/26 14:37:19 | 000,000,168 | RHS- | C] ()
 KGyGaAvL.sys -> C:\Windows\System32\KGyGaAvL.sys -> [2008/11/26 11:23:28 | 000,007,048 | -HS- | C] ()
 9DC5C30FED.sys -> C:\Windows\System32\9DC5C30FED.sys -> [2008/11/26 11:23:28 | 000,000,168 | RHS- | C] ()
 ezsidmv.dat -> C:\ProgramData\ezsidmv.dat -> [2008/11/25 20:26:18 | 000,000,056 | -H-- | C] ()
 hpzinstall.log -> C:\ProgramData\hpzinstall.log -> [2008/11/25 15:54:56 | 000,004,488 | ---- | C] ()
 M2000T07.ini -> C:\Windows\M2000T07.ini -> [2008/11/18 16:52:11 | 000,015,190 | ---- | C] ()
 int15.sys -> C:\Windows\System32\drivers\int15.sys -> [2008/11/18 11:21:55 | 000,076,584 | ---- | C] ()
 int15_64.sys -> C:\Windows\System32\drivers\int15_64.sys -> [2008/11/18 11:21:55 | 000,015,656 | ---- | C] ()
 NATTraversal.dll -> C:\Windows\System32\NATTraversal.dll -> [2008/11/18 11:20:08 | 000,065,536 | ---- | C] ()
 Acer.ini -> C:\Windows\Acer.ini -> [2008/11/18 11:05:49 | 000,000,037 | ---- | C] ()
 nvModes.001 -> C:\Users\Vista User\AppData\Roaming\nvModes.001 -> [2008/11/18 11:05:09 | 000,013,260 | ---- | C] ()
 nvModes.dat -> C:\Users\Vista User\AppData\Roaming\nvModes.dat -> [2008/11/18 11:05:02 | 000,013,260 | ---- | C] ()
 NotesExtmngr.dll -> C:\Windows\System32\NotesExtmngr.dll -> [2007/01/02 18:54:14 | 000,266,240 | ---- | C] ()
 NotesActnMenu.dll -> C:\Windows\System32\NotesActnMenu.dll -> [2007/01/02 18:53:54 | 000,204,800 | ---- | C] ()
 MSNSpook.dll -> C:\Windows\System32\MSNSpook.dll -> [2007/01/02 18:53:20 | 000,086,016 | ---- | C] ()
 MsnChatHook_org.dll -> C:\Windows\System32\MsnChatHook_org.dll -> [2007/01/02 18:52:40 | 000,037,376 | ---- | C] ()
 BatchCrypto.dll -> C:\Windows\System32\BatchCrypto.dll -> [2007/01/02 18:52:28 | 000,028,672 | ---- | C] ()
 APISlice.dll -> C:\Windows\System32\APISlice.dll -> [2007/01/02 18:52:26 | 000,073,728 | ---- | C] ()
 ShowErrMsg.dll -> C:\Windows\System32\ShowErrMsg.dll -> [2007/01/02 18:52:18 | 000,063,488 | ---- | C] ()
 MailFormat_U.dll -> C:\Windows\System32\MailFormat_U.dll -> [2006/12/25 15:44:48 | 000,022,016 | ---- | C] ()
 NTIBUN4.dll -> C:\Windows\System32\NTIBUN4.dll -> [2006/12/07 13:44:32 | 000,001,024 | RH-- | C] ()
 ScrollBarLib.dll -> C:\Windows\System32\ScrollBarLib.dll -> [2006/12/07 12:18:26 | 000,331,776 | ---- | C] ()
 UBHelper.sys -> C:\Windows\System32\drivers\UBHelper.sys -> [2006/12/07 12:05:27 | 000,013,952 | ---- | C] ()
 _psisdecd.dll -> C:\Windows\System32\_psisdecd.dll -> [2006/12/07 12:04:14 | 000,198,144 | ---- | C] ()
 iconv.dll -> C:\Windows\iconv.dll -> [2006/12/02 07:24:39 | 000,872,448 | ---- | C] ()
 libxml2.dll -> C:\Windows\libxml2.dll -> [2006/12/02 07:24:39 | 000,743,424 | ---- | C] ()
 Capsule.dll -> C:\Windows\Capsule.dll -> [2006/12/02 07:24:39 | 000,204,800 | ---- | C] ()
 PreLaunch.ini -> C:\Windows\PreLaunch.ini -> [2006/12/02 07:24:39 | 000,000,042 | ---- | C] ()
 WdfCoInstaller01000.dll -> C:\Windows\System32\WdfCoInstaller01000.dll -> [2006/12/02 07:24:38 | 001,060,424 | ---- | C] ()
 sysprepMCE.dll -> C:\Windows\System32\sysprepMCE.dll -> [2006/11/02 12:35:32 | 000,005,632 | ---- | C] ()
 igfxTMM.dll -> C:\Windows\System32\igfxTMM.dll -> [2006/11/02 10:25:21 | 000,061,440 | ---- | C] ()
 pacerprf.ini -> C:\Windows\System32\pacerprf.ini -> [2006/11/02 07:40:29 | 000,013,750 | ---- | C] ()
 multiplex_vcd.dll -> C:\Windows\System32\multiplex_vcd.dll -> [2001/12/26 23:12:30 | 000,065,536 | ---- | C] ()
 Hmpg12.dll -> C:\Windows\System32\Hmpg12.dll -> [2001/09/04 06:46:38 | 000,110,592 | ---- | C] ()
 HMPV2_ENC.dll -> C:\Windows\System32\HMPV2_ENC.dll -> [2001/07/30 23:33:56 | 000,118,784 | ---- | C] ()
 HMPV2_ENC_MMX.dll -> C:\Windows\System32\HMPV2_ENC_MMX.dll -> [2001/07/24 05:04:36 | 000,118,784 | ---- | C] ()
 
[Alternate Data Streams]
@Alternate Data Stream - 107 bytes -> C:\ProgramData\Temp:0B9D8E22
@Alternate Data Stream - 119 bytes -> C:\ProgramData\Temp:242231A9
< End of report >
ronecc
Regular Member
 
Posts: 21
Joined: October 26th, 2010, 1:27 pm

Re: very difficult removal

Unread postby peku006 » November 1st, 2010, 7:40 am

Hi Ron

I'm not quite sure what this "rc23.overture" is , because it seems that it belongs to

Yahoo!

http://www.who.is/website-information/overture.com/

If you still have problems with redirects

Try running IE8 in no add/ons mode
http://support.microsoft.com/kb/936213

Firefox

and post back if it helped.

Thanks peku006
User avatar
peku006
MRU Emeritus
MRU Emeritus
 
Posts: 3357
Joined: May 14th, 2007, 2:18 pm
Location: Norway

Re: very difficult removal

Unread postby ronecc » November 1st, 2010, 7:48 am

Hi. This overture is the problem I am getting. It appears to be attached to Yahoo when I click on a web link. I get re-directed to a Yahoo web page that has as the first link, a blue box with 'ERROR 404. Cannot display......' The rest of the web links on the page are all concerning 'Overture' and links containing the word 'overture'. I just tried one link now and it was re-directed again. When I use Google it goes to various pages like 'Gameo' I will look at the links you have sent and see what happens. Failing that do you think it better if I Format the disc and start again?
ronecc
Regular Member
 
Posts: 21
Joined: October 26th, 2010, 1:27 pm

Re: very difficult removal

Unread postby peku006 » November 1st, 2010, 8:06 am

Hi Ron

is not necessary to reformat ,try running both without add/ons
User avatar
peku006
MRU Emeritus
MRU Emeritus
 
Posts: 3357
Joined: May 14th, 2007, 2:18 pm
Location: Norway

Re: very difficult removal

Unread postby ronecc » November 1st, 2010, 9:09 am

Hi. Appears to be working OK with all add ons disabled. In Firefox all Java is disabled, Adobe DLM, Microsoft.Net. I have kept the Google Toolbar so that I can search.
In I.E.8 I have disabled Adobe items apart from Shockwave Flash, Java and Norton toolbar.
Can I delete all the software from the desktop that I downloaded recently, or should some be saved? That is if you think we have finished yet!
Ron
ronecc
Regular Member
 
Posts: 21
Joined: October 26th, 2010, 1:27 pm

Re: very difficult removal

Unread postby peku006 » November 1st, 2010, 9:34 am

Hi Ron

Since it's difficult to tell which add-on is causing a problem, you need to disable each add-on, one by one, until the problem goes away.

To remove all of the tools we used and the files and folders they created do the following:

Delete Rootkit Unhooker GMER Rootkit Scanner and Security Check from your desktop.

Download OTC by Old Timer and save it to your Desktop.

  • Double-click OTC.exe
  • Click the CleanUp! button
  • Select Yes when the Begin cleanup Process? Prompt appears
  • If you are prompted to Reboot during the cleanup, select Yes
  • The tool will delete itself once it finishes, if not delete it by yourself

Note: If you receive a warning from your firewall or other security programs regarding OTC attempting to contact the internet, please allow it to do so.

Now that you are clean, please follow these simple steps in order to keep your computer clean and secure:

This is a good time to clear your existing system restore points and establish a new clean restore point:

    Turn off System Restore-Vista
    • Click the Vista/Start icon.
    • Right Click >> Computer
    • Click Properties.
    • Click the System Protection tab.
    • Uncheck All drives
    • Click Turn Off System Restore at the prompt then click Apply.
    • Restart your computer.
    Turn ON System Restore-Vista
    • Click the Vista/Start icon
    • Right Click >> Computer
    • Click Properties.
    • Click the System Protection tab.
    • Checkmark All drives that were selected previously then click Apply.

    Update your Antivirus programs and other security products regularly to avoid new threats that could infect your system.
    You can use one of these sites to check if any updates are needed for your pc.
    Secunia Software Inspector
    F-secure Health Check

    Visit Microsoft often to get the latest updates for your computer.
    http://www.update.microsoft.com

    Here are some things that I think are worth having a look at if you don't already know a bout them:.

    • WinPatrol
      As a robust security monitor, WinPatrol will alert you to hijackings, malware attacks and critical changes made to your computer without your permission. WinPatrol takes snapshot of your critical system resources and alerts you to any changes that may occur without your knowledge. For more information, please visit HERE.
    • SpywareBlaster
      SpywareBlaster sets killbits in the registry to prevent known malicious ActiveX controls from installing on your computer. If you don't know what ActiveX controls are, see HERE. You can download SpywareBlaster from HERE.
    • Hosts File
      For added protection you may also like to add a host file. A simple explanation of what a Hosts file does is HERE and for more information regarding host files read HERE.
    • Use an alternative Internet Browser
      Many of the exploits are directed to users of Internet Explorer. Try using a different browser instead: Firefox or Opera

Here is a great article by miekiemoes How to prevent Malware.

Finally I am trying to make one point very clear. It is ABSOLUTELY ESSENTIAL to keep all of your security programs up to date.

I'd be grateful if you could reply to this post so that I know you have read it and, if you've no other questions, the thread can be closed.

Happy surfing and stay clean!

peku006
User avatar
peku006
MRU Emeritus
MRU Emeritus
 
Posts: 3357
Joined: May 14th, 2007, 2:18 pm
Location: Norway

Re: very difficult removal

Unread postby ronecc » November 1st, 2010, 9:58 am

Hi peku006. Thanks for all your help. I will now go through all you have just told me. One thing I am worried about is that System Restore does not appear to save restore point for more than a few days. When I have tried to restore, the computer goes through the whole process and ends up with an error saying that it could not restore. I have not been able to do a restore since I have had the computer (3 years) so it is not a problem with this recent fault. Any ideas?
ronecc
Regular Member
 
Posts: 21
Joined: October 26th, 2010, 1:27 pm

Re: very difficult removal

Unread postby peku006 » November 1st, 2010, 11:45 am

Hi Ron

I'm sorry but I'm not expert in that kind of issue

maybe this page will help
User avatar
peku006
MRU Emeritus
MRU Emeritus
 
Posts: 3357
Joined: May 14th, 2007, 2:18 pm
Location: Norway
Advertisement
Register to Remove

PreviousNext

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 57 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware