OTL logfile created on: 9/24/2009 9:46:45 PM - Run 1
OTL by OldTimer - Version 3.0.14.0 Folder = C:\Documents and Settings\Tony.ADR\My Documents\Downloads
Windows XP Media Center Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: | Country: | Language: | Date Format:
2.00 Gb Total Physical Memory | 1.45 Gb Available Physical Memory | 72.70% Memory free
2.83 Gb Paging File | 2.38 Gb Available in Paging File | 84.02% Paging File free
Paging file location(s): D:\pagefile.sys 1000 1000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 13.97 Gb Total Space | 2.40 Gb Free Space | 17.17% Space Free | Partition Type: NTFS
Drive D: | 133.41 Gb Total Space | 75.46 Gb Free Space | 56.56% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive K: | 465.65 Gb Total Space | 350.49 Gb Free Space | 75.27% Space Free | Partition Type: FAT32
Computer Name: ADR
Current User Name: Tony
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
PRC - C:\WINDOWS\ehome\ehSched.exe (Microsoft Corporation)
PRC - C:\WINDOWS\System32\nvsvc32.exe (NVIDIA Corporation)
PRC - C:\WINDOWS\System32\HPZipm12.exe (HP)
PRC - C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe (Intuit)
PRC - C:\Program Files\Common Files\Sony Shared\WMPlugIn\SonicStageMonitoring.exe (Sony Corporation)
PRC - C:\WINDOWS\System32\wdfmgr.exe (Microsoft Corporation)
PRC - C:\WINDOWS\Explorer.EXE (Microsoft Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Music\SSSvr.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Photo\appsrv\PhotoAppSrv.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe (Sony Corporation)
PRC - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe (Sony Corporation)
PRC - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
PRC - D:\Program Files\Mozilla Firefox 3.5 Beta 4\firefox.exe (Mozilla Corporation)
PRC - C:\Documents and Settings\Tony.ADR\My Documents\Downloads\OTL.exe (OldTimer Tools)
========== Win32 Services (SafeList) ========== SRV - (Apple Mobile Device [Auto | Running]) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (aspnet_state [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (aswUpdSv [Auto | Running]) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
SRV - (avast! Antivirus [Auto | Running]) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
SRV - (avast! Mail Scanner [On_Demand | Running]) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
SRV - (avast! Web Scanner [On_Demand | Running]) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
SRV - (Bonjour Service [Auto | Running]) -- C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (ehSched [Auto | Running]) -- C:\WINDOWS\ehome\ehSched.exe (Microsoft Corporation)
SRV - (FontCache3.0.0.0 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (gupdate1c9979e50768e86 [Auto | Stopped]) -- File not found
SRV - (gusvc [On_Demand | Stopped]) -- File not found
SRV - (helpsvc [Auto | Running]) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (IDriverT [On_Demand | Stopped]) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (idsvc [Unknown | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation)
SRV - (iPod Service [On_Demand | Stopped]) -- File not found
SRV - (NetTcpPortSharing [Disabled | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (NVSvc [Auto | Running]) -- C:\WINDOWS\System32\nvsvc32.exe (NVIDIA Corporation)
SRV - (ose [On_Demand | Stopped]) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (Pml Driver HPZ12 [Auto | Running]) -- C:\WINDOWS\System32\HPZipm12.exe (HP)
SRV - (QBCFMonitorService [Auto | Running]) -- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe (Intuit)
SRV - (QBFCService [On_Demand | Stopped]) -- C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe (Intuit Inc.)
SRV - (SNDSrvc [On_Demand | Stopped]) -- C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe (Symantec Corporation)
SRV - (SonicStageMonitoring [Auto | Running]) -- C:\Program Files\Common Files\Sony Shared\WMPlugIn\SonicStageMonitoring.exe (Sony Corporation)
SRV - (SPTISRV [On_Demand | Stopped]) -- File not found
SRV - (UMWdf [Auto | Running]) -- C:\WINDOWS\System32\wdfmgr.exe (Microsoft Corporation)
SRV - (VAIOMediaPlatform-MusicServer-AppServer [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Music\SSSvr.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-MusicServer-HTTP [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-MusicServer-UPnP [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-PhotoServer-AppServer [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Photo\appsrv\PhotoAppSrv.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-PhotoServer-HTTP [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-PhotoServer-UPnP [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-VideoServer-AppServer [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-VideoServer-HTTP [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe (Sony Corporation)
SRV - (VAIOMediaPlatform-VideoServer-UPnP [Auto | Running]) -- C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe (Sony Corporation)
========== Driver Services (SafeList) ========== DRV - (Aavmker4 [System | Running]) -- C:\WINDOWS\System32\drivers\aavmker4.sys (ALWIL Software)
DRV - (AgereSoftModem [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\AGRSM.sys (Agere Systems)
DRV - (aswFsBlk [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\aswFsBlk.sys (ALWIL Software)
DRV - (aswMon2 [Auto | Running]) -- C:\WINDOWS\System32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswRdr [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswSP [System | Running]) -- C:\WINDOWS\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswTdi [System | Running]) -- C:\WINDOWS\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (ati2mtag [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\ati2mtag.sys (ATI Technologies Inc.)
DRV - (AVC1200 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\CA506AV.SYS (Sunplus Technology Co. LTD.)
DRV - (ca506aaf [On_Demand | Stopped]) -- C:\WINDOWS\System32\drivers\ca506aaf.sys (Sunplus Technology Co., Ltd.)
DRV - (Cdr4_xp [System | Running]) -- C:\WINDOWS\System32\drivers\cdr4_xp.sys (Sonic Solutions)
DRV - (Cdralw2k [System | Running]) -- C:\WINDOWS\System32\drivers\cdralw2k.sys (Sonic Solutions)
DRV - (ctac32k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctac32k.sys (Creative Technology Ltd)
DRV - (ctaud2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctaud2k.sys (Creative Technology Ltd)
DRV - (ctprxy2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctprxy2k.sys (Creative Technology Ltd)
DRV - (ctsfm2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctsfm2k.sys (Creative Technology Ltd)
DRV - (DLABOIOM [Auto | Running]) -- C:\WINDOWS\System32\DLA\DLABOIOM.SYS (Sonic Solutions)
DRV - (DLACDBHM [System | Running]) -- C:\WINDOWS\System32\Drivers\DLACDBHM.SYS (Sonic Solutions)
DRV - (DLADResN [Auto | Running]) -- C:\WINDOWS\System32\DLA\DLADResN.SYS (Sonic Solutions)
DRV - (DLAIFS_M [Auto | Running]) -- C:\WINDOWS\System32\DLA\DLAIFS_M.SYS (Sonic Solutions)
DRV - (DLAOPIOM [Auto | Running]) -- C:\WINDOWS\System32\DLA\DLAOPIOM.SYS (Sonic Solutions)
DRV - (DLAPoolM [Auto | Running]) -- C:\WINDOWS\System32\DLA\DLAPoolM.SYS (Sonic Solutions)
DRV - (DLARTL_N [System | Running]) -- C:\WINDOWS\System32\Drivers\DLARTL_N.SYS (Sonic Solutions)
DRV - (DLAUDFAM [Auto | Running]) -- C:\WINDOWS\System32\DLA\DLAUDFAM.SYS (Sonic Solutions)
DRV - (DLAUDF_M [Auto | Running]) -- C:\WINDOWS\System32\DLA\DLAUDF_M.SYS (Sonic Solutions)
DRV - (DMICall [System | Running]) -- C:\WINDOWS\System32\DRIVERS\DMICall.sys (Sony Corporation)
DRV - (DRVMCDB [Boot | Running]) -- C:\WINDOWS\System32\Drivers\DRVMCDB.SYS (Sonic Solutions)
DRV - (DRVNDDM [Auto | Running]) -- C:\WINDOWS\System32\Drivers\DRVNDDM.SYS (Sonic Solutions)
DRV - (E1000 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\e1000325.sys (Intel Corporation)
DRV - (emupia [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\emupia2k.sys (Creative Technology Ltd)
DRV - (gameenum [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\gameenum.sys (Microsoft Corporation)
DRV - (GEARAspiWDM [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (ha10kx2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ha10kx2k.sys (Creative Technology Ltd)
DRV - (HPZid412 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\HPZid412.sys (HP)
DRV - (HPZipr12 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\HPZipr12.sys (HP)
DRV - (HPZius12 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\HPZius12.sys (HP)
DRV - (IrBus [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\IrBus.sys (Microsoft Corporation)
DRV - (NuidFltr [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\NuidFltr.sys (Microsoft Corporation)
DRV - (nv [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (ossrv [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctoss2k.sys (Creative Technology Ltd.)
DRV - (Point32 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\point32.sys (Microsoft Corporation)
DRV - (Ptilink [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (PxHelp20 [Boot | Running]) -- C:\WINDOWS\System32\DRIVERS\PxHelp20.sys (Sonic Solutions)
DRV - (rtl8139 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\RTL8139.SYS (Realtek Semiconductor Corporation)
DRV - (SbcpHid [System | Running]) -- C:\WINDOWS\System32\Drivers\SbcpHid.sys ()
DRV - (Secdrv [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (smrt [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\smrt.sys (Sony Corporation)
DRV - (SonyLSM [Boot | Running]) -- C:\WINDOWS\System32\Drivers\SonyLSM.sys (Sony Corporation)
DRV - (SYMDNS [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\SYMDNS.SYS (Symantec Corporation)
DRV - (SymEvent [On_Demand | Stopped]) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS (Symantec Corporation)
DRV - (SYMFW [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\SYMFW.SYS (Symantec Corporation)
DRV - (SYMIDS [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\SYMIDS.SYS (Symantec Corporation)
DRV - (SYMNDIS [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\SYMNDIS.SYS (Symantec Corporation)
DRV - (SYMREDRV [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\SYMREDRV.SYS (Symantec Corporation)
DRV - (SYMTDI [System | Running]) -- C:\WINDOWS\System32\Drivers\SYMTDI.SYS (Symantec Corporation)
DRV - (usbaudio [On_Demand | Stopped]) -- C:\WINDOWS\System32\drivers\usbaudio.sys (Microsoft Corporation)
DRV - (wanatw [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\wanatw4.sys (America Online, Inc.)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch =
http://red.clientapps.yahoo.com/customi ... ch/ie.htmlIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.microsoft.com/isapi/redir.dl ... r=iesearchIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearchIE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://att.yahoo.comIE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearchIE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://att.yahoo.comIE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.sony.com/vaiopeopleIE - HKU\S-1-5-19\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.sony.com/vaiopeopleIE - HKU\S-1-5-20\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Firefox\extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/09/14 03:02:30 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.2\extensions\\Components: D:\Program Files\Mozilla Firefox 3.5 Beta 4\components [2009/09/09 19:42:27 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.2\extensions\\Plugins: D:\Program Files\Mozilla Firefox 3.5 Beta 4\plugins [2009/09/02 22:58:44 | 00,000,000 | ---D | M]
[2009/05/03 00:43:12 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2007/09/17 08:20:47 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
[2008/01/29 23:38:43 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
[2008/06/07 01:03:57 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
[2008/09/04 21:32:04 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
[2009/01/11 23:01:40 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
[2009/01/11 23:01:22 | 00,410,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeploytk.dll
[2007/12/19 08:57:38 | 00,310,272 | ---- | M] () -- C:\Program Files\mozilla firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
[2009/02/27 12:13:42 | 00,103,792 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll
[2006/01/18 12:50:00 | 00,319,488 | ---- | M] ( ) -- C:\Program Files\mozilla firefox\plugins\npsnapfish.dll
O1 HOSTS File: (734 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll (Yahoo! Inc.)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Yahoo! IE Services Button) - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll (Yahoo! Inc.)
O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL (Sonic Solutions)
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (SidebarAutoLaunch Class) - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp File not found
O4 - HKLM..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe (Easy Systems Japan Ltd.)
O4 - HKLM..\Run: [IntelliPoint] C:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [itype] C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
O4 - HKLM..\Run: [QuickTime Task] D:\Program Files\QuickTime\qttask.exe (Apple Inc.)
O4 - HKU\S-1-5-19..\RunOnce: [SetDefaultMidi] C:\WINDOWS\MIDIDEF.EXE (Creative Technology Ltd)
O4 - HKU\S-1-5-19..\RunOnce: [tscuninstall] C:\WINDOWS\System32\tscupgrd.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [SetDefaultMidi] C:\WINDOWS\MIDIDEF.EXE (Creative Technology Ltd)
O4 - HKU\S-1-5-20..\RunOnce: [tscuninstall] C:\WINDOWS\System32\tscupgrd.exe (Microsoft Corporation)
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Administrator\Cookies [2007/06/28 19:45:24 | 00,000,000 | --SD | M]
O4 - Startup: C:\Documents and Settings\Administrator\Desktop [2003/09/16 17:16:50 | 00,000,000 | ---D | M]
O4 - Startup: File not found
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Administrator\NetHood [2003/09/16 06:34:24 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Administrator\ntuser.dat ()
O4 - Startup: C:\Documents and Settings\Administrator\NTUSER.DAT.LOG ()
O4 - Startup: C:\Documents and Settings\Administrator\ntuser.ini ()
O4 - Startup: C:\Documents and Settings\Administrator\PrintHood [2003/09/16 06:34:24 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Administrator\Recent [2009/09/09 22:27:14 | 00,000,000 | RH-D | M]
O4 - Startup: C:\Documents and Settings\Administrator\SendTo [2003/09/16 13:44:27 | 00,000,000 | RH-D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Administrator\Templates [2003/09/16 13:37:20 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Administrator\UserData [2009/08/27 14:34:13 | 00,000,000 | --SD | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\All Users\Desktop [2009/09/16 23:57:01 | 00,000,000 | ---D | M]
O4 - Startup: C:\Documents and Settings\All Users\Documents [2009/01/12 00:35:55 | 00,000,000 | R--D | M]
O4 - Startup: C:\Documents and Settings\All Users\DRM [2009/09/09 22:25:28 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\All Users\Favorites [2006/11/19 14:32:46 | 00,000,000 | ---D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\All Users\Templates [2008/06/07 01:04:37 | 00,000,000 | -H-D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Default User\Cookies [2003/09/16 13:39:32 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\Default User\Desktop [2003/09/16 17:16:50 | 00,000,000 | ---D | M]
O4 - Startup: C:\Documents and Settings\Default User\Favorites [2005/09/17 23:45:27 | 00,000,000 | R--D | M]
O4 - Startup: File not found
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Default User\NetHood [2003/09/16 06:34:24 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Default User\NTUSER.DAT ()
O4 - Startup: C:\Documents and Settings\Default User\ntuser.ini ()
O4 - Startup: C:\Documents and Settings\Default User\PrintHood [2003/09/16 06:34:24 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Default User\Recent [2009/09/09 22:27:14 | 00,000,000 | RH-D | M]
O4 - Startup: C:\Documents and Settings\Default User\SendTo [2003/09/16 13:44:27 | 00,000,000 | RH-D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Default User\Templates [2003/09/16 13:37:20 | 00,000,000 | -H-D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\LocalService\Cookies [2008/07/31 22:04:48 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\LocalService\IETldCache [2009/07/07 22:30:58 | 00,000,000 | -HSD | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\LocalService\NTUSER.DAT ()
O4 - Startup: C:\Documents and Settings\LocalService\NTUSER.dat.LOG ()
O4 - Startup: C:\Documents and Settings\LocalService\ntuser.ini ()
O4 - Startup: File not found
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Michelle\Cookies [2009/09/20 20:54:43 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\Michelle\Desktop [2003/11/30 13:58:17 | 00,000,000 | ---D | M]
O4 - Startup: C:\Documents and Settings\Michelle\Favorites [2009/08/10 09:47:44 | 00,000,000 | R--D | M]
O4 - Startup: C:\Documents and Settings\Michelle\IETldCache [2009/08/10 09:47:19 | 00,000,000 | -HSD | M]
O4 - Startup: File not found
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Michelle\NetHood [2003/09/16 06:34:24 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Michelle\ntuser.dat ()
O4 - Startup: C:\Documents and Settings\Michelle\ntuser.dat.LOG ()
O4 - Startup: C:\Documents and Settings\Michelle\ntuser.ini ()
O4 - Startup: C:\Documents and Settings\Michelle\PrintHood [2003/09/16 06:34:24 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Michelle\Recent [2009/09/20 21:05:26 | 00,000,000 | RH-D | M]
O4 - Startup: C:\Documents and Settings\Michelle\SendTo [2003/09/16 13:44:27 | 00,000,000 | RH-D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Michelle\Templates [2003/09/16 13:37:20 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Michelle\WINDOWS [2003/11/29 11:37:47 | 00,000,000 | ---D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\NetworkService\Cookies [2008/02/17 18:18:00 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\NetworkService\IETldCache [2009/07/06 08:22:12 | 00,000,000 | -HSD | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\NetworkService\NTUSER.DAT ()
O4 - Startup: C:\Documents and Settings\NetworkService\NTUSER.dat.LOG ()
O4 - Startup: C:\Documents and Settings\NetworkService\ntuser.ini ()
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\TEMP\Cookies [2009/09/09 17:15:46 | 00,000,000 | ---D | M]
O4 - Startup: C:\Documents and Settings\TEMP\Desktop [2009/09/09 17:16:00 | 00,000,000 | ---D | M]
O4 - Startup: C:\Documents and Settings\TEMP\Favorites [2009/09/09 17:22:32 | 00,000,000 | R--D | M]
O4 - Startup: File not found
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\TEMP\Recent [2009/09/09 17:22:25 | 00,000,000 | RH-D | M]
O4 - Startup: C:\Documents and Settings\TEMP\SendTo [2009/09/09 17:22:27 | 00,000,000 | -H-D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\TEMP\ÜQé ()
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Tony\Contacts [2008/01/16 19:29:22 | 00,000,000 | ---D | M]
O4 - Startup: C:\Documents and Settings\Tony\Cookies [2009/09/06 00:51:19 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\Tony\default.pls ()
O4 - Startup: C:\Documents and Settings\Tony\Desktop [2009/09/09 22:27:14 | 00,000,000 | ---D | M]
O4 - Startup: C:\Documents and Settings\Tony\Favorites [2009/06/21 10:10:00 | 00,000,000 | R--D | M]
O4 - Startup: C:\Documents and Settings\Tony\IECompatCache [2009/07/07 23:03:52 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\Tony\IETldCache [2009/07/06 00:57:56 | 00,000,000 | -HSD | M]
O4 - Startup: File not found
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Tony\NetHood [2003/09/16 06:34:24 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Tony\ntuser.dat ()
O4 - Startup: C:\Documents and Settings\Tony\NTUSER.DAT.LOG ()
O4 - Startup: C:\Documents and Settings\Tony\ntuser.ini ()
O4 - Startup: C:\Documents and Settings\Tony\PrintHood [2003/09/16 06:34:24 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Tony\PrivacIE [2009/07/07 22:28:38 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\Tony\Recent [2009/09/08 23:23:14 | 00,000,000 | RH-D | M]
O4 - Startup: C:\Documents and Settings\Tony\reference form0001.txt ()
O4 - Startup: C:\Documents and Settings\Tony\reglog.txt ()
O4 - Startup: C:\Documents and Settings\Tony\SendTo [2008/02/21 00:36:52 | 00,000,000 | RH-D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Tony\Templates [2003/09/16 13:37:20 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Tony\UserData [2003/11/30 17:11:58 | 00,000,000 | -HSD | M]
O4 - Startup: C:\Documents and Settings\Tony\WINDOWS [2003/12/02 20:56:04 | 00,000,000 | ---D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Tony.ADR\Cookies [2009/09/09 18:59:13 | 00,000,000 | -H-D | M]
O4 - Startup: C:\Documents and Settings\Tony.ADR\Desktop [2009/09/24 21:43:06 | 00,000,000 | ---D | M]
O4 - Startup: C:\Documents and Settings\Tony.ADR\Favorites [2009/09/09 21:53:03 | 00,000,000 | R--D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Tony.ADR\LuResult.txt ()
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Tony.ADR\ntuser.dat ()
O4 - Startup: C:\Documents and Settings\Tony.ADR\ntuser.dat.LOG ()
O4 - Startup: C:\Documents and Settings\Tony.ADR\ntuser.ini ()
O4 - Startup: C:\Documents and Settings\Tony.ADR\Recent [2009/09/09 19:36:47 | 00,000,000 | RH-D | M]
O4 - Startup: File not found
O4 - Startup: C:\Documents and Settings\Tony.ADR\Templates [2009/09/09 18:59:13 | 00,000,000 | -H-D | M]
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll (Yahoo! Inc.)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\rsvpsp.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0}
http://www.costcophotocenter.com/CostcoActivia.cab (Snapfish Activia)
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6}
http://www.nick.com/common/groove/gx/GrooveAX27.cab (Reg Error: Key error.)
O16 - DPF: {88C95CE5-4B08-47F5-899E-7FA0C5A4529B}
http://ipinviewer.lunarpages.com/LiteSu ... tSetup.cab (Reg Error: Key error.)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/fl ... rashim.cab (Reg Error: Key error.)
O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000}
http://download.yahoo.com/dl/installs/ymail/ymmapi.dll (YahooYMailTo Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload.macromedia.com/get/fl ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {FFFFFFFF-CACE-BABE-BABE-00AA0055595A}
http://www.trueswitch.com/sbc/TrueInstallSBC.exe (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java
file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 192.168.0.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - Reg Error: Key error. File not found
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - Reg Error: Value error. File not found
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\intu-help-qb1 {9B0F96C7-2E4B-433e-ABF3-043BA1B54AE3} - D:\Program Files\Intuit\QuickBooks 2008\HelpAsyncPluggableProtocol.dll (TODO: <Company name>)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - Reg Error: Key error. File not found
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - Reg Error: Key error. File not found
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - Reg Error: Key error. File not found
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - Reg Error: Key error. File not found
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - Reg Error: Key error. File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/09/09 03:26:17 | 00,000,055 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009/09/09 03:26:17 | 00,000,055 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2002/01/05 14:19:30 | 00,000,000 | ---D | M] - K:\autorun -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
========== Files/Folders - Created Within 30 Days ========== [2009/09/24 21:39:19 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2009/09/24 21:35:42 | 00,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2009/09/22 23:03:45 | 00,005,632 | ---- | C] () -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/09/22 21:35:26 | 00,000,000 | ---D | C] -- C:\temp
[2009/09/22 21:18:49 | 00,000,000 | ---D | C] -- C:\rsit
[2009/09/21 23:10:57 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\Adobe
[2009/09/16 22:10:24 | 00,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2009/09/15 07:44:10 | 00,000,702 | ---- | C] () -- C:\WINDOWS\system32\config\systemprofile\Desktop\Microsoft Works.LNK
[2009/09/14 21:57:42 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\IsolatedStorage
[2009/09/13 13:33:08 | 01,089,593 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntprint.cat
[2009/09/13 03:17:16 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2009/09/13 03:17:10 | 00,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2009/09/13 03:16:56 | 00,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2009/09/13 03:15:42 | 00,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe
[2009/09/13 03:15:42 | 00,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prntvpt.dll
[2009/09/13 03:15:42 | 00,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll
[2009/09/13 03:15:41 | 00,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpsshhdr.dll
[2009/09/13 03:15:41 | 00,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll
[2009/09/13 03:15:40 | 01,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpssvcs.dll
[2009/09/13 03:15:40 | 01,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll
[2009/09/13 03:15:09 | 00,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2009/09/12 10:53:41 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\HP
[2009/09/12 10:53:39 | 00,000,131 | ---- | C] () -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\fusioncache.dat
[2009/09/12 10:53:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\ApplicationHistory
[2009/09/12 03:08:15 | 04,322,612 | -H-- | C] () -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\IconCache.db
[2009/09/12 03:01:42 | 00,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2009/09/11 03:22:05 | 00,153,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\triedit.dll
[2009/09/11 00:09:31 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\Intuit
[2009/09/10 21:24:17 | 00,000,382 | ---- | C] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2009/09/10 21:24:10 | 00,000,792 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Smart Defrag.lnk
[2009/09/09 22:44:15 | 00,001,709 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\avast! Antivirus.lnk
[2009/09/09 22:44:14 | 00,023,152 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2009/09/09 22:44:13 | 00,051,376 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2009/09/09 22:44:12 | 00,026,944 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2009/09/09 22:44:10 | 00,097,480 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\AvastSS.scr
[2009/09/09 22:44:08 | 00,114,768 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2009/09/09 22:44:08 | 00,094,160 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2009/09/09 22:44:08 | 00,093,392 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2009/09/09 22:44:08 | 00,020,560 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2009/09/09 22:43:47 | 01,279,456 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe
[2009/09/09 22:43:47 | 00,380,928 | ---- | C] () -- C:\WINDOWS\System32\actskin4.ocx
[2009/09/09 22:43:41 | 00,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2009/09/09 22:25:38 | 00,000,000 | ---D | C] -- C:\IObit
[2009/09/09 21:53:02 | 00,000,874 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Advanced SystemCare.lnk
[2009/09/09 21:52:58 | 00,000,000 | ---D | C] -- C:\Program Files\IObit
[2009/09/09 19:42:13 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\Mozilla
[2009/09/09 19:39:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\Apple Computer
[2009/09/09 19:39:05 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\Google
[2009/09/09 19:36:43 | 00,078,352 | ---- | C] () -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/09/09 17:22:42 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\Microsoft
[2009/09/02 22:04:06 | 00,000,734 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Acrobat.com.lnk
[2009/09/02 22:04:04 | 00,000,000 | ---D | C] -- C:\Program Files\Adobe
[2009/09/02 22:02:58 | 00,001,593 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2009/08/12 03:23:12 | 00,000,197 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2008/12/07 12:24:20 | 00,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2008/12/07 12:24:20 | 00,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2008/12/07 12:24:19 | 00,348,160 | ---- | C] () -- C:\WINDOWS\System32\cdga.dll
[2008/07/11 00:20:50 | 00,000,000 | ---- | C] () -- C:\WINDOWS\U12A_20e.INI
[2007/01/14 16:33:29 | 00,131,072 | R--- | C] () -- C:\WINDOWS\System32\SCCD3X01.DLL
[2007/01/14 16:33:29 | 00,090,112 | R--- | C] ( ) -- C:\WINDOWS\System32\SCCD3X02.DLL
[2006/12/15 19:27:50 | 00,000,214 | ---- | C] () -- C:\WINDOWS\HP_48BitScanUpdatePatch.ini
[2006/10/19 22:26:23 | 00,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006/09/18 15:37:50 | 00,000,530 | ---- | C] () -- C:\WINDOWS\System32\tx12_ic.ini
[2006/09/18 15:37:48 | 00,667,280 | ---- | C] () -- C:\WINDOWS\System32\tx12.dll
[2006/04/15 00:43:32 | 00,000,206 | ---- | C] () -- C:\WINDOWS\HPGdiPlus.ini
[2006/04/13 00:00:01 | 00,000,000 | ---- | C] () -- C:\WINDOWS\hpqEmlSz.INI
[2005/10/20 23:30:44 | 00,000,037 | ---- | C] () -- C:\WINDOWS\ipixActivex.ini
[2005/10/05 00:26:51 | 00,004,487 | ---- | C] () -- C:\WINDOWS\System32\lmk8hoju.ini
[2005/04/24 22:41:47 | 00,000,000 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2005/04/03 15:00:11 | 00,014,379 | R--- | C] () -- C:\WINDOWS\TW5A.INI
[2005/03/14 19:03:19 | 00,000,041 | ---- | C] () -- C:\WINDOWS\IVSLite.ini
[2005/02/02 23:39:40 | 00,000,135 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2005/01/17 00:02:52 | 00,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2004/12/26 21:44:27 | 00,065,536 | ---- | C] () -- C:\WINDOWS\System32\YCRWin32.dll
[2004/12/13 00:07:57 | 00,000,050 | ---- | C] () -- C:\WINDOWS\upst.ini
[2004/11/20 23:20:42 | 00,000,081 | ---- | C] () -- C:\WINDOWS\PARSONS.INI
[2004/05/24 19:51:42 | 00,000,049 | ---- | C] () -- C:\WINDOWS\upth.ini
[2004/05/24 19:51:42 | 00,000,024 | ---- | C] () -- C:\WINDOWS\atid.ini
[2004/02/25 22:46:38 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2004/02/23 21:17:57 | 00,000,307 | ---- | C] () -- C:\WINDOWS\FastBid1.ini
[2003/11/30 15:42:40 | 00,000,037 | ---- | C] () -- C:\WINDOWS\Viewer.ini
[2003/11/29 11:41:57 | 00,086,304 | ---- | C] () -- C:\WINDOWS\RHVIDEO.DLL
[2003/11/29 11:37:47 | 00,000,071 | ---- | C] () -- C:\WINDOWS\ART.INI
[2003/11/28 23:42:39 | 00,000,078 | ---- | C] () -- C:\WINDOWS\qwimp.ini
[2003/11/28 23:42:38 | 00,000,537 | ---- | C] () -- C:\WINDOWS\intuprof.ini
[2003/11/28 22:05:41 | 00,000,034 | ---- | C] () -- C:\WINDOWS\AUTHMGR.INI
[2003/11/26 08:10:18 | 00,000,029 | ---- | C] () -- C:\WINDOWS\DEBUGSM.INI
[2003/11/25 23:31:05 | 00,000,196 | ---- | C] () -- C:\WINDOWS\EPSONCX6400.ini
[2003/11/20 20:24:27 | 00,000,396 | ---- | C] () -- C:\WINDOWS\hegames.ini
[2003/11/20 19:50:34 | 00,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI
[2003/11/12 04:54:00 | 00,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2003/09/16 17:10:05 | 00,001,184 | ---- | C] () -- C:\WINDOWS\QUICKEN.INI
[2003/09/16 17:05:05 | 00,019,968 | ---- | C] () -- C:\WINDOWS\System32\Cpuinf32.dll
[2003/09/16 17:03:25 | 00,262,416 | ---- | C] () -- C:\WINDOWS\System32\ASFV2.DLL
[2003/09/16 17:02:51 | 00,524,288 | ---- | C] () -- C:\WINDOWS\System32\TDI-SonyOMG.dll
[2003/09/16 15:15:13 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2003/09/16 13:30:49 | 00,090,112 | ---- | C] () -- C:\WINDOWS\System32\ati2evxx.dll
[2003/09/16 13:30:43 | 00,126,976 | ---- | C] () -- C:\WINDOWS\System32\e1000msg.dll
[2003/09/16 13:30:26 | 00,065,536 | ---- | C] ( ) -- C:\WINDOWS\System32\a3d.dll
[2003/09/16 13:30:26 | 00,052,992 | ---- | C] () -- C:\WINDOWS\System32\UPDDRV9X.DLL
[2003/09/16 13:30:22 | 00,005,503 | ---- | C] () -- C:\WINDOWS\System32\ctucom.ini
[2003/09/16 13:30:22 | 00,000,028 | ---- | C] () -- C:\WINDOWS\System32\ctzapxx.ini
[2003/09/16 13:30:19 | 00,000,192 | ---- | C] () -- C:\WINDOWS\System32\kill.ini
[2003/09/16 13:30:19 | 00,000,092 | ---- | C] () -- C:\WINDOWS\System32\editinf.ini
[2003/09/16 13:30:04 | 00,000,732 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2003/09/16 13:29:55 | 00,000,872 | ---- | C] () -- C:\WINDOWS\win.ini
[2003/09/16 13:29:53 | 00,000,227 | ---- | C] () -- C:\WINDOWS\SYSTEM.INI
[2003/08/11 04:07:40 | 00,565,248 | ---- | C] () -- C:\WINDOWS\System32\hpotscl.dll
[2003/07/14 15:30:28 | 00,197,120 | ---- | C] () -- C:\WINDOWS\patchw32.dll
[2003/03/27 17:28:44 | 00,004,955 | ---- | C] () -- C:\WINDOWS\System32\DProg.ini
[2002/07/22 13:25:00 | 00,794,624 | ---- | C] () -- C:\WINDOWS\System32\LTRTN13n.DLL
[2002/06/12 15:21:12 | 00,049,152 | R--- | C] () -- C:\WINDOWS\System32\winchip.dll
[2001/08/23 15:00:00 | 00,022,400 | ---- | C] () -- C:\WINDOWS\System32\drivers\SbcpHid.sys
[1999/01/22 19:46:58 | 00,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
========== Files - Modified Within 30 Days ========== [2009/09/24 21:22:00 | 00,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2009/09/24 06:22:00 | 00,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2009/09/22 23:04:06 | 00,000,135 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2009/09/22 23:04:00 | 00,005,632 | ---- | M] () -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/09/22 21:45:46 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/09/22 21:45:30 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/09/22 21:45:22 | 21,468,81536 | -HS- | M] () -- C:\hiberfil.sys
[2009/09/22 21:44:04 | 00,028,740 | ---- | M] () -- C:\WINDOWS\System32\BMXStateBkp-{00000003-00000000-0000000A-00001102-00000004-00541102}.rfx
[2009/09/22 21:44:04 | 00,028,740 | ---- | M] () -- C:\WINDOWS\System32\BMXState-{00000003-00000000-0000000A-00001102-00000004-00541102}.rfx
[2009/09/22 21:44:04 | 00,026,640 | ---- | M] () -- C:\WINDOWS\System32\BMXCtrlState-{00000003-00000000-0000000A-00001102-00000004-00541102}.rfx
[2009/09/22 21:44:04 | 00,026,640 | ---- | M] () -- C:\WINDOWS\System32\BMXBkpCtrlState-{00000003-00000000-0000000A-00001102-00000004-00541102}.rfx
[2009/09/22 21:44:04 | 00,001,080 | ---- | M] () -- C:\WINDOWS\System32\settingsbkup.sfm
[2009/09/22 21:44:04 | 00,001,080 | ---- | M] () -- C:\WINDOWS\System32\settings.sfm
[2009/09/22 21:44:04 | 00,000,288 | ---- | M] () -- C:\WINDOWS\System32\DVCStateBkp-{00000003-00000000-0000000A-00001102-00000004-00541102}.dat
[2009/09/22 21:44:04 | 00,000,288 | ---- | M] () -- C:\WINDOWS\System32\DVCState-{00000003-00000000-0000000A-00001102-00000004-00541102}.dat
[2009/09/22 21:08:41 | 00,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/09/20 20:17:52 | 00,000,702 | ---- | M] () -- C:\WINDOWS\system32\config\systemprofile\Desktop\Microsoft Works.LNK
[2009/09/16 23:16:59 | 04,322,612 | -H-- | M] () -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\IconCache.db
[2009/09/15 08:00:51 | 00,000,382 | ---- | M] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2009/09/14 03:05:05 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009/09/13 07:29:19 | 00,078,352 | ---- | M] () -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/09/13 03:37:45 | 00,274,168 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/09/13 03:24:42 | 00,501,054 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/09/13 03:24:42 | 00,441,124 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/09/13 03:24:42 | 00,071,060 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/09/12 10:53:39 | 00,000,131 | ---- | M] () -- C:\Documents and Settings\Tony.ADR\Local Settings\Application Data\fusioncache.dat
[2009/09/10 21:24:10 | 00,000,792 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Smart Defrag.lnk
[2009/09/10 07:25:42 | 00,002,341 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2009/09/09 22:44:15 | 00,001,709 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Antivirus.lnk
[2009/09/09 22:44:08 | 00,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2009/09/09 21:53:02 | 00,000,874 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Advanced SystemCare.lnk
[2009/09/09 03:26:17 | 00,000,055 | RHS- | M] () -- C:\autorun.inf
[2009/09/02 22:04:06 | 00,000,734 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Acrobat.com.lnk
[2009/09/02 22:02:58 | 00,001,593 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2009/09/01 22:33:07 | 00,000,342 | ---- | M] () -- C:\WINDOWS\tasks\HP DArC Task #Hewlett-Packard#hp psc 2400 series#1233458999.job
[2009/08/28 17:38:20 | 24,689,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe
< End of report >