I tried gmer again overnight, but it froze my whole system and wouldn't allow me to save the results. Do you want me to try it again?
Results from OTL
OTL logfile created on: 07/02/2010 09:47:50 - Run 1
OTL by OldTimer - Version 3.1.28.0 Folder = E:\Documents and Settings\Barry\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 68.00% Memory free
5.00 Gb Paging File | 4.00 Gb Available in Paging File | 83.00% Paging File free
Paging file location(s): E:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files
Drive C: | 465.75 Gb Total Space | 168.54 Gb Free Space | 36.19% Space Free | Partition Type: NTFS
Drive D: | 2.60 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive E: | 195.31 Gb Total Space | 74.84 Gb Free Space | 38.32% Space Free | Partition Type: NTFS
Drive F: | 736.19 Gb Total Space | 175.63 Gb Free Space | 23.86% Space Free | Partition Type: NTFS
Drive G: | 465.75 Gb Total Space | 418.11 Gb Free Space | 89.77% Space Free | Partition Type: NTFS
Drive H: | 1.59 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive I: | 347.01 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive M: | 465.75 Gb Total Space | 295.12 Gb Free Space | 63.36% Space Free | Partition Type: NTFS
Computer Name: YOUR-F5195DC0D4
Current User Name: Barry
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - E:\Documents and Settings\Barry\Desktop\OTL.exe (OldTimer Tools)
PRC - E:\WINDOWS\system32\PnkBstrA.exe ()
PRC - E:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - E:\Program Files\AVG\AVG9\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
PRC - E:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - E:\Program Files\AVG\AVG9\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - E:\Program Files\AVG\AVG9\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - E:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Steam\Steam.exe (Valve Corporation)
PRC - E:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe (Acronis)
PRC - E:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
PRC - E:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - E:\Program Files\LogMeIn\x86\ramaint.exe (LogMeIn, Inc.)
PRC - E:\Program Files\LogMeIn\x86\LMIGuardian.exe (LogMeIn, Inc.)
PRC - E:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
PRC - E:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
PRC - E:\Program Files\Kilgray\MemoQ\AUClient.exe ()
PRC - E:\WINDOWS\system32\PrintDisp.exe (ActMask Co.,Ltd -
http://www.all2pdf.com)
PRC - E:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.)
PRC - E:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
PRC - E:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
PRC - E:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe (Logitech, Inc.)
PRC - E:\WINDOWS\system32\PrintCtrl.exe (ActMask Co.,Ltd -
HTTP://WWW.ALL2PDF.COM)
PRC - E:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe (Logitech Inc.)
PRC - E:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)
PRC - E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Advanced Micro Devices Inc.)
PRC - E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ATI Technologies Inc.)
PRC - E:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
PRC - E:\Program Files\LogMeIn\x86\LogMeIn.exe (LogMeIn, Inc.)
PRC - E:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
PRC - E:\Program Files\Microsoft SQL Server\MSRS10.SQLEXPRESS\Reporting Services\ReportServer\bin\ReportingServicesService.exe (Microsoft Corporation)
PRC - E:\WINDOWS\system32\wscntfy.exe (Microsoft Corporation)
PRC - E:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - E:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe (ABBYY (BIT Software))
PRC - E:\WINDOWS\system32\oodag.exe (O&O Software GmbH)
PRC - E:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
PRC - E:\Program Files\Microsoft ActiveSync\rapimgr.exe (Microsoft Corporation)
PRC - E:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
PRC - E:\Program Files\Bonjour\mDNSResponder.exe (Apple Computer, Inc.)
========== Modules (SafeList) ========== MOD - E:\Documents and Settings\Barry\Desktop\OTL.exe (OldTimer Tools)
MOD - E:\Documents and Settings\Barry\Local Settings\Application Data\esentclbClient\esentclbClient.dll ()
MOD - E:\Program Files\Logitech\SetPoint\lgscroll.dll (Logitech, Inc.)
MOD - E:\Program Files\Logitech\SetPoint\GameHook.dll (Logitech, Inc.)
MOD - E:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ========== SRV - (Lavasoft Ad-Aware Service) -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft)
SRV - (PnkBstrA) -- E:\WINDOWS\system32\PnkBstrA.exe ()
SRV - (avg9wd) -- E:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (gupdate) Google Update Service (gupdate) -- E:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (afcdpsrv) -- E:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe (Acronis)
SRV - (JavaQuickStarterService) -- E:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (FLEXnet Licensing Service) -- E:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (LMIMaint) -- E:\Program Files\LogMeIn\x86\RaMaint.exe (LogMeIn, Inc.)
SRV - (AcrSch2Svc) -- E:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
SRV - (Kilgray: MemoQ update permissions manager. 978527.) -- E:\Program Files\Kilgray\MemoQ\AUClient.exe ()
SRV - (Ati HotKey Poller) -- E:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.)
SRV - (ATI Smart) -- E:\WINDOWS\system32\ati2sgag.exe ()
SRV - (DAUpdaterSvc) -- E:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe (BioWare)
SRV - (LBTServ) -- E:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (Printer Control) -- E:\WINDOWS\system32\PrintCtrl.exe (ActMask Co.,Ltd -
HTTP://WWW.ALL2PDF.COM)
SRV - (MSSQL$SQLEXPRESS) SQL Server (SQLEXPRESS) -- E:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
SRV - (SQLAgent$SQLEXPRESS) SQL Server Agent (SQLEXPRESS) -- E:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE (Microsoft Corporation)
SRV - (MSSQLServerADHelper100) -- E:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE (Microsoft Corporation)
SRV - (LogMeIn) -- E:\Program Files\LogMeIn\x86\LogMeIn.exe (LogMeIn, Inc.)
SRV - (msvsmon90) -- C:\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x86\msvsmon.exe (Microsoft Corporation)
SRV - (SQLWriter) -- E:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
SRV - (SQLBrowser) -- E:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation)
SRV - (ReportServer$SQLEXPRESS) SQL Server Reporting Services (SQLEXPRESS) -- E:\Program Files\Microsoft SQL Server\MSRS10.SQLEXPRESS\Reporting Services\ReportServer\bin\ReportingServicesService.exe (Microsoft Corporation)
SRV - (MSSQLFDLauncher$SQLEXPRESS) SQL Full-text Filter Daemon Launcher (SQLEXPRESS) -- E:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\fdlauncher.exe (Microsoft Corporation)
SRV - (ABBYY.Licensing.FineReader.Professional.9.0) -- E:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe (ABBYY (BIT Software))
SRV - (O&O Defrag) -- E:\WINDOWS\system32\oodag.exe (O&O Software GmbH)
SRV - (NewServiceInstall1) -- E:\Program Files\SDL International\T2007_FL\TT\Lng\Dialogs1031.lng ()
SRV - (ose) -- E:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (Bonjour Service) -- E:\Program Files\Bonjour\mDNSResponder.exe (Apple Computer, Inc.)
SRV - (IDriverT) -- E:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe (Macrovision Corporation)
========== Driver Services (SafeList) ========== DRV - (AvgTdiX) -- E:\WINDOWS\System32\Drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgLdx86) -- E:\WINDOWS\System32\Drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgMfx86) -- E:\WINDOWS\System32\Drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (SASENUM) -- E:\Program Files\SUPERAntiSpyware\SASENUM.SYS ( SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASDIFSV) -- E:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) -- E:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (sptd) -- E:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (afcdp) -- E:\WINDOWS\system32\drivers\afcdp.sys (Acronis)
DRV - (tdrpman251) Acronis Try&Decide and Restore Points filter (build 251) -- E:\WINDOWS\system32\DRIVERS\tdrpm251.sys (Acronis)
DRV - (timounter) -- E:\WINDOWS\system32\DRIVERS\timntr.sys (Acronis)
DRV - (snapman) -- E:\WINDOWS\system32\DRIVERS\snapman.sys (Acronis)
DRV - (pcouffin) -- E:\WINDOWS\system32\drivers\pcouffin.sys (VSO Software)
DRV - (LMIRfsClientNP) -- E:\WINDOWS\system32\LMIRfsClientNP.dll (LogMeIn, Inc.)
DRV - (Lbd) -- E:\WINDOWS\system32\DRIVERS\Lbd.sys (Lavasoft AB)
DRV - (ati2mtag) -- E:\WINDOWS\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- E:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (LMouFilt) -- E:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- E:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (RTLE8023xp) -- E:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (mcdbus) -- E:\WINDOWS\system32\drivers\mcdbus.sys (MagicISO, Inc.)
DRV - (epmntdrv) -- E:\WINDOWS\system32\epmntdrv.sys ()
DRV - (EuGdiDrv) -- E:\WINDOWS\system32\EuGdiDrv.sys ()
DRV - (adfs) -- E:\WINDOWS\system32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (LMIRfsDriver) -- E:\WINDOWS\system32\drivers\LMIRfsDriver.sys (LogMeIn, Inc.)
DRV - (LMIInfo) -- E:\Program Files\LogMeIn\x86\rainfo.sys (LogMeIn, Inc.)
DRV - (lmimirr) -- E:\WINDOWS\system32\drivers\lmimirr.sys (LogMeIn, Inc.)
DRV - (Ambfilt) -- E:\WINDOWS\system32\drivers\Ambfilt.sys (Creative)
DRV - (RsFx0102) -- E:\WINDOWS\system32\drivers\RsFx0102.sys (Microsoft Corporation)
DRV - (PxHelp20) -- E:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (usb_rndisx) -- E:\WINDOWS\system32\drivers\usb8023x.sys (Microsoft Corporation)
DRV - (Secdrv) -- E:\WINDOWS\system32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (HDAudBus) -- E:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (Monfilt) -- E:\WINDOWS\system32\drivers\Monfilt.sys (Creative Technology Ltd.)
DRV - (PQNTDrv) -- E:\WINDOWS\system32\drivers\PQNTDRV.sys (PowerQuest Corporation)
DRV - (Ptilink) -- E:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)
========== Standard Registry (All) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.microsoft.com/isapi/redir.dl ... ar=msnhomeIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.microsoft.com/isapi/redir.dl ... r=iesearchIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearchIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = E:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearchIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://search.babylon.com/homeIE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - E:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)"
FF - prefs.js..browser.search.defaulturl: "http://search.babylon.com/web/{searchTerms}?babsrc=browsersearch"
FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.proz.com/?sp=index"
FF - prefs.js..extensions.enabledItems:
en-GB@dictionaries.addons.mozilla.org:1.19
FF - prefs.js..extensions.enabledItems: {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.11.2
FF - prefs.js..extensions.enabledItems:
foxyproxy@eric.h.jung:2.16.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}:6.0.14
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
LogMeInClient@logmein.com:1.0.0.464
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.1
FF - prefs.js..extensions.enabledItems: {73a6fe31-595d-460b-a920-fcc0f8843232}:1.9.9.45
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.7
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/09/28 14:52:40 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: E:\Program Files\AVG\AVG9\Firefox [2010/01/05 08:36:15 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\jqs@sun.com: E:\Program Files\Java\jre6\lib\deploy\jqs\ff [2009/10/13 11:13:13 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Components: E:\Program Files\Mozilla Firefox\components [2010/01/29 18:54:24 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Plugins: E:\Program Files\Mozilla Firefox\plugins [2010/01/20 09:54:53 | 000,000,000 | ---D | M]
[2009/10/08 08:22:21 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Mozilla\Extensions
[2009/10/08 08:22:21 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Barry\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010/02/06 13:34:17 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Mozilla\Firefox\Profiles\hwpdatzi.default\extensions
[2009/10/08 09:26:59 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- E:\Documents and Settings\Barry\Application Data\Mozilla\Firefox\Profiles\hwpdatzi.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/01/30 15:06:34 | 000,000,000 | ---D | M] (Flashblock) -- E:\Documents and Settings\Barry\Application Data\Mozilla\Firefox\Profiles\hwpdatzi.default\extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a}
[2010/02/05 17:58:32 | 000,000,000 | ---D | M] (NoScript) -- E:\Documents and Settings\Barry\Application Data\Mozilla\Firefox\Profiles\hwpdatzi.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}
[2009/12/16 12:59:23 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Mozilla\Firefox\Profiles\hwpdatzi.default\extensions\en-GB@dictionaries.addons.mozilla.org
[2009/12/19 10:11:01 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Mozilla\Firefox\Profiles\hwpdatzi.default\extensions\foxyproxy@eric.h.jung
[2009/11/21 14:08:32 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Mozilla\Firefox\Profiles\hwpdatzi.default\extensions\LogMeInClient@logmein.com
[2010/02/06 13:34:17 | 000,000,000 | ---D | M] -- E:\Program Files\Mozilla Firefox\extensions
[2010/01/06 20:14:54 | 000,000,000 | ---D | M] (Default) -- E:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010/01/19 20:46:30 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
[2009/10/13 11:13:21 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
[2009/11/04 11:19:41 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
[2010/01/06 20:14:51 | 000,023,512 | ---- | M] (Mozilla Foundation) -- E:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010/01/06 20:14:51 | 000,137,176 | ---- | M] (Mozilla Foundation) -- E:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2010/01/20 09:54:25 | 000,027,960 | ---- | M] (WebEx Communications, Inc) -- E:\Program Files\Mozilla Firefox\plugins\atgpcdec.dll
[2010/01/20 09:54:26 | 000,126,344 | ---- | M] (WebEx Communications, Inc) -- E:\Program Files\Mozilla Firefox\plugins\atgpcext.dll
[2009/09/25 17:41:48 | 001,044,480 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) -- E:\Program Files\Mozilla Firefox\plugins\libdivx.dll
[2010/01/20 09:54:24 | 000,060,808 | ---- | M] (WebEx Communications, Inc) -- E:\Program Files\Mozilla Firefox\plugins\npatgpc.dll
[2009/10/11 04:17:27 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
[2009/09/25 17:41:24 | 001,650,992 | ---- | M] (DivX,Inc.) -- E:\Program Files\Mozilla Firefox\plugins\npdivx32.dll
[2009/09/25 17:41:34 | 000,098,304 | ---- | M] (DivX, Inc) -- E:\Program Files\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
[2010/01/06 20:14:52 | 000,064,984 | ---- | M] (mozilla.org) -- E:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2009/02/27 11:13:42 | 000,103,792 | ---- | M] (Adobe Systems Inc.) -- E:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
[2009/09/25 17:41:48 | 000,200,704 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) -- E:\Program Files\Mozilla Firefox\plugins\ssldivx.dll
[2009/08/24 20:10:36 | 000,001,538 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2009/08/24 20:10:36 | 000,002,193 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\answers.xml
[2009/11/17 10:53:27 | 000,002,204 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
[2009/08/24 20:10:36 | 000,000,947 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2009/08/24 20:10:36 | 000,001,534 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
[2009/08/24 20:10:36 | 000,000,769 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2009/08/24 20:10:36 | 000,002,371 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2009/08/24 20:10:36 | 000,001,178 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wikipedia.xml
[2009/08/24 20:10:36 | 000,000,831 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: ([2010/01/25 20:28:09 | 000,373,619 | R--- | M]) - E:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1
www.007guard.comO1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.comO1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.comO1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.comO1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.comO1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.comO1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1001namen.comO1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1
www.100888290cs.comO1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.comO1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.10sek.comO1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 12877 more lines...
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - E:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - E:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - E:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (AcroIEToolbarHelper Class) - {AE7CD045-E861-484f-8273-0445EE161910} - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Easy-WebPrint) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - E:\Program Files\Canon\Easy-WebPrint\Toolband.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (SYSTRAN Toolbar) - {95daa571-4def-4a6d-97d8-98a346672a24} - E:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - E:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - E:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - E:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AVG9_TRAY] E:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Easy-PrintToolBox] E:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE (CANON INC.)
O4 - HKLM..\Run: [ISUSPM] E:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] E:\WINDOWS\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [Launch LGDCore] E:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)
O4 - HKLM..\Run: [Launch LgDeviceAgent] E:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe (Logitech Inc.)
O4 - HKLM..\Run: [PrintDisp] E:\WINDOWS\system32\PrintDisp.exe (ActMask Co.,Ltd -
http://www.all2pdf.com)
O4 - HKLM..\Run: [RTHDCPL] E:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [StartCCC] E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] E:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [TrueImageMonitor.exe] E:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
O4 - HKCU..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - HKCU..\Run: [esentclbClient] File not found
O4 - HKCU..\Run: [H/PC Connection Agent] E:\Program Files\Microsoft ActiveSync\Wcescomm.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Rainlendar2] E:\Program Files\Rainlendar2\Rainlendar2.exe ()
O4 - HKCU..\Run: [Steam] c:\steam\steam.exe (Valve Corporation)
O4 - Startup: E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk = E:\WINDOWS\Installer\{AC76BA86-1033-0000-7760-100000000002}\SC_Acrobat.exe ()
O4 - Startup: E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk = E:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
O4 - Startup: E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = E:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
O4 - Startup: E:\Documents and Settings\Barry\Start Menu\Programs\Startup\MagicDisc.lnk = E:\Program Files\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Convert link target to Adobe PDF - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert link target to existing PDF - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert selected links to Adobe PDF - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert selected links to existing PDF - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert selection to Adobe PDF - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert selection to existing PDF - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to existing PDF - E:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: E&xport to Microsoft Excel - E:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Easy-WebPrint Add To Print List - E:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint High Speed Print - E:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint Preview - E:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint Print - E:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: SYSTRAN Lookup - E:\Program Files\SYSTRAN\6\GUIres.dll ()
O8 - Extra context menu item: SYSTRAN Translate - E:\Program Files\SYSTRAN\6\GUIres.dll ()
O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - E:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - E:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - E:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - E:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - E:\Program Files\Bonjour\mdnsNSP.dll (Apple Computer, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - E:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - E:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - E:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 58 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKCU\..Trusted Domains: 57 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_10)
O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload.macromedia.com/get/fl ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - E:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - E:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - E:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - E:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - E:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - E:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - E:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mctp {d7b95390-b1c5-11d0-b111-0080c712fe82} - E:\Program Files\Microsoft ActiveSync\aatp.dll File not found
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - E:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - E:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - E:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - E:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - E:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - E:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - E:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - E:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - E:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - E:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - E:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - E:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - E:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - E:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - E:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - E:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - E:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (E:\WINDOWS\system32\userinit.exe) - E:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - E:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - E:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - E:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - E:\Program Files\SUPERAntiSpyware\SASWINLO.dll - E:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - E:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - E:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - E:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - E:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - E:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - E:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\LBTWlgn: DllName - e:\program files\common files\logitech\bluetooth\LBTWlgn.dll - e:\Program Files\Common Files\Logitech\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O20 - Winlogon\Notify\LMIinit: DllName - LMIinit.dll - E:\WINDOWS\System32\LMIinit.dll (LogMeIn, Inc.)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - E:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - E:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - E:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - E:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - E:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - E:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - E:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - E:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - E:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - E:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - E:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - E:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O24 - Desktop WallPaper: E:\Documents and Settings\Barry\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: E:\Documents and Settings\Barry\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - E:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - E:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - E:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - E:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - E:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - E:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - E:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - E:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - E:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - E:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - E:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/01/18 21:25:50 | 000,061,640 | R--- | M] (Stardock Entertainment, Inc.) - H:\autorun.exe -- [ UDF ]
O32 - AutoRun File - [2008/01/18 21:25:50 | 000,000,079 | R--- | M] () - H:\autorun.inf -- [ UDF ]
O32 - AutoRun File - [2009/09/26 07:32:27 | 000,000,000 | ---- | M] () - M:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - E:\WINDOWS\System32\lsdelete.exe ()
O34 - HKLM BootExecute: (OODBS) - E:\WINDOWS\System32\OODBS.exe (O&O Software GmbH)
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - E:\WINDOWS\system32\ias [2009/09/26 00:17:02 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
CREATERESTOREPOINT
Error starting restore point: System Restore is disabled.
Error closing restore point: System Restore is disabled.
========== Files/Folders - Created Within 30 Days ========== [2010/02/06 20:03:35 | 000,549,376 | ---- | C] (OldTimer Tools) -- E:\Documents and Settings\Barry\Desktop\OTL.exe
[2010/02/05 17:45:54 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Desktop\Leatrix Latency Fix 1.18
[2010/02/05 14:51:11 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft Web Designer Tools
[2010/02/05 14:50:52 | 000,000,000 | RH-D | C] -- E:\MSOCache
[2010/02/04 18:45:04 | 000,000,000 | --SD | M] -- E:\Documents and Settings\LocalService\Application Data\Microsoft
[2010/02/04 14:14:09 | 000,050,200 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\perf-ReportServer$SQLEXPRESS-rsctr.dll
[2010/02/04 14:13:18 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\Integration Services Script Component
[2010/02/04 14:13:09 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\Integration Services Script Task
[2010/02/04 14:12:49 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\SQL Server Management Studio
[2010/02/04 14:12:45 | 000,050,200 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.0.1600.22.dll
[2010/02/04 14:12:36 | 000,079,896 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\perf-MSSQL$SQLEXPRESS-sqlctr10.0.1600.22.dll
[2010/02/04 14:11:40 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft Analysis Services
[2010/02/04 14:09:21 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Merge Modules
[2010/02/04 14:05:42 | 000,000,000 | ---D | C] -- E:\WINDOWS\System32\RsFx
[2010/02/04 14:04:59 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft Visual Studio 9.0
[2010/02/04 13:27:41 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Local Settings\Application Data\Temporary Projects
[2010/02/04 13:19:51 | 000,000,000 | ---D | C] -- E:\WINDOWS\System32\windowspowershell
[2010/02/03 19:01:37 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft SQL Server
[2010/02/03 19:01:31 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft Synchronization Services
[2010/02/03 19:01:30 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft SQL Server Compact Edition
[2010/02/03 19:00:44 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\Visual Studio 2008
[2010/02/03 19:00:41 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Local Settings\Application Data\Microsoft Help
[2010/02/03 18:59:40 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Microsoft Help
[2010/02/03 18:59:24 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft SDKs
[2010/02/02 15:54:15 | 000,000,000 | ---D | C] -- E:\Program Files\Sophos
[2010/02/01 10:23:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\Six-Updater
[2010/02/01 10:23:14 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\.gem
[2010/02/01 10:22:39 | 000,000,000 | ---D | C] -- E:\Program Files\Six-Updater
[2010/01/31 17:34:06 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Local Settings\Application Data\Yoma_Tools
[2010/01/31 17:34:05 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Local Settings\Application Data\ArmaAddonSync2009
[2010/01/31 17:34:04 | 000,000,000 | ---D | C] -- E:\Program Files\YomaTools
[2010/01/30 15:42:57 | 000,000,000 | ---D | C] -- E:\Program Files\TrendMicro
[2010/01/30 15:14:38 | 000,000,000 | ---D | C] -- E:\Program Files\Uniblue
[2010/01/30 13:58:24 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\DirectX
[2010/01/30 13:58:06 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\Overlord
[2010/01/30 00:15:09 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\ATI
[2010/01/28 23:12:52 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\BFBC2Beta
[2010/01/28 10:31:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2010/01/28 10:31:14 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\SUPERAntiSpyware.com
[2010/01/28 10:31:14 | 000,000,000 | ---D | C] -- E:\Program Files\SUPERAntiSpyware
[2010/01/26 14:19:30 | 000,000,000 | -H-D | C] -- E:\Documents and Settings\All Users\Application Data\CanonBJ
[2010/01/26 13:54:20 | 000,163,840 | ---- | C] (CANON INC.) -- E:\WINDOWS\BJPSUNST.EXE
[2010/01/26 13:52:43 | 000,000,000 | ---D | C] -- E:\WINDOWS\StartHtmico
[2010/01/26 13:51:30 | 000,000,000 | ---D | C] -- E:\Program Files\Canon
[2010/01/26 13:41:52 | 000,025,856 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\dllcache\usbprint.sys
[2010/01/26 13:40:30 | 000,140,288 | ---- | C] (CANON INC.) -- E:\WINDOWS\System32\CNMLM79.DLL
[2010/01/26 13:40:28 | 000,090,112 | R--- | C] (CANON INC.) -- E:\WINDOWS\System32\CNMCP79.exe
[2010/01/26 13:38:38 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Desktop\printer
[2010/01/26 10:39:40 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Desktop\font
[2010/01/26 10:38:56 | 000,000,000 | -H-D | C] -- E:\WINDOWS\PIF
[2010/01/25 20:23:02 | 000,000,000 | ---D | C] -- E:\Program Files\Spybot - Search & Destroy
[2010/01/25 20:23:02 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2010/01/25 20:22:11 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\Malwarebytes
[2010/01/25 20:22:08 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- E:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/01/25 20:22:07 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- E:\WINDOWS\System32\drivers\mbam.sys
[2010/01/25 20:22:07 | 000,000,000 | ---D | C] -- E:\Program Files\Malwarebytes' Anti-Malware
[2010/01/25 20:22:07 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/01/25 20:19:46 | 000,050,688 | ---- | C] (Atribune.org) -- E:\Documents and Settings\Barry\Desktop\ATF-Cleaner.exe
[2010/01/25 20:14:50 | 000,000,000 | ---D | C] -- E:\Program Files\Citrix
[2010/01/25 13:22:04 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\Translation E-Book
[2010/01/20 13:31:06 | 000,000,000 | ---D | C] -- E:\Program Files\MSECache
[2010/01/20 10:24:02 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Local Settings\Application Data\SDL
[2010/01/20 10:23:46 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\SDL
[2010/01/20 09:55:04 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\WebEx
[2010/01/20 09:54:54 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\WebEx
[2010/01/20 09:54:54 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\WebEx
[2010/01/19 20:46:58 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\SDL
[2010/01/19 20:45:43 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\Passolo 2009
[2010/01/19 20:45:43 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\Passolo 2009
[2010/01/19 20:45:41 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Passolo 2009
[2010/01/19 20:45:32 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft.NET
[2010/01/19 20:45:20 | 000,044,544 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\msxml4a.dll
[2010/01/19 20:45:20 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Documents\Passolo 2009
[2010/01/19 20:45:17 | 000,262,328 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\msdatgrd.ocx
[2010/01/19 20:45:06 | 000,000,000 | ---D | C] -- E:\Program Files\SDL Passolo 2009
[2010/01/19 20:43:21 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\SDL
[2010/01/19 20:43:09 | 000,000,000 | ---D | C] -- E:\Program Files\SDL
[2010/01/19 10:17:44 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Desktop\FR-EN TRANSLATION COURSE
[2010/01/18 11:38:08 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Local Settings\Application Data\Iceni
[2010/01/15 19:28:44 | 000,888,832 | ---- | C] (ActMask
http://www.all2pdf.com) -- E:\WINDOWS\System32\SaveTo.dll
[2010/01/15 19:28:43 | 002,519,040 | ---- | C] (DynaForms GmbH) -- E:\WINDOWS\System32\CPDF.dll
[2010/01/15 19:28:16 | 000,878,080 | ---- | C] (ActMask Co.,Ltd -
http://www.all2pdf.com) -- E:\WINDOWS\System32\PrintDisp.exe
[2010/01/15 19:28:16 | 000,077,824 | ---- | C] (ActMask Co.,Ltd -
HTTP://WWW.ALL2PDF.COM) -- E:\WINDOWS\System32\PrintCtrl.exe
[2010/01/15 19:28:11 | 000,000,000 | RHSD | C] -- E:\Documents and Settings\All Users\Application Data\Temp
[2010/01/15 19:28:07 | 001,700,352 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\gdiplus.dll
[2010/01/15 19:28:07 | 001,165,824 | ---- | C] (ActMask Co.,Ltd -
HTTP://WWW.ALL2PDF.COM) -- E:\WINDOWS\System32\PrtClient.exe
[2010/01/15 19:28:07 | 000,822,784 | ---- | C] (ActMask Co.,Ltd -
HTTP://WWW.ALL2PDF.COM) -- E:\WINDOWS\System32\SetupDrv.exe
[2010/01/15 19:28:07 | 000,702,976 | ---- | C] (ActMask -
http://www.all2pdf.com) -- E:\WINDOWS\System32\PrtTools.exe
[2010/01/15 19:28:07 | 000,375,296 | ---- | C] (ActMask Co.,Ltd -
HTTP://WWW.ALL2PDF.COM) -- E:\WINDOWS\System32\SetPrinter.exe
[2010/01/15 19:28:07 | 000,000,000 | ---D | C] -- E:\WINDOWS\Infix PDF
[2010/01/15 19:28:01 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\Iceni
[2010/01/15 19:28:01 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Iceni
[2010/01/15 19:28:01 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Aspell
[2010/01/15 19:27:59 | 000,000,000 | ---D | C] -- E:\Program Files\Iceni
[2010/01/15 19:27:59 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\Aspell
[2010/01/15 19:27:48 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Local Settings\Application Data\esentclbClient
[2010/01/14 11:27:25 | 000,000,000 | ---D | C] -- E:\Program Files\Bonjour
[2010/01/13 01:43:22 | 000,017,272 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\spmsg.dll
[2010/01/12 20:46:46 | 000,471,552 | ---- | C] (Microsoft Corporation) -- E:\WINDOWS\System32\dllcache\aclayers.dll
[2010/01/12 13:02:24 | 000,000,000 | ---D | C] -- E:\Program Files\Microsoft Silverlight
[2010/01/12 13:02:10 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Desktop\Adobe
[2010/01/12 10:16:17 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\My Documents\Crayon Physics Deluxe
[2010/01/12 10:15:21 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Application Data\Crayon Physics Deluxe
[2010/01/09 23:17:33 | 000,000,000 | ---D | C] -- E:\Program Files\THQ
[2010/01/09 13:52:04 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Barry\Local Settings\Application Data\Gas Powered Games
[2010/01/05 08:34:36 | 000,000,000 | --SD | M] -- E:\Documents and Settings\NetworkService\Application Data\Microsoft
[2010/01/05 08:34:36 | 000,000,000 | ---D | M] -- E:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2010/01/05 08:34:36 | 000,000,000 | ---D | M] -- E:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2009/12/26 14:39:00 | 000,000,000 | ---D | M] -- E:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2009/12/26 14:34:09 | 000,000,000 | ---D | M] -- E:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2009/11/09 12:21:47 | 000,000,000 | ---D | M] -- E:\Documents and Settings\LocalService\Local Settings\Application Data\ICS
[2009/10/16 11:41:44 | 000,047,360 | ---- | C] (VSO Software) -- E:\Documents and Settings\Barry\Application Data\pcouffin.sys
[4 E:\WINDOWS\*.tmp files -> E:\WINDOWS\*.tmp -> ]
[1 E:\WINDOWS\System32\*.tmp files -> E:\WINDOWS\System32\*.tmp -> ]
[1 E:\Documents and Settings\Barry\My Documents\*.tmp files -> E:\Documents and Settings\Barry\My Documents\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/02/07 09:46:51 | 055,199,147 | ---- | M] () -- E:\WINDOWS\System32\drivers\Avg\incavi.avm
[2010/02/07 09:39:00 | 000,000,884 | ---- | M] () -- E:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/02/07 08:49:08 | 000,000,604 | ---- | M] () -- E:\Documents and Settings\All Users\Desktop\World of Warcraft.lnk
[2010/02/07 08:43:26 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2010/02/07 08:43:26 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Daily 4).job
[2010/02/07 08:43:26 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Daily 3).job
[2010/02/07 08:43:25 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Daily 2).job
[2010/02/07 08:43:24 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Daily 1).job
[2010/02/07 08:41:53 | 000,002,335 | ---- | M] () -- E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk
[2010/02/07 08:41:37 | 000,000,880 | ---- | M] () -- E:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/02/07 08:40:51 | 000,000,006 | -H-- | M] () -- E:\WINDOWS\tasks\SA.DAT
[2010/02/07 08:40:44 | 000,002,048 | --S- | M] () -- E:\WINDOWS\bootstat.dat
[2010/02/07 08:40:24 | 000,176,226 | ---- | M] () -- E:\WINDOWS\System32\oodbs.lor
[2010/02/07 00:28:23 | 000,004,096 | ---- | M] () -- E:\WINDOWS\System32\crash
[2010/02/06 20:03:43 | 000,549,376 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Barry\Desktop\OTL.exe
[2010/02/06 15:32:09 | 000,138,504 | ---- | M] () -- E:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010/02/06 15:31:58 | 000,214,488 | ---- | M] () -- E:\WINDOWS\System32\PnkBstrB.xtr
[2010/02/06 15:31:58 | 000,214,488 | ---- | M] () -- E:\WINDOWS\System32\PnkBstrB.exe
[2010/02/06 13:04:51 | 000,801,516 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\PUR-120703-9_Order_documents.zip
[2010/02/06 09:36:56 | 000,000,654 | ---- | M] () -- E:\WINDOWS\win.ini
[2010/02/06 09:36:56 | 000,000,227 | ---- | M] () -- E:\WINDOWS\system.ini
[2010/02/05 23:57:19 | 010,485,760 | -H-- | M] () -- E:\Documents and Settings\Barry\NTUSER.DAT
[2010/02/05 23:57:19 | 000,000,278 | -HS- | M] () -- E:\Documents and Settings\Barry\ntuser.ini
[2010/02/05 23:43:17 | 000,001,915 | ---- | M] () -- E:\Documents and Settings\All Users\Desktop\Google Earth.lnk
[2010/02/05 21:49:18 | 000,137,216 | ---- | M] () -- E:\Documents and Settings\Barry\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/05 18:55:38 | 002,624,872 | ---- | M] () -- E:\WINDOWS\System32\FNTCACHE.DAT
[2010/02/05 18:43:02 | 000,524,288 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\dds.scr
[2010/02/05 18:42:57 | 000,293,376 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\mvjvsng3.exe
[2010/02/05 14:52:47 | 000,052,352 | ---- | M] () -- E:\Documents and Settings\Barry\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010/02/05 14:46:22 | 016,243,229 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\531_TC1_Sub1_IntroPlateauAdmin_V05_B01.pdf
[2010/02/05 11:33:02 | 000,628,254 | ---- | M] () -- E:\WINDOWS\System32\PerfStringBackup.INI
[2010/02/05 11:33:02 | 000,516,672 | ---- | M] () -- E:\WINDOWS\System32\perfh009.dat
[2010/02/05 11:33:02 | 000,099,798 | ---- | M] () -- E:\WINDOWS\System32\perfc009.dat
[2010/02/04 14:33:55 | 000,659,603 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\00-WebDevIntro-lab.zip
[2010/02/03 19:02:00 | 000,001,355 | ---- | M] () -- E:\WINDOWS\imsins.BAK
[2010/02/03 12:42:01 | 000,000,664 | ---- | M] () -- E:\WINDOWS\System32\d3d9caps.dat
[2010/02/03 09:39:37 | 000,002,206 | ---- | M] () -- E:\WINDOWS\System32\wpa.dbl
[2010/02/01 14:25:34 | 000,026,624 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\About me.doc
[2010/02/01 10:50:08 | 000,012,610 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\IMG_2217.jpg
[2010/01/30 14:58:59 | 000,725,628 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\passport.JPG
[2010/01/28 23:43:05 | 003,177,662 | -H-- | M] () -- E:\Documents and Settings\Barry\Local Settings\Application Data\IconCache.db
[2010/01/28 21:47:42 | 000,001,494 | ---- | M] () -- E:\Documents and Settings\All Users\Desktop\Battlefield Bad Company 2 - BETA.lnk
[2010/01/28 21:44:15 | 000,138,056 | ---- | M] () -- E:\Documents and Settings\Barry\Application Data\PnkBstrK.sys
[2010/01/28 21:43:52 | 002,434,856 | ---- | M] () -- E:\WINDOWS\System32\pbsvc_bc2.exe
[2010/01/28 21:43:52 | 000,075,064 | ---- | M] () -- E:\WINDOWS\System32\PnkBstrA.exe
[2010/01/28 14:14:29 | 000,072,192 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\Nathalie Warner CV_EN.doc
[2010/01/27 14:38:28 | 000,015,880 | ---- | M] () -- E:\WINDOWS\System32\lsdelete.exe
[2010/01/27 13:33:42 | 000,019,968 | ---- | M] () -- E:\Documents and Settings\Barry\My Documents\Staying in France.doc
[2010/01/26 13:53:29 | 000,000,000 | ---- | M] () -- E:\WINDOWS\OpPrintServer.INI
[2010/01/25 20:28:09 | 000,373,619 | R--- | M] () -- E:\WINDOWS\System32\drivers\etc\hosts
[2010/01/25 20:19:46 | 000,050,688 | ---- | M] (Atribune.org) -- E:\Documents and Settings\Barry\Desktop\ATF-Cleaner.exe
[2010/01/25 20:14:26 | 000,070,984 | ---- | M] () -- E:\Documents and Settings\Barry\g2mdlhlpx.exe
[2010/01/20 09:21:57 | 000,142,495 | ---- | M] () -- E:\WINDOWS\System32\drivers\Avg\microavi.avg
[2010/01/19 09:52:20 | 000,007,791 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\Nat-Profile.jpg
[2010/01/10 21:47:49 | 000,000,882 | ---- | M] () -- E:\Documents and Settings\Barry\Desktop\World of Warcraft Installer.lnk
[2010/01/10 10:22:12 | 000,002,027 | ---- | M] () -- E:\Documents and Settings\All Users\Desktop\Steam.lnk
[4 E:\WINDOWS\*.tmp files -> E:\WINDOWS\*.tmp -> ]
[1 E:\WINDOWS\System32\*.tmp files -> E:\WINDOWS\System32\*.tmp -> ]
[1 E:\Documents and Settings\Barry\My Documents\*.tmp files -> E:\Documents and Settings\Barry\My Documents\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/02/06 13:04:49 | 000,801,516 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\PUR-120703-9_Order_documents.zip
[2010/02/05 23:43:17 | 000,001,915 | ---- | C] () -- E:\Documents and Settings\All Users\Desktop\Google Earth.lnk
[2010/02/05 20:25:13 | 016,243,229 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\531_TC1_Sub1_IntroPlateauAdmin_V05_B01.pdf
[2010/02/05 18:43:01 | 000,524,288 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\dds.scr
[2010/02/05 18:42:57 | 000,293,376 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\mvjvsng3.exe
[2010/02/04 14:33:55 | 000,659,603 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\00-WebDevIntro-lab.zip
[2010/02/02 12:50:16 | 000,072,192 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\Nathalie Warner CV_EN.doc
[2010/02/01 12:15:13 | 000,026,624 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\About me.doc
[2010/02/01 10:50:08 | 000,012,610 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\IMG_2217.jpg
[2010/01/30 15:00:56 | 000,725,628 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\passport.JPG
[2010/01/28 21:47:42 | 000,001,494 | ---- | C] () -- E:\Documents and Settings\All Users\Desktop\Battlefield Bad Company 2 - BETA.lnk
[2010/01/28 21:44:15 | 000,138,056 | ---- | C] () -- E:\Documents and Settings\Barry\Application Data\PnkBstrK.sys
[2010/01/28 21:43:52 | 002,434,856 | ---- | C] () -- E:\WINDOWS\System32\pbsvc_bc2.exe
[2010/01/27 13:33:41 | 000,019,968 | ---- | C] () -- E:\Documents and Settings\Barry\My Documents\Staying in France.doc
[2010/01/26 13:53:29 | 000,000,000 | ---- | C] () -- E:\WINDOWS\OpPrintServer.INI
[2010/01/26 13:40:31 | 000,008,704 | ---- | C] () -- E:\WINDOWS\System32\CNMVS79.DLL
[2010/01/25 20:14:25 | 000,070,984 | ---- | C] () -- E:\Documents and Settings\Barry\g2mdlhlpx.exe
[2010/01/25 17:29:06 | 000,000,472 | ---- | C] () -- E:\WINDOWS\tasks\Ad-Aware Update (Daily 4).job
[2010/01/25 17:29:06 | 000,000,472 | ---- | C] () -- E:\WINDOWS\tasks\Ad-Aware Update (Daily 3).job
[2010/01/25 17:29:06 | 000,000,472 | ---- | C] () -- E:\WINDOWS\tasks\Ad-Aware Update (Daily 2).job
[2010/01/25 17:29:06 | 000,000,472 | ---- | C] () -- E:\WINDOWS\tasks\Ad-Aware Update (Daily 1).job
[2010/01/19 09:52:20 | 000,007,791 | ---- | C] () -- E:\Documents and Settings\Barry\Desktop\Nat-Profile.jpg
[2010/01/15 19:28:44 | 001,391,616 | ---- | C] () -- E:\WINDOWS\System32\ActPDF.dll
[2010/01/15 19:28:07 | 000,691,200 | ---- | C] () -- E:\WINDOWS\System32\PrintLog.exe
[2010/01/15 19:28:07 | 000,524,288 | ---- | C] () -- E:\WINDOWS\System32\PrtPass.exe
[2010/01/15 19:28:07 | 000,097,016 | ---- | C] () -- E:\WINDOWS\System32\Cancel.wav
[2010/01/15 19:28:07 | 000,010,398 | ---- | C] () -- E:\WINDOWS\System32\START.WAV
[2010/01/15 19:28:07 | 000,004,486 | ---- | C] () -- E:\WINDOWS\System32\FINISH.WAV
[2009/12/29 23:49:13 | 000,138,504 | ---- | C] () -- E:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009/12/14 21:21:06 | 000,002,528 | ---- | C] () -- E:\Documents and Settings\Barry\Application Data\$_hpcst$.hpc
[2009/12/11 14:35:19 | 000,000,401 | ---- | C] () -- E:\WINDOWS\MD.INI
[2009/12/05 11:28:12 | 000,722,416 | ---- | C] () -- E:\WINDOWS\System32\drivers\sptd.sys
[2009/11/17 11:46:02 | 000,036,352 | ---- | C] () -- E:\WINDOWS\System32\SX32W.DLL
[2009/11/17 11:30:04 | 000,000,128 | ---- | C] () -- E:\Documents and Settings\Barry\Local Settings\Application Data\fusioncache.dat
[2009/11/17 11:18:06 | 000,878,080 | ---- | C] () -- E:\WINDOWS\System32\iconv.dll
[2009/11/17 11:18:06 | 000,721,920 | ---- | C] () -- E:\WINDOWS\System32\libxml2.dll
[2009/11/17 11:18:06 | 000,150,016 | ---- | C] () -- E:\WINDOWS\System32\libxslt.dll
[2009/11/17 11:18:06 | 000,051,200 | ---- | C] () -- E:\WINDOWS\System32\libexslt.dll
[2009/11/14 17:43:59 | 000,000,000 | ---- | C] () -- E:\WINDOWS\oodcnt.INI
[2009/11/12 16:58:59 | 000,093,184 | ---- | C] () -- E:\WINDOWS\System32\Partition.dll
[2009/11/12 16:58:59 | 000,086,528 | ---- | C] () -- E:\WINDOWS\System32\NTFSLib.dll
[2009/11/12 16:58:59 | 000,086,016 | ---- | C] () -- E:\WINDOWS\System32\ResizeNTFS.dll
[2009/11/12 16:58:59 | 000,017,920 | ---- | C] () -- E:\WINDOWS\System32\SectorCopy.dll
[2009/11/12 16:58:58 | 000,472,064 | ---- | C] () -- E:\WINDOWS\System32\NTFSFormat.dll
[2009/11/12 16:58:58 | 000,139,776 | ---- | C] () -- E:\WINDOWS\System32\NTFSCopy.dll
[2009/11/12 16:58:58 | 000,061,952 | ---- | C] () -- E:\WINDOWS\System32\FatResizeMove.dll
[2009/11/12 16:58:58 | 000,045,568 | ---- | C] () -- E:\WINDOWS\System32\FileSystemCheck.dll
[2009/11/12 16:58:58 | 000,031,744 | ---- | C] () -- E:\WINDOWS\System32\FatLib.dll
[2009/11/12 16:58:58 | 000,024,576 | ---- | C] () -- E:\WINDOWS\System32\NTFSFileSystemAnalyser.dll
[2009/11/12 16:58:58 | 000,021,504 | ---- | C] () -- E:\WINDOWS\System32\Fixup.dll
[2009/11/12 16:58:58 | 000,014,848 | ---- | C] () -- E:\WINDOWS\System32\FileSystemAnalyser.dll
[2009/11/12 16:58:57 | 000,180,224 | ---- | C] () -- E:\WINDOWS\System32\DeviceManager.dll
[2009/11/12 16:58:57 | 000,068,096 | ---- | C] () -- E:\WINDOWS\System32\Device.dll
[2009/11/12 16:58:57 | 000,065,536 | ---- | C] () -- E:\WINDOWS\System32\FatCopy.dll
[2009/11/12 16:58:57 | 000,025,088 | ---- | C] () -- E:\WINDOWS\System32\FATFileSystemAnalyser.dll
[2009/11/12 16:58:57 | 000,022,016 | ---- | C] () -- E:\WINDOWS\System32\FatFormat.dll
[2009/11/12 16:58:57 | 000,014,848 | ---- | C] () -- E:\WINDOWS\System32\EuEpmGdi.dll
[2009/11/12 16:58:57 | 000,010,752 | ---- | C] () -- E:\WINDOWS\System32\DeviceAdapter.dll
[2009/11/12 16:58:56 | 000,008,704 | ---- | C] () -- E:\WINDOWS\System32\epmntdrv.sys
[2009/11/12 16:58:56 | 000,006,656 | ---- | C] () -- E:\WINDOWS\System32\CallbackOperator.dll
[2009/11/12 16:58:56 | 000,003,072 | ---- | C] () -- E:\WINDOWS\System32\EuGdiDrv.sys
[2009/11/06 10:58:04 | 000,178,975 | ---- | C] () -- E:\WINDOWS\System32\xlive.dll.cat
[2009/10/16 13:00:06 | 000,000,028 | ---- | C] () -- E:\WINDOWS\v2d.INI
[2009/10/16 11:41:54 | 000,001,044 | ---- | C] () -- E:\Documents and Settings\Barry\Application Data\vso_ts_preview.xml
[2009/10/16 11:41:48 | 000,000,034 | ---- | C] () -- E:\Documents and Settings\Barry\Application Data\pcouffin.log
[2009/10/16 11:41:44 | 000,087,608 | ---- | C] () -- E:\Documents and Settings\Barry\Application Data\inst.exe
[2009/10/16 11:41:44 | 000,007,887 | ---- | C] () -- E:\Documents and Settings\Barry\Application Data\pcouffin.cat
[2009/10/16 11:41:44 | 000,001,144 | ---- | C] () -- E:\Documents and Settings\Barry\Application Data\pcouffin.inf
[2009/10/08 13:58:19 | 001,494,728 | ---- | C] () -- E:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2009/09/29 09:05:16 | 000,000,111 | ---- | C] () -- E:\Documents and Settings\All Users\Application Data\Microsoft.SqlServer.Compact.351.32.bc
[2009/09/28 08:49:43 | 000,137,216 | ---- | C] () -- E:\Documents and Settings\Barry\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/09/26 08:49:15 | 000,000,376 | ---- | C] () -- E:\WINDOWS\ODBC.INI
[2009/09/26 08:05:38 | 000,000,760 | ---- | C] () -- E:\Documents and Settings\Barry\Application Data\setup_ldm.iss
[2009/09/26 07:39:18 | 000,073,728 | R--- | C] () -- E:\WINDOWS\System32\RtNicProp32.dll
[2008/10/07 09:13:30 | 000,197,912 | ---- | C] () -- E:\WINDOWS\System32\physxcudart_20.dll
[2008/10/07 09:13:22 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelSwedish.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelSpanish.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelPortugese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelKorean.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelJapanese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelGerman.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- E:\WINDOWS\System32\AgCPanelFrench.dll
========== LOP Check ========== [2009/11/23 10:41:51 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\1.0.0.0
[2009/10/14 09:23:57 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\2DBoy
[2009/11/05 10:39:20 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Acronis
[2010/01/05 08:36:15 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\avg9
[2009/11/06 16:30:24 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\BioWare
[2010/01/26 14:19:30 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Application Data\CanonBJ
[2009/12/05 14:16:49 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
[2009/11/06 16:28:44 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Electronic Arts
[2009/12/01 18:45:49 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Gamerizon
[2010/01/02 19:48:22 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\GARMIN
[2010/01/15 19:28:01 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Iceni
[2010/01/01 21:33:35 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\id Software
[2009/11/09 12:21:48 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\LogMeIn
[2010/01/11 10:33:08 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\MemoQ
[2010/01/19 20:45:43 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Passolo 2009
[2010/01/19 20:47:32 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\SDL
[2009/11/18 13:30:38 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\SDL International
[2009/12/18 20:57:46 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Stardock
[2010/01/28 10:41:16 | 000,000,000 | RHSD | M] -- E:\Documents and Settings\All Users\Application Data\Temp
[2009/11/30 13:17:00 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\TrackMania
[2009/10/16 12:01:58 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\vsosdk
[2009/12/07 13:31:03 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Application Data\{0E8E33D8-193A-414A-A909-0F101A142D26}
[2009/12/18 20:57:51 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Application Data\{1EB63B4B-5639-4477-8E24-05C31B5F8019}
[2009/10/26 08:27:38 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Application Data\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}
[2009/11/23 10:41:51 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\1.0.0.0
[2009/11/17 09:32:46 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Acronis
[2009/12/21 18:02:51 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\com.gog.downloader.87F90EC6C28C7E479115BE2E026DB87A08BC420D.1
[2010/01/12 10:17:36 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Crayon Physics Deluxe
[2009/12/05 11:28:09 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\DAEMON Tools Pro
[2010/01/02 19:48:22 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\GARMIN
[2009/10/16 11:41:05 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\GetRightToGo
[2010/01/15 19:28:01 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Iceni
[2010/01/01 21:35:40 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\id Software
[2009/09/26 07:57:23 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Leadertech
[2010/01/11 10:35:27 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\MemoQ
[2010/01/20 10:34:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Passolo 2009
[2009/12/07 17:30:35 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\runic games
[2010/01/20 10:44:42 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\SDL
[2010/02/01 10:25:17 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Six-Updater
[2010/01/09 13:44:47 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Stardock
[2009/11/17 11:30:14 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\SYSTRAN
[2009/11/09 12:17:07 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\TeamViewer
[2009/11/04 19:13:10 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\The Creative Assembly
[2009/11/23 19:22:10 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Trados
[2010/02/06 09:30:49 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\uTorrent
[2009/10/16 13:21:12 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\Vso
[2010/01/29 17:13:14 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Barry\Application Data\WebEx
[2010/02/07 08:43:24 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Daily 1).job
[2010/02/07 08:43:25 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Daily 2).job
[2010/02/07 08:43:26 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Daily 3).job
[2010/02/07 08:43:26 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Daily 4).job
[2010/02/07 08:43:26 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
========== Purity Check ========== ========== Custom Scans ========== < %SYSTEMDRIVE%\*.exe > < MD5 for: AGP440.SYS >[2004/08/04 02:05:44 | 018,738,937 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2009/09/28 16:57:39 | 023,852,652 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2009/09/28 16:57:39 | 023,852,652 | ---- | M] () .cab file -- E:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 19:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- E:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 19:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- E:\WINDOWS\system32\drivers\agp440.sys
< MD5 for: ATAPI.SYS >[2004/08/04 02:05:44 | 018,738,937 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2009/09/28 16:57:39 | 023,852,652 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2009/09/28 16:57:39 | 023,852,652 | ---- | M] () .cab file -- E:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- E:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- E:\WINDOWS\system32\drivers\atapi.sys
[2004/08/04 06:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004/08/03 23:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
[2004/08/04 06:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys
< MD5 for: EVENTLOG.DLL >[2008/04/14 01:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- E:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/14 01:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- E:\WINDOWS\system32\eventlog.dll
[2004/08/04 01:56:44 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- E:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: NETLOGON.DLL >[2008/04/14 01:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- E:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/14 01:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- E:\WINDOWS\system32\netlogon.dll
[2009/02/06 19:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- E:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[2004/08/04 01:56:46 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- E:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
< MD5 for: SCECLI.DLL >[2004/08/04 01:56:46 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- E:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/14 01:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- E:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/14 01:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- E:\WINDOWS\system32\scecli.dll
< %systemroot%\*. /mp /s > < %systemroot%\system32\*.dll /lockedfiles >[1 E:\WINDOWS\system32\*.tmp files -> E:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles >< End of report >
-----------------------------------------------------------------------------------------------------------------------------