Hi there Gary R. Thank you for responding.
Here are those logs:
OTL log
OTL logfile created on: 9/27/2011 6:31:13 AM - Run 1
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Users\Danica\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.50 Gb Total Physical Memory | 2.45 Gb Available Physical Memory | 69.98% Memory free
7.18 Gb Paging File | 6.23 Gb Available in Paging File | 86.81% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 448.20 Gb Total Space | 402.74 Gb Free Space | 89.86% Space Free | Partition Type: NTFS
Drive D: | 15.00 Gb Total Space | 9.21 Gb Free Space | 61.37% Space Free | Partition Type: NTFS
Computer Name: DANICA-PC | User Name: Danica | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - [2011/09/27 06:27:48 | 000,582,656 | ---- | M] (OldTimer Tools) -- C:\Users\Danica\Desktop\OTL.exe
PRC - [2011/09/07 18:57:45 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/09/06 15:45:30 | 003,722,416 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011/09/06 15:45:28 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011/09/06 12:29:38 | 000,181,584 | ---- | M] (Sunbelt Software) -- C:\Program Files\Sunbelt Software\VIPRE\SBPIMSvc.exe
PRC - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2010/04/05 16:46:08 | 000,288,040 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe
PRC - [2010/03/23 13:22:26 | 000,049,152 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe
PRC - [2010/02/17 15:34:40 | 000,054,568 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe
PRC - [2009/04/11 00:27:38 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/01/31 22:43:30 | 000,049,250 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe
PRC - [2007/11/01 16:39:28 | 000,189,736 | ---- | M] (CyberLink Corp.) -- C:\Program Files\Dell\MediaDirect\PCMService.exe
PRC - [2007/08/28 00:51:42 | 000,036,864 | ---- | M] (Creative Technology Ltd.) -- C:\Windows\OEM02Mon.exe
========== Modules (No Company Name) ========== MOD - [2011/09/24 02:18:02 | 006,277,280 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll
MOD - [2011/09/07 18:57:45 | 001,846,232 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
========== Win32 Services (SafeList) ========== SRV - File not found [Auto | Stopped] -- -- (nvsvc)
SRV - File not found [Auto | Stopped] -- -- (McProxy)
SRV - File not found [Auto | Stopped] -- -- (IAANTMON) Intel(R)
SRV - File not found [Auto | Stopped] -- -- (EvtEng) Intel(R)
SRV - File not found [Auto | Stopped] -- -- (AESTFilters)
SRV - [2011/09/06 15:45:28 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011/09/06 12:29:56 | 002,804,280 | ---- | M] (Sunbelt Software) [Auto | Stopped] -- C:\Program Files\Sunbelt Software\VIPRE\SBAMSvc.exe -- (SBAMSvc)
SRV - [2011/09/06 12:29:38 | 000,181,584 | ---- | M] (Sunbelt Software) [Auto | Running] -- C:\Program Files\Sunbelt Software\VIPRE\SBPIMSvc.exe -- (SBPIMSvc)
SRV - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2010/11/16 01:10:14 | 000,267,568 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Fix it Center\Matsvc.exe -- (MatSvc)
SRV - [2008/01/20 21:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
========== Driver Services (SafeList) ========== DRV - [2011/09/06 15:38:05 | 000,442,200 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011/09/06 15:37:53 | 000,320,856 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011/09/06 15:36:38 | 000,034,392 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011/09/06 15:36:36 | 000,052,568 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011/09/06 15:36:26 | 000,054,616 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2011/09/06 15:36:12 | 000,020,568 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011/08/29 17:36:34 | 000,101,720 | ---- | M] (Sunbelt Software) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\SBREDrv.sys -- (SBRE)
DRV - [2011/08/29 17:36:34 | 000,074,456 | ---- | M] (Sunbelt Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\sbapifs.sys -- (sbapifs)
DRV - [2011/04/05 17:35:20 | 000,078,936 | ---- | M] (Sunbelt Software, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\sbtis.sys -- (SbTis)
DRV - [2010/10/16 13:55:00 | 010,084,360 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2010/08/16 09:26:29 | 006,637,056 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETwLv32.sys -- (NETwLv32) Intel(R)
DRV - [2010/07/27 04:47:30 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MRESP50.sys -- (MRESP50)
DRV - [2010/07/27 04:47:10 | 000,021,248 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MREMP50.sys -- (MREMP50)
DRV - [2010/06/22 18:13:00 | 000,026,696 | ---- | M] (Panda Security, S.L.) [File_System | Boot | Running] -- C:\Windows\system32\drivers\pavboot.sys -- (pavboot)
DRV - [2010/05/09 23:38:50 | 000,123,856 | ---- | M] (Sun Microsystems, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\VBoxDrv.sys -- (VBoxDrv)
DRV - [2010/05/09 23:38:50 | 000,110,608 | ---- | M] (Sun Microsystems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VBoxNetFlt.sys -- (VBoxNetFlt)
DRV - [2010/05/09 23:38:50 | 000,099,728 | ---- | M] (Sun Microsystems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV - [2010/05/09 23:38:50 | 000,041,680 | ---- | M] (Sun Microsystems, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\VBoxUSBMon.sys -- (VBoxUSBMon)
DRV - [2010/04/15 13:36:40 | 000,252,536 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2009/07/17 02:37:06 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\BVRPMPR5.SYS -- (BVRPMPR5)
DRV - [2008/10/23 00:45:58 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2008/10/23 00:45:56 | 000,046,592 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2008/10/23 00:45:54 | 000,043,008 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2008/01/20 21:23:25 | 000,220,672 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\e1e6032.sys -- (e1express) Intel(R)
DRV - [2007/12/02 13:51:42 | 000,040,488 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mfesmfk.sys -- (mfesmfk)
DRV - [2007/11/22 07:44:04 | 000,033,832 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mferkdk.sys -- (mferkdk)
DRV - [2007/10/10 18:03:00 | 000,235,648 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\OEM02Dev.sys -- (OEM02Dev)
DRV - [2007/09/26 08:12:00 | 002,251,776 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw4v32.sys -- (NETw4v32) Intel(R)
DRV - [2007/09/07 04:27:32 | 000,209,408 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ianvstor.sys -- (iaNvStor) Intel(R)
DRV - [2007/08/28 00:51:44 | 000,007,424 | ---- | M] (EyePower Games Pte. Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\OEM02Vfx.sys -- (OEM02Vfx)
DRV - [2007/07/13 07:21:12 | 000,125,728 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\Mpfp.sys -- (MPFP)
DRV - [2006/11/02 02:36:43 | 002,028,032 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (R300)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL =
http://www.dell.comIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page =
http://www.dell.com IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1089451973-958431364-2657113909-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.comIE - HKU\S-1-5-21-1089451973-958431364-2657113909-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-1089451973-958431364-2657113909-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-1089451973-958431364-2657113909-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@consona.com/ScriptRunner: C:\Program Files\Common Files\supportsoft\bin\nptgctlsr.dll (SupportSoft, Inc.)
FF - HKLM\Software\MozillaPlugins\@consona.com/SmartIssue: C:\Program Files\Common Files\supportsoft\bin\nptgctlsi.dll (SupportSoft, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Motive.com/NpMotive,version=1.0: C:\Program Files\Common Files\Motive\npMotive.dll (Alcatel-Lucent)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandasecurity.com/activescan: C:\Program Files\Panda Security\ActiveScan 2.0\npwrapper.dll (Panda Security, S.L.)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Danica\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Danica\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011/09/24 17:48:30 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 6.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/09/07 18:57:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 6.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/09/24 02:13:39 | 000,000,000 | ---D | M]
[2010/12/13 08:07:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Danica\AppData\Roaming\Mozilla\Extensions
[2010/12/13 08:07:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Danica\AppData\Roaming\Mozilla\Extensions\uploadr@flickr.com
[2011/09/22 17:47:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Danica\AppData\Roaming\Mozilla\Firefox\Profiles\66snorsd.default\extensions
[2011/01/11 18:15:37 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Danica\AppData\Roaming\Mozilla\Firefox\Profiles\66snorsd.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/08/18 20:02:49 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Danica\AppData\Roaming\Mozilla\Firefox\Profiles\66snorsd.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011/09/02 19:05:07 | 000,000,000 | ---D | M] (Roomy Bookmarks Toolbarv) -- C:\Users\Danica\AppData\Roaming\Mozilla\Firefox\Profiles\66snorsd.default\extensions\ALone-live@ya.ru
[2011/09/07 18:57:51 | 000,000,000 | ---D | M] (CuteButtons - Crystal SVG) -- C:\Users\Danica\AppData\Roaming\Mozilla\Firefox\Profiles\66snorsd.default\extensions\CuteButtonsCrystalSVG@ChoGGi
[2011/07/13 06:24:43 | 000,000,000 | ---D | M] (We-Care Reminder) -- C:\Users\Danica\AppData\Roaming\Mozilla\Firefox\Profiles\66snorsd.default\extensions\wecarereminder@bryan
[2011/09/24 11:02:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/12/03 07:35:01 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/02/21 23:23:46 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/07/09 09:49:30 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2011/09/07 18:57:46 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/05/04 04:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2010/01/01 03:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
========== Chrome ========== CHR - default_search_provider: Yahoo! (Enabled)
CHR - default_search_provider: search_url =
http://search.yahoo.com/search?ei={inputEncoding}&fr=crmas&p={searchTerms}
CHR - default_search_provider: suggest_url =
http://ff.search.yahoo.com/gossip?outpu ... n&command={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Danica\AppData\Local\Google\Chrome\Application\14.0.835.186\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Danica\AppData\Local\Google\Chrome\Application\14.0.835.186\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Danica\AppData\Local\Google\Chrome\Application\14.0.835.186\pdf.dll
CHR - plugin: Motive Plugin (Enabled) = C:\Program Files\Common Files\Motive\npMotive.dll
CHR - plugin: Consona SmartIssue Plugin (Enabled) = C:\Program Files\Common Files\supportsoft\bin\nptgctlsi.dll
CHR - plugin: Consona Script Runner Plugin for Firefox (Enabled) = C:\Program Files\Common Files\supportsoft\bin\nptgctlsr.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Entanglement = C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd\2.5.7_0\
CHR - Extension: avast! WebRep = C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\6.0.1289_0\
CHR - Extension: We-Care Reminder = C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\ippkomaaonokjnfjoikaemidanojkfmm\1.0.0.18_0\
CHR - Extension: We-Care Reminder = C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\ippkomaaonokjnfjoikaemidanojkfmm\1.0.0.18_0\.bak
CHR - Extension: Poppit = C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcbkbpnkkkipelfledbfocopglifcfmi\2.2_0\
CHR - Extension: Late Night = C:\Users\Danica\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgbdhkpacgdhfabeceekiafonfkipohm\1.0_1\
O1 HOSTS File: ([2006/09/18 16:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (McAfee Phishing Filter) - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll File not found
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (WeCareReminder Class) - {D824F0DE-3D60-4F57-9EB1-66033ECD8ABB} - C:\ProgramData\WeCareReminder\IEHelperv2.5.0.dll (We-Care.com)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-1089451973-958431364-2657113909-1000\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (Intel Corporation)
O4 - HKLM..\Run: [NVHotkey] C:\Windows\System32\nvHotkey.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [PCMService] C:\Program Files\Dell\MediaDirect\PCMService.exe (CyberLink Corp.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O7 - HKU\S-1-5-21-1089451973-958431364-2657113909-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3DC313E9-2D52-44EC-9BEE-6F51A5108E0F}: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: GinaDLL - (vrlogon.dll) -C:\Windows\System32\vrlogon.dll (UPEK Inc.)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - File not found
O20 - Winlogon\Notify\psfus: DllName - (C:\Windows\system32\psqlpwd.dll) - C:\Windows\System32\psqlpwd.dll (UPEK Inc.)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\XPS_NB_1280x864_Black.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\XPS_NB_1280x864_Black.jpg
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL File not found
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2006/09/18 16:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2011/09/27 06:27:46 | 000,582,656 | ---- | C] (OldTimer Tools) -- C:\Users\Danica\Desktop\OTL.exe
[2011/09/27 06:23:42 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/09/27 06:22:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
[2011/09/27 06:22:14 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2011/09/27 06:18:34 | 000,791,393 | ---- | C] (Lars Hederer ) -- C:\Users\Danica\Desktop\erunt-setup.exe
[2011/09/25 19:40:58 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Local\Microsoft Games
[2011/09/24 17:48:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011/09/24 17:48:43 | 000,320,856 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011/09/24 17:48:43 | 000,020,568 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2011/09/24 17:48:42 | 000,034,392 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011/09/24 17:48:41 | 000,442,200 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011/09/24 17:48:41 | 000,052,568 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011/09/24 17:48:40 | 000,054,616 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011/09/24 17:48:28 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011/09/24 17:48:28 | 000,041,184 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2011/09/24 17:18:49 | 000,000,000 | ---D | C] -- C:\Users\Danica\.VirtualBox
[2011/09/24 17:14:36 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Panda Safe Browser
[2011/09/24 17:14:32 | 000,123,856 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\drivers\VBoxDrv.sys
[2011/09/24 17:08:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sun VirtualBox
[2011/09/24 17:05:26 | 000,041,680 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys
[2011/09/24 17:05:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2011/09/24 17:05:23 | 000,000,000 | ---D | C] -- C:\Program Files\Sun
[2011/09/24 15:40:13 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Roaming\Arkadium
[2011/09/24 13:14:44 | 000,607,260 | R--- | C] (Swearware) -- C:\Users\Danica\Desktop\dds.scr
[2011/09/24 12:54:50 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011/09/24 12:54:49 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2011/09/24 10:26:46 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Local\CrashDumps
[2011/09/24 02:13:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011/09/24 02:13:23 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2011/09/24 02:11:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2011/09/23 19:47:25 | 000,026,696 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\pavboot.sys
[2011/09/23 19:46:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Panda Security
[2011/09/23 19:46:44 | 000,000,000 | ---D | C] -- C:\Program Files\Panda Security
[2011/09/23 17:11:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Trymedia
[2011/09/23 17:09:12 | 000,000,000 | ---D | C] -- C:\GameHouse Games
[2011/09/23 17:09:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse
[2011/09/23 17:08:46 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Roaming\WinRAR
[2011/09/23 17:08:42 | 000,000,000 | ---D | C] -- C:\Program Files\RealArcade
[2011/09/22 17:27:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sunbelt Software
[2011/09/22 17:23:32 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Roaming\AVG
[2011/09/21 18:03:37 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Roaming\Sunbelt
[2011/09/21 18:03:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Sunbelt
[2011/09/21 17:55:56 | 000,078,936 | ---- | C] (Sunbelt Software, Inc.) -- C:\Windows\System32\drivers\sbtis.sys
[2011/09/21 17:55:51 | 000,000,000 | ---D | C] -- C:\Program Files\Sunbelt Software
[2011/09/16 17:42:55 | 000,000,000 | ---D | C] -- C:\Users\Danica\AppData\Local\NPE
[2011/09/16 17:42:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2011/09/08 20:20:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\supportsoft
[2011/09/08 20:20:49 | 000,000,000 | ---D | C] -- C:\Program Files\ATTSA
[2011/09/08 20:20:17 | 000,000,000 | ---D | C] -- C:\Program Files\TESTRM
[2011/09/06 12:30:42 | 000,042,832 | ---- | C] (Sunbelt Software) -- C:\Windows\System32\sbbd.exe
[2011/08/29 17:36:34 | 000,101,720 | ---- | C] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys
[2011/08/29 17:36:34 | 000,074,456 | ---- | C] (Sunbelt Software) -- C:\Windows\System32\drivers\sbapifs.sys
========== Files - Modified Within 30 Days ========== [2011/09/27 06:31:00 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1089451973-958431364-2657113909-1000UA.job
[2011/09/27 06:31:00 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1089451973-958431364-2657113909-1000Core.job
[2011/09/27 06:27:48 | 000,582,656 | ---- | M] (OldTimer Tools) -- C:\Users\Danica\Desktop\OTL.exe
[2011/09/27 06:22:14 | 000,000,716 | ---- | M] () -- C:\Users\Danica\Desktop\ERUNT.lnk
[2011/09/27 06:18:35 | 000,791,393 | ---- | M] (Lars Hederer ) -- C:\Users\Danica\Desktop\erunt-setup.exe
[2011/09/27 06:14:50 | 000,595,684 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/09/27 06:14:50 | 000,101,350 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/09/27 06:09:05 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/09/27 06:09:05 | 000,000,408 | ---- | M] () -- C:\Windows\tasks\PC Optimizer Pro startups.job
[2011/09/27 06:09:03 | 000,007,916 | ---- | M] () -- C:\Users\Danica\AppData\Local\d3d9caps.dat
[2011/09/27 06:09:03 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/09/27 06:09:03 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/09/27 06:08:57 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/09/26 23:03:59 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/09/24 19:36:55 | 000,105,507 | ---- | M] () -- C:\Users\Danica\Desktop\connection.jpg
[2011/09/24 19:29:27 | 000,158,923 | ---- | M] () -- C:\Users\Danica\Desktop\Untitled.jpg
[2011/09/24 17:48:44 | 000,001,831 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011/09/24 17:48:40 | 000,000,000 | ---- | M] () -- C:\Windows\System32\config.nt
[2011/09/24 17:14:36 | 000,001,095 | ---- | M] () -- C:\Users\Danica\Desktop\Panda Safe Browser.lnk
[2011/09/24 17:08:56 | 000,000,918 | ---- | M] () -- C:\Users\Public\Desktop\Sun VirtualBox.lnk
[2011/09/24 13:14:44 | 000,607,260 | R--- | M] (Swearware) -- C:\Users\Danica\Desktop\dds.scr
[2011/09/24 12:58:39 | 000,002,525 | ---- | M] () -- C:\Users\Danica\Desktop\HiJackThis.lnk
[2011/09/24 03:17:41 | 000,001,617 | ---- | M] () -- C:\Users\Danica\Desktop\Safe Run for Websites.lnk
[2011/09/24 02:56:06 | 000,017,408 | ---- | M] () -- C:\Users\Danica\AppData\Local\WebpageIcons.db
[2011/09/24 02:18:02 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2011/09/24 02:13:39 | 000,001,894 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011/09/23 19:56:16 | 000,008,627 | ---- | M] () -- C:\Windows\System32\PAV_FOG.OPC
[2011/09/23 17:11:43 | 000,000,967 | ---- | M] () -- C:\Users\Danica\Desktop\Mahjongg Dimensions Deluxe - Tiles in Time.lnk
[2011/09/23 17:09:08 | 000,000,137 | ---- | M] () -- C:\Users\Danica\Desktop\More Games at GameHouse.com.url
[2011/09/22 17:27:33 | 000,001,882 | ---- | M] () -- C:\Users\Public\Desktop\VIPRE.lnk
[2011/09/20 20:32:16 | 000,002,049 | ---- | M] () -- C:\Users\Danica\Desktop\Google Chrome.lnk
[2011/09/20 20:32:16 | 000,002,011 | ---- | M] () -- C:\Users\Danica\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/09/06 15:45:29 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011/09/06 15:45:29 | 000,041,184 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011/09/06 15:38:05 | 000,442,200 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011/09/06 15:37:53 | 000,320,856 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011/09/06 15:36:38 | 000,034,392 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011/09/06 15:36:36 | 000,052,568 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011/09/06 15:36:26 | 000,054,616 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011/09/06 15:36:12 | 000,020,568 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2011/09/06 12:30:42 | 000,042,832 | ---- | M] (Sunbelt Software) -- C:\Windows\System32\sbbd.exe
[2011/08/31 19:31:39 | 000,000,945 | ---- | M] () -- C:\Users\Danica\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/08/29 17:36:34 | 000,101,720 | ---- | M] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys
[2011/08/29 17:36:34 | 000,074,456 | ---- | M] (Sunbelt Software) -- C:\Windows\System32\drivers\sbapifs.sys
========== Files Created - No Company Name ========== [2011/09/27 06:22:14 | 000,000,716 | ---- | C] () -- C:\Users\Danica\Desktop\ERUNT.lnk
[2011/09/24 19:36:55 | 000,105,507 | ---- | C] () -- C:\Users\Danica\Desktop\connection.jpg
[2011/09/24 19:29:27 | 000,158,923 | ---- | C] () -- C:\Users\Danica\Desktop\Untitled.jpg
[2011/09/24 17:48:44 | 000,001,831 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011/09/24 17:14:36 | 000,001,095 | ---- | C] () -- C:\Users\Danica\Desktop\Panda Safe Browser.lnk
[2011/09/24 17:08:56 | 000,000,918 | ---- | C] () -- C:\Users\Public\Desktop\Sun VirtualBox.lnk
[2011/09/24 12:54:50 | 000,002,525 | ---- | C] () -- C:\Users\Danica\Desktop\HiJackThis.lnk
[2011/09/24 03:17:41 | 000,001,617 | ---- | C] () -- C:\Users\Danica\Desktop\Safe Run for Websites.lnk
[2011/09/24 02:56:04 | 000,017,408 | ---- | C] () -- C:\Users\Danica\AppData\Local\WebpageIcons.db
[2011/09/24 02:13:39 | 000,001,894 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011/09/24 02:13:39 | 000,001,804 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2011/09/23 19:56:16 | 000,008,627 | ---- | C] () -- C:\Windows\System32\PAV_FOG.OPC
[2011/09/23 17:11:43 | 000,000,967 | ---- | C] () -- C:\Users\Danica\Desktop\Mahjongg Dimensions Deluxe - Tiles in Time.lnk
[2011/09/23 17:09:08 | 000,000,137 | ---- | C] () -- C:\Users\Danica\Desktop\More Games at GameHouse.com.url
[2011/09/22 17:27:33 | 000,001,882 | ---- | C] () -- C:\Users\Public\Desktop\VIPRE.lnk
[2011/09/16 19:21:50 | 000,032,768 | ---- | C] () -- C:\Windows\System32\drivers\sp_rsdrv2.sys
[2011/08/31 19:31:39 | 000,000,945 | ---- | C] () -- C:\Users\Danica\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/06/13 02:27:33 | 000,007,916 | ---- | C] () -- C:\Users\Danica\AppData\Local\d3d9caps.dat
[2011/03/04 19:20:07 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2011/03/04 19:18:58 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010/12/04 13:04:01 | 000,005,632 | ---- | C] () -- C:\Users\Danica\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/12/04 10:05:22 | 000,027,934 | ---- | C] () -- C:\ProgramData\nvModes.001
[2010/12/04 03:11:42 | 000,027,934 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2010/12/03 00:02:52 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/12/02 19:12:08 | 000,000,074 | RHS- | C] () -- C:\Windows\CT4CET.bin
[2010/12/01 19:07:03 | 000,167,936 | ---- | C] () -- C:\Windows\System32\nvccoin.dll
[2009/04/11 13:02:01 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009/04/11 11:07:30 | 000,000,000 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2007/07/25 16:40:02 | 000,999,424 | ---- | C] () -- C:\Windows\System32\WLIHVUI.dll
[2006/11/02 07:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 07:47:37 | 000,230,896 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 07:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 05:33:01 | 000,595,684 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 05:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 05:33:01 | 000,101,350 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 05:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 05:25:44 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2006/11/02 05:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 03:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 03:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 02:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 02:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
========== LOP Check ========== [2011/09/24 15:40:13 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\Arkadium
[2011/09/22 17:23:32 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\AVG
[2010/12/13 08:07:09 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\Flickr
[2010/12/26 00:05:40 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\Imprudence
[2011/05/14 03:52:07 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\IObit
[2010/12/02 22:33:43 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\IrfanView
[2011/05/28 11:33:28 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\MP3Rocket
[2011/04/02 14:47:44 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\SecondLife
[2010/12/29 02:55:48 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\TeamViewer
[2011/03/17 18:48:58 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\TMP
[2011/03/04 10:12:37 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\Uniblue
[2011/05/16 20:46:17 | 000,000,000 | ---D | M] -- C:\Users\Danica\AppData\Roaming\Windows Live Writer
[2011/06/15 01:33:32 | 000,000,342 | ---- | M] () -- C:\Windows\Tasks\McDefragTask.job
[2011/05/01 01:20:00 | 000,000,334 | ---- | M] () -- C:\Windows\Tasks\McQcTask.job
[2011/09/27 06:09:05 | 000,000,408 | ---- | M] () -- C:\Windows\Tasks\PC Optimizer Pro startups.job
[2011/09/26 23:15:50 | 000,032,596 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:0B4227B4
< End of report >