OTL logfile created on: 10/4/2009 2:30:49 PM - Run 1
OTL by OldTimer - Version 3.0.18.3 Folder = C:\Documents and Settings\Sabrina\My Documents\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1013.10 Mb Total Physical Memory | 214.77 Mb Available Physical Memory | 21.20% Memory free
2.38 Gb Paging File | 1.36 Gb Available in Paging File | 57.30% Paging File free
Paging file location(s): c:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 148.96 Gb Total Space | 119.34 Gb Free Space | 80.12% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: FRDMBLLC
Current User Name: Sabrina
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - C:\Program Files\CA\SharedComponents\HIPSEngine\UmxCfg.exe (CA)
PRC - C:\Program Files\CA\SharedComponents\HIPSEngine\UmxFwHlp.exe (CA)
PRC - C:\Program Files\CA\SharedComponents\HIPSEngine\UmxPol.exe (CA)
PRC - C:\Program Files\CA\SharedComponents\HIPSEngine\UmxAgent.exe (CA)
PRC - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
PRC - C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe ()
PRC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (AOL LLC)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
PRC - C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\ISafe.exe (Computer Associates International, Inc.)
PRC - C:\Program Files\Dell Network Assistant\hnm_svc.exe (SingleClick Systems)
PRC - C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
PRC - C:\Program Files\Google\Update\1.2.183.7\GoogleCrashHandler.exe (Google Inc.)
PRC - C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe (CA, Inc.)
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Inc.)
PRC - C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe (Intuit)
PRC - C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\VetMsg.exe (CA, Inc.)
PRC - C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
PRC - C:\WINDOWS\Explorer.EXE (Microsoft Corporation)
PRC - C:\Program Files\CA\CA Internet Security Suite\CA Personal Firewall\capfsem.exe (CA, Inc.)
PRC - C:\WINDOWS\System32\ICO.EXE (Primax Electronics Ltd.)
PRC - C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe (CyberLink Corp.)
PRC - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
PRC - C:\Program Files\CA\CA Internet Security Suite\cctray\cctray.exe (CA, Inc.)
PRC - C:\Program Files\CA\CA Internet Security Suite\CA Anti-Spam\QSP-5.1.18.0\QOELoader.exe (CA)
PRC - C:\WINDOWS\System32\Pmxmiced.exe (Primax Electronics Ltd.)
PRC - C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\CAVRID.exe (CA, Inc.)
PRC - C:\Program Files\CA\CA Internet Security Suite\CA Personal Firewall\capfasem.exe (CA, Inc.)
PRC - C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe ()
PRC - C:\Program Files\Logitech\QuickCam\Quickcam.exe ()
PRC - C:\WINDOWS\System32\igfxtray.exe (Intel Corporation)
PRC - C:\WINDOWS\System32\hkcmd.exe (Intel Corporation)
PRC - C:\WINDOWS\System32\igfxpers.exe (Intel Corporation)
PRC - C:\Program Files\CA\CA Internet Security Suite\ccprovsp.exe (CA, Inc.)
PRC - C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
PRC - C:\Program Files\Common Files\AOL\1213927109\ee\AOLSoftware.exe (AOL LLC)
PRC - C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
PRC - C:\Program Files\S4F\Filter7.exe (S4F, Inc.)
PRC - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
PRC - C:\WINDOWS\System32\igfxsrvc.exe (Intel Corporation)
PRC - C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
PRC - C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntispy.exe ()
PRC - C:\Program Files\UVC\UVC.exe (Universal Village Corp)
PRC - C:\Program Files\CA\CA Internet Security Suite\CA Anti-Spyware\CAPPActiveProtection.exe (CA, Inc.)
PRC - C:\Program Files\Dell Network Assistant\ezi_hnm2.exe (SingleClick Systems)
PRC - C:\Program Files\AOL 9.0\waol.exe (AOL, LLC.)
PRC - C:\Program Files\CA\CA Internet Security Suite\CA Anti-Spyware\PPCtlPriv.exe (CA, Inc.)
PRC - C:\Program Files\multiply\AutoUploader\Multiply AutoUploader\Multiply AutoUploader.exe ()
PRC - C:\Program Files\Password Safe\pwsafe.exe (SourceForge.net)
PRC - C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
PRC - C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe (Logitech Inc.)
PRC - C:\Program Files\AOL 9.0\shellmon.exe (AOL, LLC.)
PRC - C:\Program Files\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe (AOL LLC)
PRC - C:\Program Files\Common Files\aol\1213927109\ee\anotify.exe (AOL LLC)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Documents and Settings\Sabrina\My Documents\Downloads\OTL.exe (OldTimer Tools)
========== Win32 Services (SafeList) ========== SRV - (AntiSpywareService [Auto | Running]) -- C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe ()
SRV - (AOL ACS [Auto | Running]) -- C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (AOL LLC)
SRV - (Apple Mobile Device [Auto | Running]) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (aspnet_state [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (Bonjour Service [Auto | Running]) -- C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (CaCCProvSP [On_Demand | Running]) -- C:\Program Files\CA\CA Internet Security Suite\ccprovsp.exe (CA, Inc.)
SRV - (CAISafe [Auto | Running]) -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\ISafe.exe (Computer Associates International, Inc.)
SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (FontCache3.0.0.0 [On_Demand | Stopped]) -- c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (GoogleDesktopManager [On_Demand | Stopped]) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
SRV - (gupdate [Auto | Stopped]) -- C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (helpsvc [Auto | Running]) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (hnmsvc [Auto | Running]) -- C:\Program Files\Dell Network Assistant\hnm_svc.exe (SingleClick Systems)
SRV - (IDriverT [On_Demand | Stopped]) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (idsvc [Unknown | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation)
SRV - (iPod Service [On_Demand | Running]) -- C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
SRV - (ITMRTSVC [Auto | Running]) -- C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe (CA, Inc.)
SRV - (JavaQuickStarterService [Auto | Running]) -- C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (LVCOMSer [Auto | Running]) -- C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe (Logitech Inc.)
SRV - (LVPrcSrv [Auto | Running]) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV - (LVSrvLauncher [Auto | Stopped]) -- C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe (Logitech Inc.)
SRV - (NetTcpPortSharing [Disabled | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (odserv [On_Demand | Stopped]) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (ose [On_Demand | Stopped]) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (PPCtlPriv [On_Demand | Running]) -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Spyware\PPCtlPriv.exe (CA, Inc.)
SRV - (QBCFMonitorService [Auto | Running]) -- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe (Intuit)
SRV - (QBFCService [On_Demand | Stopped]) -- C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe (Intuit Inc.)
SRV - (UmxAgent [Auto | Running]) -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxAgent.exe (CA)
SRV - (UmxCfg [Auto | Running]) -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxCfg.exe (CA)
SRV - (UmxFwHlp [Auto | Running]) -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxFwHlp.exe (CA)
SRV - (UmxPol [Auto | Running]) -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxPol.exe (CA)
SRV - (VETMSGNT [Auto | Running]) -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\VetMsg.exe (CA, Inc.)
========== Driver Services (SafeList) ========== DRV - (acfva [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\ACFVA32.sys (Conexant Systems Inc.)
DRV - (AliIde [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (amdagp [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)
DRV - (asc [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\asc.sys (Advanced System Products, Inc.)
DRV - (asc3550 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)
DRV - (BrSerIf [On_Demand | Running]) -- C:\WINDOWS\System32\Drivers\BrSerIf.sys (Brother Industries Ltd.)
DRV - (BrUsbSer [On_Demand | Running]) -- C:\WINDOWS\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
DRV - (cercsr6 [Boot | Stopped]) -- C:\WINDOWS\System32\drivers\cercsr6.sys (Adaptec, Inc.)
DRV - (CmdIde [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (dac2w2k [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys (Mylex Corporation)
DRV - (dgcfltr [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\ACFDCP32.sys (Conexant Systems, Inc.)
DRV - (E100B [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\e100b325.sys (Intel Corporation)
DRV - (e1express [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\e1e5132.sys (Intel Corporation)
DRV - (GEARAspiWDM [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (HDAudBus [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\HDAudBus.sys (Windows (R) Server 2003 DDK provider)
DRV - (HPZid412 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\HPZid412.sys (HP)
DRV - (HPZipr12 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\HPZipr12.sys (HP)
DRV - (HPZius12 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\HPZius12.sys (HP)
DRV - (ialm [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\igxpmp32.sys (Intel Corporation)
DRV - (iaStor [Boot | Running]) -- C:\WINDOWS\system32\drivers\iaStor.sys (Intel Corporation)
DRV - (IntcAzAudAddService [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)
DRV - (KmxAgent [System | Running]) -- C:\WINDOWS\System32\DRIVERS\kmxagent.sys (CA)
DRV - (KmxCF [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\KmxCF.sys (CA)
DRV - (KmxCfg [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\kmxcfg.sys (CA)
DRV - (KmxFile [System | Running]) -- C:\WINDOWS\System32\DRIVERS\KmxFile.sys (CA)
DRV - (KmxFw [System | Running]) -- C:\WINDOWS\System32\DRIVERS\kmxfw.sys (CA)
DRV - (KmxSbx [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\KmxSbx.sys (CA)
DRV - (KmxStart [Boot | Running]) -- C:\WINDOWS\System32\DRIVERS\kmxstart.sys (CA)
DRV - (LVcKap [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\LVcKap.sys (Logitech Inc.)
DRV - (LVMVDrv [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\LVMVDrv.sys (Logitech Inc.)
DRV - (LVPr2Mon [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\LVPr2Mon.sys ()
DRV - (LVUSBSta [On_Demand | Stopped]) -- C:\WINDOWS\System32\drivers\LVUSBSta.sys (Logitech Inc.)
DRV - (mdmxsdk [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\ACFSDK32.sys (Conexant)
DRV - (MODEMCSA [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\MODEMCSA.sys (Microsoft Corporation)
DRV - (mraid35x [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys (American Megatrends Inc.)
DRV - (nv [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (oreans32 [System | Running]) -- C:\WINDOWS\System32\drivers\oreans32.sys ()
DRV - (Packet [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\packet.sys (SingleClick Systems)
DRV - (PalmUSBD [On_Demand | Stopped]) -- C:\WINDOWS\System32\drivers\PalmUSBD.sys (PalmSource, Inc.)
DRV - (PID_0928 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\LV561AV.SYS (Logitech Inc.)
DRV - (pmxmouse [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\pmxmouse.sys (Primax Electronics Ltd.)
DRV - (pmxusblf [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\pmxusblf.sys (Primax Electronics Ltd.)
DRV - (Ptilink [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (ql1080 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ql1080.sys (QLogic Corporation)
DRV - (ql12160 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ql12160.sys (QLogic Corporation)
DRV - (ql1280 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ql1280.sys (QLogic Corporation)
DRV - (RT73 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\rt73.sys (Ralink Technology, Corp.)
DRV - (Secdrv [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (sisagp [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)
DRV - (Sparrow [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\sparrow.sys (Adaptec, Inc.)
DRV - (symc810 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\symc810.sys (Symbios Logic Inc.)
DRV - (symc8xx [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys (LSI Logic)
DRV - (sym_hi [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys (LSI Logic)
DRV - (sym_u3 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys (LSI Logic)
DRV - (ultra [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ultra.sys (Promise Technology, Inc.)
DRV - (USBAAPL [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\usbaapl.sys (Apple, Inc.)
DRV - (usbaudio [On_Demand | Stopped]) -- C:\WINDOWS\System32\drivers\usbaudio.sys (Microsoft Corporation)
DRV - (usbser [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\usbser.sys (Microsoft Corporation)
DRV - (VET-FILT [System | Running]) -- C:\WINDOWS\System32\drivers\vet-filt.sys (Computer Associates International, Inc.)
DRV - (VET-REC [System | Running]) -- C:\WINDOWS\System32\drivers\vet-rec.sys (Computer Associates International, Inc.)
DRV - (VETEBOOT [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\veteboot.sys (Computer Associates International, Inc.)
DRV - (VETEFILE [System | Running]) -- C:\WINDOWS\System32\drivers\vetefile.sys (Computer Associates International, Inc.)
DRV - (VETFDDNT [System | Running]) -- C:\WINDOWS\System32\drivers\vetfddnt.sys (Computer Associates International, Inc.)
DRV - (VETMONNT [System | Running]) -- C:\WINDOWS\System32\drivers\vetmonnt.sys (Computer Associates International, Inc.)
DRV - (wanatw [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\wanatw4.sys (America Online, Inc.)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch =
http://us.rd.yahoo.com/customize/ie/def ... earch.htmlIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=1080410
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=1080410
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=1080410
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=1080410
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=1080410
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=1080410
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = partnerpage.google.com/smallbiz.dell.com/en_us?hl=en&client=dell-usuk&channel=us-smb&ibd=1080410
IE - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://us.rd.yahoo.com/customize/ie/def ... .yahoo.comIE - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search
IE - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
IE - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.comcast.net?cid=081109IE - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\S-1-5-21-1353083518-896759782-4230620695-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\S-1-5-21-1353083518-896759782-4230620695-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.search.selectedEngine: "Comcast Search"
FF - prefs.js..browser.startup.homepage: "http://www.comcast.net?cid=081109"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.1
FF - prefs.js..extensions.enabledItems:
bibletoolbar@bibletoolbar.net:3.5.0
FF - prefs.js..extensions.enabledItems: {4E77EDAD-9566-4089-88D1-C81498CEE770}:3.0
FF - prefs.js..extensions.enabledItems: {9AA46F4F-4DC7-4c06-97AF-5035170634FE}:3.2.8
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}:6.0.10
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
lazarus@interclue.com:2.0.4
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:0.0.0
FF - prefs.js..extensions.enabledItems:
moveplayer@movenetworks.com:7
FF - prefs.js..extensions.enabledItems: {35106bca-6c78-48c7-ac28-56df30b51d2c}:0.6.3
FF - prefs.js..extensions.enabledItems:
smarterwiki@wikiatic.com:2.1.4
FF - prefs.js..extensions.enabledItems:
browserhighlighter@ebay.com:1.0.13966
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.3
FF - HKLM\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2008/12/01 08:16:07 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/09/02 03:00:37 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/09/10 12:12:09 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/09/10 12:12:09 | 00,000,000 | ---D | M]
[2008/11/19 15:38:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Extensions
[2008/11/19 15:38:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/10/04 12:36:15 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions
[2009/08/29 11:46:17 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\{35106bca-6c78-48c7-ac28-56df30b51d2c}
[2009/09/01 14:59:35 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\{4E77EDAD-9566-4089-88D1-C81498CEE770}
[2009/02/20 18:42:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2009/08/29 11:46:12 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}
[2009/08/29 11:35:19 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2009/06/29 10:36:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\bibletoolbar@bibletoolbar.net
[2009/08/29 11:48:32 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\lazarus@interclue.com
[2009/03/25 07:27:19 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\multtoolbar@multiply.com
[2009/09/07 10:04:36 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Sabrina\Application Data\mozilla\Firefox\Profiles\b990ar9z.default\extensions\smarterwiki@wikiatic.com
[2009/10/04 12:36:15 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/09/10 06:47:41 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2008/12/01 08:16:31 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}
[2009/10/04 12:26:31 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\browserhighlighter@ebay.com
[2009/09/10 06:47:27 | 00,023,544 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/09/10 06:47:27 | 00,137,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2008/06/18 01:43:04 | 00,086,016 | ---- | M] (Coupons, Inc.) -- C:\Program Files\mozilla firefox\plugins\npCouponPrinter.dll
[2008/12/01 08:16:07 | 00,410,976 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeploytk.dll
[2009/09/10 06:47:30 | 00,065,016 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll
[2006/10/26 21:12:16 | 00,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL
[2008/10/14 22:33:30 | 00,095,600 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll
[2009/09/10 12:12:08 | 00,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll
[2009/09/10 12:12:08 | 00,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll
[2009/09/10 12:12:08 | 00,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll
[2009/09/10 12:12:08 | 00,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll
[2009/09/10 12:12:08 | 00,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll
[2009/09/10 12:12:09 | 00,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll
[2009/09/10 12:12:09 | 00,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll
[2009/08/28 22:03:04 | 00,001,394 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom.xml
[2009/08/28 22:03:04 | 00,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml
[2008/12/01 11:50:26 | 00,004,946 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\comcast.xml
[2009/08/28 22:03:04 | 00,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml
[2009/08/28 22:03:04 | 00,002,344 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay.xml
[2009/08/28 22:03:04 | 00,002,371 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2009/08/28 22:03:04 | 00,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
[2009/08/28 22:03:04 | 00,000,792 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo.xml
O1 HOSTS File: (734 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Comcast Toolbar) - {79CEEA4E-C231-4614-9E3B-53B2A02F39B7} - C:\Program Files\comcasttb\comcastdx.dll ()
O2 - BHO: (Multiply Toolbar) - {A057A204-BACC-4D26-C4DC-6BA49CE16884} - C:\Program Files\multiply\multiply.dll ( )
O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll (Dell Inc.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Comcast Toolbar) - {79CEEA4E-C231-4614-9E3B-53B2A02F39B7} - C:\Program Files\comcasttb\comcastdx.dll ()
O3 - HKLM\..\Toolbar: (Multiply Toolbar) - {A057A204-BACC-4D26-C4DC-6BA49CE16884} - C:\Program Files\multiply\multiply.dll ( )
O3 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\..\Toolbar\WebBrowser: (Multiply Toolbar) - {A057A204-BACC-4D26-C4DC-6BA49CE16884} - C:\Program Files\multiply\multiply.dll ( )
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [cafwc] C:\Program Files\CA\CA Internet Security Suite\CA Personal Firewall\cafw.exe (CA, Inc.)
O4 - HKLM..\Run: [capfasem] C:\Program Files\CA\CA Internet Security Suite\CA Personal Firewall\capfasem.exe (CA, Inc.)
O4 - HKLM..\Run: [capfupgrade] C:\Program Files\CA\CA Internet Security Suite\CA Personal Firewall\capfupgrade.exe (CA, Inc.)
O4 - HKLM..\Run: [CAVRID] C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\CAVRID.exe (CA, Inc.)
O4 - HKLM..\Run: [cctray] C:\Program Files\CA\CA Internet Security Suite\cctray\cctray.exe (CA, Inc.)
O4 - HKLM..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe ( )
O4 - HKLM..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe ( )
O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
O4 - HKLM..\Run: [HostManager] C:\Program Files\Common Files\AOL\1213927109\ee\AOLSoftware.exe (AOL LLC)
O4 - HKLM..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [LogitechCommunicationsManager] C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe ()
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\QuickCam\Quickcam.exe ()
O4 - HKLM..\Run: [PDVDDXSrv] C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe (CyberLink Corp.)
O4 - HKLM..\Run: [Persistence] C:\WINDOWS\System32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [PMX Daemon] C:\WINDOWS\System32\ICO.EXE (Primax Electronics Ltd.)
O4 - HKLM..\Run: [QOELOADER] C:\Program Files\CA\CA Internet Security Suite\CA Anti-Spam\QSP-5.1.18.0\QOELoader.exe (CA)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Inc.)
O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [S4F] C:\Program Files\S4F\Filter7.exe (S4F, Inc.)
O4 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006..\Run: [AOL Fast Start] C:\Program Files\AOL 9.0\AOL.EXE (AOL, LLC.)
O4 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006..\Run: [ComcastAntispyClient] C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntispy.exe ()
O4 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006..\Run: [MSMSGS] C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006..\Run: [Skype] C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
O4 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006..\Run: [UVC] C:\Program Files\UVC\UVC.exe (Universal Village Corp)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Dell Network Assistant.lnk = C:\WINDOWS\Installer\{0240BDFB-2995-4A3F-8C96-18D41282B716}\Icon0240BDFB3.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HotSync Manager.lnk = C:\Program Files\Palm\Hotsync.exe (PalmSource, Inc)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.)
O4 - Startup: C:\Documents and Settings\Sabrina\Start Menu\Programs\Startup\Multiply AutoUploader.lnk = C:\Program Files\multiply\AutoUploader\Multiply AutoUploader\Multiply AutoUploader.exe ()
O4 - Startup: C:\Documents and Settings\Sabrina\Start Menu\Programs\Startup\Password Safe.lnk = C:\Program Files\Password Safe\pwsafe.exe (SourceForge.net)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\System32\wins4f.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\WINDOWS\System32\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\System32\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\WINDOWS\System32\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\WINDOWS\System32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\WINDOWS\System32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\WINDOWS\System32\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000039 - C:\WINDOWS\System32\wins4f.dll ()
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKU\S-1-5-21-1353083518-896759782-4230620695-1006\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83}
http://upload.facebook.com/controls/200 ... oader5.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0}
http://photo2.walgreens.com/WalgreensActivia.cab (Snapfish Activia)
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741}
http://static.slide.com/uploader/SlideImageUploader.cab (Slide Image Uploader Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_10)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_06)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_10)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_10)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}
https://imedicaeducation.webex.com/clie ... eatgpc.cab (GpcContainer Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\intu-help-qb1 {9B0F96C7-2E4B-433e-ABF3-043BA1B54AE3} - C:\Program Files\Intuit\QuickBooks 2008\HelpAsyncPluggableProtocol.dll (TODO: <Company name>)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Filter: - text/xml - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\PFW: DllName - UmxWnp.Dll - C:\WINDOWS\System32\UmxWnp.Dll (CA)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/10 13:04:08 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2009/03/25 07:36:04 | 01,109,661 | ---- | M] () - C:\AutoUploader.air -- [ NTFS ]
O33 - MountPoints2\{0d6f433a-d542-11dd-9649-00038a000015}\Shell\AutoRun\command - "" = F:\rcaeasyrip_setup.exe -- File not found
O33 - MountPoints2\{0d6f433a-d542-11dd-9649-00038a000015}\Shell\install\command - "" = F:\rcaeasyrip_setup.exe -- File not found
O33 - MountPoints2\{0d6f433a-d542-11dd-9649-00038a000015}\Shell\usermanualEnglish\command - "" = F:\rcaeasyrip_setup.exe -- File not found
O33 - MountPoints2\{0d6f433a-d542-11dd-9649-00038a000015}\Shell\usermanualFrench\command - "" = F:\rcaeasyrip_setup.exe -- File not found
O33 - MountPoints2\{0d6f433a-d542-11dd-9649-00038a000015}\Shell\usermanualSpanish\command - "" = F:\rcaeasyrip_setup.exe -- File not found
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\autorun.exe -- File not found
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found
========== Files/Folders - Created Within 30 Days ========== [2009/09/10 12:21:53 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/10/03 08:22:16 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Sabrina\Application Data\UVC
[2009/09/10 12:22:10 | 00,000,000 | ---D | C] -- C:\Program Files\iPod
[2009/09/10 12:21:53 | 00,000,000 | ---D | C] -- C:\Program Files\iTunes
[2009/09/10 12:11:27 | 00,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2009/09/22 11:53:48 | 00,000,000 | ---D | C] -- C:\Program Files\S4F
[2009/09/22 14:09:42 | 00,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2009/10/02 11:43:19 | 00,000,000 | ---D | C] -- C:\Program Files\UVC
[2009/10/02 11:42:51 | 14,286,576 | ---- | C] (Universal Village Corp ) -- C:\UVC_Setup.exe
[2009/10/01 12:33:08 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Sabrina\My Documents\Meyer,Nathan
[2009/09/23 11:27:55 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Sabrina\My Documents\frazierdates
[2009/09/22 11:53:09 | 00,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sporder.dll
[2009/09/20 16:38:30 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Sabrina\Desktop\s & d
[2009/09/16 16:19:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Sabrina\My Documents\Downloads
[2009/09/10 12:10:15 | 00,000,000 | -HSD | C] -- C:\Config.Msi
[2009/09/10 12:07:12 | 02,065,696 | ---- | C] (Apple, Inc.) -- C:\WINDOWS\System32\usbaaplrc.dll
[2009/09/09 17:13:22 | 00,153,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\triedit.dll
[2009/09/05 01:54:48 | 00,094,208 | ---- | C] (Apple Inc.) -- C:\WINDOWS\System32\QuickTimeVR.qtx
[2009/09/05 01:54:48 | 00,069,632 | ---- | C] (Apple Inc.) -- C:\WINDOWS\System32\QuickTime.qts
========== Files - Modified Within 30 Days ========== [2 C:\WINDOWS\System32\*.tmp files]
[6 C:\WINDOWS\*.tmp files]
[2009/10/04 14:06:16 | 00,000,888 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2009/10/04 11:06:04 | 00,000,884 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2009/10/03 10:03:18 | 00,000,657 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/10/03 10:02:39 | 00,000,974 | ---- | M] () -- C:\Documents and Settings\Sabrina\Start Menu\Programs\Startup\Multiply AutoUploader.lnk
[2009/10/03 10:01:24 | 00,002,333 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Dell Network Assistant.lnk
[2009/10/03 10:00:34 | 00,013,668 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/10/03 09:54:48 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/10/03 09:54:42 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/10/03 09:54:40 | 10,623,87712 | -HS- | M] () -- C:\hiberfil.sys
[2009/10/02 17:10:36 | 00,281,582 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmxcfg.u2k0
[2009/10/02 17:10:36 | 00,000,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmxcfg.u2k7
[2009/10/02 17:10:36 | 00,000,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmxcfg.u2k6
[2009/10/02 17:10:36 | 00,000,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmxcfg.u2k5
[2009/10/02 17:10:36 | 00,000,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmxcfg.u2k4
[2009/10/02 17:10:36 | 00,000,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmxcfg.u2k3
[2009/10/02 17:10:36 | 00,000,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmxcfg.u2k2
[2009/10/02 17:10:36 | 00,000,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmxcfg.u2k1
[2009/10/02 16:49:23 | 00,002,411 | ---- | M] () -- C:\Documents and Settings\Sabrina\Desktop\EasyPrint.lnk
[2009/10/02 11:44:33 | 00,000,443 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\UVC.lnk
[2009/10/02 11:43:14 | 14,286,576 | ---- | M] (Universal Village Corp ) -- C:\UVC_Setup.exe
[2009/10/01 18:10:20 | 00,014,911 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Website Flow Chart.docx
[2009/10/01 17:13:05 | 00,010,623 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Website Design Letter.docx
[2009/10/01 13:15:11 | 00,370,688 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\BillingSheet9_18_09.doc
[2009/10/01 13:14:28 | 00,160,768 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Meeks,Christopher.doc
[2009/10/01 13:00:34 | 00,046,592 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Frazier Family Dates to Remember 2009.xls
[2009/10/01 12:43:53 | 00,069,632 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Billingsheet9_30_09.doc
[2009/10/01 12:33:06 | 00,040,978 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Meyer,Nathan.zip
[2009/10/01 12:03:09 | 00,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2009/09/30 16:25:56 | 00,027,136 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Hill,DylanCCinfo.doc
[2009/09/29 10:20:47 | 03,578,310 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Medicaid Billing Book.pdf
[2009/09/29 09:31:36 | 00,000,105 | ---- | M] () -- C:\Documents and Settings\Sabrina\Desktop\MHNet Eclaims.URL
[2009/09/25 16:44:45 | 00,009,438 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\3752450_090925_198314686.pdf
[2009/09/24 23:03:49 | 00,114,277 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\tiffany dss fax.pdf
[2009/09/24 18:31:43 | 00,021,655 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\FrazierContactInfo.pdf
[2009/09/24 18:05:03 | 00,013,526 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\FrazierAnniversaries.zip
[2009/09/24 17:18:08 | 00,114,277 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\letter tiffany.pdf
[2009/09/24 16:01:38 | 00,016,593 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\9-25CashFlow2.pdf
[2009/09/24 15:37:06 | 00,016,615 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\9-25CashFlow.pdf
[2009/09/24 14:41:20 | 00,718,073 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\ecoup_S525.pdf
[2009/09/24 11:16:28 | 10,624,16384 | ---- | M] () -- C:\WINDOWS\MEMORY.DMP
[2009/09/23 18:00:45 | 00,016,635 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\9-18CashFlow.pdf
[2009/09/23 11:27:54 | 00,010,062 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\frazierdates.zip
[2009/09/22 22:05:59 | 00,039,936 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\ss_Ministry_-_BreakfastCalendar_beginning_September_2009.doc
[2009/09/22 14:09:43 | 00,001,734 | ---- | M] () -- C:\Documents and Settings\Sabrina\Desktop\HijackThis.lnk
[2009/09/22 11:54:04 | 00,000,029 | ---- | M] () -- C:\WINDOWS\System32\UNWISE.INI
[2009/09/20 07:49:31 | 00,074,909 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Books - Charlene Atkins.xlsx
[2009/09/17 12:34:26 | 00,099,328 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Financials - Charlene Atkins.xls
[2009/09/17 08:49:46 | 00,032,256 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\TriWestApprovalLettermay09.doc
[2009/09/12 23:15:35 | 00,011,419 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Farming.xlsx
[2009/09/12 22:06:10 | 00,025,600 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Financials - Tiffany Martin.xls
[2009/09/12 15:42:32 | 00,015,121 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Notes about Medicaid.docx
[2009/09/10 14:36:11 | 00,019,971 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\CrystalReports-StatusReportPortrait.pdf
[2009/09/10 14:13:59 | 00,035,871 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Books - Tiffany Martin.xlsx
[2009/09/10 12:26:21 | 00,001,854 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Safari.lnk
[2009/09/10 12:23:12 | 00,001,804 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2009/09/10 12:11:51 | 00,001,604 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk
[2009/09/10 03:01:37 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009/09/09 15:33:33 | 00,053,223 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\5013197539_090909_194544391.pdf
[2009/09/09 12:34:38 | 00,000,162 | -H-- | M] () -- C:\Documents and Settings\Sabrina\My Documents\~$tes about Medicaid.docx
[2009/09/09 08:34:32 | 00,191,488 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\DylanHill.doc
[2009/09/09 08:34:00 | 00,050,688 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\BillingSheet9_4_09.doc
[2009/09/09 08:32:49 | 00,047,104 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\BrennanHarms.doc
[2009/09/09 08:32:06 | 00,043,520 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\Tiller,Amber.doc
[2009/09/09 08:31:33 | 00,031,232 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\ProgressNotes.doc
[2009/09/08 14:34:40 | 00,407,441 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\section 13.pdf
[2009/09/08 14:03:03 | 00,171,520 | ---- | M] () -- C:\Documents and Settings\Sabrina\My Documents\2009-2010Schedule-Revised(2).doc
[2009/09/05 01:54:48 | 00,094,208 | ---- | M] (Apple Inc.) -- C:\WINDOWS\System32\QuickTimeVR.qtx
[2009/09/05 01:54:48 | 00,069,632 | ---- | M] (Apple Inc.) -- C:\WINDOWS\System32\QuickTime.qts
========== Files - No Company Name ==========[2009/10/02 11:44:33 | 00,000,443 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\UVC.lnk
[2009/10/01 17:13:05 | 00,010,623 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Website Design Letter.docx
[2009/10/01 16:53:54 | 00,014,911 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Website Flow Chart.docx
[2009/10/01 13:15:08 | 00,370,688 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\BillingSheet9_18_09.doc
[2009/10/01 13:14:27 | 00,160,768 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Meeks,Christopher.doc
[2009/10/01 12:43:52 | 00,069,632 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Billingsheet9_30_09.doc
[2009/10/01 12:33:05 | 00,040,978 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Meyer,Nathan.zip
[2009/09/30 16:25:55 | 00,027,136 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Hill,DylanCCinfo.doc
[2009/09/29 10:20:47 | 03,578,310 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Medicaid Billing Book.pdf
[2009/09/29 09:31:36 | 00,000,105 | ---- | C] () -- C:\Documents and Settings\Sabrina\Desktop\MHNet Eclaims.URL
[2009/09/25 16:44:45 | 00,009,438 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\3752450_090925_198314686.pdf
[2009/09/24 23:03:48 | 00,114,277 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\tiffany dss fax.pdf
[2009/09/24 18:31:42 | 00,021,655 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\FrazierContactInfo.pdf
[2009/09/24 17:18:07 | 00,114,277 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\letter tiffany.pdf
[2009/09/24 16:01:38 | 00,016,593 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\9-25CashFlow2.pdf
[2009/09/24 15:37:06 | 00,016,615 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\9-25CashFlow.pdf
[2009/09/24 14:41:20 | 00,718,073 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\ecoup_S525.pdf
[2009/09/23 18:00:45 | 00,016,635 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\9-18CashFlow.pdf
[2009/09/23 11:27:54 | 00,010,062 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\frazierdates.zip
[2009/09/22 22:05:58 | 00,039,936 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\ss_Ministry_-_BreakfastCalendar_beginning_September_2009.doc
[2009/09/22 14:09:43 | 00,001,734 | ---- | C] () -- C:\Documents and Settings\Sabrina\Desktop\HijackThis.lnk
[2009/09/22 11:54:04 | 00,000,029 | ---- | C] () -- C:\WINDOWS\System32\UNWISE.INI
[2009/09/22 11:53:49 | 00,118,784 | ---- | C] () -- C:\WINDOWS\System32\wins4f.dll
[2009/09/22 11:53:48 | 00,164,864 | ---- | C] () -- C:\WINDOWS\System32\UNWISE.EXE
[2009/09/17 08:49:44 | 00,032,256 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\TriWestApprovalLettermay09.doc
[2009/09/10 14:36:10 | 00,019,971 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\CrystalReports-StatusReportPortrait.pdf
[2009/09/10 12:23:12 | 00,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2009/09/10 12:11:51 | 00,001,604 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk
[2009/09/09 15:33:32 | 00,053,223 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\5013197539_090909_194544391.pdf
[2009/09/09 12:34:38 | 00,015,121 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Notes about Medicaid.docx
[2009/09/09 12:34:38 | 00,000,162 | -H-- | C] () -- C:\Documents and Settings\Sabrina\My Documents\~$tes about Medicaid.docx
[2009/09/09 08:34:31 | 00,191,488 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\DylanHill.doc
[2009/09/09 08:33:59 | 00,050,688 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\BillingSheet9_4_09.doc
[2009/09/09 08:32:48 | 00,047,104 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\BrennanHarms.doc
[2009/09/09 08:32:05 | 00,043,520 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\Tiller,Amber.doc
[2009/09/09 08:29:56 | 00,031,232 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\ProgressNotes.doc
[2009/09/08 14:34:39 | 00,407,441 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\section 13.pdf
[2009/09/08 14:02:55 | 00,171,520 | ---- | C] () -- C:\Documents and Settings\Sabrina\My Documents\2009-2010Schedule-Revised(2).doc
[2008/09/07 14:18:09 | 00,000,165 | ---- | C] () -- C:\WINDOWS\QUICKEN.INI
[2008/06/19 19:32:18 | 00,000,130 | ---- | C] () -- C:\Documents and Settings\Sabrina\Local Settings\Application Data\fusioncache.dat
[2008/06/05 06:50:39 | 00,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2008/04/27 22:24:10 | 00,000,000 | ---- | C] () -- C:\WINDOWS\QuickInstall.INI
[2008/04/25 09:47:18 | 00,000,419 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2008/04/25 09:47:18 | 00,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2008/04/23 16:21:36 | 00,033,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\oreans32.sys
[2008/04/14 20:04:10 | 00,022,016 | ---- | C] () -- C:\Documents and Settings\Sabrina\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/04/12 20:47:52 | 00,059,500 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini
[2008/04/12 15:47:37 | 05,863,368 | -H-- | C] () -- C:\Documents and Settings\Sabrina\Local Settings\Application Data\IconCache.db
[2008/04/12 15:47:37 | 00,081,104 | ---- | C] () -- C:\Documents and Settings\Sabrina\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2008/04/12 15:47:37 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\Sabrina\Application Data\desktop.ini
[2008/04/09 22:13:25 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2008/04/09 22:10:58 | 00,000,859 | ---- | C] () -- C:\WINDOWS\{0240BDFB-2995-4A3F-8C96-18D41282B716}_WiseFW.ini
[2008/04/09 22:07:58 | 00,131,070 | ---- | C] () -- C:\WINDOWS\System32\DellPM.ini
[2008/04/09 21:51:06 | 00,204,800 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4820.dll
[2008/04/09 21:49:39 | 00,001,032 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2007/10/11 18:59:24 | 00,025,624 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVPr2Mon.sys
[2004/08/10 13:12:05 | 00,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2004/08/10 13:01:18 | 00,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2004/08/10 12:57:41 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\desktop.ini
[2004/08/10 12:51:28 | 00,000,657 | ---- | C] () -- C:\WINDOWS\win.ini
[2004/08/10 12:51:26 | 00,000,231 | ---- | C] () -- C:\WINDOWS\system.ini
========== Alternate Data Streams ========== @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:62E2D794
< End of report >