Second log....
OTL logfile created on: 9/16/2010 3:42:13 PM - Run 2
OTL by OldTimer - Version 3.2.12.1 Folder = C:\Documents and Settings\Owner\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.11)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
503.00 Mb Total Physical Memory | 162.00 Mb Available Physical Memory | 32.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 57.00% Paging File free
Paging file location(s): C:\pagefile.sys 756 1512 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.47 Gb Total Space | 5.09 Gb Free Space | 6.84% Space Free | Partition Type: NTFS
Drive D: | 288.27 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
Drive F: | 76.65 Gb Total Space | 51.68 Gb Free Space | 67.42% Space Free | Partition Type: NTFS
Drive G: | 3.68 Gb Total Space | 3.64 Gb Free Space | 98.94% Space Free | Partition Type: FAT
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OURCOMPUTER
Current User Name: Owner
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ========== PRC - [2010/09/16 15:20:10 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe
PRC - [2010/06/24 22:32:44 | 001,193,848 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
PRC - [2010/04/27 17:16:24 | 000,188,136 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
PRC - [2010/04/27 17:16:24 | 000,141,792 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
PRC - [2010/04/14 12:29:58 | 000,170,144 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
PRC - [2010/03/10 10:14:44 | 000,271,480 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
PRC - [2010/01/15 08:49:20 | 000,255,536 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
PRC - [2009/09/29 10:17:50 | 000,013,088 | ---- | M] (Intuit Inc.) -- C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
PRC - [2009/03/13 14:23:54 | 000,185,896 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2009/02/11 11:06:36 | 000,210,216 | ---- | M] () -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/01/11 11:31:12 | 001,064,960 | ---- | M] () -- C:\Program Files\TrueSwitchAT&TYahoo\TrueWizard.exe
PRC - [2007/10/01 16:56:26 | 000,061,440 | ---- | M] (2Wire) -- C:\Program Files\2Wire Wireless Manager\2Wire.exe
PRC - [2007/02/15 11:24:48 | 005,646,848 | ---- | M] (Linksys) -- C:\Program Files\Linksys\WUSB54GSC\WUSB54GSC.exe
PRC - [2006/12/22 07:31:50 | 000,108,712 | ---- | M] () -- C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
PRC - [2006/12/22 07:31:38 | 005,044,392 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoDownloader.exe
PRC - [2006/12/22 07:29:56 | 000,067,752 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Photoshop Elements 5.0\apdproxy.exe
PRC - [2006/03/30 10:15:44 | 000,096,341 | ---- | M] (Canon Inc.) -- C:\Program Files\Canon\CAL\CALMAIN.exe
PRC - [2005/07/04 16:46:04 | 000,053,307 | ---- | M] (GEMTEKS) -- C:\Program Files\Linksys\WUSB54GSC\WLService.exe
PRC - [2004/10/14 15:42:54 | 001,404,928 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe
========== Modules (SafeList) ========== MOD - [2010/09/16 15:20:10 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe
MOD - [2009/02/11 11:06:38 | 000,014,032 | ---- | M] () -- C:\Program Files\McAfee\SiteAdvisor\sahook.dll
MOD - [2008/04/13 20:12:08 | 000,200,192 | ---- | M] () -- C:\WINDOWS\aguxexex.dll
MOD - [2008/04/13 20:12:02 | 000,713,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\opengl32.dll
MOD - [2008/04/13 20:11:54 | 000,122,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\glu32.dll
MOD - [2008/04/13 20:11:51 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ddraw.dll
MOD - [2008/04/13 20:11:51 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dciman32.dll
MOD - [2008/04/13 20:10:20 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
========== Win32 Services (SafeList) ========== SRV - File not found [Auto | Running] -- C:\Program Files\Linksys\WUSB54GSC\WLService.exe WUSB54GSC.exe -- (WUSB54GSC)
SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010/04/27 17:16:24 | 000,188,136 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe -- (mfefire)
SRV - [2010/04/27 17:16:24 | 000,141,792 | ---- | M] (McAfee, Inc.) [Unknown | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe -- (mfevtp)
SRV - [2010/04/15 09:45:10 | 000,364,216 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV - [2010/04/14 12:29:58 | 000,170,144 | ---- | M] () [Unknown | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe -- (McShield)
SRV - [2010/03/10 10:14:44 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McProxy)
SRV - [2010/03/10 10:14:44 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNASvc)
SRV - [2010/03/10 10:14:44 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV - [2010/03/10 10:14:44 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (mcmscsvc)
SRV - [2010/03/10 10:14:44 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV - [2010/01/15 08:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
SRV - [2009/09/29 10:17:50 | 000,013,088 | ---- | M] (Intuit Inc.) [Auto | Running] -- C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe -- (IntuitUpdateService)
SRV - [2009/06/26 11:19:12 | 001,124,848 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe -- (RoxMediaDB10)
SRV - [2009/02/11 11:06:36 | 000,210,216 | ---- | M] () [Auto | Running] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2006/12/22 07:31:50 | 000,108,712 | ---- | M] () [Auto | Running] -- C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor5.0)
SRV - [2006/03/30 10:15:44 | 000,096,341 | ---- | M] (Canon Inc.) [Auto | Running] -- C:\Program Files\Canon\CAL\CALMAIN.exe -- (CCALib8)
SRV - [2005/10/06 19:12:30 | 000,855,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Media Connect 2\wmccds.exe -- (WMConnectCDS)
========== Driver Services (SafeList) ========== DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\usbaapl.sys -- (USBAAPL)
DRV - [2010/06/24 07:26:10 | 000,186,592 | ---- | M] (Jungo) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\windrvr6.sys -- (WinDriver6)
DRV - [2010/04/27 17:16:24 | 000,385,880 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2010/04/27 17:16:24 | 000,312,616 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfefirek.sys -- (mfefirek)
DRV - [2010/04/27 17:16:24 | 000,152,320 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk)
DRV - [2010/04/27 17:16:24 | 000,095,568 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfeapfk.sys -- (mfeapfk)
DRV - [2010/04/27 17:16:24 | 000,088,480 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfendisk.sys -- (mfendiskmp)
DRV - [2010/04/27 17:16:24 | 000,088,480 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfendisk.sys -- (mfendisk)
DRV - [2010/04/27 17:16:24 | 000,083,496 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mferkdet.sys -- (mferkdet)
DRV - [2010/04/27 17:16:24 | 000,082,952 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\mfetdi2k.sys -- (mfetdi2k)
DRV - [2010/04/27 17:16:24 | 000,055,456 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\cfwids.sys -- (cfwids)
DRV - [2010/04/27 17:16:24 | 000,051,688 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk)
DRV - [2009/09/16 10:22:48 | 000,040,552 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfesmfk.sys -- (mfesmfk)
DRV - [2009/09/16 10:22:14 | 000,034,248 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mferkdk.sys -- (mferkdk)
DRV - [2009/06/26 10:27:40 | 000,057,328 | ---- | M] (Sonic Solutions) [File_System | Disabled | Stopped] -- C:\WINDOWS\system32\drivers\RxFilter.sys -- (RxFilter)
DRV - [2008/04/13 14:56:49 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usb8023.sys -- (USB_RNDIS)
DRV - [2007/10/01 16:20:40 | 000,032,160 | ---- | M] (PCTEL Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\PCTINDIS5.sys -- (PCTINDIS5)
DRV - [2006/08/24 13:44:14 | 000,477,696 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ZD1211BU.sys -- (ZD1211BU(ZyDAS)) ZyDAS ZD1211B IEEE 802.11 b+g Wireless LAN Driver (USB)(ZyDAS)
DRV - [2006/03/10 15:55:18 | 000,039,424 | ---- | M] (National Instruments Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\fantom.sys -- (FANTOM)
DRV - [2005/10/07 14:46:08 | 000,024,447 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8150.SYS -- (USB-100)
DRV - [2005/01/07 18:05:28 | 000,147,328 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\rt2500usb.sys -- (RT2500USB)
DRV - [2004/09/17 10:02:54 | 000,732,928 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt)
DRV - [2003/09/25 23:15:32 | 000,015,872 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\GTNDIS5.sys -- (GTNDIS5)
DRV - [2003/08/29 05:59:24 | 001,101,696 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BCMSM.sys -- (BCMModem)
DRV - [2001/08/22 09:42:58 | 000,013,632 | ---- | M] (Dell Computer Corporation) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS -- (OMCI)
DRV - [2001/08/17 09:57:38 | 000,016,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MODEMCSA.sys -- (MODEMCSA)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:6092
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:6092
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-861567501-1060284298-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://att.my.yahoo.com/IE - HKU\S-1-5-21-861567501-1060284298-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-861567501-1060284298-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-21-861567501-1060284298-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:6092
========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.defaulturl: "http://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q="
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Program Files\Real\RealPlayer\browserrecord [2009/03/13 14:25:03 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2010/03/02 21:11:05 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{7B9CF1D2-320D-4092-9919-402A36FB0407}: C:\Documents and Settings\Owner\Local Settings\Application Data\{7B9CF1D2-320D-4092-9919-402A36FB0407} [2010/09/11 07:52:15 | 000,000,000 | ---D | M]
[2009/08/26 10:04:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\sy2lae92.default\extensions
[2009/08/26 09:53:34 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\sy2lae92.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2007/12/29 21:26:33 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\sy2lae92.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2009/07/06 15:46:10 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\sy2lae92.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2010/08/31 15:04:21 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009/04/25 16:34:20 | 000,000,000 | ---D | M] (XUL Cache) -- C:\Program Files\Mozilla Firefox\extensions\{A86CDEA6-8CC5-420B-8862-6EA595EAC835}
[2010/04/27 17:16:24 | 000,024,376 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Mozilla Firefox\components\Scriptff.dll
O1 HOSTS File: ([2009/05/04 07:51:44 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20100518173947.dll (McAfee, Inc.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll (Google Inc.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O3 - HKLM\..\Toolbar: (MSN Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - C:\Program Files\MSN\Toolbar\3.0.0988.2\msneshellx.dll (Microsoft Corp.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [2Wire Wireless Manager] C:\Program Files\2Wire Wireless Manager\2Wire.exe (2Wire)
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Elements 5.0\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [boramfcb] C:\Documents and Settings\Owner\Local Settings\Application Data\clybmgyte\ufwbhrcuqiw.exe (Security Suites Corporation)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [Oqecel] C:\WINDOWS\aguxexex.DLL ()
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [UserFaultCheck] File not found
O4 - HKU\S-1-5-21-861567501-1060284298-839522115-1003..\Run: [boramfcb] C:\Documents and Settings\Owner\Local Settings\Application Data\clybmgyte\ufwbhrcuqiw.exe (Security Suites Corporation)
O4 - HKU\S-1-5-21-861567501-1060284298-839522115-1003..\Run: [CrashDump] C:\Documents and Settings\Owner\Application Data\dumpreport.exe File not found
O4 - HKU\S-1-5-21-861567501-1060284298-839522115-1003..\Run: [MoneyAgent] C:\Program Files\Microsoft Money\System\mnyexpr.exe File not found
O4 - HKU\S-1-5-21-861567501-1060284298-839522115-1003..\Run: [sqfkbgni] C:\Documents and Settings\Owner\Local Settings\Application Data\caubjqher\rqowhbutssd.exe File not found
O4 - HKU\S-1-5-21-861567501-1060284298-839522115-1003..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKU\S-1-5-21-861567501-1060284298-839522115-1003..\Run: [system tool] C:\WINDOWS\sysguard.exe File not found
O4 - HKU\S-1-5-21-861567501-1060284298-839522115-1003..\Run: [Wcexecofezipahal] C:\WINDOWS\ksahotst.DLL ()
O4 - HKLM..\RunOnceEx: [ContentMerger] C:\Program Files\Common Files\Roxio Shared\10.0\SharedCom\ContentMerger10.exe (Sonic Solutions)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Owner\Start Menu\Programs\Startup\TrueAssistant.lnk = C:\Program Files\TrueSwitchAT&TYahoo\TrueWizard.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableProfileQuota = 1
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O9 - Extra Button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - File not found
O9 - Extra Button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - File not found
O9 - Extra Button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-21-861567501-1060284298-839522115-1003\..Trusted Domains: intuit.com ([ttlc] https in Trusted sites)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://download.macromedia.com/pub/shoc ... tor/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.microsoft.com/download/ ... ontrol.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\Yinsthelper20073151.dll (Installation Support)
O16 - DPF: {5727FF4C-EF4E-4d96-A96C-03AD91910448}
http://www.srtest.com/srl_bin/sysreqlab_ind.cab (System Requirements Lab Class)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupda ... 3536453671 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftup ... 8528227250 (MUWebControl Class)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968}
http://upload.facebook.com/controls/200 ... ader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/fl ... rashim.cab (Reg Error: Key error.)
O16 - DPF: {A1662FB6-39BE-41BB-ACDC-0448FB1B5817}
http://images3.pnimedia.com/ProductAsse ... ontrol.cab (Photo Upload Plugin Class)
O16 - DPF: {A7EA8AD2-287F-11D3-B120-006008C39542}
http://offers.e-centives.com/cif/downlo ... ctxcab.cab (CBSTIEPrint Class)
O16 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_06)
O16 - DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_12)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_12)
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7}
http://www.adobe.com/products/acrobat/nos/gp.cab (get_atlcom Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload.macromedia.com/get/fl ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: DirectAnimation Java Classes
file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java
file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005/12/02 10:26:11 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [1996/05/23 10:22:08 | 000,000,063 | R--- | M] () - D:\AUTORUN.INF -- [ CDFS ]
O32 - AutoRun File - [2002/09/03 10:59:58 | 000,000,000 | ---- | M] () - F:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010/08/29 17:43:40 | 000,000,000 | ---D | M] - G:\Automatically Add to iTunes -- [ FAT ]
O33 - MountPoints2\{9f3a55d5-6312-11da-b5b0-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{9f3a55d5-6312-11da-b5b0-806d6172696f}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{9f3a55d5-6312-11da-b5b0-806d6172696f}\Shell\AutoRun\command - "" = D:\WIN95\RFPRINCE.EXE -- [1996/07/30 17:09:20 | 000,219,136 | R--- | M] (Media Station, Inc.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/09/16 15:26:40 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe
[2010/09/16 11:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood
[2010/09/13 18:03:45 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010/09/11 07:52:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner\Local Settings\Application Data\{7B9CF1D2-320D-4092-9919-402A36FB0407}
[2010/09/11 07:51:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner\Local Settings\Application Data\clybmgyte
[2010/09/11 07:49:35 | 000,245,248 | ---- | C] (Security Suites Corporation) -- C:\Documents and Settings\Owner\Local Settings\Application Data\942297.exe
[2010/08/31 15:55:20 | 000,029,696 | ---- | C] (Irfan Skiljan, IrfanView) -- C:\Program Files\iv_uninstall.exe
[2010/08/31 15:55:20 | 000,000,000 | ---D | C] -- C:\Program Files\Toolbars
[2010/08/31 15:55:20 | 000,000,000 | ---D | C] -- C:\Program Files\Plugins
[2010/08/31 15:55:20 | 000,000,000 | ---D | C] -- C:\Program Files\Languages
[2010/08/31 15:55:20 | 000,000,000 | ---D | C] -- C:\Program Files\Html
[2010/08/30 11:07:46 | 000,000,000 | ---D | C] -- C:\WINMATH
[2010/08/30 10:35:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\McAfee
[2010/08/26 09:45:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee Security Scan
[2010/08/26 09:45:10 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan
[2006/01/02 20:08:45 | 000,494,080 | ---- | C] (Irfan Skiljan) -- C:\Program Files\I_VIEW32.EXE
[2005/12/29 15:00:42 | 020,921,040 | ---- | C] ( ) -- C:\Program Files\AdbeRdr705_enu_full.exe
[2005/12/29 15:00:21 | 007,050,552 | ---- | C] (Adobe Systems, Inc. ) -- C:\Program Files\psa30se_en_us.exe
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[19 C:\Documents and Settings\Owner\Desktop\*.tmp files -> C:\Documents and Settings\Owner\Desktop\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/09/16 15:42:58 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Owner\Desktop\~$per #2 Chritmas movie viewing.doc
[2010/09/16 15:23:28 | 000,133,632 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\RKUnhookerLE.EXE
[2010/09/16 15:20:10 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe
[2010/09/16 15:17:00 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/09/16 10:57:57 | 000,002,422 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/09/16 10:56:40 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/09/16 10:56:33 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/09/16 10:56:30 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/09/15 16:09:33 | 010,223,616 | -H-- | M] () -- C:\Documents and Settings\Owner\NTUSER.DAT
[2010/09/15 16:09:33 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Owner\ntuser.ini
[2010/09/15 16:06:53 | 000,002,838 | ---- | M] () -- C:\WINDOWS\ukiqaget.dll
[2010/09/15 16:02:44 | 000,002,838 | ---- | M] () -- C:\WINDOWS\omiqiruhakucad.dll
[2010/09/15 15:57:38 | 000,002,838 | ---- | M] () -- C:\WINDOWS\Syeterafiqejiv.dat
[2010/09/15 15:57:38 | 000,002,838 | ---- | M] () -- C:\WINDOWS\epehagiq.dll
[2010/09/15 15:54:44 | 000,111,461 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\Reading biography - Copy.pdf
[2010/09/15 15:53:26 | 000,017,624 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\Reading biography.docx
[2010/09/14 10:03:25 | 000,002,838 | ---- | M] () -- C:\WINDOWS\ajucazuculenela.dll
[2010/09/14 10:03:06 | 000,002,137 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2010/09/14 09:47:44 | 000,002,838 | ---- | M] () -- C:\WINDOWS\akehicek.dll
[2010/09/13 21:05:55 | 000,002,838 | ---- | M] () -- C:\WINDOWS\oliyaqogunewucob.dll
[2010/09/13 19:03:57 | 000,002,838 | ---- | M] () -- C:\WINDOWS\anuribeciduwa.dll
[2010/09/13 19:02:40 | 000,002,447 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\HiJackThis.lnk
[2010/09/13 18:11:01 | 000,002,838 | ---- | M] () -- C:\WINDOWS\ikubaxixoyenevud.dll
[2010/09/13 18:04:24 | 000,002,838 | ---- | M] () -- C:\WINDOWS\olusuzupijaferoc.dll
[2010/09/13 17:55:40 | 000,002,838 | ---- | M] () -- C:\WINDOWS\anaqovabupicer.dll
[2010/09/13 17:43:24 | 001,402,880 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\HiJackThis.msi
[2010/09/13 15:39:16 | 000,002,838 | ---- | M] () -- C:\WINDOWS\asuhukuhox.dll
[2010/09/13 14:52:10 | 000,002,838 | ---- | M] () -- C:\WINDOWS\ekepocita.dll
[2010/09/13 08:12:57 | 000,002,838 | ---- | M] () -- C:\WINDOWS\ubaqasunufuqo.dll
[2010/09/12 21:15:54 | 000,002,838 | ---- | M] () -- C:\WINDOWS\ugatubet.dll
[2010/09/12 19:14:25 | 000,002,838 | ---- | M] () -- C:\WINDOWS\uwixotoyeful.dll
[2010/09/12 17:33:06 | 000,002,838 | ---- | M] () -- C:\WINDOWS\awilivih.dll
[2010/09/11 20:18:23 | 000,002,838 | ---- | M] () -- C:\WINDOWS\azecarez.dll
[2010/09/11 18:16:25 | 000,002,838 | ---- | M] () -- C:\WINDOWS\ocuponamevede.dll
[2010/09/11 16:15:12 | 000,002,838 | ---- | M] () -- C:\WINDOWS\omiduyen.dll
[2010/09/11 15:53:07 | 000,002,838 | ---- | M] () -- C:\WINDOWS\acilaqocu.dll
[2010/09/11 15:36:46 | 000,002,838 | ---- | M] () -- C:\WINDOWS\inicasicuzo.dll
[2010/09/11 13:56:38 | 000,002,838 | ---- | M] () -- C:\WINDOWS\azosadoq.dll
[2010/09/11 11:54:39 | 000,002,838 | ---- | M] () -- C:\WINDOWS\osutoxicedojodoh.dll
[2010/09/11 09:52:42 | 000,002,838 | ---- | M] () -- C:\WINDOWS\omasoqaxa.dll
[2010/09/11 07:52:20 | 000,000,000 | ---- | M] () -- C:\WINDOWS\Philobuzog.bin
[2010/09/11 07:49:36 | 000,245,248 | ---- | M] (Security Suites Corporation) -- C:\Documents and Settings\Owner\Local Settings\Application Data\942297.exe
[2010/09/11 07:49:35 | 000,076,288 | ---- | M] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\942296.exe
[2010/09/09 16:45:13 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/09/08 10:04:27 | 000,150,794 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\Maria_Spelterini_at_Suspension_Bridge.jpg
[2010/08/31 21:37:49 | 000,029,184 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\Bridget Overview.doc
[2010/08/31 21:37:49 | 000,029,184 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\Bridget Overview.doc
[2010/08/31 20:26:24 | 000,000,179 | ---- | M] () -- C:\Program Files\i_view32.ini
[2010/08/31 15:55:25 | 000,001,449 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\IrfanView Thumbnails.lnk
[2010/08/31 15:55:25 | 000,000,589 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\IrfanView.lnk
[2010/08/31 15:55:20 | 000,250,244 | ---- | M] () -- C:\Program Files\i_view32.chm
[2010/08/31 15:55:20 | 000,029,696 | ---- | M] (Irfan Skiljan, IrfanView) -- C:\Program Files\iv_uninstall.exe
[2010/08/31 15:55:17 | 000,494,080 | ---- | M] (Irfan Skiljan) -- C:\Program Files\I_VIEW32.EXE
[2010/08/31 13:44:57 | 000,001,322 | ---- | M] () -- C:\WINDOWS\I_VIEW32.INI
[2010/08/30 21:55:29 | 000,012,093 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkgh.htm
[2010/08/30 21:55:10 | 000,013,840 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmark,mmm.htm
[2010/08/30 21:54:45 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkbnvn.htm
[2010/08/30 21:54:30 | 000,018,987 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkdd.htm
[2010/08/30 21:54:08 | 000,001,979 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkmmmm.htm
[2010/08/30 21:53:46 | 000,015,282 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkmm.htm
[2010/08/30 21:53:21 | 000,000,389 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkcc.htm
[2010/08/30 21:53:05 | 000,001,072 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkl.htm
[2010/08/30 21:52:44 | 000,003,789 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkv.htm
[2010/08/30 21:52:18 | 000,001,368 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmarkc.htm
[2010/08/30 21:37:59 | 000,002,293 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmark5.htm
[2010/08/30 21:37:40 | 000,004,527 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmark4.htm
[2010/08/30 21:37:26 | 000,000,411 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmark3.htm
[2010/08/30 21:37:02 | 000,000,612 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmark2.htm
[2010/08/30 21:36:27 | 000,001,247 | ---- | M] () -- C:\Documents and Settings\Owner\My Documents\bookmark.htm
[2010/08/30 10:33:25 | 000,001,619 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\McAfee Security Scan Plus.lnk
[2010/08/30 10:33:25 | 000,001,611 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
[2010/08/27 16:47:40 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2010/08/26 23:22:11 | 004,812,252 | -H-- | M] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\IconCache.db
[2010/08/25 13:23:27 | 000,138,014 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\2010-07-27-thewalkvert.jpg
[2010/08/24 09:36:17 | 000,031,883 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\Coupon_02051.jpg
[2010/08/19 09:43:32 | 000,040,746 | ---- | M] () -- C:\Documents and Settings\Owner\Desktop\cowbell.jpg
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[19 C:\Documents and Settings\Owner\Desktop\*.tmp files -> C:\Documents and Settings\Owner\Desktop\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/09/16 15:42:58 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Owner\Desktop\~$per #2 Chritmas movie viewing.doc
[2010/09/16 15:28:18 | 000,133,632 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\RKUnhookerLE.EXE
[2010/09/15 16:06:52 | 000,002,838 | ---- | C] () -- C:\WINDOWS\ukiqaget.dll
[2010/09/15 16:03:08 | 000,017,624 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\Reading biography.docx
[2010/09/15 16:03:07 | 000,111,461 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\Reading biography - Copy.pdf
[2010/09/15 16:02:43 | 000,002,838 | ---- | C] () -- C:\WINDOWS\omiqiruhakucad.dll
[2010/09/15 15:57:38 | 000,002,838 | ---- | C] () -- C:\WINDOWS\epehagiq.dll
[2010/09/14 10:03:24 | 000,002,838 | ---- | C] () -- C:\WINDOWS\ajucazuculenela.dll
[2010/09/14 09:47:44 | 000,002,838 | ---- | C] () -- C:\WINDOWS\akehicek.dll
[2010/09/13 21:05:55 | 000,002,838 | ---- | C] () -- C:\WINDOWS\oliyaqogunewucob.dll
[2010/09/13 19:03:56 | 000,002,838 | ---- | C] () -- C:\WINDOWS\anuribeciduwa.dll
[2010/09/13 18:11:01 | 000,002,838 | ---- | C] () -- C:\WINDOWS\ikubaxixoyenevud.dll
[2010/09/13 18:04:23 | 000,002,838 | ---- | C] () -- C:\WINDOWS\olusuzupijaferoc.dll
[2010/09/13 18:03:46 | 000,002,447 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\HiJackThis.lnk
[2010/09/13 17:56:00 | 001,402,880 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\HiJackThis.msi
[2010/09/13 17:55:39 | 000,002,838 | ---- | C] () -- C:\WINDOWS\anaqovabupicer.dll
[2010/09/13 15:39:16 | 000,002,838 | ---- | C] () -- C:\WINDOWS\asuhukuhox.dll
[2010/09/13 14:52:09 | 000,002,838 | ---- | C] () -- C:\WINDOWS\ekepocita.dll
[2010/09/13 08:12:56 | 000,002,838 | ---- | C] () -- C:\WINDOWS\ubaqasunufuqo.dll
[2010/09/12 21:15:54 | 000,002,838 | ---- | C] () -- C:\WINDOWS\ugatubet.dll
[2010/09/12 19:14:23 | 000,002,838 | ---- | C] () -- C:\WINDOWS\uwixotoyeful.dll
[2010/09/12 17:33:01 | 000,002,838 | ---- | C] () -- C:\WINDOWS\awilivih.dll
[2010/09/11 20:18:23 | 000,002,838 | ---- | C] () -- C:\WINDOWS\azecarez.dll
[2010/09/11 18:16:24 | 000,002,838 | ---- | C] () -- C:\WINDOWS\ocuponamevede.dll
[2010/09/11 16:15:12 | 000,002,838 | ---- | C] () -- C:\WINDOWS\omiduyen.dll
[2010/09/11 15:53:07 | 000,002,838 | ---- | C] () -- C:\WINDOWS\acilaqocu.dll
[2010/09/11 15:36:46 | 000,002,838 | ---- | C] () -- C:\WINDOWS\inicasicuzo.dll
[2010/09/11 13:56:37 | 000,002,838 | ---- | C] () -- C:\WINDOWS\azosadoq.dll
[2010/09/11 11:54:38 | 000,002,838 | ---- | C] () -- C:\WINDOWS\osutoxicedojodoh.dll
[2010/09/11 09:52:40 | 000,002,838 | ---- | C] () -- C:\WINDOWS\omasoqaxa.dll
[2010/09/11 07:52:20 | 000,002,838 | ---- | C] () -- C:\WINDOWS\Syeterafiqejiv.dat
[2010/09/11 07:52:20 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Philobuzog.bin
[2010/09/11 07:49:35 | 000,076,288 | ---- | C] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\942296.exe
[2010/09/08 10:04:24 | 000,150,794 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\Maria_Spelterini_at_Suspension_Bridge.jpg
[2010/09/01 15:58:53 | 000,029,184 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\Bridget Overview.doc
[2010/08/31 20:59:30 | 000,029,184 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\Bridget Overview.doc
[2010/08/31 15:55:25 | 000,001,449 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\IrfanView Thumbnails.lnk
[2010/08/31 15:55:25 | 000,000,589 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\IrfanView.lnk
[2010/08/31 15:55:20 | 000,250,244 | ---- | C] () -- C:\Program Files\i_view32.chm
[2010/08/31 15:55:20 | 000,075,069 | ---- | C] () -- C:\Program Files\i_changes.txt
[2010/08/31 15:55:20 | 000,016,362 | ---- | C] () -- C:\Program Files\i_options.txt
[2010/08/31 15:55:20 | 000,012,938 | ---- | C] () -- C:\Program Files\i_plugins.txt
[2010/08/31 15:55:20 | 000,002,417 | ---- | C] () -- C:\Program Files\i_about.txt
[2010/08/31 15:55:20 | 000,000,765 | ---- | C] () -- C:\Program Files\i_languages.txt
[2010/08/31 15:55:20 | 000,000,179 | ---- | C] () -- C:\Program Files\i_view32.ini
[2010/08/31 14:50:50 | 000,101,376 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\more lyrics.doc
[2010/08/30 21:55:28 | 000,012,093 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkgh.htm
[2010/08/30 21:55:10 | 000,013,840 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmark,mmm.htm
[2010/08/30 21:54:45 | 000,001,707 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkbnvn.htm
[2010/08/30 21:54:24 | 000,018,987 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkdd.htm
[2010/08/30 21:54:08 | 000,001,979 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkmmmm.htm
[2010/08/30 21:53:42 | 000,015,282 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkmm.htm
[2010/08/30 21:53:21 | 000,000,389 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkcc.htm
[2010/08/30 21:53:05 | 000,001,072 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkl.htm
[2010/08/30 21:52:44 | 000,003,789 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkv.htm
[2010/08/30 21:52:18 | 000,001,368 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmarkc.htm
[2010/08/30 21:37:59 | 000,002,293 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmark5.htm
[2010/08/30 21:37:40 | 000,004,527 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmark4.htm
[2010/08/30 21:37:26 | 000,000,411 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmark3.htm
[2010/08/30 21:37:02 | 000,000,612 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmark2.htm
[2010/08/30 21:36:27 | 000,001,247 | ---- | C] () -- C:\Documents and Settings\Owner\My Documents\bookmark.htm
[2010/08/30 11:08:21 | 000,037,752 | ---- | C] () -- C:\WINDOWS\System\LFMATH.TTF
[2010/08/27 16:47:37 | 000,001,729 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2010/08/26 09:45:18 | 000,001,619 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\McAfee Security Scan Plus.lnk
[2010/08/26 09:45:18 | 000,001,611 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
[2010/08/25 13:29:23 | 000,138,014 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\2010-07-27-thewalkvert.jpg
[2010/08/24 09:36:36 | 000,031,883 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\Coupon_02051.jpg
[2010/08/19 09:43:54 | 000,040,746 | ---- | C] () -- C:\Documents and Settings\Owner\Desktop\cowbell.jpg
[2009/09/11 11:50:29 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\InsDrvZD.dll
[2009/09/11 11:50:29 | 000,015,872 | ---- | C] () -- C:\WINDOWS\System32\InsDrvZD64.DLL
[2009/05/13 17:08:05 | 000,087,552 | ---- | C] () -- C:\WINDOWS\System32\cpwmon2k.dll
[2009/02/23 17:35:14 | 000,000,026 | ---- | C] () -- C:\WINDOWS\Disney.ini
[2008/12/22 16:11:02 | 000,001,074 | ---- | C] () -- C:\WINDOWS\Gen4.Ini
[2008/12/22 13:54:19 | 000,000,455 | ---- | C] () -- C:\WINDOWS\SIERRA.INI
[2008/10/20 14:04:46 | 000,000,670 | ---- | C] () -- C:\WINDOWS\System32\WLAN.INI
[2008/01/28 20:50:55 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\GTW32N50.dll
[2006/08/17 15:41:42 | 000,000,068 | ---- | C] () -- C:\WINDOWS\TONKA_SR.INI
[2006/07/18 23:18:44 | 000,002,336 | ---- | C] () -- C:\WINDOWS\inty.ini
[2006/07/18 23:18:44 | 000,000,001 | ---- | C] () -- C:\WINDOWS\Inty_Ult.ini
[2006/06/21 13:56:47 | 000,000,519 | ---- | C] () -- C:\WINDOWS\pipeline.ini
[2006/06/21 13:56:45 | 000,000,023 | ---- | C] () -- C:\WINDOWS\Edmark.ini
[2006/06/03 14:45:52 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2006/05/28 16:17:32 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI
[2006/03/26 18:13:09 | 000,001,115 | ---- | C] () -- C:\WINDOWS\hegames.ini
[2006/03/22 14:02:46 | 000,000,279 | ---- | C] () -- C:\WINDOWS\ka.ini
[2006/02/28 15:46:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SETUP32.INI
[2006/01/10 23:36:55 | 000,001,356 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/01/02 23:49:20 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006/01/02 20:07:30 | 000,001,322 | ---- | C] () -- C:\WINDOWS\I_VIEW32.INI
[2005/12/29 15:00:18 | 000,762,512 | ---- | C] () -- C:\Program Files\ytb612_efgsip.exe
[2005/12/29 14:50:00 | 000,003,834 | ---- | C] () -- C:\WINDOWS\cdPlayer.ini
[2005/12/27 12:45:09 | 000,000,052 | ---- | C] () -- C:\WINDOWS\FPRINCE.INI
[2005/12/26 12:53:58 | 000,056,320 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll
[2005/12/11 18:59:12 | 000,008,704 | ---- | C] () -- C:\WINDOWS\System32\CNMVS78.DLL
[2005/12/11 12:16:00 | 000,000,020 | ---- | C] () -- C:\WINDOWS\WinInit.Ini
[2005/12/07 23:40:13 | 000,095,744 | ---- | C] () -- C:\Documents and Settings\Owner\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2002/08/29 08:00:00 | 000,200,192 | ---- | C] () -- C:\WINDOWS\aguxexex.dll
[2002/08/29 08:00:00 | 000,076,288 | ---- | C] () -- C:\WINDOWS\ksahotst.dll
[2002/01/25 08:04:50 | 000,005,440 | ---- | C] () -- C:\WINDOWS\System32\mciwa16.dll
[2002/01/25 08:04:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspsbext.ini
[2002/01/25 08:04:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspfidrv.ini
[2002/01/25 08:04:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspfbase.ini
[2002/01/25 08:04:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspaudrv.ini
[2002/01/25 08:04:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\pspapdrv.ini
[2002/01/25 08:04:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\mciwaw95.ini
[2002/01/25 08:04:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\mcipspwa.ini
[2002/01/25 08:04:50 | 000,000,221 | ---- | C] () -- C:\WINDOWS\System32\mcipspct.ini
[2002/01/25 08:04:50 | 000,000,220 | ---- | C] () -- C:\WINDOWS\System32\pspwave.ini
[2002/01/25 08:04:50 | 000,000,219 | ---- | C] () -- C:\WINDOWS\System32\pspdss.ini
[2002/01/25 08:04:50 | 000,000,219 | ---- | C] () -- C:\WINDOWS\System32\pspddi.ini
========== LOP Check ========== [2009/09/11 11:52:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\2Wire
[2008/11/20 12:07:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Autodesk
[2005/12/11 18:59:15 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2007/03/19 17:51:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\espionServerData
[2006/10/19 15:28:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\QubeSoft
[2010/02/06 11:59:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\The Learning Company
[2009/03/21 16:45:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[2009/11/12 18:34:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/06/01 11:02:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2010/08/25 12:36:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\SACore
[2009/09/11 12:01:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\2Wire
[2010/08/31 15:01:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Amazon
[2008/11/20 12:21:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Autodesk
[2006/01/02 17:26:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Leadertech
[2007/05/26 10:26:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\LEGO Company
[2007/05/29 19:55:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Opera
[2006/03/20 16:22:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Snapfish
[2006/02/28 15:51:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\The Learning Company
[2008/01/17 17:33:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\TrueSwitch
[2009/01/10 10:26:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Owner\Application Data\Unity
========== Purity Check ========== < End of report >