Hi nunped,
The MGA tool ran rather quickly...
Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->
Validation Status: Genuine
Validation Code: 0
Cached Validation Code: N/A
Windows Product Key: *****-*****-MHJBQ-RJGD4-G6Q3Y
Windows Product Key Hash: aiMMrdMBUXqpEBIpz05yiYUbr9s=
Windows Product ID: 76477-OEM-2143112-30656
Windows Product ID Type: 3
Windows License Type: OEM System Builder
Windows OS version: 5.1.2600.2.00010300.3.0.hom
ID: {15C97D30-5A78-41A2-812C-C06CC98D16D7}(3)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: Registered, 1.7.69.2
Signed By: Microsoft
Product Name: N/A
Architecture: N/A
Build lab: N/A
TTS Error: N/A
Validation Diagnostic: 025D1FF3-230-1
Resolution Status: N/A
Vista WgaER Data-->
ThreatID(s): N/A
Version: N/A
Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002
OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002
OGA Data-->
Office Status: 114 Blocked VLK 2
Microsoft Office Professional Edition 2003 - 114 Blocked VLK 2
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: 77F760FE-153-80070002_7E90FEE8-175-80070002_025D1FF3-230-1
Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Prompt
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: Allowed
File Scan Data-->
Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{15C97D30-5A78-41A2-812C-C06CC98D16D7}</UGUID><Version>1.9.0027.0</Version><OS>5.1.2600.2.00010300.3.0.hom</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-G6Q3Y</PKey><PID>76477-OEM-2143112-30656</PID><PIDType>3</PIDType><SID>S-1-5-21-776561741-1060284298-839522115</SID><SYSTEM><Manufacturer>Hewlett-Packard</Manufacturer><Model>HP Pavilion dv6700 Notebook PC </Model></SYSTEM><BIOS><Manufacturer>Hewlett-Packard</Manufacturer><Version>F.53 </Version><SMBIOSVersion major="2" minor="4"/><Date>20080402000000.000000+000</Date></BIOS><HWID>F0EC32AF0184007B</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Eastern Standard Time(GMT-05:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>114</Result><Products><Product GUID="{90110409-6000-11D3-8CFE-0150048383C9}"><LegitResult>114</LegitResult><Name>Microsoft Office Professional Edition 2003</Name><Ver>11</Ver><Val>59D1605114E3500</Val><Hash>vfZmaSmFPIYrLWTcZSZErUQg+Fo=</Hash><Pid>73931-640-0000106-57751</Pid><PidType>14</PidType></Product></Products><Applications><App Id="15" Version="11" Result="114"/><App Id="16" Version="11" Result="114"/><App Id="18" Version="11" Result="114"/><App Id="19" Version="11" Result="114"/><App Id="1A" Version="11" Result="114"/><App Id="1B" Version="11" Result="114"/><App Id="44" Version="11" Result="114"/></Applications></Office></Software></GenuineResults>
Licensing Data-->
N/A
Windows Activation Technologies-->
N/A
HWID Data-->
N/A
OEM Activation 1.0 Data-->
BIOS string matches: yes
Marker string from BIOS: 9984:Compaq Computer Corporation|152EB:Compaq Computer Corporation|152EB:Compaq Computer Corporation|9984:Hewlett-Packard Company|15307:Hewlett-Packard Company
Marker string from OEMBIOS.DAT: N/A, hr = 0x80004005
OEM Activation 2.0 Data-->
N/A
OTL took about 5-10 minutes.
OTL logfile created on: 1/14/2013 7:04:07 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Documents and Settings\Greg\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 1.69 Gb Available Physical Memory | 56.49% Memory free
4.84 Gb Paging File | 3.40 Gb Available in Paging File | 70.23% Paging File free
Paging file location(s): D:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files
Drive C: | 147.36 Gb Total Space | 39.53 Gb Free Space | 26.83% Space Free | Partition Type: NTFS
Drive D: | 138.91 Gb Total Space | 34.06 Gb Free Space | 24.52% Space Free | Partition Type: NTFS
Drive E: | 11.83 Gb Total Space | 2.02 Gb Free Space | 17.12% Space Free | Partition Type: NTFS
Computer Name: GREGSLAPTOP | User Name: Greg | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - [2013/01/14 18:53:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\Greg\Desktop\OTL.exe
PRC - [2012/12/28 18:02:24 | 028,539,392 | ---- | M] (Dropbox, Inc.) -- D:\Documents and Settings\Greg\Application Data\Dropbox\bin\Dropbox.exe
PRC - [2012/12/06 12:04:24 | 000,656,576 | ---- | M] (McAfee, Inc.) -- d:\Program Files\McAfee\SiteAdvisor\saUI.exe
PRC - [2012/12/04 20:15:17 | 001,242,728 | ---- | M] (Google Inc.) -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2012/12/04 10:54:14 | 000,095,232 | ---- | M] (McAfee, Inc.) -- D:\Program Files\McAfee\SiteAdvisor\McSACore.exe
PRC - [2012/10/30 18:50:59 | 004,297,136 | ---- | M] (AVAST Software) -- D:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012/10/30 18:50:59 | 000,044,808 | ---- | M] (AVAST Software) -- D:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012/10/26 12:17:52 | 000,079,384 | ---- | M] (Google) -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe
PRC - [2012/10/02 18:44:51 | 000,161,768 | ---- | M] (Oracle Corporation) -- D:\Program Files\Java\jre7\bin\jqs.exe
PRC - [2012/09/19 21:10:10 | 001,177,536 | R--- | M] (Western Digital ) -- D:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
PRC - [2012/09/19 21:10:06 | 001,157,056 | R--- | M] (Western Digital ) -- D:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe
PRC - [2012/09/19 21:03:58 | 005,236,664 | R--- | M] (Western Digital Technologies, Inc.) -- D:\Program Files\Western Digital\WD Quick View\WDDMStatus.exe
PRC - [2012/09/19 21:02:48 | 000,248,248 | R--- | M] (Western Digital) -- D:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
PRC - [2012/07/03 08:04:58 | 000,507,312 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\Common Files\Java\Java Update\jucheck.exe
PRC - [2011/12/16 12:21:10 | 001,687,968 | R--- | M] (Western Digital) -- D:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe
PRC - [2011/10/07 04:40:42 | 001,387,288 | ---- | M] (Logitech, Inc.) -- D:\Program Files\Logitech\SetPointP\SetPoint.exe
PRC - [2011/09/27 14:05:24 | 000,149,784 | ---- | M] (Logitech, Inc.) -- D:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
PRC - [2011/08/29 16:54:02 | 000,139,264 | ---- | M] () -- D:\Program Files\GE\97769 Dual Scroll Optical Mouse\Amoumain.exe
PRC - [2011/04/15 12:16:06 | 012,149,168 | ---- | M] (Open Text Inc.) -- D:\Program Files\FirstClass\fcc32.exe
PRC - [2010/10/27 19:17:52 | 000,207,424 | ---- | M] (ArcSoft Inc.) -- D:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
PRC - [2010/08/25 10:27:44 | 000,309,824 | ---- | M] (ArcSoft Inc.) -- D:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
PRC - [2010/08/09 07:47:54 | 000,248,832 | ---- | M] (FileHippo.com) -- D:\Program Files\FileHippo.com\UpdateChecker.exe
PRC - [2010/03/18 10:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) -- D:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2009/07/28 07:43:14 | 000,069,632 | ---- | M] () -- D:\Program Files\Scan2PC\Sc2PCSvc.exe
PRC - [2009/05/01 13:35:54 | 000,181,544 | ---- | M] (Seagate Technology LLC) -- D:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe
PRC - [2008/04/13 19:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe
PRC - [2007/07/24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) -- D:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2007/01/04 16:38:18 | 000,112,336 | ---- | M] (Viewpoint Corporation) -- D:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
PRC - [2007/01/04 16:38:08 | 000,024,652 | ---- | M] (Viewpoint Corporation) -- D:\Program Files\Viewpoint\Common\ViewpointService.exe
PRC - [2003/08/29 18:05:35 | 000,360,448 | ---- | M] () -- D:\Program Files\SpywareGuard\sgmain.exe
PRC - [2003/08/29 10:14:56 | 000,233,472 | ---- | M] () -- D:\Program Files\SpywareGuard\sgbhp.exe
========== Modules (No Company Name) ========== MOD - [2013/01/14 14:44:27 | 002,043,392 | ---- | M] () -- D:\Program Files\AVAST Software\Avast\defs\13011402\algo.dll
MOD - [2013/01/14 10:22:34 | 002,043,392 | ---- | M] () -- D:\Program Files\AVAST Software\Avast\defs\13011401\algo.dll
MOD - [2013/01/13 02:49:06 | 002,043,392 | ---- | M] () -- D:\Program Files\AVAST Software\Avast\defs\13011300\algo.dll
MOD - [2013/01/10 20:44:11 | 000,786,944 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\578e2c661908dea0af10151bc199f347\System.EnterpriseServices.ni.dll
MOD - [2013/01/10 20:44:11 | 000,236,032 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\578e2c661908dea0af10151bc199f347\System.EnterpriseServices.Wrapper.dll
MOD - [2013/01/10 20:44:10 | 000,646,656 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Transactions\6e903ce8719e50acd783f8726b11249f\System.Transactions.ni.dll
MOD - [2013/01/10 20:43:55 | 000,011,776 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualC\82601b376b2b5bfcc25e15bb848914d1\Microsoft.VisualC.ni.dll
MOD - [2013/01/10 20:43:04 | 011,817,472 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\33ff7d73f01be8329a95c6e03f1dd555\System.Web.ni.dll
MOD - [2013/01/10 20:41:43 | 001,712,128 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\c8aa45e46a5a90e65984b1a2591c0ca7\Microsoft.VisualBasic.ni.dll
MOD - [2013/01/10 20:41:23 | 000,971,264 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\96b7a0136e9e72e8f4eb0230c20766d2\System.Configuration.ni.dll
MOD - [2013/01/10 20:39:07 | 005,450,752 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\fe025743210c22bea2f009e1612c38bf\System.Xml.ni.dll
MOD - [2013/01/10 20:39:01 | 012,433,920 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\4c91371e83d124ecb39664613e7e0417\System.Windows.Forms.ni.dll
MOD - [2013/01/10 20:38:47 | 001,593,856 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\7782f356a838c403b4a8e9c80df5a577\System.Drawing.ni.dll
MOD - [2013/01/10 20:37:15 | 007,977,984 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\aeac298c43c77d8860db8e7634d9f2eb\System.ni.dll
MOD - [2013/01/10 20:36:51 | 011,492,352 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\eab2340ead8e1a84bdf1a87868659979\mscorlib.ni.dll
MOD - [2013/01/09 21:31:51 | 000,303,104 | ---- | M] () -- D:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
MOD - [2013/01/09 21:26:55 | 006,798,336 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Data\9a75548aa508a2645318308885b3eee0\System.Data.ni.dll
MOD - [2013/01/09 21:26:17 | 005,618,176 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\3d6d9da56c9f607615b55d6742d8427d\System.Xml.ni.dll
MOD - [2013/01/09 21:26:10 | 000,980,480 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\197761bb3230bf9d4f540305dcf6717c\System.Configuration.ni.dll
MOD - [2013/01/09 21:26:07 | 007,053,824 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\a0db56351a1589e44868456609b01737\System.Core.ni.dll
MOD - [2013/01/09 21:25:56 | 009,093,120 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\c182d7a0bd88caf2cddccb7491a5fa6e\System.ni.dll
MOD - [2013/01/09 21:25:46 | 000,145,408 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Numerics\c300c8ca0910bbffb16a244b56be6d05\System.Numerics.ni.dll
MOD - [2013/01/09 21:25:43 | 014,412,800 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\3f95a6d480ed1ebe45cf27b770ba94ed\mscorlib.ni.dll
MOD - [2012/12/04 20:15:15 | 012,456,040 | ---- | M] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\PepperFlash\pepflashplayer.dll
MOD - [2012/12/04 20:15:15 | 000,460,904 | ---- | M] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\ppgooglenaclpluginchrome.dll
MOD - [2012/12/04 20:15:14 | 004,008,040 | ---- | M] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\pdf.dll
MOD - [2012/12/04 20:14:29 | 000,587,880 | ---- | M] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\libglesv2.dll
MOD - [2012/12/04 20:14:28 | 000,124,520 | ---- | M] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\libegl.dll
MOD - [2012/12/04 20:14:21 | 000,157,304 | ---- | M] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\avutil-51.dll
MOD - [2012/12/04 20:14:20 | 000,275,576 | ---- | M] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\avformat-54.dll
MOD - [2012/12/04 20:14:19 | 002,168,952 | ---- | M] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\avcodec-54.dll
MOD - [2011/10/07 04:41:16 | 000,879,896 | ---- | M] () -- D:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll
MOD - [2011/08/29 16:54:02 | 000,139,264 | ---- | M] () -- D:\Program Files\GE\97769 Dual Scroll Optical Mouse\Amoumain.exe
MOD - [2011/06/24 21:56:36 | 000,087,328 | ---- | M] () -- D:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/06/24 21:56:14 | 001,241,888 | ---- | M] () -- D:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2009/07/28 07:43:14 | 000,069,632 | ---- | M] () -- D:\Program Files\Scan2PC\Sc2PCSvc.exe
MOD - [2009/02/13 11:44:56 | 000,071,696 | ---- | M] () -- d:\Program Files\McAfee\SiteAdvisor\mcfrmwk.dll
MOD - [2009/02/13 11:44:52 | 000,207,376 | ---- | M] () -- d:\Program Files\McAfee\SiteAdvisor\cntscan.dll
MOD - [2009/02/13 11:44:52 | 000,117,264 | ---- | M] () -- d:\Program Files\McAfee\SiteAdvisor\apengine.dll
MOD - [2009/01/10 17:15:44 | 000,159,744 | ---- | M] () -- D:\WINDOWS\system32\mmfinfo.dll
MOD - [2009/01/10 17:14:06 | 000,023,552 | ---- | M] () -- D:\WINDOWS\system32\mkunicode.dll
MOD - [2008/04/13 19:11:59 | 000,014,336 | ---- | M] () -- D:\WINDOWS\system32\msdmo.dll
MOD - [2008/04/13 19:11:51 | 000,059,904 | ---- | M] () -- D:\WINDOWS\system32\devenum.dll
MOD - [2004/12/26 19:34:38 | 000,121,344 | ---- | M] () -- D:\Program Files\Program Files\WinRAR\RarExt.dll
MOD - [2003/08/29 18:05:35 | 000,360,448 | ---- | M] () -- D:\Program Files\SpywareGuard\sgmain.exe
MOD - [2003/08/29 10:14:56 | 000,233,472 | ---- | M] () -- D:\Program Files\SpywareGuard\sgbhp.exe
MOD - [2003/08/02 22:20:57 | 000,126,976 | R--- | M] () -- D:\Program Files\SpywareGuard\spywareguard.dll
========== Services (SafeList) ========== SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2013/01/08 21:13:34 | 000,251,400 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- D:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/12/04 10:54:14 | 000,095,232 | ---- | M] (McAfee, Inc.) [Auto | Running] -- D:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2012/12/03 19:39:12 | 000,115,168 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- D:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/10/30 18:50:59 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- D:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2012/10/02 18:44:51 | 000,161,768 | ---- | M] (Oracle Corporation) [Auto | Running] -- D:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2012/09/19 21:10:10 | 001,177,536 | R--- | M] (Western Digital ) [Auto | Running] -- D:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe -- (WDRulesService)
SRV - [2012/09/19 21:10:06 | 001,157,056 | R--- | M] (Western Digital ) [Auto | Running] -- D:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe -- (WDBackup)
SRV - [2012/09/19 21:02:48 | 000,248,248 | R--- | M] (Western Digital) [Auto | Running] -- D:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe -- (WDDriveService)
SRV - [2012/06/07 18:12:14 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- D:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2011/09/27 14:03:28 | 000,295,192 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- D:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2010/03/18 10:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- D:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2009/07/28 07:43:14 | 000,069,632 | ---- | M] () [Auto | Running] -- D:\Program Files\Scan2PC\Sc2PCSvc.exe -- (Scan2PC)
SRV - [2009/05/01 13:35:54 | 000,181,544 | ---- | M] (Seagate Technology LLC) [Auto | Running] -- D:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe -- (FreeAgentGoNext Service)
SRV - [2007/07/24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Running] -- D:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2007/01/04 16:38:08 | 000,024,652 | ---- | M] (Viewpoint Corporation) [Auto | Running] -- D:\Program Files\Viewpoint\Common\ViewpointService.exe -- (Viewpoint Manager Service)
========== Driver Services (SafeList) ========== DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\UIUSYS.SYS -- (UIUSys)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\smserial.sys -- (smserial)
DRV - File not found [Kernel | System | Stopped] -- D:\WINDOWS\system32\drivers\SBREdrv.sys -- (SBRE)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Unknown] -- D:\DOCUME~1\Greg\LOCALS~1\Temp\mbr.sys -- (mbr)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | On_Demand | Stopped] -- D:\Program Files\MediaCoder\SysInfo.sys -- (CrystalSysInfo)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2012/10/30 18:51:58 | 000,738,504 | ---- | M] (AVAST Software) [File_System | System | Running] -- D:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2012/10/30 18:51:58 | 000,361,032 | ---- | M] (AVAST Software) [Kernel | System | Running] -- D:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2012/10/30 18:51:58 | 000,054,232 | ---- | M] (AVAST Software) [Kernel | System | Running] -- D:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2012/10/30 18:51:58 | 000,035,928 | ---- | M] (AVAST Software) [Kernel | System | Running] -- D:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2012/10/30 18:51:57 | 000,097,608 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- D:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2012/10/30 18:51:56 | 000,025,256 | ---- | M] (AVAST Software) [Kernel | System | Running] -- D:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2012/10/30 18:51:56 | 000,021,256 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- D:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011/09/02 01:31:28 | 000,039,192 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2011/09/02 01:31:20 | 000,041,240 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2011/09/02 01:31:10 | 000,042,648 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\LEqdUsb.sys -- (LEqdUsb)
DRV - [2011/09/02 01:31:10 | 000,012,184 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\LHidEqd.sys -- (LHidEqd)
DRV - [2011/09/02 01:30:58 | 000,012,184 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
DRV - [2011/08/29 16:54:02 | 000,011,264 | ---- | M] ((Standard Mouse Types)) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\Amusbprt.sys -- (Amusbprt)
DRV - [2011/08/29 16:54:02 | 000,004,992 | ---- | M] ((Standard Mouse Types)) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\Amfilter.sys -- (Amfilter)
DRV - [2009/11/17 00:46:43 | 000,005,632 | ---- | M] () [File_System | System | Running] -- D:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009/04/22 13:28:08 | 000,008,704 | ---- | M] () [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\epmntdrv.sys -- (epmntdrv)
DRV - [2009/04/22 13:28:06 | 000,003,072 | ---- | M] () [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\EuGdiDrv.sys -- (EuGdiDrv)
DRV - [2009/03/17 16:24:24 | 000,025,280 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2008/08/21 18:49:56 | 000,008,320 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\motccgpfl.sys -- (motccgpfl)
DRV - [2008/08/21 18:49:22 | 000,018,688 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\motccgp.sys -- (motccgp)
DRV - [2008/06/02 18:10:18 | 004,752,384 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2008/05/07 18:31:16 | 000,106,368 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2008/05/06 15:06:00 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM)
DRV - [2008/02/29 02:13:46 | 000,028,944 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV - [2008/02/22 15:33:02 | 000,114,304 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\sscdmdm.sys -- (sscdmdm)
DRV - [2008/02/22 15:33:02 | 000,014,976 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV - [2008/01/09 02:01:56 | 002,529,280 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\NETw4x32.sys -- (NETw4x32)
DRV - [2007/10/10 17:41:50 | 000,042,112 | ---- | M] (Motorola Inc) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\motodrv.sys -- (MotDev)
DRV - [2007/07/11 10:30:22 | 000,007,168 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\HpqRemHid.sys -- (HpqRemHid)
DRV - [2007/07/03 16:59:10 | 000,086,824 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\sscdserd.sys -- (sscdserd)
DRV - [2007/07/03 16:54:24 | 000,080,552 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\sscdbus.sys -- (sscdbus)
DRV - [2007/06/18 17:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV - [2007/06/18 15:18:26 | 000,023,680 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\motport.sys -- (motport)
DRV - [2007/06/18 15:18:26 | 000,023,680 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\motmodem.sys -- (motmodem)
DRV - [2007/04/17 20:09:28 | 000,011,032 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\regi.sys -- (regi)
DRV - [2007/01/18 14:28:02 | 000,005,275 | ---- | M] (Cisco Systems, Inc.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\CVirtA.sys -- (CVirtA)
DRV - [2006/11/10 14:05:00 | 000,018,688 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\afc.sys -- (Afc)
DRV - [2001/05/07 05:56:02 | 000,019,805 | R--- | M] (Thesycon GmbH, Germany) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbio.sys -- (USBIO)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
http://www.live.com [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.comIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.savior.org/IE - HKCU\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
IE - HKCU\..\SearchScopes,DefaultScope = {393AA27B-79F2-462D-BB8F-DE3960AC9B21}
IE - HKCU\..\SearchScopes\{0A9A0F53-0A2D-495B-8FD2-1C23B4857CBF}: "URL" =
http://search.live.com/results.aspx?q={searchTerms}&form=MS8TDF&pc=MS8TDF&src=IE-SearchBox
IE - HKCU\..\SearchScopes\{393AA27B-79F2-462D-BB8F-DE3960AC9B21}: "URL" =
http://search.yahoo.com/search?fr=chr-g ... =937811&p={searchTerms}
IE - HKCU\..\SearchScopes\{A349DA8E-49D6-4393-9C2E-64EFCD3F62A9}: "URL" =
http://search.avg.com/route/?d=4dae1ce4 ... =chrome&q={searchTerms}&lng={language}&iy=&ychte=us
IE - HKCU\..\SearchScopes\{DECA3892-BA8F-44b8-A993-A466AD694AE4}: "URL" =
http://search.yahoo.com/search?fr=mcafee&p={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811&ilc=12"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..extensions.enabledAddons: perspectives%40cmu.edu:4.3.3
FF - prefs.js..extensions.enabledAddons: %7B73a6fe31-595d-460b-a920-fcc0f8843232%7D:2.6.2
FF - prefs.js..extensions.enabledAddons: %7BD4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389%7D:0.9.10
FF - prefs.js..extensions.enabledAddons: %7BDDC359D1-844A-42a7-9AA1-88A850A938A8%7D:2.0.15
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:7.0.1474
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0.1
FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.10
FF - prefs.js..extensions.enabledItems: {DDC359D1-844A-42a7-9AA1-88A850A938A8}:2.0.8
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1
FF - prefs.js..extensions.enabledItems: {73a6fe31-595d-460b-a920-fcc0f8843232}:2.1.8
FF - prefs.js..extensions.enabledItems:
perspectives@cmu.edu:4.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems:
linkylook@dniflima.about.tc:1.24
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems:
wrc@avast.com:7.0.1426
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29
FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=937811&p="
FF - prefs.js..network.proxy.ftp_port: 80
FF - prefs.js..network.proxy.gopher: ""
FF - prefs.js..network.proxy.gopher_port: 80
FF - prefs.js..network.proxy.http_port: 80
FF - prefs.js..network.proxy.socks_port: 80
FF - prefs.js..network.proxy.ssl_port: 80
FF - user.js..network.protocol-handler.warn-external.dnupdate: falseuser_pref("network.protocol-handler.warn-external.dnupdate", false);
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: D:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: D:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@garmin.com/GpsControl: D:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: D:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2: D:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: D:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: d:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.1: D:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: D:\Program Files\Viewpoint\Viewpoint Media Player\npViewpoint.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll File not found
FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: D:\Documents and Settings\Greg\Application Data\Facebook\npfbplugin_1_0_3.dll ( )
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: D:\Documents and Settings\Greg\Application Data\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: D:\Documents and Settings\Greg\Application Data\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: D:\Program Files\McAfee\SiteAdvisor [2012/12/21 20:51:19 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\wrc@avast.com: D:\Program Files\AVAST Software\Avast\WebRep\FF [2012/11/15 10:38:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\smartwebprinting@hp.com: D:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012/09/18 18:47:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2012/12/03 19:39:14 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2013/01/11 17:48:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 2.0.0.21\extensions\\Components: D:\Program Files\Mozilla Thunderbird\components [2011/08/03 17:31:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 2.0.0.21\extensions\\Plugins: D:\Program Files\Mozilla Thunderbird\plugins [2013/01/11 17:48:59 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: D:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012/09/18 18:47:45 | 000,000,000 | ---D | M]
[2011/02/10 19:21:28 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Extensions
[2011/02/10 19:21:28 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Extensions\MediaCoder
[2012/12/03 19:39:25 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\nsnyien6.default\extensions
[2010/04/30 18:42:05 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\nsnyien6.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009/09/03 17:22:50 | 000,000,000 | ---D | M] (Phoenity Modern) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\nsnyien6.default\extensions\{8181B740-5255-11D9-9FF6-0090995D2DCA}
[2011/11/06 19:31:21 | 000,000,000 | ---D | M] (Download Statusbar) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\nsnyien6.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2010/10/18 20:35:36 | 000,000,000 | ---D | M] (LinkyLook) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\nsnyien6.default\extensions\linkylook@dniflima.about.tc
[2012/12/03 19:39:25 | 000,000,000 | ---D | M] (Perspectives) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\nsnyien6.default\extensions\perspectives@cmu.edu
[2012/12/03 19:39:21 | 000,530,519 | ---- | M] () (No name found) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\nsnyien6.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
[2012/10/02 18:19:32 | 000,698,867 | ---- | M] () (No name found) -- D:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\nsnyien6.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi
[2012/08/02 23:39:06 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\extensions
[2012/11/15 10:38:02 | 000,000,000 | ---D | M] (avast! WebRep) -- D:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2012/12/03 19:39:13 | 000,262,112 | ---- | M] (Mozilla Foundation) -- D:\Program Files\mozilla firefox\components\browsercomps.dll
[2007/05/16 09:30:04 | 000,036,864 | ---- | M] () -- D:\Program Files\mozilla firefox\plugins\npSfAppM.dll
[2007/04/16 12:07:12 | 000,180,293 | ---- | M] () -- D:\Program Files\mozilla firefox\plugins\npViewpoint.dll
[2012/12/03 19:39:09 | 000,002,465 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012/12/03 19:39:09 | 000,002,058 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\twitter.xml
========== Chrome ========== CHR - homepage:
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Disabled) = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\Application\23.0.1271.97\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = D:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_262.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = D:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll
CHR - plugin: Google Talk Plugin (Enabled) = D:\Documents and Settings\Greg\Application Data\Mozilla\plugins\npgoogletalk.dll
CHR - plugin: Google Talk Plugin Video Accelerator (Enabled) = D:\Documents and Settings\Greg\Application Data\Mozilla\plugins\npgtpo3dautoplugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = D:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = D:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: DivX Player Netscape Plugin (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
CHR - plugin: Windows Genuine Advantage (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
CHR - plugin: Microsoft Office 2003 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: SciFinder Application Plugin for Mozilla (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npSfAppM.dll
CHR - plugin: MetaStream 3 Plugin (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = D:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = D:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = D:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Facebook Plugin (Enabled) = D:\Documents and Settings\Greg\Application Data\Facebook\npfbplugin_1_0_3.dll
CHR - plugin: Google Update (Enabled) = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Garmin Communicator Plug-In (Enabled) = D:\Program Files\Garmin GPS Plugin\npGarmin.dll
CHR - plugin: VLC Web Plugin (Enabled) = D:\Program Files\VideoLAN\VLC\npvlc.dll
CHR - plugin: iTunes Application Detector (Enabled) = D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Shockwave for Director (Enabled) = D:\WINDOWS\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Silverlight Plug-In (Enabled) = d:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = d:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: HP Product Detection Plugin = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aelbknmfcacjffmgnoaaonhgoghlmlkp\1.0.19.2_0\
CHR - Extension: Angry Birds = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0\
CHR - Extension: SiteAdvisor = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.60.126.1_0\
CHR - Extension: AdBlock = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.54_0\
CHR - Extension: AdBlock = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.55_0\
CHR - Extension: avast! WebRep = D:\Documents and Settings\Greg\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1474_0\
O1 HOSTS File: ([2013/01/02 13:33:45 | 000,630,568 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\HOSTS
O1 - Hosts: ªïÞ²?åZ>'Œ¯
O1 - Hosts: åÇ>Hð *?ï^?TUUUUÅ?
O2 - BHO: (SpywareGuardDLBLOCK.CBrowserHelper) - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - D:\Program Files\SpywareGuard\dlprotect.dll ()
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (no name) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - No CLSID value found.
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O4 - HKLM..\Run: [Alcmtr] D:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [APSDaemon] D:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [ArcSoft Connection Service] D:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
O4 - HKLM..\Run: [avast] D:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [EvtMgr6] D:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] D:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [WD Drive Unlocker] D:\Program Files\Western Digital\WD Apps\WDDriveAutoUnlock.exe (Western Digital)
O4 - HKLM..\Run: [WD Quick View] D:\Program Files\Western Digital\WD Quick View\WDDMStatus.exe (Western Digital Technologies, Inc.)
O4 - HKLM..\Run: [WheelMouse] Amoumain.exe File not found
O4 - HKCU..\Run: [FileHippo.com] D:\Program Files\FileHippo.com\UpdateChecker.exe (FileHippo.com)
O4 - HKLM..\RunOnce: [WD Smartware Upgrader - Uninstall] D:\WINDOWS\System32\cmd.exe (Microsoft Corporation)
O4 - Startup: D:\Documents and Settings\Greg\Start Menu\Programs\Startup\Dropbox.lnk = D:\Documents and Settings\Greg\Application Data\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: D:\Documents and Settings\Greg\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = D:\Program Files\ERUNT\AUTOBACK.EXE ()
O4 - Startup: D:\Documents and Settings\Greg\Start Menu\Programs\Startup\SpywareGuard.lnk = D:\Program Files\SpywareGuard\sgmain.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - D:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKCU\..Trusted Domains: internet ([]about in Trusted sites)
O15 - HKCU\..Trusted Domains: mcafee.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: mcafee.com ([]https in Trusted sites)
O15 - HKCU\..Trusted Domains: tube8.com ([www] https in Trusted sites)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupda ... 1443085265 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Value error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DA615D18-4C4E-442A-B164-2B17C4027311}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DA615D18-4C4E-442A-B164-2B17C4027311}: NameServer = 192.168.1.1,71.252.0.12
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (D:\WINDOWS\system32\userinit.exe) - D:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\LBTWlgn: DllName - (d:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - d:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O24 - Desktop WallPaper: D:\Documents and Settings\Greg\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: D:\Documents and Settings\Greg\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {81559C35-8464-49F7-BB0E-07A383BEF910} - D:\Program Files\SpywareGuard\spywareguard.dll ()
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/02/18 01:28:10 | 000,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2005/09/11 10:18:54 | 000,000,340 | -HS- | M] () - E:\AUTOMODE -- [ NTFS ]
O33 - MountPoints2\{6161a6e8-ebe3-11e1-bd07-001e6850e268}\Shell - "" = AutoRun
O33 - MountPoints2\{6161a6e8-ebe3-11e1-bd07-001e6850e268}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{6161a6e8-ebe3-11e1-bd07-001e6850e268}\Shell\AutoRun\command - "" = "G:\WD Drive Unlock.exe" autoplay=true
O33 - MountPoints2\{66c51733-d95e-11df-bacf-001e6850e268}\Shell - "" = AutoRun
O33 - MountPoints2\{66c51733-d95e-11df-bacf-001e6850e268}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{66c51733-d95e-11df-bacf-001e6850e268}\Shell\AutoRun\command - "" = G:\MI.exe
O33 - MountPoints2\{e0f9f73c-3433-11dd-98f0-a59ae767d331}\Shell - "" = AutoRun
O33 - MountPoints2\{e0f9f73c-3433-11dd-98f0-a59ae767d331}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{e0f9f73c-3433-11dd-98f0-a59ae767d331}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{e4e4b422-7df7-11de-9c39-001e6850e268}\Shell\AutoRun\command - "" = G:\WDSetup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ========== [2013/01/14 18:54:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
[2013/01/14 18:53:18 | 000,602,112 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\Greg\Desktop\OTL.exe
[2013/01/11 22:23:27 | 000,000,000 | R--D | C] -- D:\Documents and Settings\Greg\Start Menu\Programs\Administrative Tools
[2013/01/10 23:26:46 | 000,116,224 | ---- | C] (Xerox) -- D:\WINDOWS\System32\dllcache\xrxwiadr.dll
[2013/01/10 23:26:43 | 000,023,040 | ---- | C] (Xerox Corporation) -- D:\WINDOWS\System32\dllcache\xrxwbtmp.dll
[2013/01/10 23:26:29 | 000,099,865 | ---- | C] (Eicon Technology) -- D:\WINDOWS\System32\dllcache\xlog.exe
[2013/01/10 23:26:19 | 000,016,970 | ---- | C] (US Robotics MCD (Megahertz)) -- D:\WINDOWS\System32\dllcache\xem336n5.sys
[2013/01/10 23:25:50 | 000,154,624 | ---- | C] (Lucent Technologies) -- D:\WINDOWS\System32\dllcache\wlluc48.sys
[2013/01/10 23:25:46 | 000,034,890 | ---- | C] (Raytheon Corp.) -- D:\WINDOWS\System32\dllcache\wlandrv2.sys
[2013/01/10 23:25:34 | 000,771,581 | ---- | C] (Rockwell) -- D:\WINDOWS\System32\dllcache\winacisa.sys
[2013/01/10 23:25:07 | 000,035,871 | ---- | C] (Winbond Electronics Corp.) -- D:\WINDOWS\System32\dllcache\wbfirdma.sys
[2013/01/10 23:24:50 | 000,016,925 | ---- | C] (Winbond Electronics Corporation) -- D:\WINDOWS\System32\dllcache\w940nd.sys
[2013/01/10 23:24:46 | 000,019,016 | ---- | C] (Winbond Electronics Corporation) -- D:\WINDOWS\System32\dllcache\w926nd.sys
[2013/01/10 23:24:43 | 000,019,528 | ---- | C] (Winbond Electronics Corporation) -- D:\WINDOWS\System32\dllcache\w840nd.sys
[2013/01/10 23:24:32 | 000,064,605 | ---- | C] (PCtel, Inc.) -- D:\WINDOWS\System32\dllcache\vvoice.sys
[2013/01/10 23:24:27 | 000,397,502 | ---- | C] (PCtel, Inc.) -- D:\WINDOWS\System32\dllcache\vpctcom.sys
[2013/01/10 23:24:23 | 000,604,253 | ---- | C] (PCTEL, INC.) -- D:\WINDOWS\System32\dllcache\vmodem.sys
[2013/01/10 23:24:19 | 000,249,402 | ---- | C] (Xircom) -- D:\WINDOWS\System32\dllcache\vinwm.sys
[2013/01/10 23:24:02 | 000,765,884 | ---- | C] (U.S. Robotics, Inc.) -- D:\WINDOWS\System32\dllcache\usrti.sys
[2013/01/10 23:23:46 | 000,794,399 | ---- | C] (U.S. Robotics, Inc.) -- D:\WINDOWS\System32\dllcache\usr1806v.sys
[2013/01/10 23:23:42 | 000,793,598 | ---- | C] (U.S. Robotics, Inc.) -- D:\WINDOWS\System32\dllcache\usr1806.sys
[2013/01/10 23:23:38 | 000,794,654 | ---- | C] (U.S. Robotics, Inc.) -- D:\WINDOWS\System32\dllcache\usr1801.sys
[2013/01/10 23:23:31 | 000,032,384 | ---- | C] (KLSI USA, Inc.) -- D:\WINDOWS\System32\dllcache\usb101et.sys
[2013/01/10 23:23:03 | 000,050,688 | ---- | C] (UMAX DATA SYSTEMS INC.) -- D:\WINDOWS\System32\dllcache\umaxscan.dll
[2013/01/10 23:22:50 | 000,211,968 | ---- | C] (UMAX Data Systems Inc.) -- D:\WINDOWS\System32\dllcache\um54scan.dll
[2013/01/10 23:22:46 | 000,216,064 | ---- | C] (UMAX Data Systems Inc.) -- D:\WINDOWS\System32\dllcache\um34scan.dll
[2013/01/10 23:22:23 | 000,166,784 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\tridxpm.sys
[2013/01/10 23:22:20 | 000,525,568 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\tridxp.dll
[2013/01/10 23:22:16 | 000,159,232 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\tridkbm.sys
[2013/01/10 23:22:13 | 000,440,576 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\tridkb.dll
[2013/01/10 23:22:09 | 000,222,336 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\trid3dm.sys
[2013/01/10 23:22:06 | 000,315,520 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\trid3d.dll
[2013/01/10 23:21:33 | 000,123,995 | ---- | C] (Tiger Jet Network) -- D:\WINDOWS\System32\dllcache\tjisdn.sys
[2013/01/10 23:21:28 | 000,138,528 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\tgiulnt5.sys
[2013/01/10 23:21:24 | 000,081,408 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\tgiul50.dll
[2013/01/10 23:21:22 | 000,149,376 | ---- | C] (M-Systems) -- D:\WINDOWS\System32\dllcache\tffsport.sys
[2013/01/10 23:21:17 | 000,017,129 | ---- | C] (TDK Corporation) -- D:\WINDOWS\System32\dllcache\tdkcd31.sys
[2013/01/10 23:21:14 | 000,037,961 | ---- | C] (TDK Corporation) -- D:\WINDOWS\System32\dllcache\tdk100b.sys
[2013/01/10 23:20:52 | 000,036,640 | ---- | C] (Number Nine Visual Technology Corp.) -- D:\WINDOWS\System32\dllcache\t2r4mini.sys
[2013/01/10 23:20:49 | 000,172,768 | ---- | C] (Number Nine Visual Technology) -- D:\WINDOWS\System32\dllcache\t2r4disp.dll
[2013/01/10 23:20:04 | 000,155,648 | ---- | C] (Stallion Technologies) -- D:\WINDOWS\System32\dllcache\stlnprop.dll
[2013/01/10 23:20:01 | 000,053,248 | ---- | C] (Stallion Technologies) -- D:\WINDOWS\System32\dllcache\stlncoin.dll
[2013/01/10 23:19:57 | 000,285,760 | ---- | C] (Stallion Technologies) -- D:\WINDOWS\System32\dllcache\stlnata.sys
[2013/01/10 23:19:53 | 000,016,896 | ---- | C] (SCM Microsystems, Inc.) -- D:\WINDOWS\System32\dllcache\stcusb.sys
[2013/01/10 23:19:44 | 000,048,736 | ---- | C] (3Com) -- D:\WINDOWS\System32\dllcache\srwlnd5.sys
[2013/01/10 23:19:18 | 000,019,072 | ---- | C] (Adaptec, Inc.) -- D:\WINDOWS\System32\dllcache\sparrow.sys
[2013/01/10 23:18:46 | 000,058,368 | ---- | C] (Silicon Motion Inc.) -- D:\WINDOWS\System32\dllcache\smiminib.sys
[2013/01/10 23:18:42 | 000,147,200 | ---- | C] (Silicon Motion Inc.) -- D:\WINDOWS\System32\dllcache\smidispb.dll
[2013/01/10 23:18:38 | 000,025,034 | ---- | C] (SMC Networks, Inc.) -- D:\WINDOWS\System32\dllcache\smcpwr2n.sys
[2013/01/10 23:18:35 | 000,035,913 | ---- | C] (SMC) -- D:\WINDOWS\System32\dllcache\smcirda.sys
[2013/01/10 23:18:32 | 000,024,576 | ---- | C] (SMC Networks, Inc.) -- D:\WINDOWS\System32\dllcache\smc8000n.sys
[2013/01/10 23:18:03 | 000,063,547 | ---- | C] (Symbol Technologies) -- D:\WINDOWS\System32\dllcache\sla30nd5.sys
[2013/01/10 23:17:59 | 000,091,294 | ---- | C] (SysKonnect, a business unit of Schneider & Koch & Co. Datensysteme GmbH.) -- D:\WINDOWS\System32\dllcache\skfpwin.sys
[2013/01/10 23:17:56 | 000,094,698 | ---- | C] (SysKonnect GmbH.) -- D:\WINDOWS\System32\dllcache\sk98xwin.sys
[2013/01/10 23:17:48 | 000,032,768 | ---- | C] (SiS Corporation) -- D:\WINDOWS\System32\dllcache\sisnic.sys
[2013/01/10 23:17:17 | 000,161,568 | ---- | C] (Micro Systemation) -- D:\WINDOWS\System32\dllcache\sgsmusb.sys
[2013/01/10 23:17:14 | 000,018,400 | ---- | C] (Micro Systemation) -- D:\WINDOWS\System32\dllcache\sgsmld.sys
[2013/01/10 23:17:11 | 000,098,080 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\sgiulnt5.sys
[2013/01/10 23:17:08 | 000,386,560 | ---- | C] (Trident Microsystems Inc.) -- D:\WINDOWS\System32\dllcache\sgiul50.dll
[2013/01/10 23:16:36 | 000,017,280 | ---- | C] (SCM Microsystems) -- D:\WINDOWS\System32\dllcache\scr111.sys
[2013/01/10 23:16:29 | 000,023,936 | ---- | C] (OMNIKEY AG) -- D:\WINDOWS\System32\dllcache\sccmusbm.sys
[2013/01/10 23:16:26 | 000,023,936 | ---- | C] (OMNIKEY AG) -- D:\WINDOWS\System32\dllcache\sccmn50m.sys
[2013/01/10 23:16:08 | 000,077,824 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3sav4m.sys
[2013/01/10 23:16:05 | 000,198,400 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3sav4.dll
[2013/01/10 23:16:02 | 000,061,504 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3sav3dm.sys
[2013/01/10 23:15:59 | 000,179,264 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3sav3d.dll
[2013/01/10 23:15:56 | 000,210,496 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3mvirge.dll
[2013/01/10 23:15:53 | 000,062,496 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3mtrio.dll
[2013/01/10 23:15:50 | 000,041,216 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3mt3d.sys
[2013/01/10 23:15:47 | 000,182,272 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3mt3d.dll
[2013/01/10 23:15:44 | 000,166,720 | ---- | C] (S3 Incorporated) -- D:\WINDOWS\System32\dllcache\s3m.sys
[2013/01/10 23:15:37 | 000,082,432 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rwia450.dll
[2013/01/10 23:15:34 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rwia430.dll
[2013/01/10 23:15:32 | 000,029,696 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rw450ext.dll
[2013/01/10 23:15:32 | 000,027,648 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rw430ext.dll
[2013/01/10 23:15:16 | 000,009,216 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\rsmgrstr.dll
[2013/01/10 23:15:08 | 000,079,104 | ---- | C] (Comtrol Corporation) -- D:\WINDOWS\System32\dllcache\rocket.sys
[2013/01/10 23:15:04 | 000,037,563 | ---- | C] (RadioLAN) -- D:\WINDOWS\System32\dllcache\rlnet5.sys
[2013/01/10 23:15:00 | 000,086,097 | ---- | C] (Xircom) -- D:\WINDOWS\System32\dllcache\reslog32.dll
[2013/01/10 23:14:34 | 000,714,762 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\r2mdmkxx.sys
[2013/01/10 23:14:31 | 000,899,146 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\r2mdkxga.sys
[2013/01/10 23:13:54 | 000,130,942 | ---- | C] (PCTEL, INC.) -- D:\WINDOWS\System32\dllcache\ptserlv.sys
[2013/01/10 23:13:50 | 000,112,574 | ---- | C] (PCTEL, INC.) -- D:\WINDOWS\System32\dllcache\ptserlp.sys
[2013/01/10 23:13:47 | 000,128,286 | ---- | C] (PCTEL, INC.) -- D:\WINDOWS\System32\dllcache\ptserli.sys
[2013/01/10 23:13:35 | 000,016,128 | ---- | C] (SCM Microsystems, Inc.) -- D:\WINDOWS\System32\dllcache\pscr.sys
[2013/01/10 23:12:35 | 000,086,016 | ---- | C] (PCtel, Inc.) -- D:\WINDOWS\System32\dllcache\pctspk.exe
[2013/01/10 23:12:23 | 000,026,153 | ---- | C] (Linksys) -- D:\WINDOWS\System32\dllcache\pcmlm56.sys
[2013/01/10 23:12:21 | 000,029,502 | ---- | C] (Marconi Communications, Inc.) -- D:\WINDOWS\System32\dllcache\pca200e.sys
[2013/01/10 23:12:17 | 000,030,495 | ---- | C] (Linksys) -- D:\WINDOWS\System32\dllcache\pc100nds.sys
[2013/01/10 23:11:33 | 000,054,186 | ---- | C] (Ositech Communications, Inc.) -- D:\WINDOWS\System32\dllcache\otcsercb.sys
[2013/01/10 23:11:30 | 000,043,689 | ---- | C] (Ositech Communications, Inc.) -- D:\WINDOWS\System32\dllcache\otceth5.sys
[2013/01/10 23:11:27 | 000,027,209 | ---- | C] (Ositech Communications, Inc.) -- D:\WINDOWS\System32\dllcache\otc06x5.sys
[2013/01/10 23:11:23 | 000,054,528 | ---- | C] (Yamaha Corp.) -- D:\WINDOWS\System32\dllcache\opl3sax.sys
[2013/01/10 23:10:58 | 000,051,552 | ---- | C] (Kensington Technology Group) -- D:\WINDOWS\System32\dllcache\ntgrip.sys
[2013/01/10 23:10:43 | 000,087,040 | ---- | C] (NeoMagic Corporation) -- D:\WINDOWS\System32\dllcache\nm6wdm.sys
[2013/01/10 23:10:40 | 000,126,080 | ---- | C] (NeoMagic Corporation) -- D:\WINDOWS\System32\dllcache\nm5a2wdm.sys
[2013/01/10 23:10:35 | 000,132,695 | ---- | C] (802.11b) -- D:\WINDOWS\System32\dllcache\netwlan5.sys
[2013/01/10 23:10:22 | 000,039,264 | ---- | C] (NeoMagic Corporation) -- D:\WINDOWS\System32\dllcache\neo20xx.sys
[2013/01/10 23:10:19 | 000,060,480 | ---- | C] (NeoMagic Corporation) -- D:\WINDOWS\System32\dllcache\neo20xx.dll
[2013/01/10 23:10:08 | 000,091,488 | ---- | C] (Number Nine Visual Technology Corp.) -- D:\WINDOWS\System32\dllcache\n9i3disp.dll
[2013/01/10 23:10:05 | 000,027,936 | ---- | C] (Number Nine Visual Technology Corp.) -- D:\WINDOWS\System32\dllcache\n9i3d.sys
[2013/01/10 23:10:02 | 000,033,088 | ---- | C] (Number Nine Visual Technology Corp.) -- D:\WINDOWS\System32\dllcache\n9i128v2.sys
[2013/01/10 23:09:59 | 000,059,104 | ---- | C] (Number Nine Visual Technology Corp.) -- D:\WINDOWS\System32\dllcache\n9i128v2.dll
[2013/01/10 23:09:56 | 000,013,664 | ---- | C] (Number Nine Visual Technology Corp.) -- D:\WINDOWS\System32\dllcache\n9i128.sys
[2013/01/10 23:09:54 | 000,035,392 | ---- | C] (Number Nine Visual Technology Corp.) -- D:\WINDOWS\System32\dllcache\n9i128.dll
[2013/01/10 23:09:45 | 000,075,520 | ---- | C] (Moxa Technologies Co., Ltd.) -- D:\WINDOWS\System32\dllcache\mxport.sys
[2013/01/10 23:09:42 | 000,007,168 | ---- | C] (Moxa Technologies Co., Ltd) -- D:\WINDOWS\System32\dllcache\mxport.dll
[2013/01/10 23:09:39 | 000,019,968 | ---- | C] (Macronix International Co., Ltd. ) -- D:\WINDOWS\System32\dllcache\mxnic.sys
[2013/01/10 23:09:37 | 000,019,968 | ---- | C] (Moxa Technologies Co., Ltd) -- D:\WINDOWS\System32\dllcache\mxicfg.dll
[2013/01/10 23:09:34 | 000,021,888 | ---- | C] (Moxa Technologies Co., Ltd.) -- D:\WINDOWS\System32\dllcache\mxcard.sys
[2013/01/10 23:08:34 | 000,017,280 | ---- | C] (American Megatrends Inc.) -- D:\WINDOWS\System32\dllcache\mraid35x.sys
[2013/01/10 23:07:51 | 000,164,586 | ---- | C] (Madge Networks Ltd) -- D:\WINDOWS\System32\dllcache\mdgndis5.sys
[2013/01/10 23:07:29 | 000,797,500 | ---- | C] (LT) -- D:\WINDOWS\System32\dllcache\ltsmt.sys
[2013/01/10 23:07:26 | 000,802,683 | ---- | C] (Lucent Technologies) -- D:\WINDOWS\System32\dllcache\ltsm.sys
[2013/01/10 23:07:25 | 000,420,992 | ---- | C] (LT) -- D:\WINDOWS\System32\dllcache\ltmdmntt.sys
[2013/01/10 23:07:22 | 000,576,746 | ---- | C] (LT) -- D:\WINDOWS\System32\dllcache\ltmdmntl.sys
[2013/01/10 23:07:21 | 000,606,684 | ---- | C] (LT) -- D:\WINDOWS\System32\dllcache\ltmdmnt.sys
[2013/01/10 23:07:19 | 000,727,786 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\ltck000c.sys
[2013/01/10 23:07:07 | 000,070,730 | ---- | C] (Linksys Group, Inc.) -- D:\WINDOWS\System32\dllcache\lne100tx.sys
[2013/01/10 23:07:05 | 000,020,573 | ---- | C] (The Linksts Group ) -- D:\WINDOWS\System32\dllcache\lne100.sys
[2013/01/10 23:07:02 | 000,025,065 | ---- | C] (D-Link) -- D:\WINDOWS\System32\dllcache\lmndis3.sys
[2013/01/10 23:06:59 | 000,015,744 | ---- | C] (Litronic Industries) -- D:\WINDOWS\System32\dllcache\lit220p.sys
[2013/01/10 23:06:54 | 000,026,442 | ---- | C] (SMSC) -- D:\WINDOWS\System32\dllcache\lanepic5.sys
[2013/01/10 23:06:51 | 000,019,016 | ---- | C] (Kingston Technology Company ) -- D:\WINDOWS\System32\dllcache\ktc111.sys
[2013/01/10 23:06:00 | 000,023,552 | ---- | C] (MKNet Corporation) -- D:\WINDOWS\System32\dllcache\irmk7.sys
[2013/01/10 23:05:11 | 000,372,824 | ---- | C] (Xircom) -- D:\WINDOWS\System32\dllcache\iconf32.dll
[2013/01/10 23:03:20 | 000,068,608 | ---- | C] (Avisioin) -- D:\WINDOWS\System32\dllcache\hpgt53tk.dll
[2013/01/10 23:03:11 | 000,126,976 | ---- | C] (Hewlett Packard) -- D:\WINDOWS\System32\dllcache\hpgt34tk.dll
[2013/01/10 23:02:43 | 000,028,288 | ---- | C] (Gemplus) -- D:\WINDOWS\System32\dllcache\grserial.sys
[2013/01/10 23:02:40 | 000,082,304 | ---- | C] (Gemplus) -- D:\WINDOWS\System32\dllcache\grclass.sys
[2013/01/10 23:02:38 | 000,017,408 | ---- | C] (Gemplus) -- D:\WINDOWS\System32\dllcache\gpr400.sys
[2013/01/10 23:02:24 | 000,454,912 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\fxusbase.sys
[2013/01/10 23:02:13 | 000,455,296 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\fusbbase.sys
[2013/01/10 23:02:11 | 000,455,680 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\fus2base.sys
[2013/01/10 23:02:05 | 000,442,240 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\fpnpbase.sys
[2013/01/10 23:02:03 | 000,441,728 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\fpcmbase.sys
[2013/01/10 23:02:01 | 000,444,416 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\fpcibase.sys
[2013/01/10 23:02:00 | 000,034,173 | ---- | C] (Marconi Communications, Inc.) -- D:\WINDOWS\System32\dllcache\forehe.sys
[2013/01/10 23:01:40 | 000,024,618 | ---- | C] (NETGEAR) -- D:\WINDOWS\System32\dllcache\fa410nd5.sys
[2013/01/10 23:01:36 | 000,011,850 | ---- | C] (FUJITSU LIMITED) -- D:\WINDOWS\System32\dllcache\f3ab18xj.sys
[2013/01/10 23:01:34 | 000,012,362 | ---- | C] (FUJITSU LIMITED) -- D:\WINDOWS\System32\dllcache\f3ab18xi.sys
[2013/01/10 22:59:54 | 000,334,208 | ---- | C] (Yamaha Corp.) -- D:\WINDOWS\System32\dllcache\ds1wdm.sys
[2013/01/10 22:59:47 | 000,028,062 | ---- | C] (National Semiconductor Coproration) -- D:\WINDOWS\System32\dllcache\dp83820.sys
[2013/01/10 22:59:35 | 000,029,696 | ---- | C] (CNet Technology, Inc. ) -- D:\WINDOWS\System32\dllcache\dm9pci5.sys
[2013/01/10 22:59:33 | 000,026,698 | ---- | C] (D-Link Corporation) -- D:\WINDOWS\System32\dllcache\dlh5xnd5.sys
[2013/01/10 22:59:32 | 000,952,007 | ---- | C] (Eicon Technology) -- D:\WINDOWS\System32\dllcache\diwan.sys
[2013/01/10 22:59:27 | 000,236,060 | ---- | C] (Eicon Technology) -- D:\WINDOWS\System32\dllcache\ditrace.exe
[2013/01/10 22:59:26 | 000,038,985 | ---- | C] (Eicon Technology) -- D:\WINDOWS\System32\dllcache\disrvsu.dll
[2013/01/10 22:59:25 | 000,031,305 | ---- | C] (Eicon Technology) -- D:\WINDOWS\System32\dllcache\disrvpp.dll
[2013/01/10 22:59:24 | 000,006,729 | ---- | C] (Eicon Technology) -- D:\WINDOWS\System32\dllcache\disrvci.dll
[2013/01/10 22:59:21 | 000,091,305 | ---- | C] (Eicon Technology) -- D:\WINDOWS\System32\dllcache\dimaint.sys
[2013/01/10 22:58:59 | 000,024,649 | ---- | C] (D-Link) -- D:\WINDOWS\System32\dllcache\dfe650d.sys
[2013/01/10 22:58:58 | 000,024,648 | ---- | C] (D-Link) -- D:\WINDOWS\System32\dllcache\dfe650.sys
[2013/01/10 22:58:53 | 000,020,928 | ---- | C] (Digital Networks, LLC) -- D:\WINDOWS\System32\dllcache\defpa.sys
[2013/01/10 22:58:30 | 000,048,640 | ---- | C] (Crystal Semiconductor Corp.) -- D:\WINDOWS\System32\dllcache\cwrwdm.sys
[2013/01/10 22:58:29 | 000,093,952 | ---- | C] (Crystal Semiconductor Corp.) -- D:\WINDOWS\System32\dllcache\cwcwdm.sys
[2013/01/10 22:58:27 | 000,111,872 | ---- | C] (Crystal Semiconductor Corp.) -- D:\WINDOWS\System32\dllcache\cwcspud.sys
[2013/01/10 22:58:26 | 000,003,584 | ---- | C] (Crystal Semiconductor Corp.) -- D:\WINDOWS\System32\dllcache\cwcosnt5.sys
[2013/01/10 22:58:25 | 000,072,832 | ---- | C] (Crystal Semiconductor Corp.) -- D:\WINDOWS\System32\dllcache\cwbwdm.sys
[2013/01/10 22:58:24 | 000,003,072 | ---- | C] (Crystal Semiconductor Corp.) -- D:\WINDOWS\System32\dllcache\cwbmidi.sys
[2013/01/10 22:58:23 | 000,003,072 | ---- | C] (Crystal Semiconductor Corp.) -- D:\WINDOWS\System32\dllcache\cwbase.sys
[2013/01/10 22:58:22 | 000,249,856 | ---- | C] (Comtrol® Corporation) -- D:\WINDOWS\System32\dllcache\ctmasetp.dll
[2013/01/10 22:58:14 | 000,216,064 | ---- | C] (COMPAQ Inc.) -- D:\WINDOWS\System32\dllcache\cpscan.dll
[2013/01/10 22:57:56 | 000,020,736 | ---- | C] (OMNIKEY AG) -- D:\WINDOWS\System32\dllcache\cmbp0wdm.sys
[2013/01/10 22:57:44 | 000,980,034 | ---- | C] (Xircom) -- D:\WINDOWS\System32\dllcache\cicap.sys
[2013/01/10 22:57:34 | 000,049,182 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\cem56n5.sys
[2013/01/10 22:57:33 | 000,022,044 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\cem33n5.sys
[2013/01/10 22:57:33 | 000,022,044 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\cem28n5.sys
[2013/01/10 22:57:32 | 000,027,164 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\ce3n5.sys
[2013/01/10 22:57:31 | 000,021,530 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\ce2n5.sys
[2013/01/10 22:57:27 | 000,714,698 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\cbmdmkxx.sys
[2013/01/10 22:57:26 | 000,046,108 | ---- | C] (Xircom, Inc.) -- D:\WINDOWS\System32\dllcache\cben5.sys
[2013/01/10 22:57:25 | 000,039,680 | ---- | C] (Silicom Ltd.) -- D:\WINDOWS\System32\dllcache\cb325.sys
[2013/01/10 22:57:24 | 000,037,916 | ---- | C] (Fast Ethernet Controller Provider) -- D:\WINDOWS\System32\dllcache\cb102.sys
[2013/01/10 22:57:23 | 000,032,256 | ---- | C] (Eicon Technology Corporation) -- D:\WINDOWS\System32\dllcache\diapi2NT.dll
[2013/01/10 22:57:22 | 000,164,923 | ---- | C] (Eicon Technology) -- D:\WINDOWS\System32\dllcache\diapi2.sys
[2013/01/10 22:56:55 | 000,031,529 | ---- | C] (BreezeCOM) -- D:\WINDOWS\System32\dllcache\brzwlan.sys
[2013/01/10 22:56:54 | 000,010,368 | ---- | C] (Brother Industries Ltd.) -- D:\WINDOWS\System32\dllcache\brusbscn.sys
[2013/01/10 22:56:53 | 000,060,416 | ---- | C] (Brother Industries Ltd.) -- D:\WINDOWS\System32\dllcache\brserwdm.sys
[2013/01/10 22:56:53 | 000,011,008 | ---- | C] (Brother Industries Ltd.) -- D:\WINDOWS\System32\dllcache\brusbmdm.sys
[2013/01/10 22:56:52 | 000,009,728 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brserif.dll
[2013/01/10 22:56:52 | 000,005,120 | ---- | C] (Brother Industries,Ltd.) -- D:\WINDOWS\System32\dllcache\brscnrsm.dll
[2013/01/10 22:56:51 | 000,039,552 | ---- | C] (Brother Industries Ltd.) -- D:\WINDOWS\System32\dllcache\brparwdm.sys
[2013/01/10 22:56:50 | 000,003,168 | ---- | C] (Brother Industries Ltd.) -- D:\WINDOWS\System32\dllcache\brparimg.sys
[2013/01/10 22:56:49 | 000,041,472 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brmfusb.dll
[2013/01/10 22:56:48 | 000,032,256 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brmfrsmg.exe
[2013/01/10 22:56:48 | 000,029,696 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brmflpt.dll
[2013/01/10 22:56:47 | 000,015,360 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brmfbidi.dll
[2013/01/10 22:56:45 | 000,012,160 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brfiltlo.sys
[2013/01/10 22:56:45 | 000,003,968 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brfiltup.sys
[2013/01/10 22:56:44 | 000,012,800 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brevif.dll
[2013/01/10 22:56:44 | 000,002,944 | ---- | C] (Brother Industries Ltd.) -- D:\WINDOWS\System32\dllcache\brfilt.sys
[2013/01/10 22:56:43 | 000,019,456 | ---- | C] (Brother Industries, Ltd.) -- D:\WINDOWS\System32\dllcache\brbidiif.dll
[2013/01/10 22:56:43 | 000,009,728 | ---- | C] (Brother Industries Ltd.) -- D:\WINDOWS\System32\dllcache\brcoinst.dll
[2013/01/10 22:56:37 | 000,871,388 | ---- | C] (BCM) -- D:\WINDOWS\System32\dllcache\bcmdm.sys
[2013/01/10 22:56:31 | 000,342,336 | ---- | C] (3Dfx Interactive, Inc.) -- D:\WINDOWS\System32\dllcache\banshee.dll
[2013/01/10 22:56:31 | 000,036,128 | ---- | C] (3Dfx Interactive, Inc.) -- D:\WINDOWS\System32\dllcache\banshee.sys
[2013/01/10 22:56:29 | 000,089,952 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\b1cbase.sys
[2013/01/10 22:56:28 | 000,036,992 | ---- | C] (Aztech Systems Ltd) -- D:\WINDOWS\System32\dllcache\aztw2320.sys
[2013/01/10 22:56:27 | 000,144,384 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\avmenum.dll
[2013/01/10 22:56:27 | 000,037,568 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\avmwan.sys
[2013/01/10 22:56:26 | 000,087,552 | ---- | C] (AVM GmbH) -- D:\WINDOWS\System32\dllcache\avmcoxp.dll
[2013/01/10 22:55:56 | 000,097,354 | ---- | C] (Bay Networks, Inc.) -- D:\WINDOWS\System32\dllcache\aspndis3.sys
[2013/01/10 22:55:49 | 000,016,969 | ---- | C] (AmbiCom, Inc.) -- D:\WINDOWS\System32\dllcache\amb8002.sys
[2013/01/04 17:23:12 | 000,000,000 | ---D | C] -- D:\Program Files\Dropbox
[2009/02/24 10:35:34 | 000,025,600 | ---- | C] (Microsoft Corporation) -- D:\Documents and Settings\Greg\usbsermptxp.sys
[2009/02/24 10:35:34 | 000,022,768 | ---- | C] (Microsoft Corporation) -- D:\Documents and Settings\Greg\usbsermpt.sys
[4 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2013/01/14 19:11:00 | 000,000,830 | ---- | M] () -- D:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2013/01/14 19:10:00 | 000,000,974 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-776561741-1060284298-839522115-1004UA.job
[2013/01/14 19:01:36 | 000,013,646 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl
[2013/01/14 18:53:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\Greg\Desktop\OTL.exe
[2013/01/14 10:38:00 | 000,000,316 | -H-- | M] () -- D:\WINDOWS\tasks\avast! Emergency Update.job
[2013/01/13 20:10:00 | 000,000,922 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-776561741-1060284298-839522115-1004Core.job
[2013/01/13 15:35:18 | 000,000,286 | ---- | M] () -- D:\WINDOWS\tasks\ExpressZipReminder.job
[2013/01/13 12:00:00 | 000,000,942 | ---- | M] () -- D:\WINDOWS\tasks\Ad-Aware Antivirus Scheduled Scan.job
[2013/01/12 09:59:00 | 000,000,486 | ---- | M] () -- D:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2013/01/12 04:13:50 | 000,002,304 | ---- | M] () -- D:\Documents and Settings\Greg\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/01/12 04:13:50 | 000,002,286 | ---- | M] () -- D:\Documents and Settings\Greg\Desktop\Google Chrome.lnk
[2013/01/11 17:56:17 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat
[2013/01/11 17:47:23 | 000,001,324 | ---- | M] () -- D:\WINDOWS\System32\d3d9caps.dat
[2013/01/09 21:32:09 | 000,473,482 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat
[2013/01/09 21:32:09 | 000,076,410 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat
[2013/01/04 17:23:23 | 000,001,030 | ---- | M] () -- D:\Documents and Settings\Greg\Start Menu\Programs\Startup\Dropbox.lnk
[2013/01/04 17:22:57 | 000,001,012 | ---- | M] () -- D:\Documents and Settings\Greg\Desktop\Dropbox.lnk
[2013/01/01 21:14:43 | 000,095,839 | ---- | M] () -- D:\Documents and Settings\Greg\Desktop\50de70fe182af.jpg
[2012/12/27 08:39:00 | 000,000,284 | ---- | M] () -- D:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2012/12/24 14:04:42 | 000,024,653 | ---- | M] () -- D:\Documents and Settings\Greg\My Documents\4f3246cbff839ed97255140027af3837-the-top-20-nerdy-pictures-of-2012.jpg
[2012/12/23 21:59:04 | 000,082,993 | ---- | M] () -- D:\Documents and Settings\Greg\My Documents\532433_10151149098292413_1893527588_n.png
[2012/12/21 20:51:25 | 000,168,304 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2012/12/20 22:20:18 | 000,002,222 | ---- | M] () -- D:\Documents and Settings\Greg\.recently-used.xbel
[2012/12/20 20:40:00 | 000,000,593 | ---- | M] () -- D:\WINDOWS\imsins.BAK
[4 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ========== [2013/01/13 15:35:18 | 000,000,286 | ---- | C] () -- D:\WINDOWS\tasks\ExpressZipReminder.job
[2013/01/13 15:35:05 | 038,457,344 | ---- | C] () -- D:\Documents and Settings\Greg\Desktop\WD SmartWare Upgrader.msi
[2013/01/10 23:26:42 | 000,018,944 | ---- | C] () -- D:\WINDOWS\System32\dllcache\xrxscnui.dll
[2013/01/10 23:26:38 | 000,027,648 | ---- | C] () -- D:\WINDOWS\System32\dllcache\xrxftplt.exe
[2013/01/10 23:13:42 | 000,033,280 | ---- | C] () -- D:\WINDOWS\System32\dllcache\psisrndr.ax
[2013/01/10 23:13:38 | 000,363,520 | ---- | C] () -- D:\WINDOWS\System32\dllcache\psisdecd.dll
[2013/01/10 23:08:44 | 000,056,832 | ---- | C] () -- D:\WINDOWS\System32\dllcache\msdvbnp.ax
[2013/01/10 23:05:27 | 000,134,339 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imekr.lex
[2013/01/10 23:03:18 | 000,165,888 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hpgt53.dll
[2013/01/10 23:03:13 | 000,093,696 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hpgt42.dll
[2013/01/10 23:03:09 | 000,101,376 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hpgt34.dll
[2013/01/10 23:03:05 | 000,089,088 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hpgt33.dll
[2013/01/10 23:03:00 | 000,083,968 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hpgt21.dll
[2013/01/10 23:02:44 | 000,108,827 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hanja.lex
[2013/01/10 22:59:31 | 000,029,768 | ---- | C] () -- D:\WINDOWS\System32\dllcache\divasu.dll
[2013/01/10 22:59:30 | 000,037,962 | ---- | C] () -- D:\WINDOWS\System32\dllcache\divaprop.dll
[2013/01/10 22:59:29 | 000,006,216 | ---- | C] () -- D:\WINDOWS\System32\dllcache\divaci.dll
[2013/01/10 22:56:16 | 000,026,624 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ativxbar.sys
[2013/01/10 22:56:16 | 000,023,552 | ---- | C] () -- D:\WINDOWS\System32\dllcache\atixbar.sys
[2013/01/10 22:56:15 | 000,019,456 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ativttxx.sys
[2013/01/10 22:56:14 | 000,009,472 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ativmdcd.sys
[2013/01/10 22:56:13 | 000,017,152 | ---- | C] () -- D:\WINDOWS\System32\dllcache\atitvsnd.sys
[2013/01/10 22:56:13 | 000,017,152 | ---- | C] () -- D:\WINDOWS\System32\dllcache\atitunep.sys
[2013/01/10 22:56:12 | 000,026,880 | ---- | C] () -- D:\WINDOWS\System32\dllcache\atirtsnd.sys
[2013/01/10 22:56:11 | 000,049,920 | ---- | C] () -- D:\WINDOWS\System32\dllcache\atirtcap.sys
[2013/01/10 22:56:10 | 000,010,240 | ---- | C] () -- D:\WINDOWS\System32\dllcache\atipcxxx.sys
[2013/01/10 22:56:03 | 000,046,464 | ---- | C] () -- D:\WINDOWS\System32\dllcache\atibt829.sys
[2013/01/01 21:14:39 | 000,095,839 | ---- | C] () -- D:\Documents and Settings\Greg\Desktop\50de70fe182af.jpg
[2012/12/24 14:04:41 | 000,024,653 | ---- | C] () -- D:\Documents and Settings\Greg\My Documents\4f3246cbff839ed97255140027af3837-the-top-20-nerdy-pictures-of-2012.jpg
[2012/12/23 21:59:03 | 000,082,993 | ---- | C] () -- D:\Documents and Settings\Greg\My Documents\532433_10151149098292413_1893527588_n.png
[2012/12/20 22:20:18 | 000,002,222 | ---- | C] () -- D:\Documents and Settings\Greg\.recently-used.xbel
[2012/09/18 18:12:33 | 000,142,999 | ---- | C] () -- D:\WINDOWS\hpwins28.dat.temp
[2012/09/18 18:12:33 | 000,000,418 | ---- | C] () -- D:\WINDOWS\hpwmdl28.dat.temp
[2012/09/09 17:59:19 | 000,207,261 | ---- | C] () -- D:\WINDOWS\hpwins28.dat
[2012/09/09 17:59:19 | 000,000,418 | ---- | C] () -- D:\WINDOWS\hpwmdl28.dat
[2012/08/19 22:56:26 | 000,399,568 | ---- | C] () -- D:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-776561741-1060284298-839522115-1004-0.dat
[2012/06/05 23:47:52 | 000,180,106 | ---- | C] () -- D:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
[2012/02/15 18:29:33 | 000,003,072 | ---- | C] () -- D:\WINDOWS\System32\iacenc.dll
[2011/09/07 18:58:02 | 000,003,863 | ---- | C] () -- D:\Documents and Settings\Greg\Application Data\evpro32.prf
[2011/08/29 18:31:41 | 000,002,528 | ---- | C] () -- D:\WINDOWS\FCIC.INI
[2011/06/28 19:04:23 | 000,000,010 | ---- | C] () -- D:\Documents and Settings\Greg\USB001
[2011/06/25 11:26:23 | 000,000,064 | ---- | C] () -- D:\WINDOWS\System32\rp_stats.dat
[2011/06/25 11:26:23 | 000,000,044 | ---- | C] () -- D:\WINDOWS\System32\rp_rules.dat
[2010/01/11 18:56:49 | 000,000,041 | -HS- | C] () -- D:\Documents and Settings\All Users\Application Data\.zreglib
[2009/11/22 16:02:43 | 000,000,000 | ---- | C] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\prvlcl.dat
[2009/11/17 00:26:35 | 000,000,000 | ---- | C] () -- D:\Documents and Settings\All Users\Application Data\LauncherAccess.dt
[2009/06/03 19:13:54 | 000,000,034 | ---- | C] () -- D:\Documents and Settings\Greg\jagex_runescape_preferences.dat
[2009/05/16 17:49:12 | 000,030,262 | -H-- | C] () -- D:\Documents and Settings\Greg\hpothb07.tif
[2009/05/16 17:49:12 | 000,004,510 | -H-- | C] () -- D:\Documents and Settings\Greg\hpothb07.dat
[2009/02/24 10:44:04 | 000,009,232 | ---- | C] () -- D:\Documents and Settings\Greg\USB_MOT_BRIT.INF
[2009/02/24 10:44:04 | 000,005,813 | ---- | C] () -- D:\Documents and Settings\Greg\USB_MOT_A1000.INF
[2009/02/24 10:44:01 | 000,014,294 | ---- | C] () -- D:\Documents and Settings\Greg\1235490241-oem34.PNF
[2009/02/24 10:44:01 | 000,012,820 | ---- | C] () -- D:\Documents and Settings\Greg\1235490241-oem36.PNF
[2009/02/24 10:44:01 | 000,012,546 | ---- | C] () -- D:\Documents and Settings\Greg\1235490241-oem38.PNF
[2009/02/24 10:44:01 | 000,007,195 | ---- | C] () -- D:\Documents and Settings\Greg\1235490241-oem34.inf
[2009/02/24 10:44:01 | 000,005,891 | ---- | C] () -- D:\Documents and Settings\Greg\1235490241-oem38.inf
[2009/02/24 10:44:01 | 000,005,877 | ---- | C] () -- D:\Documents and Settings\Greg\1235490241-oem36.inf
[2009/02/24 10:35:34 | 000,006,947 | ---- | C] () -- D:\Documents and Settings\Greg\USBMOT2000.INF
[2009/02/24 10:35:34 | 000,006,009 | ---- | C] () -- D:\Documents and Settings\Greg\USBMOT2000XP.INF
[2009/02/24 10:35:34 | 000,005,877 | ---- | C] () -- D:\Documents and Settings\Greg\USB_CMCS_2000.INF
[2009/02/24 10:35:23 | 000,013,698 | ---- | C] () -- D:\Documents and Settings\Greg\1235489723-oem38.PNF
[2009/02/24 10:35:23 | 000,005,939 | ---- | C] () -- D:\Documents and Settings\Greg\1235489723-oem38.inf
[2009/02/24 10:35:22 | 000,045,400 | ---- | C] () -- D:\Documents and Settings\Greg\1235489722-oem36.PNF
[2009/02/24 10:35:22 | 000,030,362 | ---- | C] () -- D:\Documents and Settings\Greg\1235489722-oem34.PNF
[2009/02/24 10:35:22 | 000,029,856 | ---- | C] () -- D:\Documents and Settings\Greg\1235489722-oem36.inf
[2009/02/24 10:35:22 | 000,021,940 | ---- | C] () -- D:\Documents and Settings\Greg\1235489722-oem34.inf
[2009/01/06 09:01:47 | 000,048,586 | ---- | C] () -- D:\Documents and Settings\All Users\Application Data\xpif-v02030a.dtd
[2008/06/20 09:36:54 | 000,000,198 | ---- | C] () -- D:\Documents and Settings\Greg\vgalusr1.vr
[2008/06/07 18:38:25 | 000,197,120 | ---- | C] () -- D:\Documents and Settings\Greg\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ========== [2008/06/07 15:49:14 | 000,000,227 | RHS- | M] () -- D:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008/04/13 19:12:05 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = D:\WINDOWS\system32\wbem\fastprox.dll -- [2009/02/09 07:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = D:\WINDOWS\system32\wbem\wbemess.dll -- [2008/04/13 19:12:08 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ========== [2012/11/09 23:10:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
[2008/06/14 18:41:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\acccore
[2009/04/02 21:24:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Advanced Chemistry Development
[2009/03/16 21:07:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Age of Empires 3
[2010/05/05 21:33:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\AIM
[2011/04/20 13:44:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\AVAST Software
[2011/04/20 13:34:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\AVG10
[2011/04/19 18:29:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\avg9
[2009/02/24 10:50:22 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\BVRP Software
[2010/10/15 19:14:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Common Files
[2009/11/12 12:06:57 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\GARMIN
[2012/07/08 18:48:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\GFI Software
[2011/04/20 13:33:14 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\MFAData
[2011/03/18 19:33:32 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\NCH Swift Sound
[2008/06/07 15:50:57 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2010/04/15 21:53:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Power Soft
[2009/09/01 22:23:27 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Seagate
[2013/01/11 22:11:52 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\TEMP
[2009/09/21 08:49:12 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Viewpoint
[2013/01/13 15:56:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Western Digital
[2012/09/29 13:59:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\YTD Video Downloader
[2012/09/29 13:56:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\YTD YouTube Downloader & Converter
[2009/03/20 20:42:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[2010/04/02 20:31:56 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2009/09/11 20:31:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/04/15 13:21:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2009/01/26 20:17:52 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\3M
[2008/06/14 18:42:04 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\acccore
[2008/06/20 14:48:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Acertant
[2012/07/04 20:31:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Ad-Aware Antivirus
[2009/04/02 21:23:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Advanced Chemistry Development
[2008/06/16 21:49:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Amazon
[2011/04/19 18:39:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\AVG10
[2009/10/26 19:31:35 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\AVG9
[2012/03/29 18:46:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\avidemux
[2009/06/29 08:36:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\BITRAR
[2011/02/10 18:46:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Broad Intelligence
[2010/06/05 22:22:04 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2013/01/14 14:37:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Dropbox
[2013/01/13 21:53:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\EndNote
[2010/04/24 07:44:47 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Facebook
[2011/08/29 18:31:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\FirstClass
[2010/09/29 20:08:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\FreeFLVConverter
[2011/06/20 20:27:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\GARMIN
[2012/12/20 22:20:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\gtk-2.0
[2010/01/11 18:40:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\ImgBurn
[2010/06/18 21:36:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\InqScribe
[2012/08/19 18:24:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Leadertech
[2009/09/27 22:49:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\LimeWire
[2011/03/17 20:08:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\MPEG Streamclip
[2011/05/19 17:53:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\OpenOffice.org
[2010/04/15 22:11:48 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Samsung
[2012/01/03 20:59:17 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Search Settings
[2009/04/29 10:12:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Thunderbird
[2008/11/03 10:11:29 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\Viewpoint
[2011/03/19 13:51:26 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\WinFF
[2011/11/06 19:30:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Greg\Application Data\YouTube Downloader
========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 95 bytes -> D:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
@Alternate Data Stream - 24 bytes -> D:\WINDOWS:1841341079890ECC
< End of report >