Here is the one that was saved to the desk top. Thanks for your help
OTL logfile created on: 3/24/2010 11:58:55 AM - Run 4
OTL by OldTimer - Version 3.1.28.0 Folder = C:\Documents and Settings\Head user\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 57.00% Memory free
2.00 Gb Paging File | 1.00 Gb Available in Paging File | 80.00% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 70.63 Gb Total Space | 8.07 Gb Free Space | 11.43% Space Free | Partition Type: NTFS
Drive D: | 3.89 Gb Total Space | 1.78 Gb Free Space | 45.72% Space Free | Partition Type: FAT32
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Drive G: | 97.66 Gb Total Space | 59.63 Gb Free Space | 61.06% Space Free | Partition Type: NTFS
Drive H: | 70.02 Gb Total Space | 36.98 Gb Free Space | 52.82% Space Free | Partition Type: NTFS
Drive I: | 6.67 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive K: | 7.47 Gb Total Space | 7.47 Gb Free Space | 99.92% Space Free | Partition Type: FAT32
Computer Name: SHERRIS
Current User Name: Head user
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ========== PRC - [2010/02/10 16:12:40 | 000,549,376 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Head user\Desktop\OTL.exe
PRC - [2010/01/28 17:09:28 | 000,040,384 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2009/05/19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
PRC - [2008/09/08 10:21:05 | 000,112,072 | ---- | M] (Viewpoint Corporation) -- C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
PRC - [2008/09/08 10:19:23 | 000,024,652 | ---- | M] (Viewpoint Corporation) -- C:\Program Files\Viewpoint\Common\ViewpointService.exe
PRC - [2008/04/13 19:12:30 | 000,420,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntvdm.exe
PRC - [2008/04/13 19:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/02/27 04:24:12 | 000,020,480 | ---- | M] (Intuit) -- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
PRC - [2007/09/06 13:28:18 | 000,110,592 | ---- | M] (Apple, Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2006/10/23 07:50:35 | 000,046,640 | R--- | M] (AOL LLC) -- C:\Program Files\Common Files\AOL\acs\AOLacsd.exe
PRC - [2003/10/06 15:16:00 | 000,081,920 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2003/05/16 05:04:26 | 000,303,104 | ---- | M] (Lexmark International, Inc.) -- C:\WINDOWS\system32\LEXBCES.EXE
PRC - [2003/05/16 05:01:36 | 000,174,592 | ---- | M] (Lexmark International, Inc.) -- C:\WINDOWS\system32\LEXPPS.EXE
PRC - [2001/08/17 17:36:54 | 000,086,016 | ---- | M] (PCtel, Inc.) -- C:\WINDOWS\system32\pctspk.exe
PRC - [2001/08/17 17:36:42 | 000,024,064 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\devldr32.exe
========== Modules (SafeList) ========== MOD - [2010/02/10 16:12:40 | 000,549,376 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Head user\Desktop\OTL.exe
MOD - [2008/04/13 19:12:08 | 000,152,576 | ---- | M] () -- C:\WINDOWS\oxilayotevokomas.dll
========== Win32 Services (SafeList) ========== SRV - [2010/01/28 17:09:28 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
SRV - [2010/01/28 17:09:28 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
SRV - [2010/01/28 17:09:28 | 000,040,384 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2009/11/06 04:10:37 | 000,182,768 | ---- | M] (Google) [On_Demand | Stopped] -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc)
SRV - [2009/05/19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2008/09/08 10:19:23 | 000,024,652 | ---- | M] (Viewpoint Corporation) [Auto | Running] -- C:\Program Files\Viewpoint\Common\ViewpointService.exe -- (Viewpoint Manager Service)
SRV - [2008/02/27 04:24:12 | 000,020,480 | ---- | M] (Intuit) [Auto | Running] -- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe -- (QBCFMonitorService)
SRV - [2007/12/11 13:10:16 | 000,504,104 | ---- | M] (Apple Inc.) [On_Demand | Stopped] -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service)
SRV - [2007/09/06 13:28:18 | 000,110,592 | ---- | M] (Apple, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2007/07/06 18:28:44 | 000,031,768 | ---- | M] (Memeo) [Disabled | Stopped] -- C:\Program Files\Memeo\AutoSync\MemeoService.exe -- (AutoSyncService)
SRV - [2007/05/24 07:08:44 | 000,061,440 | ---- | M] (Intuit Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe -- (QBFCService)
SRV - [2007/03/23 13:14:08 | 000,267,824 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -- (NMIndexingService)
SRV - [2007/03/23 13:10:32 | 000,779,824 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService)
SRV - [2006/10/23 07:50:35 | 000,046,640 | R--- | M] (AOL LLC) [Auto | Running] -- C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe -- (AOL ACS)
SRV - [2005/04/14 11:09:28 | 000,068,096 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe -- (Macromedia Licensing Service)
SRV - [2005/04/04 00:41:10 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe -- (IDriverT)
SRV - [2003/10/06 15:16:00 | 000,081,920 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\WINDOWS\system32\nvsvc32.exe -- (NVSvc)
SRV - [2003/05/16 05:04:26 | 000,303,104 | ---- | M] (Lexmark International, Inc.) [Auto | Running] -- C:\WINDOWS\system32\LEXBCES.EXE -- (LexBceS)
SRV - [2001/08/29 17:34:02 | 000,221,184 | ---- | M] (NeoPlanet) [On_Demand | Stopped] -- C:\Program Files\COMPAQ\Compaq Advisor\bin\compaq-rba.exe -- (Compaq_RBA)
SRV - [2001/08/17 17:36:54 | 000,086,016 | ---- | M] (PCtel, Inc.) [Auto | Running] -- C:\WINDOWS\system32\pctspk.exe -- (Pctspk)
========== Driver Services (SafeList) ========== DRV - [2010/01/28 16:57:55 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2010/01/28 16:57:34 | 000,163,280 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswSP.sys -- (aswSP)
DRV - [2010/01/28 16:54:42 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2010/01/28 16:54:16 | 000,100,432 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2010/01/28 16:54:05 | 000,019,024 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2010/01/28 16:53:50 | 000,028,240 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2008/04/13 13:46:20 | 000,048,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\61883.sys -- (61883)
DRV - [2008/04/13 13:46:20 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\avc.sys -- (Avc)
DRV - [2008/04/13 13:46:09 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\msdv.sys -- (MSDV)
DRV - [2008/04/13 13:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2008/04/13 13:36:39 | 000,043,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\amdagp.sys -- (amdagp)
DRV - [2007/11/13 05:25:53 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv)
DRV - [2007/07/18 13:08:44 | 000,047,360 | ---- | M] (VSO Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pcouffin.sys -- (pcouffin)
DRV - [2006/10/04 21:42:42 | 000,002,560 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cdralw2k.sys -- (Cdralw2k)
DRV - [2006/10/04 21:42:42 | 000,002,432 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cdr4_xp.sys -- (Cdr4_xp)
DRV - [2006/09/27 16:53:22 | 000,036,560 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\PxHelp20.sys -- (PxHelp20)
DRV - [2006/09/19 16:44:04 | 000,015,664 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2006/09/07 22:16:00 | 000,010,112 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM)
DRV - [2006/05/10 16:22:26 | 000,022,842 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8150.SYS -- (USB-100)
DRV - [2004/08/04 00:31:32 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rtl8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2004/02/09 12:06:22 | 000,015,360 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NetMotCM.sys -- (ndiscm)
DRV - [2003/12/04 12:09:44 | 000,263,296 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\SYMTDI.SYS -- (SYMTDI)
DRV - [2003/12/04 12:09:42 | 000,016,288 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\SYMREDRV.SYS -- (SYMREDRV)
DRV - [2003/12/04 12:09:38 | 000,051,520 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\SYMNDIS.SYS -- (SYMNDIS)
DRV - [2003/12/04 12:09:36 | 000,164,512 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\SYMFW.SYS -- (SYMFW)
DRV - [2003/12/04 12:09:34 | 000,010,688 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\SYMDNS.SYS -- (SYMDNS)
DRV - [2003/12/04 11:33:20 | 000,011,264 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\asapiW2k.sys -- (ASAPIW2k)
DRV - [2003/10/06 15:16:00 | 001,550,043 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2003/01/10 16:13:04 | 000,033,588 | R--- | M] (America Online, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wanatw4.sys -- (wanatw) WAN Miniport (ATW)
DRV - [2002/06/13 16:08:46 | 000,014,604 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc)
DRV - [2002/01/23 10:40:30 | 000,206,208 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\UdfReadr_xp.sys -- (UdfReadr_xp)
DRV - [2002/01/23 10:38:54 | 000,233,984 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\Cdudf_xp.sys -- (cdudf_xp)
DRV - [2002/01/23 10:30:30 | 000,024,470 | ---- | M] (Roxio) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Dvd_2k.sys -- (dvd_2K)
DRV - [2002/01/23 10:30:20 | 000,024,918 | ---- | M] (Roxio) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Mmc_2k.sys -- (mmc_2K)
DRV - [2002/01/23 10:30:10 | 000,107,430 | ---- | M] (Roxio) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\pwd_2K.sys -- (pwd_2k)
DRV - [2001/09/17 17:14:02 | 000,032,592 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\atinxsxx.sys -- (ATIXSAudio)
DRV - [2001/09/17 17:13:42 | 000,011,760 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\atinpdxx.sys -- (PCDCODEC)
DRV - [2001/09/17 17:13:38 | 000,011,280 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\atinmdxx.sys -- (MVDCODEC)
DRV - [2001/09/17 17:13:32 | 000,032,848 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\atinraxx.sys -- (ATIVRAXX)
DRV - [2001/09/17 17:12:02 | 000,065,104 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\atinrvxx.sys -- (atinrvxx)
DRV - [2001/09/17 17:11:06 | 000,032,336 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\atintuxx.sys -- (ATITUNEP)
DRV - [2001/09/14 17:32:08 | 000,337,472 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2001/08/23 14:00:00 | 000,022,400 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SbcpHid.sys -- (SbcpHid)
DRV - [2001/08/18 07:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink)
DRV - [2001/08/17 14:56:16 | 000,007,552 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sonypvu1.sys -- (SONYPVU1) Sony USB Filter Driver (SONYPVU1)
DRV - [2001/08/17 14:52:22 | 000,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\ultra.sys -- (ultra)
DRV - [2001/08/17 08:28:16 | 000,397,502 | ---- | M] (PCtel, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\vpctcom.sys -- (Vpctcom)
DRV - [2001/08/17 08:28:16 | 000,064,605 | ---- | M] (PCtel, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\vvoice.sys -- (Vvoice)
DRV - [2001/08/17 08:28:14 | 000,604,253 | ---- | M] (PCTEL, INC.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\vmodem.sys -- (Vmodem)
DRV - [2001/08/17 08:28:14 | 000,112,574 | ---- | M] (PCTEL, INC.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptserlp.sys -- (Ptserlp)
DRV - [2001/08/17 07:49:48 | 000,026,624 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ativxbar.sys -- (ATIVXSXX) ATI Audio Crossbar (ATIVXBAR)
DRV - [2001/08/17 07:49:36 | 000,010,240 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\atipcxxx.sys -- (ATIPCXXX)
DRV - [2001/08/17 07:49:12 | 000,049,920 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\atirtcap.sys -- (ATIVRVXX) ATI Rage Theatre Video (ATIRTCAP)
DRV - [2001/08/17 07:19:34 | 000,036,480 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sfmanm.sys -- (sfman) Creative SoundFont Manager Driver (WDM)
DRV - [2001/08/17 07:19:28 | 000,006,912 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctlfacem.sys -- (emu10k1) Creative Interface Manager Driver (WDM)
DRV - [2001/08/17 07:19:26 | 000,283,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emu10k1m.sys -- (emu10k) Creative SB Live! (WDM)
DRV - [2001/08/17 07:19:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk)
DRV - [2000/02/09 03:00:00 | 000,022,145 | ---- | M] (SHARP) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\sdcusb.sys -- (sdcusb)
DRV - [1999/09/10 13:06:00 | 000,025,244 | ---- | M] (Adaptec) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ASPI32.SYS -- (ASPI32)
DRV - [1999/07/31 09:11:54 | 000,058,304 | ---- | M] (Sharp Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\VSP1284D.SYS -- (VSP1284D)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://store.presario.net/scripts/redirectors/presario/storeredir2.dll?s=consumerfav&c=3c01&lc=0409IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Firefox\Extensions\\{CEF4EBAD-36B1-46D8-B96E-F2B9FAFAEE94}: C:\Documents and Settings\Head user\Local Settings\Application Data\{CEF4EBAD-36B1-46D8-B96E-F2B9FAFAEE94} [2010/02/10 04:43:01 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{96504C2C-BFE2-4AF2-9C25-2240609A7995}: C:\Documents and Settings\MARK STEFFEN\Local Settings\Application Data\{96504C2C-BFE2-4AF2-9C25-2240609A7995} [2010/02/10 15:44:45 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 2.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/02/10 19:10:08 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 2.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/11/19 17:39:30 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Netscape 6 6.1\Extensions\\Components: C:\Program Files\Netscape\Netscape 6\Components [2009/11/19 17:39:17 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Netscape 6 6.1\Extensions\\Plugins: C:\Program Files\Netscape\Netscape 6\Plugins [2009/11/19 17:39:30 | 000,000,000 | ---D | M]
[2008/04/08 15:03:20 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2008/04/08 15:03:22 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2008/04/08 15:02:55 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\real-networks@partners.mozilla.com
[2008/04/08 15:03:01 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\talkback@mozilla.org
[2006/10/11 03:04:58 | 000,061,036 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\jar50.dll
[2006/10/11 03:04:59 | 000,048,742 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\jsd3250.dll
[2006/10/11 03:05:03 | 000,029,313 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\myspell.dll
[2006/10/11 03:05:03 | 000,041,082 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\spellchk.dll
[2006/10/11 03:04:58 | 000,166,510 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\xpinstal.dll
[2007/12/19 07:57:38 | 000,310,272 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
[2007/04/16 12:07:12 | 000,180,293 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll
[2008/07/21 16:02:22 | 000,001,982 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\AIM Search.xml
O1 HOSTS File: ([2010/01/25 15:02:01 | 000,008,246 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost #***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 2005-search.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 600pics.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 a1.interclick.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 absoƖute.net # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 ad.yieldmanager.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 alex.fileburst.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 all-tgp.org # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 all-websearch.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 apps.deskwizz.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 awmdabest.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 b.casalemedia.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 bailefunk.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 best4all.net # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 besthardcore.net # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 best-targeted-traffic.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 bins.elitemediagroup.net # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 bn.i-ru.net # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 bundleware.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 burnsrecyclinginc.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 campaigns.interclick.com # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 clickfast.biz # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 code.jcash.biz # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 code.trasferimento.biz # ***Inserted By STOPzilla***
O1 - Hosts: 127.0.0.1 command.adservs.com # ***Inserted By STOPzilla***
O1 - Hosts: 114 more lines...
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (AOL Toolbar Loader) - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL LLC)
O2 - BHO: (ST) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.)
O2 - BHO: (MSNToolBandBHO) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll (Microsoft Corporation)
O2 - BHO: (CNavExtBho Class) - {BDF3E430-B101-42AD-A544-FADC6B084872} - G:\Program FilesFromC31804\Norton AntiVirus\NAVShExt.dll (Symantec Corporation)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (AIM Search) - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll (America Online, Inc)
O3 - HKLM\..\Toolbar: (Norton AntiVirus) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - G:\Program FilesFromC31804\Norton AntiVirus\NAVShExt.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (MSN) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL LLC)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Norton AntiVirus) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - G:\Program FilesFromC31804\Norton AntiVirus\NAVShExt.dll (Symantec Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL LLC)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [Ypigonorapule] C:\WINDOWS\oxilayotevokomas.DLL ()
O4 - HKLM..\RunOnceEx: [Register Homesite+.exe] C:\Program Files\Macromedia\HomeSite+\Homesite+.exe (Macromedia, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll (Google Inc.)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\TV\EXPLBAR.DLL (ATI Technologies Inc.)
O9 - Extra Button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - Reg Error: Value error. File not found
O9 - Extra Button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - Reg Error: Value error. File not found
O15 - HKLM\..Trusted Domains: buy-internetsecurity10.com ([]http in Trusted sites)
O15 - HKLM\..Trusted Domains: buy-is2010.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKCU\..Trusted Domains: buy-internetsecurity10.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: buy-is2010.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: is10-soft-download.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: is-software-download.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: is-software-download25.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71}
http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB (Reg Error: Key error.)
O16 - DPF: {33564D57-9980-0010-8000-00AA00389B71}
http://codecs.microsoft.com/codecs/i386/wmv9dmo.cab (Reg Error: Key error.)
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C}
http://a1408.g.akamai.net/7/1408/9955/20031016/akamai.info.apple.com/iTunes4/WW/win/061-0848.20031022.TtzS4/iTunesSetup.exe (Reg Error: Key error.)
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}
http://download.av.aol.com/molbin/shared/mcinsctl/en-us/4,0,0,83/mcinsctl.cab (Reg Error: Key error.)
O16 - DPF: {8EF27A70-DD04-11D6-B7F6-00A0C9CD5F8A}
http://www.quikshield.com/qshsetup.exe (Reg Error: Key error.)
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68}
http://www.napster.com/client/isetup.cab (InstallShield International Setup Player)
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F}
http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37704.665775463 (Reg Error: Key error.)
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389}
http://download.av.aol.com/molbin/shared/mcgdmgr/en-us/1,0,0,20/mcgdmgr.cab (Reg Error: Key error.)
O16 - DPF: {CA034DCC-A580-4333-B52F-15F98C42E04C}
https://www.stopzilla.com/_download/Auto_Installer/dwnldr.cab (Downloader Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: Microsoft XML Parser for Java Reg Error: Value error. (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.87.77.134 68.87.72.134 192.168.1.1 68.87.77.134 68.87.72.134
O18 - Protocol\Handler\intu-help-qb1 {9B0F96C7-2E4B-433e-ABF3-043BA1B54AE3} - C:\Program Files\Intuit\QuickBooks 2008\HelpAsyncPluggableProtocol.dll (TODO:
)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper: C:\WINDOWS\Compaq Sapphire.BMP
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2003/03/31 19:20:49 | 000,000,038 | ---- | M] () - C:\autoexec.001 -- [ NTFS ]
O32 - AutoRun File - [2003/04/15 12:00:01 | 000,000,063 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2008/05/06 07:26:23 | 000,000,309 | R--- | M] () - I:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\I\Shell\AutoRun\command - "" = I:\wd_windows_tools\WDEULA.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010/03/23 16:57:08 | 000,000,000 | ---D | C] -- C:\Avenger
[2010/03/23 16:34:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Head user\Application Data\Malwarebytes
[2010/03/23 16:10:15 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Head user\Recent
[2010/03/23 16:08:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Head user\Application Data\Yahoo!
[2010/03/23 16:08:24 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2010/03/23 16:08:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010/03/23 16:08:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Head user\Application Data\U3
[2010/03/23 03:31:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2010/03/23 03:31:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2010/03/23 03:30:43 | 003,558,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\moviemk.exe
[2010/03/23 03:07:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Head user\Local Settings\Application Data\Wildtangent
[2010/02/25 03:27:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\F011B7271E6
[2010/02/23 18:38:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MpEngineStore
[2010/01/27 04:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2009/12/16 07:24:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Temp
[2009/11/19 17:35:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2009/11/19 17:12:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2009/04/25 23:07:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Supportwaybend
[2008/08/10 22:28:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\AOL
[2008/02/04 04:36:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Intuit
[2008/01/31 16:45:40 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2007/03/20 02:36:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Viewpoint
[2006/04/19 10:15:54 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2004/08/11 15:15:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Hotbar
[2004/07/05 18:32:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Macromedia
[2004/07/05 18:29:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\AOL
[2003/07/02 21:53:41 | 000,770,048 | ---- | C] (Frontcode Technologies) -- C:\Program Files\winmx331.exe
========== Files - Modified Within 30 Days ==========
[2010/03/24 12:00:00 | 000,000,284 | -H-- | M] () -- C:\WINDOWS\tasks\B3E9628E9143106A.job
[2010/03/24 12:00:00 | 000,000,280 | -H-- | M] () -- C:\WINDOWS\tasks\95DC67C293743256.job
[2010/03/24 12:00:00 | 000,000,256 | -H-- | M] () -- C:\WINDOWS\tasks\A58A1D709185901C.job
[2010/03/24 12:00:00 | 000,000,256 | -H-- | M] () -- C:\WINDOWS\tasks\632310D786C521EF.job
[2010/03/24 11:58:21 | 000,001,550 | ---- | M] () -- C:\WINDOWS\win.ini
[2010/03/24 11:58:21 | 000,000,659 | ---- | M] () -- C:\WINDOWS\PDOXWIN.INI
[2010/03/24 10:54:25 | 000,000,120 | ---- | M] () -- C:\WINDOWS\Afijefayo.dat
[2010/03/24 10:54:25 | 000,000,000 | ---- | M] () -- C:\WINDOWS\Vlilaxu.bin
[2010/03/24 10:54:15 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/03/24 10:54:14 | 000,000,452 | ---- | M] () -- C:\WINDOWS\tasks\RegCure Program Check.job
[2010/03/24 03:24:30 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/03/24 03:24:21 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/03/24 03:24:19 | 1341,771,776 | -HS- | M] () -- C:\hiberfil.sys
[2010/03/24 03:22:25 | 002,097,152 | -H-- | M] () -- C:\Documents and Settings\Head user\NTUSER.DAT
[2010/03/24 03:22:25 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Head user\ntuser.ini
[2010/03/24 03:05:09 | 000,000,127 | ---- | M] () -- C:\WINDOWS\System32\MRT.INI
[2010/03/23 18:55:08 | 000,000,852 | -HS- | M] () -- C:\Documents and Settings\All Users\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_.mkv
[2010/03/23 16:59:04 | 000,000,238 | -HS- | M] () -- C:\Documents and Settings\Head user\Local Settings\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_.mkv
[2010/03/23 16:59:04 | 000,000,238 | -HS- | M] () -- C:\Documents and Settings\Head user\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_.mkv
[2010/03/23 16:08:20 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Head user\Desktop\CCleaner.lnk
[2010/03/23 15:52:56 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2010/03/23 15:52:50 | 000,003,310 | ---- | M] () -- C:\WINDOWS\System32\warning.html
[2010/03/23 13:46:47 | 000,000,756 | ---- | M] () -- C:\Documents and Settings\Head user\Desktop\Internet Security 2010.lnk
[2010/03/23 05:43:50 | 000,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\atapi.sys
[2010/03/23 03:28:00 | 000,521,766 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/03/23 03:28:00 | 000,441,124 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/03/23 03:28:00 | 000,071,060 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/03/16 08:27:25 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\11833.exe
[2010/02/23 18:29:54 | 000,001,573 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\h8srtkrl32mainweq.dll
========== Files Created - No Company Name ==========
[2100/02/23 18:55:50 | 000,001,096 | ---- | C] () -- C:\WINDOWS\Lexmark_ICM.ini
[2010/03/23 16:08:20 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Head user\Desktop\CCleaner.lnk
[2010/03/23 14:54:08 | 1341,771,776 | -HS- | C] () -- C:\hiberfil.sys
[2010/03/23 03:24:48 | 000,003,310 | ---- | C] () -- C:\WINDOWS\System32\warning.html
[2010/03/16 08:27:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\11833.exe
[2010/02/23 18:38:06 | 000,000,127 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2010/02/21 00:17:28 | 000,004,608 | ---- | C] () -- C:\Documents and Settings\Head user\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/20 13:35:26 | 000,000,852 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_.mkv
[2010/02/20 13:35:26 | 000,000,238 | -HS- | C] () -- C:\Documents and Settings\Head user\Local Settings\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_.mkv
[2010/02/20 13:35:26 | 000,000,238 | -HS- | C] () -- C:\Documents and Settings\Head user\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_.mkv
[2010/02/20 13:35:10 | 000,990,720 | -HS- | C] () -- C:\Documents and Settings\Head user\Local Settings\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_8.avi
[2010/02/20 13:35:10 | 000,025,214 | -HS- | C] () -- C:\Documents and Settings\Head user\Local Settings\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_8.ico
[2010/02/20 13:35:10 | 000,025,214 | -HS- | C] () -- C:\Documents and Settings\Head user\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_8.ico
[2010/02/20 13:35:10 | 000,025,214 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_8.ico
[2010/02/20 13:35:09 | 000,990,720 | -HS- | C] () -- C:\Documents and Settings\Head user\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_8.avi
[2010/02/20 13:35:09 | 000,990,720 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\fc1212eb-4db7-4cd6-8204-15407f3a0a7e_8.avi
[2010/02/01 22:55:11 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2010/01/25 15:03:29 | 000,001,573 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\h8srtkrl32mainweq.dll
[2010/01/25 02:13:27 | 000,010,789 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\h8srtmainqt.dll
[2010/01/16 14:31:26 | 000,000,008 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\sysReserve.ini
[2009/10/14 16:01:15 | 000,000,295 | ---- | C] () -- C:\WINDOWS\AMIPRO2.INI
[2008/08/14 00:19:17 | 000,000,004 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2007/12/03 11:09:47 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2007/11/14 23:28:57 | 000,000,167 | ---- | C] () -- C:\WINDOWS\MPLAYER.INI
[2007/07/03 15:14:03 | 000,000,008 | ---- | C] () -- C:\WINDOWS\System32\PROTOCOL.INI
[2007/06/06 10:57:53 | 000,000,109 | ---- | C] () -- C:\WINDOWS\PControl.ini
[2006/10/26 18:40:04 | 000,000,422 | ---- | C] () -- C:\WINDOWS\videoimp.ini
[2006/09/26 14:42:42 | 000,087,220 | ---- | C] () -- C:\WINDOWS\System32\Evbro2.dll
[2006/09/26 14:42:42 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\Evbro232.dll
[2005/12/20 18:12:42 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2005/10/17 15:22:25 | 000,000,859 | ---- | C] () -- C:\WINDOWS\OS.INI
[2005/09/24 00:13:40 | 000,000,081 | ---- | C] () -- C:\WINDOWS\upst.ini
[2005/04/14 11:20:20 | 000,777,728 | ---- | C] () -- C:\WINDOWS\System32\SSLSVC.DLL
[2005/04/14 11:20:20 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\xmltok.dll
[2005/04/14 11:20:20 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\cfmsg.dll
[2005/04/14 11:20:20 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\xmlparse.dll
[2005/04/14 11:20:18 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\lang_cfml.dll
[2005/04/14 11:20:18 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\xml_datagrove.dll
[2004/11/30 19:34:11 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2004/10/22 14:50:44 | 000,000,090 | ---- | C] () -- C:\WINDOWS\pd1util.INI
[2004/09/10 10:17:37 | 000,057,977 | ---- | C] () -- C:\Program Files\fl_detection_kit_en.zip
[2004/09/01 13:15:18 | 000,000,020 | ---- | C] () -- C:\WINDOWS\TemplateWizard.INI
[2004/09/01 13:02:17 | 000,002,514 | ---- | C] () -- C:\WINDOWS\my.ini
[2004/08/12 15:37:55 | 000,000,041 | ---- | C] () -- C:\WINDOWS\crw.ini
[2004/08/12 15:37:23 | 000,000,975 | ---- | C] () -- C:\WINDOWS\ECAT.INI
[2004/07/16 21:00:46 | 000,000,045 | ---- | C] () -- C:\WINDOWS\GJGJIINK.ini
[2004/05/21 15:40:09 | 000,000,049 | ---- | C] () -- C:\WINDOWS\upth.ini
[2004/05/21 15:40:09 | 000,000,029 | ---- | C] () -- C:\WINDOWS\atid.ini
[2004/05/21 12:06:58 | 000,000,045 | ---- | C] () -- C:\WINDOWS\igsaw.ini
[2004/04/03 16:23:16 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\MSrev01.dll
[2004/02/11 13:11:53 | 000,000,093 | ---- | C] () -- C:\WINDOWS\System32\MSrev41.dll
[2003/12/25 00:16:42 | 000,000,000 | ---- | C] () -- C:\WINDOWS\MSREGUSR.INI
[2003/12/10 19:11:00 | 000,000,017 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2003/11/14 23:44:34 | 000,000,012 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\DirectCDUserNameE.txt
[2003/11/14 12:55:18 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxbfvs.dll
[2003/11/14 12:55:16 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\LXBFLCNP.DLL
[2003/11/14 12:54:49 | 000,000,188 | ---- | C] () -- C:\WINDOWS\System32\lxbfcoin.ini
[2003/10/06 15:16:00 | 000,027,136 | ---- | C] () -- C:\WINDOWS\System32\nvcod.dll
[2003/10/02 11:41:55 | 000,000,026 | ---- | C] () -- C:\WINDOWS\UP9ASP.INI
[2003/08/14 15:20:03 | 000,000,012 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\DirectCDUserNameF.txt
[2003/08/06 11:37:10 | 000,000,028 | ---- | C] () -- C:\WINDOWS\spiemon.ini
[2003/07/26 00:05:02 | 000,000,174 | ---- | C] () -- C:\WINDOWS\System32\mcini.ini
[2003/06/19 14:19:15 | 000,000,659 | ---- | C] () -- C:\WINDOWS\PDOXWIN.INI
[2003/06/19 14:19:15 | 000,000,497 | ---- | C] () -- C:\WINDOWS\PXDLITE.INI
[2003/06/19 14:19:15 | 000,000,108 | ---- | C] () -- C:\WINDOWS\MULTIHLP.INI
[2003/05/15 22:31:33 | 000,028,559 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2003/04/14 15:19:25 | 000,004,722 | ---- | C] () -- C:\WINDOWS\AmiVISD.ini
[2003/04/14 14:39:59 | 000,000,703 | ---- | C] () -- C:\WINDOWS\lotus.ini
[2003/04/14 14:39:59 | 000,000,236 | ---- | C] () -- C:\WINDOWS\winhelp.ini
[2003/04/14 14:39:58 | 000,000,185 | ---- | C] () -- C:\WINDOWS\AMISMART.INI
[2003/04/14 14:39:57 | 000,008,283 | ---- | C] () -- C:\WINDOWS\AMIDW.INI
[2003/04/14 14:39:57 | 000,000,898 | ---- | C] () -- C:\WINDOWS\AMIEQN.INI
[2003/04/14 14:39:57 | 000,000,104 | ---- | C] () -- C:\WINDOWS\AMIIMAGE.INI
[2003/04/14 14:39:56 | 000,023,822 | ---- | C] () -- C:\WINDOWS\AMIOW.INI
[2003/04/14 14:39:56 | 000,002,846 | ---- | C] () -- C:\WINDOWS\AMICALC.INI
[2003/04/14 14:39:55 | 000,011,208 | ---- | C] () -- C:\WINDOWS\AMIENV.DLL
[2003/04/14 14:39:55 | 000,010,014 | ---- | C] () -- C:\WINDOWS\AMILABEL.INI
[2003/04/14 14:39:55 | 000,005,909 | ---- | C] () -- C:\WINDOWS\AMIWP.INI
[2003/04/14 14:39:55 | 000,004,384 | ---- | C] () -- C:\WINDOWS\AMIPRO.INI
[2003/04/14 14:39:55 | 000,001,993 | ---- | C] () -- C:\WINDOWS\AMIIWP.INI
[2003/04/14 14:39:55 | 000,000,332 | ---- | C] () -- C:\WINDOWS\AMIFONT.INI
[2003/04/02 04:45:42 | 000,086,528 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll
[2003/04/02 01:22:58 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI
[2003/03/31 19:52:35 | 000,000,000 | ---- | C] () -- C:\WINDOWS\vstudio.INI
[2003/03/31 19:39:33 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsrex.INI
[2003/03/31 19:39:11 | 000,001,016 | ---- | C] () -- C:\WINDOWS\Ulead32.ini
[2003/03/31 19:39:11 | 000,000,259 | ---- | C] () -- C:\WINDOWS\vidwiz.ini
[2003/03/31 19:20:36 | 000,000,208 | ---- | C] () -- C:\WINDOWS\DmmYuv.ini
[2003/03/24 01:23:00 | 000,000,294 | ---- | C] () -- C:\WINDOWS\spipcl4a.ini
[2003/03/24 01:23:00 | 000,000,185 | ---- | C] () -- C:\WINDOWS\SHSFTSET.INI
[2003/03/02 02:14:41 | 000,000,116 | ---- | C] () -- C:\WINDOWS\POWERBAR.INI
[2003/03/02 02:14:41 | 000,000,047 | ---- | C] () -- C:\WINDOWS\MIDIPLAY.INI
[2003/03/02 02:14:41 | 000,000,047 | ---- | C] () -- C:\WINDOWS\CDPLAY.INI
[2003/03/02 02:14:41 | 000,000,046 | ---- | C] () -- C:\WINDOWS\WAVPLAY.INI
[2003/03/02 02:14:24 | 000,000,038 | ---- | C] () -- C:\WINDOWS\AUDIOMIX.INI
[2003/03/02 02:14:21 | 000,000,113 | ---- | C] () -- C:\WINDOWS\ORCH.INI
[2003/03/02 02:14:14 | 000,000,109 | ---- | C] () -- C:\WINDOWS\AUDIOVIW.ini
[2003/02/11 15:16:19 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ATIMMC.INI
[2003/02/02 04:40:32 | 000,000,078 | ---- | C] () -- C:\WINDOWS\psuite.ini
[2003/02/02 04:13:52 | 000,196,096 | ---- | C] () -- C:\WINDOWS\System32\MACD32.DLL
[2003/02/02 04:13:52 | 000,138,752 | ---- | C] () -- C:\WINDOWS\System32\MASE32.DLL
[2003/02/02 04:13:52 | 000,136,192 | ---- | C] () -- C:\WINDOWS\System32\MAMC32.DLL
[2003/02/02 04:13:52 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\MASD32.DLL
[2003/02/02 04:13:52 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\MA32.DLL
[2003/02/01 23:26:35 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2003/02/01 22:15:03 | 000,066,560 | ---- | C] () -- C:\WINDOWS\System32\atiyuv12.dll
[2003/02/01 22:15:03 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\Iyvu9_32.dll
[2003/02/01 22:14:55 | 000,009,136 | ---- | C] () -- C:\WINDOWS\System32\INETWH16.DLL
[2003/01/31 16:40:01 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2003/01/31 16:37:39 | 000,181,760 | ---- | C] () -- C:\WINDOWS\System32\patchw32.dll
[2003/01/31 16:36:13 | 000,000,757 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2003/01/31 08:19:32 | 000,017,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\atitunep.sys
[2003/01/31 08:19:31 | 000,049,920 | ---- | C] () -- C:\WINDOWS\System32\drivers\atirtcap.sys
[2003/01/31 08:19:30 | 000,026,880 | ---- | C] () -- C:\WINDOWS\System32\drivers\atirtsnd.sys
[2003/01/31 08:19:28 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativxbar.sys
[2003/01/31 08:19:27 | 000,009,472 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmdcd.sys
[2003/01/31 08:19:26 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\atipcxxx.sys
[2001/12/14 12:46:44 | 000,000,049 | ---- | C] () -- C:\WINDOWS\XEROXTW.INI
[2001/10/22 20:15:26 | 000,000,190 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2001/10/22 20:15:00 | 000,152,576 | ---- | C] () -- C:\WINDOWS\oxilayotevokomas.dll
[2001/10/22 20:14:35 | 000,000,325 | ---- | C] () -- C:\WINDOWS\System32\ntnet.drv
[2001/10/15 09:53:26 | 000,000,091 | ---- | C] () -- C:\WINDOWS\System32\XE88STMN.INI
[2001/09/17 17:14:02 | 000,032,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinxsxx.sys
[2001/09/17 17:13:50 | 000,020,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinttxx.sys
[2001/09/17 17:13:42 | 000,011,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinpdxx.sys
[2001/09/17 17:13:38 | 000,011,280 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinmdxx.sys
[2001/09/17 17:13:32 | 000,032,848 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinraxx.sys
[2001/09/17 17:13:08 | 000,060,464 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinbtxx.sys
[2001/09/17 17:12:02 | 000,065,104 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinrvxx.sys
[2001/09/17 17:11:06 | 000,032,336 | ---- | C] () -- C:\WINDOWS\System32\drivers\atintuxx.sys
[2001/08/23 14:00:00 | 000,022,400 | ---- | C] () -- C:\WINDOWS\System32\drivers\SbcpHid.sys
[2001/08/03 20:22:00 | 000,182,896 | ---- | C] () -- C:\WINDOWS\System32\drivers\NAVAP.SYS
[2001/05/13 17:18:34 | 000,000,209 | ---- | C] () -- C:\WINDOWS\X63_DS.ini
[2000/10/24 09:08:36 | 000,118,784 | ---- | C] () -- C:\WINDOWS\System32\LFKODAK.DLL
[2000/10/24 09:08:33 | 000,338,944 | ---- | C] () -- C:\WINDOWS\System32\LFFPX7.DLL
[1999/01/22 21:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
[1998/01/12 10:00:00 | 000,040,448 | ---- | C] () -- C:\WINDOWS\System32\REGOBJ.DLL
[1997/10/24 14:56:36 | 000,001,998 | ---- | C] () -- C:\WINDOWS\LEXSTAT.INI
========== Files - Unicode (All) ==========
[2009/04/26 01:08:57 | 000,000,000 | ---D | M](C:\WINDOWS\System32\?icrosoft.NET) -- C:\WINDOWS\System32\Мicrosoft.NET
[2009/04/26 01:05:37 | 000,000,000 | ---D | M](C:\WINDOWS\?ppPatch) -- C:\WINDOWS\АppPatch
[2006/08/17 15:01:26 | 000,000,000 | ---D | M](C:\Program Files\?ecurity) -- C:\Program Files\ѕecurity
[2006/08/17 15:01:26 | 000,000,000 | ---D | M](C:\Program Files\?ecurity) -- C:\Program Files\ѕecurity
[2006/08/16 15:43:38 | 000,000,000 | ---D | M](C:\Program Files\Common Files\?racle) -- C:\Program Files\Common Files\Οracle
[2006/08/16 15:43:38 | 000,000,000 | ---D | M](C:\Program Files\Common Files\?racle) -- C:\Program Files\Common Files\Οracle
[2006/07/25 21:16:02 | 000,000,000 | ---D | M](C:\Program Files\Common Files\??sks) -- C:\Program Files\Common Files\Τаsks
[2006/07/25 21:16:02 | 000,000,000 | ---D | M](C:\Program Files\Common Files\??sks) -- C:\Program Files\Common Files\Τаsks
[2006/06/21 15:42:36 | 000,000,000 | ---D | M](C:\WINDOWS\??sembly) -- C:\WINDOWS\аѕsembly
[2006/06/21 15:42:36 | 000,000,000 | ---D | C](C:\WINDOWS\??sembly) -- C:\WINDOWS\аѕsembly
[2006/04/03 18:59:48 | 000,000,000 | ---D | M](C:\WINDOWS\System32\F?nts) -- C:\WINDOWS\System32\Fоnts
[2006/04/03 18:59:48 | 000,000,000 | ---D | C](C:\WINDOWS\System32\F?nts) -- C:\WINDOWS\System32\Fоnts
[2006/03/29 16:06:34 | 000,000,000 | ---D | M](C:\Program Files\Common Files\?dobe) -- C:\Program Files\Common Files\Αdobe
[2006/03/29 16:06:34 | 000,000,000 | ---D | M](C:\Program Files\Common Files\?dobe) -- C:\Program Files\Common Files\Αdobe
[2006/03/29 16:06:33 | 000,000,000 | ---D | M](C:\WINDOWS\M?crosoft.NET) -- C:\WINDOWS\Mіcrosoft.NET
[2006/03/29 16:06:33 | 000,000,000 | ---D | C](C:\WINDOWS\M?crosoft.NET) -- C:\WINDOWS\Mіcrosoft.NET
[2006/03/29 16:06:06 | 000,000,000 | ---D | M](C:\Program Files\Common Files\?dobe) -- C:\Program Files\Common Files\Аdobe
[2006/03/29 16:06:06 | 000,000,000 | ---D | M](C:\Program Files\Common Files\?dobe) -- C:\Program Files\Common Files\Аdobe
[2006/03/29 16:05:53 | 000,000,000 | ---D | M](C:\WINDOWS\System32\?dobe) -- C:\WINDOWS\System32\Аdobe
[2006/03/29 16:05:53 | 000,000,000 | ---D | C](C:\WINDOWS\System32\?dobe) -- C:\WINDOWS\System32\Аdobe
[2006/03/29 16:05:53 | 000,000,000 | ---D | C](C:\WINDOWS\?ppPatch) -- C:\WINDOWS\АppPatch
[2005/12/20 00:56:50 | 000,000,000 | ---D | M](C:\WINDOWS\System32\??crosoft.NET) -- C:\WINDOWS\System32\Міcrosoft.NET
[2005/12/20 00:56:50 | 000,000,000 | ---D | C](C:\WINDOWS\System32\??crosoft.NET) -- C:\WINDOWS\System32\Міcrosoft.NET
[2005/09/29 18:24:51 | 000,000,000 | ---D | M](C:\WINDOWS\System32\??stem) -- C:\WINDOWS\System32\ѕуstem
[2005/09/29 18:24:51 | 000,000,000 | ---D | C](C:\WINDOWS\System32\??stem) -- C:\WINDOWS\System32\ѕуstem
[2005/09/09 22:15:54 | 000,000,000 | ---D | M](C:\WINDOWS\System32\?ssembly) -- C:\WINDOWS\System32\аssembly
[2005/09/09 22:15:54 | 000,000,000 | ---D | C](C:\WINDOWS\System32\?ssembly) -- C:\WINDOWS\System32\аssembly
[2005/08/30 19:04:39 | 000,000,000 | ---D | M](C:\WINDOWS\System32\??stem32) -- C:\WINDOWS\System32\ѕуstem32
[2005/08/30 19:04:39 | 000,000,000 | ---D | C](C:\WINDOWS\System32\??stem32) -- C:\WINDOWS\System32\ѕуstem32
[2005/08/16 11:34:47 | 000,000,000 | ---D | M](C:\WINDOWS\System32\??pPatch) -- C:\WINDOWS\System32\АрpPatch
[2005/08/16 11:34:47 | 000,000,000 | ---D | C](C:\WINDOWS\System32\??pPatch) -- C:\WINDOWS\System32\АрpPatch
[2005/08/12 10:31:35 | 000,000,000 | ---D | M](C:\WINDOWS\System32\??mbols) -- C:\WINDOWS\System32\ѕуmbols
[2005/08/12 10:31:35 | 000,000,000 | ---D | C](C:\WINDOWS\System32\??mbols) -- C:\WINDOWS\System32\ѕуmbols
[2005/08/08 16:21:58 | 000,000,000 | ---D | M](C:\WINDOWS\System32\W?nSxS) -- C:\WINDOWS\System32\WіnSxS
[2005/08/08 16:21:58 | 000,000,000 | ---D | C](C:\WINDOWS\System32\W?nSxS) -- C:\WINDOWS\System32\WіnSxS
[2005/07/14 05:08:21 | 000,000,000 | ---D | M](C:\WINDOWS\System32\??curity) -- C:\WINDOWS\System32\ѕеcurity
[2005/07/14 05:08:21 | 000,000,000 | ---D | C](C:\WINDOWS\System32\??curity) -- C:\WINDOWS\System32\ѕеcurity
[2005/07/08 15:57:38 | 000,000,000 | ---D | M](C:\WINDOWS\System32\??sks) -- C:\WINDOWS\System32\Таsks
[2005/07/08 15:57:38 | 000,000,000 | ---D | C](C:\WINDOWS\System32\??sks) -- C:\WINDOWS\System32\Таsks
[2005/06/20 15:20:45 | 000,000,000 | ---D | M](C:\WINDOWS\System32\??sembly) -- C:\WINDOWS\System32\аѕsembly
[2005/06/20 15:20:45 | 000,000,000 | ---D | C](C:\WINDOWS\System32\??sembly) -- C:\WINDOWS\System32\аѕsembly
[2005/06/19 15:22:39 | 000,000,000 | ---D | C](C:\WINDOWS\System32\?icrosoft.NET) -- C:\WINDOWS\System32\Мicrosoft.NET
(C:\Program Files\Common Files\?racle) -- C:\Program Files\Common Files\Οracle
(C:\Program Files\Common Files\?dobe) -- C:\Program Files\Common Files\Аdobe
(C:\Program Files\Common Files\?dobe) -- C:\Program Files\Common Files\Αdobe
(C:\Program Files\Common Files\??sks) -- C:\Program Files\Common Files\Τаsks
(C:\Program Files\?ecurity) -- C:\Program Files\ѕecurity
< End of report >