WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionThinkPoint is not found in scan? EmptyThinkPoint is not found in scan?

more_horiz
I've read a lot of guides to removing ThinkPoint. Most of which asks you to use Malwarebytes in Safe Mode.

Including ending the process of the exe is runs then using Malwarebytes to remove the virus. Well after I ran the scan and removed the infected files, and restarted the computer normally ThinkPoint was still there!

I'd prefer not to restore the computer completely to the beginning. Is there a way I can fix this without doing so?

-Thanks.

descriptionThinkPoint is not found in scan? EmptyRe: ThinkPoint is not found in scan?

more_horiz
Hello.

Download OTL by OldTimer to your Desktop.

  • Close all windows and double click OTL.exe
  • Click Run Scan and let the program run uninterrupted
  • It will produce two logs for you, one will pop up - OTL.txt, the other will be saved on your Desktop - Extras.txt. Post both logs in this thread.
  • You may need to use two posts to get it all.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
ThinkPoint is not found in scan? DXwU4
ThinkPoint is not found in scan? VvYDg

descriptionThinkPoint is not found in scan? EmptyRe: ThinkPoint is not found in scan?

more_horiz
Thanks I will get to it now.

descriptionThinkPoint is not found in scan? EmptyRe: ThinkPoint is not found in scan?

more_horiz
Sorry it took so long!

OTL logfile created on: 10/30/2010 7:47:53 PM - Run 2
OTL by OldTimer - Version 3.2.17.1 Folder = C:\Users\Jello\Documents
Windows Vista Home Basic Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 58.00% Memory free
6.00 Gb Paging File | 5.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 140.37 Gb Total Space | 67.38 Gb Free Space | 48.00% Space Free | Partition Type: NTFS

Computer Name: JELLO-PC | User Name: Jello | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2010/10/30 19:47:14 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Jello\Documents\OTL.exe
PRC - [2010/08/09 20:29:14 | 000,030,192 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
PRC - [2010/07/06 11:03:00 | 000,173,352 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
PRC - [2010/06/28 16:57:18 | 002,837,864 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2010/06/28 16:57:15 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2010/04/16 08:33:40 | 000,144,672 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
PRC - [2010/02/19 19:43:34 | 000,380,928 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Application Updater\ApplicationUpdater.exe
PRC - [2010/01/11 16:21:52 | 000,490,216 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
PRC - [2009/12/29 10:08:28 | 001,653,248 | R--- | M] (AWS Convergence Technologies, Inc.) -- C:\Program Files\AWS\WeatherBug\Weather.exe
PRC - [2009/11/19 18:58:50 | 000,039,408 | ---- | M] (Google Inc.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
PRC - [2008/11/09 16:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
PRC - [2008/10/29 02:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/08/04 17:46:38 | 001,242,424 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Service Station\TSS.exe
PRC - [2008/08/04 17:46:22 | 000,046,392 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Service Station\TMachInfo.exe
PRC - [2008/07/19 00:39:30 | 000,083,312 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
PRC - [2008/06/25 19:05:58 | 000,174,616 | ---- | M] (Intel Corporation) -- C:\Windows\System32\igfxext.exe
PRC - [2008/06/02 17:26:48 | 000,505,720 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\SmoothView\SmoothView.exe
PRC - [2008/05/09 15:49:30 | 000,716,800 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
PRC - [2008/04/24 16:03:12 | 000,430,080 | ---- | M] (TOSHIBA) -- C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe
PRC - [2008/04/17 03:21:24 | 001,056,768 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
PRC - [2008/04/17 03:19:48 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe
PRC - [2008/04/17 03:19:16 | 000,405,504 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe
PRC - [2008/04/15 21:54:42 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2008/04/15 21:54:40 | 000,178,712 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2008/04/08 19:14:50 | 006,037,504 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2008/02/21 11:02:00 | 000,238,968 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
PRC - [2008/02/06 17:52:52 | 000,431,456 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
PRC - [2008/02/06 17:52:40 | 000,431,456 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
PRC - [2007/12/03 21:03:52 | 000,126,976 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\SMARTLogService\TosIPCSrv.exe
PRC - [2007/11/21 21:23:32 | 000,129,632 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\TODDSrv.exe
PRC - [2007/08/27 17:25:52 | 001,662,976 | ---- | M] (D-Link) -- C:\Program Files\D-Link\Wireless G WUA-1340\AirGCFG.exe
PRC - [2007/01/19 12:49:04 | 000,049,152 | ---- | M] (Wireless Service) -- C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
PRC - [2006/10/05 16:10:12 | 000,009,216 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe
PRC - [2006/08/23 19:39:48 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe


========== Modules (SafeList) ==========

MOD - [2010/10/30 19:47:14 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Jello\Documents\OTL.exe
MOD - [2010/08/31 11:39:57 | 001,684,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18523_none_5cdd65e20837faf2\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (CLTNetCnService)
SRV - [2010/08/09 20:29:14 | 000,030,192 | ---- | M] (Google) [On_Demand | Stopped] -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe -- (GoogleDesktopManager-051210-111108)
SRV - [2010/07/06 11:03:00 | 000,173,352 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe -- (TeamViewer5)
SRV - [2010/06/28 16:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
SRV - [2010/06/28 16:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
SRV - [2010/06/28 16:57:15 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010/04/16 08:33:40 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/03/18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 19:43:34 | 000,380,928 | ---- | M] (Spigot, Inc.) [Auto | Running] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater)
SRV - [2010/02/08 16:32:52 | 000,238,328 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2009/08/24 08:16:12 | 000,378,368 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- winhttp.dll -- (WinHttpAutoProxySvc)
SRV - [2009/08/05 23:48:42 | 000,704,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc)
SRV - [2009/05/19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2008/11/09 16:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
SRV - [2008/09/05 15:52:32 | 003,220,856 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE -- (LiveUpdate)
SRV - [2008/08/04 17:46:22 | 000,046,392 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2008/07/19 00:39:30 | 000,083,312 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe -- (TNaviSrv)
SRV - [2008/04/17 03:19:48 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
SRV - [2008/04/15 21:54:42 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R)
SRV - [2008/02/21 11:02:00 | 000,238,968 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe -- (Automatic LiveUpdate Scheduler)
SRV - [2008/02/06 17:52:40 | 000,431,456 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV - [2008/01/20 22:33:00 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/12/03 21:03:52 | 000,126,976 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe -- (TOSHIBA SMART Log Service)
SRV - [2007/11/21 21:23:32 | 000,129,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\System32\TODDSrv.exe -- (TODDSrv)
SRV - [2007/10/30 00:34:58 | 000,352,338 | ---- | M] (Atheros Communications, Inc.) [On_Demand | Stopped] -- C:\Program Files\Belkin\F5D7010v8\jswpsapi.exe -- (jswpsapi)
SRV - [2006/10/05 16:10:12 | 000,009,216 | ---- | M] (Agere Systems) [Auto | Running] -- C:\Windows\System32\agrsmsvc.exe -- (AgereModemAudio)
SRV - [2006/08/23 19:39:48 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
SRV - [2005/11/14 04:06:04 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Jello\Documents\Gravity\TRO\npkcrypt.sys -- (npkcrypt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\EagleNT.sys -- (EagleNT)
DRV - [2010/06/28 16:37:52 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2010/06/28 16:37:30 | 000,165,456 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2010/06/28 16:33:13 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2010/06/28 16:32:56 | 000,050,256 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2010/06/28 16:32:33 | 000,017,744 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2009/10/13 04:50:00 | 000,133,632 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Mkd2kfNT.sys -- (Mkd2kfNt)
DRV - [2009/08/05 23:48:42 | 000,054,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\fssfltr.sys -- (fssfltr)
DRV - [2009/07/13 04:37:00 | 000,079,360 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Mkd2Nadr.sys -- (Mkd2Nadr)
DRV - [2009/04/30 22:55:58 | 002,687,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LV302V32.SYS -- (PID_PEPI) Logitech QuickCam IM(PID_PEPI)
DRV - [2009/03/11 20:17:20 | 000,063,488 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTSTOR.sys -- (RTSTOR)
DRV - [2008/07/28 19:53:48 | 000,919,552 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2008/07/18 22:52:16 | 000,279,376 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\tos_sps32.sys -- (tos_sps32)
DRV - [2008/07/10 02:49:14 | 000,242,712 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\System32\drivers\RsFx0102.sys -- (RsFx0102)
DRV - [2008/06/12 22:43:16 | 002,381,312 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\igdkmd32.sys -- (igfx)
DRV - [2008/04/28 20:59:18 | 000,020,384 | ---- | M] (Atheros Communications, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\jswpslwf.sys -- (jswpslwf)
DRV - [2008/04/15 21:53:44 | 000,312,344 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\iaStor.sys -- (iaStor)
DRV - [2008/04/15 13:05:08 | 000,118,784 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2008/04/09 22:00:04 | 002,095,512 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTKVHDA.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2008/01/20 22:32:53 | 000,149,560 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320)
DRV - [2008/01/20 22:32:53 | 000,031,288 | ---- | M] (LSI Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas)
DRV - [2008/01/20 22:32:52 | 000,386,616 | ---- | M] (LSI Corporation, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasr.sys -- (MegaSR)
DRV - [2008/01/20 22:32:52 | 000,101,432 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m)
DRV - [2008/01/20 22:32:52 | 000,074,808 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4)
DRV - [2008/01/20 22:32:52 | 000,040,504 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs)
DRV - [2008/01/20 22:32:51 | 000,300,600 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci)
DRV - [2008/01/20 22:32:51 | 000,089,656 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS)
DRV - [2008/01/20 22:32:50 | 001,122,360 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300)
DRV - [2008/01/20 22:32:50 | 000,118,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel(R)
DRV - [2008/01/20 22:32:50 | 000,079,928 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas)
DRV - [2008/01/20 22:32:49 | 000,235,064 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV)
DRV - [2008/01/20 22:32:49 | 000,130,616 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid)
DRV - [2008/01/20 22:32:49 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2)
DRV - [2008/01/20 22:32:49 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC)
DRV - [2008/01/20 22:32:49 | 000,079,416 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc)
DRV - [2008/01/20 22:32:48 | 000,342,584 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor)
DRV - [2008/01/20 22:32:48 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2008/01/20 22:32:47 | 000,102,968 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid)
DRV - [2008/01/20 22:32:47 | 000,073,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2008/01/20 22:32:47 | 000,045,112 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor)
DRV - [2008/01/20 22:32:46 | 000,422,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx)
DRV - [2008/01/20 22:32:45 | 000,238,648 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci)
DRV - [2008/01/20 22:32:21 | 000,020,024 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide)
DRV - [2008/01/20 22:32:21 | 000,019,000 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide)
DRV - [2008/01/20 22:32:21 | 000,017,464 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide)
DRV - [2007/12/14 15:53:24 | 000,024,200 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV - [2007/12/06 22:12:48 | 000,196,400 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP)
DRV - [2007/11/09 18:00:52 | 000,023,640 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\TVALZ_O.SYS -- (TVALZ)
DRV - [2007/08/28 22:46:02 | 000,057,344 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\jswscimd.sys -- (JSWSCIMD)
DRV - [2007/07/27 18:27:16 | 000,351,232 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Dr71WU.sys -- (RT73)
DRV - [2006/11/28 19:11:00 | 001,161,888 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2006/11/20 17:11:14 | 000,007,168 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\FwLnk.sys -- (FwLnk)
DRV - [2006/11/09 02:32:00 | 000,219,264 | ---- | M] (TOSHIBA CORPORATION) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\kr10i.sys -- (KR10I)
DRV - [2006/11/09 02:31:00 | 000,211,072 | ---- | M] (TOSHIBA CORPORATION) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\kr10n.sys -- (KR10N)
DRV - [2006/11/02 05:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx)
DRV - [2006/11/02 05:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata)
DRV - [2006/11/02 05:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960)
DRV - [2006/11/02 05:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp)
DRV - [2006/11/02 05:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx)
DRV - [2006/11/02 05:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid)
DRV - [2006/11/02 05:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi)
DRV - [2006/11/02 05:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx)
DRV - [2006/11/02 05:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3)
DRV - [2006/11/02 05:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x)
DRV - [2006/11/02 05:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi)
DRV - [2006/11/02 04:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006/11/02 04:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer)
DRV - [2006/11/02 04:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp)
DRV - [2006/11/02 04:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo)
DRV - [2006/11/02 04:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm)
DRV - [2006/11/02 04:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006/11/02 03:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=TSHB&bmod=TSHB
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig/redirectdomain?brand=TSHB&bmod=TSHB
IE - HKLM\..\URLSearchHook: {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPage.dll (Conduit Ltd.)

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=TSHB&bmod=TSHB
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2418376
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPage.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\YouTube Downloader Toolbar\SearchSettings.dll File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "PageRage Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2418376&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.order.2: ""
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.selectedEngine: "PageRage Customized Web Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://search.conduit.com/?ctid=CT2418376&SearchSource=13"
FF - prefs.js..extensions.enabledItems: info@priceblink.com:1.1
FF - prefs.js..extensions.enabledItems: {5835466c-49af-4cbe-b102-a8c8b6313749}:1.0.6
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.1.20091029021655
FF - prefs.js..extensions.enabledItems: {BFF829B6-B433-42CE-9A19-E459D3E4E483}:3.6.3
FF - prefs.js..extensions.enabledItems: {038cb5c7-48ea-4af9-94e0-a1646542e62b}:2.7.2.0
FF - prefs.js..extensions.enabledItems: {E4E6BF2A-1667-11DF-A01F-1F9655D89593}:4.0
FF - prefs.js..extensions.enabledItems: {8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}:2.1.0
FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.9.1.14019
FF - prefs.js..extensions.enabledItems: plugin@yontoo.com:1.10.01
FF - prefs.js..extensions.enabledItems: {9565115d-c7d6-46d3-bd63-b67b481a4368}:2.7.2.0
FF - prefs.js..extensions.netassistant.keyword.url: "http://click.w3i.com/?Programid=132&Elementname=Keyword&Applicationid=#netassistant_id#&Version=#netassistant_version#&Vintage=20100418&Defaultbrowserid=16&Productid=2138&Vendorid=3852&Offerid=6693&searchterm="
FF - prefs.js..keyword.URL: "http://www.mywebsearch.com/jsp/cfg_redir2.jsp?id=ZJxdm398YYUS&fl=0&ptb=SZBeowdBxoj5ZiWh.7jVaQ&url=http://search.mywebsearch.com/mywebsearch/GGmain.jhtml&st=kwd&n=77ce83a1&searchfor="


FF - HKLM\software\mozilla\Firefox\Extensions\\Hotbar@Hotbar.com: C:\Program Files\Hotbar\bin\11.0.78.0\firefox\extensions
FF - HKLM\software\mozilla\Firefox\Extensions\\m3ffxtbr@mywebsearch.com: C:\Program Files\MyWebSearch\bar\1.bin File not found
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/10/28 12:11:31 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/10/28 12:11:31 | 000,000,000 | ---D | M]

[2010/04/30 19:57:48 | 000,000,000 | ---D | M] -- C:\Users\Jello\AppData\Roaming\Mozilla\Extensions
[2010/04/30 19:57:48 | 000,000,000 | ---D | M] -- C:\Users\Jello\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org
[2010/10/30 00:36:29 | 000,000,000 | ---D | M] -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions
[2010/09/20 19:45:01 | 000,000,000 | ---D | M] (ToggleEN Toolbar) -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\{038cb5c7-48ea-4af9-94e0-a1646542e62b}
[2010/07/22 12:40:38 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/04/29 23:37:01 | 000,000,000 | ---D | M] (Shop to Win) -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\{5835466c-49af-4cbe-b102-a8c8b6313749}
[2010/04/29 23:37:37 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2010/10/28 00:13:01 | 000,000,000 | ---D | M] (PageRage Toolbar) -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\{9565115d-c7d6-46d3-bd63-b67b481a4368}
[2010/09/28 23:20:53 | 000,000,000 | ---D | M] (Simppull Toolbar) -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\{E4E6BF2A-1667-11DF-A01F-1F9655D89593}
[2010/07/22 12:40:38 | 000,000,000 | ---D | M] -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\info@priceblink.com
[2010/10/28 00:12:47 | 000,000,000 | ---D | M] -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\plugin@yontoo.com
[2010/10/17 13:42:41 | 000,000,000 | ---D | M] -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\extensions\toolbar@ask.com
[2010/06/29 19:05:55 | 000,002,425 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\searchplugins\askcom.xml
[2010/02/04 09:22:45 | 000,002,163 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\searchplugins\bing.xml
[2010/10/22 11:29:06 | 000,000,919 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\searchplugins\conduit.xml
[2010/02/28 21:21:48 | 000,009,985 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\Mozilla\Firefox\Profiles\oig9i1g8.default\searchplugins\mywebsearch.xml
[2010/10/28 00:13:25 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions

O1 HOSTS File: ([2006/09/18 17:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (PriceGongBHO Class) - {1631550F-191D-4826-B069-D9439253D926} - C:\Program Files\PriceGong\2.1.0\PriceGongIE.dll (PriceGong)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Simppull Toolbar) - {627af46b-2076-42ae-a2fd-8428734d3e74} - C:\Program Files\simppulltoolbar\simppulldx.dll ()
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (PageRage Toolbar) - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPage.dll (Conduit Ltd.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.)
O2 - BHO: (Updater For Simppull Toolbar) - {C4B8BAB4-1667-11DF-A242-BA9455D89593} - C:\Program Files\simppulltoolbar\auxi\simppulltoolbAu.dll (Visicom Media)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\YouTube Downloader Toolbar\SearchSettings.dll File not found
O2 - BHO: (no name) - {E4E6BF2A-1667-11DF-A01F-1F9655D89593} - No CLSID value found.
O2 - BHO: (YouTube Downloader Toolbar) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll File not found
O2 - BHO: (Yontoo Layers) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Client\YontooIEClient.dll File not found
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Simppull Toolbar) - {627af46b-2076-42ae-a2fd-8428734d3e74} - C:\Program Files\simppulltoolbar\simppulldx.dll ()
O3 - HKLM\..\Toolbar: (PageRage Toolbar) - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\tbPage.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (YouTube Downloader Toolbar) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll File not found
O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (PageRage Toolbar) - {9565115D-C7D6-46D3-BD63-B67B481A4368} - C:\Program Files\PageRage\tbPage.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [00TCrdMain] C:\Program Files\Toshiba\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe (Wireless Service)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [cfFncEnabler.exe] File not found
O4 - HKLM..\Run: [D-Link Wireless G WUA-1340] C:\Program Files\D-Link\Wireless G WUA-1340\AirGCFG.exe (D-Link)
O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [jswtrayutil] C:\Program Files\Jumpstart\jswtrayutil.exe File not found
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NDSTray.exe] File not found
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\YouTube Downloader Toolbar\SearchSettings.exe File not found
O4 - HKLM..\Run: [SmoothView] C:\Program Files\Toshiba\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files\TOSHIBA\TOSHIBA Service Station\TSS.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKCU..\Run: [TOSCDSPD] File not found
O4 - HKCU..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe (AWS Convergence Technologies, Inc.)
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll (Google Inc.)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab (Java Plug-in 1.6.0_06)
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.87.64.146 68.87.75.194
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKCU Winlogon: Shell - (C:\Users\Jello\AppData\Roaming\hotfix.exe) - C:\Users\Jello\AppData\Roaming\hotfix.exe (PFMGR)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img11.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img11.jpg
O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 17:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010/10/30 19:47:08 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\Jello\Documents\OTL.exe
[2010/10/30 02:33:56 | 000,527,872 | ---- | C] (PFMGR) -- C:\Users\Jello\AppData\Roaming\hotfix.exe
[2010/10/28 00:12:55 | 000,000,000 | ---D | C] -- C:\Program Files\ConduitEngine
[2010/10/28 00:12:52 | 000,000,000 | ---D | C] -- C:\Program Files\PageRage
[2010/10/28 00:12:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Tarma Installer
[2010/10/27 11:35:55 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Apphlpdm.dll
[2010/10/27 11:35:53 | 004,240,384 | ---- | C] (Microsoft) -- C:\Windows\System32\GameUXLegacyGDFs.dll
[2010/10/14 03:03:16 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msshsq.dll
[2010/10/13 17:47:41 | 008,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010/10/13 17:47:22 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll
[2010/10/13 17:47:03 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010/10/13 17:47:01 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40.dll
[2010/10/13 17:47:00 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc40u.dll
[2010/10/13 17:46:53 | 002,037,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010/10/13 17:46:52 | 000,866,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmpmde.dll
[2010/10/13 17:46:36 | 000,467,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2010/10/13 17:46:34 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2010/10/13 17:46:31 | 000,671,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010/10/13 17:46:31 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieaksie.dll
[2010/10/13 17:46:30 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2010/10/13 17:46:29 | 000,389,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010/10/13 17:46:29 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2010/10/13 17:46:28 | 001,383,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2010/10/13 17:46:28 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieencode.dll
[2010/10/13 17:46:28 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010/10/04 02:53:04 | 000,000,000 | ---D | C] -- C:\Users\Jello\AppData\Roaming\uTorrent
[2010/10/04 02:52:47 | 000,000,000 | ---D | C] -- C:\Users\Jello\Desktop\Torrent
[2010/10/02 04:01:44 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Softwrap
[2010/10/02 04:01:44 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Fonts
[2010/10/02 04:01:44 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Config
[2010/10/02 03:56:55 | 000,000,000 | ---D | C] -- C:\Users\Jello\Desktop\UGA
[2010/10/02 03:56:31 | 000,000,000 | ---D | C] -- C:\Windows\Noslip
[2010/05/12 13:12:50 | 004,275,544 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\vidcap60.exe
[2010/05/12 13:12:48 | 000,820,568 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sftutor60.dll
[2010/05/12 13:12:40 | 000,111,960 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\VegSrv90.exe
[2010/05/12 13:12:38 | 006,585,176 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\vegas90k.dll
[2010/05/12 13:12:24 | 013,765,976 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\vegas90.exe
[2010/05/12 13:12:00 | 000,095,576 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\Sony.Vegas.NetRender.dll
[2010/05/12 13:11:58 | 000,292,184 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\Sony.Vegas.dll
[2010/05/12 13:11:56 | 000,435,544 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\Sony.MediaSoftware.XDCAMExp.dll
[2010/05/12 13:11:54 | 000,234,840 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\Sony.MediaSoftware.DeviceExp.dll
[2010/05/12 13:11:54 | 000,107,864 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\Sony.MediaSoftware.ExternalVideoDevice.dll
[2010/05/12 13:11:52 | 000,382,296 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\Sony.MediaSoftware.clrshared.dll
[2010/05/12 13:11:50 | 000,234,840 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\Sony.Capture.dll
[2010/05/12 13:11:40 | 002,901,336 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\SfVstWrap.dll
[2010/05/12 13:11:38 | 002,553,688 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfvstserver.exe
[2010/05/12 13:11:34 | 003,066,712 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sftutor.dll
[2010/05/12 13:11:26 | 000,041,304 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfspti.dll
[2010/05/12 13:11:24 | 000,029,016 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfscsi.dll
[2010/05/12 13:11:22 | 001,631,576 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfs4rw.dll
[2010/05/12 13:11:18 | 001,743,192 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfpublish.dll
[2010/05/12 13:11:04 | 002,171,224 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfmarket2.dll
[2010/05/12 13:10:58 | 001,412,440 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfdvd.dll
[2010/05/12 13:10:54 | 004,450,648 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfcdix.dll
[2010/05/12 13:10:52 | 000,777,560 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfcdfs.dll
[2010/05/12 13:10:48 | 001,368,408 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfapprw.dll
[2010/05/12 13:10:34 | 000,073,048 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\PRSConfig.exe
[2010/05/12 13:10:28 | 000,018,776 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\NGenTool.exe
[2010/05/12 13:10:06 | 002,692,440 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\FileIOSurrogate.exe
[2010/05/12 13:09:56 | 000,017,752 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\ErrorReportLauncher.exe
[2010/05/12 13:09:54 | 003,240,280 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\ErrorReportClient.exe
[2010/05/12 13:09:52 | 000,058,200 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\ErrorReport.dll
[2010/05/12 13:09:48 | 000,022,872 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\CreateMinidumpx86.exe
[2010/05/12 13:09:34 | 002,343,256 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\ApplicationRegistration.exe
[2010/05/12 11:23:42 | 001,479,680 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\ess.dll
[2010/05/12 11:23:42 | 000,850,432 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfwbdmux.dll
[2010/05/12 11:23:42 | 000,043,520 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfibdmux.dll
[2010/05/12 11:23:30 | 000,980,480 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfsbdmux.xsfs.dll
[2010/05/12 11:23:14 | 001,115,648 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\CoreGraphics.Native.dll
[2010/05/12 11:18:56 | 000,061,440 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\Sony.MediaSoftware.Skins.dll
[2010/05/12 11:17:56 | 000,028,672 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\DecklinkVideoProperties.dll
[2010/05/12 11:17:46 | 000,032,768 | ---- | C] (Sony Creative Software Inc) -- C:\Program Files\AjaVideoProperties.dll
[2010/05/12 11:13:14 | 000,746,496 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfprnsim.pdd.dll
[2010/05/12 11:13:10 | 000,994,304 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfcd.cdd.dll
[2010/05/12 11:13:10 | 000,747,520 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfldsim.ldd.dll
[2010/05/12 11:13:04 | 000,016,384 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfcdsim.cdd.dll
[2010/05/12 11:13:02 | 000,750,080 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\fargo.pdd.dll
[2010/05/12 11:13:00 | 001,155,584 | ---- | C] (Sony Creative Software Inc.) -- C:\Program Files\sfld.ldd.dll
[2009/11/03 12:29:32 | 000,013,312 | ---- | C] (SONY) -- C:\Program Files\ProDiscAPI.dll
[2009/06/18 14:14:16 | 002,936,832 | ---- | C] (AAF Association) -- C:\Program Files\AAFCOAPI.dll
[2009/06/18 14:13:32 | 001,045,128 | ---- | C] (Microsoft Corporation) -- C:\Program Files\dbghelp.dll
[2009/06/18 14:12:36 | 000,040,960 | ---- | C] ( ) -- C:\Program Files\MuxCommon.dll
[2009/06/18 14:12:36 | 000,024,576 | ---- | C] ( ) -- C:\Program Files\RemoteTS.dll
[2009/06/18 14:12:36 | 000,020,480 | ---- | C] ( ) -- C:\Program Files\DM_Hash.dll
[2009/06/18 14:10:50 | 000,659,456 | ---- | C] (Sony Corporation) -- C:\Program Files\sonymvd2pro_xp.dll
[2009/06/18 14:10:44 | 000,245,760 | ---- | C] (The Apache Software Foundation) -- C:\Program Files\log4net.dll
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/10/30 19:47:14 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Jello\Documents\OTL.exe
[2010/10/30 19:38:45 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/10/30 19:36:52 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/10/30 19:36:51 | 000,000,434 | ---- | M] () -- C:\Windows\tasks\RegPowerClean.job
[2010/10/30 19:36:50 | 000,000,420 | ---- | M] () -- C:\Windows\tasks\RPCReminder.job
[2010/10/30 19:36:41 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/10/30 19:36:41 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/10/30 19:36:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/10/30 19:36:26 | 3080,761,344 | -HS- | M] () -- C:\hiberfil.sys
[2010/10/30 16:35:00 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1272383098-4238816287-1483006908-1000UA.job
[2010/10/30 13:35:00 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1272383098-4238816287-1483006908-1000Core.job
[2010/10/30 12:19:17 | 000,000,006 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\completescan
[2010/10/30 12:17:16 | 000,000,006 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\start
[2010/10/30 03:29:12 | 000,000,735 | ---- | M] () -- C:\Users\Jello\Desktop\ThinkPoint.lnk
[2010/10/30 03:29:12 | 000,000,010 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\install
[2010/10/30 02:33:56 | 000,527,872 | ---- | M] (PFMGR) -- C:\Users\Jello\AppData\Roaming\hotfix.exe
[2010/10/30 02:33:56 | 000,000,199 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\ahfg.bat
[2010/10/29 21:55:58 | 000,669,814 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/10/29 21:55:58 | 000,128,572 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/10/28 21:37:37 | 000,000,249 | ---- | M] () -- C:\Users\Jello\.Xauthority
[2010/10/23 10:35:39 | 000,002,053 | ---- | M] () -- C:\Users\Jello\Desktop\Google Chrome.lnk
[2010/10/23 10:35:39 | 000,002,015 | ---- | M] () -- C:\Users\Jello\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/10/18 01:25:59 | 000,000,839 | ---- | M] () -- C:\Users\Jello\Desktop\sakray.LNK
[2010/10/18 01:24:12 | 000,065,536 | ---- | M] () -- C:\Windows\IFinst27.exe
[2010/10/18 01:18:20 | 000,000,851 | ---- | M] () -- C:\Users\Jello\Desktop\Ragnarok Online.LNK
[2010/10/18 01:18:20 | 000,000,832 | ---- | M] () -- C:\Users\Jello\Desktop\Setup.LNK
[2010/10/14 03:53:13 | 000,326,088 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/10/13 04:19:54 | 189,692,838 | ---- | M] () -- C:\Users\Jello\Desktop\UnleashedRO.rar
[2010/10/11 21:15:03 | 000,000,791 | ---- | M] () -- C:\Users\Jello\Desktop\UnleashedRO - Shortcut.lnk
[2010/10/11 16:41:01 | 000,000,859 | ---- | M] () -- C:\Users\Jello\Desktop\Ragnarok_RE.LNK
[2010/10/11 15:31:25 | 000,297,258 | R--- | M] () -- C:\Users\Jello\Desktop\Rag_Renew_Customs_Bui.pdf
[2010/10/09 05:24:18 | 261,408,727 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2010/10/04 02:55:48 | 000,000,572 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk
[2010/10/03 00:03:14 | 000,000,560 | ---- | M] () -- C:\Users\Public\Documents\Global.sw
[2010/10/02 04:00:13 | 000,001,591 | ---- | M] () -- C:\Users\Public\Desktop\Ulead GIF Animator 5.lnk
[2010/10/02 03:54:06 | 011,014,144 | ---- | M] () -- C:\Users\Jello\Desktop\UGA5TBYB_E_USG.exe
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/10/30 19:16:31 | 3080,761,344 | -HS- | C] () -- C:\hiberfil.sys
[2010/10/30 03:40:21 | 000,000,006 | ---- | C] () -- C:\Users\Jello\AppData\Roaming\start
[2010/10/30 03:35:47 | 000,000,006 | ---- | C] () -- C:\Users\Jello\AppData\Roaming\completescan
[2010/10/30 03:29:12 | 000,000,735 | ---- | C] () -- C:\Users\Jello\Desktop\ThinkPoint.lnk
[2010/10/30 03:29:12 | 000,000,010 | ---- | C] () -- C:\Users\Jello\AppData\Roaming\install
[2010/10/30 02:33:56 | 000,000,199 | ---- | C] () -- C:\Users\Jello\AppData\Roaming\ahfg.bat
[2010/10/13 04:15:49 | 189,692,838 | ---- | C] () -- C:\Users\Jello\Desktop\UnleashedRO.rar
[2010/10/11 21:15:03 | 000,000,791 | ---- | C] () -- C:\Users\Jello\Desktop\UnleashedRO - Shortcut.lnk
[2010/10/11 15:31:25 | 000,297,258 | R--- | C] () -- C:\Users\Jello\Desktop\Rag_Renew_Customs_Bui.pdf
[2010/10/04 02:55:48 | 000,000,572 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk
[2010/10/02 04:01:44 | 000,000,560 | ---- | C] () -- C:\Users\Public\Documents\Global.sw
[2010/10/02 04:00:13 | 000,001,591 | ---- | C] () -- C:\Users\Public\Desktop\Ulead GIF Animator 5.lnk
[2010/10/02 03:53:58 | 011,014,144 | ---- | C] () -- C:\Users\Jello\Desktop\UGA5TBYB_E_USG.exe
[2010/10/02 03:26:33 | 000,002,053 | ---- | C] () -- C:\Users\Jello\Desktop\Google Chrome.lnk
[2010/10/02 03:26:33 | 000,002,015 | ---- | C] () -- C:\Users\Jello\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/10/02 03:25:58 | 000,000,908 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1272383098-4238816287-1483006908-1000UA.job
[2010/10/02 03:25:57 | 000,000,856 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1272383098-4238816287-1483006908-1000Core.job
[2010/09/26 22:44:40 | 000,000,600 | ---- | C] () -- C:\Users\Jello\AppData\Local\PUTTY.RND
[2010/07/19 17:17:33 | 000,002,811 | ---- | C] () -- C:\Users\Jello\AppData\Local\Mkemecigitulobom.dat
[2010/07/19 17:17:33 | 000,000,000 | ---- | C] () -- C:\Users\Jello\AppData\Local\Afaraluxocaciris.bin
[2010/05/12 13:09:50 | 000,210,264 | ---- | C] () -- C:\Program Files\DBWrapper.dll
[2010/05/12 11:42:48 | 000,042,941 | ---- | C] () -- C:\Program Files\vegas90.zip
[2010/05/12 11:23:00 | 000,018,944 | ---- | C] () -- C:\Program Files\Interop.dll
[2010/05/12 11:22:58 | 000,684,032 | ---- | C] () -- C:\Program Files\WidgetLibrary.dll
[2010/05/12 11:22:58 | 000,040,960 | ---- | C] () -- C:\Program Files\ControlLibrary.dll
[2010/05/12 11:22:54 | 000,311,296 | ---- | C] () -- C:\Program Files\CoreUI.XmlSerializers.dll
[2010/05/12 11:22:52 | 000,106,496 | ---- | C] () -- C:\Program Files\CoreUI.dll
[2010/05/12 11:22:50 | 000,450,560 | ---- | C] () -- C:\Program Files\Sony.MediaSoftware.TextGen.CoreGraphics.XmlSerializers.dll
[2010/05/12 11:22:42 | 000,618,496 | ---- | C] () -- C:\Program Files\Sony.MediaSoftware.TextGen.CoreGraphics.dll
[2010/05/12 11:22:38 | 000,045,056 | ---- | C] () -- C:\Program Files\CorePrimitives.dll
[2010/04/11 11:38:52 | 000,000,680 | ---- | C] () -- C:\Users\Jello\AppData\Local\d3d9caps.dat
[2010/04/02 05:30:22 | 001,307,217 | ---- | C] () -- C:\Program Files\vegasjpn.tut
[2010/04/02 05:30:20 | 001,205,316 | ---- | C] () -- C:\Program Files\vegasesp.tut
[2010/04/02 05:30:20 | 001,104,795 | ---- | C] () -- C:\Program Files\vegasfra.tut
[2010/04/02 05:30:18 | 006,982,624 | ---- | C] () -- C:\Program Files\vegas.tut
[2010/04/02 05:30:18 | 001,108,596 | ---- | C] () -- C:\Program Files\vegasdeu.tut
[2010/03/29 16:18:00 | 000,354,642 | ---- | C] () -- C:\Program Files\vegas90.udat
[2010/03/23 04:00:24 | 000,001,350 | ---- | C] () -- C:\Program Files\Release.fio2007-config
[2010/03/08 13:05:26 | 000,007,066 | ---- | C] () -- C:\ProgramData\N360BUOptions.ini
[2010/02/24 23:18:25 | 000,040,960 | ---- | C] () -- C:\Windows\System32\IsUser11b.dll
[2010/02/11 00:35:23 | 000,233,472 | ---- | C] () -- C:\Windows\System32\WlanApp.dll
[2010/02/11 00:35:23 | 000,049,152 | ---- | C] () -- C:\Windows\System32\JJAKEn.dll
[2010/01/13 13:49:07 | 000,026,112 | ---- | C] () -- C:\Users\Jello\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/11/19 23:27:24 | 000,000,016 | RHS- | C] () -- C:\Windows\System32\drivers\fbd.sys
[2009/11/19 18:51:23 | 000,000,005 | RHS- | C] () -- C:\Windows\System32\drivers\taishop.sys
[2009/11/19 18:27:37 | 000,128,113 | ---- | C] () -- C:\Windows\System32\csellang.ini
[2009/11/19 18:27:37 | 000,045,056 | ---- | C] () -- C:\Windows\System32\csellang.dll
[2009/11/19 18:27:37 | 000,010,150 | ---- | C] () -- C:\Windows\System32\tosmreg.ini
[2009/11/19 18:27:37 | 000,007,671 | ---- | C] () -- C:\Windows\System32\cseltbl.ini
[2009/06/18 14:14:52 | 000,000,346 | ---- | C] () -- C:\Program Files\vegas90.oemdat
[2009/06/18 14:14:48 | 000,000,357 | ---- | C] () -- C:\Program Files\vegas90.exe.config
[2009/06/18 14:14:26 | 000,000,537 | ---- | C] () -- C:\Program Files\NetRenderService.config
[2009/06/18 14:14:26 | 000,000,407 | ---- | C] () -- C:\Program Files\NetRenderClient.config
[2009/06/18 14:14:22 | 000,085,515 | ---- | C] () -- C:\Program Files\Sony - Vegas Pro 9 - ShuttlePRO v2.mht
[2009/06/18 14:14:22 | 000,074,470 | ---- | C] () -- C:\Program Files\Sony - Vegas Pro 9 - ShuttlePRO.mht
[2009/06/18 14:14:22 | 000,051,518 | ---- | C] () -- C:\Program Files\Sony - Vegas Pro 9 - ShuttleXpress.mht
[2009/06/18 14:14:22 | 000,012,004 | ---- | C] () -- C:\Program Files\Sony - Vegas Pro 9 - ShuttleXpress.pref
[2009/06/18 14:14:22 | 000,012,004 | ---- | C] () -- C:\Program Files\Sony - Vegas Pro 9 - ShuttlePRO.pref
[2009/06/18 14:14:22 | 000,012,004 | ---- | C] () -- C:\Program Files\Sony - Vegas Pro 9 - ShuttlePRO v2.pref
[2009/06/18 14:14:22 | 000,002,020 | ---- | C] () -- C:\Program Files\smslogo.gif
[2009/06/18 14:14:20 | 000,002,807 | ---- | C] () -- C:\Program Files\jpn_movieviewerMOV.htm
[2009/06/18 14:14:20 | 000,002,765 | ---- | C] () -- C:\Program Files\movieviewerMOV.htm
[2009/06/18 14:14:20 | 000,001,737 | ---- | C] () -- C:\Program Files\jpn_movieviewerWMV.htm
[2009/06/18 14:14:20 | 000,001,690 | ---- | C] () -- C:\Program Files\movieviewerWMV.htm
[2009/06/18 14:14:20 | 000,001,589 | ---- | C] () -- C:\Program Files\jpn_movieviewerRM.htm
[2009/06/18 14:14:20 | 000,001,545 | ---- | C] () -- C:\Program Files\movieviewerRM.htm
[2009/06/18 14:14:20 | 000,001,150 | ---- | C] () -- C:\Program Files\jpn_help_me_play_this_file.htm
[2009/06/18 14:14:20 | 000,001,106 | ---- | C] () -- C:\Program Files\help_me_play_this_file.htm
[2009/06/18 14:14:18 | 000,002,808 | ---- | C] () -- C:\Program Files\deu_movieviewerMOV.htm
[2009/06/18 14:14:18 | 000,002,798 | ---- | C] () -- C:\Program Files\fra_movieviewerMOV.htm
[2009/06/18 14:14:18 | 000,002,788 | ---- | C] () -- C:\Program Files\esp_movieviewerMOV.htm
[2009/06/18 14:14:18 | 000,001,732 | ---- | C] () -- C:\Program Files\deu_movieviewerWMV.htm
[2009/06/18 14:14:18 | 000,001,721 | ---- | C] () -- C:\Program Files\fra_movieviewerWMV.htm
[2009/06/18 14:14:18 | 000,001,710 | ---- | C] () -- C:\Program Files\esp_movieviewerWMV.htm
[2009/06/18 14:14:18 | 000,001,587 | ---- | C] () -- C:\Program Files\deu_movieviewerRM.htm
[2009/06/18 14:14:18 | 000,001,572 | ---- | C] () -- C:\Program Files\fra_movieviewerRM.htm
[2009/06/18 14:14:18 | 000,001,556 | ---- | C] () -- C:\Program Files\esp_movieviewerRM.htm
[2009/06/18 14:14:18 | 000,001,295 | ---- | C] () -- C:\Program Files\deu_help_me_play_this_file.htm
[2009/06/18 14:14:18 | 000,001,253 | ---- | C] () -- C:\Program Files\fra_help_me_play_this_file.htm
[2009/06/18 14:14:18 | 000,001,134 | ---- | C] () -- C:\Program Files\esp_help_me_play_this_file.htm
[2009/06/18 14:14:16 | 000,000,717 | ---- | C] () -- C:\Program Files\ngen.xml
[2009/06/18 14:12:36 | 000,561,152 | ---- | C] () -- C:\Program Files\TSWrapper.dll
[2009/06/18 14:12:36 | 000,499,712 | ---- | C] () -- C:\Program Files\FileAllocator.dll
[2009/06/18 14:12:36 | 000,233,472 | ---- | C] () -- C:\Program Files\FSBuilder.dll
[2009/06/18 14:12:36 | 000,114,688 | ---- | C] () -- C:\Program Files\mux.net.dll
[2009/06/18 14:12:36 | 000,022,188 | ---- | C] () -- C:\Program Files\StatusCodeTable.xml
[2009/06/18 14:12:36 | 000,018,432 | ---- | C] () -- C:\Program Files\FSComp.dll
[2009/06/18 14:12:36 | 000,008,119 | ---- | C] () -- C:\Program Files\udf_image.xsd
[2009/06/18 14:10:46 | 000,001,516 | ---- | C] () -- C:\Program Files\ErrorReportConfig.xml
[2009/06/18 14:10:36 | 000,185,764 | ---- | C] () -- C:\Program Files\sfcdix.cfg
[2009/04/30 22:39:36 | 000,082,289 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
[2008/09/30 15:36:25 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2008/09/30 15:25:14 | 000,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll
[2008/09/30 15:25:14 | 000,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll
[2008/09/30 15:25:14 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll
[2008/09/30 15:25:14 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll
[2008/09/30 15:25:14 | 000,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll
[2008/09/30 15:25:14 | 000,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll
[2008/06/12 22:59:22 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1502.dll
[2007/07/10 02:01:16 | 000,048,392 | ---- | C] () -- C:\Program Files\vidcap6.tut
[2006/11/02 03:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/04/04 13:40:10 | 000,095,338 | ---- | C] () -- C:\Program Files\vidcap60.udat
[2006/04/04 13:40:10 | 000,012,004 | ---- | C] () -- C:\Program Files\Sony Video Capture - ShuttleXpress.pref
[2006/04/04 13:40:10 | 000,012,004 | ---- | C] () -- C:\Program Files\Sony Video Capture - ShuttlePRO.pref
[2006/04/04 13:40:10 | 000,012,004 | ---- | C] () -- C:\Program Files\Sony Video Capture - ShuttlePRO v2.pref
[2006/03/09 13:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll

< End of report >

descriptionThinkPoint is not found in scan? EmptyRe: ThinkPoint is not found in scan?

more_horiz
OTL Extras logfile created on: 10/30/2010 7:24:14 PM - Run 1
OTL by OldTimer - Version 3.2.17.1 Folder = C:\Users\Jello\Downloads
Windows Vista Home Basic Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 63.00% Memory free
6.00 Gb Paging File | 5.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 140.37 Gb Total Space | 67.36 Gb Free Space | 47.99% Space Free | Partition Type: NTFS

Computer Name: JELLO-PC | User Name: Jello | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{1BAB03F8-9E1A-467A-91E5-16CB87460870}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe |
"{505873C0-A212-4003-A999-AD0B27E2ED50}" = lport=2869 | protocol=6 | dir=in | app=system |
"{F75A1B1D-25A4-471D-9244-AB6249145046}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02A76E5B-E98A-4894-8918-71BF66BE7455}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{0AB3BB8F-8394-4050-8DC4-474F1EEA5FCD}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{16CA1BC4-29C2-472A-957A-D4093D7A7044}" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\ro2\ragii.exe |
"{182E4197-95B9-4AA4-9510-CF465A79E30E}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{2963460F-1A50-4741-BC40-87FAE10222ED}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version5\teamviewer.exe |
"{331CD526-10EE-47E5-A2B3-47976C39CD9F}" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\ro2\ragii.exe |
"{418EB9C2-AED4-49E7-8225-F8AC9E1C2F41}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version5\teamviewer.exe |
"{9B77CCDC-315E-4B6A-8F47-E94AE7BE4EBF}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{C0B59254-4C45-44AF-B32D-A2558628C4C0}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{CD409CAC-D6A0-4AAC-9203-16D2B30878CB}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe |
"{D1D72668-657B-46F9-AD2A-5CB572C87AE9}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{D38340DF-E9FC-4378-96C6-24591D3A9422}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{EEF47306-14D6-457A-ACE0-586B3395AFEE}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"TCP Query User{0A21B87F-7861-4ECA-8B88-673581153B23}C:\program files\nx client for windows\bin\nxssh.exe" = protocol=6 | dir=in | app=c:\program files\nx client for windows\bin\nxssh.exe |
"TCP Query User{0DC457FD-F5FA-495F-877F-BE29FA3577DC}C:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\map-server.exe" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\map-server.exe |
"TCP Query User{0DE63984-B7F1-4E38-8208-4D8B98B4BB0B}C:\program files\nx client for windows\nxclient.exe" = protocol=6 | dir=in | app=c:\program files\nx client for windows\nxclient.exe |
"TCP Query User{297D7802-CED3-484B-9D5E-18B3454B7321}C:\program files\vegsrv90.exe" = protocol=6 | dir=in | app=c:\program files\vegsrv90.exe |
"TCP Query User{320DB96A-3131-409B-8A10-D3B57CA9C900}C:\users\jello\documents\gravity\heavenlyrisesro\char-server.exe" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\heavenlyrisesro\char-server.exe |
"TCP Query User{47E74E4B-BAD2-4D0F-83F2-49E153E0E271}C:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\char-server.exe" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\char-server.exe |
"TCP Query User{60A6C31E-054A-4283-BDE4-D90C5BBBF15E}C:\users\jello\documents\gravity\testro\login-server.exe" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\testro\login-server.exe |
"TCP Query User{6A23AF76-A1B0-45F1-914B-BF73198AACCA}C:\users\jello\documents\gravity\testro\char-server.exe" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\testro\char-server.exe |
"TCP Query User{89FA0BB1-E2D3-4147-80BE-500F16F19599}C:\users\jello\desktop\new folder (2)\utorrent.exe" = protocol=6 | dir=in | app=c:\users\jello\desktop\new folder (2)\utorrent.exe |
"TCP Query User{A874AF57-567C-48BC-9285-EA8DD73F0E34}C:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\login-server.exe" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\login-server.exe |
"TCP Query User{A9E36554-B9EA-4198-9D08-9567ED448197}C:\program files\nx client for windows\bin\nxssh.exe" = protocol=6 | dir=in | app=c:\program files\nx client for windows\bin\nxssh.exe |
"TCP Query User{C81F420E-5EAB-4851-8ACA-CE59DA9DB96D}C:\users\jello\documents\gravity\heavenlyrisesro\map-server.exe" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\heavenlyrisesro\map-server.exe |
"TCP Query User{CBA2D118-C3A3-48C2-8B89-9D5986B28B78}C:\program files\nx client for windows\nxclient.exe" = protocol=6 | dir=in | app=c:\program files\nx client for windows\nxclient.exe |
"TCP Query User{F8FEA182-02A6-4CBC-9147-FE41F9541705}C:\users\jello\documents\gravity\heavenlyrisesro\login-server.exe" = protocol=6 | dir=in | app=c:\users\jello\documents\gravity\heavenlyrisesro\login-server.exe |
"TCP Query User{FD535498-688B-4387-A3C6-F9837F378E7B}C:\users\jello\desktop\torrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\jello\desktop\torrent\utorrent.exe |
"UDP Query User{054ACC3B-B136-429C-B407-6CEFD4DEAA83}C:\users\jello\desktop\new folder (2)\utorrent.exe" = protocol=17 | dir=in | app=c:\users\jello\desktop\new folder (2)\utorrent.exe |
"UDP Query User{059C073B-6DCE-4DD7-A7F2-40E8B8ECB1DC}C:\program files\vegsrv90.exe" = protocol=17 | dir=in | app=c:\program files\vegsrv90.exe |
"UDP Query User{0EF75FCB-8ABA-40EB-8C4E-E65785B5DBAD}C:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\map-server.exe" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\map-server.exe |
"UDP Query User{199AAEEB-E066-4539-BBEB-ABB172937AE2}C:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\login-server.exe" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\login-server.exe |
"UDP Query User{2C4B482A-1F02-4994-95C6-D3D11A1B9D98}C:\users\jello\documents\gravity\heavenlyrisesro\map-server.exe" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\heavenlyrisesro\map-server.exe |
"UDP Query User{3DAC4DFB-58E8-40BB-8044-A7029924BD0C}C:\users\jello\documents\gravity\heavenlyrisesro\char-server.exe" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\heavenlyrisesro\char-server.exe |
"UDP Query User{5E580376-3487-4A04-819C-D453F1834734}C:\users\jello\documents\gravity\heavenlyrisesro\login-server.exe" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\heavenlyrisesro\login-server.exe |
"UDP Query User{647B516A-5C17-4602-81AD-8485B9C7A4F0}C:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\char-server.exe" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\unleashedro2\3ceam+_ea1410_legendia\char-server.exe |
"UDP Query User{717F568F-F77B-4D4A-A9CE-953227C5C676}C:\program files\nx client for windows\bin\nxssh.exe" = protocol=17 | dir=in | app=c:\program files\nx client for windows\bin\nxssh.exe |
"UDP Query User{75D907D2-1A86-4F91-B348-7B62BE2BB7E5}C:\users\jello\desktop\torrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\jello\desktop\torrent\utorrent.exe |
"UDP Query User{9C531AE9-4B6C-41C7-A30B-B2FB12501360}C:\program files\nx client for windows\nxclient.exe" = protocol=17 | dir=in | app=c:\program files\nx client for windows\nxclient.exe |
"UDP Query User{9CA451C9-BD27-4613-AC0F-07267468D028}C:\program files\nx client for windows\nxclient.exe" = protocol=17 | dir=in | app=c:\program files\nx client for windows\nxclient.exe |
"UDP Query User{B66AF049-DF1E-46C2-8C35-D2719B956F1C}C:\users\jello\documents\gravity\testro\login-server.exe" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\testro\login-server.exe |
"UDP Query User{C0B225D0-7075-41EB-A77C-6F672722BA15}C:\program files\nx client for windows\bin\nxssh.exe" = protocol=17 | dir=in | app=c:\program files\nx client for windows\bin\nxssh.exe |
"UDP Query User{F216F5F4-510E-4A6C-975F-FAE8549768A5}C:\users\jello\documents\gravity\testro\char-server.exe" = protocol=17 | dir=in | app=c:\users\jello\documents\gravity\testro\char-server.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{004098A1-0362-4C42-A1C3-CAD436CFF4A1}" = YouTube Downloader Toolbar v1.0
"{008D69EB-70FF-46AB-9C75-924620DF191A}" = TOSHIBA Speech System SR Engine(U.S.) Version1.0
"{044F9133-B8D7-4d11-BF39-803FA20F5C8B}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for Win32
"{0D5D0BEE-FBA9-4928-A50D-6CDFAB827755}" = TOSHIBA ConfigFree
"{12B3A009-A080-4619-9A2A-C6DB151D8D67}" = TOSHIBA Assist
"{139E303E-1050-497F-98B1-9AE87B15C463}" = Windows Live Family Safety
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{17DF6492-1394-457C-9CCC-19FCD8451061}" = Blaine's Bloom/Negative Effects
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{196E77C5-F524-4B50-BD1A-2C21EEE9B8F7}" = Microsoft SQL Server 2008 Common Files
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{224821ED-CADA-4A8A-AC8D-3734CC0F0931}" = Amazon Links
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java(TM) 6 Update 18
"{2883F6F5-0509-43F3-868C-D50330DD9DD3}" = TOSHIBA Hardware Setup
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{3248F0A8-6813-11D6-A77B-00B0D0160060}" = Java(TM) 6 Update 6
"{342D4AD7-EC4C-4EC8-AEA6-E70F5905A490}" = SQL Server System CLR Types
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{3D5044A5-97B8-45C0-B956-BB2376569188}" = Windows Live Movie Maker
"{3FBF6F99-8EC6-41B4-8527-0A32241B5496}" = TOSHIBA Speech System TTS Engine(U.S.) Version1.0
"{415B2719-AD3A-4944-B404-C472DB6085B3}" = Cisco EAP-FAST Module
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{4815BD99-96A4-49FE-A885-DCF06E9E4E78}" = Microsoft SQL Server 2008 Database Engine Shared
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A6F34E2-09E5-4616-B227-4A26A488A6F9}" = Microsoft SQL Server 2008 Common Files
"{4B1E87C3-00DE-4898-8E39-E390AAEF2391}" = TOSHIBA Supervisor Password
"{4C590030-7469-453E-8589-D15DA9D03F52}" = ANIWZCS2 Service
"{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3
"{58721EC3-8D4E-4B79-BC51-1054E2DDCD10}" = Microsoft SQL Server 2008 Database Engine Services
"{5BE1E709-30E4-3D6D-A708-96CE8D5E5E8D}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for .NET Framework - enu
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{5ECB3A3C-980B-4D12-9724-25DCB07A1F47}" = iTunes
"{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
"{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}" = Cisco PEAP Module
"{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{83770D14-21B9-44B3-8689-F7B523F94560}" = Cisco LEAP Module
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{842FAF7C-50EF-4463-9B8F-6222E1384D7D}" = Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver
"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo Layers Client 1.10.01
"{890EF3F8-742F-46BD-9E8E-084B3A1F4364}" = QuickBooks Financial Center
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A253629-0511-4854-8B4E-46E57E66005C}" = Bonjour
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8AF3E926-ED59-11D4-A44B-0000E86D2305}" = Ulead GIF Animator 5 TBYB
"{8F018A9E-56DE-4A79-A5EF-25F413F1D538}" = WeatherBug
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{995F1E2E-F542-4310-8E1D-9926F5A279B3}" = Windows Live Toolbar
"{99D518AB-77F2-405B-B52A-18FC22394CF8}" = NetZero Internet Access Installer
"{9B1F6E3A-213C-4DE8-8A86-573E3587F932}" = YggRO2
"{9D6D76A6-4328-49E8-97A7-531A74841DA5}" = Microsoft SQL Server 2008 Setup Support Files (English)
"{9DE1BE03-AFE2-4CDB-BFEB-D06D736CD01A}" = Apple Mobile Device Support
"{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}" = CD/DVD Drive Acoustic Silencer
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station
"{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9
"{B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13}" = Atheros Wi-Fi Protected Setup Library
"{B5153233-9AEE-4CD4-9D2C-4FAAC870DBE2}" = Microsoft SQL Server 2008 Database Engine Services
"{B5FDA445-CAC4-4BA6-A8FB-A7212BD439DE}" = Microsoft XML Parser
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Disc Creator
"{B78823CD-488F-43B4-80D6-FAEADAE40EC4}" = Instant Wireless USB Adapter
"{B857D868-F8B0-43EE-BC2B-D9E5ED21F237}" = Microsoft SQL Server VSS Writer
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{BFF829B6-B433-42CE-9A19-E459D3E4E483}" = My.Freeze.com NetAssistant
"{C06764A6-F111-4EFA-879E-76F83A8FF3A1}" = MultiScreen Effects for Vista Movie Maker
"{C1B04862-B0FE-4399-9A20-770448087DCB}" = Blaine's Color Fade Effects
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C53D16CC-E56F-47B8-906E-70AAF8EABB4F}" = Toshiba Registration
"{C688457E-03FD-4941-923B-A27F4D42A7DD}" = Microsoft SQL Server 2008 Browser
"{c6c214df-2922-4809-94aa-f4d67d4451ec}" = Music Oasis
"{C965F01C-76EA-4BD7-973E-46236AE312D7}" = Sql Server Customer Experience Improvement Program
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D6C75F0B-3BC1-4FC9-B8C5-3F7E8ED059CA}" = Windows Live Photo Gallery
"{D8087907-E255-3A41-A46D-D0F798709C71}" = Microsoft Visual C++ 2008 Express Edition with SP1 - ENU
"{D895E3FB-45BA-4BBF-BE50-0DEED3CD3F7E}" = Wireless G WUA-1340
"{D9D1A2FD-56B2-4F21-B959-745FE43CAB8C}" = Vegas Pro 9.0
"{D9D937B0-E842-4130-9588-B948E876904A}" = Microsoft SQL Server 2008 Native Client
"{DC24971E-1946-445D-8A82-CE685433FA7D}" = Realtek USB 2.0 Card Reader
"{E1E56B8A-1AAF-422A-91DB-625059FB9863}" = TOSHIBA Desktop Links
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{E3935FBB-53C6-48BB-B9C4-1407AAD34523}" = Belkin Wireless G Cardbus Adapter
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{E55B3271-7CA8-4D0C-AE06-69A24856E996}_is1" = Uniblue SpeedUpMyPC
"{E80F62FF-5D3C-4A19-8409-9721F2928206}" = LiveUpdate (Symantec Corporation)
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{EE033C1F-443E-41EC-A0E2-559B539A4E4D}" = TOSHIBA Speech System Applications
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1DC7648-8623-442F-92B7-E118DF61872E}" = Microsoft SQL Server 2008 RsFx Driver
"{F214EAA4-A069-4BAF-9DA4-4DB8BEEDE485}" = DVD MovieFactory for TOSHIBA
"{F3494AB6-6900-41C6-AF57-823626827ED8}" = Microsoft SQL Server 2008 Database Engine Shared
"{F5E87B12-3C27-452F-8E78-21D42164FD83}" = Microsoft SQL Server 2008 Management Objects
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{FB26A501-6BA6-459B-89AA-9736730752FB}" = VoiceOver Kit
"{FE0646A7-19D0-41B4-A2BB-2C35D644270D}" = Windows Live OneCare safety scanner
"{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package
"7-Zip" = 7-Zip 4.57
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop 7.0" = Adobe Photoshop 7.0
"AhnLab Online Security" = AhnLab Online Security
"avast5" = avast! Free Antivirus
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"conduitEngine" = Conduit Engine
"Google Desktop" = Google Desktop
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"InstallShield_{E3935FBB-53C6-48BB-B9C4-1407AAD34523}" = Belkin Wireless G Cardbus Adapter
"InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft SQL Server 10" = Microsoft SQL Server 2008
"Microsoft SQL Server 10 Release" = Microsoft SQL Server 2008
"Microsoft Visual C++ 2008 Express Edition with SP1 - ENU" = Microsoft Visual C++ 2008 Express Edition with SP1 - ENU
"Mozilla Firefox (3.6.12)" = Mozilla Firefox (3.6.12)
"nxclient_is1" = NX Client for Windows 3.4.0-7
"PageRage Toolbar" = PageRage Toolbar
"Picasa2" = Picasa 2
"PriceGong" = PriceGong 2.1.0
"PsuedoLiveUpdate" = LiveUpdate (Symantec Corporation)
"Raganrok Renewal" = Ragnarok Renewal
"Ragnarok Online" = Ragnarok Online
"Ragnarok Sakray" = Ragnarok Sakray
"RegPowerClean_is1" = Winferno Registry Power Cleaner
"simppulltoolbar" = Simppull Toolbar (Remove Toolbar Only)
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"TeamViewer 5" = TeamViewer 5
"TOSHIBA Software Modem" = TOSHIBA Software Modem
"UnleasedRO Installer 1.00" = UnleasedRO Installer 1.00
"UnleashedRO" = UnleashedRO
"uTorrent" = µTorrent
"WildTangent toshiba Master Uninstall" = WildTangent Games
"Windows Live OneCare safety scanner" = Windows Live OneCare safety scanner
"Windows Media Encoder 9" = Windows Media Encoder 9 Series
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"Wipeout Ragnarok Online" = Wipeout Ragnarok Online
"WT086074" = Wizard Land
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Software Update" = Yahoo! Software Update

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"FileZilla Client" = FileZilla Client 3.3.4.1
"Google Chrome" = Google Chrome
"My.Freeze.com NetAssistant" = My.Freeze.com NetAssistant for Firefox

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 8/1/2010 3:02:13 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 1024
Description =

Error - 8/1/2010 3:02:42 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 11606
Description =

Error - 8/1/2010 3:02:42 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 11606
Description =

Error - 8/1/2010 3:02:42 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 1024
Description =

Error - 8/1/2010 3:03:11 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 11606
Description =

Error - 8/1/2010 3:03:11 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 11606
Description =

Error - 8/1/2010 3:03:11 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 1024
Description =

Error - 8/1/2010 3:03:40 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 11606
Description =

Error - 8/1/2010 3:03:40 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 11606
Description =

Error - 8/1/2010 3:03:40 AM | Computer Name = Jello-PC | Source = MsiInstaller | ID = 1024
Description =

[ System Events ]
Error - 10/30/2010 6:44:18 PM | Computer Name = Jello-PC | Source = DCOM | ID = 10005
Description =

Error - 10/30/2010 6:44:19 PM | Computer Name = Jello-PC | Source = DCOM | ID = 10005
Description =

Error - 10/30/2010 6:44:19 PM | Computer Name = Jello-PC | Source = DCOM | ID = 10005
Description =

Error - 10/30/2010 6:44:20 PM | Computer Name = Jello-PC | Source = Service Control Manager | ID = 7001
Description =

Error - 10/30/2010 6:44:20 PM | Computer Name = Jello-PC | Source = Service Control Manager | ID = 7001
Description =

Error - 10/30/2010 6:44:54 PM | Computer Name = Jello-PC | Source = Service Control Manager | ID = 7001
Description =

Error - 10/30/2010 6:44:54 PM | Computer Name = Jello-PC | Source = DCOM | ID = 10005
Description =

Error - 10/30/2010 6:44:55 PM | Computer Name = Jello-PC | Source = Service Control Manager | ID = 7001
Description =

Error - 10/30/2010 6:44:56 PM | Computer Name = Jello-PC | Source = DCOM | ID = 10005
Description =

Error - 10/30/2010 7:16:37 PM | Computer Name = Jello-PC | Source = HTTP | ID = 15016
Description =


< End of report >

descriptionThinkPoint is not found in scan? EmptyRe: ThinkPoint is not found in scan?

more_horiz
Can anyone help at all?

descriptionThinkPoint is not found in scan? EmptyRe: ThinkPoint is not found in scan?

more_horiz
Hello.

Please run OTL.exe.

  • Copy the commands with file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):


    :OTL
    O20 - HKCU Winlogon: Shell - (C:\Users\Jello\AppData\Roaming\hotfix.exe) - C:\Users\Jello\AppData\Roaming\hotfix.exe (PFMGR)
    [2010/10/30 03:29:12 | 000,000,010 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\install
    [2010/10/30 02:33:56 | 000,527,872 | ---- | M] (PFMGR) -- C:\Users\Jello\AppData\Roaming\hotfix.exe
    [2010/10/30 02:33:56 | 000,000,199 | ---- | M] () -- C:\Users\Jello\AppData\Roaming\ahfg.bat
    [2010/10/30 03:40:21 | 000,000,006 | ---- | C] () -- C:\Users\Jello\AppData\Roaming\start
    [2010/10/30 03:35:47 | 000,000,006 | ---- | C] () -- C:\Users\Jello\AppData\Roaming\completescan
    [2010/10/30 03:29:12 | 000,000,735 | ---- | C] () -- C:\Users\Jello\Desktop\ThinkPoint.lnk


  • Return to OTL, right click in the "Custom Scans/Fixes" window (under the light green bar) and choose Paste.

  • Click the red Run Fix button.
  • A fix log in Notepad will appear. Copy the contents of the fix log to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
  • Close OTL.exe
If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
ThinkPoint is not found in scan? DXwU4
ThinkPoint is not found in scan? VvYDg

descriptionThinkPoint is not found in scan? EmptyRe: ThinkPoint is not found in scan?

more_horiz
Thanks for the help Belahzur, but after all this I decided to go clean on the laptop. But if I ever have further problems I will remember to come here!

-BTF

descriptionThinkPoint is not found in scan? EmptyRe: ThinkPoint is not found in scan?

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum