Continued from last post:

[2010/11/14 07:55:21 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Valued Customer\My Documents\OTL.com
[2010/11/14 07:47:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\MFAData
[2010/11/14 07:46:32 | 004,329,496 | ---- | C] (AVG Technologies) -- C:\Documents and Settings\Valued Customer\My Documents\avg_free_stb_all_2011_1153_cnet.exe
[2010/11/14 07:36:46 | 000,000,000 | ---D | C] -- C:\Avenger
[2010/11/14 07:17:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Valued Customer\Application Data\Malwarebytes
[2010/11/14 07:17:37 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/11/14 07:17:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes
[2010/11/14 07:17:35 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/11/14 07:17:35 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/11/14 07:16:16 | 006,153,352 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Valued Customer\My Documents\mbam-setup-1.46.exe
[2010/11/07 23:24:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Temp
[2010/10/31 06:30:18 | 000,165,584 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2010/10/31 06:30:18 | 000,046,672 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2010/10/31 06:30:18 | 000,023,376 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2010/10/31 06:30:18 | 000,017,744 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010/10/31 06:30:17 | 000,100,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2010/10/31 06:30:17 | 000,094,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2010/10/31 06:30:16 | 000,028,880 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2010/10/31 06:30:00 | 000,038,848 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2010/10/31 06:29:59 | 000,167,592 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2010/10/31 06:29:52 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2010/10/31 06:29:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Alwil Software
[2010/10/21 21:22:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Sun
[2010/10/21 21:22:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2010/10/21 21:21:28 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deployJava1.dll
[2010/10/21 21:21:28 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2010/10/21 21:21:28 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2010/10/21 21:21:28 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/11/14 07:55:22 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Valued Customer\My Documents\OTL.com
[2010/11/14 07:46:35 | 004,329,496 | ---- | M] (AVG Technologies) -- C:\Documents and Settings\Valued Customer\My Documents\avg_free_stb_all_2011_1153_cnet.exe
[2010/11/14 07:42:14 | 000,383,822 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/11/14 07:42:14 | 000,054,010 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/11/14 07:37:54 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/11/14 07:37:37 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/11/14 07:37:16 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/11/14 07:37:13 | 1064,751,104 | -HS- | M] () -- C:\hiberfil.sys
[2010/11/14 07:24:03 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/11/14 07:17:39 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/11/14 07:16:06 | 006,153,352 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Valued Customer\My Documents\mbam-setup-1.46.exe
[2010/11/09 18:56:49 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/11/07 23:28:34 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Google Chrome.lnk
[2010/10/31 06:31:15 | 000,001,791 | ---- | M] () -- C:\Documents and Settings\Valued Customer\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/10/31 06:30:19 | 000,001,700 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\avast! Free Antivirus.lnk
[2010/10/31 06:30:17 | 000,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/11/14 07:17:39 | 000,000,696 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/10/31 06:31:15 | 000,001,813 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Google Chrome.lnk
[2010/10/31 06:31:15 | 000,001,791 | ---- | C] () -- C:\Documents and Settings\Valued Customer\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/10/31 06:30:19 | 000,001,700 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\avast! Free Antivirus.lnk
[2010/10/03 20:58:57 | 000,000,349 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2010/10/03 16:43:09 | 002,440,206 | ---- | C] () -- C:\Documents and Settings\Valued Customer\Local Settings\Application Data\[j0002]-[p01].bmp
[2010/09/15 18:14:54 | 000,000,597 | ---- | C] () -- C:\WINDOWS\WSST_Screen_Saver.ini
[2010/09/01 19:10:11 | 000,000,069 | ---- | C] () -- C:\WINDOWS\iltwain.ini
[2010/06/16 20:26:23 | 008,892,928 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\atscie.msi
[2010/04/04 12:25:33 | 000,014,336 | ---- | C] () -- C:\Documents and Settings\Valued Customer\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/25 09:33:31 | 000,000,138 | ---- | C] () -- C:\Documents and Settings\Valued Customer\Local Settings\Application Data\fusioncache.dat
[2010/02/23 09:16:30 | 000,005,432 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\hpzinstall.log
[2010/02/10 12:14:14 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Valued Customer\Local Settings\Application Data\QSwitch.txt
[2010/02/10 12:14:14 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Valued Customer\Local Settings\Application Data\DSwitch.txt
[2010/02/10 12:14:14 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Valued Customer\Local Settings\Application Data\AtStart.txt
[2010/02/10 11:46:03 | 000,172,032 | ---- | C] () -- C:\WINDOWS\System32\tifmicon.dll
[2010/02/09 08:15:01 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2007/06/08 09:05:38 | 000,274,432 | ---- | C] () -- C:\WINDOWS\System32\flcdlmsg.dll
[2003/09/17 09:12:00 | 000,540,672 | ---- | C] () -- C:\WINDOWS\System32\TX32.DLL
[2002/09/17 15:46:30 | 000,229,376 | ---- | C] () -- C:\WINDOWS\System32\ISP2000.dll
[1998/05/07 02:10:00 | 000,069,632 | R--- | C] () -- C:\WINDOWS\System32\ODMA32.dll
[1997/09/12 15:41:00 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\Eztw32.dll

========== Custom Scans ==========


< %systemroot%\Fonts\*.com >

< %systemroot%\Fonts\*.dll >

< %systemroot%\Fonts\*.ini >
[2010/02/09 17:08:08 | 000,000,067 | -HS- | M] () -- C:\WINDOWS\Fonts\desktop.ini

< %systemroot%\Fonts\*.ini2 >

< %systemroot%\Fonts\*.exe >

< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2009/06/09 00:43:12 | 000,316,928 | ---- | M] (Hewlett-Packard Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\hpfpp092.dll
[2006/10/26 19:56:12 | 000,033,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll

< %systemroot%\REPAIR\*.bak1 >

< %systemroot%\REPAIR\*.ini >

< %systemroot%\system32\*.jpg >

< %systemroot%\*.jpg >

< %systemroot%\*.png >

< %systemroot%\*.scr >
[2010/09/07 08:12:17 | 000,038,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2010/09/15 18:14:51 | 000,466,944 | ---- | M] () -- C:\WINDOWS\Spider Man2 01 SS.scr
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

< %systemroot%\*._sy >

< %APPDATA%\Adobe\Update\*.* >

< %ALLUSERSPROFILE%\Favorites\*.* >

< %APPDATA%\Microsoft\*.* >

< %PROGRAMFILES%\*.* >

< %APPDATA%\Update\*.* >

< %PROGRAMFILES%\bak. /s >

< %systemroot%\system32\bak. /s >

< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
[2010/03/13 00:02:59 | 000,000,272 | -HS- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\desktop.ini

< %systemroot%\system32\config\systemprofile\*.dat /x >

< %systemroot%\*.config >

< %systemroot%\system32\*.db >

< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2010/02/10 10:44:00 | 000,000,119 | -HS- | M] () -- C:\Documents and Settings\Valued Customer\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini
[2010/02/10 10:43:59 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\Valued Customer\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf

< %USERPROFILE%\Desktop\*.exe >

< %PROGRAMFILES%\Common Files\*.* >

< %systemroot%\*.src >

< %systemroot%\install\*.* >

< %systemroot%\system32\DLL\*.* >

< %systemroot%\system32\HelpFiles\*.* >

< %systemroot%\system32\rundll\*.* >

< %systemroot%\winn32\*.* >

< %systemroot%\Java\*.* >

< %systemroot%\system32\test\*.* >

< %systemroot%\system32\Rundll32\*.* >

< %systemroot%\AppPatch\Custom\*.* >

< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >

< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >

< %PROGRAMFILES%\Internet Explorer\*.tmp >

< %PROGRAMFILES%\Internet Explorer\*.dat >

< %USERPROFILE%\My Documents\*.exe >
[2010/11/14 07:46:35 | 004,329,496 | ---- | M] (AVG Technologies) -- C:\Documents and Settings\Valued Customer\My Documents\avg_free_stb_all_2011_1153_cnet.exe
[2010/11/14 07:16:06 | 006,153,352 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Valued Customer\My Documents\mbam-setup-1.46.exe

< %USERPROFILE%\*.exe >

< %systemroot%\ADDINS\*.* >

< %systemroot%\assembly\*.bak2 >

< %systemroot%\Config\*.* >

< %systemroot%\REPAIR\*.bak2 >

< %systemroot%\SECURITY\Database\*.sdb /x >

< %systemroot%\SYSTEM\*.bak2 >

< %systemroot%\Web\*.bak2 >

< %systemroot%\Driver Cache\*.* >

< %PROGRAMFILES%\Mozilla Firefox\*.exe >

< %ProgramFiles%\Microsoft Common\*.* >

< %ProgramFiles%\TinyProxy. >

< %USERPROFILE%\Favorites\*.url /x >
[2010/02/10 10:43:59 | 000,000,122 | -HS- | M] () -- C:\Documents and Settings\Valued Customer\Favorites\Desktop.ini

< %systemroot%\system32\*.bk >

< %systemroot%\*.te >

< %systemroot%\system32\system32\*.* >

< %ALLUSERSPROFILE%\*.dat /x >

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\*.exe /lockedfiles >
[2008/04/13 17:12:39 | 000,507,904 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\winlogon.exe
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2010/02/09 06:37:01 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2010/02/09 06:37:01 | 000,659,456 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2010/02/09 06:37:01 | 000,905,216 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

< %systemroot%\system32\*.sys >
[2004/08/04 05:00:00 | 000,009,029 | ---- | M] () -- C:\WINDOWS\system32\ansi.sys
[2004/08/04 05:00:00 | 000,027,097 | ---- | M] () -- C:\WINDOWS\system32\country.sys
[2004/08/04 05:00:00 | 000,004,768 | ---- | M] () -- C:\WINDOWS\system32\himem.sys
[2004/08/04 05:00:00 | 000,042,809 | ---- | M] () -- C:\WINDOWS\system32\key01.sys
[2004/08/04 05:00:00 | 000,042,537 | ---- | M] () -- C:\WINDOWS\system32\keyboard.sys
[2004/08/04 05:00:00 | 000,027,866 | ---- | M] () -- C:\WINDOWS\system32\ntdos.sys
[2004/08/04 05:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\system32\ntdos404.sys
[2004/08/04 05:00:00 | 000,029,370 | ---- | M] () -- C:\WINDOWS\system32\ntdos411.sys
[2004/08/04 05:00:00 | 000,029,274 | ---- | M] () -- C:\WINDOWS\system32\ntdos412.sys
[2004/08/04 05:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\system32\ntdos804.sys
[2004/08/04 05:00:00 | 000,033,840 | ---- | M] () -- C:\WINDOWS\system32\ntio.sys
[2004/08/04 05:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\system32\ntio404.sys
[2004/08/04 05:00:00 | 000,035,648 | ---- | M] () -- C:\WINDOWS\system32\ntio411.sys
[2004/08/04 05:00:00 | 000,035,424 | ---- | M] () -- C:\WINDOWS\system32\ntio412.sys
[2004/08/04 05:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\system32\ntio804.sys
[2008/04/13 11:44:59 | 000,017,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\watchdog.sys
[2010/08/31 06:42:52 | 001,852,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\win32k.sys
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.dll >
[2008/04/13 17:11:48 | 000,004,255 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv01nt5.dll
[2008/04/13 17:11:48 | 000,003,967 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv02nt5.dll
[2008/04/13 17:11:48 | 000,003,615 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv05nt5.dll
[2008/04/13 17:11:48 | 000,003,647 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv07nt5.dll
[2008/04/13 17:11:48 | 000,003,135 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv08nt5.dll
[2008/04/13 17:11:48 | 000,003,711 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv09nt5.dll
[2008/04/13 17:11:48 | 000,003,775 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv11nt5.dll
[2008/04/13 17:11:50 | 000,021,183 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv01nt5.dll
[2008/04/13 17:11:50 | 000,011,359 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv02nt5.dll
[2008/04/13 17:11:50 | 000,025,471 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv04nt5.dll
[2008/04/13 17:11:50 | 000,014,143 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv06nt5.dll
[2008/04/13 17:11:50 | 000,017,279 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv10nt5.dll
[2008/04/13 17:11:50 | 000,015,423 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
[2008/04/13 17:12:05 | 000,003,901 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\siint5.dll
[2008/04/13 17:12:08 | 000,011,325 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\vchnt5.dll

< %systemroot%\system32\drivers\*.ini >

< %systemroot%\system32\drivers\*.exe >

< %systemroot%\system32\Spool\prtprocs\w32x86\*.dll >
[2009/06/09 00:43:12 | 000,316,928 | ---- | M] (Hewlett-Packard Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\hpfpp092.dll
[2006/10/26 19:56:12 | 000,033,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll

< %SYSTEMDRIVE%\*.* >
[2006/05/21 10:32:12 | 000,182,240 | ---- | M] () -- C:\addUsepmtimer.exe
[2006/04/04 11:31:27 | 000,073,728 | ---- | M] () -- C:\agrep.exe
[2010/02/09 17:08:33 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010/02/10 11:57:17 | 000,000,090 | ---- | M] () -- C:\bcmwl5.log
[2010/02/09 17:02:23 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2010/02/09 17:08:33 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2006/04/04 11:31:27 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\devcon.exe
[2006/06/07 12:50:58 | 000,012,902 | ---- | M] () -- C:\DPs_fnsh.cmd
[2006/05/20 19:38:29 | 000,000,078 | ---- | M] () -- C:\fnsh_log.cmd
[2010/11/14 07:37:13 | 1064,751,104 | -HS- | M] () -- C:\hiberfil.sys
[2003/12/08 13:15:56 | 000,028,672 | R--- | M] ( ) -- C:\hpqimgrc.resources.dll
[2010/02/09 17:08:33 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/02/09 17:08:33 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2004/08/04 05:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010/03/12 23:58:52 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2010/11/14 07:37:11 | 1598,029,824 | -HS- | M] () -- C:\pagefile.sys
[2010/03/02 09:24:19 | 000,002,373 | ---- | M] () -- C:\_Sid.txt

< %PROGRAMFILES%\*. >
[2010/02/22 20:18:32 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2010/10/31 06:29:52 | 000,000,000 | ---D | M] -- C:\Program Files\Alwil Software
[2010/02/10 12:07:13 | 000,000,000 | ---D | M] -- C:\Program Files\Analog Devices
[2010/02/12 19:16:15 | 000,000,000 | ---D | M] -- C:\Program Files\AVG
[2010/02/10 11:57:13 | 000,000,000 | ---D | M] -- C:\Program Files\Broadcom
[2010/02/23 08:44:21 | 000,000,000 | ---D | M] -- C:\Program Files\Broderbund
[2010/10/21 21:22:20 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2010/02/09 17:04:45 | 000,000,000 | ---D | M] -- C:\Program Files\ComPlus Applications
[2010/05/21 18:50:55 | 000,000,000 | ---D | M] -- C:\Program Files\Conduit
[2010/09/01 00:15:21 | 000,000,000 | ---D | M] -- C:\Program Files\Cosmi
[2010/09/15 18:12:38 | 000,000,000 | ---D | M] -- C:\Program Files\FileSubmit
[2010/02/10 12:45:46 | 000,000,000 | ---D | M] -- C:\Program Files\Fingerprint Sensor
[2010/10/31 06:31:02 | 000,000,000 | ---D | M] -- C:\Program Files\Google
[2010/06/29 21:10:35 | 000,000,000 | ---D | M] -- C:\Program Files\Hewlett-Packard
[2010/06/29 21:12:30 | 000,000,000 | ---D | M] -- C:\Program Files\HP
[2010/03/13 00:50:51 | 000,000,000 | ---D | M] -- C:\Program Files\HPQ
[2010/03/13 01:48:09 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2010/02/10 10:54:18 | 000,000,000 | ---D | M] -- C:\Program Files\Intel
[2010/10/15 06:44:21 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2010/10/21 21:21:09 | 000,000,000 | ---D | M] -- C:\Program Files\Java
[2010/06/16 20:34:34 | 000,000,000 | ---D | M] -- C:\Program Files\Linksys
[2010/11/14 07:17:39 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/03/13 00:05:47 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger
[2010/02/25 07:10:28 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft CAPICOM 2.1.0.2
[2010/02/09 17:08:46 | 000,000,000 | ---D | M] -- C:\Program Files\microsoft frontpage
[2010/03/12 22:52:52 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2010/03/12 22:52:41 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio
[2010/03/12 23:24:05 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Works
[2010/03/12 22:51:38 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft.NET
[2010/08/12 11:30:26 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker
[2010/03/12 22:53:03 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2010/02/09 17:03:44 | 000,000,000 | ---D | M] -- C:\Program Files\MSN
[2010/02/09 17:04:29 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Gaming Zone
[2010/02/11 17:09:01 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0
[2010/02/11 17:11:47 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 6.0
[2010/03/13 00:00:26 | 000,000,000 | ---D | M] -- C:\Program Files\NetMeeting
[2010/02/09 17:04:37 | 000,000,000 | ---D | M] -- C:\Program Files\Online Services
[2010/03/13 00:18:04 | 000,000,000 | ---D | M] -- C:\Program Files\OpenOffice.org 3
[2010/05/13 02:01:09 | 000,000,000 | ---D | M] -- C:\Program Files\Outlook Express
[2010/06/16 20:26:57 | 000,000,000 | ---D | M] -- C:\Program Files\Pure Networks
[2010/03/12 22:55:28 | 000,000,000 | ---D | M] -- C:\Program Files\RegCure
[2010/08/31 14:07:00 | 000,000,000 | ---D | M] -- C:\Program Files\Setup NetZero
[2010/03/12 23:27:34 | 000,000,000 | ---D | M] -- C:\Program Files\Spybot - Search & Destroy
[2010/02/10 11:46:01 | 000,000,000 | ---D | M] -- C:\Program Files\Texas Instruments Inc
[2010/03/12 23:15:56 | 000,000,000 | ---D | M] -- C:\Program Files\Uniblue
[2010/02/10 10:43:50 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2010/06/27 20:30:35 | 000,000,000 | ---D | M] -- C:\Program Files\UsbBoost
[2010/09/26 19:41:16 | 000,000,000 | ---D | M] -- C:\Program Files\Vuze
[2010/09/14 21:23:10 | 000,000,000 | ---D | M] -- C:\Program Files\Vuze_Remote
[2010/06/16 20:26:33 | 000,000,000 | ---D | M] -- C:\Program Files\WebEx
[2010/03/13 00:02:34 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2010/03/13 00:00:23 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2010/02/09 17:07:15 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate
[2010/02/09 17:08:46 | 000,000,000 | ---D | M] -- C:\Program Files\xerox
[2010/06/29 21:13:27 | 000,000,000 | ---D | M] -- C:\Program Files\Yahoo!

< %appdata%\*.* >
[2010/02/09 08:14:26 | 000,000,062 | -HS- | M] () -- C:\Documents and Settings\Valued Customer\Application Data\desktop.ini


< MD5 for: AGP440.SYS >
[2010/03/12 23:56:01 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2010/03/12 23:56:01 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 11:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 11:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

< MD5 for: ATAPI.SYS >
[2010/03/12 23:56:01 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2010/03/12 23:56:01 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 11:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 11:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/03 15:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: DISK.SYS >
[2010/03/12 23:56:01 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:disk.sys
[2010/03/12 23:56:01 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:disk.sys
[2004/08/04 05:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\WINDOWS\$NtServicePackUninstall$\disk.sys
[2008/04/13 11:40:47 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\ServicePackFiles\i386\disk.sys
[2008/04/13 11:40:47 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\system32\drivers\disk.sys

< MD5 for: EVENTLOG.DLL >
[2008/04/13 17:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/13 17:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2004/08/04 05:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: IASTOR.SYS >
[2006/02/26 08:21:18 | 000,874,240 | ---- | M] (Intel Corporation) MD5=309C4D86D989FB1FCF64BD30DC81C51B -- C:\D\M\IN\1\iastor.sys
[2006/02/26 08:21:18 | 000,874,240 | ---- | M] (Intel Corporation) MD5=309C4D86D989FB1FCF64BD30DC81C51B -- C:\WINDOWS\system32\drivers\iaStor.sys

< MD5 for: NETLOGON.DLL >
[2008/04/13 17:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 17:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2009/02/06 11:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2009/02/06 11:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$NtUninstallKB975467_0$\netlogon.dll
[2004/08/04 05:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtUninstallKB968389_0$\netlogon.dll

< MD5 for: NVATA.SYS >
[2006/02/26 08:21:20 | 000,092,800 | ---- | M] (NVIDIA Corporation) MD5=33C5D977343D5A696B5CB2CC57E3A795 -- C:\D\M\N\4I\nvata.sys
[2006/02/26 08:21:20 | 000,092,800 | ---- | M] (NVIDIA Corporation) MD5=DCE353985C988BFB7E84FD942068151F -- C:\D\M\N\4A\nvata.sys

< MD5 for: NVATABUS.SYS >
[2006/02/26 08:21:20 | 000,092,800 | ---- | M] (NVIDIA Corporation) MD5=33C5D977343D5A696B5CB2CC57E3A795 -- C:\D\M\N\4IR\nvatabus.sys
[2006/02/26 08:21:19 | 000,089,856 | ---- | M] (NVIDIA Corporation) MD5=83F0275A21D9772B51CEF57E35AFAE61 -- C:\D\M\N\123\NvAtaBus.sys
[2006/02/26 08:21:20 | 000,092,800 | ---- | M] (NVIDIA Corporation) MD5=DCE353985C988BFB7E84FD942068151F -- C:\D\M\N\4AR\nvatabus.sys

< MD5 for: SCECLI.DLL >
[2004/08/04 05:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/13 17:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/13 17:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SYMMPI.SYS >
[2006/02/26 08:21:19 | 000,041,856 | ---- | M] (LSI Logic) MD5=3ADFFB39782474652F4EA2CF1345B340 -- C:\D\M\L\4\symmpi.sys

< MD5 for: USBSTOR.SYS >
[2010/03/12 23:56:01 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbstor.sys
[2010/03/12 23:56:01 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:usbstor.sys
[2004/08/03 23:08:48 | 000,026,496 | ---- | M] (Microsoft Corporation) MD5=6CD7B22193718F1D17A47A1CD6D37E75 -- C:\WINDOWS\$NtServicePackUninstall$\usbstor.sys
[2008/04/13 11:45:38 | 000,026,368 | ---- | M] (Microsoft Corporation) MD5=A32426D9B14A089EAA1D922E0C5801A9 -- C:\WINDOWS\ServicePackFiles\i386\usbstor.sys
[2008/04/13 11:45:38 | 000,026,368 | ---- | M] (Microsoft Corporation) MD5=A32426D9B14A089EAA1D922E0C5801A9 -- C:\WINDOWS\system32\drivers\usbstor.sys

< MD5 for: VIAMRAID.SYS >
[2006/02/26 08:21:23 | 000,092,672 | R--- | M] (VIA Technologies inc,.ltd) MD5=FBF18F9F5FB852C2976723587B44F346 -- C:\D\M\V\1\viamraid.sys

< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-11-10 10:04:00

< End of report >