OTL.txt :-
OTL logfile created on: 5/17/2011 8:35:57 PM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\A
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,013.00 Mb Total Physical Memory | 597.00 Mb Available Physical Memory | 59.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 90.00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 138.05 Gb Total Space | 6.79 Gb Free Space | 4.92% Space Free | Partition Type: NTFS
Drive D: | 122.24 Mb Total Space | 118.06 Mb Free Space | 96.58% Space Free | Partition Type: FAT
Computer Name: ACER-29E9B3877F | User Name: India | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/05/17 20:34:14 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\A\OTL.exe
PRC - [2010/02/12 09:14:07 | 000,516,592 | ---- | M] (Google Inc.) -- C:\Documents and Settings\India\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2008/04/14 17:30:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
========== Modules (SafeList) ==========
MOD - [2011/05/17 20:34:14 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\A\OTL.exe
MOD - [2008/04/14 17:30:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/05/17 20:10:04 | 000,340,520 | ---- | M] (Kaspersky Lab) [Auto | Stopped] -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe -- (AVP)
SRV - [2011/01/27 21:21:05 | 002,253,688 | ---- | M] (TeamViewer GmbH) [Disabled | Stopped] -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2011/01/25 15:08:32 | 000,032,768 | ---- | M] (BCL Technologies) [Disabled | Stopped] -- C:\Program Files\BCL Technologies\easyPDF Server 6\easyPDFService.exe -- (BCL easyPDF Server)
SRV - [2010/09/27 21:06:24 | 000,176,408 | ---- | M] (iWin Inc.) [Disabled | Stopped] -- C:\Program Files\iWin Games\iWinTrusted.exe -- (iWinTrusted)
SRV - [2010/04/29 15:39:34 | 000,304,464 | ---- | M] (Malwarebytes Corporation) [Disabled | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2010/01/13 14:33:48 | 000,109,648 | ---- | M] (Dritek System Inc.) [Disabled | Stopped] -- C:\Program Files\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2009/09/10 19:12:46 | 000,305,448 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\EgisTec\MyWinLocker 3\x86\\MWLService.exe -- (MWLService)
SRV - [2009/07/04 08:17:12 | 000,240,160 | ---- | M] (Acer) [Disabled | Stopped] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Updater Service)
SRV - [2009/06/05 08:33:06 | 000,354,840 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R)
SRV - [2008/11/10 02:18:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Disabled | Stopped] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ==========
DRV - [2011/05/04 14:46:37 | 000,315,408 | ---- | M] (Kaspersky Lab) [File_System | System | Stopped] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF)
DRV - [2011/02/09 17:00:49 | 000,106,880 | ---- | M] (AnyDATA.NET INC.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\adusbser.sys -- (adusbser)
DRV - [2011/01/25 16:10:06 | 000,097,112 | ---- | M] (Tonec Inc.) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\idmtdi.sys -- (IDMTDI)
DRV - [2011/01/12 15:12:12 | 000,025,088 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\teamviewervpn.sys -- (teamviewervpn)
DRV - [2010/07/30 14:16:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010/07/30 14:16:44 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010/07/30 14:16:42 | 000,023,040 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010/07/30 14:16:38 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2010/05/11 00:11:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Stopped] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2010/04/29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2010/04/29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2010/02/18 21:16:14 | 000,023,552 | ---- | M] (VMC India Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pppoe.sys -- (PPPOEP)
DRV - [2010/02/18 21:16:14 | 000,023,552 | ---- | M] (VMC India Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pppoe.sys -- (PPPOEMP)
DRV - [2010/02/17 23:55:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Stopped] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2010/02/03 15:35:32 | 000,108,752 | ---- | M] (ENE Technology Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\EUCR6SK.sys -- (EUCR)
DRV - [2010/01/13 10:55:54 | 001,766,784 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC)
DRV - [2010/01/05 06:24:48 | 001,602,856 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\athw.sys -- (AR5416)
DRV - [2009/12/09 15:22:54 | 006,017,568 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2009/11/18 04:47:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009/11/18 04:46:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2009/10/14 20:18:34 | 000,036,880 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\klbg.sys -- (klbg)
DRV - [2009/10/02 18:39:44 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt)
DRV - [2009/09/19 02:24:38 | 000,533,152 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btaudio.sys -- (btaudio)
DRV - [2009/09/14 13:42:46 | 000,032,272 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5)
DRV - [2009/09/09 10:24:44 | 000,045,984 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwusb.sys -- (BTWUSB)
DRV - [2009/09/04 11:16:08 | 000,045,056 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2009/09/01 14:29:50 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\kl1.sys -- (kl1)
DRV - [2009/07/10 01:15:00 | 000,991,264 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL)
DRV - [2009/05/12 03:15:26 | 000,056,992 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwhid.sys -- (btwhid)
DRV - [2008/12/02 09:22:00 | 000,058,800 | ---- | M] (Egis Incorporated.) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\mwlPSDVDisk.sys -- (mwlPSDVDisk)
DRV - [2008/12/02 09:22:00 | 000,017,840 | ---- | M] (Egis Incorporated.) [File_System | System | Stopped] -- C:\WINDOWS\system32\drivers\mwlPSDFilter.sys -- (mwlPSDFilter)
DRV - [2008/12/02 09:22:00 | 000,015,280 | ---- | M] (Egis Incorporated.) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\mwlPSDNserv.sys -- (mwlPSDNServ)
DRV - [2008/08/26 16:17:04 | 000,113,664 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbnet.sys -- (ewusbnet)
DRV - [2008/08/26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008/07/25 06:07:10 | 000,156,816 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwdndis.sys -- (BTWDNDIS)
DRV - [2008/07/24 12:02:36 | 000,101,376 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2008/02/05 06:27:44 | 000,037,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver)
DRV - [2008/02/05 06:27:30 | 000,037,032 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwmodem.sys -- (btwmodem)
DRV - [2007/10/16 11:40:50 | 000,097,408 | ---- | M] (Mobile Connector) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\cmusbser.sys -- (qcusbser)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0409&m=ao532h&r=0xph0710w115l0404wuj5w55j2r26r
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [Binary data over 100 bytes]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [Binary data over 100 bytes]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0409&m=ao532h&r=0xph0710w115l0404wuj5w55j2r26r
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: linkfilter@kaspersky.ru:9.0.0.736
FF - prefs.js..extensions.enabledItems: {000a9d1c-beef-4f90-9363-039d445309b8}:0.5.36.0
FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.732
FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.3.42
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906
FF - prefs.js..extensions.enabledItems: mozilla_cc@internetdownloadmanager.com:7.2.5
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.3
FF - prefs.js..extensions.enabledItems: noia2_option@kk.noia:3.76
FF - prefs.js..extensions.enabledItems: {C0CB8BA3-6C1B-47e8-A6AB-1FAB889562D9}:0.6.0.6
FF - prefs.js..extensions.enabledItems: {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}:1.4.1
FF - prefs.js..extensions.enabledItems: {73a6fe31-595d-460b-a920-fcc0f8843232}:2.0.9.8
FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.6.1
FF - prefs.js..extensions.enabledItems: {1280606b-2510-4fe0-97ef-9b5a22eafe80}:0.7
FF - prefs.js..extensions.enabledItems: {9f08cb5a-76b1-4bcf-aff9-90e1a5d60b1e}:3.76
FF - HKLM\software\mozilla\Firefox\Extensions\\{000a9d1c-beef-4f90-9363-039d445309b8}: C:\Program Files\Google\Google Gears\Firefox\ [2010/09/09 08:51:47 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2010/09/16 12:45:24 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010/11/26 10:29:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{98e34367-8df7-42b4-837b-20b892ff0849}: C:\Program Files\iWin Games\firefox\ [2011/01/05 20:09:26 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{6E19037A-12E3-4295-8915-ED48BC341614}: C:\Program Files\RelevantKnowledge
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/04/09 00:03:02 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/04/09 00:03:01 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2011/01/07 22:55:20 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010/11/26 10:29:44 | 000,000,000 | ---D | M]
[2010/08/16 00:37:52 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\India\Application Data\Mozilla\Extensions
[2010/08/16 00:37:52 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\India\Application Data\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011/05/17 20:22:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\extensions
[2011/03/05 10:12:14 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe80}
[2011/03/05 08:46:05 | 000,000,000 | ---D | M] (Noia 2.0 (eXtreme)) -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\extensions\{9f08cb5a-76b1-4bcf-aff9-90e1a5d60b1e}
[2011/04/09 00:51:07 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011/03/05 08:50:17 | 000,000,000 | ---D | M] (Noia 2.0 eXtreme OPT) -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\extensions\noia2_option@kk.noia
[2011/03/05 08:50:17 | 000,000,000 | ---D | M] (SkipScreen) -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\extensions\SkipScreen@SkipScreen
[2011/04/17 21:43:46 | 000,000,000 | ---D | M] (LogMeIn, Inc. Rescue Technician Console) -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\extensions\TechnicianConsole@logmeinrescue.com
[2010/11/10 22:45:21 | 000,002,243 | ---- | M] () -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\searchplugins\extratorrentcom-torrent-search.xml
[2010/07/23 21:48:10 | 000,001,504 | ---- | M] () -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\searchplugins\imdb.xml
[2011/05/17 20:28:36 | 000,004,873 | ---- | M] () -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\searchplugins\isohunt--bt-search.xml
[2010/07/23 21:45:23 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\searchplugins\mozilla-add-ons.xml
[2010/07/23 21:50:38 | 000,004,140 | ---- | M] () -- C:\Documents and Settings\India\Application Data\Mozilla\Firefox\Profiles\zw0skdf1.default\searchplugins\youtube.xml
[2011/04/09 00:03:02 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/01/09 12:54:58 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2010/07/23 22:21:53 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/08/26 01:47:43 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
File not found (No name found) --
[2011/02/17 22:04:33 | 000,000,000 | ---D | M] (IDM CC) -- C:\DOCUMENTS AND SETTINGS\INDIA\APPLICATION DATA\IDM\IDMMZCC3
() (No name found) -- C:\DOCUMENTS AND SETTINGS\INDIA\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\ZW0SKDF1.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\INDIA\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\ZW0SKDF1.DEFAULT\EXTENSIONS\{C0CB8BA3-6C1B-47E8-A6AB-1FAB889562D9}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\INDIA\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\ZW0SKDF1.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\INDIA\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\ZW0SKDF1.DEFAULT\EXTENSIONS\{EF4E370E-D9F0-4E00-B93E-A4F274CFDD5A}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\INDIA\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\ZW0SKDF1.DEFAULT\EXTENSIONS\PERSONAS@CHRISTOPHER.BEARD.XPI
[2010/07/23 22:21:38 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/03/18 23:23:24 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll
[2010/07/23 22:21:38 | 000,423,656 | ---- | M] (Oracle) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010/07/12 22:03:56 | 000,077,728 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
[2010/01/01 13:30:00 | 000,002,252 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\bing.xml
O1 HOSTS File: ([2008/04/14 17:30:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll (Kaspersky Lab)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Gears Helper) - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe (Kaspersky Lab)
O4 - HKLM..\Run: [AzMixerSel] C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKCU..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\System32\Macromed\Flash\FlashUtil10m_Plugin.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Bluetooth.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm ()
O9 - Extra 'Tools' menuitem : &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.)
O9 - Extra Button: &Virtual keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab)
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} file:///C:/Program%20Files/Heroes%20of%20Hellas/Images/stg_drm.ocx (SpinTop DRM Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} file:///C:/Program%20Files/Heroes%20of%20Hellas/Images/armhelper.ocx (ArmHelper Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\mzvkbd3.dll (Kaspersky Lab)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (c:\program files\microsoft\watermark.exe) - c:\Program Files\Microsoft\WaterMark.exe ()
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab)
O24 - Desktop WallPaper: C:\Documents and Settings\India\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\India\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/02/25 15:14:46 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011/04/30 19:31:16 | 000,008,492 | RHS- | M] () - D:\autorun.inf -- [ FAT ]
O33 - MountPoints2\{f94cbd0e-96ad-11df-8153-78e40001c92e}\Shell\AutoRun\command - "" = D:\vircure/vircure32.exe
O33 - MountPoints2\{f94cbd0e-96ad-11df-8153-78e40001c92e}\Shell\explore\command - "" = D:\vircure/vircure32.exe
O33 - MountPoints2\{f94cbd0e-96ad-11df-8153-78e40001c92e}\Shell\open\command - "" = D:\vircure/vircure32.exe
O33 - MountPoints2\{faa7de57-a8fa-11df-81ba-78e40001c92e}\Shell - "" = AutoRun
O33 - MountPoints2\{faa7de57-a8fa-11df-81ba-78e40001c92e}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{faa7de57-a8fa-11df-81ba-78e40001c92e}\Shell\AutoRun\command - "" = D:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/05/17 20:22:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\India\Recent
[2011/05/04 14:47:08 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab
[2011/05/04 14:47:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Kaspersky Anti-Virus 2010
[2011/05/04 14:46:37 | 000,315,408 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys
[2011/05/04 08:25:35 | 000,000,000 | ---D | C] -- C:\Program Files\Hitman Pro 3.5
[2011/05/04 08:25:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Hitman Pro 3.5
[2011/05/04 08:24:08 | 000,134,464 | ---- | C] (SurfRight B.V.) -- C:\WINDOWS\System32\LnkProtect.dll
[2011/04/30 19:36:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\Corel
[2011/04/30 19:35:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Corel Graphics Suite 11
[2011/04/30 19:35:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Corel
[2011/04/26 08:20:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\India\Local Settings\Application Data\HP
[2011/04/26 08:20:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\India\My Documents\OneNote Notebooks
[2011/04/18 01:33:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\speech
[2011/04/18 01:33:45 | 000,000,000 | ---D | C] -- C:\Program Files\NextUp Talker
[2011/04/18 01:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\NaturalSoft
[2011/04/18 01:09:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\India\My Documents\naturalsoft
[2010/07/05 02:38:34 | 000,049,464 | ---- | C] ( ) -- C:\WINDOWS\AutosetFrequency.exe
[2010/07/05 02:32:26 | 000,245,120 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnp2uvc.dll
[2010/07/05 02:32:26 | 000,202,112 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc.dll
[2008/12/19 11:19:16 | 000,077,824 | ---- | C] ( ) -- C:\WINDOWS\Interop.DAO.dll
[11 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[10 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/05/17 20:38:42 | 000,000,016 | ---- | M] () -- C:\WINDOWS\System32\dmlconf.dat
[2011/05/17 20:21:26 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/05/17 20:09:40 | 000,115,267 | ---- | M] () -- C:\WINDOWS\System32\drivers\klin.dat
[2011/05/17 20:09:39 | 000,097,859 | ---- | M] () -- C:\WINDOWS\System32\drivers\klick.dat
[2011/05/17 20:07:03 | 000,950,394 | ---- | M] () -- C:\c0.reg
[2011/05/17 19:56:08 | 000,000,466 | -HS- | M] () -- C:\WINDOWS\KLIF.spi
[2011/05/17 19:55:00 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/05/17 19:11:28 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/05/17 19:11:12 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/05/06 07:06:18 | 000,134,464 | ---- | M] (SurfRight B.V.) -- C:\WINDOWS\System32\LnkProtect.dll
[2011/05/04 14:46:37 | 000,315,408 | ---- | M] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys
[2011/05/04 08:30:53 | 000,016,968 | ---- | M] () -- C:\WINDOWS\System32\drivers\hitmanpro35.sys
[2011/05/01 01:48:56 | 000,000,211 | RHS- | M] () -- C:\boot.ini
[2011/05/01 01:36:07 | 000,205,312 | ---- | M] () -- C:\Documents and Settings\India\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/04/30 23:10:49 | 000,368,096 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/04/28 23:30:11 | 000,530,540 | ---- | M] () -- C:\Documents and Settings\India\My Documents\28042011275.jpg
[2011/04/26 08:26:25 | 000,403,575 | ---- | M] () -- C:\Documents and Settings\India\Desktop\Scan 004.jpg
[2011/04/26 08:25:12 | 000,398,048 | ---- | M] () -- C:\Documents and Settings\India\Desktop\Scan 003.jpg
[2011/04/26 08:23:53 | 000,575,679 | ---- | M] () -- C:\Documents and Settings\India\Desktop\Scan 002.jpg
[2011/04/26 08:22:59 | 000,559,781 | ---- | M] () -- C:\Documents and Settings\India\Desktop\Scan 001.jpg
[2011/04/26 08:21:41 | 000,521,790 | ---- | M] () -- C:\Documents and Settings\India\Desktop\Scan.jpg
[2011/04/26 08:20:24 | 000,000,955 | ---- | M] () -- C:\Documents and Settings\India\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk
[2011/04/25 02:07:22 | 000,001,136 | ---- | M] () -- C:\WINDOWS\GTA-SA_Trn_Settings.ini
[2011/04/24 18:03:35 | 000,020,502 | ---- | M] () -- C:\Documents and Settings\India\My Documents\cc_20110424_180330.reg
[2011/04/19 22:32:45 | 053,363,527 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Nitin Gupta ( Rivaldo) on Dropadi Cheerharan ( Hindi).flv
[2011/04/18 08:52:06 | 009,677,252 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Respire - trailer.mp4
[2011/04/18 00:40:57 | 004,315,618 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Shadow Goes Wild in Class.mp4
[2011/04/18 00:38:12 | 013,573,066 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Do Try THis aT hOmE... [HQ].mp4
[2011/04/17 23:54:00 | 001,641,766 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Clever Thinking or Cheating -.mp4
[2011/04/17 23:44:04 | 005,712,816 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Learning English [HQ].mp4
[2011/04/17 23:30:48 | 002,175,813 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\How to make your Employee More Productive!!!.mp4
[2011/04/17 23:25:42 | 001,901,901 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Reading Inspires Kids.mp4
[2011/04/17 23:21:10 | 003,181,846 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\How Ships are Launched ....!!.mp4
[2011/04/17 22:49:22 | 002,407,349 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Corporate Mathematics.mp4
[2011/04/17 22:46:05 | 004,988,925 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\45000 ppl singing VANDEMATARAM...@ CWC 2011 finals [HQ].mp4
[2011/04/17 22:21:50 | 000,209,823 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\131803.jpg
[11 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[10 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/05/17 20:06:21 | 000,950,394 | ---- | C] () -- C:\c0.reg
[2011/05/17 19:17:44 | 000,000,466 | -HS- | C] () -- C:\WINDOWS\KLIF.spi
[2011/05/04 14:48:40 | 000,115,267 | ---- | C] () -- C:\WINDOWS\System32\drivers\klin.dat
[2011/05/04 14:48:39 | 000,097,859 | ---- | C] () -- C:\WINDOWS\System32\drivers\klick.dat
[2011/05/04 08:30:53 | 000,016,968 | ---- | C] () -- C:\WINDOWS\System32\drivers\hitmanpro35.sys
[2011/04/30 19:31:13 | 000,000,016 | ---- | C] () -- C:\WINDOWS\System32\dmlconf.dat
[2011/04/28 23:28:20 | 000,530,540 | ---- | C] () -- C:\Documents and Settings\India\My Documents\28042011275.jpg
[2011/04/26 08:26:03 | 000,403,575 | ---- | C] () -- C:\Documents and Settings\India\Desktop\Scan 004.jpg
[2011/04/26 08:24:50 | 000,398,048 | ---- | C] () -- C:\Documents and Settings\India\Desktop\Scan 003.jpg
[2011/04/26 08:23:31 | 000,575,679 | ---- | C] () -- C:\Documents and Settings\India\Desktop\Scan 002.jpg
[2011/04/26 08:22:36 | 000,559,781 | ---- | C] () -- C:\Documents and Settings\India\Desktop\Scan 001.jpg
[2011/04/26 08:21:07 | 000,521,790 | ---- | C] () -- C:\Documents and Settings\India\Desktop\Scan.jpg
[2011/04/26 08:20:24 | 000,000,955 | ---- | C] () -- C:\Documents and Settings\India\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk
[2011/04/24 18:03:33 | 000,020,502 | ---- | C] () -- C:\Documents and Settings\India\My Documents\cc_20110424_180330.reg
[2011/04/19 22:19:04 | 053,363,527 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Nitin Gupta ( Rivaldo) on Dropadi Cheerharan ( Hindi).flv
[2011/04/18 08:49:31 | 009,677,252 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Respire - trailer.mp4
[2011/04/18 00:43:42 | 004,315,618 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Shadow Goes Wild in Class.mp4
[2011/04/18 00:34:45 | 013,573,066 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Do Try THis aT hOmE... [HQ].mp4
[2011/04/17 23:54:54 | 001,641,766 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Clever Thinking or Cheating -.mp4
[2011/04/17 23:42:31 | 005,712,816 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Learning English [HQ].mp4
[2011/04/17 23:32:56 | 002,175,813 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\How to make your Employee More Productive!!!.mp4
[2011/04/17 23:27:04 | 001,901,901 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Reading Inspires Kids.mp4
[2011/04/17 23:23:11 | 003,181,846 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\How Ships are Launched ....!!.mp4
[2011/04/17 22:49:37 | 002,407,349 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Corporate Mathematics.mp4
[2011/04/17 22:47:45 | 004,988,925 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\45000 ppl singing VANDEMATARAM...@ CWC 2011 finals [HQ].mp4
[2011/04/17 22:21:49 | 000,209,823 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\131803.jpg
[2011/03/26 09:38:39 | 000,001,136 | ---- | C] () -- C:\WINDOWS\GTA-SA_Trn_Settings.ini
[2011/03/23 11:44:59 | 000,191,788 | ---- | C] () -- C:\WINDOWS\GTA San Andreas Uninstaller.exe
[2011/02/13 21:33:29 | 000,000,173 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2011/02/09 17:01:24 | 000,000,355 | ---- | C] () -- C:\WINDOWS\red_dialer.ini
[2011/01/15 10:39:26 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\India\Application Data\wklnhst.dat
[2011/01/09 12:56:17 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2011/01/04 17:46:23 | 000,000,315 | ---- | C] () -- C:\WINDOWS\atomcl.ini
[2010/11/07 16:58:16 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/11/07 16:18:42 | 000,587,688 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2010/09/15 10:42:34 | 000,157,486 | ---- | C] () -- C:\WINDOWS\hpoins28.dat
[2010/09/15 10:42:34 | 000,000,932 | ---- | C] () -- C:\WINDOWS\hpomdl28.dat
[2010/07/29 19:20:45 | 000,205,312 | ---- | C] () -- C:\Documents and Settings\India\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/27 16:01:21 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2010/07/27 16:01:14 | 000,790,528 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2010/07/27 16:01:14 | 000,134,144 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010/07/27 16:01:13 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2010/07/23 22:05:00 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2010/07/23 17:21:49 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/07/05 02:38:34 | 000,632,056 | ---- | C] () -- C:\WINDOWS\Image.dll
[2010/07/05 02:38:34 | 000,206,208 | ---- | C] () -- C:\WINDOWS\PLFSetI.exe
[2010/07/05 02:38:34 | 000,025,848 | ---- | C] () -- C:\WINDOWS\USB_VIDEO_REG.exe
[2010/07/05 02:38:34 | 000,000,637 | ---- | C] () -- C:\WINDOWS\AutoSetFrequency.ini
[2010/07/05 02:32:26 | 001,766,784 | ---- | C] () -- C:\WINDOWS\System32\drivers\snp2uvc.sys
[2010/07/05 02:32:26 | 000,034,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\sncduvc.sys
[2010/07/05 02:32:26 | 000,030,080 | ---- | C] () -- C:\WINDOWS\snuvcdsm.exe
[2010/07/05 02:32:26 | 000,000,378 | ---- | C] () -- C:\WINDOWS\PidList.ini
[2010/02/25 17:35:24 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2010/02/25 16:34:54 | 000,361,808 | ---- | C] () -- C:\WINDOWS\EMCRI_E.dll
[2010/02/25 16:28:02 | 000,231,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTConvEQ.dat
[2010/02/25 16:28:02 | 000,001,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\RtHdatEx.dat
[2010/02/25 16:28:02 | 000,000,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\SamSfPa.dat
[2010/02/25 16:28:02 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX2.dat
[2010/02/25 16:28:02 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX1.dat
[2010/02/25 16:28:02 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX0.dat
[2010/02/25 16:28:02 | 000,000,008 | ---- | C] () -- C:\WINDOWS\System32\drivers\rtkhdaud.dat
[2010/02/25 15:17:32 | 000,032,768 | ---- | C] () -- C:\WINDOWS\AMove.exe
[2010/02/25 15:16:30 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010/02/25 15:12:58 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010/02/25 15:12:10 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2010/02/25 14:52:59 | 000,020,480 | ---- | C] () -- C:\WINDOWS\LauncheRyDiscCalc.exe
[2010/02/25 14:52:59 | 000,007,003 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2010/02/25 14:52:39 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2010/02/25 14:52:37 | 000,454,264 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2010/02/25 14:52:37 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2010/02/25 14:52:37 | 000,076,368 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2010/02/25 14:52:37 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2010/02/25 14:52:36 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2010/02/25 14:52:36 | 000,004,524 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2010/02/25 14:52:35 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2010/02/25 14:52:33 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2010/02/25 14:52:33 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2010/02/25 14:52:28 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2010/02/25 14:52:26 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2010/02/25 07:09:18 | 000,004,401 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010/02/25 07:08:33 | 000,368,096 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/09/25 23:58:36 | 002,854,976 | ---- | C] () -- C:\WINDOWS\System32\btwicons.dll
[2009/09/09 18:01:40 | 000,027,675 | ---- | C] () -- C:\WINDOWS\System32\drivers\klopp.dat
[2002/09/18 00:45:00 | 000,119,808 | ---- | C] () -- C:\WINDOWS\lsb_un20.exe
[2001/11/14 13:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 152 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:AB689DEA
@Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5D7E5A8F
@Alternate Data Stream - 139 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:93DE1838
@Alternate Data Stream - 139 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:127BB39D
@Alternate Data Stream - 132 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:4D066AD2
@Alternate Data Stream - 128 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:ABE89FFE
@Alternate Data Stream - 127 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0B9176C0
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:E3C56885
@Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9DF0785A
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:4CF61E54
@Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C9E1E431
< End of report >