OTL.txt:
OTL logfile created on: 3/13/2010 8:02:37 PM - Run 1
OTL by OldTimer - Version 3.1.35.0 Folder = C:\Documents and Settings\K Dawg\Desktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 55.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 81.00% Paging File free
Paging file location(s): C:\pagefile.sys 512 1280 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINNT | %ProgramFiles% = C:\Program Files
Drive C: | 37.26 Gb Total Space | 6.38 Gb Free Space | 17.12% Space Free | Partition Type: FAT32
D: Drive not present or media not loaded
E: Drive not present or media not loaded
Drive F: | 232.83 Gb Total Space | 187.00 Gb Free Space | 80.32% Space Free | Partition Type: FAT32
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: KYLE
Current User Name: K Dawg
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ========== PRC - [2010/03/09 17:24:22 | 000,554,496 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\K Dawg\Desktop\explorer.exe
PRC - [2009/10/28 20:21:22 | 010,358,048 | ---- | M] (Apple Inc.) -- C:\Program Files\iTunes\iTunes.exe
PRC - [2008/01/09 05:44:20 | 006,922,240 | ---- | M] (Linksys) -- C:\Program Files\Linksys\WUSB600N\WUSB600N.exe
PRC - [2007/06/13 03:23:08 | 001,033,216 | ---- | M] (Microsoft Corporation) -- C:\WINNT\explorer.exe
PRC - [2004/12/30 14:19:26 | 000,030,528 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\DefWatch.exe
PRC - [2004/12/10 18:02:34 | 000,243,312 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
PRC - [2004/12/10 18:02:28 | 000,255,600 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
PRC - [2002/05/03 12:36:24 | 001,118,208 | ---- | M] (Intel Corporation) -- C:\WINNT\system32\NMSSvc.Exe
========== Modules (SafeList) ========== MOD - [2010/03/09 17:24:22 | 000,554,496 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\K Dawg\Desktop\explorer.exe
MOD - [2006/08/25 08:45:56 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINNT\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
========== Win32 Services (SafeList) ========== SRV - File not found [On_Demand | Stopped] -- -- (x10nets)
SRV - File not found [Disabled | Stopped] -- -- (PictureTaker)
SRV - File not found [Auto | Stopped] -- -- (MCVSRte)
SRV - File not found [On_Demand | Stopped] -- -- (mcupdmgr.exe)
SRV - File not found [Auto | Stopped] -- -- (McDetect.exe)
SRV - [2009/12/17 16:36:24 | 000,067,360 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper.dll -- (getPlusHelper) getPlus(R)
SRV - [2005/08/02 14:18:50 | 000,086,016 | ---- | M] (CACE Technologies) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2005/03/30 16:46:56 | 000,411,920 | ---- | M] (Eastman Kodak Company) [On_Demand | Stopped] -- C:\WINNT\system32\drivers\KodakCCS.exe -- (KodakCCS)
SRV - [2004/12/30 14:19:36 | 000,153,416 | ---- | M] (symantec) [On_Demand | Stopped] -- C:\Program Files\Symantec AntiVirus\SavRoam.exe -- (SavRoam)
SRV - [2004/12/30 14:19:32 | 001,107,784 | ---- | M] (Symantec Corporation) [Disabled | Stopped] -- C:\Program Files\Symantec AntiVirus\Rtvscan.exe -- (Symantec AntiVirus)
SRV - [2004/12/30 14:19:26 | 000,030,528 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec AntiVirus\DefWatch.exe -- (DefWatch)
SRV - [2004/12/23 19:19:40 | 000,202,448 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe -- (SNDSrvc)
SRV - [2004/12/10 18:02:34 | 000,243,312 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe -- (ccSetMgr)
SRV - [2004/12/10 18:02:32 | 000,087,664 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe -- (ccPwdSvc)
SRV - [2004/12/10 18:02:28 | 000,255,600 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe -- (ccEvtMgr)
SRV - [2002/12/17 17:26:22 | 007,520,337 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe -- (MSSQL$SONY_MEDIAMGR)
SRV - [2002/12/17 17:23:30 | 000,311,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE -- (SQLAgent$SONY_MEDIAMGR)
SRV - [2002/05/03 12:36:24 | 001,118,208 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\WINNT\system32\NMSSvc.Exe -- (NMSSvc) Intel(R)
========== Driver Services (SafeList) ========== DRV - [2009/08/21 01:00:00 | 000,875,728 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20090821.007\NAVEX15.SYS -- (NAVEX15)
DRV - [2009/08/21 01:00:00 | 000,087,888 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20090821.007\NAVENG.SYS -- (NAVENG)
DRV - [2007/12/14 18:04:24 | 000,551,680 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\WINNT\system32\drivers\rt2870.sys -- (rt2870)
DRV - [2006/11/28 21:46:20 | 000,027,072 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | Auto | Running] -- C:\WINNT\system32\drivers\PCASp50.sys -- (PCASp50)
DRV - [2005/11/24 19:51:38 | 000,245,248 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\rt73.sys -- (RT73)
DRV - [2005/08/02 14:10:14 | 000,032,512 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\npf.sys -- (NPF)
DRV - [2005/06/16 14:41:02 | 000,037,150 | ---- | M] (Eastman Kodak Company) [Kernel | System | Running] -- C:\WINNT\system32\drivers\DcCam.sys -- (DcCam)
DRV - [2005/03/31 08:00:08 | 000,152,081 | ---- | M] (Eastman Kodak Company) [Kernel | System | Stopped] -- C:\WINNT\system32\drivers\ExportIt.sys -- (Exportit)
DRV - [2005/03/31 07:47:56 | 000,070,262 | ---- | M] (Eastman Kodak Company) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\DcPtp.sys -- (DcPTP)
DRV - [2005/03/31 07:47:50 | 000,008,022 | ---- | M] (Eastman Kodak Company) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\DcLps.sys -- (DcLps)
DRV - [2005/03/31 07:47:48 | 000,038,673 | ---- | M] (Eastman Kodak Company) [Kernel | Auto | Running] -- C:\WINNT\system32\drivers\DCFS2k.sys -- (DCFS2K)
DRV - [2005/03/31 07:47:42 | 000,061,564 | ---- | M] (Eastman Kodak Company) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\DcFpoint.sys -- (DcFpoint)
DRV - [2005/02/01 18:18:38 | 000,017,992 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\bcm42rly.sys -- (BCM42RLY)
DRV - [2004/12/23 19:19:18 | 000,264,240 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINNT\System32\Drivers\SYMTDI.SYS -- (SYMTDI)
DRV - [2004/12/23 19:19:16 | 000,016,784 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINNT\System32\Drivers\SYMREDRV.SYS -- (SYMREDRV)
DRV - [2004/10/10 02:53:16 | 000,002,368 | ---- | M] (AntiCracking) [Kernel | Auto | Running] -- C:\WINNT\system32\SVKP.sys -- (SVKP)
DRV - [2004/08/03 23:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004/08/03 23:04:32 | 000,012,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\usb8023.sys -- (USB_RNDIS)
DRV - [2004/08/03 23:03:36 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINNT\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004/08/03 22:59:50 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\nmnt.sys -- (nm)
DRV - [2004/08/03 22:29:26 | 000,327,040 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\ati2mtaa.sys -- (ati2mtaa)
DRV - [2004/07/10 17:37:02 | 000,747,008 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINNT\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2004/03/29 04:06:24 | 000,090,464 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINNT\system32\drivers\MarvinBus.sys -- (MarvinBus)
DRV - [2004/03/04 23:46:46 | 000,082,832 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Symantec\SYMEVENT.SYS -- (SymEvent)
DRV - [2004/02/09 15:43:56 | 000,301,200 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Symantec AntiVirus\savrt.sys -- (SAVRT)
DRV - [2004/02/09 15:43:56 | 000,037,008 | R--- | M] (Symantec Corporation) [Kernel | Auto | Running] -- C:\Program Files\Symantec AntiVirus\Savrtpel.sys -- (SAVRTPEL)
DRV - [2003/12/15 09:28:46 | 000,257,872 | ---- | M] (Jungo) [Kernel | On_Demand | Running] -- C:\WINNT\system32\drivers\atirwvd.sys -- (ATI Remote Wonder II)
DRV - [2003/11/14 11:50:28 | 000,031,924 | ---- | M] (Cirrus Logic Inc.) [Kernel | Auto | Stopped] -- C:\WINNT\system32\drivers\DVC150B.sys -- (DVC150)
DRV - [2002/05/03 12:36:44 | 000,009,868 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINNT\system32\drivers\NMSCFG.SYS -- (NMSCFG)
DRV - [2002/03/19 10:29:16 | 000,014,165 | ---- | M] (Pinnacle Systems GmbH) [Kernel | System | Running] -- C:\WINNT\system32\drivers\Pclepci.sys -- (PCLEPCI)
DRV - [2002/01/03 15:00:22 | 001,141,888 | ---- | M] (GTW) [Kernel | On_Demand | Running] -- C:\WINNT\system32\drivers\GWMDM.sys -- (GTWModem)
DRV - [2001/08/18 12:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINNT\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2001/08/18 12:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINNT\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2001/08/17 14:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001/08/17 13:57:38 | 000,016,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINNT\system32\drivers\MODEMCSA.sys -- (MODEMCSA)
DRV - [2001/08/17 13:52:22 | 000,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Running] -- C:\WINNT\System32\DRIVERS\ultra.sys -- (ultra)
DRV - [2001/08/17 13:28:00 | 000,871,388 | ---- | M] (BCM) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\BCMDM.sys -- (BCMModem)
DRV - [2001/08/17 12:48:52 | 000,281,856 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\ati2mpaa.sys -- (ati2mpaa)
DRV - [2001/08/17 12:20:04 | 000,096,256 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\ac97intc.sys -- (ac97intc) Intel(r) 82801 Audio Driver Install Service (WDM)
DRV - [2001/08/17 12:11:06 | 000,066,591 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Stopped] -- C:\WINNT\system32\drivers\el90xbc5.sys -- (EL90XBC)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINNT\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINNT\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://mail.live.com/default.aspx?wa=wsignin1.0IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
========== FireFox ========== FF - prefs.js..browser.startup.homepage: "2dopeboyz.okayplayer.com"
FF - prefs.js..extensions.enabledItems: {c36177c0-224a-11da-8cd6-0800200c9a91}:3.8.1
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {F6E9E7A3-9347-4EE0-8716-887C82F52602}:1.0
FF - HKLM\software\mozilla\Firefox\Extensions\\{F6E9E7A3-9347-4EE0-8716-887C82F52602}: C:\Documents and Settings\K Dawg\Local Settings\Application Data\{F6E9E7A3-9347-4EE0-8716-887C82F52602}\ [2009/08/28 18:50:18 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.5\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/12/14 07:53:20 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.5\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2006/08/06 15:59:22 | 000,000,000 | ---D | M]
[2008/09/21 00:42:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K Dawg\Application Data\Mozilla\Extensions
[2006/08/06 15:59:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K Dawg\Application Data\Mozilla\Firefox\Profiles\qr3zqwmx.default\extensions
[2008/04/18 13:50:10 | 000,000,000 | ---D | M] (Blue Ice 2) -- C:\Documents and Settings\K Dawg\Application Data\Mozilla\Firefox\Profiles\qr3zqwmx.default\extensions\{a8dd47cf-239f-48c4-8379-e6b4cbafdcfa}
[2009/12/14 08:25:40 | 000,000,000 | ---D | M] (Fasterfox) -- C:\Documents and Settings\K Dawg\Application Data\Mozilla\Firefox\Profiles\qr3zqwmx.default\extensions\{c36177c0-224a-11da-8cd6-0800200c9a91}
[2006/09/30 02:40:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\K Dawg\Application Data\Mozilla\Firefox\Profiles\qr3zqwmx.default\extensions\temp
[2008/12/12 11:23:54 | 000,002,158 | ---- | M] () -- C:\Documents and Settings\K Dawg\Application Data\Mozilla\Firefox\Profiles\qr3zqwmx.default\searchplugins\MySpace.xml
[2006/09/30 00:17:38 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2007/07/18 12:19:40 | 002,998,784 | ---- | M] (Tamarack Software, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nptgeqplugin.dll
O1 HOSTS File: ([2009/04/23 01:54:56 | 000,305,728 | R--- | M]) - C:\WINNT\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1
www.007guard.comO1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.comO1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.comO1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.comO1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.comO1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1
www.100888290cs.comO1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.comO1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1
www.10sek.comO1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.123topsearch.comO1 - Hosts: 127.0.0.1 123topsearch.com
O1 - Hosts: 127.0.0.1
www.132.comO1 - Hosts: 127.0.0.1 132.com
O1 - Hosts: 127.0.0.1
www.136136.netO1 - Hosts: 127.0.0.1 136136.net
O1 - Hosts: 10527 more lines...
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O4 - HKCU..\Run: [qikwfuvy] C:\Documents and Settings\K Dawg\Local Settings\Application Data\yobefq\tjhjsftav.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Wireless Network Monitor.lnk = C:\Program Files\Linksys\WUSB600N\WUSB600N.exe (Linksys)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe (America Online, Inc.)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINNT\system32\nwprovau.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94}
http://support.gateway.com/support/profiler/PCPitStop.CAB (PCPitstop Utility)
O16 - DPF: {33564D57-9980-0010-8000-00AA00389B71}
http://codecs.microsoft.com/codecs/i386/wmv9dmo.cab (Reg Error: Key error.)
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}
http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab (McAfee.com Operating System Class)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968}
https://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A}
http://lads.myspace.com/upload/MySpaceUploader2.cab (MySpace Uploader Control)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab (Java Plug-in 1.6.0_16)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553646000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (get_atlcom Class)
O16 - DPF: Microsoft XML Parser for Java
file://C:\WINNT\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - Explorer.exe (OldTimer Tools)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O20 - Winlogon\Notify\NavLogon: DllName - C:\WINNT\system32\NavLogon.dll - C:\WINNT\system32\NavLogon.dll (Symantec Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O20 - Winlogon\Notify\SensLogn: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O20 - Winlogon\Notify\sharedbg: DllName - C:\Documents and Settings\K Dawg\Application Data\Sony\sharedbg.dll - C:\Documents and Settings\K Dawg\Application Data\Sony\sharedbg.dll File not found
O20 - Winlogon\Notify\termsrv: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O20 - Winlogon\Notify\wlballoon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop WallPaper: C:\Documents and Settings\K Dawg\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\K Dawg\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/02/25 10:30:42 | 000,000,054 | RHS- | M] () - F:\autorun.in_2.org -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/03/13 15:24:50 | 000,000,000 | ---D | C] -- C:\32788R22FWJFW
[2010/03/09 10:09:26 | 000,554,496 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\K Dawg\Desktop\explorer.exe
[2010/03/08 18:04:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K Dawg\Local Settings\Application Data\yobefq
[2010/02/22 04:34:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K Dawg\Desktop\The Leftovers UnMixedTape
[2010/02/21 02:05:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K Dawg\Desktop\LeakersoftheFunk Mixtape by Cypress Hill
[2010/02/20 16:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K Dawg\Desktop\The Blueprint
[2010/02/19 06:40:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K Dawg\Desktop\Bikes
[2010/02/12 21:16:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\K Dawg\Desktop\Freelapse
[2009/11/14 16:51:33 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\K Dawg\Application Data\pcouffin.sys
[2007/09/17 20:30:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple
[2006/12/29 16:22:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2006/11/08 18:00:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Talkback
[2006/11/08 17:59:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Mozilla
[2006/11/08 17:59:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Mozilla
[2004/11/30 21:18:45 | 000,131,072 | R--- | C] ( ) -- C:\WINNT\System32\ATIDEMGR.dll
[2001/09/08 09:12:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2001/09/08 09:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2001/09/08 08:56:28 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2001/09/08 08:56:28 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2 C:\WINNT\System32\*.tmp files -> C:\WINNT\System32\*.tmp -> ]
[2 C:\WINNT\*.tmp files -> C:\WINNT\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/03/13 20:05:58 | 012,845,056 | ---- | M] () -- C:\Documents and Settings\K Dawg\ntuser.dat
[2010/03/13 19:56:30 | 000,002,133 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\iTunes.lnk
[2010/03/13 19:55:30 | 000,011,954 | ---- | M] () -- C:\WINNT\System32\wpa.dbl
[2010/03/13 19:55:04 | 000,000,006 | -H-- | M] () -- C:\WINNT\tasks\SA.DAT
[2010/03/13 19:54:56 | 000,002,048 | --S- | M] () -- C:\WINNT\bootstat.dat
[2010/03/13 15:56:38 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\K Dawg\ntuser.ini
[2010/03/12 00:25:46 | 000,000,587 | ---- | M] () -- C:\WINNT\win.ini
[2010/03/12 00:25:46 | 000,000,227 | ---- | M] () -- C:\WINNT\system.ini
[2010/03/12 00:25:46 | 000,000,207 | RHS- | M] () -- C:\boot.ini
[2010/03/11 08:03:24 | 000,000,126 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\AntiVirus Soft Infection - Can Not Run Programs!.URL
[2010/03/11 01:26:22 | 002,205,157 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\IceSwo122en.zip
[2010/03/09 17:24:22 | 000,554,496 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\K Dawg\Desktop\explorer.exe
[2010/03/09 13:07:02 | 000,000,284 | ---- | M] () -- C:\WINNT\tasks\AppleSoftwareUpdate.job
[2010/03/08 22:47:04 | 000,000,252 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\Wynn Jobs.URL
[2010/03/08 03:25:46 | 009,896,132 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\Balance-Bootleg_Liquor_(Feat_Fashawn_Mistah_FAB__Thurzday)-2dope.mp3
[2010/03/08 00:11:20 | 185,782,766 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\Kyle_Lucas-Its_Always_Sunny_in_Marietta-2010.zip
[2010/03/07 23:13:22 | 006,496,091 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\Kid_Cudi-I_Do_My_Thing_(Feat_Snoop_Dogg)_(Prod_Dr_Dre)-2dope.mp3
[2010/03/04 17:20:40 | 005,763,265 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\Over.mp3
[2010/03/03 22:08:28 | 006,883,532 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\Delilah _uStream Rip_.mp3
[2010/02/26 17:33:36 | 004,878,264 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\Folk_and_Stress-New_York_Ginseng_(Feat_GZA)-2dope.mp3
[2010/02/26 17:01:14 | 000,298,945 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\LoanDefermentOptions.pdf
[2010/02/22 17:47:16 | 003,444,433 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\cormega - tony_montana (feat ghostface).mp3
[2010/02/22 04:48:08 | 053,935,450 | ---- | M] () -- C:\Documents and Settings\K Dawg\Desktop\Chace_Infinite-I_Would_Have_Killed_This-2dope.zip
[2010/02/18 00:57:44 | 000,150,528 | ---- | M] () -- C:\Documents and Settings\K Dawg\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2 C:\WINNT\System32\*.tmp files -> C:\WINNT\System32\*.tmp -> ]
[2 C:\WINNT\*.tmp files -> C:\WINNT\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/03/11 01:24:36 | 002,205,157 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\IceSwo122en.zip
[2010/03/08 22:47:57 | 000,000,126 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\AntiVirus Soft Infection - Can Not Run Programs!.URL
[2010/03/08 22:47:02 | 000,000,252 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\Wynn Jobs.URL
[2010/03/08 03:25:45 | 009,896,132 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\Balance-Bootleg_Liquor_(Feat_Fashawn_Mistah_FAB__Thurzday)-2dope.mp3
[2010/03/08 00:11:18 | 185,782,766 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\Kyle_Lucas-Its_Always_Sunny_in_Marietta-2010.zip
[2010/03/07 23:13:20 | 006,496,091 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\Kid_Cudi-I_Do_My_Thing_(Feat_Snoop_Dogg)_(Prod_Dr_Dre)-2dope.mp3
[2010/03/04 17:20:39 | 005,763,265 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\Over.mp3
[2010/03/03 22:08:27 | 006,883,532 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\Delilah _uStream Rip_.mp3
[2010/02/26 17:33:35 | 004,878,264 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\Folk_and_Stress-New_York_Ginseng_(Feat_GZA)-2dope.mp3
[2010/02/26 17:01:12 | 000,298,945 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\LoanDefermentOptions.pdf
[2010/02/22 17:47:16 | 003,444,433 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\cormega - tony_montana (feat ghostface).mp3
[2010/02/22 04:48:06 | 053,935,450 | ---- | C] () -- C:\Documents and Settings\K Dawg\Desktop\Chace_Infinite-I_Would_Have_Killed_This-2dope.zip
[2009/11/22 02:44:32 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\K Dawg\Local Settings\Application Data\housecall.guid.cache
[2009/11/14 16:54:10 | 000,001,041 | ---- | C] () -- C:\Documents and Settings\K Dawg\Application Data\vso_ts_preview.xml
[2009/11/14 16:52:28 | 000,000,033 | ---- | C] () -- C:\Documents and Settings\K Dawg\Application Data\pcouffin.log
[2009/11/14 16:51:33 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\K Dawg\Application Data\inst.exe
[2009/11/14 16:51:33 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\K Dawg\Application Data\pcouffin.cat
[2009/11/14 16:51:33 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\K Dawg\Application Data\pcouffin.inf
[2009/08/30 20:53:12 | 000,024,971 | ---- | C] () -- C:\WINNT\uqedidak.dll
[2009/08/30 18:51:12 | 000,024,923 | ---- | C] () -- C:\WINNT\okixabok.dll
[2009/08/30 16:49:12 | 000,024,923 | ---- | C] () -- C:\WINNT\ucapuzim.dll
[2009/08/30 14:49:31 | 000,024,891 | ---- | C] () -- C:\WINNT\opahigatagac.dll
[2009/08/30 11:29:11 | 000,025,019 | ---- | C] () -- C:\WINNT\uromepixohay.dll
[2009/08/30 09:30:25 | 000,024,923 | ---- | C] () -- C:\WINNT\epokudegemidar.dll
[2009/08/30 07:23:12 | 000,024,971 | ---- | C] () -- C:\WINNT\irenomohagiqin.dll
[2009/08/30 05:21:11 | 000,024,923 | ---- | C] () -- C:\WINNT\ubonizokizi.dll
[2009/08/30 03:19:11 | 000,027,836 | ---- | C] () -- C:\WINNT\ajihotuceja.dll
[2009/08/30 01:17:11 | 000,024,923 | ---- | C] () -- C:\WINNT\azunotij.dll
[2009/08/29 23:15:12 | 000,024,971 | ---- | C] () -- C:\WINNT\iqobiberer.dll
[2009/08/29 21:13:11 | 000,024,971 | ---- | C] () -- C:\WINNT\ubeyaxukowomaq.dll
[2009/08/29 19:11:11 | 000,024,971 | ---- | C] () -- C:\WINNT\ajamosar.dll
[2009/08/29 17:09:14 | 000,024,971 | ---- | C] () -- C:\WINNT\upolonor.dll
[2009/08/29 15:07:11 | 000,024,875 | ---- | C] () -- C:\WINNT\ayewujoxucemuco.dll
[2009/08/29 13:05:11 | 000,024,923 | ---- | C] () -- C:\WINNT\ikegojer.dll
[2009/08/29 11:03:11 | 000,024,875 | ---- | C] () -- C:\WINNT\ibucasatox.dll
[2009/08/29 09:01:11 | 000,024,971 | ---- | C] () -- C:\WINNT\ejudopumam.dll
[2009/08/29 06:59:11 | 000,025,019 | ---- | C] () -- C:\WINNT\ufoguyoyamu.dll
[2009/08/29 04:57:11 | 000,030,024 | ---- | C] () -- C:\WINNT\anogufut.dll
[2009/08/29 02:55:11 | 000,024,923 | ---- | C] () -- C:\WINNT\igolinin.dll
[2009/08/29 00:53:11 | 000,024,875 | ---- | C] () -- C:\WINNT\azawupuc.dll
[2009/08/28 22:51:13 | 000,027,784 | ---- | C] () -- C:\WINNT\exacogiceyiq.dll
[2009/08/28 20:49:13 | 000,031,966 | ---- | C] () -- C:\WINNT\aqukogike.dll
[2009/05/09 20:50:58 | 000,000,000 | ---- | C] () -- C:\WINNT\VPC32.INI
[2007/09/13 00:19:57 | 000,094,208 | ---- | C] () -- C:\WINNT\System32\GTW32N50.dll
[2007/01/20 17:46:08 | 000,000,063 | ---- | C] () -- C:\WINNT\PixieTool.INI
[2006/07/09 23:17:05 | 000,019,789 | ---- | C] () -- C:\Documents and Settings\K Dawg\Application Data\perfc012.dat
[2006/07/09 20:06:14 | 001,139,786 | ---- | C] () -- C:\Documents and Settings\K Dawg\Application Data\FNTCACHE.BIN
[2006/07/09 00:44:49 | 000,002,204 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/06/10 02:47:53 | 000,000,072 | ---- | C] () -- C:\WINNT\WB.ini
[2006/05/17 21:23:41 | 000,020,480 | ---- | C] () -- C:\WINNT\System32\wbload.dll
[2005/12/17 03:49:09 | 000,000,029 | ---- | C] () -- C:\WINNT\atid.ini
[2005/08/02 14:24:01 | 000,053,299 | ---- | C] () -- C:\WINNT\System32\pthreadVC.dll
[2004/12/26 17:09:12 | 000,000,000 | ---- | C] () -- C:\WINNT\ATIMMC.INI
[2004/12/25 15:47:22 | 000,363,520 | ---- | C] () -- C:\WINNT\System32\psisdecd.dll
[2004/11/30 19:06:55 | 000,086,016 | ---- | C] () -- C:\WINNT\System32\ati2evxx.dll
[2004/07/11 15:47:02 | 000,001,125 | ---- | C] () -- C:\WINNT\winamp.ini
[2004/03/18 07:44:29 | 001,663,068 | ---- | C] () -- C:\WINNT\System32\libmmd.dll
[2004/02/04 22:09:21 | 000,005,632 | ---- | C] () -- C:\WINNT\System32\CNMVS53.DLL
[2004/02/04 21:09:49 | 000,150,528 | ---- | C] () -- C:\Documents and Settings\K Dawg\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2004/01/29 22:12:42 | 000,000,002 | ---- | C] () -- C:\WINNT\msoffice.ini
[2004/01/28 11:42:06 | 000,013,601 | ---- | C] () -- C:\WINNT\System32\vctest.ini
[2003/10/08 21:30:33 | 000,000,020 | ---- | C] () -- C:\WINNT\InfModM.ini
[2003/09/16 19:04:19 | 000,000,499 | ---- | C] () -- C:\WINNT\wininit.ini
[2003/09/11 15:34:05 | 000,000,061 | ---- | C] () -- C:\WINNT\smscfg.ini
[2003/09/11 14:29:53 | 000,004,051 | ---- | C] () -- C:\WINNT\unwise32.ini
[2003/09/11 14:29:53 | 000,004,051 | ---- | C] () -- C:\WINNT\unwise.ini
[2003/09/11 14:29:52 | 000,377,600 | ---- | C] () -- C:\WINNT\System32\BOCOLE.DLL
[2003/09/11 14:29:52 | 000,167,456 | ---- | C] () -- C:\WINNT\System32\Bocof.dll
[2003/09/11 14:29:37 | 000,000,370 | ---- | C] () -- C:\WINNT\ODBC.INI
[2003/09/11 14:26:42 | 000,057,344 | ---- | C] () -- C:\WINNT\uninstBVRP.dll
[2003/09/11 14:26:42 | 000,000,015 | ---- | C] () -- C:\WINNT\wgedit.ini
[2003/09/11 14:26:16 | 000,000,562 | ---- | C] () -- C:\WINNT\System32\OEMINFO.INI
[2002/03/26 09:36:48 | 000,069,632 | ---- | C] () -- C:\WINNT\System32\PROInst.dll
[2002/02/06 09:04:14 | 000,065,536 | ---- | C] () -- C:\WINNT\System32\NMSInst.dll
[2000/09/08 17:53:50 | 000,073,839 | ---- | C] () -- C:\WINNT\System32\KodakOneTouch.dll
[1998/08/16 05:00:00 | 000,004,096 | ---- | C] () -- C:\WINNT\System32\sysres.dll
< End of report >