OTL logfile created on: 3/15/2010 9:27:04 PM - Run 1
OTL by OldTimer - Version 3.1.37.1 Folder = C:\Documents and Settings\Mike\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,022.00 Mb Total Physical Memory | 570.00 Mb Available Physical Memory | 56.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): c:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 33.76 Gb Total Space | 6.27 Gb Free Space | 18.58% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: BUSH
Current User Name: Mike
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ========== PRC - [2010/03/15 21:25:51 | 000,555,008 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Mike\Desktop\OTL.exe
PRC - [2010/03/14 16:27:13 | 000,345,088 | ---- | M] () -- C:\Documents and Settings\Mike\Local Settings\Temp\dl1.exe
PRC - [2010/03/14 15:15:22 | 000,135,664 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Mike\Local Settings\Application Data\Google\Update\1.2.183.17\GoogleCrashHandler.exe
PRC - [2009/11/19 21:00:10 | 004,808,704 | ---- | M] () -- C:\Program Files\USIM Editor\iconcs4750703.exe
PRC - [2009/11/19 21:00:08 | 000,065,536 | ---- | M] () -- C:\WINDOWS\SYSTEM32\afasrv32.exe
PRC - [2009/10/29 06:54:44 | 001,218,008 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee.com\Agent\mcagent.exe
PRC - [2009/10/27 11:19:46 | 000,895,696 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MPF\MpfSrv.exe
PRC - [2009/09/16 09:22:08 | 000,144,704 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\Mcshield.exe
PRC - [2009/09/16 08:28:38 | 000,606,736 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\mcsysmon.exe
PRC - [2009/07/09 23:26:20 | 000,865,832 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSC\mcmscsvc.exe
PRC - [2009/07/08 19:22:24 | 005,134,864 | ---- | M] (McAfee) -- C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe
PRC - [2009/07/08 13:48:48 | 000,026,640 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSK\msksrver.exe
PRC - [2009/07/08 10:54:34 | 000,359,952 | ---- | M] (McAfee, Inc.) -- c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe
PRC - [2009/07/07 18:10:02 | 002,482,848 | ---- | M] (McAfee, Inc.) -- c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe
PRC - [2009/05/01 14:35:54 | 000,181,544 | ---- | M] (Seagate Technology LLC) -- C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe
PRC - [2009/05/01 14:35:10 | 000,185,640 | ---- | M] (Seagate LLC) -- C:\Program Files\Seagate\SeagateManager\FreeAgent Status\stxmenumgr.exe
PRC - [2009/02/11 10:06:36 | 000,210,216 | ---- | M] () -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
PRC - [2008/10/10 04:45:26 | 000,013,088 | ---- | M] (Intuit Inc.) -- C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
PRC - [2008/04/13 18:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/11/01 16:13:26 | 000,151,552 | ---- | M] (CyberLink Corp.) -- C:\Program Files\CyberLink\PCM4Everio\EverioService.exe
PRC - [2007/03/15 10:09:36 | 000,460,784 | ---- | M] (Gteko Ltd.) -- C:\Program Files\DellSupport\DSAgnt.exe
PRC - [2005/03/13 11:43:55 | 000,026,112 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Real\RealPlayer\realplay.exe
PRC - [2005/02/03 09:34:58 | 000,102,400 | ---- | M] () -- C:\Program Files\Dell Photo AIO Printer 942\dlbubmon.exe
PRC - [2005/02/03 02:08:52 | 000,294,912 | ---- | M] () -- C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe
PRC - [2004/10/14 15:42:54 | 001,404,928 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe
PRC - [2004/09/14 08:50:48 | 000,131,072 | ---- | M] (Musicmatch, Inc.) -- C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
PRC - [2004/04/07 12:07:32 | 001,135,728 | ---- | M] (America Online, Inc.) -- C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe
========== Modules (SafeList) ========== MOD - [2010/03/15 21:25:51 | 000,555,008 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Mike\Desktop\OTL.exe
MOD - [2009/02/11 10:06:38 | 000,014,032 | ---- | M] () -- C:\Program Files\McAfee\SiteAdvisor\sahook.dll
========== Win32 Services (SafeList) ========== SRV - [2009/11/19 21:00:08 | 000,065,536 | ---- | M] () [Auto | Running] -- C:\WINDOWS\SYSTEM32\afasrv32.exe -- (AfaService)
SRV - [2009/10/27 11:19:46 | 000,895,696 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\MPF\MPFSrv.exe -- (MpfService)
SRV - [2009/09/16 10:23:32 | 000,365,072 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV - [2009/09/16 09:22:08 | 000,144,704 | ---- | M] (McAfee, Inc.) [Unknown | Running] -- C:\Program Files\McAfee\VirusScan\Mcshield.exe -- (McShield)
SRV - [2009/09/16 08:28:38 | 000,606,736 | ---- | M] (McAfee, Inc.) [On_Demand | Running] -- C:\Program Files\McAfee\VirusScan\mcsysmon.exe -- (McSysmon)
SRV - [2009/07/09 23:26:20 | 000,865,832 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\MSC\mcmscsvc.exe -- (mcmscsvc)
SRV - [2009/07/08 19:22:22 | 000,068,112 | ---- | M] (McAfee) [On_Demand | Stopped] -- C:\Program Files\McAfee\MBK\MBackMonitor.exe -- (MBackMonitor)
SRV - [2009/07/08 13:48:48 | 000,026,640 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\MSK\MskSrver.exe -- (MSK80Service)
SRV - [2009/07/08 10:54:34 | 000,359,952 | ---- | M] (McAfee, Inc.) [Auto | Running] -- c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe -- (McProxy)
SRV - [2009/07/07 18:10:02 | 002,482,848 | ---- | M] (McAfee, Inc.) [Auto | Running] -- c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe -- (McNASvc)
SRV - [2009/05/01 14:35:54 | 000,181,544 | ---- | M] (Seagate Technology LLC) [Auto | Running] -- C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe -- (FreeAgentGoNext Service)
SRV - [2009/02/11 10:06:36 | 000,210,216 | ---- | M] () [Auto | Running] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2008/10/10 04:45:26 | 000,013,088 | ---- | M] (Intuit Inc.) [Auto | Running] -- C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe -- (IntuitUpdateService)
SRV - [2007/03/07 14:47:46 | 000,076,848 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\DellSupport\brkrsvc.exe -- (DSBrokerService)
SRV - [2004/10/25 15:13:32 | 000,421,888 | ---- | M] (Dell) [On_Demand | Stopped] -- C:\WINDOWS\System32\dlbucoms.exe -- (dlbu_device)
SRV - [2004/04/07 12:07:32 | 001,135,728 | ---- | M] (America Online, Inc.) [Auto | Running] -- C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe -- (AOL ACS)
========== Driver Services (SafeList) ========== DRV - [2010/03/15 04:17:15 | 000,096,512 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\atapi.sys -- (atapi)
DRV - [2009/09/16 09:22:48 | 000,214,664 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\mfehidk.sys -- (mfehidk)
DRV - [2009/09/16 09:22:48 | 000,079,816 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\mfeavfk.sys -- (mfeavfk)
DRV - [2009/09/16 09:22:48 | 000,040,552 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\mfesmfk.sys -- (mfesmfk)
DRV - [2009/09/16 09:22:48 | 000,035,272 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\mfebopk.sys -- (mfebopk)
DRV - [2009/09/16 09:22:14 | 000,034,248 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\mferkdk.sys -- (mferkdk)
DRV - [2009/07/16 11:32:26 | 000,120,136 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\Mpfp.sys -- (MPFP)
DRV - [2008/05/27 10:52:18 | 000,051,072 | ---- | M] (Generic USB smartcard reader) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\MHIKEY10.sys -- (MHIKEY10)
DRV - [2008/04/13 12:36:39 | 000,043,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\amdagp.sys -- (amdagp)
DRV - [2008/04/13 12:36:39 | 000,040,960 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\sisagp.sys -- (sisagp)
DRV - [2007/02/25 11:10:48 | 000,005,376 | --S- | M] (Gteko Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\dsunidrv.sys -- (dsunidrv)
DRV - [2006/10/05 15:07:28 | 000,004,736 | ---- | M] (Gteko Ltd.) [Kernel | On_Demand | Running] -- C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys -- (DSproct)
DRV - [2005/03/13 11:43:59 | 000,008,552 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\asctrm.sys -- (ASCTRM)
DRV - [2004/12/06 01:05:00 | 000,100,603 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsnudfa.sys -- (tfsnudfa)
DRV - [2004/12/06 01:05:00 | 000,098,714 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsnudf.sys -- (tfsnudf)
DRV - [2004/12/06 01:05:00 | 000,086,586 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsnifs.sys -- (tfsnifs)
DRV - [2004/12/06 01:05:00 | 000,034,843 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsncofs.sys -- (tfsncofs)
DRV - [2004/12/06 01:05:00 | 000,025,883 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsnboio.sys -- (tfsnboio)
DRV - [2004/12/06 01:05:00 | 000,015,227 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsnopio.sys -- (tfsnopio)
DRV - [2004/12/06 01:05:00 | 000,006,363 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsnpool.sys -- (tfsnpool)
DRV - [2004/12/06 01:05:00 | 000,004,123 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsndrct.sys -- (tfsndrct)
DRV - [2004/12/06 01:05:00 | 000,002,239 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\dla\tfsndres.sys -- (tfsndres)
DRV - [2004/12/01 03:22:00 | 000,087,488 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\drvmcdb.sys -- (drvmcdb)
DRV - [2004/11/23 02:56:00 | 000,040,480 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\drvnddm.sys -- (drvnddm)
DRV - [2004/09/17 10:02:54 | 000,732,928 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\senfilt.sys -- (senfilt)
DRV - [2004/08/12 08:07:42 | 000,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\ultra.sys -- (ultra)
DRV - [2004/08/12 08:06:53 | 000,032,640 | ---- | M] (LSI Logic) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys -- (symc8xx)
DRV - [2004/08/12 08:06:53 | 000,030,688 | ---- | M] (LSI Logic) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys -- (sym_u3)
DRV - [2004/08/12 08:06:53 | 000,028,384 | ---- | M] (LSI Logic) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys -- (sym_hi)
DRV - [2004/08/12 08:06:52 | 000,016,256 | ---- | M] (Symbios Logic Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\symc810.sys -- (symc810)
DRV - [2004/08/12 08:06:16 | 000,019,072 | ---- | M] (Adaptec, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\sparrow.sys -- (Sparrow)
DRV - [2004/08/12 08:03:54 | 000,049,024 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql1280.sys -- (ql1280)
DRV - [2004/08/12 08:03:53 | 000,045,312 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql12160.sys -- (ql12160)
DRV - [2004/08/12 08:03:53 | 000,040,320 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql1080.sys -- (ql1080)
DRV - [2004/08/12 08:00:09 | 000,017,280 | ---- | M] (American Megatrends Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys -- (mraid35x)
DRV - [2004/08/12 07:56:47 | 000,179,584 | ---- | M] (Mylex Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys -- (dac2w2k)
DRV - [2004/08/12 07:56:06 | 000,006,656 | ---- | M] (CMD Technology, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\cmdide.sys -- (CmdIde)
DRV - [2004/08/12 07:55:49 | 000,026,496 | ---- | M] (Advanced System Products, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\asc.sys -- (asc)
DRV - [2004/08/12 07:55:49 | 000,014,848 | ---- | M] (Advanced System Products, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\asc3550.sys -- (asc3550)
DRV - [2004/08/12 07:55:47 | 000,005,248 | ---- | M] (Acer Laboratories Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\aliide.sys -- (AliIde)
DRV - [2004/08/03 22:29:56 | 001,897,408 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\NV4_MINI.SYS -- (nv)
DRV - [2004/07/14 11:29:04 | 000,005,627 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\sscdbhk5.sys -- (sscdbhk5)
DRV - [2004/07/14 11:28:50 | 000,023,545 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\ssrtln.sys -- (ssrtln)
DRV - [2004/06/15 22:52:40 | 000,061,157 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\IntelC53.sys -- (IntelC53)
DRV - [2004/03/05 22:15:34 | 000,647,929 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\IntelC52.sys -- (IntelC52)
DRV - [2004/03/05 22:14:42 | 001,233,525 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\IntelC51.sys -- (IntelC51)
DRV - [2004/03/05 22:13:38 | 000,037,048 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\mohfilt.sys -- (mohfilt)
DRV - [2003/01/10 16:13:04 | 000,033,588 | ---- | M] (America Online, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\wanatw4.sys -- (wanatw) WAN Miniport (ATW)
DRV - [2001/08/17 13:57:38 | 000,016,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\MODEMCSA.sys -- (MODEMCSA)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.com/ie IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell4me.com/mywayIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.comIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ieIE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2010/03/14 12:27:16 | 000,000,000 | ---D | M]
O1 HOSTS File: ([2009/12/05 17:40:47 | 000,000,667 | RHS- | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\ETC\HOSTS
O1 - Hosts: 89.149.210.109
www.google.deO1 - Hosts: 89.149.210.109
www.google.frO1 - Hosts: 89.149.210.109
www.google.com.brO1 - Hosts: 89.149.210.109
www.google.itO1 - Hosts: 89.149.210.109
www.google.esO1 - Hosts: 89.149.210.109
www.google.co.jpO1 - Hosts: 89.149.210.109
www.google.com.mxO1 - Hosts: 89.149.210.109
www.google.caO1 - Hosts: 89.149.210.109
www.google.com.auO1 - Hosts: 89.149.210.109
www.google.nlO1 - Hosts: 89.149.210.109
www.google.co.zaO1 - Hosts: 89.149.210.109
www.google.beO1 - Hosts: 89.149.210.109
www.google.grO1 - Hosts: 89.149.210.109
www.google.atO1 - Hosts: 89.149.210.109
www.google.seO1 - Hosts: 89.149.210.109
www.google.chO1 - Hosts: 89.149.210.109
www.google.ptO1 - Hosts: 89.149.210.109
www.google.dkO1 - Hosts: 89.149.210.109
www.google.fiO1 - Hosts: 89.149.210.109
www.google.ieO1 - Hosts: 89.149.210.109
www.google.noO1 - Hosts: 89.149.210.109
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O4 - HKLM..\Run: [Dell Photo AIO Printer 942] C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe ()
O4 - HKLM..\Run: [DellMCM] C:\Program Files\Dell Photo AIO Printer 942\memcard.exe ()
O4 - HKLM..\Run: [DLBUCATS] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLBUtime.DLL ()
O4 - HKLM..\Run: [EverioService] C:\Program Files\CyberLink\PCM4Everio\EverioService.exe (CyberLink Corp.)
O4 - HKLM..\Run: [MaxMenuMgr] C:\Program Files\Seagate\SeagateManager\FreeAgent Status\StxMenuMgr.exe (Seagate LLC)
O4 - HKLM..\Run: [McAfee Backup] C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe (McAfee)
O4 - HKLM..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [McENUI] C:\Program Files\McAfee\MHN\McENUI.exe (McAfee, Inc.)
O4 - HKLM..\Run: [MMTray] C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe (Musicmatch, Inc.)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\SYSTEM32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [UpdateManager] C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe (Sonic Solutions)
O4 - HKLM..\Run: [USBestCR] C:\Program Files\USIM Editor\iconcs4750703.exe ()
O4 - HKCU..\Run: [DellSupport] C:\Program Files\DellSupport\DSAgnt.exe (Gteko Ltd.)
O4 - HKCU..\Run: [DriverCheck] C:\Documents and Settings\Mike\Local Settings\Temp\dl1.exe ()
O4 - HKCU..\Run: [DriverLoad] C:\Documents and Settings\Mike\Local Settings\Temp\dl1.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: DriverLoad = C:\DOCUME~1\Mike\LOCALS~1\Temp\dl1.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: DriverCheck = C:\DOCUME~1\Mike\LOCALS~1\Temp\dl1.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon: DisableCAD = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\Software\Microsoft\Windows\CurrentVersion\Group Policy Objects\LocalUser\Software\Microsoft\Windows\CurrentVersion\Policies\System: DisableTaskMgr = 1
O9 - Extra Button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - File not found
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKCU\..Trusted Domains: turbotax.com ([]https in Trusted sites)
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}
http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,96/mcinsctl.cab (Reg Error: Key error.)
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166}
http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase6087.cab (Windows Live Safety Center Base Module)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1257383139265 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389}
http://download.mcafee.com/molbin/shared/mcgdmgr/1,0,0,26/mcgdmgr.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}
http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: Microsoft XML Parser for Java
file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 192.168.1.254
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O21 - SSODL: fisojohov - {6c7e31f3-ae35-416a-9dca-48c26f297294} - CLSID or File not found.
O21 - SSODL: gomupemid - {959e45c7-8f59-4af8-be3c-6aee04ec3cd3} - CLSID or File not found.
O21 - SSODL: guhuyoget - {5ecaf665-d201-4019-b20f-87a318878dda} - CLSID or File not found.
O21 - SSODL: jeyoromer - {9b80e90e-e814-4507-974f-217028db2147} - CLSID or File not found.
O21 - SSODL: pidiyiruv - {93663a90-d953-4cff-a0d6-6cfeb58eccab} - CLSID or File not found.
O21 - SSODL: puwajemuv - {6d6ed635-a1de-4964-9456-84fe8fed7237} - CLSID or File not found.
O21 - SSODL: suhelomah - {6553e9b1-5d25-4c0f-b06d-f71054c250a8} - CLSID or File not found.
O22 - SharedTaskScheduler: {5ecaf665-d201-4019-b20f-87a318878dda} - kupuhivus - Reg Error: Key error. File not found
O22 - SharedTaskScheduler: {6553e9b1-5d25-4c0f-b06d-f71054c250a8} - kupuhivus - Reg Error: Key error. File not found
O22 - SharedTaskScheduler: {6c7e31f3-ae35-416a-9dca-48c26f297294} - gahurihor - Reg Error: Key error. File not found
O22 - SharedTaskScheduler: {6d6ed635-a1de-4964-9456-84fe8fed7237} - kupuhivus - Reg Error: Key error. File not found
O22 - SharedTaskScheduler: {81538f86-8f31-4b71-b739-855e14790d16} - gahurihor - Reg Error: Key error. File not found
O22 - SharedTaskScheduler: {93663a90-d953-4cff-a0d6-6cfeb58eccab} - gahurihor - Reg Error: Key error. File not found
O22 - SharedTaskScheduler: {959e45c7-8f59-4af8-be3c-6aee04ec3cd3} - jugezatag - Reg Error: Key error. File not found
O22 - SharedTaskScheduler: {9b80e90e-e814-4507-974f-217028db2147} - mujuzedij - Reg Error: Key error. File not found
O24 - Desktop WallPaper: C:\Documents and Settings\Mike\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Mike\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/10 13:04:08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/03/15 21:26:22 | 000,555,008 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Mike\Desktop\OTL.exe
[2010/03/15 02:08:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\moqlfe
[2010/03/14 20:15:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Identities
[2010/03/14 20:15:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools
[2010/03/14 20:14:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/03/14 14:50:45 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2010/03/14 14:50:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Identities
[2010/03/14 14:43:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mike\Application Data\Malwarebytes
[2010/03/14 14:23:08 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/03/14 14:23:06 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/03/14 14:23:06 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/03/14 14:23:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/03/14 12:47:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\RegCure
[2010/03/14 12:47:03 | 000,000,000 | ---D | C] -- C:\Program Files\RegCure
[2010/02/08 08:43:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\AdobeUM
[2010/02/08 08:43:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Adobe
[2010/02/08 08:42:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2010/02/07 19:42:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2009/11/09 10:05:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\PCHealth
[2009/10/25 15:34:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\SACore
[2009/10/11 10:24:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2009/10/11 10:24:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Yahoo!
[2009/08/28 22:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2009/07/05 08:59:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Google
[2009/07/05 08:49:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2007/11/02 18:55:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Help
[2007/11/02 18:55:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Help
[2007/09/03 07:28:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2007/03/30 20:47:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Identities
[2007/03/30 20:46:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\AdobeUM
[2007/03/30 20:46:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2006/02/19 21:16:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Macromedia
[2005/03/13 10:59:20 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/03/15 21:27:18 | 000,324,096 | ---- | M] () -- C:\WINDOWS\System32\emp200.exe
[2010/03/15 21:27:10 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At43.job
[2010/03/15 21:27:06 | 000,000,440 | ---- | M] () -- C:\200.js
[2010/03/15 21:25:51 | 000,555,008 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Mike\Desktop\OTL.exe
[2010/03/15 21:21:56 | 000,021,037 | ---- | M] () -- C:\WINDOWS\System32\Config.MPF
[2010/03/15 21:21:10 | 000,000,974 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1677879946-3676571163-289259045-1006UA.job
[2010/03/15 21:21:06 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2010/03/15 21:20:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At42.job
[2010/03/15 21:20:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At41.job
[2010/03/15 21:20:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At40.job
[2010/03/15 21:20:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At39.job
[2010/03/15 21:20:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At38.job
[2010/03/15 21:20:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At37.job
[2010/03/15 21:20:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At36.job
[2010/03/15 21:20:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At35.job
[2010/03/15 21:20:07 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/03/15 21:20:04 | 1071,697,920 | -HS- | M] () -- C:\hiberfil.sys
[2010/03/15 21:20:04 | 000,002,048 | --S- | M] () -- C:\WINDOWS\BOOTSTAT.DAT
[2010/03/15 21:19:08 | 003,932,160 | ---- | M] () -- C:\Documents and Settings\Mike\NTUSER.DAT
[2010/03/15 21:19:08 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Mike\NTUSER.INI
[2010/03/15 17:24:20 | 000,044,024 | ---- | M] () -- C:\Documents and Settings\Mike\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At34.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At33.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At32.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At31.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At30.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At29.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At28.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At27.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At26.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At25.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At24.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At23.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At22.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At21.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At20.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At19.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At18.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At17.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At16.job
[2010/03/15 17:21:37 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
[2010/03/15 17:21:31 | 000,201,736 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/03/15 15:21:00 | 000,000,922 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1677879946-3676571163-289259045-1006Core.job
[2010/03/15 06:40:08 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
[2010/03/15 06:27:08 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At13.job
[2010/03/15 05:40:04 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
[2010/03/15 05:27:02 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2010/03/15 04:40:06 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At10.job
[2010/03/15 04:27:02 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At9.job
[2010/03/15 04:17:15 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sys
[2010/03/15 03:40:02 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At8.job
[2010/03/15 03:27:02 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At7.job
[2010/03/15 02:40:06 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At6.job
[2010/03/15 02:27:05 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At5.job
[2010/03/15 02:07:37 | 000,110,080 | ---- | M] () -- C:\WINDOWS\System32\kbddta.dll
[2010/03/15 02:07:37 | 000,098,304 | ---- | M] () -- C:\WINDOWS\System32\kbvdt.dll
[2010/03/15 01:40:02 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2010/03/15 01:31:37 | 000,000,338 | ---- | M] () -- C:\WINDOWS\tasks\McDefragTask.job
[2010/03/15 01:27:05 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2010/03/15 00:40:14 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
[2010/03/15 00:27:05 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[2010/03/14 23:40:24 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At48.job
[2010/03/14 23:27:07 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At47.job
[2010/03/14 22:40:05 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At46.job
[2010/03/14 22:27:10 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At45.job
[2010/03/14 21:40:22 | 000,000,394 | ---- | M] () -- C:\WINDOWS\tasks\At44.job
[2010/03/14 16:48:12 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/03/14 14:59:17 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/03/14 14:40:42 | 000,000,336 | ---- | M] () -- C:\WINDOWS\tasks\PC Medkit.job
[2010/03/14 14:23:10 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/03/14 12:20:41 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\WPA.DBL
[2010/02/24 20:40:17 | 000,000,440 | ---- | M] () -- C:\101.js
[2010/02/24 10:16:06 | 000,181,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MpSigStub.exe
[2010/02/23 18:54:46 | 000,006,456 | -H-- | M] () -- C:\WINDOWS\System32\litahude
[2010/02/23 16:44:45 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sysAC719CE3
[2010/02/23 16:42:55 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sysB0DAAA08
[2010/02/23 16:11:29 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sysBBCB1DBD
[2010/02/23 16:09:49 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sys4587B996
[2010/02/23 13:23:59 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sys1D3E58EE
[2010/02/23 12:35:29 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sys9E48CB2F
[2010/02/23 11:26:50 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sysC9C67E03
[2010/02/18 02:27:01 | 000,000,440 | ---- | M] () -- C:\100.js
[2010/02/18 01:40:04 | 000,000,487 | ---- | M] () -- C:\99.js
[2010/02/14 13:27:03 | 000,000,487 | ---- | M] () -- C:\88.js
[8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/03/15 02:07:37 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\kbvdt.dll
[2010/03/15 02:07:36 | 000,110,080 | ---- | C] () -- C:\WINDOWS\System32\kbddta.dll
[2010/03/14 20:16:18 | 1071,697,920 | -HS- | C] () -- C:\hiberfil.sys
[2010/03/14 16:27:13 | 000,324,096 | ---- | C] () -- C:\WINDOWS\System32\emp200.exe
[2010/03/14 16:27:02 | 000,000,440 | ---- | C] () -- C:\200.js
[2010/03/14 14:23:10 | 000,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/03/14 13:28:28 | 000,000,336 | ---- | C] () -- C:\WINDOWS\tasks\PC Medkit.job
[2010/02/24 18:40:11 | 000,000,440 | ---- | C] () -- C:\101.js
[2010/02/23 16:44:45 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sysAC719CE3
[2010/02/23 16:42:55 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sysB0DAAA08
[2010/02/23 16:11:29 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sysBBCB1DBD
[2010/02/23 16:09:49 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sys4587B996
[2010/02/23 13:23:59 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sys1D3E58EE
[2010/02/23 12:35:29 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sys9E48CB2F
[2010/02/23 11:26:50 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sysC9C67E03
[2010/02/18 02:27:01 | 000,000,440 | ---- | C] () -- C:\100.js
[2010/02/15 18:27:04 | 000,000,487 | ---- | C] () -- C:\99.js
[2010/01/31 19:58:47 | 000,003,513 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2009/11/24 21:26:22 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009/11/20 21:22:57 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2009/08/28 22:24:59 | 000,000,004 | ---- | C] () -- C:\Documents and Settings\Mike\Application Data\92BB30
[2009/08/28 22:24:58 | 000,870,128 | ---- | C] () -- C:\Documents and Settings\Mike\Application Data\mcs.rma
[2009/07/18 15:23:50 | 000,198,144 | ---- | C] () -- C:\WINDOWS\System32\_psisdecd.dll
[2007/09/11 20:05:52 | 000,001,779 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/09/22 18:54:52 | 000,000,797 | ---- | C] () -- C:\WINDOWS\KPSTUDIO.INI
[2006/09/22 18:54:52 | 000,000,305 | ---- | C] () -- C:\WINDOWS\PROVW.INI
[2006/09/22 18:53:56 | 000,000,119 | ---- | C] () -- C:\WINDOWS\QTW.INI
[2006/09/21 19:44:59 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SETUP32.INI
[2006/09/18 19:29:55 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2006/01/15 15:52:04 | 000,005,632 | ---- | C] () -- C:\Documents and Settings\Mike\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2005/08/06 11:03:07 | 000,000,768 | ---- | C] () -- C:\WINDOWS\dellstat.ini
[2005/08/06 11:01:31 | 000,143,360 | R--- | C] () -- C:\WINDOWS\System32\dlbucoin.dll
[2005/08/06 11:01:31 | 000,131,072 | R--- | C] () -- C:\WINDOWS\System32\dlbusnls.dll
[2005/03/30 21:55:24 | 000,000,216 | ---- | C] () -- C:\WINDOWS\Quicken.ini
[2005/03/28 20:34:05 | 000,002,824 | ---- | C] () -- C:\WINDOWS\Disney.ini
[2005/03/28 19:18:02 | 000,000,165 | ---- | C] () -- C:\WINDOWS\BluesCluesPreschool.ini
[2005/03/27 11:21:37 | 000,000,823 | ---- | C] () -- C:\WINDOWS\cdPlayer.ini
[2005/03/16 19:23:06 | 000,061,678 | ---- | C] () -- C:\Documents and Settings\Mike\Application Data\PFP120JPR.{PB
[2005/03/16 19:23:06 | 000,012,358 | ---- | C] () -- C:\Documents and Settings\Mike\Application Data\PFP120JCM.{PB
[2005/03/15 22:44:57 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\Mike\Local Settings\Application Data\fusioncache.dat
[2005/03/13 11:51:16 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2005/03/13 11:48:52 | 000,000,138 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2005/03/13 11:01:06 | 000,000,370 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2005/02/02 16:40:24 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\dlbucur.dll
[2005/02/02 16:39:14 | 000,573,440 | ---- | C] () -- C:\WINDOWS\System32\dlbujswr.dll
[2005/02/02 16:03:42 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\dlbucu.dll
[2005/02/02 15:49:32 | 000,405,504 | ---- | C] () -- C:\WINDOWS\System32\dlbuutil.dll
[2004/09/15 22:03:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2004/08/12 07:55:51 | 000,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sys
[2004/08/10 13:13:12 | 000,000,780 | ---- | C] () -- C:\WINDOWS\ORUN32.INI
[2004/08/04 05:00:00 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\FXSPERF.INI
[2003/10/08 08:09:46 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\dlbuvs.dll
[1980/01/01 00:00:00 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\e100bmsg.dll
< End of report >