Here you go hopefully I got this right.
OTL logfile created on: 6/21/2010 10:17:32 PM - Run
OTLPE by OldTimer - Version 3.1.39.0 Folder = X:\Programs\OTLPE
Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 90.00% Memory free
3.00 Gb Paging File | 3.00 Gb Available in Paging File | 98.00% Paging File free
Paging file location(s): C:\pagefile.sys 5000 5000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232.88 Gb Total Space | 64.24 Gb Free Space | 27.58% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive X: | 433.24 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: REATOGO
Current User Name: SYSTEM
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
Using ControlSet: ControlSet003
========== Win32 Services (SafeList) ========== SRV - [2010/05/14 11:00:26 | 000,249,136 | ---- | M] (Microsoft Corporation) [Auto] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2010/04/27 17:16:24 | 000,188,136 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe -- (mfefire)
SRV - [2010/04/27 17:16:24 | 000,141,792 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe -- (mfevtp)
SRV - [2010/04/14 12:29:58 | 000,170,144 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe -- (McShield)
SRV - [2010/03/30 11:16:12 | 001,107,336 | ---- | M] (LogMeIn Inc.) [Auto] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2010/03/26 11:16:04 | 000,093,320 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2010/03/10 11:16:56 | 000,364,216 | ---- | M] (McAfee, Inc.) [On_Demand] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV - [2010/03/01 10:48:16 | 001,029,456 | ---- | M] (Lavasoft) [Auto] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2009/12/14 21:08:40 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (MSK80Service)
SRV - [2009/12/14 21:08:40 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McProxy)
SRV - [2009/12/14 21:08:40 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNASvc)
SRV - [2009/12/14 21:08:40 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV - [2009/12/14 21:08:40 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (mcmscsvc)
SRV - [2009/12/14 21:08:40 | 000,271,480 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV - [2009/08/05 23:48:42 | 000,704,864 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc)
SRV - [2009/07/25 00:32:34 | 001,492,344 | ---- | M] (RealVNC Ltd.) [On_Demand] -- C:\Program Files\RealVNC\VNC4\WinVNC4.exe -- (WinVNC4)
SRV - [2009/07/13 09:28:31 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/06/16 21:27:32 | 000,368,644 | ---- | M] () [On_Demand] -- C:\Program Files\NCH Software\BroadCam\broadCam.exe -- (BroadCamService)
SRV - [2009/04/14 11:53:00 | 002,784,285 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand] -- C:\WINDOWS\System32\GameMon.des -- (npggsvc)
SRV - [2009/02/15 00:22:12 | 006,558,336 | ---- | M] () [On_Demand] -- C:\Nexon\V55\wamp\bin\mysql\mysql5.1.32\bin\mysqld.exe -- (wampmysqld)
SRV - [2009/01/30 13:07:00 | 005,795,840 | ---- | M] () [Auto] -- C:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt.exe -- (MySQL)
SRV - [2008/12/10 00:10:14 | 000,024,636 | ---- | M] (Apache Software Foundation) [On_Demand] -- C:\Nexon\V55\wamp\bin\apache\apache2.2.11\bin\httpd.exe -- (wampapache)
SRV - [2008/11/05 21:08:55 | 000,106,496 | ---- | M] (Acronis) [Auto] -- C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
SRV - [2008/07/10 20:28:06 | 040,999,448 | ---- | M] (Microsoft Corporation) [Auto] -- c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe -- (MSSQL$SQLEXPRESS) SQL Server (SQLEXPRESS)
SRV - [2008/07/10 20:28:06 | 000,369,688 | ---- | M] (Microsoft Corporation) [Disabled] -- c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE -- (SQLAgent$SQLEXPRESS) SQL Server Agent (SQLEXPRESS)
SRV - [2008/07/10 20:28:04 | 000,047,128 | ---- | M] (Microsoft Corporation) [Disabled] -- c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE -- (MSSQLServerADHelper100)
SRV - [2008/07/10 02:49:44 | 000,098,840 | ---- | M] (Microsoft Corporation) [Auto] -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe -- (SQLWriter)
SRV - [2008/07/10 02:49:34 | 000,258,072 | ---- | M] (Microsoft Corporation) [Disabled] -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe -- (SQLBrowser)
SRV - [2005/09/23 08:01:16 | 002,799,808 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\Program Files\Microsoft Visual Studio 8\Common7\IDE\Remote Debugger\x86\msvsmon.exe -- (msvsmon80)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKU\Alan_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.ca/IE - HKU\Alan_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Alan_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKU\ASPNET_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://ca.msn.com/iat/us_ca.aspxIE - HKU\ASPNET_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\ASPNET_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 70 05 C4 5F D2 4A CA 01 [binary data]
IE - HKU\ASPNET_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Secure Search"
FF - prefs.js..browser.search.selectedEngine: "Secure Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.bing.com/"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2
FF - prefs.js..extensions.enabledItems: {59c81df5-4b7a-477b-912d-4e0fdf64e5f2}:0.9.86
FF - prefs.js..extensions.enabledItems: {c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}:3.2
FF - prefs.js..extensions.enabledItems: {6F0976E6-26F3-4AFE-BBEC-9E99E27E4DF3}:1.3.1
FF - prefs.js..extensions.enabledItems: {0b457cAA-602d-484a-8fe7-c1d894a011ba}:0.80
FF - prefs.js..extensions.enabledItems: {81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}:6.6.5.0
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.1
FF - prefs.js..extensions.enabledItems: {64161300-e22b-11db-8314-0800200c9a66}:0.9.5
FF - prefs.js..extensions.enabledItems: {dc572301-7619-498c-a57d-39143191b318}:0.3.8.2
FF - prefs.js..extensions.enabledItems: {c8f71e5b-88f8-42a7-98bb-e4c506161de9}:0.4
FF - prefs.js..extensions.enabledItems: {d122ad80-ff45-11dd-87af-0800200c9a66}:3.6.29.01.10
FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=mcafee&p="
FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2010/06/05 11:17:18 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/05/21 15:27:05 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/04/04 10:08:21 | 000,000,000 | ---D | M]
[2010/06/08 16:37:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Mozilla\Extensions
[2010/06/08 16:37:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Mozilla\Extensions\mozswing@mozswing.org
[2010/06/20 20:02:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions
[2009/10/31 11:17:30 | 000,000,000 | ---D | M] (FireShot) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba}
[2010/05/12 17:06:37 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009/12/17 17:24:15 | 000,000,000 | ---D | M] (ChatZilla) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2}
[2010/03/14 16:00:42 | 000,000,000 | ---D | M] (Speed Dial) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{64161300-e22b-11db-8314-0800200c9a66}
[2009/12/05 10:11:26 | 000,000,000 | ---D | M] (Fire.fm) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{6F0976E6-26F3-4AFE-BBEC-9E99E27E4DF3}
[2010/05/12 17:06:36 | 000,000,000 | ---D | M] (iMacros for Firefox) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2010/05/12 17:06:31 | 000,000,000 | ---D | M] (Easy Youtube Video Downloader) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}
[2010/03/14 16:00:36 | 000,000,000 | ---D | M] (AmbientFox) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{c8f71e5b-88f8-42a7-98bb-e4c506161de9}
[2010/05/12 17:06:32 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010/01/30 12:40:25 | 000,000,000 | ---D | M] (Green Fox) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{d122ad80-ff45-11dd-87af-0800200c9a66}
[2009/10/13 18:22:25 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\{dc572301-7619-498c-a57d-39143191b318}
[2010/04/08 17:24:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\DTToolbar@toolbarnet.com
[2009/09/05 09:00:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\extensions\redshift_V2@shift-themes.com
[2009/10/06 20:09:00 | 000,002,172 | ---- | M] () -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\5mxin21v.default\searchplugins\bing.xml
[2010/06/20 20:02:15 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/04/27 17:16:24 | 000,024,376 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Mozilla Firefox\components\scriptff.dll
[2009/07/03 01:34:44 | 000,083,376 | ---- | M] (NHN USA Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npijjiautoinstallpluginff.dll
[2009/01/28 23:08:04 | 000,132,528 | ---- | M] (NHN USA Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npijjiCHPlugin.dll
[2008/09/10 03:39:42 | 000,075,184 | ---- | M] (NHN USA Inc. ) -- C:\Program Files\Mozilla Firefox\plugins\npijjiFFPlugin1.dll
[2010/02/06 19:12:50 | 000,238,776 | ---- | M] (Pando Networks) -- C:\Program Files\Mozilla Firefox\plugins\npPandoWebInst.dll
[2010/06/11 10:11:10 | 000,002,024 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\McSiteAdvisor.xml
O1 HOSTS File: ([2009/10/08 20:42:40 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (SnagIt Toolbar Loader) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\Snagit 9\SnagitBHO.dll (TechSmith Corporation)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
O2 - BHO: (FGCatchUrl) - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll (
www.flashget.com)O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\scriptSn.20100521152705.dll (McAfee, Inc.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (FlashGet GetFlash Class) - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll (
www.flashget.com)O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Snagit) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\Snagit 9\SnagitIEAddin.dll (TechSmith Corporation)
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKU\Alan_ON_C\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKU\Alan_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKU\Alan_ON_C\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\ASPNET_ON_C\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKU\ASPNET_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft)
O4 - HKLM..\Run: [Flashget] C:\Program Files\FlashGet\FlashGet.exe (FlashGet.com)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [ULiRaid] C:\Program Files\ULiRaid\ULiRaid.exe (ULi Electronics Inc.)
O4 - HKU\Alan_ON_C..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\Alan_ON_C..\Run: [msupdate] C:\WINDOWS\System32\javaw.exe (Sun Microsystems, Inc.)
O4 - HKU\Alan_ON_C..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe ()
O4 - HKU\Alan_ON_C..\Run: [Steam] c:\program files\steamm\steam.exe (Valve Corporation)
O4 - Startup: C:\Documents and Settings\Alan\Start Menu\Programs\Startup\crisisx_updater.jar ()
O4 - Startup: C:\Documents and Settings\Alan\Start Menu\Programs\Startup\LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe (Lime Wire, LLC)
O4 - Startup: C:\Documents and Settings\Alan\Start Menu\Programs\Startup\TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe (AKSoftware)
O4 - Startup: C:\Documents and Settings\Alan\Start Menu\Programs\Startup\UberIcon.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe ()
O4 - Startup: C:\Documents and Settings\Alan\Start Menu\Programs\Startup\Y'z Shadow.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe (Y'z@Home)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\Alan_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\Alan_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\Alan_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\Alan_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\Alan_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\DisableRegistryTools: = 0
O7 - HKU\ASPNET_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\ASPNET_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\LocalService_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\LocalService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\NetworkService_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\systemprofile_ON_C\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\JC_ALL.HTM ()
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\JC_LINK.HTM ()
O8 - Extra context menu item: &Google Search - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O8 - Extra context menu item: Backward Links - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O8 - Extra context menu item: Cached Snapshot of Page - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Similar Pages - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O8 - Extra context menu item: Translate into English - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\flashget.exe (FlashGet.com)
O9 - Extra 'Tools' menuitem : FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\flashget.exe (FlashGet.com)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E}
http://www.nvidia.com/content/DriverDownload/srl/3.0.0.0/srl_bin/sysreqlab3.cab (System Requirements Lab Class)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967}
http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab (DLM Control)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1224556723562 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7}
http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab (PhotoPickConvert Class)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072}
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (wbsys.dll) - C:\WINDOWS\System32\wbsys.dll (Stardock.Net, Inc)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WB: DllName - C:\Program Files\AlienGUIse\fastload.dll - C:\Program Files\AlienGUIse\fastload.dll (Stardock)
O24 - Desktop WallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/10/20 21:37:29 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{f09e7261-9ee8-11dd-b3e3-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{f09e7261-9ee8-11dd-b3e3-806d6172696f}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{f09e7261-9ee8-11dd-b3e3-806d6172696f}\Shell\AutoRun\command - "" = D:\AUTORUN.EXE -- File not found
O34 - HKLM BootExecute: (autocheck autochk /p \??\C:) - File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/06/15 17:33:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Alan\Application Data\Datel
[2010/06/15 17:32:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Alan\Local Settings\Application Data\GameTuts
[2010/06/15 17:32:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Alan\Application Data\GameTuts
[2010/06/15 17:31:54 | 016,726,528 | ---- | C] (GameTuts) -- C:\Documents and Settings\Alan\Desktop\Modio.exe
[2010/06/11 11:52:42 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\LocalService\IETldCache
[2010/06/11 10:21:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\BricoPacks
[2010/06/08 23:18:58 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2010/06/08 16:38:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Alan\My Documents\LimeWire
[2010/06/08 16:37:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Alan\Application Data\LimeWire
[2010/06/08 16:36:47 | 000,000,000 | ---D | C] -- C:\Program Files\LimeWire
[2010/06/05 14:57:10 | 000,000,000 | ---D | C] -- C:\Program Files\LastCo
[8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/06/21 14:06:03 | 000,901,120 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\savegame.svg
[2010/06/21 13:57:53 | 000,069,632 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\mpdata_e00004ab5a6d4b0a
[2010/06/21 13:45:23 | 000,531,368 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/06/21 13:45:23 | 000,104,234 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/06/21 13:45:21 | 000,647,600 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/06/21 13:42:33 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/06/21 13:40:06 | 000,194,297 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010/06/21 13:39:52 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/06/21 13:39:50 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/06/21 13:39:48 | 3069,497,344 | -HS- | M] () -- C:\hiberfil.sys
[2010/06/21 11:37:47 | 000,000,213 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\Condition Zero.url
[2010/06/21 09:48:36 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2010/06/18 21:31:06 | 000,061,440 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\R6_EquipEquipmentTemplate
[2010/06/18 04:05:23 | 002,149,344 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/06/18 00:23:39 | 001,142,784 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\Save_0___01C8F64E451C8C80
[2010/06/14 16:23:44 | 000,608,256 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\blackra1n.exe
[2010/06/11 15:33:19 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/06/11 11:51:38 | 000,139,152 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010/06/11 10:38:08 | 010,223,616 | -H-- | M] () -- C:\Documents and Settings\Alan\NTUSER.DAT
[2010/06/11 10:25:30 | 000,262,144 | -H-- | M] () -- C:\Documents and Settings\NetworkService\NTUSER.DAT
[2010/06/11 10:25:30 | 000,262,144 | -H-- | M] () -- C:\Documents and Settings\LocalService\NTUSER.DAT
[2010/06/11 10:24:42 | 000,064,949 | ---- | M] () -- C:\WINDOWS\BricoPackUninst.cmd
[2010/06/11 10:24:42 | 000,006,112 | ---- | M] () -- C:\WINDOWS\BricoPackFoldersDelete.cmd
[2010/06/11 10:24:34 | 005,760,054 | ---- | M] () -- C:\WINDOWS\BricoPack Wallpaper.bmp
[2010/06/11 10:24:34 | 000,000,833 | ---- | M] () -- C:\Documents and Settings\Alan\Start Menu\Programs\Startup\TransBar.lnk
[2010/06/11 10:24:33 | 000,000,867 | ---- | M] () -- C:\Documents and Settings\Alan\Start Menu\Programs\Startup\UberIcon.lnk
[2010/06/11 10:23:15 | 000,000,827 | ---- | M] () -- C:\Documents and Settings\Alan\Start Menu\Programs\Startup\Y'z Shadow.lnk
[2010/06/11 01:09:55 | 000,001,561 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\AlienGUIse.lnk
[2010/06/11 01:08:58 | 000,000,056 | ---- | M] () -- C:\WINDOWS\wb.ini
[2010/06/09 03:17:19 | 000,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/06/08 17:03:00 | 000,030,720 | ---- | M] () -- C:\Documents and Settings\Alan\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/06/08 16:38:09 | 000,001,541 | ---- | M] () -- C:\Documents and Settings\Alan\Start Menu\Programs\Startup\LimeWire On Startup.lnk
[2010/06/08 16:37:04 | 000,001,583 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\LimeWire 5.5.9.lnk
[2010/06/05 15:09:54 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\Shortcut to LastCO.lnk
[2010/06/05 14:55:26 | 366,596,207 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\LastCO.exe
[2010/05/27 20:09:00 | 000,041,872 | ---- | M] () -- C:\WINDOWS\System32\xfcodec.dll
[8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/06/21 14:06:03 | 000,901,120 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\savegame.svg
[2010/06/21 13:38:04 | 000,069,632 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\mpdata_e00004ab5a6d4b0a
[2010/06/21 11:37:47 | 000,000,213 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\Condition Zero.url
[2010/06/18 21:31:06 | 000,061,440 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\R6_EquipEquipmentTemplate
[2010/06/18 00:22:24 | 001,142,784 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\Save_0___01C8F64E451C8C80
[2010/06/14 16:23:59 | 000,001,108 | ---- | C] () -- C:\Documents and Settings\Alan\blackra1n.log
[2010/06/14 16:23:43 | 000,608,256 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\blackra1n.exe
[2010/06/11 10:29:22 | 000,000,827 | ---- | C] () -- C:\Documents and Settings\Alan\Start Menu\Programs\Startup\Y'z Shadow.lnk
[2010/06/11 10:29:18 | 000,000,833 | ---- | C] () -- C:\Documents and Settings\Alan\Start Menu\Programs\Startup\TransBar.lnk
[2010/06/11 10:29:15 | 000,000,867 | ---- | C] () -- C:\Documents and Settings\Alan\Start Menu\Programs\Startup\UberIcon.lnk
[2010/06/11 10:24:42 | 000,064,949 | ---- | C] () -- C:\WINDOWS\BricoPackUninst.cmd
[2010/06/11 10:24:34 | 005,760,054 | ---- | C] () -- C:\WINDOWS\BricoPack Wallpaper.bmp
[2010/06/11 10:21:45 | 000,006,112 | ---- | C] () -- C:\WINDOWS\BricoPackFoldersDelete.cmd
[2010/06/11 01:09:55 | 000,001,561 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\AlienGUIse.lnk
[2010/06/08 16:38:09 | 000,001,541 | ---- | C] () -- C:\Documents and Settings\Alan\Start Menu\Programs\Startup\LimeWire On Startup.lnk
[2010/06/08 16:37:04 | 000,001,583 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\LimeWire 5.5.9.lnk
[2010/06/05 15:09:54 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\Shortcut to LastCO.lnk
[2010/06/05 14:47:40 | 366,596,207 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\LastCO.exe
[2010/05/27 20:09:00 | 000,041,872 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll
[2010/04/18 14:38:33 | 000,000,779 | ---- | C] () -- C:\WINDOWS\System32\msexcr.ini
[2010/04/01 19:42:48 | 000,021,859 | ---- | C] () -- C:\Documents and Settings\Alan\Application Data\update.jar
[2010/04/01 19:42:48 | 000,000,006 | ---- | C] () -- C:\Documents and Settings\Alan\_ntfs2.lock
[2010/03/28 00:12:24 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Alan\jagex__preferences3.dat
[2010/01/29 23:49:40 | 000,000,355 | ---- | C] () -- C:\Documents and Settings\Alan\Application Data\RSBot Accounts.ini
[2010/01/29 23:49:21 | 000,000,075 | ---- | C] () -- C:\Documents and Settings\Alan\jagex_runescape_preferences2.dat
[2009/12/19 23:15:19 | 000,000,056 | ---- | C] () -- C:\WINDOWS\wb.ini
[2009/10/11 20:23:20 | 000,000,178 | -HS- | C] () -- C:\Documents and Settings\ASPNET\ntuser.ini
[2009/10/11 20:23:17 | 000,786,432 | -H-- | C] () -- C:\Documents and Settings\ASPNET\NTUSER.DAT
[2009/10/11 20:23:17 | 000,008,192 | -H-- | C] () -- C:\Documents and Settings\ASPNET\ntuser.dat.LOG
[2009/08/13 10:55:48 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\VNCpm.dll
[2009/07/30 11:30:21 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\Alan\Application Data\winscp.rnd
[2009/06/27 10:04:26 | 000,000,863 | ---- | C] () -- C:\Documents and Settings\Alan\.recently-used.xbel
[2009/06/13 18:10:28 | 000,000,262 | ---- | C] () -- C:\WINDOWS\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
[2009/04/29 22:25:15 | 000,262,144 | ---- | C] () -- C:\WINDOWS\system32\config\systemprofile\ntuser.dat
[2009/04/29 22:25:15 | 000,008,192 | -H-- | C] () -- C:\WINDOWS\system32\config\systemprofile\ntuser.dat.LOG
[2009/04/19 10:17:11 | 000,000,120 | ---- | C] () -- C:\Documents and Settings\Alan\.asadminpass
[2009/04/19 10:17:01 | 000,000,802 | ---- | C] () -- C:\Documents and Settings\Alan\.asadmintruststore
[2009/04/13 14:42:31 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
[2009/04/13 14:42:31 | 000,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
[2009/04/13 14:42:31 | 000,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
[2009/03/15 10:00:43 | 001,073,152 | ---- | C] () -- C:\WINDOWS\System32\libmysql_c.dll
[2008/12/07 16:15:12 | 000,000,041 | ---- | C] () -- C:\Documents and Settings\Alan\jagex_runescape_preferences.dat
[2008/11/28 19:58:00 | 000,056,056 | ---- | C] () -- C:\WINDOWS\System32\DLAAPI_W.DLL
[2008/11/28 19:58:00 | 000,000,165 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2008/11/28 10:00:52 | 000,030,720 | ---- | C] () -- C:\Documents and Settings\Alan\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/11/16 00:40:26 | 000,139,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2008/11/09 16:55:28 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\Alan\Local Settings\Application Data\fusioncache.dat
[2008/11/05 21:08:51 | 000,037,888 | ---- | C] () -- C:\WINDOWS\System32\setupnt.dll
[2008/11/02 22:03:33 | 000,000,520 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008/10/20 22:12:14 | 000,155,648 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
[2008/10/20 21:45:20 | 000,000,178 | -HS- | C] () -- C:\Documents and Settings\Alan\ntuser.ini
[2008/10/20 21:45:19 | 000,106,496 | -H-- | C] () -- C:\Documents and Settings\Alan\ntuser.dat.LOG
[2008/10/20 21:45:18 | 010,223,616 | -H-- | C] () -- C:\Documents and Settings\Alan\NTUSER.DAT
[2008/10/20 21:41:26 | 000,000,020 | -HS- | C] () -- C:\Documents and Settings\LocalService\ntuser.ini
[2008/10/20 21:41:25 | 000,262,144 | -H-- | C] () -- C:\Documents and Settings\LocalService\NTUSER.DAT
[2008/10/20 21:41:25 | 000,008,192 | -H-- | C] () -- C:\Documents and Settings\LocalService\ntuser.dat.LOG
[2008/10/20 21:41:18 | 000,000,020 | -HS- | C] () -- C:\Documents and Settings\NetworkService\ntuser.ini
[2008/10/20 21:41:17 | 000,008,192 | -H-- | C] () -- C:\Documents and Settings\NetworkService\ntuser.dat.LOG
[2008/10/20 21:41:16 | 000,262,144 | -H-- | C] () -- C:\Documents and Settings\NetworkService\NTUSER.DAT
[2008/10/07 10:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008/10/07 10:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008/10/07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008/10/07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008/10/07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008/10/07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008/10/07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008/10/07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008/10/07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008/10/07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2008/05/17 03:31:00 | 001,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2008/05/17 03:31:00 | 001,503,232 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2008/05/17 03:31:00 | 001,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2008/05/17 03:31:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2008/05/17 03:31:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2007/09/27 10:51:02 | 000,020,698 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 10:48:48 | 000,030,628 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 10:48:28 | 000,031,698 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini
[2006/11/09 17:07:44 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2006/09/17 00:36:50 | 000,520,192 | ---- | C] () -- C:\WINDOWS\System32\CddbPlaylist2Roxio.dll
[2006/09/17 00:36:50 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\CddbFileTaggerRoxio.dll
[1999/01/22 17:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
========== LOP Check ========== [2009/03/24 18:51:41 | 000,000,000 | ---D | M] -- C:\WINDOWS\system32\config\systemprofile\Application Data\SACore
[2008/11/05 22:36:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Acronis
[2009/11/01 15:25:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\DAEMON Tools Lite
[2010/06/15 17:33:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Datel
[2009/09/25 10:22:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\FireShot
[2009/11/07 10:09:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\GameRanger
[2010/06/15 17:32:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\GameTuts
[2010/01/05 22:55:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\GetRightToGo
[2009/04/03 21:29:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\gtk-2.0
[2009/04/25 08:46:29 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Alan\Application Data\ijjigame
[2010/06/21 13:41:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\LimeWire
[2009/04/27 19:45:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\MySQL
[2009/06/16 21:27:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\NCH Swift Sound
[2008/12/28 17:28:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Nexon
[2010/04/18 12:48:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Octoshape
[2009/11/25 20:51:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Publish Providers
[2009/06/17 21:09:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Recordpad
[2009/11/25 20:49:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Sony
[2009/12/17 19:45:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Sony Creative Software
[2009/12/10 19:46:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Subversion
[2009/12/22 23:50:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\TeamViewer
[2008/10/20 23:27:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Windows Desktop Search
[2008/11/02 13:18:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Windows Search
[2009/10/11 20:23:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ASPNET\Application Data\NCH Swift Sound
[2009/10/11 20:24:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ASPNET\Application Data\Recordpad
[2009/10/11 20:24:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ASPNET\Application Data\Windows Search
[2009/11/01 20:48:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\SACore
[2009/10/11 20:18:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\SACore
[2010/06/21 09:48:36 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
========== Purity Check ========== < End of report >