Dont think I managed to attach the file
OTL logfile created on: 9/7/2010 11:27:05 PM - Run
OTLPE by OldTimer - Version 3.1.40.0 Folder = X:\Programs\OTLPE
Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM
Internet Explorer (Version = 7.0.5730.11)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1,022.00 Mb Total Physical Memory | 773.00 Mb Available Physical Memory | 76.00% Memory free
906.00 Mb Paging File | 842.00 Mb Available in Paging File | 93.00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 229.76 Gb Total Space | 122.23 Gb Free Space | 53.20% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive X: | 280.77 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: REATOGO
Current User Name: SYSTEM
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
Using ControlSet: ControlSet001
========== Win32 Services (SafeList) ========== SRV - File not found [On_Demand] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010/06/10 16:03:08 | 000,144,176 | ---- | M] (Apple Inc.) [Auto] -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009/09/30 12:02:30 | 000,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto] -- C:\Program Files\AVG\AVG8\avgwdsvc.exe -- (avg8wd)
SRV - [2008/11/16 12:24:01 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2008/06/02 10:55:26 | 000,823,296 | ---- | M] (Hauppauge Computer Works) [On_Demand] -- C:\Program Files\WinTV\HCWTVServer.exe -- (HauppaugeTVServer)
SRV - [2008/05/30 06:07:20 | 000,437,248 | ---- | M] (Hauppauge Computer Works) [Auto] -- C:\Program Files\WinTV\EPG Services\System\EPGService.exe -- (EPGService)
SRV - [2007/03/07 10:47:46 | 000,076,848 | ---- | M] () [On_Demand] -- C:\Program Files\DellSupport\brkrsvc.exe -- (DSBrokerService)
SRV - [2006/07/31 12:57:26 | 000,122,880 | ---- | M] (Sony DADC Austria AG.) [Auto] -- C:\WINDOWS\system32\UAService7.exe -- (UserAccess7) SecuROM User Access Service (V7)
SRV - [2005/09/30 14:22:50 | 000,096,341 | ---- | M] (Canon Inc.) [Auto] -- C:\Program Files\Canon\CAL\CALMAIN.exe -- (CCALib8)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.co.uk/mywayIE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,First Home Page =
http://www.dell.co.uk/mywayIE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.co.uk/mywayIE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,First Home Page =
http://www.euro.dell.comIE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.dell.co.uk/mywayIE - HKU\Administrator_ON_C\..\URLSearchHook: {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - Reg Error: Key error. File not found
IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Daniel_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.co.uk/mywayIE - HKU\Daniel_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.dell.co.uk/mywayIE - HKU\Daniel_ON_C\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\tbDVD1.dll (Conduit Ltd.)
IE - HKU\Daniel_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Daniel_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKU\lesley_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.co.uk/mywayIE - HKU\lesley_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.comIE - HKU\lesley_ON_C\..\URLSearchHook: {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - Reg Error: Key error. File not found
IE - HKU\lesley_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Lynne_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.co.uk/mywayIE - HKU\Lynne_ON_C\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.comIE - HKU\Lynne_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.tiscali.co.uk/broadbandIE - HKU\Lynne_ON_C\..\URLSearchHook: {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - Reg Error: Key error. File not found
IE - HKU\Lynne_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\mark_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.google.com/ieIE - HKU\mark_ON_C\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\mark_ON_C\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8IE - HKU\mark_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.comIE - HKU\mark_ON_C\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\mark_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\mark_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\software\mozilla\Firefox\extensions\\FFToolbar@bitdefender.com: C:\Program Files\BitDefender\BitDefender 2010\bdaphffext\
FF - HKLM\software\mozilla\Firefox\extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG8\Firefox [2010/01/01 05:51:00 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.11\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/08/02 11:45:59 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.11\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/07/22 16:12:05 | 000,000,000 | ---D | M]
[2010/08/20 07:38:37 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009/09/22 11:55:48 | 000,047,104 | ---- | M] (BitDefender S.R.L.) -- C:\Program Files\Mozilla Firefox\components\FFComm.dll
[2008/08/16 13:42:02 | 000,070,456 | ---- | M] (Citrix Systems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\CgpCore.dll
[2008/08/16 13:42:12 | 000,091,448 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\confmgr.dll
[2008/08/16 13:42:08 | 000,020,800 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\ctxlogging.dll
[2008/05/21 04:41:08 | 000,479,232 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\msvcm80.dll
[2008/05/21 04:41:08 | 000,548,864 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\msvcp80.dll
[2008/05/21 04:41:08 | 000,626,688 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\msvcr80.dll
[2008/08/16 13:44:46 | 000,427,312 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\npicaN.dll
[2008/08/16 13:42:04 | 000,023,864 | ---- | M] (Citrix Systems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\TcpPServ.dll
[2010/07/03 16:54:24 | 000,001,538 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/07/03 16:54:24 | 000,000,947 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2010/07/03 16:54:24 | 000,000,769 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2010/07/03 16:54:24 | 000,000,831 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: ([2010/08/18 15:29:13 | 000,416,092 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1
www.007guard.comO1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.comO1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.comO1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.comO1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.comO1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.comO1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1
www.1001namen.comO1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100888290cs.comO1 - Hosts: 127.0.0.1
www.100sexlinks.comO1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.10sek.comO1 - Hosts: 127.0.0.1
www.1-2005-search.comO1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1 123fporn.info
O1 - Hosts: 14387 more lines...
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll (Sonic Solutions)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\tbDVD1.dll (Conduit Ltd.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll (Google Inc.)
O2 - BHO: (Ask && Record Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O2 - BHO: (EpsonToolBandKicker Class) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\tbDVD1.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Ask && Record Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKU\Daniel_ON_C\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKU\Daniel_ON_C\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found.
O3 - HKU\Daniel_ON_C\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\Daniel_ON_C\..\Toolbar\WebBrowser: (DVDVideoSoftTB Toolbar) - {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - C:\Program Files\DVDVideoSoftTB\tbDVD1.dll (Conduit Ltd.)
O3 - HKU\Daniel_ON_C\..\Toolbar\WebBrowser: (Ask && Record Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKU\lesley_ON_C\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\Lynne_ON_C\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKU\Lynne_ON_C\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found.
O3 - HKU\Lynne_ON_C\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\Lynne_ON_C\..\Toolbar\WebBrowser: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKU\mark_ON_C\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\mark_ON_C\..\Toolbar\WebBrowser: (Ask && Record Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Ask and Record FLV Service] C:\Program Files\Ask & Record Toolbar\FLVSrvc.exe (Applian Technologies, Inc.)
O4 - HKLM..\Run: [AVG8_TRAY] C:\Program Files\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe ()
O4 - HKLM..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe ( )
O4 - HKLM..\Run: [EPGServiceTool] C:\Program Files\WinTV\EPG Services\System\EPGClient.exe (Hauppauge Inc.)
O4 - HKLM..\Run: [EPSON Stylus CX3600 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [F5D7050v3] C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe (Belkin)
O4 - HKLM..\Run: [IJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (CANON INC.)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [none] c:\AUTOEXEC.BAT ()
O4 - HKLM..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
O4 - HKU\Administrator_ON_C..\Run: [DellSupport] C:\Program Files\DellSupport\DSAgnt.exe (Gteko Ltd.)
O4 - HKU\Daniel_ON_C..\Run: [{E7E56538-ABB8-5DD6-4292-C7AD5391273B}] C:\Documents and Settings\Daniel\Application Data\Geaci\qaloi.exe File not found
O4 - HKU\Daniel_ON_C..\Run: [ares] C:\Program Files\Ares\Ares.exe File not found
O4 - HKU\Daniel_ON_C..\Run: [MsnMsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe File not found
O4 - HKU\Daniel_ON_C..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKU\lesley_ON_C..\Run: [DellSupport] C:\Program Files\DellSupport\DSAgnt.exe (Gteko Ltd.)
O4 - HKU\lesley_ON_C..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKU\Lynne_ON_C..\Run: [DellSupport] C:\Program Files\DellSupport\DSAgnt.exe (Gteko Ltd.)
O4 - HKU\Lynne_ON_C..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKU\mark_ON_C..\Run: [CalibrizeResume] C:\Program Files\Calibrize\CalibrizeResume.exe (Eberhard Werle)
O4 - HKU\mark_ON_C..\Run: [CGFLoader] C:\Program Files\Calibrize\CalibrizeLoader.exe (Colorjinn)
O4 - HKU\mark_ON_C..\Run: [DellSupport] C:\Program Files\DellSupport\DSAgnt.exe (Gteko Ltd.)
O4 - HKU\mark_ON_C..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
O4 - HKU\mark_ON_C..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\AutoStart IR.lnk = C:\Program Files\WinTV\Ir.exe (Hauppauge Computer Works)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Daniel_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\lesley_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\LocalService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Lynne_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\mark_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\mark_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\mark_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\mark_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0
O7 - HKU\mark_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0
O7 - HKU\mark_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0
O7 - HKU\mark_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1
O7 - HKU\mark_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0
O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\yinsthelper.dll (YInstStarter Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1130353949051 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - File not found
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/02/15 12:59:55 | 000,000,057 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/08/20 10:10:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Daniel\Application Data\ICAClient
[2010/08/18 22:11:17 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2010/08/18 21:31:50 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpsvc.exe
[2010/08/18 16:06:20 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\mark\Recent
[2010/08/13 15:14:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Daniel\Local Settings\Application Data\Windows Server
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/09/07 17:03:05 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/08/20 18:20:16 | 000,262,144 | ---- | M] () -- C:\Documents and Settings\NetworkService\NTUSER.DAT
[2010/08/20 18:20:16 | 000,237,568 | ---- | M] () -- C:\Documents and Settings\LocalService\NTUSER.DAT
[2010/08/20 18:19:58 | 009,175,040 | -H-- | M] () -- C:\Documents and Settings\Daniel\ntuser.dat
[2010/08/20 18:19:58 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\Daniel\ntuser.ini
[2010/08/20 13:56:30 | 063,655,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2010/08/20 05:49:17 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2010/08/19 04:09:45 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/08/19 04:08:50 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/08/19 04:06:43 | 008,126,464 | ---- | M] () -- C:\Documents and Settings\mark\NTUSER.DAT
[2010/08/19 04:06:43 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\mark\ntuser.ini
[2010/08/18 22:36:18 | 001,547,800 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/08/18 22:34:10 | 008,126,464 | ---- | M] () -- C:\Documents and Settings\lesley\NTUSER.DAT
[2010/08/18 22:34:10 | 004,980,736 | ---- | M] () -- C:\Documents and Settings\Administrator\NTUSER.DAT
[2010/08/18 22:17:25 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/08/18 22:13:27 | 000,507,308 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/08/18 22:13:27 | 000,445,370 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/08/18 22:13:27 | 000,072,576 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/08/18 15:29:13 | 000,416,092 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/08/18 22:03:51 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2010/08/14 07:54:36 | 000,031,232 | ---- | C] () -- C:\Documents and Settings\Daniel\My Documents\Story.doc
[2010/08/14 07:54:36 | 000,009,704 | ---- | C] () -- C:\Documents and Settings\Daniel\My Documents\Assessment Summary A174 02 (pt3).htm
[2010/08/14 07:54:36 | 000,002,108 | ---- | C] () -- C:\Documents and Settings\Daniel\My Documents\PT3OULogo.gif
[2010/01/11 19:48:48 | 000,005,120 | ---- | C] () -- C:\Documents and Settings\Daniel\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/01/11 17:28:41 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\lesley\order.txt
[2009/12/28 15:27:52 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\Daniel\order.txt
[2009/12/28 15:11:16 | 000,000,032 | ---- | C] () -- C:\Documents and Settings\mark\order.txt
[2009/12/28 15:06:16 | 000,005,224 | ---- | C] () -- C:\WINDOWS\System32\ucuiinfo.ini
[2009/09/14 11:34:25 | 000,000,385 | ---- | C] () -- C:\Documents and Settings\Daniel\Application Datauser_gensett.xml
[2009/09/13 10:18:45 | 000,000,376 | ---- | C] () -- C:\Documents and Settings\Daniel\Application Dataprivacy.xml
[2009/09/08 16:30:05 | 000,000,376 | ---- | C] () -- C:\Documents and Settings\lesley\Application Dataprivacy.xml
[2009/08/23 12:35:16 | 000,000,024 | ---- | C] () -- C:\Documents and Settings\Daniel\Local Settings\Application Data\84756-11986-27475-00TC1-94865
[2009/08/09 14:52:51 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\UNWISE.INI
[2009/08/09 14:51:57 | 000,032,297 | ---- | C] () -- C:\WINDOWS\Irremote.ini
[2009/08/09 14:51:45 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\dmcrypto.dll
[2009/08/09 14:50:31 | 000,163,840 | ---- | C] () -- C:\WINDOWS\System32\hcwChDB.dll
[2009/08/09 13:32:27 | 000,007,137 | ---- | C] () -- C:\WINDOWS\HCWPNP.INI
[2009/08/09 13:26:29 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\PsisDecd.dll
[2009/06/19 18:54:04 | 008,126,464 | ---- | C] () -- C:\Documents and Settings\mark\NTUSER.DAT
[2009/05/10 10:43:58 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\mark\Local Settings\Application Data\fusioncache.dat
[2008/11/16 11:47:10 | 000,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2008/11/15 10:31:28 | 002,463,976 | ---- | C] () -- C:\WINDOWS\System32\NPSWF32.dll
[2008/07/06 10:44:37 | 000,001,025 | ---- | C] () -- C:\WINDOWS\System32\sysprs7.dll
[2008/07/06 10:44:37 | 000,001,025 | ---- | C] () -- C:\WINDOWS\System32\clauth2.dll
[2008/07/06 10:44:37 | 000,001,025 | ---- | C] () -- C:\WINDOWS\System32\clauth1.dll
[2008/07/06 10:44:37 | 000,000,205 | ---- | C] () -- C:\WINDOWS\System32\lsprst7.dll
[2008/06/21 08:26:14 | 000,007,168 | ---- | C] () -- C:\Documents and Settings\mark\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/06/21 08:19:56 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\mark\dxva_sig.txt
[2008/05/18 15:07:09 | 000,004,769 | ---- | C] () -- C:\Documents and Settings\mark\.recently-used.xbel
[2008/05/11 10:49:57 | 000,008,192 | -H-- | C] () -- C:\Documents and Settings\mark\ntuser.dat.LOG
[2008/05/11 10:49:57 | 000,000,178 | -HS- | C] () -- C:\Documents and Settings\mark\ntuser.ini
[2008/05/09 09:15:25 | 000,002,694 | ---- | C] () -- C:\WINDOWS\DevMgr.ini
[2008/05/09 09:13:53 | 000,000,020 | ---- | C] () -- C:\WINDOWS\Hposcv07.INI
[2008/05/08 14:13:37 | 000,008,192 | -H-- | C] () -- C:\Documents and Settings\lesley\ntuser.dat.LOG
[2008/05/08 14:13:37 | 000,000,278 | -HS- | C] () -- C:\Documents and Settings\lesley\ntuser.ini
[2008/05/08 14:13:36 | 008,126,464 | ---- | C] () -- C:\Documents and Settings\lesley\NTUSER.DAT
[2008/05/08 13:42:17 | 000,000,128 | ---- | C] () -- C:\Documents and Settings\Lynne\Local Settings\Application Data\fusioncache.dat
[2008/05/08 08:50:58 | 004,980,736 | ---- | C] () -- C:\Documents and Settings\Administrator\NTUSER.DAT
[2008/05/08 08:50:58 | 000,061,440 | -H-- | C] () -- C:\Documents and Settings\Administrator\ntuser.dat.LOG
[2008/05/08 08:50:58 | 000,000,178 | -HS- | C] () -- C:\Documents and Settings\Administrator\ntuser.ini
[2007/05/25 16:05:43 | 000,000,074 | ---- | C] () -- C:\WINDOWS\TLTitleData.ini
[2006/06/25 10:17:01 | 000,000,129 | ---- | C] () -- C:\Documents and Settings\Daniel\Local Settings\Application Data\fusioncache.dat
[2006/02/22 17:25:02 | 000,004,698 | ---- | C] () -- C:\Documents and Settings\Lynne\resetlog.txt
[2006/02/02 17:16:01 | 000,008,024 | ---- | C] () -- C:\Documents and Settings\Lynne\reglog.txt
[2005/10/31 07:45:15 | 000,000,046 | ---- | C] () -- C:\WINDOWS\adiras.ini
[2005/10/22 06:23:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\dsltest.INI
[2005/10/11 14:43:02 | 000,000,483 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2005/10/11 14:14:01 | 000,000,022 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini
[2005/10/11 14:05:35 | 000,000,027 | ---- | C] () -- C:\WINDOWS\CDE CX3600E.ini
[2005/10/09 06:04:46 | 000,000,066 | ---- | C] () -- C:\WINDOWS\dmi.ini
[2005/10/09 05:57:20 | 000,000,035 | ---- | C] () -- C:\WINDOWS\A5W.INI
[2005/10/09 05:05:17 | 000,000,519 | ---- | C] () -- C:\WINDOWS\hegames.ini
[2005/10/03 13:26:37 | 000,000,723 | ---- | C] () -- C:\WINDOWS\disney.ini
[2005/10/01 03:45:10 | 009,175,040 | -H-- | C] () -- C:\Documents and Settings\Daniel\ntuser.dat
[2005/10/01 03:45:10 | 000,016,384 | -H-- | C] () -- C:\Documents and Settings\Daniel\ntuser.dat.LOG
[2005/10/01 03:45:10 | 000,000,278 | -HS- | C] () -- C:\Documents and Settings\Daniel\ntuser.ini
[2005/09/24 15:10:01 | 003,670,016 | -H-- | C] () -- C:\Documents and Settings\Lynne\ntuser.dat
[2005/09/24 15:10:01 | 000,008,192 | -H-- | C] () -- C:\Documents and Settings\Lynne\ntuser.dat.LOG
[2005/09/24 15:10:01 | 000,000,278 | -HS- | C] () -- C:\Documents and Settings\Lynne\ntuser.ini
[2005/09/19 22:14:56 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2005/09/19 22:07:16 | 000,000,526 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2005/09/19 21:41:36 | 000,000,404 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2005/04/09 12:04:54 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2004/08/10 21:08:13 | 000,262,144 | ---- | C] () -- C:\Documents and Settings\NetworkService\NTUSER.DAT
[2004/08/10 21:08:13 | 000,237,568 | ---- | C] () -- C:\Documents and Settings\LocalService\NTUSER.DAT
[2004/08/10 08:12:05 | 000,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2004/08/10 08:08:14 | 000,008,192 | -H-- | C] () -- C:\Documents and Settings\LocalService\ntuser.dat.LOG
[2004/08/10 08:08:14 | 000,000,020 | -HS- | C] () -- C:\Documents and Settings\LocalService\ntuser.ini
[2004/08/10 08:08:13 | 000,008,192 | -H-- | C] () -- C:\Documents and Settings\NetworkService\ntuser.dat.LOG
[2004/08/10 08:08:13 | 000,000,020 | -HS- | C] () -- C:\Documents and Settings\NetworkService\ntuser.ini
[2004/08/10 08:01:18 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2004/04/09 01:06:00 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\EPSPTDV.DLL
[2002/11/20 10:02:32 | 000,159,744 | ---- | C] () -- C:\WINDOWS\System32\win2000.dll
========== LOP Check ========== [2010/07/30 06:38:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\BitTorrent
[2010/01/07 13:41:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\Canon
[2010/07/07 17:14:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\DVDVideoSoftIEHelpers
[2008/10/23 12:10:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\GameHouse
[2009/09/26 06:33:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\GamesCafe
[2010/08/19 11:15:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\Geaci
[2010/08/17 08:19:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\Heuwmo
[2010/08/20 10:10:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\ICAClient
[2009/08/23 12:17:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\iPod Copy Expert
[2009/10/30 13:41:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\LimeWire
[2009/08/21 09:35:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\MSNInstaller
[2010/01/08 09:00:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\PlayFirst
[2010/08/02 12:04:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\PriceGong
[2010/08/20 17:53:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\Spotify
[2006/06/13 13:53:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Daniel\Application Data\Template
[2009/01/31 10:06:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\lesley\Application Data\Azureus
[2009/09/30 11:53:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\lesley\Application Data\BitDefender
[2009/03/01 06:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\lesley\Application Data\ICAClient
[2008/07/09 03:03:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\lesley\Application Data\Leadertech
[2008/05/31 06:15:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\lesley\Application Data\Template
[2005/09/25 07:04:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lynne\Application Data\MSNInstaller
[2006/01/04 07:11:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lynne\Application Data\Template
[2009/05/26 17:47:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark\Application Data\Azureus
[2008/05/18 14:52:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark\Application Data\gtk-2.0
[2009/06/06 10:34:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark\Application Data\ICAClient
[2008/10/24 11:51:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark\Application Data\Template
[2008/10/26 08:58:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark\Application Data\Thinstall
[2009/05/15 12:44:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mark\Application Data\UseNeXT
[2010/07/04 16:51:56 | 000,000,282 | -H-- | M] () -- C:\WINDOWS\Tasks\f35b3904.job
[2009/11/13 21:08:11 | 000,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
========== Purity Check ========== < End of report >