OTL logfile created on: 09/09/2010 4:38:18 PM - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Users\Chantal\Desktop
Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00001009 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 50.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 71.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 140.96 Gb Total Space | 65.77 Gb Free Space | 46.66% Space Free | Partition Type: NTFS
Drive D: | 8.09 Gb Total Space | 1.79 Gb Free Space | 22.11% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: CHANTAL-PC
Current User Name: Chantal
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ========== PRC - [2010/09/09 16:37:23 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Chantal\Desktop\OTL.com
PRC - [2010/09/09 16:13:14 | 001,062,912 | ---- | M] (MS) -- C:\Users\Chantal\AppData\Roaming\4A846979E7A4D5AC33D22D3195D3E3EA\mediafix70700en02.exe
PRC - [2010/08/25 21:33:23 | 000,232,912 | ---- | M] (Adobe Systems, Inc.) -- C:\WINDOWS\System32\Macromed\Flash\FlashUtil10i_ActiveX.exe
PRC - [2010/08/01 00:42:40 | 002,048,352 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgtray.exe
PRC - [2010/06/10 21:03:08 | 000,144,176 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
PRC - [2009/09/18 13:13:17 | 000,693,016 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgcsrvx.exe
PRC - [2009/07/31 09:35:15 | 000,486,680 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgrsx.exe
PRC - [2009/07/31 09:35:07 | 000,595,736 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgnsx.exe
PRC - [2009/07/31 09:35:03 | 000,908,056 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgemc.exe
PRC - [2009/07/31 09:34:45 | 000,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe
PRC - [2009/07/31 09:34:34 | 000,832,792 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgam.exe
PRC - [2009/02/06 17:07:48 | 000,027,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Live\Contacts\wlcomm.exe
PRC - [2008/10/29 03:20:29 | 002,923,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/08/01 20:10:54 | 000,675,840 | ---- | M] (Sonix) -- C:\WINDOWS\vsnp2uvc.exe
PRC - [2007/03/29 14:59:42 | 000,176,128 | ---- | M] (Starz Entertainment Group LLC) -- C:\Program Files\Vongo\VongoService.exe
PRC - [2007/03/29 14:59:42 | 000,073,728 | ---- | M] (Starz) -- C:\Program Files\Vongo\Tray.exe
PRC - [2007/03/28 21:45:34 | 000,270,431 | ---- | M] () -- C:\Program Files\Hp\QuickPlay\Kernel\TV\CLCapSvc.exe
========== Modules (SafeList) ========== MOD - [2010/09/09 16:37:23 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Chantal\Desktop\OTL.com
MOD - [2009/07/31 09:35:15 | 000,011,952 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\avgrsstx.dll
MOD - [2006/11/02 06:44:49 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msscript.ocx
MOD - [2006/11/02 06:38:57 | 001,648,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll
========== Win32 Services (SafeList) ========== SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\SureThing Shared\stllssvr.exe -- (stllssvr)
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -d -f %ProgramFiles%\WinPcap\rpcapd.ini -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2010/06/10 21:03:08 | 000,144,176 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009/07/31 09:35:03 | 000,908,056 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgemc.exe -- (avg8emc)
SRV - [2009/07/31 09:34:45 | 000,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgwdsvc.exe -- (avg8wd)
SRV - [2009/06/25 18:59:49 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2008/09/08 14:42:15 | 000,265,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/03/29 14:59:42 | 000,176,128 | ---- | M] (Starz Entertainment Group LLC) [Auto | Running] -- C:\Program Files\Vongo\VongoService.exe -- (Vongo Service)
SRV - [2007/03/28 21:45:38 | 000,118,877 | ---- | M] () [Auto | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe -- (CLSched) CyberLink Task Scheduler (CTS)
SRV - [2007/03/28 21:45:34 | 000,270,431 | ---- | M] () [Auto | Running] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe -- (CLCapSvc) CyberLink Background Capture Service (CBCS)
SRV - [2007/01/09 18:55:34 | 000,110,592 | ---- | M] (Hewlett-Packard Development Company, L.P.) [On_Demand | Stopped] -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe -- (Com4Qlb)
SRV - [2004/10/22 07:24:18 | 000,073,728 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe -- (IDriverT)
========== Driver Services (SafeList) ========== DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\vmnetadapter.sys -- (VMnetAdapter)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\blbdrive.sys -- (blbdrive)
DRV - [2009/10/21 03:19:44 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\npf.sys -- (NPF)
DRV - [2009/07/31 09:35:16 | 000,335,240 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\Drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2009/07/31 09:35:15 | 000,027,784 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\Drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2009/06/09 17:16:42 | 003,482,240 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC)
DRV - [2009/05/08 09:55:00 | 000,108,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\Drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2009/05/08 09:54:46 | 000,012,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\Drivers\avgrkx86.sys -- (AvgRkx86)
DRV - [2007/02/28 15:26:00 | 004,465,184 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2007/02/22 13:24:48 | 000,159,232 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\CHDART.sys -- (HdAudAddService)
DRV - [2007/02/16 05:50:32 | 000,012,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\nvsmu.sys -- (nvsmu)
DRV - [2007/01/13 00:59:02 | 000,181,432 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\SynTP.sys -- (SynTP)
DRV - [2007/01/03 12:43:12 | 000,534,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\BCMWL6.SYS -- (BCM43XX)
DRV - [2007/01/03 12:43:12 | 000,534,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\BCMWL6.SYS -- (BCM43XV)
DRV - [2006/12/22 18:28:56 | 000,100,648 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\nvstor32.sys -- (nvstor32)
DRV - [2006/11/30 14:24:58 | 000,008,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\eabfiltr.sys -- (eabfiltr)
DRV - [2006/11/15 14:16:24 | 000,032,256 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2006/11/15 09:42:46 | 000,043,520 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2006/11/15 07:35:20 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2006/11/02 06:51:45 | 000,900,712 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300)
DRV - [2006/11/02 06:51:38 | 000,420,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx)
DRV - [2006/11/02 06:51:34 | 000,316,520 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor)
DRV - [2006/11/02 06:51:32 | 000,297,576 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci)
DRV - [2006/11/02 06:51:25 | 000,235,112 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci)
DRV - [2006/11/02 06:51:25 | 000,232,040 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV)
DRV - [2006/11/02 06:51:00 | 000,147,048 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320)
DRV - [2006/11/02 06:50:45 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2)
DRV - [2006/11/02 06:50:41 | 000,112,232 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid)
DRV - [2006/11/02 06:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx)
DRV - [2006/11/02 06:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata)
DRV - [2006/11/02 06:50:35 | 000,098,408 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m)
DRV - [2006/11/02 06:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid)
DRV - [2006/11/02 06:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960)
DRV - [2006/11/02 06:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp)
DRV - [2006/11/02 06:50:16 | 000,071,784 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4)
DRV - [2006/11/02 06:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor)
DRV - [2006/11/02 06:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx)
DRV - [2006/11/02 06:50:10 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas)
DRV - [2006/11/02 06:50:10 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2006/11/02 06:50:10 | 000,038,504 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid2.sys -- (SiSRaid2)
DRV - [2006/11/02 06:50:10 | 000,037,480 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs)
DRV - [2006/11/02 06:50:09 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc)
DRV - [2006/11/02 06:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid)
DRV - [2006/11/02 06:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi)
DRV - [2006/11/02 06:50:05 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS)
DRV - [2006/11/02 06:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx)
DRV - [2006/11/02 06:50:04 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC)
DRV - [2006/11/02 06:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3)
DRV - [2006/11/02 06:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x)
DRV - [2006/11/02 06:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi)
DRV - [2006/11/02 06:49:53 | 000,028,776 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas)
DRV - [2006/11/02 06:49:30 | 000,017,512 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide)
DRV - [2006/11/02 06:49:28 | 000,016,488 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide)
DRV - [2006/11/02 06:49:20 | 000,014,952 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide)
DRV - [2006/11/02 05:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006/11/02 05:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer)
DRV - [2006/11/02 05:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp)
DRV - [2006/11/02 05:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo)
DRV - [2006/11/02 05:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm)
DRV - [2006/11/02 05:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006/11/02 04:41:49 | 000,200,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\VSTAZL3.SYS -- (HSFHWAZL)
DRV - [2006/11/02 04:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi)
DRV - [2006/11/02 04:30:56 | 000,429,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\nvm60x32.sys -- (NVENETFD)
DRV - [2006/11/02 04:30:54 | 000,117,760 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\E1G60I32.sys -- (E1G60) Intel(R)
DRV - [2006/10/19 00:09:26 | 000,986,624 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\HSX_DPV.sys -- (HSF_DPV)
DRV - [2006/10/19 00:08:14 | 000,206,848 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\HSXHWAZL.sys -- (HSXHWAZL)
DRV - [2006/10/19 00:08:04 | 000,659,968 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\HSX_CNXT.sys -- (winachsf)
DRV - [2006/10/18 23:10:57 | 001,380,864 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\igdkmd32.sys -- (ialm)
DRV - [2006/08/05 06:39:10 | 000,008,192 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2006/06/28 13:54:00 | 000,009,472 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\CPQBttn.sys -- (HBtnKey)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=73&bd=Pavilion&pf=laptopIE - HKLM\..\URLSearchHook: {33a329ee-7f7d-471e-ac67-15c54d970678} - C:\Program Files\Jaybob's_Movies\tbJayb.dll (Conduit Ltd.)
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=73&bd=Pavilion&pf=laptopIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {33a329ee-7f7d-471e-ac67-15c54d970678} - C:\Program Files\Jaybob's_Movies\tbJayb.dll (Conduit Ltd.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.startup.homepage: "http://mail.redcow.ca"
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:8.5.0.429
FF - prefs.js..extensions.enabledItems:
fr-FR@dictionaries.addons.mozilla.org:2.0
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG8\Firefox [2009/12/21 13:03:14 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.10\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/05/06 22:59:29 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.10\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/05/06 22:59:29 | 000,000,000 | ---D | M]
[2008/09/10 18:49:14 | 000,000,000 | ---D | M] -- C:\Users\Chantal\AppData\Roaming\Mozilla\Extensions
[2010/05/31 13:13:20 | 000,000,000 | ---D | M] -- C:\Users\Chantal\AppData\Roaming\Mozilla\Firefox\Profiles\5n3erpa0.default\extensions
[2010/01/23 16:11:33 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Chantal\AppData\Roaming\Mozilla\Firefox\Profiles\5n3erpa0.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009/03/17 15:34:28 | 000,000,000 | ---D | M] -- C:\Users\Chantal\AppData\Roaming\Mozilla\Firefox\Profiles\5n3erpa0.default\extensions\fr-FR@dictionaries.addons.mozilla.org
[2010/02/24 12:31:57 | 000,001,595 | ---- | M] () -- C:\Users\Chantal\AppData\Roaming\Mozilla\Firefox\Profiles\5n3erpa0.default\searchplugins\amazondotcom.xml
[2009/05/06 10:12:41 | 000,001,595 | ---- | M] () -- C:\Users\Chantal\AppData\Roaming\Mozilla\Firefox\Profiles\5n3erpa0.default\searchplugins\ebay.xml
[2009/02/09 23:24:08 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
O1 HOSTS File: ([2006/09/18 18:41:30 | 000,000,736 | ---- | M]) - C:\WINDOWS\System32\drivers\etc\hosts
O1 - Hosts: ::1 localhost
O2 - BHO: (Jaybob's Movies Toolbar) - {33a329ee-7f7d-471e-ac67-15c54d970678} - C:\Program Files\Jaybob's_Movies\tbJayb.dll (Conduit Ltd.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (Jaybob's Movies Toolbar) - {33a329ee-7f7d-471e-ac67-15c54d970678} - C:\Program Files\Jaybob's_Movies\tbJayb.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Jaybob's Movies Toolbar) - {33A329EE-7F7D-471E-AC67-15C54D970678} - C:\Program Files\Jaybob's_Movies\tbJayb.dll (Conduit Ltd.)
O4 - HKLM..\Run: [AVG8_TRAY] C:\Program Files\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvSvc] C:\Windows\System32\nvsvc.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe (Sonix)
O4 - HKLM..\Run: [WiniBlueSoft] C:\Program Files\WiniBlueSoft Software\WiniBlueSoft\WiniBlueSoft.exe File not found
O4 - HKCU..\Run: [mediafix70700en02.exe] C:\Users\Chantal\AppData\Roaming\4A846979E7A4D5AC33D22D3195D3E3EA\mediafix70700en02.exe (MS)
O4 - HKCU..\Run: [nxacwrmeos.exe] C:\Users\Chantal\AppData\Local\Temp\nxacwrmeos.exe ()
O4 - HKLM..\RunOnce: [Launcher] C:\WINDOWS\SMINST\Launcher.exe (soft thinks)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: real.com ([rhap-app-4-0] https in Trusted sites)
O15 - HKCU\..Trusted Domains: real.com ([rhapreg] https in Trusted sites)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258}
http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (avgrsstx.dll) - C:\Windows\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Chantal\Pictures\Randomly_Backgrounds_by_Za29.jpg
O24 - Desktop BackupWallPaper: C:\Users\Chantal\Pictures\Randomly_Backgrounds_by_Za29.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/05/04 15:59:36 | 000,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2005/09/11 12:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ]
O33 - MountPoints2\{1ea04d78-bf6c-11de-aefb-001636d7a5a8}\Shell\AutoRun\command - "" = wdsync.exe
O33 - MountPoints2\{a6238ce5-adb9-11dd-9b9f-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{a6238ce5-adb9-11dd-9b9f-005056c00008}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
SafeBootMin: AppMgmt - C:\Windows\System32\appmgmts.dll File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: NTDS - File not found
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: AppMgmt - C:\Windows\System32\appmgmts.dll File not found
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: NTDS - File not found
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} -
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 11.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} -
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.7
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection %SystemRoot%\INF\msmsgs.inf,BLC.Install.PerUser
ActiveX: {5CA109D3-A084-47E8-A9CB-D497322E3F50} - MSN Toolbar 3.0 & Silverlight 2.0
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {77A7A6CE-B2B4-C577-DFCB-D8BF43BF0E9E} - Java (Sun)
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {984FC254-1146-D27F-6284-1C648C4E9E90} -
ActiveX: {9F4E6918-9D38-44A4-DA40-3669316033BE} - Microsoft Windows Media Player 11.0
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Reg Error: Value error.
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
Drivers32: msacm.l3acm - C:\WINDOWS\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - File not found
Drivers32: msacm.siren - C:\Windows\System32\sirenacm.dll (Microsoft Corporation)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.XVID - C:\Windows\System32\xvidvfw.dll ()
Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ========== [2010/09/09 16:37:13 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Users\Chantal\Desktop\OTL.com
[2010/09/09 16:12:59 | 000,000,000 | -H-D | C] -- C:\Users\Public\Documents\Windows
[2010/09/09 16:12:57 | 000,000,000 | -H-D | C] -- C:\Users\Public\Documents\Server
[2010/09/09 16:12:48 | 000,000,000 | ---D | C] -- C:\Users\Chantal\AppData\Roaming\4A846979E7A4D5AC33D22D3195D3E3EA
[2010/08/30 17:49:45 | 000,000,000 | ---D | C] -- C:\Users\Chantal\Desktop\The Real L Word
[2010/08/26 23:03:17 | 000,000,000 | ---D | C] -- C:\Users\Chantal\AppData\Roaming\skypePM
[2010/08/26 23:01:50 | 000,000,000 | ---D | C] -- C:\Users\Chantal\AppData\Roaming\Skype
[2010/08/26 23:01:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010/08/26 23:01:03 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2010/08/26 22:59:08 | 023,173,416 | ---- | C] (Skype Technologies S.A.) -- C:\Users\Chantal\Desktop\SkypeSetupFull-Beta.exe
[2007/07/04 21:28:52 | 000,176,128 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/09/09 16:51:32 | 003,145,728 | -HS- | M] () -- C:\Users\Chantal\ntuser.dat
[2010/09/09 16:37:23 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Chantal\Desktop\OTL.com
[2010/09/09 16:22:53 | 002,990,234 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/09/09 16:22:52 | 001,332,718 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/09/09 16:22:52 | 000,005,058 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/09/09 16:19:18 | 000,000,146 | ---- | M] () -- C:\Users\Public\Documents\hpqp.ini
[2010/09/09 16:18:39 | 000,013,119 | ---- | M] () -- C:\Users\Chantal\AppData\Roaming\nvModes.001
[2010/09/09 16:16:23 | 000,003,072 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/09/09 16:16:23 | 000,003,072 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/09/09 16:16:17 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/09/09 16:16:06 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/09/09 16:13:25 | 000,001,100 | ---- | M] () -- C:\Users\Chantal\Application Data\Microsoft\Internet Explorer\Quick Launch\Antimalware Doctor.lnk
[2010/09/08 20:18:19 | 000,013,119 | ---- | M] () -- C:\Users\Chantal\AppData\Roaming\nvModes.dat
[2010/09/08 18:49:17 | 000,000,422 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{F650F526-C568-4D3A-87C2-E03AC2725E1E}.job
[2010/09/08 18:37:28 | 064,416,311 | ---- | M] () -- C:\Windows\System32\drivers\Avg\incavi.avm
[2010/09/04 03:50:51 | 002,813,657 | -H-- | M] () -- C:\Users\Chantal\AppData\Local\IconCache.db
[2010/09/02 16:03:58 | 008,111,839 | ---- | M] () -- C:\Users\Chantal\Desktop\Placebo-Trigger Happy Hands-
www.mrtzcmp3.net.mp3[2010/08/30 20:44:10 | 000,043,008 | ---- | M] () -- C:\Users\Chantal\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/08/30 19:23:21 | 008,043,877 | ---- | M] () -- C:\Users\Chantal\Desktop\ly Haines - Knock You Out [Album Mix] (
www.MusikZone.com.br) ( Upload By Hellmanns).mp3
[2010/08/30 17:06:42 | 000,001,102 | ---- | M] () -- C:\Users\Chantal\AppData\Roaming\wklnhst.dat
[2010/08/30 15:02:13 | 000,046,539 | ---- | M] () -- C:\Users\Chantal\Documents\001.jpg
[2010/08/26 23:03:20 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
[2010/08/26 23:01:09 | 000,001,878 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2010/08/26 23:00:23 | 023,173,416 | ---- | M] (Skype Technologies S.A.) -- C:\Users\Chantal\Desktop\SkypeSetupFull-Beta.exe
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/09/09 16:13:25 | 000,001,100 | ---- | C] () -- C:\Users\Chantal\Application Data\Microsoft\Internet Explorer\Quick Launch\Antimalware Doctor.lnk
[2010/09/02 16:03:54 | 008,111,839 | ---- | C] () -- C:\Users\Chantal\Desktop\Placebo-Trigger Happy Hands-
www.mrtzcmp3.net.mp3[2010/08/30 19:23:19 | 008,043,877 | ---- | C] () -- C:\Users\Chantal\Desktop\ly Haines - Knock You Out [Album Mix] (
www.MusikZone.com.br) ( Upload By Hellmanns).mp3
[2010/08/30 15:02:38 | 000,046,539 | ---- | C] () -- C:\Users\Chantal\Documents\001.jpg
[2010/08/26 23:03:20 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/08/26 23:01:09 | 000,001,878 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2010/07/24 22:52:02 | 000,069,632 | R--- | C] () -- C:\Windows\System32\xmltok.dll
[2010/07/24 22:52:02 | 000,036,864 | R--- | C] () -- C:\Windows\System32\xmlparse.dll
[2010/02/25 01:11:35 | 000,053,299 | ---- | C] () -- C:\Windows\System32\pthreadVC.dll
[2010/02/24 13:27:01 | 000,815,104 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2010/02/24 13:27:01 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2009/12/26 22:33:00 | 000,000,004 | ---- | C] () -- C:\Users\Chantal\AppData\Roaming\E2433E
[2009/12/26 22:32:59 | 000,870,128 | ---- | C] () -- C:\Users\Chantal\AppData\Roaming\mcs.rma
[2009/11/21 05:58:16 | 000,017,687 | ---- | C] () -- C:\Windows\System32\93bethiefz570.dll
[2009/10/26 08:47:31 | 000,005,826 | ---- | C] () -- C:\Windows\System32\25416nz5-a-virus6cc9.dll
[2009/10/18 19:03:17 | 000,000,091 | ---- | C] () -- C:\Windows\CDGUIDE.INI
[2009/10/18 19:02:24 | 000,000,680 | ---- | C] () -- C:\Users\Chantal\AppData\Local\d3d9caps.dat
[2009/10/07 19:29:45 | 000,017,389 | ---- | C] () -- C:\Windows\System32\24018haz5tool59f.dll
[2009/10/05 00:49:05 | 000,015,067 | ---- | C] () -- C:\Windows\System32\5730bzc5d9or1569.dll
[2009/09/26 07:27:26 | 000,017,041 | ---- | C] () -- C:\Windows\System32\6503spy29z.dll
[2009/09/23 15:54:02 | 000,011,499 | ---- | C] () -- C:\Windows\System32\95664zot-a-vir5s34d.dll
[2009/09/03 20:34:00 | 000,017,375 | ---- | C] () -- C:\Windows\System32\4fe095dwzre852.dll
[2009/08/17 20:19:42 | 000,001,102 | ---- | C] () -- C:\Users\Chantal\AppData\Roaming\wklnhst.dat
[2009/08/16 18:58:41 | 000,003,616 | ---- | C] () -- C:\Windows\System32\89855roj53z.dll
[2009/08/02 07:01:16 | 000,004,717 | ---- | C] () -- C:\Windows\System32\3ddsza9se2595.dll
[2009/08/01 11:41:59 | 000,018,131 | ---- | C] () -- C:\Windows\System32\59955ha9ktool2zb.dll
[2009/07/19 06:49:01 | 000,018,364 | ---- | C] () -- C:\Windows\System32\29962wor578dz.dll
[2009/06/13 11:49:12 | 000,005,744 | ---- | C] () -- C:\Windows\System32\994535irzs392.dll
[2009/06/09 17:16:42 | 003,482,240 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys
[2009/05/14 06:23:24 | 000,003,290 | ---- | C] () -- C:\Windows\System32\9599spambotz19.dll
[2009/05/09 08:47:49 | 000,005,491 | ---- | C] () -- C:\Windows\System32\4695hacktool2cz5.dll
[2009/05/07 06:08:43 | 000,010,456 | ---- | C] () -- C:\Windows\System32\z9635worm90c.dll
[2009/04/17 16:46:33 | 000,014,697 | ---- | C] () -- C:\Windows\cb7bac5doo92z46.dll
[2009/04/17 16:46:33 | 000,011,089 | ---- | C] () -- C:\Windows\z66e5hrea929511.dll
[2009/04/17 16:46:31 | 000,009,369 | ---- | C] () -- C:\Windows\6febbackdo5r10z39.dll
[2009/04/17 16:46:31 | 000,008,120 | ---- | C] () -- C:\Windows\6aa1th59f122z.dll
[2009/04/17 16:46:30 | 000,017,748 | ---- | C] () -- C:\Windows\4a99ste5z1120.dll
[2009/04/17 16:46:30 | 000,016,569 | ---- | C] () -- C:\Windows\56zfa9dware1504.dll
[2009/04/17 16:46:30 | 000,010,313 | ---- | C] () -- C:\Windows\5879azdware19385.dll
[2009/04/17 16:46:30 | 000,007,684 | ---- | C] () -- C:\Windows\55fdzhre5926101.dll
[2009/04/17 16:46:30 | 000,003,522 | ---- | C] () -- C:\Windows\5995vir96z.dll
[2009/04/17 16:46:29 | 000,008,800 | ---- | C] () -- C:\Windows\43f5az9ware1250.dll
[2009/04/17 16:46:29 | 000,006,593 | ---- | C] () -- C:\Windows\33b4spywar9z453.dll
[2009/04/17 16:46:29 | 000,004,996 | ---- | C] () -- C:\Windows\335zste9l5090.dll
[2009/04/17 16:46:29 | 000,003,776 | ---- | C] () -- C:\Windows\30995virzs352.dll
[2009/04/17 16:46:28 | 000,017,562 | ---- | C] () -- C:\Windows\16523vi9zs2e5.dll
[2009/04/17 16:46:28 | 000,016,728 | ---- | C] () -- C:\Windows\289359zy678.dll
[2009/04/17 16:46:28 | 000,013,934 | ---- | C] () -- C:\Windows\1795z9orm4af5.dll
[2009/04/17 16:46:28 | 000,013,327 | ---- | C] () -- C:\Windows\1856download9rz113.dll
[2009/04/17 16:46:28 | 000,012,448 | ---- | C] () -- C:\Windows\1z9139or5167.dll
[2009/04/17 16:46:28 | 000,010,957 | ---- | C] () -- C:\Windows\1513z9ambo519a.dll
[2009/04/17 16:46:28 | 000,006,125 | ---- | C] () -- C:\Windows\13777not-a-5iruz299.dll
[2009/04/17 16:46:27 | 000,017,200 | ---- | C] () -- C:\Windows\134cadd9zre495.dll
[2009/04/17 14:52:35 | 000,012,665 | ---- | C] () -- C:\Windows\System32\15520wozmdf9.dll
[2009/04/17 14:52:31 | 000,015,542 | ---- | C] () -- C:\Windows\System32\28e9ad9wa5e1343z.dll
[2009/04/17 14:52:30 | 000,005,121 | ---- | C] () -- C:\Windows\2034tr5z395.dll
[2009/04/17 14:52:27 | 000,002,600 | ---- | C] () -- C:\Windows\8z95pa9bot145.dll
[2009/04/17 14:52:17 | 000,002,789 | ---- | C] () -- C:\Windows\System32\30883za9ktoo54ad.dll
[2009/04/17 14:52:10 | 000,011,970 | ---- | C] () -- C:\Windows\32754vir9sz99.dll
[2009/04/17 14:52:08 | 000,010,917 | ---- | C] () -- C:\Windows\System32\545azdwa9e2085.dll
[2009/04/17 14:52:07 | 000,008,127 | ---- | C] () -- C:\Windows\System32\98csp5rse2425z.dll
[2009/04/17 14:52:02 | 000,016,209 | ---- | C] () -- C:\Windows\26957hacktz5l4c8.dll
[2009/04/17 14:52:02 | 000,008,781 | ---- | C] () -- C:\Windows\7az0spar5e9022.dll
[2009/04/17 14:52:02 | 000,004,339 | ---- | C] () -- C:\Windows\System32\21b6th59at1816z.dll
[2009/04/17 14:52:02 | 000,004,197 | ---- | C] () -- C:\Windows\System32\667fzac5door4449.dll
[2009/04/17 14:51:54 | 000,003,714 | ---- | C] () -- C:\Windows\System32\4bb7spyw9re1z515.dll
[2009/04/17 14:51:52 | 000,010,013 | ---- | C] () -- C:\Windows\System32\46a4thi5z30759.dll
[2009/04/17 14:51:49 | 000,012,006 | ---- | C] () -- C:\Windows\System32\935fviz529.dll
[2009/04/17 14:51:29 | 000,016,019 | ---- | C] () -- C:\Windows\dz1thief23569.dll
[2009/04/17 14:51:28 | 000,005,551 | ---- | C] () -- C:\Windows\9989t5oj42dz.dll
[2009/02/11 17:45:02 | 000,027,264 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys
[2009/01/12 06:08:17 | 000,009,774 | ---- | C] () -- C:\Windows\30dzdownload5r9243.dll
[2009/01/09 06:41:06 | 000,007,212 | ---- | C] () -- C:\Windows\System32\126bdownlzade95560.dll
[2008/12/17 20:32:38 | 000,014,702 | ---- | C] () -- C:\Windows\System32\30z719p5mbot192.dll
[2008/12/11 00:36:49 | 000,009,305 | ---- | C] () -- C:\Windows\bb95hiefz529.dll
[2008/11/28 20:44:31 | 000,014,851 | ---- | C] () -- C:\Windows\d775ownlzader1519.dll
[2008/11/25 10:19:20 | 000,004,253 | ---- | C] () -- C:\Windows\System32\1053zworm9d55.dll
[2008/11/18 09:17:28 | 000,013,808 | ---- | C] () -- C:\Windows\System32\7859thzeat5871.dll
[2008/11/15 11:49:54 | 000,017,596 | ---- | C] () -- C:\Windows\3z095troj3d8.dll
[2008/11/13 07:52:34 | 000,015,614 | ---- | C] () -- C:\Windows\3ez9thie5731.dll
[2008/10/19 22:02:31 | 000,009,585 | ---- | C] () -- C:\Windows\System32\596downlzader976.dll
[2008/10/16 21:07:45 | 000,007,270 | ---- | C] () -- C:\Windows\1z112vi5us5d9.dll
[2008/10/12 09:29:15 | 000,005,486 | ---- | C] () -- C:\Windows\System32\23564wo9m57fz.dll
[2008/10/06 11:56:15 | 000,008,682 | ---- | C] () -- C:\Windows\15659virzs717.dll
[2008/09/27 17:22:04 | 000,002,758 | ---- | C] () -- C:\Windows\System32\77dzdownloa59r2877.dll
[2008/09/20 21:50:53 | 000,004,844 | ---- | C] () -- C:\Windows\4e5t9iefz032.dll
[2008/09/17 02:51:15 | 000,018,060 | ---- | C] () -- C:\Windows\6597sparse57z.dll
[2008/09/08 20:40:52 | 000,043,008 | ---- | C] () -- C:\Users\Chantal\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/09/08 13:31:34 | 000,013,119 | ---- | C] () -- C:\Users\Chantal\AppData\Roaming\nvModes.dat
[2008/09/08 13:31:34 | 000,013,119 | ---- | C] () -- C:\Users\Chantal\AppData\Roaming\nvModes.001
[2008/09/08 13:13:35 | 000,000,000 | ---- | C] () -- C:\Users\Chantal\AppData\Local\QSwitch.txt
[2008/09/08 13:13:35 | 000,000,000 | ---- | C] () -- C:\Users\Chantal\AppData\Local\DSwitch.txt
[2008/09/08 13:13:35 | 000,000,000 | ---- | C] () -- C:\Users\Chantal\AppData\Local\AtStart.txt
[2008/09/03 03:47:58 | 000,008,319 | ---- | C] () -- C:\Windows\System32\7z59t9rea519143.dll
[2008/08/10 11:31:39 | 000,018,121 | ---- | C] () -- C:\Windows\System32\30397wzrm99b5.dll
[2008/07/27 22:13:40 | 000,011,414 | ---- | C] () -- C:\Windows\System32\9746sz5al415.dll
[2008/07/24 08:56:02 | 000,008,929 | ---- | C] () -- C:\Windows\3a8ct5rzat9899.dll
[2008/07/06 12:00:18 | 000,015,704 | ---- | C] () -- C:\Windows\24956wozm54b.dll
[2008/06/27 17:38:12 | 000,013,053 | ---- | C] () -- C:\Windows\System32\7z68addware2594.dll
[2008/06/26 10:37:41 | 000,006,519 | ---- | C] () -- C:\Windows\System32\15975spy439z.dll
[2008/06/24 20:30:26 | 000,007,742 | ---- | C] () -- C:\Windows\System32\6982s9zw5re1186.dll
[2008/06/20 21:04:52 | 000,010,758 | ---- | C] () -- C:\Windows\11955not-a-virus960z.dll
[2008/06/20 03:41:54 | 000,009,444 | ---- | C] () -- C:\Windows\48c2backdz9r5541.dll
[2008/06/18 07:58:39 | 000,015,730 | ---- | C] () -- C:\Windows\System32\28z3ad9w5re1949.dll
[2008/06/11 04:59:49 | 000,014,096 | ---- | C] () -- C:\Windows\System32\585759zj1e2.dll
[2008/06/05 00:32:59 | 000,014,319 | ---- | C] () -- C:\Windows\System32\598f5zyware22149.dll
[2008/05/20 14:34:11 | 000,013,362 | ---- | C] () -- C:\Windows\980abaczdoor21745.dll
[2008/05/18 06:55:06 | 000,009,228 | ---- | C] () -- C:\Windows\System32\5554thie9267z.dll
[2008/05/14 18:50:51 | 000,011,093 | ---- | C] () -- C:\Windows\9d80addware56z.dll
[2008/05/09 13:49:45 | 000,006,652 | ---- | C] () -- C:\Windows\76309pyzf5.dll
[2008/04/28 07:58:02 | 000,017,561 | ---- | C] () -- C:\Windows\System32\58991zpambot210.dll
[2008/04/23 19:35:13 | 000,005,277 | ---- | C] () -- C:\Windows\System32\1dzbspyw9re1953.dll
[2008/04/23 10:54:16 | 000,018,093 | ---- | C] () -- C:\Windows\System32\15696virzs49d.dll
[2008/04/16 03:08:34 | 000,012,289 | ---- | C] () -- C:\Windows\System32\21894vzru54a9.dll
[2008/03/24 08:30:22 | 000,003,008 | ---- | C] () -- C:\Windows\System32\1581stea9z595.dll
[2008/03/19 08:25:47 | 000,010,715 | ---- | C] () -- C:\Windows\4309stza52980.dll
[2008/03/16 05:58:23 | 000,010,810 | ---- | C] () -- C:\Windows\18edaz9ware16045.dll
[2008/03/12 18:34:37 | 000,010,682 | ---- | C] () -- C:\Windows\System32\3190s5zr9e2548.dll
[2008/03/11 06:05:37 | 000,014,815 | ---- | C] () -- C:\Windows\26z1spyw9re586.dll
[2008/03/08 10:13:28 | 000,007,854 | ---- | C] () -- C:\Windows\5d9fstezl2225.dll
[2008/03/04 03:58:14 | 000,007,720 | ---- | C] () -- C:\Windows\System32\27805spambotz869.dll
[2008/02/28 19:57:21 | 000,011,908 | ---- | C] () -- C:\Windows\System32\2cf1s9zal4275.dll
[2008/02/25 13:55:12 | 000,003,839 | ---- | C] () -- C:\Windows\2292spzw5re1101.dll
[2008/02/21 04:40:26 | 000,012,688 | ---- | C] () -- C:\Windows\System32\675c9parse2617z.dll
[2008/02/18 13:02:56 | 000,005,040 | ---- | C] () -- C:\Windows\2956ztro5156.dll
[2008/02/17 14:20:05 | 000,012,372 | ---- | C] () -- C:\Windows\30f9thie53z.dll
[2008/02/17 13:59:12 | 000,008,788 | ---- | C] () -- C:\Windows\System32\1z528vir9s229.dll
[2008/02/11 01:36:21 | 000,007,725 | ---- | C] () -- C:\Windows\System32\54z01sp91b3.dll
[2008/02/09 06:04:27 | 000,013,633 | ---- | C] () -- C:\Windows\29850vzru569c.dll
[2008/02/04 15:25:08 | 000,013,621 | ---- | C] () -- C:\Windows\System32\3dz5v9r697.dll
[2008/02/02 21:10:24 | 000,004,145 | ---- | C] () -- C:\Windows\System32\45409hreat221z4.dll
[2008/01/12 00:05:20 | 000,014,102 | ---- | C] () -- C:\Windows\System32\22849viru9z59.dll
[2008/01/10 10:31:47 | 000,006,402 | ---- | C] () -- C:\Windows\62d3thz95628.dll
[2008/01/09 15:45:20 | 000,006,559 | ---- | C] () -- C:\Windows\z018n95-a-virus781.dll
[2007/05/04 15:45:22 | 000,000,320 | ---- | C] () -- C:\ProgramData\hpzinstall.log
[2006/11/02 09:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 07:25:21 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2006/11/02 04:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/05/19 15:39:58 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini
[2006/03/09 21:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2005/05/07 09:06:00 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
========== Custom Scans ========== < %systemroot%\*. /mp /s > < %systemroot%\system32\*.dll /lockedfiles >[2009/03/08 08:31:42 | 000,348,160 | ---- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\System32\dxtmsft.dll
[2009/03/08 08:31:37 | 000,216,064 | ---- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\System32\dxtrans.dll
[2006/11/02 06:47:18 | 000,228,968 | ---- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\System32\rsaenh.dll
[2008/09/09 22:27:43 | 000,223,232 | ---- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\System32\SLC.dll
< %systemroot%\system32\*.exe /lockedfiles > < %systemroot%\Tasks\*.job /lockedfiles > < %systemroot%\system32\drivers\*.sys /lockedfiles > < %systemroot%\System32\config\*.sav >[2006/11/02 07:34:05 | 000,008,192 | ---- | M] () -- C:\WINDOWS\System32\config\COMPONENTS.SAV
[2006/11/02 07:34:05 | 000,020,480 | ---- | M] () -- C:\WINDOWS\System32\config\DEFAULT.SAV
[2006/11/02 07:34:05 | 000,008,192 | ---- | M] () -- C:\WINDOWS\System32\config\SECURITY.SAV
[2006/11/02 07:34:08 | 010,133,504 | ---- | M] () -- C:\WINDOWS\System32\config\SOFTWARE.SAV
[2006/11/02 07:34:08 | 001,826,816 | ---- | M] () -- C:\WINDOWS\System32\config\SYSTEM.SAV
< %systemroot%\system32\*.sys >[2006/11/02 04:09:42 | 000,009,029 | ---- | M] () -- C:\WINDOWS\System32\ANSI.SYS
[2008/09/09 22:28:39 | 000,224,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\clfs.sys
[2006/11/02 04:09:45 | 000,027,097 | ---- | M] () -- C:\WINDOWS\System32\country.sys
[2006/11/02 04:09:41 | 000,004,768 | ---- | M] () -- C:\WINDOWS\System32\HIMEM.SYS
[2006/11/02 04:09:44 | 000,042,809 | ---- | M] () -- C:\WINDOWS\System32\KEY01.SYS
[2006/11/02 04:09:44 | 000,042,537 | ---- | M] () -- C:\WINDOWS\System32\KEYBOARD.SYS
[2006/11/02 04:09:29 | 000,027,866 | ---- | M] () -- C:\WINDOWS\System32\NTDOS.SYS
[2006/11/02 04:09:35 | 000,029,146 | ---- | M] () -- C:\WINDOWS\System32\NTDOS404.SYS
[2006/11/02 04:09:38 | 000,029,370 | ---- | M] () -- C:\WINDOWS\System32\NTDOS411.SYS
[2006/11/02 04:09:40 | 000,029,274 | ---- | M] () -- C:\WINDOWS\System32\NTDOS412.SYS
[2006/11/02 04:09:31 | 000,029,146 | ---- | M] () -- C:\WINDOWS\System32\NTDOS804.SYS
[2006/11/02 04:09:20 | 000,033,952 | ---- | M] () -- C:\WINDOWS\System32\NTIO.SYS
[2006/11/02 04:09:23 | 000,034,672 | ---- | M] () -- C:\WINDOWS\System32\NTIO404.SYS
[2006/11/02 04:09:24 | 000,035,776 | ---- | M] () -- C:\WINDOWS\System32\NTIO411.SYS
[2006/11/02 04:09:26 | 000,035,536 | ---- | M] () -- C:\WINDOWS\System32\NTIO412.SYS
[2006/11/02 04:09:22 | 000,034,672 | ---- | M] () -- C:\WINDOWS\System32\NTIO804.SYS
[2009/08/14 11:01:34 | 002,031,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\win32k.sys
< %systemroot%\system32\drivers\*.dll > < %systemroot%\system32\drivers\*.ini > < %systemroot%\system32\drivers\*.exe >[2006/08/05 06:39:20 | 000,386,560 | ---- | M] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\drivers\XAudio.exe
< %SYSTEMDRIVE%\*.* >[2009/04/19 17:39:33 | 000,002,396 | ---- | M] () -- C:\aaw7boot.log
[2007/05/04 15:59:36 | 000,000,074 | ---- | M] () -- C:\autoexec.bat
[2006/11/02 06:53:57 | 000,438,840 | RHS- | M] () -- C:\bootmgr
[2009/02/09 17:57:37 | 000,012,507 | ---- | M] () -- C:\ComboFix.txt
[2006/09/18 18:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
[2009/02/16 18:18:08 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2009/02/16 18:18:08 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010/09/09 16:15:49 | 2392,850,432 | -HS- | M] () -- C:\pagefile.sys
[2009/01/22 13:23:29 | 000,069,516 | ---- | M] () -- C:\playground.log
[2009/03/11 22:31:55 | 001,265,421 | ---- | M] () -- C:\saida.txt
[2007/05/04 16:23:30 | 000,000,268 | -H-- | M] () -- C:\sqmdata00.sqm
[2007/05/04 16:23:30 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt00.sqm
< %PROGRAMFILES%\*. >[2009/05/05 22:41:31 | 000,000,000 | ---D | M] -- C:\Program Files\AC3Filter
[2007/05/04 15:36:55 | 000,000,000 | ---D | M] -- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[2009/09/13 17:26:06 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2010/02/25 01:11:23 | 000,000,000 | ---D | M] -- C:\Program Files\Apowersoft
[2010/01/24 21:33:07 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update
[2009/01/22 21:57:26 | 000,000,000 | ---D | M] -- C:\Program Files\AVG
[2009/09/26 14:34:23 | 000,000,000 | ---D | M] -- C:\Program Files\AVS4YOU
[2009/03/15 16:26:33 | 000,000,000 | ---D | M] -- C:\Program Files\BitLord
[2010/06/17 07:46:38 | 000,000,000 | ---D | M] -- C:\Program Files\Bonjour
[2009/06/03 11:58:29 | 000,000,000 | ---D | M] -- C:\Program Files\Can You See What I See
[2010/08/26 23:01:07 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2010/01/31 20:54:02 | 000,000,000 | ---D | M] -- C:\Program Files\Conduit
[2007/05/04 14:55:34 | 000,000,000 | ---D | M] -- C:\Program Files\CONEXANT
[2010/07/24 00:31:59 | 000,000,000 | ---D | M] -- C:\Program Files\directx
[2010/01/31 21:00:55 | 000,000,000 | ---D | M] -- C:\Program Files\DivX
[2010/02/25 00:38:30 | 000,000,000 | ---D | M] -- C:\Program Files\DVDVideoSoft
[2010/02/24 13:26:37 | 000,000,000 | ---D | M] -- C:\Program Files\FDRLab
[2009/06/05 14:46:29 | 000,000,000 | ---D | M] -- C:\Program Files\Games
[2007/05/04 16:15:52 | 000,000,000 | ---D | M] -- C:\Program Files\Hewlett-Packard
[2007/05/04 16:03:36 | 000,000,000 | ---D | M] -- C:\Program Files\Hp
[2007/05/04 15:55:26 | 000,000,000 | ---D | M] -- C:\Program Files\HP Games
[2007/05/04 16:04:44 | 000,000,000 | ---D | M] -- C:\Program Files\HPQ
[2010/07/24 22:29:28 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2010/07/02 21:50:54 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2010/07/24 00:06:52 | 000,000,000 | ---D | M] -- C:\Program Files\iPod
[2010/07/24 00:08:42 | 000,000,000 | ---D | M] -- C:\Program Files\iTunes
[2009/02/09 23:23:40 | 000,000,000 | ---D | M] -- C:\Program Files\Java
[2010/01/31 20:54:03 | 000,000,000 | ---D | M] -- C:\Program Files\Jaybob's_Movies
[2009/07/28 09:16:31 | 000,000,000 | ---D | M] -- C:\Program Files\Last.fm
[2008/09/08 14:41:29 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger
[2009/10/06 17:02:35 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft
[2006/11/02 09:37:34 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Games
[2010/01/24 22:08:44 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2010/06/17 07:28:35 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Silverlight
[2009/06/15 13:09:47 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio
[2009/11/08 04:05:20 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Works
[2007/05/04 15:34:48 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft.NET
[2010/03/20 15:01:56 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker
[2009/06/03 11:27:11 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox
[2006/11/02 09:37:34 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2009/04/20 19:13:47 | 000,000,000 | ---D | M] -- C:\Program Files\MSN
[2008/09/08 14:19:50 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0
[2009/08/13 20:43:15 | 000,000,000 | ---D | M] -- C:\Program Files\PokerStars.NET
[2010/05/06 22:59:26 | 000,000,000 | ---D | M] -- C:\Program Files\QuickTime
[2007/05/04 16:03:22 | 000,000,000 | ---D | M] -- C:\Program Files\Real
[2006/11/02 09:37:34 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies
[2009/12/26 22:31:00 | 000,000,000 | ---D | M] -- C:\Program Files\Rhapsody
[2009/02/08 23:45:40 | 000,000,000 | ---D | M] -- C:\Program Files\Roxio
[2009/04/19 14:54:17 | 000,000,000 | ---D | M] -- C:\Program Files\Sandboxie
[2010/08/26 23:01:25 | 000,000,000 | R--D | M] -- C:\Program Files\Skype
[2009/08/06 08:37:12 | 000,000,000 | ---D | M] -- C:\Program Files\Soulseek
[2007/05/04 14:53:36 | 000,000,000 | ---D | M] -- C:\Program Files\Synaptics
[2010/07/24 00:32:19 | 000,000,000 | ---D | M] -- C:\Program Files\Ubi Soft
[2010/07/24 22:52:01 | 000,000,000 | ---D | M] -- C:\Program Files\Ubisoft
[2006/11/02 10:01:55 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2009/02/09 17:57:53 | 000,000,000 | ---D | M] -- C:\Program Files\Vongo
[2009/06/02 22:45:55 | 000,000,000 | ---D | M] -- C:\Program Files\Wandering Willows
[2008/09/08 15:32:32 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Calendar
[2006/11/02 09:42:32 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Collaboration
[2008/09/08 15:32:29 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Defender
[2006/11/02 09:42:32 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Journal
[2009/10/06 17:03:37 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live
[2009/04/20 19:21:41 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live SkyDrive
[2010/04/23 15:00:29 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Mail
[2009/10/29 03:02:20 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2006/11/02 09:37:34 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2006/11/02 09:42:32 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Photo Gallery
[2008/09/08 15:32:24 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Sidebar
[2009/08/12 08:53:38 | 000,000,000 | ---D | M] -- C:\Program Files\WinRAR
[2010/02/24 13:27:01 | 000,000,000 | ---D | M] -- C:\Program Files\Xvid