Okay here is everything....
MALWAREBYTES:Malwarebytes' Anti-Malware 1.44
Database version: 3728
Windows 5.1.2600 Service Pack 3
Internet Explorer 7.0.5730.13
2/11/2010 8:48:48 PM
mbam-log-2010-02-11 (20-48-48).txt
Scan type: Quick Scan
Objects scanned: 133549
Time elapsed: 8 minute(s), 30 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
GMERGMER 1.0.15.15281 -
http://www.gmer.netRootkit scan 2010-02-12 02:54:23
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:\DOCUME~1\Bea\LOCALS~1\Temp\uwliauog.sys
---- System - GMER 1.0.15 ----
SSDT Lbd.sys (Boot Driver/Lavasoft AB) ZwCreateKey [0xF84C587E]
SSDT Lbd.sys (Boot Driver/Lavasoft AB) ZwSetValueKey [0xF84C5BFE]
---- Devices - GMER 1.0.15 ----
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Tcpip \Device\Tcp fssfltr_tdi.sys (Family Safety Filter Driver (TDI)/Microsoft Corporation)
---- Processes - GMER 1.0.15 ----
Process C:\Program Files\iolo\Common\Lib\ioloDMVSvc.exe (*** hidden *** ) 1824
---- EOF - GMER 1.0.15 ----
OTL.TXTOTL logfile created on: 2/12/2010 5:04:01 PM - Run 1
OTL by OldTimer - Version 3.1.28.0 Folder = C:\Documents and Settings\Bea\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
502.00 Mb Total Physical Memory | 176.00 Mb Available Physical Memory | 35.00% Memory free
2.00 Gb Paging File | 1.00 Gb Available in Paging File | 73.00% Paging File free
Paging file location(s): C:\pagefile.sys 1500 1500 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 60.49 Gb Total Space | 38.00 Gb Free Space | 62.81% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 51.29 Gb Total Space | 46.92 Gb Free Space | 91.46% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ACER-CELERON-M
Current User Name: Bea
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Processes (SafeList) ========== PRC - [2010/02/12 17:02:52 | 000,549,376 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Bea\Desktop\OTL.exe
PRC - [2010/02/11 20:25:14 | 000,507,904 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Documents and Settings\Bea\Local Settings\Temp\RtkBtMnt.exe
PRC - [2010/02/09 21:09:02 | 000,136,176 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Bea\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
PRC - [2010/02/09 21:09:02 | 000,135,664 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Bea\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
PRC - [2010/02/05 22:26:13 | 001,236,992 | ---- | M] (Broadcom Corporation) -- C:\WINDOWS\system32\WLTRAY.EXE
PRC - [2010/02/05 22:26:13 | 000,018,944 | ---- | M] () -- C:\WINDOWS\system32\WLTRYSVC.EXE
PRC - [2010/02/05 22:26:09 | 001,093,632 | ---- | M] (Broadcom Corporation) -- C:\WINDOWS\system32\BCMWLTRY.EXE
PRC - [2010/02/05 19:59:23 | 016,248,320 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe
PRC - [2010/01/22 19:16:42 | 000,141,608 | ---- | M] (Apple Inc.) -- C:\Program Files\iTunes\iTunesHelper.exe
PRC - [2010/01/22 19:16:30 | 000,545,576 | ---- | M] (Apple Inc.) -- C:\Program Files\iPod\bin\iPodService.exe
PRC - [2009/12/18 08:05:43 | 000,634,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe
PRC - [2009/11/19 22:29:16 | 000,623,960 | ---- | M] (Research In Motion Limited) -- C:\Program Files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe
PRC - [2009/09/13 18:52:50 | 001,048,392 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Essentials\msseces.exe
PRC - [2009/08/17 08:58:24 | 000,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2009/07/02 17:36:52 | 000,017,904 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
PRC - [2009/05/29 12:41:26 | 000,144,712 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2009/05/19 10:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
PRC - [2008/12/12 11:17:38 | 000,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe
PRC - [2008/11/13 08:33:54 | 000,097,128 | ---- | M] (Microsoft Corp.) -- C:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe
PRC - [2008/04/13 19:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/05/04 01:38:34 | 000,291,760 | ---- | M] () -- C:\Program Files\Lexmark 2500 Series\lxddmon.exe
PRC - [2007/04/26 00:21:42 | 000,099,248 | ---- | M] (Lexmark International, Inc.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddserv.exe
PRC - [2007/04/26 00:21:22 | 000,537,520 | ---- | M] ( ) -- C:\WINDOWS\system32\lxddcoms.exe
PRC - [2007/03/05 02:40:25 | 000,020,480 | ---- | M] (Lexmark) -- C:\Program Files\Lexmark 2500 Series\lxddamon.exe
PRC - [2006/06/23 10:40:58 | 000,086,016 | ---- | M] (Logitech) -- c:\Program Files\Common Files\Logitech\LVMVFM\LVPrcSrv.exe
PRC - [2006/06/23 10:39:54 | 000,225,280 | ---- | M] (Logitech) -- C:\WINDOWS\system32\LVCOMSX.EXE
PRC - [2006/04/29 05:13:46 | 000,766,041 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PRC - [2006/01/17 10:37:24 | 000,266,295 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
PRC - [2004/11/01 18:22:22 | 000,262,144 | ---- | M] (Logitech Inc.) -- C:\WINDOWS\system32\ElkCtrl.exe
PRC - [2004/10/08 10:50:52 | 000,088,363 | ---- | M] (Agere Systems) -- C:\WINDOWS\AGRSMMSG.exe
========== Modules (SafeList) ========== MOD - [2010/02/12 17:02:52 | 000,549,376 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Bea\Desktop\OTL.exe
MOD - [2007/03/30 13:39:52 | 000,272,992 | ---- | M] () -- C:\Program Files\iolo\Common\Lib\ioloHL.dll
MOD - [2006/06/23 10:40:58 | 000,081,920 | ---- | M] (Logitech) -- C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll
========== Win32 Services (SafeList) ========== SRV - [2010/02/05 22:26:13 | 000,018,944 | ---- | M] () [Auto | Running] -- C:\WINDOWS\System32\WLTRYSVC.EXE -- (wltrysvc)
SRV - [2010/01/22 19:16:30 | 000,545,576 | ---- | M] (Apple Inc.) [On_Demand | Running] -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service)
SRV - [2009/12/17 16:36:24 | 000,067,360 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper.dll -- (getPlusHelper) getPlus®
SRV - [2009/10/03 10:12:34 | 001,028,432 | ---- | M] (Lavasoft) [On_Demand | Stopped] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2009/08/17 08:58:24 | 000,152,984 | ---- | M] (Sun Microsystems, Inc.) [Auto | Running] -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2009/07/02 17:36:52 | 000,017,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Essentials\MsMpEng.exe -- (MsMpSvc)
SRV - [2009/05/29 12:41:26 | 000,144,712 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009/05/19 10:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2009/04/11 13:17:46 | 000,313,840 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe -- (RoxLiveShare9)
SRV - [2009/04/11 13:17:44 | 000,170,480 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe -- (RoxWatch9)
SRV - [2009/04/11 13:17:26 | 001,108,464 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe -- (RoxMediaDB9)
SRV - [2009/02/06 17:08:58 | 000,533,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc)
SRV - [2008/12/12 11:17:38 | 000,238,888 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service)
SRV - [2007/12/06 22:20:56 | 000,088,560 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe -- (Roxio UPnP Renderer 9)
SRV - [2007/12/06 22:20:52 | 000,362,992 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe -- (Roxio Upnp Server 9)
SRV - [2007/04/26 00:21:42 | 000,099,248 | ---- | M] () [Auto | Running] -- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxddserv.exe -- (lxddCATSCustConnectService)
SRV - [2007/04/26 00:21:22 | 000,537,520 | ---- | M] ( ) [Auto | Running] -- C:\WINDOWS\System32\lxddcoms.exe -- (lxdd_device)
SRV - [2007/03/30 13:39:36 | 000,482,920 | ---- | M] () [Auto | Running] -- C:\Program Files\iolo\Common\Lib\ioloDMVSvc.exe -- (ioloDMV)
SRV - [2006/06/23 10:40:58 | 000,086,016 | ---- | M] (Logitech) [Auto | Running] -- c:\Program Files\Common Files\Logitech\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv)
SRV - [2006/01/17 10:37:24 | 000,266,295 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe -- (btwdins)
SRV - [2004/10/22 02:24:18 | 000,073,728 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe -- (IDriverT)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.yahoo.com/IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages =
http://news.yahoo.com [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.com/ie IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://red.clientapp...//www.yahoo.comIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.google.co...m...tf8&oe=utf8IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.msn.com/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ieIE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/02/09 21:07:11 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/02/09 21:07:09 | 000,000,000 | ---D | M]
[2010/02/09 20:41:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Mozilla\Extensions
[2009/08/14 02:30:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Mozilla\Extensions\
[email protected][2010/02/09 21:07:09 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2008/06/18 01:43:04 | 000,086,016 | ---- | M] (Coupons, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npCouponPrinter.dll
O1 HOSTS File: ([2010/02/08 22:31:18 | 000,000,736 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll (Yahoo! Inc.)
O2 - BHO: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Yahoo! IE Services Button) - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll (Yahoo! Inc.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O2 - BHO: (Yontoo Layers) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Client for Internet Explorer\YontooIEClient.dll (Yontoo Technology, Inc.)
O3 - HKLM\..\Toolbar: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O4 - HKLM..\Run: [AGRSMMSG] C:\WINDOWS\AGRSMMSG.exe (Agere Systems)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [BlackBerryAutoUpdate] C:\Program Files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe (Research In Motion Limited)
O4 - HKLM..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.EXE (Broadcom Corporation)
O4 - HKLM..\Run: [FaxCenterServer] C:\Program Files\Lexmark Fax Solutions\fm3032.exe ()
O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [LogitechCameraService(E)] C:\WINDOWS\System32\ElkCtrl.exe (Logitech Inc.)
O4 - HKLM..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE (Logitech)
O4 - HKLM..\Run: [lxddamon] C:\Program Files\Lexmark 2500 Series\lxddamon.exe (Lexmark)
O4 - HKLM..\Run: [lxddmon.exe] C:\Program Files\Lexmark 2500 Series\lxddmon.exe ()
O4 - HKLM..\Run: [MSSE] C:\Program Files\Microsoft Security Essentials\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SkyTel] File not found
O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
O4 - HKCU..\Run: [Google Update] C:\Documents and Settings\Bea\Local Settings\Application Data\Google\Update\GoogleUpdate.exe (Google Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll (Yahoo! Inc.)
O9 - Extra 'Tools' menuitem : Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (InterTrust Technologies Corporation, Inc.)
O15 - HKCU\..Trusted Domains: internet ([]about in Trusted sites)
O15 - HKCU\..Trusted Domains: mcafee.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: mcafee.com ([]https in Trusted sites)
O15 - HKCU\..Trusted Domains: 57 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089}
http://office.micros...tes/ieawsdc.cab (Microsoft Office Template and Media Control)
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8}
http://download.micr.../OGAControl.cab (Office Genuine Advantage Validation Tool)
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3}
http://zone.msn.com/...UI.cab55579.cab (StagingUI Object)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\Yinsthelper.dll (Installation Support)
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8}
http://zone.msn.com/...dy.cab55579.cab (MSN Games – Buddy Invite)
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3}
http://zone.msn.com/...at.cab55579.cab (ZonePAChat Object)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.micros...b?1180052573437 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://www.update.mi...b?1183974491937 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.ma...t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {A4110378-789B-455F-AE86-3A1BFC402853}
http://zone.msn.com/...vl.cab55579.cab (ZPA_SHVL Object)
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592}
http://cdn2.zone.msn...ro.cab56649.cab (MSN Games - Installer)
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_01)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_02)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937}
http://zone.msn.com/...xy.cab55579.cab (MSN Games – Game Communicator)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.ad...Plus/1.6/gp.cab (get_atlcom Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/05/24 17:07:31 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (smrgdf C:\Program Files\iolo\System Mechanic 6\) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2007/05/24 17:07:08 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - C:\WINDOWS\system32\irmon.dll (Microsoft Corporation)
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (16328941673381888)
========== Files/Folders - Created Within 14 Days ========== [2010/02/12 17:02:43 | 000,549,376 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Bea\Desktop\OTL.exe
[2010/02/11 23:08:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\gmer
[2010/02/11 20:36:15 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2010/02/08 22:30:39 | 001,445,888 | ---- | C] (Option^Explicit Software Solutions) -- C:\Documents and Settings\Bea\My Documents\WinsockxpFix.exe
[2010/02/08 21:53:19 | 000,000,000 | ---D | C] -- C:\Program Files\XP TCPIP Repair
[2010/02/08 21:51:22 | 000,578,557 | ---- | C] (WareSoft Software ) -- C:\Documents and Settings\Bea\My Documents\xptcprep.exe
[2010/02/07 18:28:35 | 000,000,000 | ---D | C] -- C:\Program Files\Driver Sweeper
[2010/02/07 18:26:45 | 000,947,042 | ---- | C] (Phyxion.net - Guru3D.com ) -- C:\Documents and Settings\Bea\My Documents\DriverSweeper_1.5.5_setup__Guru3D.com_.exe
[2010/02/07 11:41:10 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\WINDOWS\System32\CSVer.dll
[2010/02/07 11:36:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Broadcom
[2010/02/06 23:47:32 | 000,088,363 | ---- | C] (Agere Systems) -- C:\WINDOWS\AGRSMMSG.exe
[2010/02/06 23:47:31 | 000,064,512 | ---- | C] (Agere Systems) -- C:\WINDOWS\agrsmdel.exe
[2010/02/06 23:47:15 | 001,270,540 | ---- | C] (Agere Systems) -- C:\WINDOWS\System32\drivers\AGRSM.sys
[2010/02/06 23:17:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\Application Data\System Tweaker
[2010/02/06 23:16:55 | 002,698,976 | ---- | C] (Uniblue ) -- C:\Documents and Settings\Bea\My Documents\systemtweaker.exe
[2010/02/06 21:36:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Performance
[2010/02/06 21:36:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\Local Settings\Application Data\Microsoft Corporation
[2010/02/06 21:35:36 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Windows 7 Upgrade Advisor
[2010/02/06 15:11:36 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft CAPICOM 2.1.0.2
[2010/02/06 14:25:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\LAN Driver Marvell 8.55.4.3
[2010/02/06 14:18:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Chipset Driver Intel 8.0.0.1009
[2010/02/06 01:36:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Innovative Solutions
[2010/02/06 01:36:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\My Drivers
[2010/02/06 01:36:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\Local Settings\Application Data\Innovative Solutions
[2010/02/06 01:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\iXi Tools
[2010/02/06 00:52:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2010/02/06 00:03:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DriverScanner
[2010/02/06 00:03:55 | 000,000,000 | ---D | C] -- C:\Program Files\Uniblue
[2010/02/06 00:03:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\Application Data\Uniblue
[2010/02/06 00:02:32 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{66E2F539-12B6-4870-A500-7689CDE75C5E}
[2010/02/05 23:05:20 | 000,000,000 | ---D | C] -- C:\Program Files\Launch Manager
[2010/02/05 23:04:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\LaunchMgr_Dritek_1.2.0.1208_XPx86
[2010/02/05 23:00:21 | 000,000,000 | ---D | C] -- C:\Program Files\Acer Inc
[2010/02/05 22:59:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Acer GridVista_2.53.0209_XPx86
[2010/02/05 22:26:37 | 000,000,000 | ---D | C] -- C:\Program Files\Broadcom
[2010/02/05 22:25:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Wireless LAN_Broadcom_4.10.40_XPx86
[2010/02/05 21:58:18 | 000,546,976 | ---- | C] (Atheros Communications, Inc.) -- C:\WINDOWS\System32\ar5211.sys
[2010/02/05 21:57:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Atheros
[2010/02/05 21:57:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Wireless LAN_Atheros_5.3.0.45_XPx86_A
[2010/02/05 21:54:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\VGA_Nvidia_8.4.8.5_XPx86
[2010/02/05 21:49:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\VGA_Intel_6.14.10.4543_XPx86
[2010/02/05 21:42:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Touchpad_Synaptics_8.3.0.0_XPx86
[2010/02/05 21:34:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Modem_Agere_2.1.7.5_XPx86
[2010/02/05 21:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Lan_Marvell_8.55.4.3_XPx86
[2010/02/05 21:20:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Lan_Marvell_8.59.5.3_XPx86_A
[2010/02/05 21:18:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\tiinst
[2010/02/05 21:17:32 | 000,162,432 | ---- | C] (Texas Instruments) -- C:\WINDOWS\System32\drivers\tifm21.sys
[2010/02/05 21:17:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\CardReader_TI_2.0.0.2_XPx86
[2010/02/05 21:07:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\SUYIN NB Cam
[2010/02/05 21:07:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Camera_Suyin_1.0.0.1_XPx86
[2010/02/05 20:56:36 | 000,245,824 | ---- | C] (Logitech) -- C:\WINDOWS\Instexec.exe
[2010/02/05 20:56:27 | 000,245,824 | R--- | C] (Logitech) -- C:\WINDOWS\System32\InstExec.exe
[2010/02/05 20:56:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logitech
[2010/02/05 20:56:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Acer
[2010/02/05 20:56:02 | 000,319,488 | ---- | C] (Acer) -- C:\WINDOWS\System32\CamCplRes.dll
[2010/02/05 20:56:02 | 000,086,016 | ---- | C] (Acer) -- C:\WINDOWS\System32\vatee.ax
[2010/02/05 20:56:01 | 000,303,104 | ---- | C] (Acer) -- C:\WINDOWS\System32\camcpl.cpl
[2010/02/05 20:55:57 | 000,167,936 | ---- | C] (Acer) -- C:\WINDOWS\System32\VxLib.dll
[2010/02/05 20:55:57 | 000,151,552 | ---- | C] (Acer) -- C:\WINDOWS\System32\VLib.dll
[2010/02/05 20:55:53 | 000,039,424 | ---- | C] (Acer) -- C:\WINDOWS\System32\VxLibRes.dll
[2010/02/05 20:55:50 | 000,000,000 | ---D | C] -- C:\Program Files\Acer
[2010/02/05 20:53:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Camera_Logitech_9.4.4.1082_XPx86
[2010/02/05 20:43:15 | 000,077,942 | ---- | C] (Bison Inc.) -- C:\WINDOWS\System32\BisonRem.dll
[2010/02/05 20:43:14 | 000,806,272 | ---- | C] (Bison Electronics. Inc. ) -- C:\WINDOWS\System32\drivers\BisonCam.sys
[2010/02/05 20:43:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\BisonCam
[2010/02/05 20:42:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Camera_Bison_5.0.0.8_XPx86
[2010/02/05 20:33:09 | 000,000,000 | ---D | C] -- C:\Program Files\WIDCOMM
[2010/02/05 20:31:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Bluetooth_Broadcom_5.0.1.1500_XPx86
[2010/02/05 19:59:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Audio_Realtek_5.10.0.5273_XPx86
[2010/02/05 19:37:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\My Documents\Chipset_Intel_8.0.0.1009_XPx86
[2010/02/02 23:44:26 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2010/02/02 23:36:25 | 011,650,440 | ---- | C] (Opera Software ASA ) -- C:\Documents and Settings\Bea\My Documents\Opera_1010_in_Setup.exe
[2010/02/02 23:13:31 | 008,327,264 | ---- | C] (Mozilla) -- C:\Documents and Settings\Bea\My Documents\Firefox Setup 3.6.exe
[2010/02/02 23:05:48 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2010/02/02 23:05:01 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2010/02/02 22:59:17 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2010/02/02 22:49:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\Local Settings\Application Data\Temp
[2010/02/02 22:48:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bea\Local Settings\Application Data\Deployment
[2010/01/31 13:43:15 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Bea\PrivacIE
[2010/01/31 13:30:03 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Bea\IECompatCache
[2010/01/09 19:05:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\SACore
[2009/05/09 06:27:18 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2009/04/22 09:34:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2008/10/24 17:33:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Yahoo!
[2007/11/26 02:56:51 | 000,323,584 | ---- | C] ( ) -- C:\WINDOWS\System32\LXDDhcp.dll
[2007/08/28 21:25:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple
[2007/07/18 17:36:59 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2007/05/25 18:44:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\iolo
[2007/05/24 17:11:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2007/03/02 09:13:41 | 000,643,072 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddpmui.dll
[2007/03/02 09:12:21 | 001,232,896 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddserv.dll
[2007/03/02 09:05:53 | 000,425,984 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddcomm.dll
[2007/03/02 09:04:14 | 000,585,728 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddlmpm.dll
[2007/03/02 09:02:55 | 000,397,312 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddiesc.dll
[2007/03/02 09:00:23 | 000,094,208 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddpplc.dll
[2007/03/02 08:59:32 | 000,684,032 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddcomc.dll
[2007/03/02 08:58:58 | 000,163,840 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddprox.dll
[2007/03/02 08:51:50 | 000,413,696 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddinpa.dll
[2007/03/02 08:51:09 | 000,999,424 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddusb1.dll
[2007/03/02 08:47:01 | 000,700,416 | ---- | C] ( ) -- C:\WINDOWS\System32\lxddhbn3.dll
[2 C:\Documents and Settings\Bea\My Documents\*.tmp files -> C:\Documents and Settings\Bea\My Documents\*.tmp -> ]
[2 C:\Documents and Settings\All Users\*.tmp files -> C:\Documents and Settings\All Users\*.tmp -> ]
========== Files - Modified Within 14 Days ========== [2010/02/12 17:11:00 | 000,000,418 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{C78EAB38-8876-422B-960A-4047F8801EE5}.job
[2010/02/12 17:02:52 | 000,549,376 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Bea\Desktop\OTL.exe
[2010/02/12 16:59:51 | 000,025,600 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Report for Geeks to go.doc
[2010/02/12 16:58:15 | 000,000,408 | -H-- | M] () -- C:\WINDOWS\tasks\MP Scheduled Scan.job
[2010/02/12 16:55:05 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/02/12 16:52:59 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\OGALogon.job
[2010/02/12 16:52:55 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/02/12 16:52:51 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/02/12 04:25:04 | 000,000,970 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-776561741-839522115-1003UA.job
[2010/02/12 04:18:58 | 000,121,968 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\OTL.exe
[2010/02/11 23:07:44 | 000,284,915 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\gmer.zip
[2010/02/11 23:06:02 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Bea\My Documents\~$port for Geeks to go.doc
[2010/02/11 22:58:12 | 009,175,040 | ---- | M] () -- C:\Documents and Settings\Bea\ntuser.dat
[2010/02/11 22:57:43 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\Bea\ntuser.ini
[2010/02/11 21:14:06 | 000,000,918 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-776561741-839522115-1003Core.job
[2010/02/11 20:39:04 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/02/11 20:36:20 | 000,000,611 | ---- | M] () -- C:\Documents and Settings\Bea\Desktop\NTREGOPT.lnk
[2010/02/11 20:36:20 | 000,000,592 | ---- | M] () -- C:\Documents and Settings\Bea\Desktop\ERUNT.lnk
[2010/02/11 20:28:02 | 000,668,796 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/02/11 20:28:02 | 000,559,764 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/02/11 20:28:02 | 000,099,230 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/02/11 20:16:32 | 000,439,808 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Bea\My Documents\TFC.exe
[2010/02/11 20:08:12 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/02/09 21:07:16 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2010/02/09 21:05:39 | 008,327,264 | ---- | M] (Mozilla) -- C:\Documents and Settings\Bea\My Documents\Firefox Setup 3.6.exe
[2010/02/08 22:31:18 | 000,000,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010/02/08 22:30:49 | 001,445,888 | ---- | M] (Option^Explicit Software Solutions) -- C:\Documents and Settings\Bea\My Documents\WinsockxpFix.exe
[2010/02/08 21:53:21 | 000,000,670 | ---- | M] () -- C:\Documents and Settings\Bea\Desktop\XP TCPIP Repair.lnk
[2010/02/08 21:52:54 | 000,578,557 | ---- | M] (WareSoft Software ) -- C:\Documents and Settings\Bea\My Documents\xptcprep.exe
[2010/02/07 18:27:07 | 000,947,042 | ---- | M] (Phyxion.net - Guru3D.com ) -- C:\Documents and Settings\Bea\My Documents\DriverSweeper_1.5.5_setup__Guru3D.com_.exe
[2010/02/07 09:01:01 | 000,019,968 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\reg clnrreg code.doc
[2010/02/07 09:00:08 | 000,061,009 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\reg clnr receipt uniblue.pdf
[2010/02/07 08:34:23 | 000,000,749 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\RegistryBooster.lnk
[2010/02/06 23:21:47 | 000,019,968 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Serial number for Uniblue.doc
[2010/02/06 23:20:30 | 000,061,146 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Uniblue Driver scan and system tweaker reciept.pdf
[2010/02/06 23:17:44 | 000,000,774 | ---- | M] () -- C:\Documents and Settings\Bea\Desktop\System Tweaker.lnk
[2010/02/06 23:17:08 | 002,698,976 | ---- | M] (Uniblue ) -- C:\Documents and Settings\Bea\My Documents\systemtweaker.exe
[2010/02/06 22:32:11 | 000,182,946 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Lan_Marvell_8.59.5.3_XPx86_A.zip
[2010/02/06 22:25:10 | 000,183,006 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\LAN Driver Marvell 8.55.4.3.zip
[2010/02/06 22:10:15 | 000,041,403 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\upgrade win 7 req.mht
[2010/02/06 21:35:45 | 000,001,862 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Windows 7 Upgrade Advisor.lnk
[2010/02/06 14:17:50 | 001,748,621 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Chipset Driver Intel 8.0.0.1009.zip
[2010/02/06 00:04:03 | 000,000,842 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\DriverScanner.lnk
[2010/02/05 23:35:44 | 000,000,211 | RHS- | M] () -- C:\boot.ini
[2010/02/05 23:35:44 | 000,000,136 | ---- | M] () -- C:\WINDOWS\win.ini
[2010/02/05 23:35:44 | 000,000,000 | ---- | M] () -- C:\WINDOWS\system.ini
[2010/02/05 23:05:23 | 000,000,083 | ---- | M] () -- C:\WINDOWS\QtZgAcer.UNI
[2010/02/05 23:05:00 | 000,016,896 | ---- | M] (Dritek System Inc.) -- C:\WINDOWS\System32\drivers\DKbFltr.SYS
[2010/02/05 23:05:00 | 000,005,120 | ---- | M] (Dritek System Inc.) -- C:\WINDOWS\System32\FILTRCOI.DLL
[2010/02/05 23:04:57 | 000,147,456 | ---- | M] (Dritek System Inc.) -- C:\WINDOWS\UNINST32.EXE
[2010/02/05 23:04:54 | 000,049,152 | ---- | M] (Dritek System Inc.) -- C:\WINDOWS\System32\QtBtLib.dll
[2010/02/05 23:04:24 | 004,187,088 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\LaunchMgr_Dritek_1.2.0.1208_XPx86.zip
[2010/02/05 23:00:25 | 000,000,000 | ---- | M] () -- C:\WINDOWS\Setup.INI
[2010/02/05 23:00:23 | 000,000,092 | ---- | M] () -- C:\WINDOWS\GridV.UNI
[2010/02/05 22:59:13 | 000,655,741 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Acer GridVista_2.53.0209_XPx86.zip
[2010/02/05 22:26:13 | 002,129,920 | ---- | M] (BCGSoft Ltd) -- C:\WINDOWS\System32\WLBCGCBPRO731.DLL
[2010/02/05 22:26:13 | 000,018,944 | ---- | M] () -- C:\WINDOWS\System32\WLTRYSVC.EXE
[2010/02/05 22:26:12 | 000,086,016 | ---- | M] () -- C:\WINDOWS\System32\preflib.dll
[2010/02/05 22:26:08 | 000,069,632 | ---- | M] (CACE Technologies) -- C:\WINDOWS\System32\bcmwlpkt.dll
[2010/02/05 22:26:07 | 000,033,664 | ---- | M] (CACE Technologies) -- C:\WINDOWS\System32\drivers\BCMWLNPF.SYS
[2010/02/05 22:25:55 | 000,757,760 | ---- | M] () -- C:\WINDOWS\System32\bcm1xsup.dll
[2010/02/05 22:25:24 | 076,850,498 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Wireless LAN_Broadcom_4.10.40_XPx86.zip
[2010/02/05 22:00:35 | 001,667,957 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Wireless LAN_Atheros_4.2.2.7_XPx86.zip
[2010/02/05 21:56:43 | 002,791,534 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Wireless LAN_Atheros_5.3.0.45_XPx86_A.zip
[2010/02/05 21:54:02 | 022,001,318 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\VGA_Nvidia_8.4.8.5_XPx86.zip
[2010/02/05 21:49:12 | 000,524,850 | ---- | M] () -- C:\WINDOWS\System32\igxpxa32.cpa
[2010/02/05 21:49:12 | 000,058,704 | ---- | M] () -- C:\WINDOWS\System32\igxpxk32.vp
[2010/02/05 21:49:12 | 000,023,216 | ---- | M] () -- C:\WINDOWS\System32\igxpxs32.vp
[2010/02/05 21:49:12 | 000,000,929 | ---- | M] () -- C:\WINDOWS\System32\igxpxa32.vp
[2010/02/05 21:47:01 | 005,215,049 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\VGA_Intel_6.14.10.4543_XPx86.zip
[2010/02/05 21:42:12 | 000,081,920 | ---- | M] (Synaptics, Inc.) -- C:\WINDOWS\System32\SynTPCo2.dll
[2010/02/05 21:41:34 | 005,597,177 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Touchpad_Synaptics_8.3.0.0_XPx86.zip
[2010/02/05 21:33:48 | 000,693,947 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Modem_Agere_2.1.7.5_XPx86.zip
[2010/02/05 21:30:40 | 000,183,282 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Lan_Marvell_8.55.4.3_XPx86.zip
[2010/02/05 21:17:32 | 000,162,432 | ---- | M] (Texas Instruments) -- C:\WINDOWS\System32\drivers\tifm21.sys
[2010/02/05 21:17:01 | 003,656,275 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\CardReader_TI_2.0.0.2_XPx86.zip
[2010/02/05 21:07:47 | 000,000,485 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Acer OrbiCam.lnk
[2010/02/05 21:06:40 | 036,825,342 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Camera_Suyin_1.0.0.1_XPx86.zip
[2010/02/05 20:49:57 | 052,453,460 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Camera_Logitech_9.4.4.1082_XPx86.zip
[2010/02/05 20:42:13 | 003,724,479 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Camera_Bison_5.0.0.8_XPx86.zip
[2010/02/05 20:31:12 | 074,817,555 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Bluetooth_Broadcom_5.0.1.1500_XPx86.zip
[2010/02/05 19:59:19 | 002,808,832 | ---- | M] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe
[2010/02/05 19:59:08 | 000,040,960 | ---- | M] () -- C:\WINDOWS\System32\ChCfg.exe
[2010/02/05 19:58:52 | 025,516,506 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Audio_Realtek_5.10.0.5273_XPx86.zip
[2010/02/05 19:34:03 | 001,766,423 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\Chipset_Intel_8.0.0.1009_XPx86.zip
[2010/02/02 23:36:26 | 011,650,440 | ---- | M] (Opera Software ASA ) -- C:\Documents and Settings\Bea\My Documents\Opera_1010_in_Setup.exe
[2010/02/02 23:07:52 | 000,001,804 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2010/02/02 22:49:06 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/02/01 20:02:23 | 004,844,290 | -H-- | M] () -- C:\Documents and Settings\Bea\Local Settings\Application Data\IconCache.db
[2010/02/01 19:15:12 | 002,001,811 | ---- | M] () -- C:\WINDOWS\iis6.BAK
[2010/01/31 22:43:33 | 000,021,504 | ---- | M] () -- C:\Documents and Settings\Bea\My Documents\ie8 solution.doc
[2010/01/31 22:43:33 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Bea\My Documents\~$8 solution.doc
[2 C:\Documents and Settings\Bea\My Documents\*.tmp files -> C:\Documents and Settings\Bea\My Documents\*.tmp -> ]
[2 C:\Documents and Settings\All Users\*.tmp files -> C:\Documents and Settings\All Users\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/02/12 04:07:19 | 000,121,968 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\OTL.exe
[2010/02/11 23:07:39 | 000,284,915 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\gmer.zip
[2010/02/11 23:06:02 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Bea\My Documents\~$port for Geeks to go.doc
[2010/02/11 20:29:20 | 000,000,611 | ---- | C] () -- C:\Documents and Settings\Bea\Desktop\NTREGOPT.lnk
[2010/02/11 20:29:20 | 000,000,592 | ---- | C] () -- C:\Documents and Settings\Bea\Desktop\ERUNT.lnk
[2010/02/09 21:09:06 | 000,000,970 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-776561741-839522115-1003UA.job
[2010/02/09 21:09:05 | 000,000,918 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-776561741-839522115-1003Core.job
[2010/02/09 21:07:16 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2010/02/08 21:53:21 | 000,000,670 | ---- | C] () -- C:\Documents and Settings\Bea\Desktop\XP TCPIP Repair.lnk
[2010/02/08 21:50:53 | 000,025,600 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Report for Geeks to go.doc
[2010/02/07 11:37:17 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4318_0312_Update32D.BAT
[2010/02/07 11:37:17 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4318_0312_Update32C.BAT
[2010/02/07 11:37:17 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4318_0311_Update32D.BAT
[2010/02/07 11:37:17 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4318_0311_Update32C.BAT
[2010/02/07 11:37:17 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4315_Update32D.BAT
[2010/02/07 11:37:17 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4315_Update32C.BAT
[2010/02/07 11:37:17 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4312_Update32D.BAT
[2010/02/07 11:37:17 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4312_Update32C.BAT
[2010/02/07 11:37:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4318_0312_Remove32D.BAT
[2010/02/07 11:37:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4318_0312_Remove32C.BAT
[2010/02/07 11:37:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4318_0311_Remove32D.BAT
[2010/02/07 11:37:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4318_0311_Remove32C.BAT
[2010/02/07 11:37:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4315_Remove32D.BAT
[2010/02/07 11:37:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4315_Remove32C.BAT
[2010/02/07 11:37:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4312_Remove32D.BAT
[2010/02/07 11:37:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4312_Remove32C.BAT
[2010/02/07 11:37:16 | 000,640,204 | ---- | C] () -- C:\WINDOWS\System32\bcmwl5.inf
[2010/02/07 11:37:16 | 000,010,843 | ---- | C] () -- C:\WINDOWS\System32\bcm43xx.cat
[2010/02/07 11:37:16 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4328_Update32D.BAT
[2010/02/07 11:37:16 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4328_Update32C.BAT
[2010/02/07 11:37:16 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4311_Update32D.BAT
[2010/02/07 11:37:16 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\4311_Update32C.BAT
[2010/02/07 11:37:16 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4328_Remove32D.BAT
[2010/02/07 11:37:16 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4328_Remove32C.BAT
[2010/02/07 11:37:16 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4311_Remove32D.BAT
[2010/02/07 11:37:16 | 000,000,061 | ---- | C] () -- C:\WINDOWS\System32\4311_Remove32C.BAT
[2010/02/07 09:00:59 | 000,019,968 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\reg clnrreg code.doc
[2010/02/07 09:00:08 | 000,061,009 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\reg clnr receipt uniblue.pdf
[2010/02/07 08:34:23 | 000,000,749 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\RegistryBooster.lnk
[2010/02/06 23:21:46 | 000,019,968 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Serial number for Uniblue.doc
[2010/02/06 23:20:30 | 000,061,146 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Uniblue Driver scan and system tweaker reciept.pdf
[2010/02/06 23:17:44 | 000,000,774 | ---- | C] () -- C:\Documents and Settings\Bea\Desktop\System Tweaker.lnk
[2010/02/06 22:10:15 | 000,041,403 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\upgrade win 7 req.mht
[2010/02/06 21:35:45 | 000,001,862 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Windows 7 Upgrade Advisor.lnk
[2010/02/06 14:25:07 | 000,183,006 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\LAN Driver Marvell 8.55.4.3.zip
[2010/02/06 14:17:35 | 001,748,621 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Chipset Driver Intel 8.0.0.1009.zip
[2010/02/06 00:04:03 | 000,000,842 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\DriverScanner.lnk
[2010/02/05 23:05:23 | 000,000,083 | ---- | C] () -- C:\WINDOWS\QtZgAcer.UNI
[2010/02/05 23:04:17 | 004,187,088 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\LaunchMgr_Dritek_1.2.0.1208_XPx86.zip
[2010/02/05 23:00:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Setup.INI
[2010/02/05 23:00:23 | 000,000,092 | ---- | C] () -- C:\WINDOWS\GridV.UNI
[2010/02/05 22:59:09 | 000,655,741 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Acer GridVista_2.53.0209_XPx86.zip
[2010/02/05 22:25:07 | 076,850,498 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Wireless LAN_Broadcom_4.10.40_XPx86.zip
[2010/02/05 22:00:32 | 001,667,957 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Wireless LAN_Atheros_4.2.2.7_XPx86.zip
[2010/02/05 21:58:18 | 000,084,470 | ---- | C] () -- C:\WINDOWS\System32\net5211.inf
[2010/02/05 21:58:18 | 000,020,888 | ---- | C] () -- C:\WINDOWS\System32\net5211.cat
[2010/02/05 21:58:18 | 000,000,008 | RHS- | C] () -- C:\WINDOWS\System32\Desktop_.ini
[2010/02/05 21:56:40 | 002,791,534 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Wireless LAN_Atheros_5.3.0.45_XPx86_A.zip
[2010/02/05 21:54:01 | 022,001,318 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\VGA_Nvidia_8.4.8.5_XPx86.zip
[2010/02/05 21:46:57 | 005,215,049 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\VGA_Intel_6.14.10.4543_XPx86.zip
[2010/02/05 21:41:30 | 005,597,177 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Touchpad_Synaptics_8.3.0.0_XPx86.zip
[2010/02/05 21:33:48 | 000,693,947 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Modem_Agere_2.1.7.5_XPx86.zip
[2010/02/05 21:30:39 | 000,183,282 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Lan_Marvell_8.55.4.3_XPx86.zip
[2010/02/05 21:19:51 | 000,182,946 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Lan_Marvell_8.59.5.3_XPx86_A.zip
[2010/02/05 21:16:56 | 003,656,275 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\CardReader_TI_2.0.0.2_XPx86.zip
[2010/02/05 21:08:15 | 000,024,576 | ---- | C] () -- C:\WINDOWS\DetectHWID.exe
[2010/02/05 21:07:48 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\mmEffect.ax
[2010/02/05 21:06:33 | 036,825,342 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Camera_Suyin_1.0.0.1_XPx86.zip
[2010/02/05 20:56:27 | 000,000,719 | R--- | C] () -- C:\WINDOWS\System32\InstExec.ini
[2010/02/05 20:49:51 | 052,453,460 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Camera_Logitech_9.4.4.1082_XPx86.zip
[2010/02/05 20:43:15 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System\StillDrv.dll
[2010/02/05 20:43:15 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System\BisonVfw.dll
[2010/02/05 20:43:15 | 000,002,264 | ---- | C] () -- C:\WINDOWS\System\S20H0220.csr
[2010/02/05 20:43:15 | 000,002,264 | ---- | C] () -- C:\WINDOWS\System\S20F0220.csr
[2010/02/05 20:43:14 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System\BisonCam.dll
[2010/02/05 20:43:14 | 000,015,190 | ---- | C] () -- C:\WINDOWS\M2000Twn.ini
[2010/02/05 20:43:14 | 000,013,448 | ---- | C] () -- C:\WINDOWS\M2000Twn.src
[2010/02/05 20:43:12 | 000,000,485 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Acer OrbiCam.lnk
[2010/02/05 20:41:57 | 003,724,479 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Camera_Bison_5.0.0.8_XPx86.zip
[2010/02/05 20:30:54 | 074,817,555 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Bluetooth_Broadcom_5.0.1.1500_XPx86.zip
[2010/02/05 19:58:00 | 025,516,506 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Audio_Realtek_5.10.0.5273_XPx86.zip
[2010/02/05 19:33:57 | 001,766,423 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\Chipset_Intel_8.0.0.1009_XPx86.zip
[2010/02/02 23:07:52 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2010/01/31 22:43:33 | 000,021,504 | ---- | C] () -- C:\Documents and Settings\Bea\My Documents\ie8 solution.doc
[2010/01/31 22:43:33 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Bea\My Documents\~$8 solution.doc
[2010/01/31 13:29:59 | 000,000,418 | -H-- | C] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{C78EAB38-8876-422B-960A-4047F8801EE5}.job
[2010/01/28 20:36:37 | 000,000,038 | ---- | C] () -- C:\Documents and Settings\Bea\Application Data\msnpromo.txt
[2009/09/01 08:30:27 | 000,000,597 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll
[2008/04/27 20:21:27 | 000,000,000 | ---- | C] () -- C:\WINDOWS\QuickInstall.INI
[2007/11/26 03:08:48 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\LXF3PMON.DLL
[2007/11/26 03:08:48 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\LXF3FXPU.DLL
[2007/11/26 03:08:28 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\lxf3oem.dll
[2007/11/26 03:08:28 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\LXF3PMRC.DLL
[2007/11/26 02:58:00 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\lxddrwrd.ini
[2007/11/26 02:56:52 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\LXDDinst.dll
[2007/11/26 02:55:42 | 000,344,064 | R--- | C] () -- C:\WINDOWS\System32\lxddcoin.dll
[2007/11/19 06:35:42 | 000,002,917 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2007/09/11 23:48:47 | 000,006,314 | ---- | C] () -- C:\WINDOWS\silkquit.ini
[2007/07/31 00:00:09 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\YCRWin32.dll
[2007/07/21 14:30:59 | 000,006,144 | ---- | C] () -- C:\Documents and Settings\Bea\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/07/18 19:13:09 | 000,047,360 | R--- | C] () -- C:\WINDOWS\System32\drivers\Surroundhp_kern_i386.sys
[2007/07/18 19:13:09 | 000,046,592 | R--- | C] () -- C:\WINDOWS\System32\drivers\tshd4_kern_i386.sys
[2007/07/18 19:13:09 | 000,039,552 | R--- | C] () -- C:\WINDOWS\System32\drivers\SRS_SSCFilter_i386.sys
[2007/07/18 19:13:09 | 000,037,248 | R--- | C] () -- C:\WINDOWS\System32\drivers\csiidecoder_kern_i386.sys
[2007/05/26 08:50:36 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2007/05/26 08:45:51 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2007/05/25 18:44:06 | 000,696,320 | ---- | C] () -- C:\WINDOWS\System32\libeay32.dll
[2007/05/25 18:44:00 | 000,435,816 | ---- | C] () -- C:\WINDOWS\System32\Incinerator.dll
[2007/05/25 18:34:21 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2007/05/25 18:33:26 | 000,314,880 | ---- | C] () -- C:\WINDOWS\System32\Tx32.dll
[2007/05/25 18:15:15 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2007/05/24 18:53:58 | 000,002,208 | ---- | C] () -- C:\WINDOWS\System32\drivers\nxsIO32.sys
[2007/04/25 21:17:09 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\lxddgrd.dll
[2007/01/23 13:40:03 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\lxddcaps.dll
[2007/01/09 11:13:08 | 000,692,224 | ---- | C] () -- C:\WINDOWS\System32\lxdddrs.dll
[2006/10/06 12:08:04 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\lxddcnv4.dll
[2006/06/23 10:40:58 | 002,400,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVMVdrv.sys
[2006/06/23 10:40:58 | 000,016,768 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVPrcMon.sys
[2006/06/13 10:03:00 | 000,757,760 | ---- | C] () -- C:\WINDOWS\System32\bcm1xsup.dll
[2006/06/13 10:03:00 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\preflib.dll
[2006/06/01 07:55:00 | 000,298,752 | ---- | C] () -- C:\WINDOWS\System32\drivers\yk51x86.sys
[2006/05/17 21:47:12 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxddvs.dll
[2006/01/17 10:31:30 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll
[2005/02/17 11:41:32 | 000,000,603 | ---- | C] () -- C:\WINDOWS\System32\BTNeighborhood.dll.manifest
[2005/02/17 11:41:30 | 000,000,593 | ---- | C] () -- C:\WINDOWS\System32\btcss.dll.manifest
[2003/03/31 07:00:00 | 000,022,040 | ---- | C] () -- C:\WINDOWS\System32\_006655_.tmp.dll
[2002/08/13 00:55:38 | 000,467,001 | ---- | C] () -- C:\WINDOWS\System32\W3MKDE.DLL
[2002/08/13 00:55:38 | 000,061,499 | ---- | C] () -- C:\WINDOWS\System32\W3MKDERC.DLL
[2001/11/14 12:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll
[1999/01/27 13:39:06 | 000,065,024 | ---- | C] () -- C:\WINDOWS\System32\indounin.dll
[1997/06/13 07:56:08 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\Iyvu9_32.dll
========== LOP Check ========== [2010/02/07 11:36:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Broadcom
[2010/02/06 00:05:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DriverScanner
[2009/05/16 13:26:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\eBay
[2008/04/27 20:16:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\HotSync
[2007/05/25 18:33:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Individual Software
[2010/02/06 01:36:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Innovative Solutions
[2007/05/25 18:44:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iolo
[2007/12/06 17:15:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MailFrontier
[2010/02/06 00:52:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2010/01/08 00:26:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Research In Motion
[2007/07/18 19:13:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SRS Labs
[2008/11/01 21:18:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Tarma Installer
[2009/08/23 17:48:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2009/01/16 20:05:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WholeSecurity
[2007/07/31 00:01:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Yahoo
[2009/04/05 20:00:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[2010/02/06 00:04:07 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{66E2F539-12B6-4870-A500-7689CDE75C5E}
[2009/09/15 22:15:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/04/21 21:56:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2009/08/25 05:22:59 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{EF63305C-BAD7-4144-9208-D65528260864}
[2009/10/11 23:07:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Blackberry Desktop
[2008/06/05 18:24:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\CheckPoint
[2009/05/16 13:26:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\eBay
[2009/08/31 04:36:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\FrostWire
[2008/04/27 20:13:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\HotSync
[2007/05/26 13:52:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Individual Software
[2007/05/25 18:41:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\InterTrust
[2007/05/25 18:42:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\iolo
[2007/08/18 02:53:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Leadertech
[2007/11/26 03:17:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Lexmark Productivity Studio
[2009/08/14 03:56:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\LimeWire
[2007/12/09 04:13:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\MailFrontier(2)
[2010/01/28 20:38:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\MSNInstaller
[2009/08/18 21:54:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Netscape
[2007/09/11 23:44:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\QuitCounter
[2009/03/16 23:24:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Research In Motion
[2010/02/06 23:17:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\System Tweaker
[2010/02/07 08:34:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bea\Application Data\Uniblue
[2009/08/25 05:31:24 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
[2010/02/12 16:58:15 | 000,000,408 | -H-- | M] () -- C:\WINDOWS\Tasks\MP Scheduled Scan.job
[2010/02/12 16:52:59 | 000,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\OGALogon.job
[2010/02/12 17:11:00 | 000,000,418 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{C78EAB38-8876-422B-960A-4047F8801EE5}.job
========== Purity Check ========== ========== Custom Scans ========== < %SYSTEMDRIVE%\*.exe > < MD5 for: AGP440.SYS >[2004/08/04 00:05:44 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008/08/02 12:35:20 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2004/08/04 00:05:44 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:AGP440.sys
[2008/08/02 12:35:20 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 13:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 13:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004/08/03 22:07:42 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys
< MD5 for: ATAPI.SYS >[2003/03/31 07:00:00 | 010,158,890 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp1.cab:atapi.sys
[2004/08/04 00:05:44 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008/08/02 12:35:20 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2004/08/04 00:05:44 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:atapi.sys
[2008/08/02 12:35:20 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 13:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 13:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004/08/03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys
< MD5 for: EVENTLOG.DLL >[2008/04/13 19:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/13 19:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2004/08/03 23:56:44 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: NETLOGON.DLL >[2008/04/13 19:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 19:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2004/08/03 23:56:46 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
< MD5 for: SCECLI.DLL >[2004/08/03 23:56:46 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/13 19:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/13 19:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll
< %systemroot%\*. /mp /s > < %systemroot%\system32\*.dll /lockedfiles >[2010/01/05 05:00:20 | 000,347,136 | ---- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\system32\dxtmsft.dll
[2010/01/05 05:00:21 | 000,214,528 | ---- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\system32\dxtrans.dll
< %systemroot%\Tasks\*.job /lockedfiles > < %systemroot%\system32\drivers\*.sys /lockedfiles > < %systemroot%\System32\config\*.sav >[2007/05/24 12:55:53 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2007/05/24 12:55:53 | 000,626,688 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2007/05/24 12:55:53 | 000,417,792 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav
< End of report >
EXTRAS.TXTOTL Extras logfile created on: 2/12/2010 5:04:01 PM - Run 1
OTL by OldTimer - Version 3.1.28.0 Folder = C:\Documents and Settings\Bea\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
502.00 Mb Total Physical Memory | 176.00 Mb Available Physical Memory | 35.00% Memory free
2.00 Gb Paging File | 1.00 Gb Available in Paging File | 73.00% Paging File free
Paging file location(s): C:\pagefile.sys 1500 1500 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 60.49 Gb Total Space | 38.00 Gb Free Space | 62.81% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 51.29 Gb Total Space | 46.92 Gb Free Space | 91.46% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ACER-CELERON-M
Current User Name: Bea
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.scr [@ = scrfile] -- "%1" /s
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- Reg Error: Key error. File not found
========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /s
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"135:TCP" = 135:TCP:*:Enabled:TCP Port 135
"5000:TCP" = 5000:TCP:*:Enabled:TCP Port 5000
"5001:TCP" = 5001:TCP:*:Enabled:TCP Port 5001
"5002:TCP" = 5002:TCP:*:Enabled:TCP Port 5002
"5003:TCP" = 5003:TCP:*:Enabled:TCP Port 5003
"5004:TCP" = 5004:TCP:*:Enabled:TCP Port 5004
"5005:TCP" = 5005:TCP:*:Enabled:TCP Port 5005
"5006:TCP" = 5006:TCP:*:Enabled:TCP Port 5006
"5007:TCP" = 5007:TCP:*:Enabled:TCP Port 5007
"5008:TCP" = 5008:TCP:*:Enabled:TCP Port 5008
"5009:TCP" = 5009:TCP:*:Enabled:TCP Port 5009
"5010:TCP" = 5010:TCP:*:Enabled:TCP Port 5010
"5011:TCP" = 5011:TCP:*:Enabled:TCP Port 5011
"5012:TCP" = 5012:TCP:*:Enabled:TCP Port 5012
"5013:TCP" = 5013:TCP:*:Enabled:TCP Port 5013
"5014:TCP" = 5014:TCP:*:Enabled:TCP Port 5014
"5015:TCP" = 5015:TCP:*:Enabled:TCP Port 5015
"5016:TCP" = 5016:TCP:*:Enabled:TCP Port 5016
"5017:TCP" = 5017:TCP:*:Enabled:TCP Port 5017
"5018:TCP" = 5018:TCP:*:Enabled:TCP Port 5018
"5019:TCP" = 5019:TCP:*:Enabled:TCP Port 5019
"5020:TCP" = 5020:TCP:*:Enabled:TCP Port 5020
========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\MSN Messenger\livecall.exe" = C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) -- File not found
"C:\Program Files\Lexmark 2500 Series\app4r.exe" = C:\Program Files\Lexmark 2500 Series\App4R.exe:*:Enabled:Lexmark Imaging Studio -- ()
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation)
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger -- (Yahoo! Inc.)
"C:\Program Files\Yahoo!\Messenger\YServer.exe" = C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server -- (Yahoo! Inc.)
"C:\Program Files\Yahoo!\UPnP\yupnpsrv.exe" = C:\Program Files\Yahoo!\UPnP\yupnpsrv.exe:*:Enabled:Yahoo! UPnP AV Media Server -- (Yahoo!)
"C:\Program Files\MSN Messenger\livecall.exe" = C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) -- File not found
"C:\Program Files\Common Files\AOL\Loader\aolload.exe" = C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader -- (AOL LLC)
"C:\Program Files\Lexmark 2500 Series\lxddamon.exe" = C:\Program Files\Lexmark 2500 Series\lxddamon.exe:*:Enabled:Lexmark Device Monitor -- (Lexmark)
"C:\Program Files\Lexmark 2500 Series\App4R.exe" = C:\Program Files\Lexmark 2500 Series\App4R.exe:*:Enabled:Lexmark Imaging Studio -- ()
"C:\WINDOWS\system32\lxddcoms.exe" = C:\WINDOWS\system32\lxddcoms.exe:*:Enabled:Lexmark Communications System -- ( )
"C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe" = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe:*:Enabled:EasyShare -- File not found
"C:\Program Files\AIM6\aim6.exe" = C:\Program Files\AIM6\aim6.exe:*:Enabled:AIM -- File not found
"C:\Program Files\MySpace\IM\MySpaceIM.exe" = C:\Program Files\MySpace\IM\MySpaceIM.exe:*:Enabled:MySpaceIM -- ()
"C:\Program Files\Kodak\Printer Dock\Kodak Wireless Printer Computer Setup Assistant.exe" = C:\Program Files\Kodak\Printer Dock\Kodak Wireless Printer Computer Setup Assistant.exe:*:Enabled:Kodak Wireless Printer Computer Setup Assistant -- File not found
"C:\Program Files\LimeWire\LimeWire.exe" = C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire 4.18.6 -- File not found
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation)
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)
"C:\Documents and Settings\Bea\My Documents\My Music\FrostWire\FrostWire.exe" = C:\Documents and Settings\Bea\My Documents\My Music\FrostWire\FrostWire.exe:*:Enabled:FrostWire -- File not found
"C:\Program Files\FrostWire\FrostWire.exe" = C:\Program Files\FrostWire\FrostWire.exe:*:Enabled:FrostWire -- (FrostWire Group)
"C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddwbgw.exe" = C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddwbgw.exe:*:Disabled: -- ()
"C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddpswx.exe" = C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddpswx.exe:*:Enabled: -- ()
"C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddjswx.exe" = C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddjswx.exe:*:Enabled: -- ()
"C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddtime.exe" = C:\WINDOWS\system32\spool\drivers\w32x86\3\lxddtime.exe:*:Enabled: -- (Lexmark International, Inc.)
"C:\Program Files\Bonjour\mDNSResponder.exe" = C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour -- (Apple Inc.)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"C:\Program Files\Lexmark 2500 Series\lxddmon.exe" = C:\Program Files\Lexmark 2500 Series\lxddmon.exe:*:Enabled: -- ()
========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0AAA9C97-74D4-47CE-B089-0B147EF3553C}" = Windows Live Messenger
"{0B59A227-CAC2-4688-8759-580B4DC5F220}" = BlackBerry Device Software v4.5.0 for the BlackBerry 8330 smartphone
"{1017A80C-6F09-4548-A84D-EDD6AC9525F0}" = Lexmark Toolbar
"{13333239-0A15-4855-BEEB-0232DAA5B7EA}" = BlackBerry Desktop Software 5.0.1
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{153F839F-0A63-41D8-890F-7324C0E13743}" = Broadcom Driver v5.10.79.14_Foxconn Installation Program
"{1D1032D6-2E54-4CA7-ABE5-76DC5D0A3D76}" = SuyinNBCam
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216013F0}" = Java 6 Update 13
"{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java 6 Update 14
"{3248F0A8-6813-11D6-A77B-00B0D0160010}" = Java SE Runtime Environment 6 Update 1
"{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java 6 Update 2
"{3AC54383-31D1-4907-961B-B12CBB1D0AE8}" = MobileMe Control Panel
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3C52E7DA-C431-4239-B66B-1BF703D5B194}" = Windows Live Photo Gallery
"{3F4EC965-28EF-45C3-B063-04B25D4E9679}" = WIDCOMM Bluetooth Software
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{48B3FB4D-CE22-488C-8E9F-24EBB77EAC0F}" = Microsoft Security Essentials
"{4A57592C-FF92-4083-97A9-92783BD5AFB4}" = Acer OrbiCam
"{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
"{4D612FB2-1AE7-4E46-9377-35BB2F06A787}" = Roxio Media Manager
"{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}" = Junk Mail filter update
"{54AA707B-68DA-49A4-9916-68DD670241BD}" = AT&T Yahoo! Music Jukebox
"{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3
"{5F71EB81-C72E-4B28-8D90-FDEECFEBC2DE}" = Drive Image
"{63C1109E-D977-49ED-BCE3-D00D0BF187D6}" = Windows Live Mail
"{689E0AB3-50B2-4E5A-9DCE-6DA9F5BE1314}" = BlackBerry® Media Sync
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6A92E5C5-0578-443D-91F3-92ECE5F2CAE2}" = Windows Live Writer
"{76AC1AEB-1167-4ABC-8861-4E58392A5B7F}" = Acer OrbiCam Software
"{76CD2979-09C0-493A-84B3-8FD97EF4BCEA}" = Windows Live Family Safety
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7B6CF9EB-CB2B-4A1A-81A9-BE1A9044690A}" = TIPCI
"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo Layers Client for Internet Explorer 1.02.28
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90280409-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional with FrontPage
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{995F1E2E-F542-4310-8E1D-9926F5A279B3}" = Windows Live Toolbar
"{A040AC77-C1AA-4CC9-8931-9F648AF178F6}" = VC 9.0 Runtime
"{A0A77CDC-2419-4D5C-AD2C-E09E5926B806}" = Microsoft Antimalware
"{A1BF9950-8CDB-468E-83FA-EACFB00EA7D5}" = Windows Live Sync
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A654A805-41D9-40C7-AA46-4AF04F044D61}" = Adobe® Photoshop® Album Starter Edition 3.2
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AB05F2C8-F608-403b-95E1-FD8ADFACD31E}" = Windows 7 Upgrade Advisor
"{AC76BA86-7AD7-1033-7B44-A92000000001}" = Adobe Reader 9.2
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 6.0 Sprint
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C4124E95-5061-4776-8D5D-E3D931C778E1}" = Microsoft VC9 runtime libraries
"{C427E746-4EC9-4E3C-AACB-C6BB1F714D7F}" = Uniblue DriverScanner 2009
"{C6CA8874-5F22-4AF0-9BE3-016BF299C536}" = Windows Live Essentials
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}" = getPlus® for Adobe
"{D26569C3-9B03-4669-9EC5-9FCF70933688}" = AcerOrbiCam
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
"{E2883E8F-472F-4fb0-9522-AC9BF37916A7}" = Adobe Download Manager
"{E63E34A7-E552-412B-9E40-FD6FC5227ABA}_is1" = Uniblue RegistryBooster 2010
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F439D7AF-03F3-4F8E-AEC4-571BFE977C61}" = iTunes
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{F70D5D8C-C1AF-40B3-9E47-3BB5F19EEA3A}" = Atheros for Acer Driver 5.3.0.45_Foxconn Installation Program
"AcerOrbiCamDrv" = Acer OrbiCam Driver
"Ad-Aware" = Ad-Aware
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe SVG Viewer" = Adobe SVG Viewer 3.0
"Adobe® Photoshop® Album Starter Edition 3.2" = Adobe® Photoshop® Album Starter Edition 3.2
"Agere Systems Soft Modem" = Agere Systems HDA Modem
"ATT-AACE" = ATT-AACE
"BlackBerry_{13333239-0A15-4855-BEEB-0232DAA5B7EA}" = BlackBerry Desktop Software 5.0.1
"Broadcom 802.11b Network Adapter" = Broadcom 802.11 Network Adapter
"Coupon Printer for Windows4.0" = Coupon Printer for Windows
"Digital Editions" = Adobe Digital Editions
"ERUNT_is1" = ERUNT 1.1j
"FrostWire" = FrostWire 4.18.0
"getPlus®_ocx" = getPlus®_ocx
"GridVista" = Acer GridVista
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{5F71EB81-C72E-4B28-8D90-FDEECFEBC2DE}" = PowerQuest Drive Image 2002
"InstallShield_{7B6CF9EB-CB2B-4A1A-81A9-BE1A9044690A}" = Texas Instruments PCIxx21/x515/xx12 drivers.
"Lexmark 2500 Series" = Lexmark 2500 Series
"Lexmark Fax Solutions" = Lexmark Fax Solutions
"LManager" = Launch Manager
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft Security Essentials" = Microsoft Security Essentials
"Mozilla Firefox (3.6)" = Mozilla Firefox (3.6)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSNINST" = MSN
"MySpaceIM" = MySpaceIM
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA Drivers" = NVIDIA Drivers
"Protection Portfolio" = Protection Portfolio 1.0
"QuitKeeper" = Quit Keeper
"RealPlayer 12.0" = RealPlayer
"SprintMusicManagerA" = Sprint music manager
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"System Tweaker_is1" = Uniblue System Tweaker
"Uniblue DriverScanner 2009" = Uniblue DriverScanner 2009
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinLiveSuite_Wave3" = Windows Live Essentials
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"XP TCP/IP Repair_is1" = XP TCP/IP Repair
"Yahoo! Anti-Spy" = Yahoo! Anti-Spy
"Yahoo! Applications" = AT&T Yahoo! Applications
"Yahoo! Extras" = Yahoo! Browser Services
"Yahoo! Search Defender" = Yahoo! Search Protection
========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
========== Last 10 Event Log Errors ========== [ Application Events ]
Error - 2/12/2010 3:37:11 AM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {7B849a69-220F-451E-B3FE-2CB811AF94AE}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 3:37:16 AM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 4:56:44 AM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {7B849a69-220F-451E-B3FE-2CB811AF94AE}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 4:56:49 AM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 5:19:49 AM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {7B849a69-220F-451E-B3FE-2CB811AF94AE}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 5:20:01 AM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 5:52:56 PM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {7B849a69-220F-451E-B3FE-2CB811AF94AE}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 5:52:56 PM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 5:52:56 PM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {7B849a69-220F-451E-B3FE-2CB811AF94AE}
and it will not be loaded. This is most likely caused by a faulty registration.
Error - 2/12/2010 5:52:56 PM | Computer Name = ACER-CELERON-M | Source = Userenv | ID = 1041
Description = Windows cannot query DllName registry entry for {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}
and it will not be loaded. This is most likely caused by a faulty registration.
[ System Events ]
Error - 2/11/2010 11:23:11 PM | Computer Name = ACER-CELERON-M | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 2/11/2010 11:23:13 PM | Computer Name = ACER-CELERON-M | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 2/11/2010 11:23:16 PM | Computer Name = ACER-CELERON-M | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 2/11/2010 11:23:18 PM | Computer Name = ACER-CELERON-M | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 2/11/2010 11:23:21 PM | Computer Name = ACER-CELERON-M | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 2/11/2010 11:23:23 PM | Computer Name = ACER-CELERON-M | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 2/11/2010 11:59:08 PM | Computer Name = ACER-CELERON-M | Source = WPDMTPDriver | ID = 80836
Description = MTP WPD Driver has failed to start. Error 0x80070005.
Error - 2/12/2010 12:00:05 AM | Computer Name = ACER-CELERON-M | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Roxio Hard Drive Watcher
9 service to connect.
Error - 2/12/2010 5:52:56 PM | Computer Name = ACER-CELERON-M | Source = WPDMTPDriver | ID = 80836
Description = MTP WPD Driver has failed to start. Error 0x80070005.
Error - 2/12/2010 5:53:37 PM | Computer Name = ACER-CELERON-M | Source = Service Control Manager | ID = 7009
Description = Timeout (30000 milliseconds) waiting for the Roxio Hard Drive Watcher
9 service to connect.
< End of report >