OTL logfile created on: 02/04/2010 7:14:00 PM - Run 1 OTL by OldTimer - Version 3.1.37.3 Folder = F:\ Windows XP Media Center Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.11) Locale: 00000409 | Country: United States | Language: ENU | Date Format: dd/MM/yyyy 2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 87.00% Memory free 4.00 Gb Paging File | 4.00 Gb Available in Paging File | 98.00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 144.22 Gb Total Space | 94.42 Gb Free Space | 65.47% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded Drive F: | 242.78 Mb Total Space | 181.18 Mb Free Space | 74.63% Space Free | Partition Type: FAT32 G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: D3C1S891 Current User Name: aichinger Logged in as Administrator. Current Boot Mode: SafeMode with Networking Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010/04/02 18:45:46 | 000,555,520 | ---- | M] (OldTimer Tools) -- F:\OTL.scr PRC - [2009/10/27 12:19:46 | 000,895,696 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MPF\MpfSrv.exe PRC - [2009/07/10 00:26:20 | 000,865,832 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSC\mcmscsvc.exe PRC - [2009/04/17 03:35:18 | 000,408,424 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Access Runtime\Office12\WINWORD.EXE PRC - [2009/02/06 06:11:05 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe PRC - [2008/04/13 19:12:39 | 000,507,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe PRC - [2008/04/13 19:12:36 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe PRC - [2008/04/13 19:12:36 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008/04/13 19:12:36 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008/04/13 19:12:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe PRC - [2008/04/13 19:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008/04/13 19:12:16 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe PRC - [2008/04/13 19:12:15 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010/04/02 18:45:46 | 000,555,520 | ---- | M] (OldTimer Tools) -- F:\OTL.scr [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = www.bing.com [binary data] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 3C 0F AD 4A F1 81 CA 01 [binary data] IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:2.8 FF - prefs.js..extensions.enabledItems: smartbookmarksbar@remy.juteau:1.4.3 FF - prefs.js..extensions.enabledItems: foxmarks@kei.com:3.4.6 FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:1.5.4.20081105 FF - HKLM\software\mozilla\Firefox\extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2009/12/23 09:48:13 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/01/09 11:18:20 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.5.7\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/01/09 11:18:13 | 000,000,000 | ---D | M] [2009/01/18 10:53:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\aichinger\Application Data\Mozilla\Extensions [2010/03/20 22:22:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\aichinger\Application Data\Mozilla\Firefox\Profiles\owaqsbd3.default\extensions [2010/01/09 11:21:42 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\aichinger\Application Data\Mozilla\Firefox\Profiles\owaqsbd3.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010/02/08 08:17:31 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Documents and Settings\aichinger\Application Data\Mozilla\Firefox\Profiles\owaqsbd3.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2010/01/09 11:19:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\aichinger\Application Data\Mozilla\Firefox\Profiles\owaqsbd3.default\extensions\foxmarks@kei.com [2010/01/09 11:19:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\aichinger\Application Data\Mozilla\Firefox\Profiles\owaqsbd3.default\extensions\smartbookmarksbar@remy.juteau [2010/01/09 11:18:14 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions O1 HOSTS File: ([2010/03/14 10:40:16 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) O2 - BHO: (HP Print Clips) - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll (Hewlett-Packard Co.) O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (PC Tools Browser Guard BHO) - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.) O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll (Sonic Solutions) O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation) O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll (Google Inc.) O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll () O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc) O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll () O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.) O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AudioDrvEmulator] C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe (Creative Technology Ltd.) O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software) O4 - HKLM..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exe (Corel, Inc.) O4 - HKLM..\Run: [CTDVDDET] C:\Program Files\Creative\Sound Blaster X-Fi\DVDAudio\CTDVDDET.EXE (Creative Technology Ltd) O4 - HKLM..\Run: [CTHelper] C:\WINDOWS\CTHELPER.EXE (Creative Technology Ltd) O4 - HKLM..\Run: [CTxfiHlp] C:\WINDOWS\System32\CTXFIHLP.EXE (Creative Technology Ltd) O4 - HKLM..\Run: [DellSupportCenter] C:\Program Files\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.) O4 - HKLM..\Run: [DMXLauncher] C:\Program Files\Sonic\Product\Media Experience\DMXLauncher.exe () O4 - HKLM..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe ( ) O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe () O4 - HKLM..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe (HP) O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation) O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe (InstallShield Software Corporation) O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation) O4 - HKLM..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.) O4 - HKLM..\Run: [McENUI] C:\Program Files\McAfee\MHN\McENUI.exe (McAfee, Inc.) O4 - HKLM..\Run: [MimBoot] C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mimboot.exe (Musicmatch, Inc.) O4 - HKLM..\Run: [MMTray] C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe (Musicmatch, Inc.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [UpdReg] C:\WINDOWS\Updreg.EXE (Creative Technology Ltd.) O4 - HKLM..\Run: [VolPanel] C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanel.exe (Creative Technology Ltd) O4 - HKCU..\Run: [DellSupport] C:\Program Files\DellSupport\DSAgnt.exe (Gteko Ltd.) O4 - HKCU..\Run: [DellSupportCenter] C:\Program Files\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.) O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallVisualStyle = C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles (Microsoft) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallTheme = C:\WINDOWS\Resources\Themes\Royale.theme () O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 36 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = FF FF FF FF [binary data] O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Access Runtime\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\npjpi160_10.dll (Sun Microsystems, Inc.) O9 - Extra Button: HP Clipbook - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.) O9 - Extra Button: HP Smart Select - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Access Runtime\Office12\REFIEBAR.DLL (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Program Files\Common Files\PC Tools\Lsp\PCTLsp.dll (PC Tools Research Pty Ltd.) O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} http://www.comcastsupport.com/sdcxuser/asp/tgctlsr.cab (SupportSoft Script Runner Class) O16 - DPF: {03F998B2-0E00-11D3-A498-00104B6EB52E} Reg Error: Value error. (Reg Error: Key error.) O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB (PCPitstop Utility) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool) O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab (Reg Error: Key error.) O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1157897299265 (MUWebControl Class) O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab (HP Download Manager) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_10-windows-i586.cab (Java Plug-in 1.6.0_10) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {954F9286-0493-11D3-A9AF-0050041CCD51} http://cbt.isp.state.il.us/ols/download/phnxocx-4-3-30-0.cab (OLS Course Player) O16 - DPF: {9B17FE0E-51F2-4692-8B32-8EFB805FC0E7} http://h30155.www3.hp.com/ediags/dd/install/guidedsolutions.cab (HPObjectInstaller Class) O16 - DPF: {A3256902-51FA-45A0-8A97-FC1143C169D9} http://support.microsoft.com/mats/DiagWebControl.cab (Diagnostics ActiveX WebControl) O16 - DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab (DDRevision Class) O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab (Java Plug-in 1.5.0_10) O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab (Java Plug-in 1.5.0_11) O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Java Plug-in 1.6.0_01) O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05) O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_10-windows-i586.cab (Java Plug-in 1.6.0_10) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_10-windows-i586.cab (Java Plug-in 1.6.0_10) O16 - DPF: {FC6703A7-5B7E-4f58-BE6D-2693AA3906AE} http://h30299.www3.hp.com/ediags/hpnar/en/app/17/install/gtdownhp.cab?1,0,0,94 (HP Content Update) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O18 - Protocol\Handler\a5res - No CLSID value found O18 - Protocol\Handler\a5res\CLSID - No CLSID value found O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll () O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O18 - Protocol\Handler\XBasic - No CLSID value found O18 - Protocol\Handler\XBasic\CLSID - No CLSID value found O18 - Protocol\Handler\XBasic\OLEScript - No CLSID value found O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 () - http://www.avalonequinephotos.com/photocart/imagec.gif O24 - Desktop Components:1 (My Current Home Page) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\aichinger\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\aichinger\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2005/08/16 05:43:04 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009/07/08 16:17:18 | 000,000,090 | ---- | M] () - F:\AUTORUN.INF -- [ FAT32 ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010/04/02 18:13:45 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC [2010/03/21 16:56:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared [2010/03/21 16:49:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Symantec [2010/03/21 16:49:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NSS [2010/03/21 16:49:10 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Security Scan [2010/03/21 16:49:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Norton [2010/03/21 16:49:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NSS\0207000.034 [2010/03/21 16:49:06 | 000,000,000 | ---D | C] -- C:\Program Files\NortonInstaller [2010/03/21 16:49:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NortonInstaller [2010/03/21 16:47:22 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010/03/21 16:47:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes [2010/03/21 16:47:19 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2010/03/20 23:21:21 | 000,000,000 | ---D | C] -- C:\Program Files\Sophos [2010/03/20 22:23:47 | 000,162,640 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys [2010/03/20 22:23:47 | 000,046,672 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys [2010/03/20 22:23:47 | 000,023,376 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys [2010/03/20 22:23:47 | 000,019,024 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys [2010/03/20 22:23:46 | 000,100,432 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys [2010/03/20 22:23:46 | 000,094,800 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys [2010/03/20 22:23:46 | 000,028,880 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys [2010/03/20 22:23:06 | 000,153,184 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe [2010/03/20 22:23:06 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\avastSS.scr [2010/03/20 21:16:30 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\aichinger\Recent [2010/03/20 21:16:24 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2010/03/20 21:14:27 | 001,652,688 | ---- | C] (Threat Expert Ltd.) -- C:\WINDOWS\PCTBDCore.dll [2010/03/20 21:14:27 | 000,165,840 | ---- | C] (Threat Expert Ltd.) -- C:\WINDOWS\PCTBDRes.dll [2010/03/20 21:14:27 | 000,149,456 | ---- | C] (PC Tools) -- C:\WINDOWS\SGDetectionTool.dll [2010/03/20 21:14:10 | 000,233,136 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctgntdi.sys [2010/03/20 21:14:05 | 000,217,032 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTCore.sys [2010/03/20 21:14:05 | 000,088,040 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTAppEvent.sys [2010/03/20 21:14:00 | 000,070,408 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctplsg.sys [2010/03/20 21:13:53 | 000,000,000 | ---D | C] -- C:\Program Files\Spyware Doctor [2010/03/20 21:13:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools [2010/03/20 21:13:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PC Tools [2010/03/20 21:13:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\aichinger\Application Data\PC Tools [2010/03/20 21:13:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP [2010/03/14 17:11:13 | 000,000,000 | ---D | C] -- C:\Program Files\Panda Security [2010/03/14 12:35:17 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro [2010/03/14 12:29:45 | 000,055,184 | ---- | C] (Prevx) -- C:\WINDOWS\System32\PxSecure.dll [2010/03/14 12:29:45 | 000,050,504 | ---- | C] (Prevx) -- C:\WINDOWS\System32\drivers\pxrts.sys [2010/03/14 12:29:45 | 000,030,280 | ---- | C] (Prevx) -- C:\WINDOWS\System32\drivers\pxscan.sys [2010/03/14 12:29:44 | 000,024,368 | ---- | C] (Prevx) -- C:\WINDOWS\System32\drivers\pxkbf.sys [2010/03/14 12:29:44 | 000,000,000 | ---D | C] -- C:\Program Files\Prevx [2010/03/14 12:29:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PrevxCSI [2010/03/14 11:03:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\aichinger\Application Data\Auslogics [2010/03/14 11:03:14 | 000,000,000 | ---D | C] -- C:\Program Files\Auslogics [2010/03/14 11:01:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion [2010/03/14 11:01:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\aichinger\Application Data\Yahoo! [2010/03/14 11:01:03 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo! [2010/03/14 10:28:20 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2010/03/14 10:28:17 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2010/03/14 10:28:17 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2010/03/14 10:28:17 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2010/03/14 10:28:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT [2010/03/14 10:27:45 | 000,000,000 | ---D | C] -- C:\Qoobox [2010/03/14 09:40:29 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy [2010/03/09 22:41:07 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software [2010/03/09 22:41:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Alwil Software [2010/03/09 20:38:47 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2009/10/25 08:05:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\SACore [2009/07/31 03:00:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft [2009/02/25 04:07:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google [2009/02/16 15:10:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google [2008/05/30 15:45:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft [2008/05/28 17:36:04 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft [2008/05/28 17:36:04 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft [2008/05/23 14:34:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\AVG7 [2007/12/27 17:57:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple [2007/07/29 01:47:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\PCHealth [2006/09/09 20:36:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\McAfee.com Personal Firewall [2006/01/24 14:45:10 | 000,033,792 | ---- | C] ( ) -- C:\WINDOWS\System32\a3d.dll [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010/04/02 19:14:47 | 000,000,264 | ---- | M] () -- C:\Documents and Settings\aichinger\Desktop\Shortcut to OTL.scr.lnk [2010/04/02 18:41:44 | 000,022,659 | ---- | M] () -- C:\WINDOWS\System32\Config.MPF [2010/04/02 18:39:23 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010/04/02 18:38:51 | 000,064,980 | ---- | M] () -- C:\WINDOWS\System32\DVCState-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx [2010/04/02 18:38:51 | 000,054,320 | ---- | M] () -- C:\WINDOWS\System32\BMXStateBkp-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx [2010/04/02 18:38:51 | 000,054,320 | ---- | M] () -- C:\WINDOWS\System32\BMXState-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx [2010/04/02 18:38:51 | 000,001,080 | ---- | M] () -- C:\WINDOWS\System32\settingsbkup.sfm [2010/04/02 18:38:51 | 000,001,080 | ---- | M] () -- C:\WINDOWS\System32\settings.sfm [2010/04/02 18:38:28 | 009,961,472 | -H-- | M] () -- C:\Documents and Settings\aichinger\NTUSER.DAT [2010/04/02 18:38:28 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\aichinger\ntuser.ini [2010/04/02 18:27:04 | 000,250,403 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml [2010/04/02 18:07:26 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010/03/21 17:20:10 | 000,526,986 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010/03/21 17:20:10 | 000,445,370 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010/03/21 17:20:10 | 000,072,576 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010/03/21 16:49:36 | 000,000,482 | -H-- | M] () -- C:\WINDOWS\tasks\Norton Security Scan for aichinger.job [2010/03/21 16:49:10 | 000,000,172 | ---- | M] () -- C:\WINDOWS\System32\drivers\NSS\0207000.034\isolate.ini [2010/03/21 16:47:24 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk [2010/03/20 22:23:47 | 000,001,700 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk [2010/03/20 22:23:46 | 000,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010/03/20 21:17:15 | 000,000,534 | ---- | M] () -- C:\Documents and Settings\aichinger\My Documents\cc_20100320_211711.reg [2010/03/20 21:14:03 | 000,001,637 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Spyware Doctor.lnk [2010/03/14 16:31:17 | 000,000,262 | ---- | M] () -- C:\WINDOWS\system.ini [2010/03/14 12:35:17 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\aichinger\Desktop\HijackThis.lnk [2010/03/14 12:29:45 | 000,055,184 | ---- | M] (Prevx) -- C:\WINDOWS\System32\PxSecure.dll [2010/03/14 12:29:45 | 000,050,504 | ---- | M] (Prevx) -- C:\WINDOWS\System32\drivers\pxrts.sys [2010/03/14 12:29:45 | 000,030,280 | ---- | M] (Prevx) -- C:\WINDOWS\System32\drivers\pxscan.sys [2010/03/14 12:29:44 | 000,024,368 | ---- | M] (Prevx) -- C:\WINDOWS\System32\drivers\pxkbf.sys [2010/03/14 12:29:38 | 000,001,399 | ---- | M] () -- C:\WINDOWS\wininit.ini [2010/03/14 12:23:16 | 000,000,036 | ---- | M] () -- C:\Documents and Settings\aichinger\Local Settings\Application Data\housecall.guid.cache [2010/03/14 12:10:54 | 000,000,278 | ---- | M] () -- C:\Documents and Settings\aichinger\Desktop\Shortcut to gx7VDWp6s.lnk [2010/03/14 11:03:15 | 000,000,801 | ---- | M] () -- C:\Documents and Settings\aichinger\Desktop\Auslogics Disk Defrag.lnk [2010/03/14 11:02:22 | 000,001,638 | ---- | M] () -- C:\Documents and Settings\aichinger\My Documents\cc_20100314_110218.reg [2010/03/14 11:01:01 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\aichinger\Desktop\CCleaner.lnk [2010/03/14 10:40:16 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2010/03/14 09:27:08 | 000,024,064 | ---- | M] () -- C:\Documents and Settings\aichinger\My Documents\packing list 1.xls [2010/03/11 23:07:29 | 000,001,887 | ---- | M] () -- C:\WINDOWS\diagwrn.xml [2010/03/11 23:07:29 | 000,001,887 | ---- | M] () -- C:\WINDOWS\diagerr.xml [2010/03/11 21:10:55 | 000,006,630 | ---- | M] () -- C:\Documents and Settings\aichinger\Desktop\Windows Compatibility Report.htm [2010/03/10 11:36:36 | 000,217,032 | ---- | M] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTCore.sys [2010/03/09 20:17:05 | 000,000,164 | ---- | M] () -- C:\Documents and Settings\aichinger\My Documents\cc_20100309_191703.reg [2010/03/09 20:16:44 | 000,037,504 | ---- | M] () -- C:\Documents and Settings\aichinger\My Documents\cc_20100309_191640.reg [2010/03/09 05:24:23 | 000,038,848 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\avastSS.scr [2010/03/09 05:24:05 | 000,153,184 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe [2010/03/09 05:12:54 | 000,046,672 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys [2010/03/09 05:12:33 | 000,162,640 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys [2010/03/09 05:09:08 | 000,023,376 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys [2010/03/09 05:08:41 | 000,100,432 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys [2010/03/09 05:08:38 | 000,094,800 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys [2010/03/09 05:08:30 | 000,019,024 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys [2010/03/09 05:08:15 | 000,028,880 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010/04/02 19:14:47 | 000,000,264 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Shortcut to OTL.scr.lnk [2010/03/21 16:49:14 | 000,000,482 | -H-- | C] () -- C:\WINDOWS\tasks\Norton Security Scan for aichinger.job [2010/03/21 16:49:10 | 000,000,172 | ---- | C] () -- C:\WINDOWS\System32\drivers\NSS\0207000.034\isolate.ini [2010/03/21 16:47:24 | 000,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk [2010/03/20 22:23:47 | 000,001,700 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk [2010/03/20 21:17:13 | 000,000,534 | ---- | C] () -- C:\Documents and Settings\aichinger\My Documents\cc_20100320_211711.reg [2010/03/20 21:14:28 | 000,767,952 | ---- | C] () -- C:\WINDOWS\BDTSupport.dll [2010/03/20 21:14:27 | 001,152,444 | ---- | C] () -- C:\WINDOWS\UDB.zip [2010/03/20 21:14:27 | 000,000,882 | ---- | C] () -- C:\WINDOWS\RegSDImport.xml [2010/03/20 21:14:27 | 000,000,879 | ---- | C] () -- C:\WINDOWS\RegISSImport.xml [2010/03/20 21:14:27 | 000,000,131 | ---- | C] () -- C:\WINDOWS\IDB.zip [2010/03/20 21:14:10 | 000,007,387 | ---- | C] () -- C:\WINDOWS\System32\drivers\pctgntdi.cat [2010/03/20 21:14:05 | 000,007,412 | ---- | C] () -- C:\WINDOWS\System32\drivers\PCTAppEvent.cat [2010/03/20 21:14:05 | 000,007,383 | ---- | C] () -- C:\WINDOWS\System32\drivers\pctcore.cat [2010/03/20 21:14:03 | 000,001,637 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Spyware Doctor.lnk [2010/03/20 21:14:00 | 000,007,383 | ---- | C] () -- C:\WINDOWS\System32\drivers\pctplsg.cat [2010/03/14 12:35:17 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\HijackThis.lnk [2010/03/14 12:23:16 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\aichinger\Local Settings\Application Data\housecall.guid.cache [2010/03/14 12:10:54 | 000,000,278 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Shortcut to gx7VDWp6s.lnk [2010/03/14 11:03:15 | 000,000,801 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Auslogics Disk Defrag.lnk [2010/03/14 11:02:20 | 000,001,638 | ---- | C] () -- C:\Documents and Settings\aichinger\My Documents\cc_20100314_110218.reg [2010/03/14 10:40:31 | 000,002,098 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\User_Guide.lnk [2010/03/14 10:40:31 | 000,000,917 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Stream Lines Product Manager.lnk [2010/03/14 10:40:31 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\XoftSpySE.lnk [2010/03/14 10:40:31 | 000,000,500 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Train Dispatcher.lnk [2010/03/14 10:40:30 | 000,001,394 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Media Center.lnk [2010/03/14 10:40:30 | 000,001,179 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Shortcut to IMG_0887.lnk [2010/03/14 10:40:30 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Outlook Express.lnk [2010/03/14 10:40:30 | 000,000,660 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\KvmSecure.lnk [2010/03/14 10:40:30 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Downloaded Program Updates.lnk [2010/03/14 10:28:20 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe [2010/03/14 10:28:17 | 000,261,632 | ---- | C] () -- C:\WINDOWS\PEV.exe [2010/03/14 10:28:17 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2010/03/14 10:28:17 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2010/03/14 10:28:17 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2010/03/11 21:10:56 | 000,006,630 | ---- | C] () -- C:\Documents and Settings\aichinger\Desktop\Windows Compatibility Report.htm [2010/03/11 20:38:57 | 000,001,887 | ---- | C] () -- C:\WINDOWS\diagwrn.xml [2010/03/11 20:38:57 | 000,001,887 | ---- | C] () -- C:\WINDOWS\diagerr.xml [2010/03/09 20:17:04 | 000,000,164 | ---- | C] () -- C:\Documents and Settings\aichinger\My Documents\cc_20100309_191703.reg [2010/03/09 20:16:42 | 000,037,504 | ---- | C] () -- C:\Documents and Settings\aichinger\My Documents\cc_20100309_191640.reg [2009/12/20 14:01:55 | 000,050,432 | ---- | C] () -- C:\WINDOWS\System32\claptn.ini [2009/12/20 14:01:55 | 000,003,072 | ---- | C] () -- C:\WINDOWS\CTXFIRES.DLL [2009/08/03 01:21:54 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll [2009/08/03 01:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2009/08/03 01:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll [2009/08/03 01:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll [2009/08/03 01:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2009/08/03 01:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll [2009/08/03 01:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll [2009/08/03 01:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll [2009/08/03 01:21:52 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll [2009/08/03 01:21:52 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll [2009/06/27 10:41:24 | 000,004,972 | ---- | C] () -- C:\WINDOWS\hpdj5100.ini [2008/07/31 16:51:00 | 000,008,704 | ---- | C] () -- C:\Documents and Settings\aichinger\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2008/06/22 03:02:30 | 000,000,118 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI [2008/01/09 17:34:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2008/01/01 17:56:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\hpqEmlSz.INI [2008/01/01 16:42:27 | 000,011,440 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log [2007/10/06 18:06:56 | 000,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini [2007/07/12 11:34:32 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini [2007/01/22 08:33:00 | 000,000,754 | ---- | C] () -- C:\WINDOWS\wordpad.INI [2006/12/25 13:57:04 | 000,001,778 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache [2006/12/15 07:01:39 | 000,000,060 | ---- | C] () -- C:\WINDOWS\bi_group.ini [2006/09/17 08:48:51 | 000,000,088 | RHS- | C] () -- C:\WINDOWS\System32\987A75E34A.sys [2006/09/16 15:09:58 | 000,121,562 | ---- | C] () -- C:\WINDOWS\System32\PicFormat32.dll [2006/09/13 19:07:01 | 000,004,184 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys [2006/09/13 19:07:01 | 000,000,104 | ---- | C] () -- C:\WINDOWS\System32\4AE3757A98.sys [2006/09/10 14:44:59 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2006/09/09 21:34:28 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\aichinger\Local Settings\Application Data\fusioncache.dat [2006/01/24 15:24:00 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini [2006/01/24 15:12:55 | 000,001,399 | ---- | C] () -- C:\WINDOWS\wininit.ini [2006/01/24 14:45:12 | 000,000,194 | ---- | C] () -- C:\WINDOWS\System32\KILL.INI [2006/01/24 14:45:12 | 000,000,190 | ---- | C] () -- C:\WINDOWS\System32\ctzapxx.ini [2006/01/24 14:45:10 | 000,038,400 | ---- | C] () -- C:\WINDOWS\System32\CTBURST.DLL [2006/01/24 14:45:08 | 000,049,274 | ---- | C] () -- C:\WINDOWS\System32\claptn32.ini [2006/01/24 14:43:42 | 000,000,387 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI [2005/08/16 05:37:24 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini [2005/08/05 15:01:54 | 000,235,008 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2004/11/30 04:10:00 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\besched.dll [2003/11/07 19:43:40 | 000,000,176 | ---- | C] () -- C:\Program Files\hpsfx.ini [2003/10/02 01:00:00 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\lockout.dll [2003/10/02 01:00:00 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\lockres.dll [2003/07/12 22:40:28 | 000,217,088 | ---- | C] () -- C:\WINDOWS\System32\SAWZipNG.dll [2002/03/13 00:46:00 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\zlib.dll [1999/01/22 20:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL [1998/08/16 06:00:00 | 000,004,096 | ---- | C] () -- C:\WINDOWS\System32\sysres.dll [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 158 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2 < End of report >