OTL logfile created on: 1/21/2011 8:03:35 PM - Run 1 OTL by OldTimer - Version 3.2.20.3 Folder = C:\Users\Wayne Wagner\Downloads 64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 7.0.6002.18005) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 4.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 48.00% Memory free 8.00 Gb Paging File | 6.00 Gb Available in Paging File | 68.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 285.51 Gb Total Space | 122.70 Gb Free Space | 42.97% Space Free | Partition Type: NTFS Drive D: | 12.58 Gb Total Space | 1.46 Gb Free Space | 11.63% Space Free | Partition Type: NTFS Computer Name: WAYNEWAGNER-PC | User Name: Wayne Wagner | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011/01/21 20:02:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Wayne Wagner\Downloads\OTL.exe PRC - [2010/12/11 21:05:30 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe PRC - [2010/11/23 13:34:16 | 000,724,048 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe PRC - [2010/11/23 13:34:14 | 006,128,208 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe PRC - [2010/11/23 10:35:01 | 000,928,496 | ---- | M] (Lavasoft) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe PRC - [2010/11/23 10:34:59 | 001,375,992 | ---- | M] (Lavasoft) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe PRC - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe PRC - [2010/10/22 04:57:54 | 002,745,696 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\avgtray.exe PRC - [2010/09/22 17:11:26 | 000,640,440 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe PRC - [2010/09/18 19:23:30 | 002,969,496 | ---- | M] () -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe PRC - [2010/06/29 14:37:30 | 000,217,088 | ---- | M] (Code 42 Software, Inc.) -- C:\Program Files\CrashPlan\CrashPlanTray.exe PRC - [2009/11/01 09:09:31 | 000,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe PRC - [2009/08/10 05:39:10 | 000,273,920 | ---- | M] (Crawler, LLC) -- C:\Program Files (x86)\SiteRanker\SiteRankTray.exe PRC - [2009/07/26 17:43:38 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) -- C:\Windows\SysWOW64\atashost.exe PRC - [2009/02/09 17:14:02 | 000,296,320 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe PRC - [2009/02/09 17:14:02 | 000,116,096 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe PRC - [2009/02/09 17:13:36 | 000,206,120 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\TVAgent.exe PRC - [2009/02/09 08:34:32 | 000,143,360 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files (x86)\Brother\Brmfcmon\BrMfimon.exe PRC - [2008/12/25 15:41:20 | 000,189,736 | ---- | M] (CyberLink) -- C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe PRC - [2008/12/25 15:41:16 | 001,316,136 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe PRC - [2008/12/17 19:11:40 | 000,365,952 | ---- | M] () -- C:\Program Files (x86)\SMINST\BLService.exe PRC - [2008/11/28 20:04:26 | 001,148,200 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe PRC - [2008/11/12 18:59:30 | 001,122,304 | R--- | M] (Brother Industries, Ltd.) -- C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe PRC - [2008/10/24 10:44:34 | 000,872,448 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe PRC - [2008/07/09 22:07:00 | 000,029,984 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011/01/21 20:02:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Wayne Wagner\Downloads\OTL.exe MOD - [2010/08/31 10:43:52 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2010/09/24 12:17:16 | 000,467,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ZuneWlanCfgSvc.exe -- (ZuneWlanCfgSvc) SRV:[b]64bit:[/b] - [2010/09/24 12:17:16 | 000,306,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Zune\WMZuneComm.exe -- (WMZuneComm) SRV:[b]64bit:[/b] - [2010/09/24 12:17:10 | 008,251,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Zune\ZuneNss.exe -- (ZuneNetworkSvc) SRV:[b]64bit:[/b] - [2010/06/29 14:39:05 | 000,222,720 | ---- | M] (CrashPlan) [Auto | Running] -- C:\Program Files\CrashPlan\CrashPlanService.exe -- (CrashPlanService) SRV:[b]64bit:[/b] - [2008/10/26 15:49:46 | 000,279,040 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_8aadd48d\STacSV64.exe -- (STacSV) SRV:[b]64bit:[/b] - [2008/06/27 10:53:06 | 000,089,088 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_8aadd48d\AESTSr64.exe -- (AESTFilters) SRV:[b]64bit:[/b] - [2008/03/18 18:25:40 | 000,023,040 | ---- | M] (Hewlett-Packard Corporation) [Auto | Running] -- C:\Windows\SysNative\Hpservice.exe -- (hpsrv) SRV:[b]64bit:[/b] - [2008/03/18 07:26:56 | 000,015,872 | ---- | M] (Agere Systems) [Auto | Running] -- C:\Windows\SysNative\agr64svc.exe -- (AgereModemAudio) SRV:[b]64bit:[/b] - [2008/01/20 21:47:32 | 000,383,544 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2010/11/23 13:34:14 | 006,128,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent) SRV - [2010/11/23 10:34:59 | 001,375,992 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service) SRV - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe -- (avgwd) SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010/02/10 08:33:30 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2009/07/26 17:43:38 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\atashost.exe -- (atashost) SRV - [2009/03/29 23:42:14 | 000,066,368 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2009/02/09 17:14:02 | 000,296,320 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe -- (TVCapSvc) TV Background Capture Service (TVBCS) SRV - [2009/02/09 17:14:02 | 000,116,096 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe -- (TVSched) TV Task Scheduler (TVTS) SRV - [2008/12/17 19:11:40 | 000,365,952 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\SMINST\BLService.exe -- (Recovery Service for Windows) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2010/12/08 04:12:36 | 000,308,304 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\avgldx64.sys -- (Avgldx64) DRV:[b]64bit:[/b] - [2010/11/12 13:19:38 | 000,382,032 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\avgtdia.sys -- (Avgtdia) DRV:[b]64bit:[/b] - [2010/09/13 15:27:46 | 000,027,216 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH) DRV:[b]64bit:[/b] - [2010/09/07 03:48:56 | 000,041,040 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\DRIVERS\avgmfx64.sys -- (Avgmfx64) DRV:[b]64bit:[/b] - [2010/09/07 03:48:50 | 000,030,288 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\DRIVERS\avgrkx64.sys -- (Avgrkx64) DRV:[b]64bit:[/b] - [2010/08/19 20:42:38 | 000,035,920 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\AVGIDSFilter.Sys -- (AVGIDSFilter) DRV:[b]64bit:[/b] - [2010/08/19 20:42:36 | 000,133,712 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\AVGIDSDriver.Sys -- (AVGIDSDriver) DRV:[b]64bit:[/b] - [2010/07/06 12:28:45 | 000,069,152 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\SysNative\DRIVERS\Lbd.sys -- (Lbd) DRV:[b]64bit:[/b] - [2010/01/31 18:59:39 | 000,052,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\PxHlpa64.sys -- (PxHlpa64) DRV:[b]64bit:[/b] - [2009/09/30 19:51:42 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\wpdusb.sys -- (WpdUsb) DRV:[b]64bit:[/b] - [2009/08/28 18:42:52 | 000,049,152 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\usbaapl64.sys -- (USBAAPL64) DRV:[b]64bit:[/b] - [2009/05/24 05:36:27 | 001,526,776 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\bcmwl664.sys -- (BCM43XX) DRV:[b]64bit:[/b] - [2009/04/29 07:48:32 | 000,018,432 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\HpqKbFiltr.sys -- (HpqKbFiltr) DRV:[b]64bit:[/b] - [2008/10/28 03:33:30 | 008,039,808 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\igdkmd64.sys -- (igfx) DRV:[b]64bit:[/b] - [2008/10/26 15:50:58 | 000,469,504 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\stwrt64.sys -- (STHDA) DRV:[b]64bit:[/b] - [2008/09/22 00:49:58 | 000,126,464 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcHdmi.sys -- (IntcHdmiAddService) Intel(R) DRV:[b]64bit:[/b] - [2008/09/19 19:43:58 | 000,068,096 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTSTOR64.SYS -- (RTSTOR) DRV:[b]64bit:[/b] - [2008/09/04 12:48:00 | 000,064,000 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\enecir.sys -- (enecir) DRV:[b]64bit:[/b] - [2008/08/06 11:26:08 | 000,174,592 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\Rtlh64.sys -- (RTL8169) DRV:[b]64bit:[/b] - [2008/07/24 11:48:10 | 000,250,928 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\SynTP.sys -- (SynTP) DRV:[b]64bit:[/b] - [2008/03/27 14:10:56 | 000,026,984 | ---- | M] (Hewlett-Packard Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\hpdskflt.sys -- (hpdskflt) DRV:[b]64bit:[/b] - [2008/03/27 14:10:14 | 000,040,296 | ---- | M] (Hewlett-Packard Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\Accelerometer.sys -- (Accelerometer) DRV:[b]64bit:[/b] - [2008/03/21 07:47:14 | 001,253,376 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\agrsm64.sys -- (AgereSoftModem) DRV:[b]64bit:[/b] - [2008/01/20 21:47:25 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\serscan.sys -- (StillCam) DRV:[b]64bit:[/b] - [2008/01/20 21:46:57 | 003,154,432 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\NETw3v64.sys -- (NETw3v64) Intel(R) DRV:[b]64bit:[/b] - [2008/01/20 21:46:55 | 000,111,104 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\sdbus.sys -- (sdbus) DRV:[b]64bit:[/b] - [2006/10/03 20:45:36 | 000,273,408 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\yk60x64.sys -- (yukonx64) DRV:[b]64bit:[/b] - [2006/09/18 16:36:24 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\Wbem\ntfs.mof -- (Ntfs) DRV - [2010/11/04 07:18:39 | 000,017,440 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys -- (Lavasoft Kernexplorer) DRV - [2008/11/28 20:04:24 | 000,146,928 | ---- | M] (CyberLink Corp.) [2009/05/24 04:04:45] [Kernel | Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl -- ({55662437-DA8C-40c0-AADA-2C816A897A49}) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.google.com/" FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 FF - prefs.js..extensions.enabledItems: runtime@panda3d.org:1.0.1 FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:10.0.0.1178 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - HKLM\software\mozilla\Firefox\Extensions\\avg@igeared: C:\Program Files (x86)\AVG\AVG10\Toolbar\Firefox\avg@igeared FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files (x86)\AVG\AVG10\Firefox\ [2011/01/20 22:37:40 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010/12/11 21:05:32 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/01/20 22:37:45 | 000,000,000 | ---D | M] [2011/01/11 12:06:31 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions [2010/05/11 19:34:17 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010/09/07 20:51:19 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010/12/02 18:53:05 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2011/01/20 22:37:45 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011/01/20 22:37:40 | 000,000,000 | ---D | M] (AVG Safe Search) -- C:\PROGRAM FILES (X86)\AVG\AVG10\FIREFOX [2009/11/01 09:10:26 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- C:\PROGRAM FILES (X86)\REAL\REALPLAYER\BROWSERRECORD\FIREFOX\EXT [2010/07/07 16:58:36 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\USERS\WAYNE WAGNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\0B9WG7O0.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B} [2010/05/15 16:36:38 | 000,000,000 | ---D | M] (Panda3D Game Engine Plug-In) -- C:\USERS\WAYNE WAGNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\0B9WG7O0.DEFAULT\EXTENSIONS\RUNTIME@PANDA3D.ORG [2010/11/12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll O1 HOSTS File: ([2006/09/18 16:37:24 | 000,000,761 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2:[b]64bit:[/b] - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found. O2 - BHO: () - {11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5} - C:\Program Files (x86)\SiteRanker\SiteRank.dll (Crawler, LLC) O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files (x86)\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (no name) - {99E00A4C-D35E-11DD-BA95-9B6A56D89593} - No CLSID value found. O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O3 - HKU\S-1-5-21-1463916579-3978265779-3180963287-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe (Hewlett-Packard) O4:[b]64bit:[/b] - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.) O4:[b]64bit:[/b] - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [Zune Launcher] c:\Program Files\Zune\ZuneLauncher.exe (Microsoft Corporation) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.) O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (Apple Inc.) O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [BrMfcWnd] C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [CLMLServer for HP TouchSmart] C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe (CyberLink) O4 - HKLM..\Run: [ControlCenter3] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [DVDAgent] C:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe (CyberLink Corp.) O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard) O4 - HKLM..\Run: [IndexSearch] C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [PaperPort PTD] C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [PPort11reminder] C:\Program Files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [SiteRanker] C:\Program Files (x86)\SiteRanker\SiteRankTray.exe (Crawler, LLC) O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.) O4 - HKLM..\Run: [TSMAgent] C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe (CyberLink Corp.) O4 - HKLM..\Run: [TVAgent] C:\Program Files (x86)\Hewlett-Packard\Media\TV\TVAgent.exe (CyberLink Corp.) O4 - HKLM..\Run: [UCam_Menu] C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [UpdatePDIRShortCut] C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [UpdatePSTShortCut] C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-21-1463916579-3978265779-3180963287-1000..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O8:[b]64bit:[/b] - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8:[b]64bit:[/b] - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8:[b]64bit:[/b] - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8:[b]64bit:[/b] - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O15 - HKU\.DEFAULT\..Trusted Ranges: Range1 ([http] in Local intranet) O15 - HKU\S-1-5-18\..Trusted Ranges: Range1 ([http] in Local intranet) O15 - HKU\S-1-5-21-1463916579-3978265779-3180963287-1000\..Trusted Ranges: Range1 ([http] in Local intranet) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 167.206.254.1 167.206.254.2 O18:[b]64bit:[/b] - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgppa.dll (AVG Technologies CZ, s.r.o.) O18:[b]64bit:[/b] - Protocol\Handler\msdaipp - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found O18 - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - File not found O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation) O24 - Desktop WallPaper: C:\Users\Wayne Wagner\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg O24 - Desktop BackupWallPaper: C:\Users\Wayne Wagner\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{7f5c4191-7a20-11de-9ebc-00238bc93da1}\Shell\AutoRun\command - "" = Connect.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (lsdelete) - File not found O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG10\avgchsva.exe /sync) - C:\Program Files (x86)\AVG\AVG10\avgchsva.exe (AVG Technologies CZ, s.r.o.) O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG10\avgrsa.exe /sync /restart) - C:\Program Files (x86)\AVG\AVG10\avgrsa.exe (AVG Technologies CZ, s.r.o.) O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011/01/21 19:40:00 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1463916579-3978265779-3180963287-1000UA.job [2011/01/21 19:37:28 | 104,678,438 | ---- | M] () -- C:\Windows\SysNative\drivers\AVG\incavi.avm [2011/01/21 19:31:54 | 000,003,216 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2011/01/21 19:31:54 | 000,003,216 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2011/01/21 19:31:45 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011/01/21 06:40:05 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1463916579-3978265779-3180963287-1000Core.job [2011/01/12 15:42:04 | 000,021,517 | ---- | M] () -- C:\Users\Wayne Wagner\Documents\luis mancia reexam.docx [2011/01/09 16:12:01 | 000,000,362 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForWayne Wagner.job [2010/12/28 09:36:54 | 000,006,080 | ---- | M] () -- C:\Users\Wayne Wagner\AppData\Local\d3d9caps.dat [2010/12/28 08:19:26 | 000,000,860 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2011.lnk [2010/12/27 20:25:28 | 000,034,304 | ---- | M] () -- C:\Users\Wayne Wagner\Documents\ana ruiz initial.doc [2010/12/27 17:34:36 | 000,039,424 | ---- | M] () -- C:\Users\Wayne Wagner\Documents\ashly syms initial.doc [2010/12/27 15:50:37 | 000,002,637 | ---- | M] () -- C:\Users\Wayne Wagner\Desktop\Microsoft Word 2010.lnk [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011/01/12 15:39:13 | 000,021,517 | ---- | C] () -- C:\Users\Wayne Wagner\Documents\luis mancia reexam.docx [2010/12/27 17:47:14 | 000,034,304 | ---- | C] () -- C:\Users\Wayne Wagner\Documents\ana ruiz initial.doc [2010/12/27 16:02:25 | 000,039,424 | ---- | C] () -- C:\Users\Wayne Wagner\Documents\ashly syms initial.doc [2010/12/27 15:50:32 | 000,002,637 | ---- | C] () -- C:\Users\Wayne Wagner\Desktop\Microsoft Word 2010.lnk [2010/11/28 16:00:15 | 000,000,552 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\d3d8caps.dat [2010/09/18 22:56:13 | 000,000,100 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\fusioncache.dat [2010/09/18 22:54:46 | 000,721,824 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010/07/31 21:07:24 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2010/05/09 07:59:21 | 000,000,000 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\prvlcl.dat [2010/04/24 08:16:39 | 000,000,485 | ---- | C] () -- \updatedatfix.log [2010/03/23 15:23:51 | 000,000,426 | ---- | C] () -- C:\Windows\BRWMARK.INI [2010/03/23 15:21:30 | 000,000,233 | ---- | C] () -- C:\Windows\Brpfx04a.ini [2010/03/23 15:21:30 | 000,000,093 | ---- | C] () -- C:\Windows\brpcfx.ini [2010/03/23 14:37:11 | 000,045,056 | ---- | C] () -- C:\Windows\SysWow64\BRTCPCON.DLL [2010/03/23 14:37:11 | 000,000,114 | ---- | C] () -- C:\Windows\SysWow64\BRLMW03A.INI [2010/03/23 14:37:10 | 000,000,066 | ---- | C] () -- C:\Windows\Brfaxrx.ini [2010/03/23 14:37:08 | 000,106,496 | ---- | C] () -- C:\Windows\SysWow64\BrMuSNMP.dll [2010/03/23 14:28:05 | 000,031,767 | ---- | C] () -- C:\Windows\maxlink.ini [2010/03/18 07:43:44 | 000,117,248 | ---- | C] () -- C:\Windows\SysWow64\EhStorAuthn.dll [2010/03/18 07:42:19 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2010/03/11 21:06:47 | 000,000,732 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\d3d9caps64.dat [2009/10/18 07:29:15 | 000,191,407 | ---- | C] () -- \aaw7boot.log [2009/07/29 19:59:39 | 000,000,512 | ---- | C] () -- \lxbm.log [2009/07/24 07:51:31 | 000,000,405 | ---- | C] () -- C:\Windows\Lexstat.ini [2009/07/03 10:49:32 | 000,000,000 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\FnF4.txt [2009/06/28 08:27:01 | 000,006,080 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\d3d9caps.dat [2009/06/25 21:28:03 | 000,071,168 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009/06/25 20:42:49 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI [2009/06/25 18:02:29 | 000,000,000 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\QSwitch.txt [2009/06/25 18:02:29 | 000,000,000 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\DSwitch.txt [2009/06/25 18:02:29 | 000,000,000 | ---- | C] () -- C:\Users\Wayne Wagner\AppData\Local\AtStart.txt [2009/06/25 18:02:20 | 000,163,407 | ---- | C] () -- C:\ProgramData\HPWALog.txt [2009/05/24 06:14:24 | 000,000,105 | ---- | C] () -- C:\ProgramData\{d36dd326-7280-11d8-97c8-000129760cbe}.log [2009/05/24 06:14:15 | 000,000,032 | ---- | C] () -- C:\ProgramData\{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}.log [2009/05/24 06:13:41 | 000,000,032 | ---- | C] () -- C:\ProgramData\{9867824A-C86D-4A83-8F3C-E7A86BE0AFD3}.log [2009/05/24 06:13:12 | 000,000,032 | ---- | C] () -- C:\ProgramData\{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}.log [2009/05/24 06:11:56 | 000,000,032 | ---- | C] () -- C:\ProgramData\{4FC670EB-5F02-4B07-90DB-022B86BFEFD0}.log [2009/05/24 05:23:40 | 241,438,719 | -HS- | C] () -- [2009/01/13 11:52:55 | 000,000,109 | ---- | C] () -- C:\ProgramData\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log [2009/01/13 11:46:32 | 000,000,110 | ---- | C] () -- C:\ProgramData\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log [2009/01/13 11:44:32 | 000,000,105 | ---- | C] () -- C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log [2009/01/13 11:43:02 | 000,000,107 | ---- | C] () -- C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log [2008/06/09 01:01:12 | 000,333,257 | RHS- | C] () -- \bootmgr [2008/01/20 21:50:05 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini [2006/12/02 02:37:14 | 000,904,704 | ---- | C] () -- \msdia80.dll [color=#E56717]========== LOP Check ==========[/color] [2009/07/24 07:51:57 | 000,000,000 | ---D | M] -- C:\Users\All Users\4200 Series [2009/07/24 07:51:58 | 000,000,000 | ---D | M] -- C:\Users\All Users\4200Series [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\All Users\Application Data [2010/12/02 18:14:45 | 000,000,000 | ---D | M] -- C:\Users\All Users\AVG Security Toolbar(221) [2010/12/02 19:37:51 | 000,000,000 | ---D | M] -- C:\Users\All Users\AVG10 [2010/10/24 06:32:40 | 000,000,000 | ---D | M] -- C:\Users\All Users\avg9 [2010/04/29 18:50:49 | 000,000,000 | ---D | M] -- C:\Users\All Users\Cisco Systems [2010/10/26 07:30:05 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Common Files [2010/12/07 07:48:17 | 000,000,000 | ---D | M] -- C:\Users\All Users\CrashPlan [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\All Users\Desktop [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\All Users\Documents [2009/11/14 17:03:28 | 000,000,000 | ---D | M] -- C:\Users\All Users\EmailNotifier [2010/01/31 19:08:21 | 000,000,000 | ---D | M] -- C:\Users\All Users\eSellerate [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\All Users\Favorites [2010/01/31 19:30:58 | 000,000,000 | ---D | M] -- C:\Users\All Users\LightScribe [2010/05/29 19:41:13 | 000,000,000 | ---D | M] -- C:\Users\All Users\Ludia [2010/12/02 19:26:06 | 000,000,000 | ---D | M] -- C:\Users\All Users\MFAData [2009/09/27 12:12:28 | 000,000,000 | ---D | M] -- C:\Users\All Users\PlayFirst [2011/01/20 22:37:46 | 000,000,000 | ---D | M] -- C:\Users\All Users\PMB Files [2009/09/13 12:48:27 | 000,000,000 | ---D | M] -- C:\Users\All Users\PopCap Games [2010/03/18 10:21:07 | 000,000,000 | ---D | M] -- C:\Users\All Users\Rosetta Stone [2010/03/18 09:11:01 | 000,000,000 | ---D | M] -- C:\Users\All Users\RosettaStoneLtdBackup [2010/12/14 22:06:00 | 000,000,000 | ---D | M] -- C:\Users\All Users\ScanSoft [2010/08/08 18:57:40 | 000,000,000 | ---D | M] -- C:\Users\All Users\SmartSound Software Inc [2009/07/25 17:58:17 | 000,000,000 | ---D | M] -- C:\Users\All Users\Sony Online Entertainment [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\All Users\Start Menu [2010/08/01 09:33:45 | 000,000,000 | ---D | M] -- C:\Users\All Users\Temp [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\All Users\Templates [2009/07/26 17:43:33 | 000,000,000 | ---D | M] -- C:\Users\All Users\WebEx [2010/05/29 19:40:43 | 000,000,000 | ---D | M] -- C:\Users\All Users\WildTangent [2009/10/24 15:02:20 | 000,000,000 | ---D | M] -- C:\Users\All Users\{0DD0EEEE-2A7C-411C-9243-1AE62F445FC3} [2009/01/13 11:38:27 | 000,000,000 | ---D | M] -- C:\Users\All Users\{174892B1-CBE7-44F5-86FF-AB555EFD73A3} [2010/07/11 17:38:46 | 000,000,000 | -H-D | M] -- C:\Users\All Users\{65893B95-F47B-4483-B883-86BA181E9B54} [2006/11/02 08:33:54 | 000,000,000 | -H-D | M] -- C:\Users\Default\AppData [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\Application Data [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\Cookies [2006/11/02 07:34:32 | 000,000,000 | R--D | M] -- C:\Users\Default\Desktop [2006/11/02 10:42:17 | 000,000,000 | R--D | M] -- C:\Users\Default\Documents [2006/11/02 07:34:32 | 000,000,000 | R--D | M] -- C:\Users\Default\Downloads [2009/06/25 17:50:16 | 000,000,000 | R--D | M] -- C:\Users\Default\Favorites [2006/11/02 07:34:32 | 000,000,000 | R--D | M] -- C:\Users\Default\Links [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\Local Settings [2006/11/02 07:34:32 | 000,000,000 | R--D | M] -- C:\Users\Default\Music [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\My Documents [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\NetHood [2006/11/02 07:34:32 | 000,000,000 | R--D | M] -- C:\Users\Default\Pictures [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\PrintHood [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\Recent [2006/11/02 07:34:32 | 000,000,000 | ---D | M] -- C:\Users\Default\Saved Games [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\SendTo [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\Start Menu [2006/11/02 10:42:17 | 000,000,000 | -HSD | M] -- C:\Users\Default\Templates [2006/11/02 07:34:32 | 000,000,000 | R--D | M] -- C:\Users\Default\Videos [2011/01/20 22:37:46 | 000,000,000 | RH-D | M] -- C:\Users\Public\Desktop [2010/05/12 17:57:17 | 000,000,000 | R--D | M] -- C:\Users\Public\Documents [2010/12/02 21:56:34 | 000,000,000 | R--D | M] -- C:\Users\Public\Downloads [2006/11/02 07:34:32 | 000,000,000 | RH-D | M] -- C:\Users\Public\Favorites [2009/06/26 08:30:09 | 000,000,000 | R--D | M] -- C:\Users\Public\Music [2006/11/02 10:25:49 | 000,000,000 | R--D | M] -- C:\Users\Public\Pictures [2006/11/02 10:07:25 | 000,000,000 | ---D | M] -- C:\Users\Public\Recorded TV [2006/11/02 10:25:49 | 000,000,000 | R--D | M] -- C:\Users\Public\Videos [2009/06/25 17:48:07 | 000,000,000 | -H-D | M] -- C:\Users\Wayne Wagner\AppData [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\Application Data [2009/06/25 18:01:53 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Contacts [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\Cookies [2011/01/20 22:37:46 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Desktop [2011/01/12 20:40:06 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Documents [2011/01/21 20:02:28 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Downloads [2010/03/07 16:16:37 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Favorites [2011/01/16 08:25:01 | 000,000,000 | ---D | M] -- C:\Users\Wayne Wagner\Incomplete [2010/02/10 20:45:00 | 000,000,000 | ---D | M] -- C:\Users\Wayne Wagner\Library [2009/06/25 18:02:08 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Links [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\Local Settings [2011/01/21 06:47:54 | 000,000,000 | ---D | M] -- C:\Users\Wayne Wagner\Music [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\My Documents [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\NetHood [2010/11/20 05:52:19 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Pictures [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\PrintHood [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\Recent [2010/01/18 12:30:33 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Saved Games [2009/06/25 18:02:08 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Searches [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\SendTo [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\Start Menu [2009/06/25 17:47:47 | 000,000,000 | -HSD | M] -- C:\Users\Wayne Wagner\Templates [2010/10/10 16:21:21 | 000,000,000 | R--D | M] -- C:\Users\Wayne Wagner\Videos [2010/12/14 10:18:32 | 000,000,000 | ---D | M] -- C:\Users\Wayne Wagner\Wayne's Px [2011/01/21 06:59:11 | 000,032,648 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 171 bytes -> C:\Users\All Users\Temp:09B199F1 @Alternate Data Stream - 171 bytes -> C:\ProgramData\Temp:09B199F1 < End of report >