OTL logfile created on: 5/27/2011 11:32:05 AM - Run 2 OTL by OldTimer - Version 3.2.23.0 Folder = C:\Documents and Settings\Graham Sorgard\Desktop Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1.98 Gb Total Physical Memory | 1.28 Gb Available Physical Memory | 64.66% Memory free 3.81 Gb Paging File | 3.25 Gb Available in Paging File | 85.17% Paging File free Paging file location(s): C:\pagefile.sys 0 0 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 94.12 Gb Total Space | 37.60 Gb Free Space | 39.95% Space Free | Partition Type: NTFS Computer Name: GRAHAM-2E03B74A | User Name: Graham Sorgard | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011/05/27 11:30:43 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Graham Sorgard\Desktop\OTL.exe PRC - [2010/11/17 12:40:26 | 000,473,616 | ---- | M] () -- C:\Program Files\PdaNet for Android\PdaNetPC.exe PRC - [2010/08/19 02:12:35 | 001,367,552 | ---- | M] () -- C:\Program Files\Spytech Software\Spytech SpyAgent\sysdiag.exe PRC - [2010/08/18 01:08:59 | 000,025,600 | ---- | M] () -- C:\Program Files\Spytech Software\Spytech SpyAgent\services.exe PRC - [2010/04/13 15:45:05 | 000,069,632 | -H-- | M] () -- C:\Program Files\Spytech Software\Spytech SpyAgent\svchost.exe PRC - [2010/03/08 01:56:53 | 000,524,632 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe PRC - [2010/03/08 01:56:51 | 001,029,456 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe PRC - [2010/01/15 06:49:20 | 000,255,536 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe PRC - [2009/11/15 00:40:46 | 000,427,296 | ---- | M] (Apple Inc.) -- C:\Program Files\Boot Camp\KbdMgr.exe PRC - [2009/11/15 00:40:46 | 000,136,504 | ---- | M] () -- C:\WINDOWS\system32\AppleOSSMgr.exe PRC - [2009/11/15 00:40:46 | 000,099,640 | ---- | M] (Apple Inc.) -- C:\WINDOWS\system32\AppleTimeSrv.exe PRC - [2008/12/19 13:17:24 | 000,333,088 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe PRC - [2008/10/08 16:30:12 | 000,091,648 | ---- | M] () -- C:\WINDOWS\system32\SupportAppXL\AutoDect.exe PRC - [2008/04/15 16:31:18 | 000,147,456 | ---- | M] (Apple Inc.) -- C:\WINDOWS\system32\IRW.exe PRC - [2008/04/13 18:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007/11/26 14:50:52 | 000,598,856 | ---- | M] (Webroot Software, Inc.) -- C:\Program Files\Webroot\Washer\WasherSvc.exe PRC - [2007/04/03 19:50:00 | 001,603,152 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011/05/27 11:30:43 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Graham Sorgard\Desktop\OTL.exe MOD - [2010/08/23 10:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll MOD - [2010/04/16 15:10:58 | 000,048,640 | -H-- | M] () -- C:\WINDOWS\system32\sinvfct.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- -- (JavaQuickStarterService) SRV - [2011/05/17 19:01:07 | 003,275,864 | ---- | M] () [Auto | Running] -- c:\Program Files\Common Files\Akamai\netsession_win_8832f4b.dll -- (Akamai) SRV - [2010/03/08 01:56:51 | 001,029,456 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service) SRV - [2010/01/15 06:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService) SRV - [2009/11/15 00:40:46 | 000,136,504 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\AppleOSSMgr.exe -- (AppleOSSMgr) SRV - [2009/11/15 00:40:46 | 000,099,640 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\WINDOWS\system32\AppleTimeSrv.exe -- (AppleTimeSrv) SRV - [2007/11/26 14:50:52 | 000,598,856 | ---- | M] (Webroot Software, Inc.) [Auto | Running] -- C:\Program Files\Webroot\Washer\WasherSvc.exe -- (wwEngineSvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010/09/02 17:49:06 | 000,013,312 | ---- | M] (June Fabrics Technology Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pneteth.sys -- (pneteth) DRV - [2009/11/15 00:40:46 | 000,005,760 | ---- | M] (Apple Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\KeyAgent.sys -- (KeyAgent) DRV - [2009/10/16 08:36:53 | 000,029,696 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\applemtp.sys -- (applemtp) DRV - [2009/10/16 08:36:53 | 000,010,496 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\applemtm.sys -- (applemtm) DRV - [2009/10/16 08:36:50 | 000,023,552 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\KeyMagic.sys -- (KeyMagic) DRV - [2009/07/03 08:49:08 | 000,064,160 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd) DRV - [2008/09/19 12:25:00 | 000,104,960 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZTEusbser6k.sys -- (ZTEusbser6k) DRV - [2008/09/19 12:25:00 | 000,104,960 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZTEusbnmea.sys -- (ZTEusbnmea) DRV - [2008/09/19 12:25:00 | 000,104,960 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k) DRV - [2008/09/19 12:25:00 | 000,007,680 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\massfilter.sys -- (massfilter) DRV - [2008/04/15 16:35:01 | 000,255,232 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp) DRV - [2008/04/15 16:33:14 | 001,123,328 | ---- | M] (Broadcom Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX) DRV - [2008/04/15 16:31:18 | 000,016,512 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\IRFilter.sys -- (IRRemoteFlt) DRV - [2008/04/15 16:30:24 | 000,006,528 | ---- | M] (Apple Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\MacHALDriver.sys -- (MacHALDriver) DRV - [2008/04/15 16:29:47 | 000,009,088 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\applebt.sys -- (applebt) DRV - [2008/04/15 15:36:37 | 004,625,408 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2006/11/02 08:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB) DRV - [2005/08/02 16:10:14 | 000,032,512 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://google.com/" FF - prefs.js..network.proxy.type: 0 FF - HKLM\software\mozilla\Firefox\Extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff FF - HKLM\software\mozilla\Mozilla Firefox 4.0b9\extensions\\Components: C:\Program Files\Mozilla Firefox 4.0 Beta 4\components [2011/02/22 21:58:28 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0b9\extensions\\Plugins: C:\Program Files\Mozilla Firefox 4.0 Beta 4\plugins [2010/09/02 21:55:29 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Graham Sorgard\Application Data\Mozilla\Extensions File not found (No name found) -- File not found (No name found) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2011/02/22 21:58:28 | 000,000,000 | ---D | M] (Feedback) -- C:\PROGRAM FILES\MOZILLA FIREFOX 4.0 BETA 4\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM [2010/11/17 04:12:36 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION O1 HOSTS File: ([2011/05/27 11:18:37 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll (Google Inc.) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - File not found O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - File not found O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found. O4 - HKLM..\Run: [] C:\Program Files\Spytech Software\Spytech SpyAgent\sysdiag.exe () O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [Apple_KbdMgr] C:\Program Files\Boot Camp\KbdMgr.exe (Apple Inc.) O4 - HKLM..\Run: [autodetect] C:\WINDOWS\system32\SupportAppXL\AutoDect.exe () O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.) O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.) O4 - HKLM..\Run: [IRW] C:\WINDOWS\system32\IRW.exe (Apple Inc.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () O4 - HKLM..\Run: [System32] C:\Program Files\Spytech Software\Spytech SpyAgent\sysdiag.exe () O4 - HKCU..\Run: [Messenger (Yahoo!)] C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.) O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.) O4 - Startup: C:\Documents and Settings\Graham Sorgard\Start Menu\Programs\Startup\PdaNet Desktop.lnk = C:\Program Files\PdaNet for Android\PdaNetPC.exe () O4 - Startup: C:\Documents and Settings\Graham Sorgard\Start Menu\Programs\Startup\PMB Media Check Tool.lnk = C:\Program Files\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe (Sony Corporation) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll (Google Inc.) O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.10.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/01/11 03:56:20 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe () O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011/05/27 11:30:36 | 000,580,096 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Graham Sorgard\Desktop\OTL.exe [2011/05/27 11:18:32 | 000,000,000 | ---D | C] -- C:\_OTL [2011/05/26 21:11:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt [2 C:\Documents and Settings\All Users\Application Data\*.tmp files -> C:\Documents and Settings\All Users\Application Data\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\Documents and Settings\Graham Sorgard\My Documents\*.tmp files -> C:\Documents and Settings\Graham Sorgard\My Documents\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011/05/27 11:30:43 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Graham Sorgard\Desktop\OTL.exe [2011/05/27 11:29:36 | 000,000,080 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\winuser [2011/05/27 11:26:07 | 000,001,446 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\emopts.dat [2011/05/27 11:25:00 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job [2011/05/27 11:24:50 | 000,435,828 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2011/05/27 11:24:50 | 000,068,558 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2011/05/27 11:21:43 | 000,000,260 | ---- | M] () -- C:\WINDOWS\tasks\WGASetup.job [2011/05/27 11:20:02 | 000,001,308 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\saopts.dat [2011/05/27 11:19:48 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011/05/27 11:19:42 | 2126,958,592 | -HS- | M] () -- C:\hiberfil.sys [2011/05/26 21:02:42 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011/05/25 22:02:36 | 000,001,821 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk [2011/05/23 00:52:08 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2011/05/21 06:58:51 | 000,001,940 | ---- | M] () -- C:\Documents and Settings\Graham Sorgard\Desktop\E20,21-27-3RX.shx [2011/05/21 06:58:41 | 000,405,904 | ---- | M] () -- C:\Documents and Settings\Graham Sorgard\Desktop\E20,21-27-3RX.shp [2011/05/21 06:58:07 | 000,014,191 | ---- | M] () -- C:\Documents and Settings\Graham Sorgard\Desktop\E20,21-27-3RX.dbf [2011/05/16 15:42:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2011/05/15 05:54:19 | 000,069,423 | ---- | M] () -- C:\Documents and Settings\Graham Sorgard\Desktop\Rx.zip [2011/05/04 16:37:59 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2 C:\Documents and Settings\All Users\Application Data\*.tmp files -> C:\Documents and Settings\All Users\Application Data\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\Documents and Settings\Graham Sorgard\My Documents\*.tmp files -> C:\Documents and Settings\Graham Sorgard\My Documents\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011/05/27 11:24:07 | 000,000,080 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\winuser [2011/05/21 06:58:51 | 000,001,940 | ---- | C] () -- C:\Documents and Settings\Graham Sorgard\Desktop\E20,21-27-3RX.shx [2011/05/21 06:58:37 | 000,405,904 | ---- | C] () -- C:\Documents and Settings\Graham Sorgard\Desktop\E20,21-27-3RX.shp [2011/05/21 06:58:07 | 000,014,191 | ---- | C] () -- C:\Documents and Settings\Graham Sorgard\Desktop\E20,21-27-3RX.dbf [2011/05/15 05:54:19 | 000,069,423 | ---- | C] () -- C:\Documents and Settings\Graham Sorgard\Desktop\Rx.zip [2010/11/16 13:21:09 | 000,000,009 | ---- | C] () -- C:\WINDOWS\sakf.dat [2010/09/02 22:05:56 | 000,001,446 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\emopts.dat [2010/09/02 21:55:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010/09/02 10:00:55 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2010/08/06 01:33:04 | 000,047,616 | ---- | C] () -- C:\WINDOWS\sassr.dat [2010/07/29 17:37:12 | 000,104,960 | ---- | C] () -- C:\WINDOWS\sysk32.dll [2010/07/10 13:36:02 | 000,065,943 | ---- | C] () -- C:\WINDOWS\clfct.dll [2010/07/01 14:02:22 | 000,030,928 | ---- | C] () -- C:\WINDOWS\sview.exe [2010/06/11 11:16:17 | 000,000,127 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI [2010/04/16 15:10:58 | 000,048,640 | -H-- | C] () -- C:\WINDOWS\System32\sinvfct.dll [2010/02/26 22:22:42 | 000,020,480 | ---- | C] () -- C:\WINDOWS\Base64.dll [2010/02/26 22:22:37 | 000,000,440 | ---- | C] () -- C:\WINDOWS\sadefs.dat [2010/02/26 22:22:32 | 000,001,308 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\saopts.dat [2010/02/26 21:29:06 | 000,026,931 | ---- | C] () -- C:\WINDOWS\jimglib.dll [2009/11/15 00:40:46 | 000,136,504 | ---- | C] () -- C:\WINDOWS\System32\AppleOSSMgr.exe [2009/10/31 15:16:41 | 000,016,384 | ---- | C] () -- C:\Documents and Settings\Graham Sorgard\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009/09/05 07:49:35 | 000,015,688 | ---- | C] () -- C:\WINDOWS\System32\lsdelete.exe [2009/08/31 19:22:36 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2009/08/31 01:48:11 | 000,022,379 | ---- | C] () -- C:\WINDOWS\WinSig.ini [2009/08/31 01:48:11 | 000,002,927 | ---- | C] () -- C:\WINDOWS\WinRos.ini [2009/06/02 07:37:12 | 000,157,768 | ---- | C] () -- C:\WINDOWS\hpoins29.dat [2009/06/02 07:37:11 | 000,000,986 | ---- | C] () -- C:\WINDOWS\hpomdl29.dat [2009/01/11 04:12:00 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2009/01/11 04:10:22 | 001,626,112 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe [2009/01/11 04:10:22 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe [2009/01/11 04:10:22 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe [2009/01/11 04:10:22 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe [2009/01/11 04:10:20 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2009/01/11 04:10:20 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2009/01/11 04:10:19 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2009/01/11 04:10:17 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2009/01/11 04:10:16 | 001,482,752 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2009/01/11 03:58:44 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2009/01/11 03:53:12 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2009/01/11 03:44:42 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009/01/11 03:43:20 | 000,141,240 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2007/07/27 06:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2007/07/27 06:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2007/07/27 06:00:00 | 000,435,828 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2007/07/27 06:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2007/07/27 06:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2007/07/27 06:00:00 | 000,068,558 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2007/07/27 06:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2007/07/27 06:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2007/07/27 06:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2007/07/27 06:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2007/07/27 06:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin [2007/07/27 06:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat < End of report >