OTL logfile created on: 6/10/2011 8:14:31 - Run 2 OTL by OldTimer - Version 3.2.23.0 Folder = C:\Users\JJ Kelley\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 15.98 Gb Total Physical Memory | 12.26 Gb Available Physical Memory | 76.72% Memory free 31.95 Gb Paging File | 27.70 Gb Available in Paging File | 86.69% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 276.67 Gb Total Space | 143.95 Gb Free Space | 52.03% Space Free | Partition Type: NTFS Drive D: | 368.17 Gb Total Space | 174.21 Gb Free Space | 47.32% Space Free | Partition Type: NTFS Drive G: | 275.57 Gb Total Space | 187.81 Gb Free Space | 68.15% Space Free | Partition Type: NTFS Computer Name: JJKELLEY-MSI | User Name: JJ Kelley | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011/06/03 12:57:06 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\JJ Kelley\Downloads\OTL.exe PRC - [2011/05/27 14:04:32 | 004,407,152 | ---- | M] (MediaMall Technologies, Inc.) -- C:\Program Files (x86)\MediaMall\MediaMallServer.exe PRC - [2011/05/27 14:03:16 | 000,053,248 | ---- | M] (MediaMall Technologies, Inc.) -- C:\Program Files (x86)\MediaMall\PlayOn.exe PRC - [2011/05/22 07:39:17 | 000,066,872 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe PRC - [2011/04/14 11:25:41 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe PRC - [2011/02/08 20:03:14 | 001,503,824 | ---- | M] (Motorola Solutions, Inc.) -- C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe PRC - [2011/01/30 10:45:14 | 000,821,144 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe PRC - [2010/11/06 02:54:22 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe PRC - [2010/11/06 02:54:20 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe PRC - [2010/11/05 14:03:56 | 002,482,176 | ---- | M] (Micro-Star International Co., Ltd.) -- C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe PRC - [2010/10/22 16:11:54 | 000,199,680 | ---- | M] (Micro-Star Int'l Co., Ltd.) -- C:\Program Files (x86)\MSI\Cinema ProII\CinemaProII.exe PRC - [2010/10/20 17:29:52 | 000,083,456 | ---- | M] (MSI) -- C:\Program Files (x86)\MSI\NVIDIA Overclock Tool\NVIDIAOCAP.exe PRC - [2010/07/29 13:08:36 | 002,795,008 | ---- | M] (msi) -- C:\Program Files (x86)\MSI\msi LED Manager\SLM.exe PRC - [2010/06/25 14:46:10 | 001,689,600 | ---- | M] (msi) -- C:\Program Files (x86)\MSI\Cinema ProII\Cinema ProII Controler.exe PRC - [2010/06/11 21:11:48 | 001,349,632 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe PRC - [2010/05/20 15:15:00 | 000,110,736 | R--- | M] (InterVideo) -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe PRC - [2010/04/26 21:09:52 | 000,113,288 | ---- | M] (Renesas Electronics Corporation) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe PRC - [2010/03/11 13:06:06 | 000,193,824 | ---- | M] (Protexis Inc.) -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe PRC - [2009/07/09 18:54:42 | 000,160,768 | ---- | M] (Micro-Star International Co., Ltd.) -- C:\Program Files (x86)\System Control Manager\MSIService.exe PRC - [2009/05/05 15:06:06 | 000,222,496 | ---- | M] (Acresso Corporation) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe PRC - [2009/03/15 05:15:16 | 000,180,224 | ---- | M] (PowerISO Computing, Inc.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE PRC - [2004/05/02 12:02:51 | 000,062,464 | ---- | M] (Elias Fotinis) -- C:\Program Files (x86)\DeskPins\DeskPins.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011/06/03 12:57:06 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\JJ Kelley\Downloads\OTL.exe MOD - [2010/11/20 06:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2011/02/28 15:02:30 | 001,189,968 | ---- | M] (Motorola Solutions, Inc.) [On_Demand | Running] -- C:\Program Files\Motorola\Bluetooth\audiosrv.exe -- (Bluetooth Media Service) SRV:[b]64bit:[/b] - [2011/02/15 20:36:28 | 000,680,016 | ---- | M] (Motorola Solutions, Inc.) [Auto | Running] -- C:\Program Files\Motorola\Bluetooth\obexsrv.exe -- (Bluetooth OBEX Service) SRV:[b]64bit:[/b] - [2011/02/08 19:58:34 | 004,151,376 | ---- | M] (Motorola Solutions, Inc.) [On_Demand | Running] -- C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe -- (Bluetooth Device Manager) SRV:[b]64bit:[/b] - [2011/01/05 16:21:28 | 001,028,096 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Running] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64) SRV:[b]64bit:[/b] - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2009/07/02 18:42:36 | 000,017,400 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Security Essentials\MsMpEng.exe -- (MsMpSvc) SRV - [2011/06/07 09:55:05 | 000,647,680 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2011/06/03 09:56:36 | 000,403,240 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2011/05/27 14:04:32 | 004,407,152 | ---- | M] (MediaMall Technologies, Inc.) [Auto | Running] -- C:\Program Files (x86)\MediaMall\MediaMallServer.exe -- (MediaMall Server) SRV - [2011/05/22 07:39:17 | 000,066,872 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA) SRV - [2010/11/06 02:54:22 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) Intel(R) SRV - [2010/07/16 19:39:32 | 000,012,800 | ---- | M] (MSI) [Auto | Running] -- C:\Program Files (x86)\MSI\MSI HOUSE\MSIFoundationService.exe -- (MSI Foundation Service) SRV - [2010/05/20 15:15:00 | 000,110,736 | R--- | M] (InterVideo) [Auto | Running] -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr) SRV - [2010/03/18 16:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010/03/11 13:06:06 | 000,193,824 | ---- | M] (Protexis Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2) SRV - [2010/02/19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard) SRV - [2009/07/09 18:54:42 | 000,160,768 | ---- | M] (Micro-Star International Co., Ltd.) [Auto | Running] -- C:\Program Files (x86)\System Control Manager\MSIService.exe -- (Micro Star SCM) SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2011/04/25 08:55:25 | 000,067,072 | ---- | M] (Sentelic Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\fspad_win764.sys -- (fspad_win764) DRV:[b]64bit:[/b] - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2011/03/03 10:59:18 | 000,174,184 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA) DRV:[b]64bit:[/b] - [2011/02/08 19:02:04 | 000,486,144 | ---- | M] (Motorola Solutions, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btmusb.sys -- (BTMUSB) DRV:[b]64bit:[/b] - [2010/11/20 08:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2010/11/20 06:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2010/11/06 02:45:48 | 000,438,808 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor) DRV:[b]64bit:[/b] - [2010/09/20 20:59:38 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64) Intel(R) DRV:[b]64bit:[/b] - [2010/08/03 05:43:14 | 000,290,920 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUVStor.sys -- (RSUSBVSTOR) DRV:[b]64bit:[/b] - [2010/07/13 15:42:58 | 007,821,312 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64) ___ Intel(R) DRV:[b]64bit:[/b] - [2010/06/30 11:02:30 | 000,052,736 | ---- | M] (Motorola, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btmcom.sys -- (BTMCOM) DRV:[b]64bit:[/b] - [2010/06/23 04:10:56 | 000,344,680 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:[b]64bit:[/b] - [2010/06/07 06:25:28 | 000,052,224 | ---- | M] (Sentelic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fspad_xp64.sys -- (fspad_xp64) DRV:[b]64bit:[/b] - [2010/06/07 06:25:28 | 000,052,224 | ---- | M] (Sentelic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fspad_wlh64.sys -- (fspad_wlh64) DRV:[b]64bit:[/b] - [2010/04/29 13:40:54 | 000,028,528 | ---- | M] (MediaMall Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\povrtdev.sys -- (msvad_simple) DRV:[b]64bit:[/b] - [2010/04/26 20:30:52 | 000,184,968 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc) DRV:[b]64bit:[/b] - [2010/04/26 20:29:54 | 000,083,080 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub) DRV:[b]64bit:[/b] - [2009/11/18 06:12:00 | 000,032,344 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MBfilt64.sys -- (MBfilt) DRV:[b]64bit:[/b] - [2009/08/21 00:52:10 | 000,079,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21) DRV:[b]64bit:[/b] - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009/07/09 02:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64) DRV:[b]64bit:[/b] - [2009/06/10 15:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs) DRV:[b]64bit:[/b] - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009/05/18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM) DRV:[b]64bit:[/b] - [2007/04/17 10:51:50 | 000,014,112 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\regi.sys -- (regi) DRV - [2010/04/30 17:09:44 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Motive\MRESP50.sys -- (MRESP50) DRV - [2010/04/30 17:09:22 | 000,021,248 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Motive\MREMP50.sys -- (MREMP50) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.startsearcher.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.startsearcher.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.startsearcher.com IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - HKLM\software\mozilla\Firefox\Extensions\\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}: C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} [2011/04/21 08:14:16 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files (x86)\Object\facetheme [2011/06/03 08:57:57 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2011/06/03 09:18:25 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/06/10 06:48:12 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/06/10 06:48:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JJ Kelley\AppData\Roaming\Mozilla\Extensions [2011/06/10 06:48:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions File not found (No name found) -- [2011/04/21 08:14:16 | 000,000,000 | ---D | M] (Adobe Contribute Toolbar) -- C:\PROGRAM FILES (X86)\ADOBE\ADOBE CONTRIBUTE CS5\PLUGINS\FIREFOXPLUGIN\{01A8CA0A-4C96-465B-A49B-65C46FAD54F9} [2011/06/03 08:57:57 | 000,000,000 | ---D | M] (FaceTheme - Change your Facebook layout!) -- C:\PROGRAM FILES (X86)\OBJECT\FACETHEME [2011/04/14 11:26:02 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll [2011/06/03 09:25:53 | 000,002,226 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml [2010/01/01 03:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml O1 HOSTS File: ([2011/06/07 13:38:13 | 000,000,056 | R--- | M]) - C:\Windows\SysNative\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.) O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.) O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O4:[b]64bit:[/b] - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated) O4:[b]64bit:[/b] - HKLM..\Run: [BTMTrayAgent] C:\Program Files\Motorola\Bluetooth\btmshell.dll (Motorola Solutions, Inc.) O4:[b]64bit:[/b] - HKLM..\Run: [fspuip] C:\Program Files\FSP\FspUip.exe (Sentelic Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [MSSE] C:\Program Files\Microsoft Security Essentials\msseces.exe (Microsoft Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4:[b]64bit:[/b] - HKLM..\Run: [THXCfg64] C:\windows\SysNative\THXCfg64.DLL (Creative Technology Ltd.) O4:[b]64bit:[/b] - HKLM..\Run: [XboxStat] C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe (Microsoft Corporation) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.) O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [Cinema ProII AP] C:\Program Files (x86)\MSI\Cinema ProII\CinemaProII.exe (Micro-Star Int'l Co., Ltd.) O4 - HKLM..\Run: [Cinema ProII Controler] C:\Program Files (x86)\MSI\Cinema ProII\Cinema ProII Controler.exe (msi) O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) O4 - HKLM..\Run: [MGSysCtrl] C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe (Micro-Star International Co., Ltd.) O4 - HKLM..\Run: [msi LED Manager] C:\Program Files (x86)\MSI\msi LED Manager\SLM.exe (msi) O4 - HKLM..\Run: [Nuance PDF Reader-reminder] C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [NUSB3MON] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation) O4 - HKLM..\Run: [NVIDIAOCAP] C:\Program Files (x86)\MSI\NVIDIA Overclock Tool\NVIDIAOCAP.exe (MSI) O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.) O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [THX Audio Control Panel] C:\Program Files (x86)\Creative\THX TruStudio Pro\THXAudioCP\THXAudio.exe (Creative Technology Ltd) O4 - HKLM..\Run: [UpdReg] C:\Windows\Updreg.EXE (Creative Technology Ltd.) O4 - HKCU..\Run: [Google] C:\Users\JJ Kelley\AppData\Roaming\GD1.exe (Google Inc.) O4 - HKCU..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation) O4 - HKCU..\Run: [MusicManager] C:\Users\JJ Kelley\AppData\Local\Programs\Google\MusicManager\MusicManager.exe (Google Inc.) O4 - HKCU..\Run: [PlayOn] C:\Program Files (x86)\MediaMall\PlayOn.exe (MediaMall Technologies, Inc.) O4 - HKCU..\Run: [RESTART_STICKY_NOTES] File not found O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation) O4 - HKCU..\Run: [Unified Remote v2] C:\Program Files (x86)\Unified Remote\RemoteServer.exe (Unified Remote) O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - Startup: C:\Users\JJ Kelley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DeskPins.lnk = C:\Program Files (x86)\DeskPins\DeskPins.exe (Elias Fotinis) O4 - Startup: C:\Users\JJ Kelley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\JJ Kelley\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O9:[b]64bit:[/b] - Extra Button: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm () O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm () O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra Button: @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm () O9 - Extra 'Tools' menuitem : @C:\Program Files\Motorola\Bluetooth\btmshell.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm () O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {E0FEE963-BB53-4215-81AD-B28C77384644} https://pattcw.att.motive.com/wizlet/DSLActivation/static/installer/ATTInternetInstaller64.cab (WebBrowserType Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.2 O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{c89d439f-6f45-11e0-aa8a-6c626d2fd4eb}\Shell - "" = AutoRun O33 - MountPoints2\{c89d439f-6f45-11e0-aa8a-6c626d2fd4eb}\Shell\AutoRun\command - "" = H:\setup.exe -a O33 - MountPoints2\F\Shell - "" = AutoRun O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\setup.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011/06/10 06:48:16 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Mozilla [2011/06/09 18:15:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayOn [2011/06/09 18:15:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MediaMall [2011/06/09 18:15:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ffdshowEx [2011/06/09 18:13:05 | 000,000,000 | ---D | C] -- C:\ProgramData\MediaMall [2011/06/09 18:12:42 | 000,000,000 | ---D | C] -- C:\windows\Downloaded Installations [2011/06/07 12:01:55 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_43.dll [2011/06/07 11:58:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games [2011/06/07 09:55:32 | 000,052,736 | ---- | C] (Motorola, Inc.) -- C:\windows\SysNative\drivers\btmcom.sys [2011/06/07 09:55:25 | 000,008,784 | ---- | C] (Motorola Solutions, Inc.) -- C:\windows\SysNative\btmsstverschk.dll [2011/06/07 09:55:20 | 000,486,144 | ---- | C] (Motorola Solutions, Inc.) -- C:\windows\SysNative\drivers\btmusb.sys [2011/06/07 09:55:20 | 000,325,200 | ---- | C] (Motorola Solutions, Inc.) -- C:\windows\SysNative\btmcls.dll [2011/06/07 09:55:20 | 000,000,000 | ---D | C] -- C:\Program Files\Motorola [2011/06/07 09:55:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Macrovision Shared [2011/06/06 20:01:40 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Downloaded Installations [2011/06/06 10:37:17 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Heartofangel.com [2011/06/06 10:19:00 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Apps [2011/06/06 10:18:59 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Deployment [2011/06/06 09:58:56 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Audible [2011/06/06 09:13:10 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\Windows Live Writer [2011/06/06 09:13:10 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Windows Live Writer [2011/06/03 14:55:17 | 000,000,000 | ---D | C] -- C:\Program Files\ATT-HSI [2011/06/03 14:55:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATT-HSI [2011/06/03 14:55:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Motive [2011/06/03 14:55:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Motive [2011/06/03 14:55:01 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Motive [2011/06/03 14:15:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Antimalware [2011/06/03 14:15:28 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Essentials [2011/06/03 13:40:28 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\Malwarebytes [2011/06/03 13:40:24 | 000,039,984 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysWow64\drivers\mbamswissarmy.sys [2011/06/03 13:40:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2011/06/03 13:40:21 | 000,025,912 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys [2011/06/03 13:40:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware [2011/06/03 13:36:19 | 000,000,000 | ---D | C] -- C:\_OTL [2011/06/03 12:58:14 | 000,000,000 | ---D | C] -- C:\_OTM [2011/06/03 09:28:16 | 000,000,000 | ---D | C] -- C:\windows\pss [2011/06/03 09:18:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2 [2011/06/03 08:57:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Object [2011/05/31 17:08:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Hewlett-Packard [2011/05/28 21:01:44 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\dvdcss [2011/05/28 13:14:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam [2011/05/28 13:14:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam [2011/05/28 13:14:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam [2011/05/27 04:50:50 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\SKIDROW [2011/05/27 04:48:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks [2011/05/27 04:39:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bethesda Softworks [2011/05/25 19:02:49 | 000,255,352 | ---- | C] (Audible, Inc.) -- C:\windows\SysWow64\awrdscdc.ax [2011/05/25 19:00:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AudibleManager [2011/05/25 19:00:44 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfc71.dll [2011/05/25 19:00:44 | 000,499,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msvcp71.dll [2011/05/25 19:00:44 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msvcr71.dll [2011/05/25 19:00:44 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msxml3a.dll [2011/05/25 19:00:16 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Audible [2011/05/25 19:00:16 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\Documents\Audible [2011/05/25 19:00:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Audible [2011/05/22 07:39:45 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\Documents\NFS ProStreet [2011/05/22 07:38:38 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\PunkBuster [2011/05/22 07:38:12 | 000,000,000 | RH-D | C] -- C:\Users\JJ Kelley\AppData\Roaming\SecuROM [2011/05/22 07:36:52 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games [2011/05/21 17:31:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Electronic Arts [2011/05/21 11:14:31 | 000,000,000 | ---D | C] -- C:\Program Files\FSP [2011/05/21 06:27:14 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Activision [2011/05/21 06:24:44 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_7.dll [2011/05/21 06:24:44 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_7.dll [2011/05/21 06:24:44 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_7.dll [2011/05/21 06:24:44 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_7.dll [2011/05/21 06:24:44 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_5.dll [2011/05/21 06:24:44 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_5.dll [2011/05/21 06:24:43 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_43.dll [2011/05/21 06:24:43 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_43.dll [2011/05/21 06:24:43 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dcsx_43.dll [2011/05/21 06:24:43 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dcsx_43.dll [2011/05/21 06:24:42 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx11_43.dll [2011/05/21 06:24:42 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx11_43.dll [2011/05/21 06:24:41 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_43.dll [2011/05/21 06:24:41 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_43.dll [2011/05/21 06:24:41 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_43.dll [2011/05/21 06:22:51 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\directx [2011/05/21 05:36:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Activision [2011/05/21 05:33:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Activision [2011/05/21 05:17:02 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\WinRAR [2011/05/20 16:10:34 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\poqexec.exe [2011/05/20 16:10:34 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\poqexec.exe [2011/05/15 12:42:21 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\ElevatedDiagnostics [2011/05/15 10:40:38 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\Documents\Rainmeter [2011/05/15 10:40:38 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\Rainmeter [2011/05/15 10:40:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter [2011/05/15 10:40:05 | 000,000,000 | ---D | C] -- C:\Program Files\Rainmeter [2011/05/14 09:53:19 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Music Manager [2011/05/14 09:53:13 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Programs [2011/05/13 21:13:17 | 000,000,000 | ---D | C] -- C:\ProgramData\DVD Shrink [2011/05/13 21:13:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink [2011/05/13 21:13:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVD Shrink [2011/05/13 21:08:10 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Roaming\HandBrake [2011/05/13 21:08:10 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\HandBrake [2011/05/11 20:12:00 | 000,000,000 | ---D | C] -- C:\Users\JJ Kelley\AppData\Local\Microsoft Games [2011/03/28 16:18:48 | 000,032,768 | ---- | C] (Google Inc.) -- C:\Users\JJ Kelley\AppData\Roaming\GD1.exe [2010/12/22 11:26:24 | 487,666,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Users\JJ Kelley\AppData\Roaming\AcrobatPro_10_Web_WWEFD.exe [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011/06/10 06:48:36 | 000,002,056 | ---- | M] () -- C:\Users\JJ Kelley\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk [2011/06/10 06:48:12 | 000,001,144 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2011/06/09 21:51:01 | 000,771,782 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI [2011/06/09 21:51:01 | 000,655,968 | ---- | M] () -- C:\windows\SysNative\perfh009.dat [2011/06/09 21:51:01 | 000,119,062 | ---- | M] () -- C:\windows\SysNative\perfc009.dat [2011/06/09 21:48:16 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat [2011/06/08 07:46:43 | 000,017,600 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011/06/08 07:46:43 | 000,017,600 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011/06/08 07:20:46 | 000,000,312 | -HS- | M] () -- C:\windows\tasks\HXMWF.job [2011/06/08 07:20:36 | 4277,211,134 | -HS- | M] () -- C:\hiberfil.sys [2011/06/07 18:56:37 | 000,000,952 | -HS- | M] () -- C:\ProgramData\KGyGaAvL.sys [2011/06/07 16:33:26 | 000,002,042 | -H-- | M] () -- C:\Users\JJ Kelley\Documents\Default.rdp [2011/06/07 13:38:13 | 000,000,056 | R--- | M] () -- C:\windows\SysNative\drivers\etc\Hosts [2011/06/03 15:22:12 | 000,040,332 | ---- | M] () -- C:\Users\JJ Kelley\Documents\Louisiana Internet Claims Filing System - Claims.pdf [2011/06/03 15:03:38 | 000,001,598 | ---- | M] () -- C:\Users\JJ Kelley\Desktop\mbam - Shortcut.lnk [2011/06/03 14:15:28 | 000,001,041 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk [2011/06/03 12:07:05 | 000,001,945 | ---- | M] () -- C:\windows\epplauncher.mif [2011/06/03 09:29:12 | 004,840,192 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT [2011/06/03 08:57:08 | 000,135,168 | RHS- | M] () -- C:\windows\SysWow64\versionm.dll [2011/06/03 07:49:35 | 000,011,832 | ---- | M] () -- C:\Users\JJ Kelley\Documents\enrollmentFormPrint.jsp.htm [2011/06/02 23:52:46 | 000,001,456 | ---- | M] () -- C:\Users\JJ Kelley\AppData\Local\Adobe Save for Web 12.0 Prefs [2011/06/02 20:58:28 | 000,001,045 | ---- | M] () -- C:\Users\JJ Kelley\Desktop\Dropbox.lnk [2011/06/02 20:58:28 | 000,001,025 | ---- | M] () -- C:\Users\JJ Kelley\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2011/06/02 17:12:10 | 000,000,953 | ---- | M] () -- C:\Users\JJ Kelley\Documents\Brink.xpadderprofile [2011/06/02 17:11:55 | 000,001,423 | ---- | M] () -- C:\Users\JJ Kelley\Documents\My Controller (Afterglow Gamepad for Xbox 360).xpaddercontroller [2011/05/29 09:11:30 | 000,039,984 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysWow64\drivers\mbamswissarmy.sys [2011/05/29 09:11:20 | 000,025,912 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys [2011/05/28 13:14:43 | 000,000,927 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk [2011/05/26 23:58:16 | 000,103,736 | ---- | M] () -- C:\windows\SysWow64\PnkBstrB.exe [2011/05/25 19:02:52 | 000,001,971 | ---- | M] () -- C:\Users\JJ Kelley\Desktop\Audible Manager.lnk [2011/05/25 19:02:49 | 000,255,352 | ---- | M] (Audible, Inc.) -- C:\windows\SysWow64\awrdscdc.ax [2011/05/22 07:39:17 | 000,066,872 | ---- | M] () -- C:\windows\SysWow64\PnkBstrA.exe [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011/06/10 06:48:12 | 000,001,144 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2011/06/03 15:22:12 | 000,040,332 | ---- | C] () -- C:\Users\JJ Kelley\Documents\Louisiana Internet Claims Filing System - Claims.pdf [2011/06/03 15:03:38 | 000,001,598 | ---- | C] () -- C:\Users\JJ Kelley\Desktop\mbam - Shortcut.lnk [2011/06/03 14:15:28 | 000,001,053 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk [2011/06/03 14:15:28 | 000,001,041 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk [2011/06/03 09:18:41 | 000,002,465 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk [2011/06/03 09:18:41 | 000,002,453 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Pro.lnk [2011/06/03 08:57:08 | 000,135,168 | RHS- | C] () -- C:\windows\SysWow64\versionm.dll [2011/06/03 08:57:08 | 000,000,312 | -HS- | C] () -- C:\windows\tasks\HXMWF.job [2011/06/03 07:49:35 | 000,011,832 | ---- | C] () -- C:\Users\JJ Kelley\Documents\enrollmentFormPrint.jsp.htm [2011/06/02 23:52:46 | 000,001,456 | ---- | C] () -- C:\Users\JJ Kelley\AppData\Local\Adobe Save for Web 12.0 Prefs [2011/06/02 17:12:10 | 000,000,953 | ---- | C] () -- C:\Users\JJ Kelley\Documents\Brink.xpadderprofile [2011/05/30 17:04:01 | 000,001,423 | ---- | C] () -- C:\Users\JJ Kelley\Documents\My Controller (Afterglow Gamepad for Xbox 360).xpaddercontroller [2011/05/28 13:14:43 | 000,000,927 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk [2011/05/25 19:02:52 | 000,001,971 | ---- | C] () -- C:\Users\JJ Kelley\Desktop\Audible Manager.lnk [2011/05/22 07:39:33 | 000,066,872 | ---- | C] () -- C:\windows\SysWow64\PnkBstrA.exe [2011/05/22 07:39:01 | 000,103,736 | ---- | C] () -- C:\windows\SysWow64\PnkBstrB.exe [2011/04/22 13:56:30 | 000,769,202 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI [2011/04/21 21:04:57 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2011/04/21 07:12:41 | 000,000,952 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys [2011/01/05 16:36:38 | 000,001,200 | ---- | C] () -- C:\windows\THXCfg_SP_APOIM.ini [2011/01/05 16:36:38 | 000,001,099 | ---- | C] () -- C:\windows\THXCfg_HP_APOIM.ini [2011/01/05 16:36:38 | 000,001,099 | ---- | C] () -- C:\windows\THXCfg_APOIM.ini [2011/01/05 16:36:37 | 000,182,272 | ---- | C] () -- C:\windows\SysWow64\APOMngr.DLL [2011/01/05 16:36:37 | 000,073,728 | ---- | C] () -- C:\windows\SysWow64\CmdRtr.DLL [2011/01/05 16:22:48 | 000,008,192 | ---- | C] () -- C:\windows\SysWow64\drivers\IntelMEFWVer.dll [2009/07/14 00:38:36 | 000,067,584 | --S- | C] () -- C:\windows\bootstat.dat [2009/07/13 21:35:51 | 000,000,741 | ---- | C] () -- C:\windows\SysWow64\NOISE.DAT [2009/07/13 21:34:42 | 000,215,943 | ---- | C] () -- C:\windows\SysWow64\dssec.dat [2009/07/13 19:10:29 | 000,043,131 | ---- | C] () -- C:\windows\mib.bin [2009/07/13 18:42:10 | 000,064,000 | ---- | C] () -- C:\windows\SysWow64\BWContextHandler.dll [2009/07/13 16:03:59 | 000,364,544 | ---- | C] () -- C:\windows\SysWow64\msjetoledb40.dll [2009/06/10 16:26:10 | 000,673,088 | ---- | C] () -- C:\windows\SysWow64\mlang.dat [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:DBC416F8 < End of report >