OTL logfile created on: 8/23/2011 9:23:16 PM - Run 1 OTL by OldTimer - Version 3.2.26.5 Folder = C:\Documents and Settings\Owner\Desktop Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1015.29 Mb Total Physical Memory | 802.19 Mb Available Physical Memory | 79.01% Memory free 2.39 Gb Paging File | 2.32 Gb Available in Paging File | 97.36% Paging File free Paging file location(s): C:\pagefile.sys 1524 3048 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 289.16 Gb Total Space | 225.46 Gb Free Space | 77.97% Space Free | Partition Type: NTFS Drive D: | 8.92 Gb Total Space | 3.77 Gb Free Space | 42.23% Space Free | Partition Type: FAT32 Computer Name: YOUR-4F1261A8E5 | User Name: Administrator | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: Current user | Quick Scan Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011/08/22 09:33:01 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner\Desktop\OTL.exe PRC - [2010/07/16 14:45:21 | 001,101,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgchsvx.exe PRC - [2008/04/14 08:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2011/08/02 21:01:17 | 003,542,616 | ---- | M] () [Auto | Stopped] -- c:\Program Files\Common Files\Akamai\netsession_win_2da1ebd.dll -- (Akamai) SRV - [2011/03/18 08:11:02 | 000,947,528 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe -- (AVG Security Toolbar Service) SRV - [2010/09/03 02:45:02 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.1.121\McCHSvc.exe -- (McComponentHostService) SRV - [2010/07/21 09:42:55 | 000,921,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files\AVG\AVG9\avgemc.exe -- (avg9emc) SRV - [2010/07/20 01:29:20 | 000,185,640 | ---- | M] (SupportSoft, Inc.) [Auto | Stopped] -- C:\Program Files\VERIZONDM\bin\tgsrvc.exe -- (tgsrvc_verizondm) SupportSoft Repair Service (verizondm) SRV - [2010/07/20 01:29:16 | 000,206,120 | ---- | M] (SupportSoft, Inc.) [Auto | Stopped] -- C:\Program Files\VERIZONDM\bin\sprtsvc.exe -- (sprtsvc_verizondm) SupportSoft Sprocket Service (verizondm) SRV - [2010/07/16 14:45:59 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files\AVG\AVG9\avgwdsvc.exe -- (avg9wd) SRV - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa) SRV - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist) SRV - [2009/09/29 10:17:50 | 000,013,088 | ---- | M] (Intuit Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe -- (IntuitUpdateService) SRV - [2009/09/16 19:22:08 | 000,020,480 | ---- | M] (Intuit) [Auto | Stopped] -- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe -- (QBCFMonitorService) SRV - [2009/03/27 22:10:56 | 000,014,336 | ---- | M] (LSI Corporation) [Auto | Stopped] -- C:\Program Files\LSI SoftModem\agrsmsvc.exe -- (AgereModemAudio) SRV - [2007/05/24 07:08:44 | 000,061,440 | ---- | M] (Intuit Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe -- (QBFCService) SRV - [2006/11/03 19:19:58 | 000,013,592 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend) SRV - [2005/12/09 15:37:42 | 000,081,920 | ---- | M] (Logitech Inc.) [Auto | Stopped] -- c:\Program Files\Common Files\Logitech\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011/05/07 08:41:17 | 000,243,152 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Stopped] -- C:\WINDOWS\System32\Drivers\avgtdix.sys -- (AvgTdiX) DRV - [2010/07/16 14:45:22 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Stopped] -- C:\WINDOWS\System32\Drivers\avgldx86.sys -- (AvgLdx86) DRV - [2010/06/02 18:37:04 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Stopped] -- C:\WINDOWS\System32\Drivers\avgmfx86.sys -- (AvgMfx86) DRV - [2010/04/24 01:10:54 | 000,018,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Sftvolxp.sys -- (Sftvol) DRV - [2010/04/24 01:10:52 | 000,020,584 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Sftredirxp.sys -- (Sftredir) DRV - [2010/04/24 01:10:50 | 000,211,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Sftplayxp.sys -- (Sftplay) DRV - [2010/04/24 01:10:44 | 000,554,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Sftfsxp.sys -- (Sftfs) DRV - [2009/08/13 15:07:12 | 001,163,328 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem) DRV - [2008/02/25 12:54:56 | 000,105,088 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2007/05/11 18:31:36 | 003,580,832 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvuvc.sys -- (LVUVC) Logitech QuickCam Fusion(UVC) DRV - [2007/05/11 17:31:48 | 000,022,560 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\lvuvcflt.sys -- (FilterService) DRV - [2007/05/11 17:31:22 | 000,041,888 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta) DRV - [2007/05/11 17:30:04 | 001,921,184 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvpopflt.sys -- (lvpopflt) DRV - [2005/12/09 15:37:42 | 002,400,256 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVMVdrv.sys -- (lvmvdrv) DRV - [2005/12/09 15:37:42 | 000,016,768 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVPrcMon.sys -- (LVPrcMon) DRV - [2005/12/09 15:35:54 | 002,174,464 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Lvckap.sys -- (Lvckap) DRV - [2005/12/01 17:17:40 | 000,014,208 | ---- | M] (Kensington Technology Group) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\kkw_hid.sys -- (KKW_HID) DRV - [2005/10/20 18:00:04 | 000,243,328 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RT2500.sys -- (RT2500) DRV - [2005/09/23 18:56:28 | 003,966,976 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2005/09/01 13:41:56 | 000,092,032 | ---- | M] (Kensington Technology Group) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\KMW_SYS.sys -- (KMW_SYS) DRV - [2005/09/01 13:41:36 | 000,005,760 | ---- | M] (Kensington Technology Group) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\KMW_KBD.sys -- (KMW_KBD) DRV - [2005/09/01 13:41:34 | 000,010,496 | ---- | M] (Kensington Technology Group) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\KMW_USB.sys -- (KMW_USB) DRV - [2004/03/18 03:10:40 | 000,113,664 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService) DRV - [2003/09/19 12:47:00 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (Pfc) DRV - [2002/10/04 13:04:10 | 000,046,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\R8139n51.sys -- (rtl8139) DRV - [2001/06/04 09:00:00 | 000,014,112 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PS2.sys -- (Ps2) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MI1933~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@movenetworks.com/Quantum Media Player: C:\Documents and Settings\Owner\Application Data\Move Networks\plugins\npqmp071505000011.dll (Move Networks) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.1879: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.2.1939: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.872: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ShopperReports@ShopperReports.com: C:\Program Files\ShopperReports3\bin\3.0.491.0\firefox\firefoxtoolbar\extensions [2007/03/31 17:21:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2007/03/31 17:16:37 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} O1 HOSTS File: ([2011/08/20 11:01:55 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found. O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (Babylon IE plugin) - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found. O3 - HKLM\..\Toolbar: (HP view) - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll (Hewlett-Packard Company) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () O4 - HKLM..\Run: [AlcWzrd] C:\WINDOWS\ALCWZRD.EXE (RealTek Semicoductor Corp.) O4 - HKLM..\Run: [AVG9_TRAY] C:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [Babylon Client] C:\Program Files\Babylon\Babylon-Pro\Babylon.exe (Babylon Ltd.) O4 - HKLM..\Run: [High Definition Audio Property Page Shortcut] C:\WINDOWS\System32\Hdaudpropshortcut.exe (Windows (R) Server 2003 DDK provider) O4 - HKLM..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe (Hewlett-Packard) O4 - HKLM..\Run: [kkw_run.exe] C:\WINDOWS\System32\kkw_run.exe (Kensington Technology Group) O4 - HKLM..\Run: [kmw_run.exe] C:\WINDOWS\System32\kmw_run.exe (Kensington Technology Group) O4 - HKLM..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe (Logitech Inc.) O4 - HKLM..\Run: [LogitechCameraService(E)] C:\WINDOWS\System32\ElkCtrl.exe (Logitech Inc.) O4 - HKLM..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe (Logitech Inc.) O4 - HKLM..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE (Logitech Inc.) O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [PS2] C:\WINDOWS\system32\ps2.EXE (Hewlett-Packard Company) O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.) O4 - HKLM..\Run: [VERIZONDM] C:\Program Files\VERIZONDM\bin\sprtcmd.exe (SupportSoft, Inc.) O4 - Startup: C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Startup\AutoTBar.exe (Hewlett-Packard) O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe (Logitech) O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\2.1.121\SSScheduler.exe (McAfee, Inc.) O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Nikon Monitor.lnk = C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe (Nikon Corporation) O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/templates/ieawsdc.cab (Reg Error: Key error.) O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab (Facebook Photo Uploader 5 Control) O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} http://www.musicnotes.com/download/mnviewer.cab (Musicnotes Viewer) O16 - DPF: {22E5D91F-89E6-4405-AD9C-0AF27BA6F06B} file:///F:/components/hidinputmonitorx.ocx (HidInputMonitorX Control) O16 - DPF: {4F63D44B-6274-4D60-8AB1-CAA7116B8AF3} file:///F:/components/A9.ocx (A9Helper.A9) O16 - DPF: {7030CC6C-1A88-4591-BB5A-651B9F7F0C30} file:///F:/components/wmvhdrating.ocx (WMVHDRatingCtrl Class) O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab (Facebook Photo Uploader 5 Control) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} http://zone.msn.com/bingame/popcaploader_v10.cab (PopCapLoader Object) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 71.243.0.12 O18 - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () O18 - Protocol\Handler\bw+0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw+0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw-0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw00 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw00s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw-0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw10 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw10s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw20 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw20s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw30 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw30s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw40 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw40s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw50 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw50s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw60 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw60s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw70 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw70s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw80 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw80s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw90 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bw90s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwa0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwa0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwb0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwb0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwc0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwc0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwd0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwd0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwe0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwe0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwf0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwf0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwfile-8876480 {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwg0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwg0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwh0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwh0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwi0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwi0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwj0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwj0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwk0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwk0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwl0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwl0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwm0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwm0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwn0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwn0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwo0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwo0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwp0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwp0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwq0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwq0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwr0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwr0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bws0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bws0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwt0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwt0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwu0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwu0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwv0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwv0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bww0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bww0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwx0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwx0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwy0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwy0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwz0 {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\bwz0s {036bbd44-bd84-494c-a2c7-2ff6ce3b0bff} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\intu-help-qb1 {9B0F96C7-2E4B-433e-ABF3-043BA1B54AE3} - C:\Program Files\Intuit\QuickBooks 2008\HelpAsyncPluggableProtocol.dll (TODO: ) O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\offline-8876480 {036BBD44-BD84-494C-A2C7-2FF6CE3B0BFF} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (BackWeb Technologies Inc. ) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.) O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation) O28 - HKLM ShellExecuteHooks: {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} - C:\Program Files\Windows Defender\MpShHook.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2005/03/05 20:28:59 | 000,000,050 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2001/07/28 05:07:38 | 000,000,000 | -HS- | M] () - D:\AUTOEXEC.BAT -- [ FAT32 ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011/08/23 21:19:13 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\IETldCache [2011/08/23 21:19:12 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Cookies [2011/08/23 21:18:32 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Microsoft [2011/08/23 21:18:32 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data [2011/08/23 21:18:32 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Local Settings [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Symantec [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Sun [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\SampleView [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Real [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Local Settings\Application Data\Microsoft Help [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Local Settings\Application Data\Microsoft [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\InterMute [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Identities [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Favorites [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Desktop [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Local Settings\Application Data\ApplicationHistory [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Local Settings\Application Data\Apple Computer [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Apple Computer [2011/08/23 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Local Settings\Application Data\{7148F0A6-6813-11D6-A77B-00B0D0142030} [2011/08/23 21:18:31 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\SendTo [2011/08/23 21:18:31 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Startup [2011/08/23 21:18:31 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu [2011/08/23 21:18:31 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\My Documents\My Videos [2011/08/23 21:18:31 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\My Documents\My Music [2011/08/23 21:18:31 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Accessories [2011/08/23 21:18:31 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Templates [2011/08/23 21:18:31 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Recent [2011/08/23 21:18:31 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\PrintHood [2011/08/23 21:18:31 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\NetHood [2011/08/23 21:18:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\WeatherBug [2011/08/23 21:18:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Quicken [2011/08/23 21:18:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\PC Help & Tools [2011/08/23 21:18:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Online Services [2011/08/23 21:18:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\My Documents\My Pictures [2011/08/23 21:18:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\My Documents [2011/08/21 16:28:30 | 000,000,000 | ---D | C] -- C:\Program Files\FileHippo.com [2011/08/20 14:29:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Babylon [2011/08/20 14:29:16 | 000,000,000 | ---D | C] -- C:\Program Files\Babylon [2011/08/20 14:28:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Babylon [2011/08/20 14:28:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Puran Defrag [2011/08/20 14:28:48 | 000,000,000 | ---D | C] -- C:\Program Files\Puran Defrag [2011/08/19 16:29:23 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2011/08/18 18:53:04 | 000,000,000 | RHSD | C] -- C:\cmdcons [2011/08/04 17:36:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Amazon [2011/08/04 17:36:49 | 000,000,000 | ---D | C] -- C:\Program Files\Amazon [2011/08/01 10:13:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution [2011/08/01 10:08:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution.old [2011/08/01 08:39:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\iTunes [2011/07/31 17:41:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Verizon Media Manager [2011/07/31 17:40:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Verizon [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011/08/23 21:18:12 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011/08/23 21:15:53 | 000,000,248 | ---- | M] () -- C:\WINDOWS\System\hpsysdrv.dat [2011/08/23 21:06:05 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\lvuvc.hs [2011/08/22 15:56:38 | 084,375,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm [2011/08/21 16:32:12 | 000,000,795 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk [2011/08/20 17:35:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2011/08/20 13:07:29 | 000,333,872 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011/08/20 11:01:55 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts [2011/08/19 16:29:40 | 000,012,598 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011/08/19 16:22:24 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2011/08/19 15:57:01 | 000,443,662 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2011/08/19 15:57:01 | 000,072,544 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2011/08/18 18:53:09 | 000,000,327 | RHS- | M] () -- C:\boot.ini [2011/08/01 08:39:33 | 000,001,553 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk [2011/07/31 21:30:12 | 000,001,152 | ---- | M] () -- C:\WINDOWS\System32\mapisvc.inf [2011/07/31 17:41:06 | 000,001,077 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Verizon Media Manager.lnk [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011/08/23 21:18:39 | 000,000,779 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [2011/08/23 21:18:38 | 000,002,235 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Desktop\Help and Support.lnk [2011/08/23 21:18:38 | 000,001,643 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Microsoft\Internet Explorer\Quick Launch\iTunes.lnk [2011/08/23 21:18:38 | 000,000,926 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Microsoft\Internet Explorer\Quick Launch\RealPlayer.lnk [2011/08/23 21:18:38 | 000,000,753 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Microsoft\Internet Explorer\Quick Launch\QuickTime Player.lnk [2011/08/23 21:18:38 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf [2011/08/23 21:18:37 | 000,000,128 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Local Settings\Application Data\fusioncache.dat [2011/08/23 21:18:32 | 000,001,692 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Install Microsoft Money 2005.lnk [2011/08/23 21:18:32 | 000,001,610 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Remote Assistance.lnk [2011/08/23 21:18:32 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Windows Media Player.lnk [2011/08/23 21:18:32 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Start Menu\Programs\Outlook Express.lnk [2011/08/01 08:39:33 | 000,001,553 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk [2011/07/31 21:31:34 | 000,000,284 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2011/07/31 21:31:31 | 000,001,830 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Apple Software Update.lnk [2011/07/31 17:41:06 | 000,001,077 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Verizon Media Manager.lnk [2011/02/22 20:41:29 | 000,223,376 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat [2010/06/22 18:28:31 | 000,077,349 | ---- | C] () -- C:\WINDOWS\hpqins05.dat [2010/03/16 19:12:42 | 000,165,125 | ---- | C] () -- C:\WINDOWS\hpoins21.dat [2010/03/16 19:12:42 | 000,007,262 | ---- | C] () -- C:\WINDOWS\hpomdl21.dat [2010/01/17 17:18:14 | 000,000,030 | ---- | C] () -- C:\WINDOWS\MimeoPrinter.INI [2009/12/25 12:16:46 | 000,071,744 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat [2009/11/22 20:05:43 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2009/10/31 15:24:22 | 000,057,126 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini [2009/10/30 17:46:21 | 000,000,719 | R--- | C] () -- C:\WINDOWS\System32\InstExec.ini [2009/09/13 15:09:05 | 000,019,705 | ---- | C] () -- C:\WINDOWS\System32\nanakiqowu.exe [2009/09/13 15:09:05 | 000,013,231 | ---- | C] () -- C:\WINDOWS\tyvoqu.sys [2009/09/13 15:09:05 | 000,012,150 | ---- | C] () -- C:\Program Files\Common Files\ehobewiqib._dl [2009/09/13 15:09:05 | 000,011,083 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\ynalo.pif [2009/09/12 21:50:55 | 000,011,381 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\ygajuqive.ban [2009/09/12 21:50:55 | 000,011,230 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\vifeze.com [2009/09/12 21:50:54 | 000,017,540 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\ifyt.dl [2009/09/12 21:50:54 | 000,016,288 | ---- | C] () -- C:\WINDOWS\System32\oqizu.exe [2009/09/12 21:50:54 | 000,015,799 | ---- | C] () -- C:\WINDOWS\System32\nilucor.exe [2009/09/12 21:50:54 | 000,013,675 | ---- | C] () -- C:\Program Files\Common Files\ubytibob.inf [2009/09/12 21:50:54 | 000,012,250 | ---- | C] () -- C:\WINDOWS\qatil.bin [2009/09/05 08:59:54 | 000,000,256 | ---- | C] () -- C:\WINDOWS\System32\pool.bin [2009/07/30 21:19:19 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iplayer.INI [2009/07/13 13:06:35 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\kmw_show.exe [2009/03/05 07:50:07 | 000,000,021 | ---- | C] () -- C:\WINDOWS\atid.ini [2008/06/06 06:38:08 | 000,000,268 | RH-- | C] () -- C:\Documents and Settings\All Users\Application Data\Treble Reduction [2008/06/06 06:38:08 | 000,000,020 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\PKP_DLdu.DAT [2008/04/14 08:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2008/04/14 08:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2008/04/14 08:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2008/04/14 08:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2008/04/14 08:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2008/04/14 08:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2008/04/14 08:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2008/04/14 08:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2008/04/14 08:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2007/03/28 17:24:23 | 000,000,335 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2007/02/21 19:14:06 | 000,003,401 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache [2006/09/18 12:52:13 | 000,118,784 | R--- | C] () -- C:\WINDOWS\bwUnin-7.2.0.157-8876480SL.exe [2006/09/11 17:25:12 | 000,118,784 | R--- | C] () -- C:\WINDOWS\bwUnin-7.2.0.137-8876480SL.exe [2005/12/09 15:37:42 | 002,400,256 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVMVdrv.sys [2005/12/09 15:37:42 | 000,016,768 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVPrcMon.sys [2005/12/09 15:35:54 | 002,174,464 | ---- | C] () -- C:\WINDOWS\System32\drivers\Lvckap.sys [2005/10/10 18:01:16 | 000,000,000 | ---- | C] () -- C:\WINDOWS\hpqEmlSz.INI [2005/09/29 16:32:55 | 000,104,140 | ---- | C] () -- C:\WINDOWS\hpoins04.dat.temp [2005/09/29 16:32:55 | 000,016,939 | ---- | C] () -- C:\WINDOWS\hpomdl04.dat.temp [2005/03/05 20:30:32 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini [2005/03/05 20:27:18 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll [2005/03/05 20:27:18 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll [2005/03/05 20:27:18 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll [2005/03/05 20:27:18 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll [2005/03/05 20:27:18 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll [2005/03/05 20:27:18 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll [2005/03/05 20:00:53 | 000,118,784 | R--- | C] () -- C:\WINDOWS\bwUnin-6.3.2.62.exe [2005/03/05 19:59:22 | 000,014,553 | ---- | C] () -- C:\WINDOWS\System32\CHODDI.SYS [2005/03/05 19:59:16 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\hpreg.dll [2005/03/05 19:58:54 | 000,002,154 | ---- | C] () -- C:\WINDOWS\System32\ssmute.ini [2005/03/05 19:56:03 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2005/03/05 19:46:00 | 000,086,562 | ---- | C] () -- C:\WINDOWS\hpiins01.dat [2005/03/05 19:46:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\hpimdl01.dat [2005/03/05 19:44:43 | 000,094,364 | ---- | C] () -- C:\WINDOWS\HPHins03.dat [2005/03/05 19:44:43 | 000,002,655 | ---- | C] () -- C:\WINDOWS\hphmdl03.dat [2005/03/05 19:41:56 | 000,104,240 | ---- | C] () -- C:\WINDOWS\hpoins04.dat [2005/03/05 19:41:56 | 000,016,939 | ---- | C] () -- C:\WINDOWS\hpomdl04.dat [2005/03/05 19:39:24 | 000,050,501 | ---- | C] () -- C:\WINDOWS\hpdins03.dat [2005/03/05 19:39:24 | 000,000,000 | ---- | C] () -- C:\WINDOWS\hpdmdl01.dat [2005/03/05 19:36:58 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini [2005/03/05 19:25:45 | 000,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini [2005/03/05 19:24:37 | 000,323,584 | ---- | C] () -- C:\WINDOWS\System32\pythoncom22.dll [2005/03/05 19:24:37 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\pywintypes22.dll [2005/03/05 19:24:16 | 000,016,896 | ---- | C] () -- C:\WINDOWS\System32\bcbmm.dll [2004/10/15 06:52:00 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2004/10/15 06:43:00 | 000,443,662 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2004/10/15 06:43:00 | 000,072,544 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2004/10/15 06:41:10 | 000,333,872 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2004/10/15 06:37:56 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2004/10/15 06:36:06 | 000,023,444 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2004/09/13 19:35:56 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini [2004/08/20 06:14:46 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\PcdrKernelModeServices.dll [2004/08/20 06:14:46 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\ProgressTrace.dll [2004/08/04 07:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2004/06/16 00:38:02 | 000,000,310 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini [2004/06/07 14:32:52 | 000,009,505 | ---- | C] () -- C:\WINDOWS\System32\hphmon06.dat [2003/04/11 02:04:00 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\JAWTAccessBridge.dll [1999/01/27 13:39:06 | 000,065,024 | ---- | C] () -- C:\WINDOWS\System32\indounin.dll [1997/06/13 07:56:08 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\Iyvu9_32.dll [color=#E56717]========== LOP Check ==========[/color] [2005/03/05 12:36:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\InterMute [2005/03/05 12:36:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator.YOUR-4F1261A8E5\Application Data\SampleView [2009/03/05 07:48:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\acccore [2009/03/05 07:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AIM Toolbar [2011/05/14 10:37:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar [2010/02/27 11:30:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9 [2011/08/23 21:07:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Babylon [2008/06/06 06:38:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Calibrators [2011/03/15 16:51:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\COMMON FILES [2008/06/06 06:38:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EnterNHelp [2008/01/29 11:35:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Grisoft [2007/06/17 15:34:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Musicnotes [2008/06/06 06:38:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nikon [2009/06/04 11:21:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap [2007/09/24 15:53:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\STOPzilla! [2010/07/26 16:54:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SupportSoft [2009/06/22 07:39:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP [2009/03/05 07:50:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Tencent [2008/06/06 06:38:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ultima_T15 [2009/01/05 08:27:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} [2010/12/25 12:17:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2009/12/25 10:52:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD} [2009/07/13 19:28:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34 < End of report >