[code] OTS logfile created on: 11/4/2011 5:10:33 PM - Run 1 OTS by OldTimer - Version 3.1.46.0 Folder = C:\Users\Chris Reaper\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 4.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 41.00% Memory free 8.00 Gb Paging File | 5.00 Gb Available in Paging File | 67.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 283.44 Gb Total Space | 99.48 Gb Free Space | 35.10% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: CHRISREAPER-PC Current User Name: Chris Reaper Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Include 64bit Scans Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days [Processes - Safe List] ots.exe -> C:\Users\Chris Reaper\Desktop\OTS.exe -> [2011/11/04 17:08:35 | 000,646,144 | ---- | M] (OldTimer Tools) sched.exe -> C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -> [2011/10/11 09:29:38 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) avwebgrd.exe -> C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe -> [2011/10/11 09:29:05 | 000,463,824 | ---- | M] (Avira Operations GmbH & Co. KG) avmailc.exe -> C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe -> [2011/10/11 09:28:56 | 000,342,480 | ---- | M] (Avira Operations GmbH & Co. KG) avguard.exe -> C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -> [2011/10/11 09:28:54 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) avgnt.exe -> C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe -> [2011/10/11 09:28:53 | 000,258,512 | ---- | M] (Avira Operations GmbH & Co. KG) mbamgui.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe -> [2011/08/31 17:00:48 | 000,449,608 | ---- | M] (Malwarebytes Corporation) mbamservice.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -> [2011/08/31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) armsvc.exe -> C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -> [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) pencommservice.exe -> C:\Program Files (x86)\Common Files\Livescribe\PenComm\PenCommService.exe -> [2011/05/19 20:04:08 | 000,468,992 | ---- | M] (Livescribe) tomtomhomeservice.exe -> C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe -> [2011/04/22 08:21:10 | 000,092,592 | ---- | M] (TomTom) bndaemon.exe -> C:\Program Files (x86)\Bradford Networks\Persistent Agent\bndaemon.exe -> [2011/03/07 22:11:40 | 003,079,960 | ---- | M] (Bradford Networks) lxrsii1s.exe -> C:\Windows\SysWOW64\LxrSII1s.exe -> [2009/12/30 13:21:02 | 000,065,536 | ---- | M] (Lexar Media, Inc.) nvcsvcmgr.exe -> C:\Program Files (x86)\Nortel\Nortel VPN Client\NvcSvcMgr.exe -> [2009/10/05 09:19:46 | 000,615,704 | ---- | M] (Nortel Networks) asscrpro.exe -> C:\Windows\AsScrPro.exe -> [2009/10/04 23:59:16 | 003,054,136 | ---- | M] (ASUS) wcourier.exe -> C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe -> [2009/07/24 13:32:50 | 001,593,344 | ---- | M] () fastbootagent.exe -> C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe -> [2009/07/23 20:13:38 | 000,306,232 | ---- | M] (ASUSTeK Computer Inc.) controldeckstartup.exe -> C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe -> [2009/07/22 20:58:46 | 000,017,976 | ---- | M] () hcontrol.exe -> C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe -> [2009/07/16 13:07:54 | 000,178,744 | ---- | M] (ASUS) adsmtray.exe -> C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe -> [2009/06/24 15:30:18 | 000,272,952 | ---- | M] (ASUSTek Computer Inc.) atkosd.exe -> C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe -> [2009/06/19 13:29:26 | 002,488,888 | ---- | M] (ASUS) asldrsrv.exe -> C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe -> [2009/06/15 20:30:42 | 000,084,536 | ---- | M] (ASUS) cnrpc.exe -> C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CNRpc.exe -> [2009/06/11 18:13:40 | 000,158,584 | ---- | M] () cinemanowsvc.exe -> C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CinemaNowSvc.exe -> [2009/06/11 18:13:40 | 000,127,352 | ---- | M] (CinemaNow, Inc.) cinemanowshell.exe -> C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CinemaNowShell.exe -> [2009/06/11 18:13:30 | 002,088,296 | ---- | M] (CinemaNow Inc.) sensorsrv.exe -> C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe -> [2009/05/18 18:58:38 | 000,305,720 | ---- | M] (ASUS) wdc.exe -> C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe -> [2008/12/22 20:15:34 | 000,174,648 | ---- | M] (ASUS) brpjp04a.exe -> C:\Program Files (x86)\Brownie\brpjp04a.exe -> [2008/10/17 16:52:16 | 000,099,632 | ---- | M] (brother) kbfiltr.exe -> C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe -> [2008/08/14 00:00:08 | 000,113,208 | ---- | M] (ASUS) atouch64.exe -> C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe -> [2008/08/13 23:59:56 | 000,301,624 | ---- | M] () ctskmstr.exe -> C:\Program Files (x86)\PharosSystems\Core\CTskMstr.exe -> [2008/05/16 23:12:54 | 000,290,816 | ---- | M] (Pharos Systems International) adsmsrv.exe -> C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe -> [2008/03/31 05:55:48 | 000,225,280 | ---- | M] (ASUSTek Computer Inc.) alu.exe -> C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe -> [2007/11/30 14:20:44 | 000,051,768 | ---- | M] () gfnexsrv.exe -> C:\Program Files\ATKGFNEX\GFNEXSrv.exe -> [2007/08/08 03:08:40 | 000,094,208 | ---- | M] () devsvc.exe -> C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe -> [2007/03/06 10:35:02 | 000,198,168 | ---- | M] (InterVideo Inc.) ioctlsvc.exe -> C:\Windows\SysWOW64\IoctlSvc.exe -> [2006/12/19 11:30:26 | 000,081,920 | ---- | M] (Prolific Technology Inc.) [Modules - No Company Name] presentationframework.aero.ni.dll -> C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\07cdef1a740151932dcf161f3306bd9c\PresentationFramework.Aero.ni.dll -> [2011/10/14 09:13:15 | 000,368,128 | ---- | M] () presentationframework.ni.dll -> C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\70e2ca33ffa52c743285dc5b4910a229\PresentationFramework.ni.dll -> [2011/10/14 09:12:34 | 014,339,072 | ---- | M] () presentationcore.ni.dll -> C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\7c94a121334aeca7553c7f01290740f0\PresentationCore.ni.dll -> [2011/10/14 09:11:59 | 012,234,752 | ---- | M] () windowsbase.ni.dll -> C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d7a64c28cf0c90e6c48af4f7d6f9ed41\WindowsBase.ni.dll -> [2011/10/14 09:11:45 | 003,347,968 | ---- | M] () system.ni.dll -> C:\Windows\assembly\NativeImages_v2.0.50727_32\System\abab08afa60a6f06bdde0fcc9649c379\System.ni.dll -> [2011/10/14 09:11:30 | 007,963,648 | ---- | M] () mscorlib.ni.dll -> C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\a1a82db68b3badc7c27ea1f6579d22c5\mscorlib.ni.dll -> [2011/10/14 09:11:22 | 011,490,304 | ---- | M] () zlib1.dll -> C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll -> [2011/06/24 22:56:36 | 000,087,328 | ---- | M] () libxml2.dll -> C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll -> [2011/06/24 22:56:14 | 001,241,888 | ---- | M] () office.odf -> C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF -> [2011/03/17 00:11:16 | 004,297,568 | ---- | M] () grooveintlresource.dll -> C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll -> [2010/10/20 15:45:26 | 008,801,120 | ---- | M] () wcourier.exe -> C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe -> [2009/07/24 13:32:50 | 001,593,344 | ---- | M] () controldeckstartup.exe -> C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe -> [2009/07/22 20:58:46 | 000,017,976 | ---- | M] () cnrpc.exe -> C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CNRpc.exe -> [2009/06/11 18:13:40 | 000,158,584 | ---- | M] () alu.exe -> C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe -> [2007/11/30 14:20:44 | 000,051,768 | ---- | M] () overlayiconshlext.dll -> C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll -> [2007/06/15 13:28:36 | 000,147,456 | ---- | M] () overlayiconshlext1.dll -> C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll -> [2007/06/01 20:08:18 | 000,143,360 | ---- | M] () [Win32 Services - Safe List] 64bit-(cmdAgent) [Auto | Running] -> C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -> [2011/10/07 13:47:14 | 002,663,568 | ---- | M] (COMODO) 64bit-(NisSrv) [On_Demand | Running] -> c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe -> [2011/04/27 17:21:18 | 000,288,272 | ---- | M] (Microsoft Corporation) 64bit-(MsMpSvc) [Auto | Running] -> c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -> [2011/04/27 17:21:18 | 000,012,784 | ---- | M] (Microsoft Corporation) 64bit-(wlcrasvc) [Disabled | Stopped] -> C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -> [2010/09/22 18:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) 64bit-(AFBAgent) [Auto | Running] -> C:\Windows\SysNative\FBAgent.exe -> [2009/09/15 16:21:58 | 000,359,552 | ---- | M] (ASUSTeK Computer Inc.) 64bit-(WinDefend) [On_Demand | Stopped] -> C:\Program Files\Windows Defender\MpSvc.dll -> [2009/07/13 21:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) 64bit-(ATKGFNEXSrv) [Auto | Running] -> C:\Program Files\ATKGFNEX\GFNEXSrv.exe -> [2007/08/08 03:08:40 | 000,094,208 | ---- | M] () (AntiVirSchedulerService) Avira Scheduler [Auto | Running] -> C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -> [2011/10/11 09:29:38 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) (AntiVirWebService) Avira Web Protection [Auto | Running] -> C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE -> [2011/10/11 09:29:05 | 000,463,824 | ---- | M] (Avira Operations GmbH & Co. KG) (AntiVirMailService) Avira Mail Protection [Auto | Running] -> C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe -> [2011/10/11 09:28:56 | 000,342,480 | ---- | M] (Avira Operations GmbH & Co. KG) (AntiVirService) Avira Realtime Protection [Auto | Running] -> C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -> [2011/10/11 09:28:54 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) (MBAMService) MBAMService [Auto | Running] -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -> [2011/08/31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) (AdobeARMservice) Adobe Acrobat Update Service [Auto | Running] -> C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -> [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) (PenCommService) Livescribe Pulse Smartpen Service [Auto | Running] -> C:\Program Files (x86)\Common Files\Livescribe\PenComm\PenCommService.exe -> [2011/05/19 20:04:08 | 000,468,992 | ---- | M] (Livescribe) (TomTomHOMEService) TomTomHOMEService [Auto | Running] -> C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe -> [2011/04/22 08:21:10 | 000,092,592 | ---- | M] (TomTom) (BNPagent) Bradford Persistent Agent Service [Auto | Running] -> C:\Program Files (x86)\Bradford Networks\Persistent Agent\bndaemon.exe -> [2011/03/07 22:11:40 | 003,079,960 | ---- | M] (Bradford Networks) (clr_optimization_v4.0.30319_32) Microsoft .NET Framework NGEN v4.0.30319_X86 [Auto | Stopped] -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -> [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) (LxrSII1s) Lexar Secure II [Auto | Running] -> C:\Windows\SysWOW64\LxrSII1s.exe -> [2009/12/30 13:21:02 | 000,065,536 | ---- | M] (Lexar Media, Inc.) (NvcSvcMgr) Nortel VPN Client [Auto | Running] -> C:\Program Files (x86)\Nortel\Nortel VPN Client\NvcSvcMgr.exe -> [2009/10/05 09:19:46 | 000,615,704 | ---- | M] (Nortel Networks) (FastBootAgent) FastBootAgent [Auto | Running] -> C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe -> [2009/07/23 20:13:38 | 000,306,232 | ---- | M] (ASUSTeK Computer Inc.) (ASLDRService) ASLDR Service [Auto | Running] -> C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe -> [2009/06/15 20:30:42 | 000,084,536 | ---- | M] (ASUS) (CinemaNow Service) CinemaNow Service [Auto | Running] -> C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CinemaNowSvc.exe -> [2009/06/11 18:13:40 | 000,127,352 | ---- | M] (CinemaNow, Inc.) (clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [Disabled | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) (Pharos Systems ComTaskMaster) Pharos Systems ComTaskMaster [Auto | Running] -> C:\Program Files (x86)\PharosSystems\Core\CTskMstr.exe -> [2008/05/16 23:12:54 | 000,290,816 | ---- | M] (Pharos Systems International) (ADSMService) ADSM Service [On_Demand | Running] -> C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe -> [2008/03/31 05:55:48 | 000,225,280 | ---- | M] (ASUSTek Computer Inc.) (Capture Device Service) Capture Device Service [Auto | Running] -> C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe -> [2007/03/06 10:35:02 | 000,198,168 | ---- | M] (InterVideo Inc.) (PLFlash DeviceIoControl Service) PLFlash DeviceIoControl Service [Auto | Running] -> C:\Windows\SysWOW64\IoctlSvc.exe -> [2006/12/19 11:30:26 | 000,081,920 | ---- | M] (Prolific Technology Inc.) [Driver Services - Safe List] 64bit-(avkmgr) avkmgr [Kernel | System | Running] -> C:\Windows\SysNative\drivers\avkmgr.sys -> [2011/10/11 09:29:53 | 000,027,760 | ---- | M] (Avira GmbH) 64bit-(avipbb) avipbb [Kernel | System | Running] -> C:\Windows\SysNative\drivers\avipbb.sys -> [2011/10/11 09:29:52 | 000,130,760 | ---- | M] (Avira GmbH) 64bit-(avgntflt) avgntflt [File_System | Auto | Running] -> C:\Windows\SysNative\drivers\avgntflt.sys -> [2011/10/11 09:29:52 | 000,097,312 | ---- | M] (Avira GmbH) 64bit-(MBAMProtector) MBAMProtector [File_System | On_Demand | Running] -> C:\Windows\SysNative\drivers\mbam.sys -> [2011/08/31 17:00:50 | 000,025,416 | ---- | M] (Malwarebytes Corporation) 64bit-(PulseUsb) Livescribe Smartpen USB Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\PulseUsb.sys -> [2011/05/19 20:04:40 | 000,026,112 | ---- | M] (Windows (R) Win 7 DDK provider) 64bit-(USBAAPL64) Apple Mobile USB Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\usbaapl64.sys -> [2011/05/10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) 64bit-(NisDrv) Microsoft Network Inspection System [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\NisDrvWFP.sys -> [2011/04/27 15:25:24 | 000,084,864 | ---- | M] (Microsoft Corporation) 64bit-(amdsata) amdsata [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\amdsata.sys -> [2011/03/11 02:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) 64bit-(amdxata) amdxata [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\amdxata.sys -> [2011/03/11 02:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) 64bit-(RimUsb) BlackBerry Smartphone [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\RimUsb_AMD64.sys -> [2011/02/16 18:23:46 | 000,074,240 | ---- | M] (Research In Motion Limited) 64bit-(igfx) igfx [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\igdkmd64.sys -> [2011/02/11 19:16:38 | 010,628,640 | ---- | M] (Intel Corporation) 64bit-(HpSAMD) HpSAMD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\HpSAMD.sys -> [2010/11/20 09:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) 64bit-(TsUsbFlt) TsUsbFlt [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\TsUsbFlt.sys -> [2010/11/20 07:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) 64bit-(fssfltr) fssfltr [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\fssfltr.sys -> [2010/09/23 00:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) 64bit-(ivusb) Initio Driver for USB Default Controller [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ivusb.sys -> [2010/07/29 00:25:10 | 000,029,720 | ---- | M] (Initio Corporation) 64bit-(athr) Atheros Extensible Wireless LAN device driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\athrx.sys -> [2010/07/08 09:03:48 | 002,228,736 | ---- | M] (Atheros Communications, Inc.) 64bit-(LxrSII1d) Secure II Driver [Kernel | Auto | Running] -> C:\Windows\SysNative\drivers\LxrSII1d.sys -> [2009/12/30 10:32:04 | 000,063,064 | ---- | M] (Lexar Media, Inc.) 64bit-(pcouffin) VSO Software pcouffin [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\pcouffin.sys -> [2009/11/22 03:21:47 | 000,082,816 | ---- | M] (VSO Software) 64bit-(BTATH_A2DP) Bluetooth A2DP Audio Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btath_a2dp.sys -> [2009/10/23 11:04:24 | 000,329,728 | ---- | M] (Atheros) 64bit-(BtFilter) BtFilter [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btfilter.sys -> [2009/10/22 08:49:28 | 000,057,344 | ---- | M] (Atheros) 64bit-(BTATH_HCRP) Bluetooth HCRP Server driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btath_hcrp.sys -> [2009/10/22 08:46:22 | 000,240,128 | ---- | M] (Atheros) 64bit-(AthBTPort) Atheros Virtual Bluetooth Class [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btath_flt.sys -> [2009/10/21 12:58:14 | 000,031,744 | ---- | M] (Atheros) 64bit-(BTATH_RCP) Bluetooth AVRCP Device [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btath_rcp.sys -> [2009/10/21 08:42:38 | 000,126,976 | ---- | M] (Atheros) 64bit-(BTATH_BUS) Atheros Bluetooth Bus [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\btath_bus.sys -> [2009/10/20 10:51:28 | 000,025,088 | ---- | M] (Atheros) 64bit-(nvcwfpco) nvcwfpco [Kernel | Auto | Running] -> C:\Windows\SysNative\drivers\nvcwfpco.sys -> [2009/10/05 09:19:48 | 000,077,832 | ---- | M] (Nortel Networks Corporation) 64bit-(NT_NvcA) Nortel VPN Adapter [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\ntnvca.sys -> [2009/10/05 09:19:43 | 000,044,040 | ---- | M] (Nortel Networks) 64bit-(AsDsm) AsDsm [File_System | Boot | Running] -> C:\Windows\SysNative\drivers\AsDsm.sys -> [2009/10/04 23:59:10 | 000,035,384 | ---- | M] (ASUSTek Computer Inc) 64bit-(TIEHDUSB) TI Core USB Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\tiehdusb.sys -> [2009/09/03 17:30:20 | 000,128,512 | ---- | M] (Texas Instruments) 64bit-(L1E) NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\L1E62x64.sys -> [2009/08/23 06:08:10 | 000,056,320 | ---- | M] (Atheros Communications, Inc.) 64bit-(BthAvrcp) Bluetooth AVRCP Profile [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\BthAvrcp.sys -> [2009/08/13 08:38:24 | 000,029,184 | ---- | M] (CSR, plc) 64bit-(AthDfu) Atheros Valkyrie USB BootROM [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\AthDfu.sys -> [2009/07/25 15:23:56 | 000,047,616 | ---- | M] (Windows (R) Codename Longhorn DDK provider) 64bit-(kbfiltr) Keyboard Filter [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\kbfiltr.sys -> [2009/07/20 05:29:39 | 000,015,416 | ---- | M] ( ) 64bit-(amdsbs) amdsbs [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\amdsbs.sys -> [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) 64bit-(LSI_SAS2) LSI_SAS2 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\lsi_sas2.sys -> [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) 64bit-(stexstor) stexstor [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\stexstor.sys -> [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) 64bit-(ROOTMODEM) Microsoft Legacy Modem Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\rootmdm.sys -> [2009/07/13 20:10:47 | 000,011,264 | ---- | M] (Microsoft Corporation) 64bit-(VIAHdAudAddService) VIA High Definition Audio Driver Service [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\viahduaa.sys -> [2009/07/09 04:11:31 | 001,222,144 | ---- | M] (VIA Technologies, Inc.) 64bit-(ETD) ELAN PS/2 Port Input Device [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\ETD.sys -> [2009/07/08 23:11:41 | 000,140,800 | ---- | M] (ELAN Microelectronic Corp.) 64bit-(lullaby) lullaby [File_System | Boot | Running] -> C:\Windows\SysNative\drivers\lullaby.sys -> [2009/06/18 15:18:10 | 000,015,928 | ---- | M] (Windows (R) Win 7 DDK provider) 64bit-(SiSGbeLH) SiS191/SiS190 Ethernet Device NDIS 6.0 Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\SiSG664.sys -> [2009/06/10 16:35:57 | 000,056,832 | ---- | M] (Silicon Integrated Systems Corp.) 64bit-(ebdrv) Broadcom NetXtreme II 10 GigE VBD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\evbda.sys -> [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) 64bit-(b06bdrv) Broadcom NetXtreme II VBD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\bxvbda.sys -> [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) 64bit-(b57nd60a) Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\b57nd60a.sys -> [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) 64bit-(hcw85cir) Hauppauge Consumer Infrared Receiver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hcw85cir.sys -> [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) 64bit-(iaStor) Intel AHCI Controller [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\iaStor.sys -> [2009/06/04 06:54:35 | 000,408,600 | ---- | M] (Intel Corporation) 64bit-(AmUStor) AM USB Stroage Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\AmUStor.sys -> [2009/05/26 09:32:37 | 000,040,448 | ---- | M] (Alcor Micro, Corp.) 64bit-(SNP2UVC) USB2.0 PC Camera (SNP2UVC) [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\snp2uvc.sys -> [2009/05/20 04:11:05 | 001,799,680 | ---- | M] () 64bit-(PxHlpa64) PxHlpa64 [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\PxHlpa64.sys -> [2009/05/20 03:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) 64bit-(GEARAspiWDM) GEAR ASPI Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\GEARAspiWDM.sys -> [2009/05/18 18:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) 64bit-(MTsensor) ATK0100 ACPI UTILITY [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\ATK64AMD.sys -> [2009/05/12 21:07:19 | 000,015,928 | ---- | M] (ASUS) 64bit-(RimVSerPort) RIM Virtual Serial Port v2 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\RimSerial_AMD64.sys -> [2009/01/09 17:02:08 | 000,031,744 | ---- | M] (Research in Motion Ltd) 64bit-(adfs) adfs [Kernel | Auto | Running] -> C:\Windows\SysNative\drivers\adfs.sys -> [2008/06/27 11:51:10 | 000,088,632 | ---- | M] (Adobe Systems, Inc.) 64bit-(WimFltr) WimFltr [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WimFltr.sys -> [2008/05/23 20:27:28 | 000,154,168 | ---- | M] (Microsoft Corporation) 64bit-(WDC_SAM) WD SCSI Pass Thru driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\wdcsam64.sys -> [2008/05/06 16:06:00 | 000,014,464 | ---- | M] (Western Digital Technologies) 64bit-(ManyCam) ManyCam Virtual Webcam, WDM Video Capture Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\ManyCam_x64.sys -> [2008/03/13 03:46:00 | 000,027,136 | ---- | M] (ManyCam LLC.) 64bit-(ASMMAP64) ASMMAP64 [Kernel | Auto | Running] -> C:\Program Files\ATKGFNEX\ASMMAP64.sys -> [2007/07/24 14:11:32 | 000,014,904 | ---- | M] () 64bit-(MarvinBus) Pinnacle Marvin Bus 64 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\MarvinBus64.sys -> [2005/09/23 22:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) (WIMMount) WIMMount [File_System | On_Demand | Stopped] -> C:\Windows\SysWOW64\drivers\wimmount.sys -> [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [Registry - Safe List] < 64bit-Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> < Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> < Internet Explorer Settings [HKEY_CURRENT_USER\] > -> -> HKEY_CURRENT_USER\: Main\\"Start Page" -> my.daemon-search.com -> HKEY_CURRENT_USER\: "ProxyEnable" -> 0 -> HKEY_CURRENT_USER\: "ProxyOverride" -> *.local -> < FireFox Settings [Prefs.js] > -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\FireFox\Profiles\n5hn24af.default\prefs.js -> browser.search.defaultenginename -> "AIM Search" -> browser.search.defaulturl -> "http://aim.search.aol.com/search/search?query={searchTerms}&invocationType=tb50-ff-aim-chromesbox-en-us" -> browser.search.selectedEngine -> "DAEMON Search" -> browser.search.useDBForOrder -> true -> browser.startup.homepage -> "http://www.google.com/" -> extensions.enabledItems -> {c2f863cd-0429-48c7-bb54-db756a951760}:5.96.10.6760 -> extensions.enabledItems -> {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6 -> extensions.enabledItems -> {6AC85730-7D0F-4de0-B3FA-21142DD85326}:2.5.5 -> extensions.enabledItems -> {F8A55C97-3DB6-4961-A81D-0DE0080E53CB}:0.9.5 -> extensions.enabledItems -> fbdislike@doweb.fr:1.2.3 -> extensions.enabledItems -> {a7c6cf7f-112c-4500-a7ea-39801a327e5f}:1.0.10 -> extensions.enabledItems -> {258735dc-6743-4805-95fc-f95941fffdad}:1.3.6 -> extensions.enabledItems -> {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.2 -> extensions.enabledItems -> {9AA46F4F-4DC7-4c06-97AF-5035170634FE}:4.01 -> extensions.enabledItems -> isreaditlater@ideashower.com:2.1.1 -> extensions.enabledItems -> {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20110323 -> extensions.enabledItems -> {3EC9C995-8072-4fc0-953E-4F30620D17F3}:2.0.0.4 -> extensions.enabledItems -> {c45c406e-ab73-11d8-be73-000a95be3b12}:1.1.9 -> extensions.enabledItems -> {5e5ab302-7f65-44cd-8211-c1d4caaccea3}:3.3.3.2 -> extensions.enabledItems -> {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 -> extensions.enabledItems -> {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1 -> extensions.enabledItems -> {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 -> extensions.enabledItems -> {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.1.94 -> extensions.enabledItems -> {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.1.94 -> extensions.enabledItems -> engine@conduit.com:3.3.3.2 -> extensions.enabledItems -> {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 -> extensions.enabledItems -> {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 -> keyword.URL -> "http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2706&invocationType=tb50-ff-aim-ab-en-us&query=" -> < FireFox Settings [User.js] > -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\FireFox\Profiles\n5hn24af.default\user.js -> < FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla HKLM\software\mozilla\Firefox\Extensions -> -> HKLM\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video [C:\PROGRAM FILES (X86)\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\HTML5VIDEO] -> [2011/05/01 21:07:26 | 000,000,000 | ---D | M] HKLM\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa [C:\PROGRAM FILES (X86)\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\WPA] -> [2011/05/01 21:07:26 | 000,000,000 | ---D | M] HKLM\software\mozilla\Mozilla Firefox 7.0.1\extensions -> -> HKLM\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components -> C:\Program Files (x86)\Mozilla Firefox\components [C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\COMPONENTS] -> [2011/10/28 13:53:58 | 000,000,000 | ---D | M] HKLM\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins -> C:\Program Files (x86)\Mozilla Firefox\plugins [C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\PLUGINS] -> [2011/10/28 13:53:58 | 000,000,000 | ---D | M] HKLM\software\mozilla\Mozilla Thunderbird 7.0.1\extensions -> -> HKLM\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Components -> C:\Program Files (x86)\Mozilla Thunderbird\components [C:\PROGRAM FILES (X86)\MOZILLA THUNDERBIRD\COMPONENTS] -> [2011/10/28 13:53:58 | 000,000,000 | ---D | M] HKLM\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Plugins -> C:\Program Files (x86)\Mozilla Thunderbird\plugins [C:\PROGRAM FILES (X86)\MOZILLA THUNDERBIRD\PLUGINS] -> [2011/10/28 13:53:58 | 000,000,000 | ---D | M] < FireFox Extensions [User Folders] > -> -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Extensions -> [2011/02/04 16:07:18 | 000,000,000 | ---D | M] No name found -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} -> [2010/01/19 23:45:46 | 000,000,000 | ---D | M] -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Extensions\home2@tomtom.com -> [2011/02/04 16:07:18 | 000,000,000 | ---D | M] -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org -> [2009/11/28 20:19:39 | 000,000,000 | ---D | M] -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions -> [2011/10/27 21:25:58 | 000,000,000 | ---D | M] Flash Game Maximizer -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\{258735dc-6743-4805-95fc-f95941fffdad} -> [2010/01/25 22:31:21 | 000,000,000 | ---D | M] WeatherBug -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\{3EC9C995-8072-4fc0-953E-4F30620D17F3} -> [2010/01/01 13:14:12 | 000,000,000 | ---D | M] ColorZilla -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326} -> [2011/10/04 10:45:49 | 000,000,000 | ---D | M] WOT -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} -> [2011/07/10 06:52:22 | 000,000,000 | ---D | M] "Free YouTube Download (Free Studio) Menu" -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} -> [2010/05/14 21:03:10 | 000,000,000 | ---D | M] Web Developer -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12} -> [2011/01/07 18:46:53 | 000,000,000 | ---D | M] Greasemonkey -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} -> [2011/10/11 12:49:55 | 000,000,000 | ---D | M] Download Manager Tweak -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB} -> [2010/12/09 15:41:21 | 000,000,000 | ---D | M] -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\engine@conduit.com -> [2011/03/21 21:03:30 | 000,000,000 | ---D | M] -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\n5hn24af.default\extensions\fbdislike@doweb.fr -> [2011/10/04 09:17:34 | 000,000,000 | ---D | M] < FireFox SearchPlugins [User Folders] > -> aim-search.xml -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\FireFox\Profiles\n5hn24af.default\searchplugins\aim-search.xml -> [2009/12/14 20:37:07 | 000,004,554 | ---- | M] () daemon-search.xml -> C:\Users\Chris Reaper\AppData\Roaming\Mozilla\FireFox\Profiles\n5hn24af.default\searchplugins\daemon-search.xml -> [2011/02/08 23:36:43 | 000,002,059 | ---- | M] () < FireFox Extensions [Program Folders] > -> -> C:\Program Files (x86)\Mozilla Firefox\extensions -> [2011/10/14 08:56:39 | 000,000,000 | ---D | M] Skype Click to Call -> C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} -> [2011/10/15 00:13:55 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} -> [2010/04/29 21:18:05 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} -> [2010/11/03 18:41:30 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} -> [2011/02/15 00:07:22 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} -> [2011/02/16 15:49:34 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} -> [2011/09/11 12:56:20 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} -> [2011/10/14 08:56:39 | 000,000,000 | ---D | M] No name found -> C:\USERS\CHRIS REAPER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\N5HN24AF.DEFAULT\EXTENSIONS\{9AA46F4F-4DC7-4C06-97AF-5035170634FE}.XPI -> () No name found -> C:\USERS\CHRIS REAPER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\N5HN24AF.DEFAULT\EXTENSIONS\{A7C6CF7F-112C-4500-A7EA-39801A327E5F}.XPI -> () No name found -> C:\USERS\CHRIS REAPER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\N5HN24AF.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI -> () No name found -> C:\USERS\CHRIS REAPER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\N5HN24AF.DEFAULT\EXTENSIONS\ISREADITLATER@IDEASHOWER.COM.XPI -> () < HOSTS File > ([2011/10/16 19:57:42 | 000,000,027 | ---- | M] - 1 lines) -> C:\Windows\SysNative\Drivers\etc\hosts -> Reset Hosts 127.0.0.1 localhost < 64bit-BHO's [HKEY_LOCAL_MACHINE] > -> 64bit-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2011/08/23 11:33:02 | 000,075,656 | ---- | M] (Oracle Corporation) < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {326E768D-4182-46FD-9C16-1449A49795F4} [HKLM] -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll [DivX Plus Web Player HTML5