OTL logfile created on: 6/3/2012 5:47:17 AM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM Internet Explorer (Version = 8.0.6001.18702) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 87.00% Memory free 2.00 Gb Paging File | 2.00 Gb Available in Paging File | 97.00% Paging File free Paging file location(s): d:\pagefile.sys 1524 3048 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 20.02 Gb Total Space | 0.01 Gb Free Space | 0.03% Space Free | Partition Type: NTFS Drive D: | 35.87 Gb Total Space | 5.40 Gb Free Space | 15.04% Space Free | Partition Type: NTFS Drive E: | 960.47 Mb Total Space | 590.28 Mb Free Space | 61.46% Space Free | Partition Type: FAT Drive X: | 284.12 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days Using ControlSet: ControlSet001 [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto] -- -- (vToolbarUpdater11.0.2) SRV - File not found [On_Demand] -- -- (TPHDEXLGSVC) SRV - File not found [On_Demand] -- -- (odserv) SRV - File not found [Auto] -- -- (avgwd) SRV - File not found [Auto] -- -- (AVGIDSAgent) SRV - [2012/05/06 13:07:12 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand] -- D:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012/05/06 01:17:54 | 000,257,696 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- D:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012/03/21 11:57:07 | 000,119,296 | ---- | M] (Yuna Software) [Auto] -- D:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe -- (MsgPlusService) SRV - [2012/02/27 20:39:00 | 000,292,200 | ---- | M] (Lenovo.) [Auto] -- D:\Program Files\ThinkPad\Utilities\DOZESVC.EXE -- (DozeSvc) SRV - [2012/02/27 20:39:00 | 000,244,800 | ---- | M] (Lenovo Group Limited) [Auto] -- D:\Program Files\ThinkPad\Utilities\PWMEWSVC.exe -- (PwmEWSvc) SRV - [2012/02/27 20:39:00 | 000,069,632 | ---- | M] () [Auto] -- D:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe -- (Power Manager DBC Service) SRV - [2012/01/04 09:32:36 | 000,718,888 | ---- | M] (Nokia) [On_Demand] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2011/10/24 14:58:46 | 000,882,960 | ---- | M] (Intel(R) Corporation) [Auto] -- D:\Program Files\Intel\WiFi\bin\S24EvMon.exe -- (S24EventMonitor) Intel(R) SRV - [2011/10/24 13:53:14 | 000,870,672 | ---- | M] (Intel(R) Corporation) [Auto] -- D:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng) Intel(R) SRV - [2011/10/24 13:34:56 | 000,481,552 | ---- | M] (Intel(R) Corporation) [Auto] -- D:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc) Intel(R) SRV - [2011/10/20 07:21:22 | 000,244,800 | ---- | M] (Lenovo ) [Auto] -- D:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe -- (AcSvc) SRV - [2011/10/20 07:21:20 | 000,105,536 | ---- | M] (Lenovo ) [Auto] -- D:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe -- (AcPrfMgrSvc) SRV - [2011/07/25 18:14:00 | 000,028,672 | ---- | M] (Lenovo Group Limited) [Auto] -- D:\Program Files\Lenovo\System Update\SUService.exe -- (SUService) SRV - [2011/07/12 12:53:48 | 000,131,432 | ---- | M] (Lenovo Group Limited) [Auto] -- D:\Program Files\Lenovo\HOTKEY\tphkload.exe -- (TPHKLOAD) SRV - [2011/07/12 12:53:24 | 000,101,736 | ---- | M] (Lenovo Group Limited) [Auto] -- D:\Program Files\Lenovo\HOTKEY\micmute.exe -- (LENOVO.MICMUTE) SRV - [2011/07/12 12:53:18 | 000,142,696 | ---- | M] (Lenovo Group Limited) [Auto] -- D:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe -- (TPHKSVC) SRV - [2009/09/24 11:03:58 | 000,475,220 | ---- | M] (Atheros) [Auto] -- D:\WINDOWS\system32\acs.exe -- (acs) SRV - [2008/05/14 12:25:12 | 000,520,192 | ---- | M] () [Auto] -- D:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe -- (TVT Backup Protection Service) SRV - [2008/05/09 01:50:46 | 000,253,952 | ---- | M] (Lenovo Group Limited) [Auto] -- D:\Program Files\Lenovo\Rescue and Recovery\UpdateMonitor.exe -- (TVT_UpdateMonitor) SRV - [2007/09/26 12:34:46 | 000,644,408 | ---- | M] (Lenovo Group Limited) [Auto] -- D:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe -- (ThinkVantage Registry Monitor Service) SRV - [2007/01/30 07:05:02 | 000,108,080 | ---- | M] (Lenovo Group Limited) [Auto] -- D:\WINDOWS\system32\IPSSVC.EXE -- (IPSSVC) SRV - [2006/06/29 16:57:50 | 000,032,768 | ---- | M] () [Auto] -- D:\WINDOWS\system32\TpKmpSvc.exe -- (TpKmpSVC) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand] -- -- (winachsf) DRV - File not found [Kernel | On_Demand] -- -- (WDICA) DRV - File not found [Kernel | Boot] -- -- (TPDIGIMN) DRV - File not found [Kernel | Boot] -- -- (Shockprf) DRV - File not found [Kernel | On_Demand] -- -- (ROOTMODEM) DRV - File not found [Kernel | On_Demand] -- -- (PptpMiniport) WAN Miniport (PPTP) DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP) DRV - File not found [Kernel | System] -- -- (PCIDump) DRV - File not found [Kernel | System] -- -- (lenovo.smi) DRV - File not found [Kernel | System] -- -- (lbrtfdc) DRV - File not found [Kernel | On_Demand] -- -- (IpFilterDriver) DRV - File not found [Kernel | On_Demand] -- -- (ialm) DRV - File not found [Kernel | System] -- -- (i2omgmt) DRV - File not found [Kernel | On_Demand] -- -- (hwdatacard) DRV - File not found [Kernel | On_Demand] -- -- (Gpc) DRV - File not found [Kernel | Auto] -- -- (fssfltr) DRV - File not found [Kernel | On_Demand] -- -- (e1express) Intel(R) DRV - File not found [File_System | Auto] -- -- (DLAUDFAM) DRV - File not found [File_System | Auto] -- -- (DLAUDF_M) DRV - File not found [File_System | Auto] -- -- (DLAPoolM) DRV - File not found [File_System | Auto] -- -- (DLAOPIOM) DRV - File not found [File_System | Auto] -- -- (DLAIFS_M) DRV - File not found [File_System | Auto] -- -- (DLADResN) DRV - File not found [File_System | Auto] -- -- (DLABOIOM) DRV - File not found [Kernel | System] -- -- (Changer) DRV - File not found [Kernel | Boot] -- -- (BTHidEnum) DRV - File not found [Kernel | On_Demand] -- -- (Btcsrusb) DRV - File not found [Kernel | On_Demand] -- -- (BT) DRV - File not found [Kernel | System] -- -- (Avgtdix) DRV - File not found [File_System | Boot] -- -- (Avgrkx86) DRV - File not found [Kernel | System] -- -- (Avgldx86) DRV - File not found [Kernel | On_Demand] -- -- (AVGIDSShim) DRV - File not found [Kernel | Boot] -- -- (AVGIDSHX) DRV - File not found [Kernel | On_Demand] -- -- (AVGIDSFilter) DRV - File not found [Kernel | On_Demand] -- -- (AVGIDSDriver) DRV - File not found [Kernel | On_Demand] -- -- (AEAudioService) DRV - File not found [Kernel | On_Demand] -- -- (ADIHdAudAddService) DRV - [2012/02/27 20:39:00 | 000,025,968 | ---- | M] (Lenovo.) [Kernel | Boot] -- D:\WINDOWS\System32\drivers\DOZEHDD.SYS -- (DozeHDD) DRV - [2012/02/27 20:39:00 | 000,012,144 | ---- | M] (Lenovo Group Limited) [Kernel | System] -- D:\WINDOWS\System32\drivers\TPPWRIF.SYS -- (TPPWRIF) DRV - [2011/12/23 08:32:14 | 000,041,040 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System] -- D:\WINDOWS\System32\drivers\avgmfx86.sys -- (Avgmfx86) DRV - [2011/09/04 03:10:42 | 000,015,190 | ---- | M] (Lenovo Group Limited) [Kernel | Disabled] -- D:\Program Files\Lenovo\System Update\session\tvsutemp\7bwc14ww\tpisysid.sys -- (TPISYSID) DRV - [2011/08/30 15:52:30 | 000,004,224 | ---- | M] () [Kernel | System] -- D:\WINDOWS\system32\drivers\IBMBLDID.sys -- (IBMTPCHK) DRV - [2011/08/30 15:52:28 | 000,011,520 | ---- | M] (IBM Corp.) [Kernel | System] -- D:\WINDOWS\System32\drivers\ANC.sys -- (ANC) DRV - [2010/10/06 23:11:38 | 006,609,920 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\NETwLx32.sys -- (NETwLx32) Intel(R) DRV - [2010/06/02 09:49:20 | 000,993,464 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\HSF_DPV.sys -- (HSF_DPV) DRV - [2010/06/02 09:49:18 | 000,217,016 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\HSFHWAZL.sys -- (HSFHWAZL) DRV - [2010/05/19 18:15:04 | 000,013,952 | ---- | M] (Intel Corporation) [Kernel | Auto] -- D:\WINDOWS\System32\drivers\s24trans.sys -- (s24trans) DRV - [2010/03/25 23:08:00 | 000,004,608 | ---- | M] () [Kernel | System] -- D:\WINDOWS\System32\drivers\TSMAPIP.SYS -- (TSMAPIP) DRV - [2009/10/05 09:08:52 | 005,977,216 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\NETw5x32.sys -- (NETw5x32) Intel(R) DRV - [2009/06/25 19:20:32 | 000,030,144 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\psadd.sys -- (psadd) DRV - [2008/08/26 05:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008/05/09 01:50:48 | 000,046,144 | ---- | M] (Lenovo) [Kernel | System] -- D:\WINDOWS\System32\drivers\tvtumon.sys -- (tvtumon) DRV - [2008/02/22 12:54:40 | 000,037,312 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\tvti2c.sys -- (TVTI2C) DRV - [2008/02/08 05:46:36 | 000,057,408 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\wsimd.sys -- (WSIMD) DRV - [2007/09/26 01:01:32 | 002,236,032 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\NETw4x32.sys -- (NETw4x32) Intel(R) DRV - [2007/05/10 23:10:50 | 000,034,704 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2007/03/05 02:00:04 | 000,027,792 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\BlueletSCOAudio.sys -- (BlueletSCOAudio) DRV - [2007/03/05 01:56:18 | 000,035,600 | ---- | M] (IVT Corporation.) [Kernel | Boot] -- D:\WINDOWS\System32\drivers\BTHidMgr.sys -- (BTHidMgr) DRV - [2007/03/05 01:53:18 | 000,044,304 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2007/03/05 01:52:18 | 000,034,448 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\VComm.sys -- (VComm) DRV - [2006/11/21 18:41:18 | 000,022,416 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\Program Files\IVT Corporation\BlueSoleil\device\Win2k\BTNetFilter.sys -- (BTNetFilter) DRV - [2006/11/06 12:24:56 | 000,012,080 | ---- | M] (Lenovo Group Limited) [Kernel | Auto] -- D:\WINDOWS\System32\drivers\PROCDD.SYS -- (PROCDD) DRV - [2006/10/01 20:55:00 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | System] -- D:\WINDOWS\System32\drivers\SMAPINT.SYS -- (Smapint) DRV - [2006/10/01 20:55:00 | 000,009,343 | ---- | M] () [Kernel | System] -- D:\WINDOWS\System32\drivers\TDSMAPI.SYS -- (TDSMAPI) DRV - [2006/07/19 13:06:02 | 000,021,376 | R--- | M] (DAVICOM Semiconductor, Inc. ) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\ADM851X.sys -- (ADM851X) DRV - [2005/11/18 07:02:50 | 000,005,660 | ---- | M] (Sonic Solutions) [File_System | System] -- D:\WINDOWS\System32\drivers\DLACDBHM.SYS -- (DLACDBHM) DRV - [2005/11/18 07:02:10 | 000,022,684 | ---- | M] (Sonic Solutions) [File_System | System] -- D:\WINDOWS\System32\drivers\DLARTL_N.SYS -- (DLARTL_N) DRV - [2001/08/17 09:48:14 | 000,011,520 | ---- | M] (IBM Corporation) [Kernel | On_Demand] -- D:\WINDOWS\System32\drivers\TwoTrack.sys -- (TwoTrack) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKLM\Software\Microsoft\Internet Explorer\Search,CustomSearch = http://us.rd.yahoo.com/customize/ie/defaults/cs/msgr8/*http://www.yahoo.com/ext/search/search.html IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll () FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: File not found FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: D:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: D:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: D:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/RhapsodyPlayerEngine,version=1.0: D:\Program Files\Real\RhapsodyPlayerEngine\nprhapengine.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: D:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: D:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKLM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1: D:\Program Files\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: D:\Program Files\AVG\AVG2012\Firefox4\ FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F53C93F1-07D5-430c-86D4-C9531B27DFAF}: D:\Program Files\AVG\AVG2012\Firefox\DoNotTrack\ FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: D:\Documents and Settings\All Users\Application Data\AVG Secure Search\11.0.0.9\ FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2012/05/06 13:07:14 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2012/05/17 17:07:10 | 000,000,000 | ---D | M] [2012/05/13 20:10:09 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\extensions [2012/05/06 13:07:08 | 000,097,208 | ---- | M] (Mozilla Foundation) -- D:\Program Files\mozilla firefox\components\browsercomps.dll [2012/02/16 17:05:38 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2012/05/06 13:05:23 | 000,001,525 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml [2012/02/03 12:30:34 | 000,002,252 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\bing.xml [2012/05/06 13:05:23 | 000,000,935 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml [2012/05/06 13:05:22 | 000,001,166 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml [2011/11/23 14:55:44 | 000,002,519 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\Search_Results.xml [2012/05/06 13:07:12 | 000,002,040 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\twitter.xml [2012/05/06 13:05:22 | 000,001,121 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml O1 HOSTS File: ([2006/02/28 08:00:00 | 000,000,734 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AVG Do Not Track) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - File not found O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - File not found O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - D:\WINDOWS\system32\DLA\DLASHX_W.DLL (Sonic Solutions) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - File not found O2 - BHO: (no name) - {99079a25-328f-4bd4-be04-00955acaa0a7} - No CLSID value found. O2 - BHO: (FACECONS Class) - {B2A44031-7EAD-434C-AC9E-7F1DA176BA8C} - D:\Program Files\facecons\Facecons.dll (Facecons) O2 - BHO: (CPwmIEBrowserHelper Object) - {F040E541-A427-4CF7-85D8-75E3E0F476C5} - D:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll (Lenovo Group Limited) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - File not found O3 - HKLM\..\Toolbar: (no name) - {99079a25-328f-4bd4-be04-00955acaa0a7} - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O4 - HKLM..\Run: [ACTray] D:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe (Lenovo ) O4 - HKLM..\Run: [ACWLIcon] D:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe (Lenovo ) O4 - HKLM..\Run: [AVG_TRAY] File not found O4 - HKLM..\Run: [AwaySch] D:\Program Files\Lenovo\AwayTask\AwaySch.EXE (Lenovo Group Limited) O4 - HKLM..\Run: [DLA] D:\WINDOWS\system32\DLA\DLACTRLW.EXE (Sonic Solutions) O4 - HKLM..\Run: [LenovoAutoScrollUtility] D:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe (Lenovo Group Limited) O4 - HKLM..\Run: [LPMailChecker] D:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE (Lenovo Group Limited) O4 - HKLM..\Run: [MessengerPlusForSkypeService] D:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe (Yuna Software) O4 - HKLM..\Run: [PlusService] D:\Program Files\Yuna Software\Messenger Plus!\PlusService.exe (Yuna Software) O4 - HKLM..\Run: [PWRMGRTR] D:\Program Files\ThinkPad\Utilities\PWRMGRTR.DLL (Lenovo Group Limited) O4 - HKLM..\Run: [TP4EX] File not found O4 - HKLM..\Run: [TPFNF7] D:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe (Lenovo Group Limited) O4 - HKLM..\Run: [TPKMAPHELPER] D:\Program Files\ThinkPad\Utilities\TpKmapAp.exe (Lenovo) O4 - HKLM..\Run: [TpShocks] File not found O4 - HKLM..\Run: [vProt] File not found O4 - Startup: D:\Documents and Settings\All Users\Start Menu\Programs\Startup\BlueSoleil.lnk = D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 36 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : ThinkVantage Password Manager... - {0045D4BC-5189-4b67-969C-83BB1906C421} - D:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll (Lenovo Group Limited) O9 - Extra Button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - File not found O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - File not found O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - Reg Error: Value error. File not found O16 - DPF: {2DAD3559-2923-4935-AD49-B673D2539944} https://www-307.ibm.com/pc/support/access/aslibmain/content/AcpIR.cab (IASRunner Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab (JuniperSetupClientControl Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 194.168.4.100 194.168.8.100 O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - File not found O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - File not found O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - File not found O20 - HKLM Winlogon: Shell - (Explorer.exe) - File not found O20 - HKLM Winlogon: UIHost - (logonui.exe) - File not found O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - File not found O20 - Winlogon\Notify\ACNotify: DllName - ACNotify.dll - File not found O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - File not found O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - File not found O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - File not found O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - File not found O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - File not found O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - File not found O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - File not found O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - File not found O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - File not found O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - File not found O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - File not found O24 - Desktop WallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - File not found O29 - HKLM SecurityProviders - (msapsspc.dll) - File not found O29 - HKLM SecurityProviders - (schannel.dll) - File not found O29 - HKLM SecurityProviders - (digest.dll) - File not found O29 - HKLM SecurityProviders - (msnsspc.dll) - File not found O32 - HKLM CDRom: AutoRun - 0 O32 - AutoRun File - [2008/07/06 10:42:22 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009/11/19 16:24:41 | 000,000,090 | ---- | M] () - C:\AUTORUN.INF -- [ NTFS ] O32 - AutoRun File - [2008/07/06 20:24:36 | 000,000,090 | ---- | M] () - D:\AUTORUN.INF -- [ NTFS ] O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (D:\PROGRA~1\AVG\AVG2012\avgrsx.exe /sync /restart) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012/05/19 08:17:08 | 000,000,000 | ---D | C] -- D:\WINDOWS\LastGood [2012/05/18 19:59:36 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\SureThing Shared [2012/05/18 19:59:35 | 000,000,000 | ---D | C] -- D:\Program Files\Sonic [2012/05/18 19:58:07 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Sonic Shared [2012/05/17 18:20:54 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\All Users\Application Data\Common Files [2012/05/17 18:15:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\MFAData [2012/05/17 17:07:10 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Works [2012/05/17 17:06:25 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Visual Studio [2012/05/17 17:06:24 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\DESIGNER [2012/05/17 16:58:45 | 000,000,000 | ---D | C] -- D:\WINDOWS\SHELLNEW [2012/05/17 16:56:39 | 000,000,000 | RH-D | C] -- D:\MSOCache [2012/05/13 20:29:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Microsoft Help [2012/05/12 14:00:23 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\msmq [2012/05/12 14:00:22 | 000,000,000 | ---D | C] -- D:\Inetpub [2012/05/11 18:25:16 | 000,000,000 | ---D | C] -- D:\d226b25f2e32d71ea0d593 [2012/05/06 13:10:41 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Mozilla [2012/05/06 13:10:24 | 000,000,000 | ---D | C] -- D:\Program Files\Mozilla Maintenance Service [6 D:\WINDOWS\Fonts\*.tmp files -> D:\WINDOWS\Fonts\*.tmp -> ] [3 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [28 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012/05/19 16:35:03 | 000,868,296 | ---- | M] () -- D:\eset_smart_security_live_installer.exe [2012/05/19 10:37:00 | 000,000,424 | -H-- | M] () -- D:\WINDOWS\tasks\User_Feed_Synchronization-{DB4DCA6C-349D-4140-B4C3-8E39FBF9B3CA}.job [2012/05/19 10:33:02 | 000,000,424 | -H-- | M] () -- D:\WINDOWS\tasks\User_Feed_Synchronization-{FA085490-05B8-4599-8894-F3BCE4E71103}.job [2012/05/19 10:14:02 | 000,000,830 | ---- | M] () -- D:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012/05/19 10:08:02 | 000,000,886 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012/05/19 07:19:42 | 000,000,146 | ---- | M] () -- D:\Documents and Settings\LocalService\avginfo.id [2012/05/19 07:16:55 | 000,000,302 | ---- | M] () -- D:\WINDOWS\tasks\PMTask.job [2012/05/19 05:19:10 | 000,025,357 | ---- | M] () -- D:\WINDOWS\System32\PROCDB.INI [2012/05/19 05:17:52 | 000,013,646 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2012/05/19 05:17:51 | 000,000,882 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012/05/19 05:17:34 | 000,000,380 | ---- | M] () -- D:\WINDOWS\System32\IPSCtrl.INI [2012/05/19 05:17:14 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2012/05/19 05:17:12 | 1063,702,528 | -HS- | M] () -- D:\hiberfil.sys [2012/05/18 20:01:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Start Menu\Programs\ThinkVantage [2012/05/18 19:59:42 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Start Menu\Programs\Multimedia Center For Think Offerings [2012/05/18 19:40:16 | 000,005,372 | ---- | M] () -- D:\WINDOWS\imsins.BAK [2012/05/18 19:38:37 | 000,477,704 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2012/05/18 19:38:37 | 000,078,230 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2012/05/18 06:35:23 | 000,268,600 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2012/05/13 20:42:48 | 000,000,000 | R--D | M] -- D:\Documents and Settings\All Users\Start Menu\Programs\Startup [2012/05/12 18:10:51 | 000,000,376 | ---- | M] () -- D:\WINDOWS\ODBC.INI [2012/05/12 07:56:27 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Silverlight [2012/05/12 06:32:46 | 000,000,528 | ---- | M] () -- D:\WINDOWS\tasks\PCDoctorBackgroundMonitorTask.job [2012/05/06 01:17:19 | 000,419,488 | ---- | M] (Adobe Systems Incorporated) -- D:\WINDOWS\System32\FlashPlayerApp.exe [2012/05/06 01:17:14 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- D:\WINDOWS\System32\FlashPlayerCPLApp.cpl [3 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [28 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012/05/19 16:34:54 | 000,868,296 | ---- | C] () -- D:\eset_smart_security_live_installer.exe [2012/05/19 05:22:57 | 000,000,146 | ---- | C] () -- D:\Documents and Settings\LocalService\avginfo.id [2012/03/15 16:49:43 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\syndata.bin [2012/02/16 07:32:46 | 000,003,072 | ---- | C] () -- D:\WINDOWS\System32\iacenc.dll [2011/10/19 13:32:48 | 000,024,048 | -H-- | C] () -- D:\WINDOWS\System32\mlfcache.dat [2011/09/06 08:11:22 | 000,000,267 | ---- | C] () -- D:\WINDOWS\wininit.ini [2011/09/04 11:10:19 | 000,045,056 | ---- | C] () -- D:\WINDOWS\System32\FPCALL.dll [2011/09/04 07:03:35 | 000,032,768 | ---- | C] () -- D:\WINDOWS\System32\TpKmpSvc.exe [2011/09/04 06:42:25 | 000,009,343 | ---- | C] () -- D:\WINDOWS\System32\drivers\TDSMAPI.SYS [2011/03/26 23:18:41 | 000,000,664 | ---- | C] () -- D:\WINDOWS\System32\d3d9caps.dat [2010/08/28 16:04:17 | 000,000,056 | -H-- | C] () -- D:\WINDOWS\System32\ezsidmv.dat [2010/07/12 08:40:14 | 000,001,804 | ---- | C] () -- D:\WINDOWS\System32\dcache.bin [2009/11/23 13:56:42 | 000,262,216 | ---- | C] () -- D:\WINDOWS\System32\IPTests.dll [2009/11/12 14:50:35 | 000,069,361 | ---- | C] () -- D:\WINDOWS\Huawei ModemsUninstall.exe [2009/08/03 11:07:42 | 000,403,816 | ---- | C] () -- D:\WINDOWS\System32\OGACheckControl.dll [2009/08/03 11:07:42 | 000,230,768 | ---- | C] () -- D:\WINDOWS\System32\OGAEXEC.exe [2008/10/05 20:39:47 | 000,000,185 | ---- | C] () -- D:\WINDOWS\DVDCreator.INI [2008/08/31 20:43:59 | 000,000,000 | ---- | C] () -- D:\WINDOWS\nsreg.dat [2008/07/30 19:34:29 | 000,000,376 | ---- | C] () -- D:\WINDOWS\ODBC.INI [2008/07/14 09:05:42 | 000,000,092 | ---- | C] () -- D:\WINDOWS\dellstat.ini [2008/07/14 09:05:40 | 000,000,422 | ---- | C] () -- D:\WINDOWS\lexstat.ini [2008/07/11 12:16:43 | 000,004,224 | ---- | C] () -- D:\WINDOWS\System32\drivers\IBMBLDID.sys [2008/07/11 11:42:51 | 000,147,456 | ---- | C] () -- D:\WINDOWS\System32\igfxCoIn_v4906.dll [2008/07/11 10:39:12 | 000,651,264 | ---- | C] () -- D:\WINDOWS\System32\libeay32.dll [2008/07/11 10:39:12 | 000,147,456 | ---- | C] () -- D:\WINDOWS\System32\ssleay32.dll [2008/07/07 10:44:43 | 000,004,161 | ---- | C] () -- D:\WINDOWS\ODBCINST.INI [2008/07/07 10:43:31 | 000,268,600 | ---- | C] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2008/07/07 10:04:22 | 000,002,048 | --S- | C] () -- D:\WINDOWS\bootstat.dat [2008/07/07 09:52:24 | 000,022,720 | ---- | C] () -- D:\WINDOWS\System32\emptyregdb.dat [2008/01/04 10:13:58 | 000,073,728 | ---- | C] () -- D:\WINDOWS\System32\DEVMAN.DLL [2007/06/19 09:13:40 | 000,000,380 | ---- | C] () -- D:\WINDOWS\System32\IPSCtrl.INI [2007/02/05 06:25:52 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\px.ini [2007/01/29 06:36:32 | 000,025,357 | ---- | C] () -- D:\WINDOWS\System32\PROCDB.INI [2006/02/28 08:00:00 | 013,107,200 | ---- | C] () -- D:\WINDOWS\System32\oembios.bin [2006/02/28 08:00:00 | 000,673,088 | ---- | C] () -- D:\WINDOWS\System32\mlang.dat [2006/02/28 08:00:00 | 000,477,704 | ---- | C] () -- D:\WINDOWS\System32\perfh009.dat [2006/02/28 08:00:00 | 000,272,128 | ---- | C] () -- D:\WINDOWS\System32\perfi009.dat [2006/02/28 08:00:00 | 000,218,003 | ---- | C] () -- D:\WINDOWS\System32\dssec.dat [2006/02/28 08:00:00 | 000,078,230 | ---- | C] () -- D:\WINDOWS\System32\perfc009.dat [2006/02/28 08:00:00 | 000,046,258 | ---- | C] () -- D:\WINDOWS\System32\mib.bin [2006/02/28 08:00:00 | 000,028,626 | ---- | C] () -- D:\WINDOWS\System32\perfd009.dat [2006/02/28 08:00:00 | 000,004,569 | ---- | C] () -- D:\WINDOWS\System32\secupd.dat [2006/02/28 08:00:00 | 000,004,461 | ---- | C] () -- D:\WINDOWS\System32\oembios.dat [2006/02/28 08:00:00 | 000,000,741 | ---- | C] () -- D:\WINDOWS\System32\noise.dat [color=#E56717]========== LOP Check ==========[/color] [2009/11/13 15:26:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Birdstep Technology [2009/02/07 08:52:00 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Bluetooth [2012/05/13 20:10:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\boost_interprocess [2008/07/14 09:07:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\BVRP Software [2012/05/17 18:20:54 | 000,000,000 | -H-D | M] -- D:\Documents and Settings\All Users\Application Data\Common Files [2009/08/23 07:57:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\EmailNotifier [2012/03/06 09:17:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Installations [2009/08/26 07:43:17 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\IsolatedStorage [2011/10/28 16:43:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Juniper Networks [2012/05/13 20:33:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Lenovo [2012/02/14 12:57:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Messenger Plus! [2012/04/10 11:21:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Messenger Plus! for Skype [2012/05/19 05:26:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\MFAData [2012/03/06 09:48:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Nokia [2012/03/14 08:15:57 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache [2011/09/04 07:16:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\PC Suite [2011/09/10 05:57:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\PCDr [2012/03/22 11:37:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\TEMP [2009/04/30 09:52:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Viper [2010/04/22 14:39:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2009/10/08 10:50:05 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD} [2009/06/25 10:50:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} [2012/05/12 06:32:46 | 000,000,528 | ---- | M] () -- D:\WINDOWS\Tasks\PCDoctorBackgroundMonitorTask.job [2012/05/19 07:16:55 | 000,000,302 | ---- | M] () -- D:\WINDOWS\Tasks\PMTask.job [2012/05/19 10:37:00 | 000,000,424 | -H-- | M] () -- D:\WINDOWS\Tasks\User_Feed_Synchronization-{DB4DCA6C-349D-4140-B4C3-8E39FBF9B3CA}.job [2012/05/19 10:33:02 | 000,000,424 | -H-- | M] () -- D:\WINDOWS\Tasks\User_Feed_Synchronization-{FA085490-05B8-4599-8894-F3BCE4E71103}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< BTHidEnum.sys /s /md5 >[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 112 bytes -> D:\Documents and Settings\All Users\Application Data\TEMP:D1B5B4F1 < End of report >