OTL logfile created on: 9/15/2012 1:24:34 PM - Run 5 OTL by OldTimer - Version 3.2.61.4 Folder = C:\Users\me\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.95 Gb Total Physical Memory | 2.33 Gb Available Physical Memory | 59.11% Memory free 7.90 Gb Paging File | 6.08 Gb Available in Paging File | 77.03% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 580.98 Gb Total Space | 509.59 Gb Free Space | 87.71% Space Free | Partition Type: NTFS Drive E: | 3.74 Gb Total Space | 2.98 Gb Free Space | 79.59% Space Free | Partition Type: FAT32 Computer Name: JENNIFER-PC | User Name: me | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - C:\Users\me\Desktop\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\12.2.6\ToolbarUpdater.exe () PRC - C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\12.2.6\ScriptHelper.exe () PRC - C:\Program Files (x86)\AVG Secure Search\vprot.exe () PRC - C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64barsvc.exe (COMPANYVERS_NAME) PRC - C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64brmon.exe (VER_COMPANY_NAME) PRC - C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files (x86)\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) PRC - C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe (Google Inc.) PRC - C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe (Eastman Kodak Company) PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11g_ActiveX.exe (Adobe Systems, Inc.) PRC - C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files (x86)\Cricket Broadband Connect\AvqAutorun.exe () PRC - C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe () [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - C:\Program Files (x86)\Common Files\AVG Secure Search\DNTInstaller\12.2.6\avgdttbx.dll () MOD - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\SiteSafety.dll () MOD - C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\12.2.6\ScriptHelper.exe () MOD - C:\Program Files (x86)\AVG Secure Search\12.2.5.32\AVG Secure Search_toolbar.dll () MOD - C:\Program Files (x86)\AVG Secure Search\vprot.exe () MOD - C:\Program Files (x86)\Cricket Broadband Connect\AvqAutorun.exe () [color=#E56717]========== Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - (TOSHIBA eco Utility Service) -- C:\Program Files\Toshiba\TECO\TecoService.exe (TOSHIBA Corporation) SRV:[b]64bit:[/b] - (TPCHSrv) -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe (TOSHIBA Corporation) SRV:[b]64bit:[/b] - (TosCoSrv) -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe (TOSHIBA Corporation) SRV:[b]64bit:[/b] - (TOSHIBA HDD SSD Alert Service) -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe (TOSHIBA Corporation) SRV:[b]64bit:[/b] - (TODDSrv) -- C:\Windows\SysNative\TODDSrv.exe (TOSHIBA Corporation) SRV:[b]64bit:[/b] - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation) SRV:[b]64bit:[/b] - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (CISVC) -- C:\Windows\SysNative\CISVC.EXE (Microsoft Corporation) SRV - (vToolbarUpdater12.2.6) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\12.2.6\ToolbarUpdater.exe () SRV - (TelevisionFanaticService) -- C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64barsvc.exe (COMPANYVERS_NAME) SRV - (AVGIDSAgent) -- C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe (AVG Technologies CZ, s.r.o.) SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation) SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) SRV - (avgwd) -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe (TuneUp Software) SRV - (TMachInfo) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe (TOSHIBA Corporation) SRV - (UNS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) SRV - (WAS) -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll (Microsoft Corporation) SRV - (W3SVC) -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll (Microsoft Corporation) SRV - (AppHostSvc) -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll (Microsoft Corporation) SRV - (GamesAppService) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe (WildTangent, Inc.) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) SRV - (WlanWpsSvc) -- C:\Program Files (x86)\D-Link\DWA-131 revA\WlanWpsSvc.exe () [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - (avgtp) -- C:\Windows\SysNative\drivers\avgtpx64.sys (AVG Technologies) DRV:[b]64bit:[/b] - (Avgtdia) -- C:\Windows\SysNative\drivers\avgtdia.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (Avgldx64) -- C:\Windows\SysNative\drivers\avgldx64.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (ssudmdm) -- C:\Windows\SysNative\drivers\ssudmdm.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV:[b]64bit:[/b] - (dg_ssudbus) -- C:\Windows\SysNative\drivers\ssudbus.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV:[b]64bit:[/b] - (AVGIDSHA) -- C:\Windows\SysNative\drivers\avgidsha.sys (AVG Technologies CZ, s.r.o. ) DRV:[b]64bit:[/b] - (Fs_Rec) -- C:\windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.) DRV:[b]64bit:[/b] - (Avgrkx64) -- C:\Windows\SysNative\drivers\avgrkx64.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (Avgmfx64) -- C:\Windows\SysNative\drivers\avgmfx64.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (AVGIDSFilter) -- C:\Windows\SysNative\drivers\avgidsfiltera.sys (AVG Technologies CZ, s.r.o. ) DRV:[b]64bit:[/b] - (AVGIDSDriver) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys (AVG Technologies CZ, s.r.o. ) DRV:[b]64bit:[/b] - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation) DRV:[b]64bit:[/b] - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:[b]64bit:[/b] - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:[b]64bit:[/b] - (PGEffect) -- C:\Windows\SysNative\drivers\PGEffect.sys (TOSHIBA Corporation) DRV:[b]64bit:[/b] - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated) DRV:[b]64bit:[/b] - (CnxtHdAudService) -- C:\Windows\SysNative\drivers\CHDRT64.sys (Conexant Systems Inc.) DRV:[b]64bit:[/b] - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation) DRV:[b]64bit:[/b] - (RTL8192Ce) -- C:\Windows\SysNative\drivers\rtl8192ce.sys (Realtek Semiconductor Corporation ) DRV:[b]64bit:[/b] - (RSUSBSTOR) -- C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.) DRV:[b]64bit:[/b] - (RSUSBVSTOR) -- C:\Windows\SysNative\drivers\rtsuvstor.sys (Realtek Semiconductor Corp.) DRV:[b]64bit:[/b] - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (RMCAST) -- C:\Windows\SysNative\drivers\rmcast.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (usbser) -- C:\Windows\SysNative\drivers\usbser.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:[b]64bit:[/b] - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (L1C) -- C:\Windows\SysNative\drivers\L1C62x64.sys (Atheros Communications, Inc.) DRV:[b]64bit:[/b] - (MEIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation) DRV:[b]64bit:[/b] - (IntcDAud) -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel(R) Corporation) DRV:[b]64bit:[/b] - (PTUMWVsp) -- C:\Windows\SysNative\drivers\PTUMWVsp.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV:[b]64bit:[/b] - (PTUMWNET) -- C:\Windows\SysNative\drivers\PTUMWNET.sys (DEVGURU Co., LTD.) DRV:[b]64bit:[/b] - (PTUMWMdm) -- C:\Windows\SysNative\drivers\PTUMWMdm.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV:[b]64bit:[/b] - (PTUMWFLT) -- C:\Windows\SysNative\drivers\PTUMWFLT.sys (DEVGURU Co., LTD.) DRV:[b]64bit:[/b] - (PTUMWCDF) -- C:\Windows\SysNative\drivers\PTUMWCDF.sys (DEVGURU Co., LTD.) DRV:[b]64bit:[/b] - (PTUMWBus) -- C:\Windows\SysNative\drivers\PTUMWBus.sys (DEVGURU Co., LTD.) DRV:[b]64bit:[/b] - (RTL8192su) -- C:\Windows\SysNative\drivers\RTL8192su.sys (Realtek Semiconductor Corporation ) DRV:[b]64bit:[/b] - (tdcmdpst) -- C:\Windows\SysNative\drivers\tdcmdpst.sys (TOSHIBA Corporation.) DRV:[b]64bit:[/b] - (TVALZ) -- C:\Windows\SysNative\drivers\TVALZ_O.SYS (TOSHIBA Corporation) DRV:[b]64bit:[/b] - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:[b]64bit:[/b] - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:[b]64bit:[/b] - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:[b]64bit:[/b] - (tos_sps64) -- C:\Windows\SysNative\drivers\tos_sps64.sys (TOSHIBA Corporation) DRV:[b]64bit:[/b] - (TVALZFL) -- C:\Windows\SysNative\drivers\TVALZFL.sys (TOSHIBA Corporation) DRV:[b]64bit:[/b] - (QIOMem) -- C:\Windows\SysNative\drivers\QIOMem.sys (TOSHIBA) DRV:[b]64bit:[/b] - (SrvHsfV92) -- C:\Windows\SysNative\drivers\VSTDPV6.SYS (Conexant Systems, Inc.) DRV:[b]64bit:[/b] - (SrvHsfWinac) -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS (Conexant Systems, Inc.) DRV:[b]64bit:[/b] - (SrvHsfHDA) -- C:\Windows\SysNative\drivers\VSTAZL6.SYS (Conexant Systems, Inc.) DRV:[b]64bit:[/b] - (netr28ux) -- C:\Windows\SysNative\drivers\netr28ux.sys (Ralink Technology Corp.) DRV:[b]64bit:[/b] - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:[b]64bit:[/b] - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:[b]64bit:[/b] - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:[b]64bit:[/b] - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV:[b]64bit:[/b] - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.) DRV - (TuneUpUtilitiesDrv) -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys (TuneUp Software) DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {19C9758E-D9B2-4AE5-8ACD-54CD86C381F4} IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{19C9758E-D9B2-4AE5-8ACD-54CD86C381F4}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {59616060-AC1E-4029-8AB2-3ED5DDCC3B1B} IE - HKLM\..\SearchScopes\{59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF IE - HKLM\..\SearchScopes\{a5b9c0f5-5616-47cd-a95f-e43b488faccf}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^XP^xdm044^S02700^us&si=CIPfiqn867ECFcXBKgodiDgA2g&ptb=A9DF1735-4A37-4674-B2A8-7AFF0E8785F0&psa=&ind=2012081810&st=sb&n=77edee92&searchfor={searchTerms} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig IE - HKCU\..\URLSearchHook: {0696f815-a3a9-490a-bb14-9ec3350b1276} - No CLSID value found IE - HKCU\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233} IE - HKCU\..\SearchScopes\{34A07218-11A1-4AEA-8EE1-E5E97DE08D07}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF IE - HKCU\..\SearchScopes\{59616060-AC1E-4029-8AB2-3ED5DDCC3B1B}: "URL" = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNF IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = https://isearch.avg.com/search?cid={7DB2DF56-5E34-414D-A10F-4DADF02EDD8D}&mid=35a047b2a29047d09a2f39d3c94168da-a0985b0dcc9b7177163f1bc18bb897414cdd23f0&lang=en&ds=AVG&pr=pr&d=2012-03-12 17:22:40&v=12.2.5.32&sap=dsp&q={searchTerms} IE - HKCU\..\SearchScopes\{a5b9c0f5-5616-47cd-a95f-e43b488faccf}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^XP^xdm044^S02700^us&si=CIPfiqn867ECFcXBKgodiDgA2g&ptb=A9DF1735-4A37-4674-B2A8-7AFF0E8785F0&psa=&ind=2012081810&st=sb&n=77edee92&searchfor={searchTerms} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "AVG Secure Search" FF - prefs.js..browser.search.selectedEngine: "AVG Secure Search" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "https://mail.google.com/mail/u/0/h/1lmvcm1n5slyn/|http://www.thewesternstoreok.com/|https://westernstore.myshopify.com/admin/products|http://www.ebay.com/?ssPageName=ADME:B:TB1:US:1|http://us.mg5.mail.yahoo.com/neo/launch#/minty/page/inbox|https://mail.google.com/mail/u/0/?shva=1#inbox" FF - prefs.js..extensions.enabledAddons: 64ffxtbr@TelevisionFanatic.com:2.50.0.50716 FF - prefs.js..extensions.enabledAddons: info@indulgy.com:1.0.1 FF - user.js - File not found FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.0: C:\windows\system32\npDeployJava1.dll (Oracle Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.0: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\12.2.6\\npsitesafety.dll () FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.1: C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@TelevisionFanatic.com/Plugin: C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\NP64Stub.dll (MindSpark) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files (x86)\AVG\AVG2012\Firefox4\ [2012/09/13 10:02:38 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\ProgramData\AVG Secure Search\12.2.5.32\ [2012/09/05 08:09:23 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\64ffxtbr@TelevisionFanatic.com: C:\Program Files (x86)\TelevisionFanatic\bar\1.bin [2012/08/16 05:48:51 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/09/12 04:58:59 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/09/12 04:58:59 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/09/12 04:58:59 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/08/07 13:06:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Extensions [2012/09/08 00:53:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions [2012/09/08 00:53:48 | 000,000,000 | ---D | M] (TelevisionFanatic) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\64ffxtbr@TelevisionFanatic.com [2012/09/08 00:53:49 | 000,012,604 | ---- | M] () (No name found) -- C:\Users\me\AppData\Roaming\Mozilla\Firefox\Profiles\itio8e5h.default\extensions\info@indulgy.com.xpi [2012/03/20 11:43:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions [2012/07/29 18:32:36 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll [2012/09/05 08:08:46 | 000,003,769 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml [2012/09/08 22:12:56 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml [2012/09/08 22:12:55 | 000,002,253 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml [color=#E56717]========== Chrome ==========[/color] CHR - homepage: http://www.google.com/ CHR - default_search_provider: AVG Secure Search (Enabled) CHR - default_search_provider: search_url = https://isearch.avg.com/search?cid={7DB2DF56-5E34-414D-A10F-4DADF02EDD8D}&mid=35a047b2a29047d09a2f39d3c94168da-a0985b0dcc9b7177163f1bc18bb897414cdd23f0&lang=en&ds=AVG&pr=pr&d=2012-03-12 17:22:40&v=12.2.5.32&sap=dsp&q={searchTerms} CHR - default_search_provider: suggest_url = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding}, CHR - homepage: http://www.google.com/ CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\pdf.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\gcswf32.dll CHR - plugin: Shockwave Flash (Enabled) = C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll CHR - plugin: AVG Internet Security (Enabled) = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\plugins/avgnpss.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll CHR - plugin: Java Deployment Toolkit 6.0.200.2 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll CHR - plugin: Java(TM) Platform SE 6 U20 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll CHR - plugin: WildTangent Games App Presence Detector (Enabled) = C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll CHR - plugin: Default Plug-in (Enabled) = default_plugin CHR - Extension: YouTube = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Google Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\ CHR - Extension: VUDU Movies = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\daomabnenlgkenegngdblacoobnncgib\2.0.0.2_0\ CHR - Extension: Crackle = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic\7.1.3_0\ CHR - Extension: YourNextFilm = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jadajphjladhhmcjiomkmlihlknbnicc\0.0.0.1_0\ CHR - Extension: AVG Safe Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.2210_0\ CHR - Extension: AVG Secure Search = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\12.2.5.32_0\ CHR - Extension: Gmail = C:\Users\me\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2012/08/07 14:04:51 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2:[b]64bit:[/b] - BHO: (AVG Do Not Track) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files (x86)\AVG\AVG2012\avgdtiea.dll (AVG Technologies CZ, s.r.o.) O2:[b]64bit:[/b] - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll (AVG Technologies CZ, s.r.o.) O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (Search Assistant BHO) - {5d79f641-c168-40df-a32f-bacea7509e75} - C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64SrcAs.dll (MindSpark) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\12.2.5.32\AVG Secure Search_toolbar.dll () O2 - BHO: (Toolbar BHO) - {cb41fc95-f1b3-4797-8bb6-1012ff62abba} - C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64bar.dll (MindSpark) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll () O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\12.2.5.32\AVG Secure Search_toolbar.dll () O3 - HKLM\..\Toolbar: (TelevisionFanatic) - {c98d5b61-b0ea-4d48-9839-1079d352d880} - C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64bar.dll (MindSpark) O3 - HKCU\..\Toolbar\WebBrowser: (TelevisionFanatic) - {C98D5B61-B0EA-4D48-9839-1079D352D880} - C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64bar.dll (MindSpark) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O9:[b]64bit:[/b] - Extra Button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files (x86)\AVG\AVG2012\avgdtiea.dll (AVG Technologies CZ, s.r.o.) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O16 - DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} http://download.microsoft.com/download/B/3/A/B3A2EA73-793D-4ABE-992D-C81140384044/igdtoolx.cab (IGDTester Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3C8BA29F-8F88-481E-A27D-8E3E0B68DF82}: NameServer = 10.133.20.11 10.132.20.11 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A97D3E95-EB25-4277-A222-41B8B3302689}: DhcpNameServer = 192.168.2.1 68.105.28.11 68.105.29.11 68.105.28.12 O18:[b]64bit:[/b] - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll (AVG Technologies CZ, s.r.o.) O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\msdaipp - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\oledb - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\ms-itss - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\viprotocol - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found O18 - Protocol\Handler\gopher - No CLSID value found O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ms-help - No CLSID value found O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\12.2.6\ViProtocol.dll () O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation) O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation) O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /sync /restart) O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = ComFile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012/09/15 13:22:56 | 000,599,552 | ---- | C] (OldTimer Tools) -- C:\Users\me\Desktop\OTL.exe [2012/09/13 10:02:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG [2012/09/12 08:22:53 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\RNDISMP.sys [2012/09/12 08:22:38 | 000,574,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3d10level9.dll [2012/09/12 08:22:32 | 000,376,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\netio.sys [2012/09/12 08:22:32 | 000,288,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\FWPKCLNT.SYS [2012/09/08 00:49:04 | 000,000,000 | ---D | C] -- C:\Users\me\Desktop\SSI INFO & DOWNLOADS [2012/09/06 13:01:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office [2012/09/06 13:00:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER [2012/09/06 12:59:50 | 000,000,000 | ---D | C] -- C:\windows\PCHEALTH [2012/09/06 12:57:22 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Analysis Services [2012/09/06 12:57:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services [2012/09/06 12:56:48 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2012/09/06 12:56:26 | 000,000,000 | RH-D | C] -- C:\MSOCache [2012/09/05 08:08:57 | 000,031,080 | ---- | C] (AVG Technologies) -- C:\windows\SysNative\drivers\avgtpx64.sys [2012/09/01 02:26:52 | 000,000,000 | ---D | C] -- C:\Users\me\Documents\HOW TO'S [2012/08/24 15:43:16 | 000,384,352 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\windows\SysNative\drivers\avgtdia.sys [2012/08/21 10:58:42 | 000,000,000 | ---D | C] -- C:\windows\SysNative\%LOCALAPPDATA% [2012/08/17 10:57:24 | 000,839,152 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\deployJava1.dll [2012/08/17 10:57:23 | 000,955,888 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\npDeployJava1.dll [2012/08/17 10:57:23 | 000,268,784 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\javaws.exe [2012/08/17 10:57:11 | 000,189,424 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\javaw.exe [2012/08/17 10:57:11 | 000,188,912 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\java.exe [2012/08/17 10:56:56 | 000,000,000 | ---D | C] -- C:\Program Files\Java [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012/09/15 13:22:56 | 000,599,552 | ---- | M] (OldTimer Tools) -- C:\Users\me\Desktop\OTL.exe [2012/09/15 13:09:41 | 000,186,044 | ---- | M] () -- C:\Users\me\Documents\4GEEKS2.jpg [2012/09/15 13:04:53 | 000,181,522 | ---- | M] () -- C:\Users\me\Documents\4GEEKS.jpg [2012/09/15 12:32:50 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job [2012/09/15 12:32:46 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat [2012/09/14 23:06:52 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job [2012/09/14 22:58:31 | 094,810,240 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\incavi.avm [2012/09/14 09:55:11 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012/09/14 09:55:11 | 000,024,608 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012/09/14 09:51:58 | 000,774,006 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI [2012/09/14 09:51:58 | 000,659,664 | ---- | M] () -- C:\windows\SysNative\perfh009.dat [2012/09/14 09:51:58 | 000,117,376 | ---- | M] () -- C:\windows\SysNative\perfc009.dat [2012/09/14 09:47:53 | 000,000,374 | ---- | M] () -- C:\windows\SysNative\drivers\etc\hosts.ics [2012/09/14 09:47:40 | 000,030,720 | ---- | M] () -- C:\windows\SysNative\umstartup.etl [2012/09/14 09:47:38 | 3180,220,416 | -HS- | M] () -- C:\hiberfil.sys [2012/09/14 09:46:45 | 000,024,576 | ---- | M] () -- C:\windows\SysNative\umstartup000.etl [2012/09/13 16:31:19 | 000,261,450 | ---- | M] () -- C:\Users\me\Desktop\PURSE SACK.pdf [2012/09/13 10:02:38 | 000,000,976 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2012.lnk [2012/09/12 18:57:50 | 000,134,144 | ---- | M] () -- C:\Users\me\Documents\BABY CROCODILE BOOTIES.pub [2012/09/12 18:45:54 | 000,104,960 | ---- | M] () -- C:\Users\me\Documents\BABY KNEEHIGHS.pub [2012/09/12 16:35:21 | 000,125,952 | ---- | M] () -- C:\Users\me\Documents\SIMPLE BOOTIES.pub [2012/09/12 16:12:15 | 000,141,312 | ---- | M] () -- C:\Users\me\Documents\BIG POCKET BAG.pub [2012/09/12 16:12:05 | 000,383,488 | ---- | M] () -- C:\Users\me\Documents\FOLDING CHANGING PAD.pub [2012/09/12 16:04:34 | 000,024,454 | ---- | M] () -- C:\Users\me\Desktop\GATHERED.png [2012/09/12 08:06:57 | 000,000,217 | ---- | M] () -- C:\Users\me\Desktop\portal.htm [2012/09/11 21:17:25 | 000,088,957 | ---- | M] () -- C:\Users\me\Desktop\Oklahoma City assistance programs.pdf [2012/09/11 02:18:53 | 000,001,175 | ---- | M] () -- C:\Users\me\Documents\BBY.jpg [2012/09/10 23:30:05 | 000,581,969 | ---- | M] () -- C:\Users\me\Desktop\EASY_ Baby - Toddler Crochet Socks.pdf [2012/09/10 23:26:15 | 000,031,883 | ---- | M] () -- C:\Users\me\Desktop\ROBIN1.jpg [2012/09/06 13:33:54 | 000,418,000 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT [2012/09/06 12:53:08 | 000,001,767 | ---- | M] () -- C:\Users\me\Desktop\Office Professional 2010 _1346953988532.lnk [2012/09/06 11:33:43 | 000,001,767 | ---- | M] () -- C:\Users\me\Desktop\Office Professional 2010 _1346949222929.lnk [2012/09/05 08:08:57 | 000,031,080 | ---- | M] (AVG Technologies) -- C:\windows\SysNative\drivers\avgtpx64.sys [2012/09/05 00:31:12 | 006,484,892 | ---- | M] () -- C:\Users\me\Desktop\brother '.pdf [2012/09/04 14:51:28 | 000,676,047 | ---- | M] () -- C:\Users\me\Desktop\017.JPG [2012/09/01 12:40:51 | 000,036,244 | ---- | M] () -- C:\Users\me\Desktop\305004_3961476758849_697126799_n.jpg [2012/09/01 12:30:10 | 000,005,926 | ---- | M] () -- C:\Users\me\Desktop\399650_3961491599220_1985708273_a.jpg [2012/09/01 11:15:35 | 000,023,002 | ---- | M] () -- C:\Users\me\Desktop\My IMPROVED SELF.xmind [2012/09/01 11:00:54 | 000,051,351 | ---- | M] () -- C:\Users\me\Documents\Multiple Intelligences -- Practice5.pdf [2012/09/01 11:00:23 | 000,051,456 | ---- | M] () -- C:\Users\me\Documents\Multiple Intelligences -- Practice4.pdf [2012/09/01 11:00:00 | 000,050,833 | ---- | M] () -- C:\Users\me\Documents\Multiple Intelligences -- Practice3.pdf [2012/09/01 10:59:20 | 000,059,564 | ---- | M] () -- C:\Users\me\Documents\Multiple Intelligences -- Practice.pdf [2012/09/01 10:56:10 | 000,075,370 | ---- | M] () -- C:\Users\me\Documents\Multiple Intelligences -- Assessment.pdf [2012/08/28 22:28:35 | 000,278,017 | ---- | M] () -- C:\windows\SysNative\drivers\AVG\iavichjg.avm [2012/08/27 20:35:22 | 000,073,801 | ---- | M] () -- C:\Users\me\Desktop\robin1.pdf [2012/08/24 15:43:16 | 000,384,352 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\windows\SysNative\drivers\avgtdia.sys [2012/08/22 13:12:40 | 000,376,688 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\netio.sys [2012/08/22 13:12:33 | 000,288,624 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\FWPKCLNT.SYS [2012/08/17 12:08:13 | 000,002,030 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk [2012/08/17 10:56:57 | 000,955,888 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\npDeployJava1.dll [2012/08/17 10:56:57 | 000,839,152 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\deployJava1.dll [2012/08/17 10:56:57 | 000,268,784 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\javaws.exe [2012/08/17 10:56:57 | 000,189,424 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\javaw.exe [2012/08/17 10:56:57 | 000,188,912 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\java.exe [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012/09/15 13:09:39 | 000,186,044 | ---- | C] () -- C:\Users\me\Documents\4GEEKS2.jpg [2012/09/15 13:04:51 | 000,181,522 | ---- | C] () -- C:\Users\me\Documents\4GEEKS.jpg [2012/09/13 16:33:12 | 000,261,450 | ---- | C] () -- C:\Users\me\Desktop\PURSE SACK.pdf [2012/09/12 18:57:49 | 000,134,144 | ---- | C] () -- C:\Users\me\Documents\BABY CROCODILE BOOTIES.pub [2012/09/12 18:45:54 | 000,104,960 | ---- | C] () -- C:\Users\me\Documents\BABY KNEEHIGHS.pub [2012/09/12 16:35:20 | 000,125,952 | ---- | C] () -- C:\Users\me\Documents\SIMPLE BOOTIES.pub [2012/09/12 16:12:14 | 000,141,312 | ---- | C] () -- C:\Users\me\Documents\BIG POCKET BAG.pub [2012/09/12 16:04:24 | 000,024,454 | ---- | C] () -- C:\Users\me\Desktop\GATHERED.png [2012/09/12 15:50:42 | 000,383,488 | ---- | C] () -- C:\Users\me\Documents\FOLDING CHANGING PAD.pub [2012/09/12 08:06:56 | 000,000,217 | ---- | C] () -- C:\Users\me\Desktop\portal.htm [2012/09/11 21:17:51 | 000,088,957 | ---- | C] () -- C:\Users\me\Desktop\Oklahoma City assistance programs.pdf [2012/09/11 02:18:50 | 000,001,175 | ---- | C] () -- C:\Users\me\Documents\BBY.jpg [2012/09/10 23:30:18 | 000,581,969 | ---- | C] () -- C:\Users\me\Desktop\EASY_ Baby - Toddler Crochet Socks.pdf [2012/09/10 23:26:08 | 000,031,883 | ---- | C] () -- C:\Users\me\Desktop\ROBIN1.jpg [2012/09/06 12:53:08 | 000,001,767 | ---- | C] () -- C:\Users\me\Desktop\Office Professional 2010 _1346953988532.lnk [2012/09/06 11:33:43 | 000,001,767 | ---- | C] () -- C:\Users\me\Desktop\Office Professional 2010 _1346949222929.lnk [2012/09/05 00:31:11 | 006,484,892 | ---- | C] () -- C:\Users\me\Desktop\brother '.pdf [2012/09/04 14:51:27 | 000,676,047 | ---- | C] () -- C:\Users\me\Desktop\017.JPG [2012/09/01 12:40:51 | 000,036,244 | ---- | C] () -- C:\Users\me\Desktop\305004_3961476758849_697126799_n.jpg [2012/09/01 12:30:10 | 000,005,926 | ---- | C] () -- C:\Users\me\Desktop\399650_3961491599220_1985708273_a.jpg [2012/09/01 11:15:35 | 000,023,002 | ---- | C] () -- C:\Users\me\Desktop\My IMPROVED SELF.xmind [2012/09/01 11:00:58 | 000,051,351 | ---- | C] () -- C:\Users\me\Documents\Multiple Intelligences -- Practice5.pdf [2012/09/01 11:00:30 | 000,051,456 | ---- | C] () -- C:\Users\me\Documents\Multiple Intelligences -- Practice4.pdf [2012/09/01 11:00:06 | 000,050,833 | ---- | C] () -- C:\Users\me\Documents\Multiple Intelligences -- Practice3.pdf [2012/09/01 10:59:28 | 000,059,564 | ---- | C] () -- C:\Users\me\Documents\Multiple Intelligences -- Practice.pdf [2012/09/01 10:57:25 | 000,075,370 | ---- | C] () -- C:\Users\me\Documents\Multiple Intelligences -- Assessment.pdf [2012/08/27 20:52:52 | 000,073,801 | ---- | C] () -- C:\Users\me\Desktop\robin1.pdf [2012/06/10 16:40:25 | 000,013,734 | ---- | C] () -- C:\Users\me\AppData\Roaming\UserTile.png [2012/06/03 22:28:41 | 000,000,376 | ---- | C] () -- C:\windows\ODBC.INI [2012/06/03 12:12:01 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe [2012/06/03 12:12:01 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe [2012/06/03 12:12:01 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe [2012/06/03 12:12:01 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe [2012/06/03 12:12:01 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe [2012/03/26 18:01:45 | 000,791,592 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI [2012/03/16 10:26:19 | 000,007,596 | ---- | C] () -- C:\Users\me\AppData\Local\resmon.resmoncfg [2011/09/07 12:13:21 | 000,451,072 | ---- | C] () -- C:\windows\SysWow64\ISSRemoveSP.exe [2011/04/04 22:07:00 | 000,145,804 | ---- | C] () -- C:\windows\SysWow64\igcompkrng600.bin [2011/04/04 22:06:58 | 000,963,116 | ---- | C] () -- C:\windows\SysWow64\igkrng600.bin [2011/04/04 22:06:58 | 000,216,876 | ---- | C] () -- C:\windows\SysWow64\igfcg600m.bin [2011/02/03 21:56:58 | 000,066,856 | ---- | C] () -- C:\windows\SysWow64\SynTPEnhPS.dll [color=#E56717]========== LOP Check ==========[/color] [2012/04/03 12:21:39 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\AVG2012 [2012/03/16 08:58:47 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Book Place [2012/06/28 05:25:06 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Dropbox [2012/04/02 00:42:13 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Nokia [2012/04/02 00:42:13 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Nokia Ovi Suite [2012/03/22 21:25:50 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PC Suite [2012/07/14 11:51:08 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PCCUStubInstaller [2012/06/10 16:40:19 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\PeerNetworking [2012/05/31 23:52:35 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\SoftGrid Client [2012/03/16 08:11:21 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Toshiba [2012/03/26 18:08:23 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\TP [2012/05/06 23:43:24 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\Windows Live Writer [2012/06/07 23:27:15 | 000,000,000 | ---D | M] -- C:\Users\me\AppData\Roaming\XMind [2012/05/14 03:20:50 | 000,032,650 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:0B4227B4 < End of report >