Need a geek? Geeks to Go offers free, quality tech support -- in terms anyone can understand. Volunteers are waiting to help, friendly, technology experts who have knowledge to share, and enjoy helping others. Feel free to browse the site as a guest. However, you must log in to reply to existing topics, or to start a new topic. Other benefits of joining include richer forum features, and removal of all advertising. Learn more in our Welcome Guide Infected? Malware and Spyware Cleaning Guide. What are you waiting for? Click here to join for free today!
   
 
Closed TopicStart new topic
sreious virus infection name unknow [Closed], a serivous virus is on my system help
mattman110
post Jul 3 2009, 02:57 PM
Post #1


New Member
*
Posts: 4
From: uk
OS: xp,linux,windows server 2003,vista home



hello there have done the previous steps
but here is a summary of my problen and the log files

un able to activate windows
no devices in device manager
no sound no usbports
windows 2k thems and can not be changed

and here is my log files

Malwarebytes' Anti-Malware 1.38
Database version: 2297
Windows 5.1.2600 Service Pack 3

03/07/2009 09:38:25 PM
mbam-log-2009-07-03 (21-38-25).txt

Scan type: Quick Scan
Objects scanned: 106978
Time elapsed: 1 minute(s), 35 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)





Rooter.exe (v1.0.2) by Eric_71
.
SeDebugPrivilege granted successfully ...
.
Windows XP . (5.1.2600) Service Pack 3
[32_bits] - x86 Family 15 Model 67 Stepping 3, AuthenticAMD
.
[wscsvc] (Security Center) RUNNING (state:4)
[SharedAccess] STOPPED (state:1) : Windows Firewall -> Disabled !
.
Internet Explorer 8.0.6001.18702
Mozilla Firefox 3.0.11 (en-GB)
.
A:\ [Removable]
C:\ [Fixed-NTFS] .. ( Total:74 Go - Free:44 Go )
D:\ [Removable]
E:\ [Removable]
F:\ [Removable]
G:\ [Removable]
H:\ [CD_Rom]
I:\ [CD_Rom]
J:\ [Fixed-NTFS] .. ( Total:931 Go - Free:690 Go )
K:\ [CD_Rom]
L:\ [Fixed-NTFS] .. ( Total:931 Go - Free:802 Go )
M:\ [CD_Rom]
.
Scan : 20:59.55
Path : H:\virus remove\Rooter.exe
User : Matt ( Administrator -> YES )
.
----------------------\\ Processes
.
Locked [System Process] (0)
______ System (4)
______ \SystemRoot\System32\smss.exe (956)
______ \??\C:\windows\system32\csrss.exe (1012)
______ \??\C:\windows\system32\winlogon.exe (1036)
______ C:\windows\system32\services.exe (1080)
______ C:\windows\system32\lsass.exe (1092)
______ C:\windows\system32\svchost.exe (1264)
______ C:\windows\system32\svchost.exe (1332)
______ C:\windows\system32\svchost.exe (1440)
______ C:\Program Files\AVG\AVG8\avgrsx.exe (1452)
______ C:\windows\system32\WgaTray.exe (616)
______ C:\windows\Explorer.EXE (628)
______ C:\Program Files\Microsoft ActiveSync\wcescomm.exe (852)
______ C:\windows\system32\ctfmon.exe (860)
______ C:\PROGRA~1\MI3AA1~1\rapimgr.exe (936)
______ C:\windows\system32\wpabaln.exe (284)
______ H:\virus remove\Rooter.exe (372)
.
----------------------\\ Device\Harddisk0\
.
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
.
\Device\Harddisk0\Partition1 --[ MBR ]-- (Start_Offset:32256 | Length:80015491584)
.
----------------------\\ Scheduled Tasks
.
C:\windows\Tasks\desktop.ini
C:\windows\Tasks\SA.DAT
.
----------------------\\ Registry
.
.
----------------------\\ Files & Folders
.
C:\DOCUME~1\Matt\Favorites\compatible_cards [Aircrack-ng].url
C:\DOCUME~1\Matt\Favorites\Locks\Videos\Safe cracked in Beverwijk (NL).url
C:\DOCUME~1\Matt\Favorites\Locks\Videos\Using a thermic lance to crack a safe.url
==> Cracks & Keygens <==
.
----------------------\\ Scan completed at 21:00.08
.
C:\Rooter$\Rooter_1.txt - (03/07/2009 | 21:00.08).c








OTL logfile created on: 03/07/2009 09:10:43 PM - Run 2
OTL by OldTimer - Version 3.0.6.3 Folder = C:\Documents and Settings\Matt\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 100.00% Memory free
4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free
Paging file location(s): [Binary data over 100 bytes]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 74.52 Gb Total Space | 44.34 Gb Free Space | 59.50% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 702.31 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: UDF
I: Drive not present or media not loaded
Drive J: | 931.52 Gb Total Space | 690.47 Gb Free Space | 74.12% Space Free | Partition Type: NTFS
Drive L: | 931.52 Gb Total Space | 802.98 Gb Free Space | 86.20% Space Free | Partition Type: NTFS

Computer Name: PCWS1
Current User Name: Matt
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Program Files\AVG\AVG8\avgrsx.exe File not found
PRC - C:\windows\System32\WgaTray.exe (Microsoft Corporation)
PRC - C:\windows\Explorer.EXE (Microsoft Corporation)
PRC - C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
PRC - C:\Program Files\Microsoft ActiveSync\rapimgr.exe (Microsoft Corporation)
PRC - C:\windows\System32\wpabaln.exe (Microsoft Corporation)
PRC - C:\Documents and Settings\Matt\Desktop\OTL.exe (OldTimer Tools)

========== Win32 Services (SafeList) ==========

SRV - (aspnet_state [Disabled | Stopped]) -- C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32 [Disabled | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (Diskeeper [Disabled | Stopped]) -- C:\Program Files\Executive Software\Diskeeper\DkService.exe (Executive Software International, Inc.)
SRV - (Easy File Sharing FTP Service [Disabled | Stopped]) -- C:\Program Files\Easy File Sharing FTP Server\eftpd.exe (EFS Software, Inc.)
SRV - (ForceWare Intelligent Application Manager (IAM) [Disabled | Stopped]) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe ()
SRV - (ForcewareWebInterface [Disabled | Stopped]) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe (Apache Software Foundation)
SRV - (helpsvc [Disabled | Stopped]) -- C:\windows\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (LMIMaint [Disabled | Stopped]) -- C:\Program Files\LogMeIn\x86\RaMaint.exe (LogMeIn, Inc.)
SRV - (LogMeIn [Disabled | Stopped]) -- C:\Program Files\LogMeIn\x86\LogMeIn.exe (LogMeIn, Inc.)
SRV - (MDM [Disabled | Stopped]) -- File not found
SRV - (nSvcIp [Disabled | Stopped]) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe (NVIDIA Corporation)
SRV - (nSvcLog [Disabled | Stopped]) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe (NVIDIA Corporation)
SRV - (NVSvc [Disabled | Stopped]) -- C:\windows\System32\nvsvc32.exe (NVIDIA Corporation)
SRV - (NwSapAgent [Disabled | Stopped]) -- C:\windows\System32\ipxsap.dll (Microsoft Corporation)
SRV - (ose [Disabled | Stopped]) -- File not found
SRV - (RichVideo [Disabled | Stopped]) -- C:\Program Files\CyberLink\Shared files\RichVideo.exe ()
SRV - (SimpTcp [Disabled | Stopped]) -- C:\windows\System32\tcpsvcs.exe (Microsoft Corporation)
SRV - (SNMP [Disabled | Stopped]) -- C:\windows\System32\snmp.exe (Microsoft Corporation)
SRV - (usnjsvc [Disabled | Stopped]) -- C:\Program Files\Windows Live\Messenger\usnsvc.exe (Microsoft Corporation)
SRV - (vmount2 [Disabled | Stopped]) -- C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe (VMware, Inc.)
SRV - (WLSetupSvc [Disabled | Stopped]) -- C:\Program Files\Windows Live\installer\WLSetupSvc.exe (Microsoft Corporation)
SRV - (WMPNetworkSvc [Disabled | Stopped]) -- C:\Program Files\Windows Media Player\WMPNetwk.exe (Microsoft Corporation)

========== Driver Services (SafeList) ==========

DRV - (ADIHdAudAddService [On_Demand | Running]) -- C:\windows\System32\drivers\ADIHdAud.sys (Analog Devices, Inc.)
DRV - (AEAudio [On_Demand | Running]) -- C:\windows\System32\drivers\AEAudio.sys (Andrea Electronics Corporation)
DRV - (Alpham1 [On_Demand | Running]) -- C:\windows\System32\DRIVERS\Alpham1.sys (Ideazon Corporation)
DRV - (Alpham2 [On_Demand | Running]) -- C:\windows\System32\DRIVERS\Alpham2.sys (Ideazon Corporation)
DRV - (AmdK8 [System | Running]) -- C:\windows\System32\DRIVERS\AmdK8.sys (Advanced Micro Devices)
DRV - (AsIO [System | Running]) -- C:\windows\System32\drivers\AsIO.sys ()
DRV - (AvgMfx86 [Disabled | Stop_Pending]) -- File not found
DRV - (AvgTdiX [Disabled | Running]) -- File not found
DRV - (BENDER [On_Demand | Running]) -- C:\windows\System32\drivers\bender.sys (Pinnacle Systems)
DRV - (HDAudBus [On_Demand | Running]) -- C:\windows\System32\DRIVERS\HDAudBus.sys (Windows ® Server 2003 DDK provider)
DRV - (ICAM5USB [On_Demand | Stopped]) -- C:\windows\System32\Drivers\Icam5USB.sys (Microsoft Corporation)
DRV - (JGOGO [Boot | Running]) -- C:\windows\system32\DRIVERS\JGOGO.sys (JMicron )
DRV - (JRAID [Boot | Running]) -- C:\windows\system32\DRIVERS\jraid.sys (JMicron Technology Corp.)
DRV - (KorgBlkT [Auto | Stopped]) -- C:\windows\System32\Drivers\korgblkt.sys (KORG Inc.)
DRV - (KORGUMDS [On_Demand | Stopped]) -- C:\windows\System32\Drivers\KORGUMDS.SYS (KORG Inc.)
DRV - (LMIInfo [Auto | Running]) -- C:\Program Files\LogMeIn\x86\RaInfo.sys (LogMeIn, Inc.)
DRV - (lmimirr [On_Demand | Running]) -- C:\windows\System32\DRIVERS\lmimirr.sys (LogMeIn, Inc.)
DRV - (LMIRfsClientNP [Disabled | Stopped]) -- C:\windows\System32\LMIRfsClientNP.dll (LogMeIn, Inc.)
DRV - (LMIRfsDriver [Auto | Running]) -- C:\windows\System32\drivers\LMIRfsDriver.sys (LogMeIn, Inc.)
DRV - (Maplom [On_Demand | Running]) -- C:\windows\System32\drivers\maplom.sys (SlySoft Inc.)
DRV - (mcdbus [On_Demand | Running]) -- C:\windows\System32\DRIVERS\mcdbus.sys (MagicISO, Inc.)
DRV - (MTsensor [On_Demand | Running]) -- C:\windows\System32\DRIVERS\ASACPI.sys ()
DRV - (NCHSSVAD [On_Demand | Stopped]) -- C:\windows\System32\drivers\nchssvad.sys (NCH Swift Sound)
DRV - (nm [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\NMnt.sys (Microsoft Corporation)
DRV - (nv [On_Demand | Running]) -- C:\windows\System32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (nvata [Boot | Running]) -- C:\windows\system32\DRIVERS\nvata.sys (NVIDIA Corporation)
DRV - (nvatabus [Boot | Running]) -- C:\windows\system32\DRIVERS\nvatabus.sys (NVIDIA Corporation)
DRV - (NVENETFD [On_Demand | Running]) -- C:\windows\System32\DRIVERS\NVENETFD.sys (NVIDIA Corporation)
DRV - (nvnetbus [On_Demand | Running]) -- C:\windows\System32\DRIVERS\nvnetbus.sys (NVIDIA Corporation)
DRV - (nvraid [Boot | Running]) -- C:\windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (NVTCP [System | Running]) -- C:\windows\System32\DRIVERS\NVTcp.sys (NVIDIA Corporation)
DRV - (NwlnkIpx [Auto | Running]) -- C:\windows\System32\DRIVERS\nwlnkipx.sys (Microsoft Corporation)
DRV - (NwlnkNb [Auto | Running]) -- C:\windows\System32\DRIVERS\nwlnknb.sys (Microsoft Corporation)
DRV - (NwlnkSpx [Auto | Running]) -- C:\windows\System32\DRIVERS\nwlnkspx.sys (Microsoft Corporation)
DRV - (prodrv06 [System | Running]) -- C:\windows\System32\drivers\prodrv06.sys (Protection Technology)
DRV - (prohlp02 [Boot | Running]) -- C:\windows\System32\drivers\prohlp02.sys (Protection Technology)
DRV - (prosync1 [Boot | Running]) -- C:\windows\System32\drivers\prosync1.sys (Protection Technology)
DRV - (Ptilink [On_Demand | Running]) -- C:\windows\System32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (PxHelp20 [Boot | Running]) -- C:\windows\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (SCDEmu [System | Running]) -- C:\windows\System32\drivers\scdemu.sys (PowerISO Computing, Inc.)
DRV - (Secdrv [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (SenFiltService [On_Demand | Running]) -- C:\windows\System32\drivers\Senfilt.sys (Sensaura)
DRV - (Ser2pl [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\ser2pl.sys (Prolific Technology Inc.)
DRV - (sfhlp01 [Boot | Running]) -- C:\windows\System32\drivers\sfhlp01.sys (Protection Technology)
DRV - (usbaudio [On_Demand | Stopped]) -- C:\windows\System32\drivers\usbaudio.sys (Microsoft Corporation)
DRV - (VMnetAdapter [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\vmnetadapter.sys (VMware, Inc.)
DRV - (vstor2 [Auto | Running]) -- C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vstor2.sys (VMware, Inc.)
DRV - (wceusbsh [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\wceusbsh.sys (Microsoft Corporation)
DRV - (YMIDUSB [On_Demand | Stopped]) -- C:\windows\System32\Drivers\ymidusb.sys (Yamaha Corporation)
DRV - ({95808DC4-FA4A-4C74-92FE-5B863F82066B} [Auto | Running]) -- C:\Program Files\CyberLink\PowerDVD\000.fcl (Cyberlink Corp.)

========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [Binary data over 100 bytes]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.google.co.uk/"
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.11

FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/06/28 21:31:48 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/06/28 21:31:15 | 00,000,000 | ---D | M]

[2009/06/28 21:31:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\mozilla\Extensions
[2009/06/28 21:31:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/06/28 21:31:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\mozilla\Firefox\Profiles\qhi1wv8o.default\extensions
[2009/06/28 21:31:16 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/06/28 21:31:16 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/06/03 05:24:27 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/06/03 05:24:27 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009/06/03 05:24:27 | 00,065,528 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll
[2008/01/04 16:36:50 | 00,001,538 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml
[2006/07/05 19:47:38 | 00,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml
[2008/01/04 16:36:50 | 00,000,947 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml
[2008/03/08 10:35:22 | 00,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml
[2008/09/22 20:14:04 | 00,000,759 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml
[2008/04/16 05:08:20 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2008/03/28 19:11:14 | 00,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
[2008/01/04 16:36:50 | 00,000,831 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml

O1 HOSTS File: (307208 bytes) - C:\windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.123topsearch.com
O1 - Hosts: 127.0.0.1 123topsearch.com
O1 - Hosts: 127.0.0.1 www.132.com
O1 - Hosts: 127.0.0.1 132.com
O1 - Hosts: 127.0.0.1 www.136136.net
O1 - Hosts: 127.0.0.1 136136.net
O1 - Hosts: 10575 more lines...
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll File not found
O2 - BHO: (no name) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - No CLSID value found.
O2 - BHO: (no name) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskmgr = 0
O8 - Extra context menu item: &Search - File not found
O8 - Extra context menu item: Download all with Free Download Manager - Reg Error: Value error. File not found
O8 - Extra context menu item: Download selected with Free Download Manager - Reg Error: Value error. File not found
O8 - Extra context menu item: Download with Free Download Manager - Reg Error: Value error. File not found
O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\windows\System32\nwprovau.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\windows\System32\wshbth.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\windows\System32\nvappfilter.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\windows\System32\nvappfilter.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\windows\System32\nvappfilter.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\windows\System32\nvappfilter.dll (NVIDIA)
O15 - HKLM\..Trusted Domains: 50 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKCU\..Trusted Domains: 49 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/2008.1...toUploader5.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/Solit...wn.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash...t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_07)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.72.0.98 194.72.0.114 192.168.1.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - Reg Error: Key error. File not found
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - Reg Error: Key error. File not found
O18 - Protocol\Filter: - text/xml - Reg Error: Key error. File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\Explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (C:\WINDOWS\system32\logonuiX.exe) - C:\windows\System32\logonuiX.exe (Microsoft Corporation)
O20 - Winlogon\Notify\LMIinit: DllName - LMIinit.dll - C:\windows\System32\LMIinit.dll (LogMeIn, Inc.)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2008/05/04 20:02:58 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2003/04/22 11:24:02 | 00,019,469 | ---- | M] () - J:\Autorun.inf -- [ NTFS ]
O33 - MountPoints2\{47231cc8-aa6c-11dd-98fc-001d604b3aea}\Shell - "" = AutoRun
O33 - MountPoints2\{47231cc8-aa6c-11dd-98fc-001d604b3aea}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{47231cc8-aa6c-11dd-98fc-001d604b3aea}\Shell\AutoRun\command - "" = N:\umenu.exe -- File not found
O33 - MountPoints2\J\Shell\AutoRun\command - "" = C:\windows\System32\setup.exe -- [2008/04/14 05:42:36 | 00,023,040 | ---- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\windows\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found

========== Files/Folders - Created Within 30 Days ==========

[2009/07/03 21:09:24 | 00,173,119 | ---- | C] (Eric_71) -- C:\Documents and Settings\Matt\Desktop\Rooter.exe
[2009/07/03 21:00:03 | 00,000,000 | ---D | C] -- C:\Rooter$
[2009/07/03 20:51:34 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Agnitum
[2009/07/03 20:44:30 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Application Data\Malwarebytes
[2009/07/03 20:44:27 | 00,000,703 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/07/03 20:44:24 | 00,038,160 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbamswissarmy.sys
[2009/07/03 20:44:22 | 00,019,096 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys
[2009/07/03 20:44:22 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/07/03 20:44:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2009/07/03 20:40:37 | 00,000,000 | ---D | C] -- C:\windows\ERDNT
[2009/07/03 20:39:28 | 00,000,618 | ---- | C] () -- C:\Documents and Settings\Matt\Desktop\NTREGOPT.lnk
[2009/07/03 20:39:27 | 00,000,599 | ---- | C] () -- C:\Documents and Settings\Matt\Desktop\ERUNT.lnk
[2009/07/03 20:39:24 | 00,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2009/07/03 03:18:35 | 00,513,536 | R--- | C] (OldTimer Tools) -- C:\Documents and Settings\Matt\Desktop\OTL.exe
[2009/06/29 21:09:28 | 00,055,296 | ---- | C] () -- l:\My Documents\PASSWORD RESET.iso
[2009/06/29 20:45:01 | 00,247,306 | ---- | C] () -- l:\My Documents\About_com http--home_eunet_no-pnordahl-ntpasswd-help.mht
[2009/06/29 20:40:55 | 12,218,368 | ---- | C] () -- C:\Documents and Settings\Matt\Desktop\ebcd-1.1k-demo.iso
[2009/06/29 19:48:09 | 00,914,580 | ---- | C] () -- l:\My Documents\cc_20090629_194803.reg
[2009/06/29 19:13:26 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\microsoft shared
[2009/06/29 19:11:27 | 00,000,000 | -HSD | C] -- C:\found.000
[2009/06/29 18:11:58 | 03,702,784 | ---- | C] () -- l:\My Documents\cd080802.iso
[2009/06/29 15:36:10 | 62,550,2208 | ---- | C] () -- l:\My Documents\ophcrack-livecd-0.9a.iso
[2009/06/28 21:54:17 | 01,878,888 | ---- | C] (Adobe Systems Incorporated) -- C:\Documents and Settings\Matt\Desktop\install_flash_player.exe
[2009/06/28 21:31:49 | 00,000,000 | ---- | C] () -- C:\windows\nsreg.dat
[2009/06/28 21:31:45 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Local Settings\Application Data\Mozilla
[2009/06/28 21:31:45 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Application Data\Mozilla
[2009/06/28 21:31:17 | 00,001,609 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/06/28 21:31:15 | 00,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2009/06/28 20:53:32 | 00,102,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\iecompat.dll
[2009/06/28 20:53:19 | 00,000,000 | ---D | C] -- C:\windows\ie8updates
[2009/06/28 20:52:56 | 00,012,800 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\xpshims.dll
[2009/06/28 20:52:55 | 00,246,272 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ieproxy.dll
[2009/06/28 20:52:15 | 00,000,000 | -H-D | C] -- C:\windows\ie8
[2009/06/28 20:51:19 | 07,371,960 | ---- | C] (Mozilla) -- l:\My Documents\Firefox Setup 3.0.11.exe
[2009/06/28 03:23:31 | 00,000,833 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Express Burn.lnk
[2009/06/28 03:23:19 | 00,399,520 | ---- | C] (NCH Software) -- l:\My Documents\burnsetup.exe
[2009/06/28 02:33:50 | 00,000,000 | ---D | C] -- l:\My Documents\ohp
[2009/06/27 20:06:33 | 12,218,368 | ---- | C] () -- l:\My Documents\ebcd-1.1k-demo.iso
[2009/06/27 19:43:26 | 00,000,689 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\ophcrack.lnk
[2009/06/27 19:43:25 | 00,000,000 | ---D | C] -- C:\Program Files\ophcrack
[2009/06/27 19:42:35 | 05,673,820 | ---- | C] () -- l:\My Documents\ophcrack-win32-installer-3.3.0.exe
[2009/06/27 15:35:01 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Application Data\InstallShield
[2009/06/26 21:25:47 | 02,238,508 | ---- | C] () -- l:\My Documents\EasyWifiRadar.zip
[2009/06/26 15:46:19 | 00,065,568 | ---- | C] () -- l:\My Documents\WAG354G_1.01.03.cfg
[2009/06/16 01:58:44 | 00,011,952 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\avgrsstx.dll.install_backup
[2009/06/16 01:58:24 | 00,000,000 | ---D | C] -- C:\Program Files\AVG
[2009/06/16 01:58:24 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\avg8
[2009/06/04 12:54:07 | 03,114,533 | ---- | C] () -- l:\My Documents\spirit_lx7_multi_user_guide.pdf
[2009/06/04 12:50:00 | 01,043,364 | ---- | C] () -- l:\My Documents\spirit_lx7_highres.jpg
[2009/06/04 12:49:41 | 09,141,810 | ---- | C] () -- l:\My Documents\live_range_brochure.pdf
[2009/06/04 12:46:23 | 00,337,999 | ---- | C] () -- l:\My Documents\MX2442A_SPECS_Rev_C.pdf
[2009/01/08 20:48:50 | 00,001,862 | ---- | C] () -- C:\windows\wininit.ini
[2008/12/25 16:47:55 | 00,000,308 | ---- | C] () -- C:\windows\game.ini
[2008/12/16 12:35:21 | 00,000,120 | ---- | C] () -- C:\windows\comodoor (fw).INI
[2008/12/01 18:49:42 | 00,053,248 | ---- | C] () -- C:\windows\System32\CommonDL.dll
[2008/12/01 18:49:42 | 00,002,412 | ---- | C] () -- C:\windows\System32\lgAxconfig.ini
[2008/11/24 17:22:21 | 00,000,031 | ---- | C] () -- C:\windows\tapp.ini
[2008/11/24 17:21:51 | 00,000,000 | ---- | C] () -- C:\windows\TheoryTest.ini
[2008/10/27 22:03:08 | 00,000,365 | ---- | C] () -- C:\windows\PSADMIN.INI
[2008/09/26 18:42:12 | 00,176,235 | ---- | C] () -- C:\windows\System32\Primomonnt.dll
[2008/08/13 15:53:43 | 00,000,116 | ---- | C] () -- C:\windows\NeroDigital.ini
[2008/05/17 18:27:50 | 00,000,997 | ---- | C] () -- C:\windows\Rtcwplat.INI
[2008/05/09 21:17:41 | 00,000,024 | ---- | C] () -- C:\windows\LogonStudio.ini
[2008/05/09 21:06:23 | 00,187,392 | ---- | C] () -- C:\windows\System32\JPGUtils.dll
[2008/05/07 21:19:55 | 00,043,520 | ---- | C] () -- C:\windows\System32\CmdLineExt03.dll
[2008/05/05 14:29:43 | 00,000,376 | ---- | C] () -- C:\windows\ODBC.INI
[2008/05/04 20:39:14 | 00,024,576 | R--- | C] () -- C:\windows\System32\AsIO.dll
[2008/05/04 20:39:14 | 00,012,664 | R--- | C] () -- C:\windows\System32\drivers\AsIO.sys
[2008/05/04 20:27:21 | 00,000,804 | R--- | C] () -- C:\windows\System32\AsusSetup.ini
[2008/05/04 20:27:21 | 00,000,396 | R--- | C] () -- C:\windows\System32\raidmgmt.ini
[2008/05/04 20:25:43 | 00,033,860 | ---- | C] () -- C:\windows\Ascd_tmp.ini
[2008/05/04 20:25:41 | 00,005,810 | R--- | C] () -- C:\windows\System32\drivers\ASACPI.sys
[2008/05/04 20:25:27 | 00,010,288 | ---- | C] () -- C:\windows\System32\drivers\ASUSHWIO.SYS
[2007/04/12 16:44:00 | 01,703,936 | ---- | C] () -- C:\windows\System32\nvwdmcpl.dll
[2007/04/12 16:44:00 | 01,486,848 | ---- | C] () -- C:\windows\System32\nview.dll
[2007/04/12 16:44:00 | 01,019,904 | ---- | C] () -- C:\windows\System32\nvwimg.dll
[2007/04/12 16:44:00 | 00,466,944 | ---- | C] () -- C:\windows\System32\nvshell.dll
[2007/04/12 16:44:00 | 00,286,720 | ---- | C] () -- C:\windows\System32\nvnt4cpl.dll
[2006/11/01 07:54:30 | 00,180,224 | ---- | C] () -- C:\windows\System32\xvidvfw.dll
[2006/11/01 07:52:38 | 00,765,952 | ---- | C] () -- C:\windows\System32\xvidcore.dll
[2006/05/26 14:29:14 | 00,005,120 | ---- | C] () -- C:\windows\System32\ff_vfw.dll
[2006/04/03 13:26:36 | 00,000,547 | ---- | C] () -- C:\windows\System32\ff_vfw.dll.manifest
[2005/03/07 18:54:16 | 04,628,480 | ---- | C] () -- C:\windows\System32\smh-qt-mt333.dll
[2004/08/04 13:00:00 | 00,000,000 | ---- | C] () -- C:\windows\win.ini
[2004/08/04 13:00:00 | 00,000,000 | ---- | C] () -- C:\windows\system.ini
[2003/05/15 07:39:50 | 00,155,136 | ---- | C] () -- C:\windows\System32\unrar.dll
[2002/05/15 05:58:38 | 00,122,880 | ---- | C] () -- C:\windows\System32\v2k2_dec.dll

========== Files - Modified Within 30 Days ==========

[2009/07/03 21:51:12 | 00,513,536 | R--- | M] (OldTimer Tools) -- C:\Documents and Settings\Matt\Desktop\OTL.exe
[2009/07/03 21:50:46 | 00,173,119 | ---- | M] (Eric_71) -- C:\Documents and Settings\Matt\Desktop\Rooter.exe
[2009/07/03 21:01:52 | 00,000,000 | ---- | M] () -- C:\windows\win.ini
[2009/07/03 21:01:52 | 00,000,000 | ---- | M] () -- C:\windows\system.ini
[2009/07/03 20:50:46 | 00,001,230 | ---- | M] () -- C:\windows\System32\wpa.dbl
[2009/07/03 20:49:46 | 00,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2009/07/03 20:44:27 | 00,000,703 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/07/03 20:39:28 | 00,000,618 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\NTREGOPT.lnk
[2009/07/03 20:39:27 | 00,000,599 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\ERUNT.lnk
[2009/07/01 22:47:35 | 00,264,616 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2009/06/29 21:32:22 | 00,000,006 | -H-- | M] () -- C:\windows\tasks\SA.DAT
[2009/06/29 21:09:29 | 00,055,296 | ---- | M] () -- l:\My Documents\PASSWORD RESET.iso
[2009/06/29 20:45:03 | 00,247,306 | ---- | M] () -- l:\My Documents\About_com http--home_eunet_no-pnordahl-ntpasswd-help.mht
[2009/06/29 20:36:00 | 00,167,424 | ---- | M] () -- C:\Documents and Settings\Matt\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/06/29 20:36:00 | 00,000,116 | ---- | M] () -- C:\windows\NeroDigital.ini
[2009/06/29 19:48:23 | 00,914,580 | ---- | M] () -- l:\My Documents\cc_20090629_194803.reg
[2009/06/29 19:46:36 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts
[2009/06/29 19:35:45 | 00,397,560 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2009/06/29 19:35:45 | 00,059,780 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2009/06/29 19:32:30 | 00,180,365 | ---- | M] () -- C:\windows\System32\nvapps.xml
[2009/06/29 19:32:30 | 00,000,024 | ---- | M] () -- C:\windows\LogonStudio.ini
[2009/06/29 19:01:12 | 00,000,223 | -HS- | M] () -- C:\boot.ini
[2009/06/29 18:58:05 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090629-194636.backup
[2009/06/29 18:34:12 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090629-185805.backup
[2009/06/29 18:32:03 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090629-183412.backup
[2009/06/29 15:36:15 | 62,550,2208 | ---- | M] () -- l:\My Documents\ophcrack-livecd-0.9a.iso
[2009/06/28 23:08:38 | 02,117,782 | -H-- | M] () -- C:\Documents and Settings\Matt\Local Settings\Application Data\IconCache.db
[2009/06/28 21:54:19 | 01,878,888 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\Matt\Desktop\install_flash_player.exe
[2009/06/28 21:31:49 | 00,000,000 | ---- | M] () -- C:\windows\nsreg.dat
[2009/06/28 21:31:17 | 00,001,609 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/06/28 20:51:19 | 07,371,960 | ---- | M] (Mozilla) -- l:\My Documents\Firefox Setup 3.0.11.exe
[2009/06/28 03:23:31 | 00,000,833 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Express Burn.lnk
[2009/06/28 03:23:24 | 00,399,520 | ---- | M] (NCH Software) -- l:\My Documents\burnsetup.exe
[2009/06/27 20:06:40 | 12,218,368 | ---- | M] () -- l:\My Documents\ebcd-1.1k-demo.iso
[2009/06/27 20:06:40 | 12,218,368 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\ebcd-1.1k-demo.iso
[2009/06/27 19:43:26 | 00,000,689 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\ophcrack.lnk
[2009/06/27 19:42:35 | 05,673,820 | ---- | M] () -- l:\My Documents\ophcrack-win32-installer-3.3.0.exe
[2009/06/27 15:31:46 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090629-183203.backup
[2009/06/26 21:27:40 | 02,238,508 | ---- | M] () -- l:\My Documents\EasyWifiRadar.zip
[2009/06/26 16:30:08 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090627-153146.backup
[2009/06/26 16:26:32 | 00,306,491 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090626-163008.backup
[2009/06/26 15:46:35 | 00,065,568 | ---- | M] () -- l:\My Documents\WAG354G_1.01.03.cfg
[2009/06/17 11:27:56 | 00,038,160 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbamswissarmy.sys
[2009/06/17 11:27:44 | 00,019,096 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys
[2009/06/16 01:58:44 | 00,011,952 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\avgrsstx.dll.install_backup
[2009/06/04 12:54:17 | 03,114,533 | ---- | M] () -- l:\My Documents\spirit_lx7_multi_user_guide.pdf
[2009/06/04 12:50:04 | 01,043,364 | ---- | M] () -- l:\My Documents\spirit_lx7_highres.jpg
[2009/06/04 12:49:52 | 09,141,810 | ---- | M] () -- l:\My Documents\live_range_brochure.pdf
[2009/06/04 12:46:23 | 00,337,999 | ---- | M] () -- l:\My Documents\MX2442A_SPECS_Rev_C.pdf
< End of report >


OTL Extras logfile created on: 03/07/2009 09:10:43 PM - Run 2
OTL by OldTimer - Version 3.0.6.3 Folder = C:\Documents and Settings\Matt\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 100.00% Memory free
4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free
Paging file location(s): [Binary data over 100 bytes]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 74.52 Gb Total Space | 44.34 Gb Free Space | 59.50% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 702.31 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: UDF
I: Drive not present or media not loaded
Drive J: | 931.52 Gb Total Space | 690.47 Gb Free Space | 74.12% Space Free | Partition Type: NTFS
Drive L: | 931.52 Gb Total Space | 802.98 Gb Free Space | 86.20% Space Free | Partition Type: NTFS

Computer Name: PCWS1
Current User Name: Matt
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"94:TCP" = 94:TCP:*:Enabled:VRS Recording System Web Control Panel
"85:TCP" = 85:TCP:*:Enabled:BroadWave Web Server
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 (Microsoft Corporation)
C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger (Microsoft Corporation)
C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone) (Microsoft Corporation)
C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager (Microsoft Corporation)
C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager (Microsoft Corporation)
C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe:*:Enabled:Apache HTTP Server (Apache Software Foundation)
C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent (BitTorrent, Inc.)
C:\Program Files\Macromedia\Fireworks MX\Fireworks.exe:*:Enabled:Fireworks MX (Macromedia Inc.)
C:\Program Files\DNA\btdna.exe:*:Enabled:DNA (BitTorrent, Inc.)
%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 (Microsoft Corporation)
C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger (Microsoft Corporation)
C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone) (Microsoft Corporation)
J:\Games\WolfMP.exe:*:Enabled:WolfMP File not found
J:\Games\Ghost Recon Advanced Warfighter\GRAW.exe:*:Enabled:GRAW File not found
C:\Program Files\BitLord\BitLord.exe:*:Enabled:BitLord (www.BitLord.com)
C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire (Lime Wire, LLC)
C:\Program Files\SHOUTcast\sc_serv.exe:*:Enabled:sc_serv File not found
C:\Program Files\APC\APC Back-UPS HS\CFGUtil.exe:*:Enabled:CFGUtil File not found
C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer (Microsoft Corporation)
C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test (Microsoft Corporation)
L:\Games\Ghost Recon Advanced Warfighter\GRAW.exe:*:Enabled:GRAW ()
L:\Games\id Software\Enemy Territory - QUAKE Wars\etqw.exe:*:Enabled:Enemy Territory - QUAKE Wars™ (Splash Damage, Ltd.)
L:\Games\id Software\Enemy Territory - QUAKE Wars\etqwded.exe:*:Enabled:etqwded.exe (Splash Damage, Ltd.)
C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager (Microsoft Corporation)
C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager (Microsoft Corporation)
C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application (Microsoft Corporation)
C:\Program Files\Free Download Manager\fdm.exe:*:Enabled:Free Download Manager File not found
C:\Program Files\Easy File Sharing FTP Server\fsfs.exe:*:Enabled:Easy File Sharing FTP Server (EFS Software Inc.)
C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe File not found
C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe File not found
C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe File not found


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{07D00E73-7F67-4008-A33C-80C7D53F1857}" = Radmin Viewer 3.0
"{08CA9554-B5FE-4313-938F-D4A417B81175}" = QuickTime
"{1F6423DE-7959-4178-80E0-023C7EAA5347}" = NVIDIA ForceWare Network Access Manager
"{2D2339A0-691C-43EE-B2E4-51AFE332F40B}" = KORG KP3 Editor
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java™ 6 Update 7
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMB36X Raid Configurer
"{4999E00F-EB5E-402E-B5AE-BB5710F77EEB}" = Music Alarm
"{4FD05420-333C-4233-94A6-9759430D6C2A}" = Theme Generator V2
"{508CE775-4BA4-4748-82DF-FE28DA9F03B0}" = Windows Live Messenger
"{5511D34C-323F-42E0-8C82-0AEB3E920417}" = Diskeeper Professional Edition
"{64E47A5F-B3C4-476A-9100-2D006BD1FFB4}" = Z Engine
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{79D1BA4A-BEB4-4357-A431-C3EF58E72E6C}" = The Official DSA Theory Test for Car Drivers
"{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{930B2432-43D4-11D5-9871-00C04F8EEB39}" = Macromedia Fireworks MX
"{9422C8EA-B0C6-4197-B8FC-DC797658CA00}" = Windows Live Sign-in Assistant
"{9BEDB0D4-CD2C-11D3-8002-006097C9A3A7}" = JMA CROSS REFERENCE
"{A7E4ECCA-4A8E-4258-8EC8-2DCCF5B11320}" = Windows Live installer
"{AC76BA86-7AD7-1033-7B44-A71000000002}" = Adobe Reader 7.1.0
"{B208806F-A231-4FA0-AB3F-5C1B8979223E}" = Microsoft ActiveSync 4.0
"{B508B3F1-A24A-32C0-B310-85786919EF28}" = Microsoft .NET Framework 2.0 Service Pack 1
"{B7A585C8-CE4E-4150-84C6-A13C3CB1379F}" = Enemy Territory - QUAKE Wars™
"{C8B094E7-E6E8-45CA-97EA-5A647F968A89}" = USB LED Message Board v1.0
"{C962EF10-7539-477A-A0AD-F8CBD0E9F7E5}" = KORG USB-MIDI Driver Tools for Windows
"{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}" = PL-2303 USB-to-Serial
"{ED0042CA-CBEA-4ADF-B262-FE0518AF2221}" = LogMeIn
"{EFC97089-04D6-42CE-A707-A343B4A7D2CD}" = Ghost Recon Advanced Warfighter
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{FEE84D71-7FF0-46C1-AED4-1BD821D53A9F}" = VMware Server
"53F13DB4D9611FD63BE580F06F0729BF236ABE68" = Windows Driver Package - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Audacity_is1" = Audacity 1.2.6
"BitLord" = BitLord 1.1
"Easy File Sharing FTP Server_is1" = Easy File Sharing FTP Server 3.2
"ERUNT_is1" = ERUNT 1.1j
"ExpressBurn" = Express Burn
"ExtractNow_is1" = ExtractNow
"ffdshow_is1" = ffdshow [rev 2946] [2009-05-15]
"FL Studio 6" = FL Studio 6
"Game Jackal_is1" = Game Jackal v2.9.18.550
"Google Earth Pro 4.2" = Google Earth Pro 4.2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"Infokey Basic" = Infokey Basic
"InstallShield_{1F6423DE-7959-4178-80E0-023C7EAA5347}" = NVIDIA ForceWare Network Access Manager
"InstallShield_{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD Ultra
"InstallShield_{79D1BA4A-BEB4-4357-A431-C3EF58E72E6C}" = The Official DSA Theory Test for Car Drivers
"InstallShield_{B7A585C8-CE4E-4150-84C6-A13C3CB1379F}" = Enemy Territory - QUAKE Wars™
"LDC Driving Test Complete2.2" = LDC Driving Test Complete
"LimeWire" = LimeWire 4.18.3
"LogonStudio" = LogonStudio
"MagicDisc 2.7.101" = MagicDisc 2.7.101
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mozilla Firefox (3.0.11)" = Mozilla Firefox (3.0.11)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSMONEYV70" = Microsoft Money 99
"Nero - Burning Rom!UninstallKey" = Nero 6 Ultra Edition
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA Drivers" = NVIDIA Drivers
"ophcrack" = ophcrack 3.3.0
"PowerISO" = PowerISO
"QuickMenuBuilder" = Quick Menu Builder 1.2
"Reason_is1" = Reason 3.0.4
"Safecracker" = Safecracker
"ShockwaveFlash" = Adobe Flash Player 9 ActiveX
"Silca Electronic Key Catalogue 5" = Silca Electronic Key Catalogue 5
"Storm Codec 5" = Storm Codec
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR archiver
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"BitTorrent" = BitTorrent
"BitTorrent DNA" = DNA

========== Last 10 Event Log Errors ==========

Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt!

< End of report >





please help
my email address is thanks
ohmy.gif ohmy.gif ohmy.gif ohmy.gif
Go to the top of the page
 
+Quote Post
Essexboy
post Jul 15 2009, 03:19 PM
Post #2


GeekU Moderator
Group Icon
Posts: 18,766
From: Darkest Cornwall
OS: Vista Ultimate & Windows 7



Hi there and sorry for the delay I will need a fresh look at your system and what are your current symptoms

To ensure that I get all the information this log will need to be attached (instructions at the end) if it is to large to attach then upload to Mediafire and post the sharing link.

Download OTS to your Desktop
  • Close ALL OTHER PROGRAMS.
  • Double-click on OTS.exe to start the program.
  • Check the box that says Scan All Users
  • Under Additional Scans check the following:
    • File - Lop Check
    • File - Purity Scan
    • Evnt - EvtViewer (last 10)
  • Now click the Run Scan button on the toolbar.
  • Let it run unhindered until it finishes.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.

Please attach the log in your next post.

To attach a file, do the following:
  • Click Add Reply
  • Under the reply panel is the Attachments Panel
  • Browse for the attachment file you want to upload, then click the green Upload button
  • Once it has uploaded, click the Manage Current Attachments drop down box
  • Click on to insert the attachment into your post


Go to the top of the page
 
+Quote Post
mattman110
post Jul 16 2009, 05:06 PM
Post #3


New Member
*
Posts: 4
From: uk
OS: xp,linux,windows server 2003,vista home



Attached File  OTL.Txt ( 239.02K ) Number of downloads: 8

here it is as requested

i have maneged to get my windows to s workable state but there is somthink lurking in the background !¬

OTL logfile created on: 17/07/2009 12:01:32 AM - Run 3
OTL by OldTimer - Version 3.0.6.3 Folder = C:\Documents and Settings\Matt\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 100.00% Memory free
4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free
Paging file location(s): [Binary data over 100 bytes]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 74.52 Gb Total Space | 44.10 Gb Free Space | 59.18% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
Drive I: | 227.19 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive J: | 931.52 Gb Total Space | 563.37 Gb Free Space | 60.48% Space Free | Partition Type: NTFS
Drive L: | 931.52 Gb Total Space | 927.36 Gb Free Space | 99.55% Space Free | Partition Type: NTFS

Computer Name: PCWS1
Current User Name: Matt
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
PRC - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe (Apache Software Foundation)
PRC - C:\Program Files\LogMeIn\x86\RaMaint.exe (LogMeIn, Inc.)
PRC - C:\windows\Explorer.EXE (Microsoft Corporation)
PRC - C:\Program Files\LogMeIn\x86\LogMeIn.exe (LogMeIn, Inc.)
PRC - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe (Apache Software Foundation)
PRC - C:\Program Files\LogMeIn\x86\LMIGuardian.exe (LogMeIn, Inc.)
PRC - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe (NVIDIA Corporation)
PRC - C:\windows\System32\nvsvc32.exe (NVIDIA Corporation)
PRC - C:\windows\System32\tcpsvcs.exe (Microsoft Corporation)
PRC - C:\windows\System32\snmp.exe (Microsoft Corporation)
PRC - C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe (VMware, Inc.)
PRC - C:\Program Files\Ideazon\ZEngine\Zboard.exe (Ideazon, Inc.)
PRC - C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
PRC - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe ()
PRC - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
PRC - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe (NVIDIA Corporation)
PRC - C:\Program Files\Winamp\winamp.exe (Nullsoft)
PRC - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
PRC - C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
PRC - C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
PRC - C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
PRC - C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
PRC - C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
PRC - C:\Documents and Settings\Matt\Desktop\OTL.exe (OldTimer Tools)

========== Win32 Services (SafeList) ==========

SRV - (acssrv [Auto | Running]) -- C:\Program Files\Agnitum\Outpost Firewall\acs.exe (Agnitum Ltd.)
SRV - (aspnet_state [On_Demand | Stopped]) -- C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (aswUpdSv [Auto | Running]) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
SRV - (avast! Antivirus [Auto | Running]) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
SRV - (avast! Mail Scanner [On_Demand | Running]) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
SRV - (avast! Web Scanner [On_Demand | Running]) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (Diskeeper [Disabled | Stopped]) -- C:\Program Files\Executive Software\Diskeeper\DkService.exe (Executive Software International, Inc.)
SRV - (Easy File Sharing FTP Service [Disabled | Stopped]) -- C:\Program Files\Easy File Sharing FTP Server\eftpd.exe (EFS Software, Inc.)
SRV - (ForceWare Intelligent Application Manager (IAM) [Auto | Running]) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe ()
SRV - (ForcewareWebInterface [Auto | Running]) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe (Apache Software Foundation)
SRV - (helpsvc [Auto | Running]) -- C:\windows\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (LMIMaint [Auto | Running]) -- C:\Program Files\LogMeIn\x86\RaMaint.exe (LogMeIn, Inc.)
SRV - (LogMeIn [Auto | Running]) -- C:\Program Files\LogMeIn\x86\LogMeIn.exe (LogMeIn, Inc.)
SRV - (MDM [Auto | Stopped]) -- File not found
SRV - (nSvcIp [Auto | Running]) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe (NVIDIA Corporation)
SRV - (nSvcLog [Auto | Running]) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe (NVIDIA Corporation)
SRV - (NVSvc [Auto | Running]) -- C:\windows\System32\nvsvc32.exe (NVIDIA Corporation)
SRV - (NwSapAgent [Auto | Running]) -- C:\windows\System32\ipxsap.dll (Microsoft Corporation)
SRV - (ose [On_Demand | Stopped]) -- File not found
SRV - (RichVideo [Disabled | Stopped]) -- C:\Program Files\CyberLink\Shared files\RichVideo.exe ()
SRV - (SimpTcp [Auto | Running]) -- C:\windows\System32\tcpsvcs.exe (Microsoft Corporation)
SRV - (SNMP [Auto | Running]) -- C:\windows\System32\snmp.exe (Microsoft Corporation)
SRV - (usnjsvc [On_Demand | Stopped]) -- C:\Program Files\Windows Live\Messenger\usnsvc.exe (Microsoft Corporation)
SRV - (vmount2 [Auto | Running]) -- C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe (VMware, Inc.)
SRV - (WLSetupSvc [On_Demand | Stopped]) -- C:\Program Files\Windows Live\installer\WLSetupSvc.exe (Microsoft Corporation)
SRV - (WMPNetworkSvc [On_Demand | Stopped]) -- C:\Program Files\Windows Media Player\WMPNetwk.exe (Microsoft Corporation)

========== Driver Services (SafeList) ==========

DRV - (Aavmker4 [System | Running]) -- C:\windows\System32\drivers\aavmker4.sys (ALWIL Software)
DRV - (ADIHdAudAddService [On_Demand | Running]) -- C:\windows\System32\drivers\ADIHdAud.sys (Analog Devices, Inc.)
DRV - (AEAudio [On_Demand | Running]) -- C:\windows\System32\drivers\AEAudio.sys (Andrea Electronics Corporation)
DRV - (Afc [On_Demand | Running]) -- C:\windows\System32\drivers\Afc.sys (Arcsoft, Inc.)
DRV - (afw [On_Demand | Running]) -- C:\windows\System32\DRIVERS\afw.sys (Agnitum Ltd.)
DRV - (afwcore [On_Demand | Running]) -- C:\windows\System32\drivers\afwcore.sys (Agnitum Ltd.)
DRV - (Alpham1 [On_Demand | Running]) -- C:\windows\System32\DRIVERS\Alpham1.sys (Ideazon Corporation)
DRV - (Alpham2 [On_Demand | Running]) -- C:\windows\System32\DRIVERS\Alpham2.sys (Ideazon Corporation)
DRV - (AmdK8 [System | Running]) -- C:\windows\System32\DRIVERS\AmdK8.sys (Advanced Micro Devices)
DRV - (AsIO [System | Running]) -- C:\windows\System32\drivers\AsIO.sys ()
DRV - (aswFsBlk [Auto | Running]) -- C:\windows\System32\DRIVERS\aswFsBlk.sys (ALWIL Software)
DRV - (aswMon2 [Auto | Running]) -- C:\windows\System32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswRdr [On_Demand | Running]) -- C:\windows\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswSP [System | Running]) -- C:\windows\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswTdi [System | Running]) -- C:\windows\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (BENDER [On_Demand | Running]) -- C:\windows\System32\drivers\bender.sys (Pinnacle Systems)
DRV - (HDAudBus [On_Demand | Running]) -- C:\windows\System32\DRIVERS\HDAudBus.sys (Windows ® Server 2003 DDK provider)
DRV - (ICAM5USB [On_Demand | Stopped]) -- C:\windows\System32\Drivers\Icam5USB.sys (Microsoft Corporation)
DRV - (JGOGO [Boot | Running]) -- C:\windows\system32\DRIVERS\JGOGO.sys (JMicron )
DRV - (JRAID [Boot | Running]) -- C:\windows\system32\DRIVERS\jraid.sys (JMicron Technology Corp.)
DRV - (KorgBlkT [Auto | Stopped]) -- C:\windows\System32\Drivers\korgblkt.sys (KORG Inc.)
DRV - (KORGUMDS [On_Demand | Stopped]) -- C:\windows\System32\Drivers\KORGUMDS.SYS (KORG Inc.)
DRV - (LMIInfo [Auto | Running]) -- C:\Program Files\LogMeIn\x86\RaInfo.sys (LogMeIn, Inc.)
DRV - (lmimirr [On_Demand | Running]) -- C:\windows\System32\DRIVERS\lmimirr.sys (LogMeIn, Inc.)
DRV - (LMIRfsClientNP [Disabled | Stopped]) -- C:\windows\System32\LMIRfsClientNP.dll (LogMeIn, Inc.)
DRV - (LMIRfsDriver [Auto | Running]) -- C:\windows\System32\drivers\LMIRfsDriver.sys (LogMeIn, Inc.)
DRV - (Maplom [On_Demand | Running]) -- C:\windows\System32\drivers\maplom.sys (SlySoft Inc.)
DRV - (mcdbus [On_Demand | Running]) -- C:\windows\System32\DRIVERS\mcdbus.sys (MagicISO, Inc.)
DRV - (MTsensor [On_Demand | Running]) -- C:\windows\System32\DRIVERS\ASACPI.sys ()
DRV - (NCHSSVAD [On_Demand | Stopped]) -- C:\windows\System32\drivers\nchssvad.sys (NCH Swift Sound)
DRV - (nm [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\NMnt.sys (Microsoft Corporation)
DRV - (nv [On_Demand | Running]) -- C:\windows\System32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (nvata [Boot | Running]) -- C:\windows\system32\DRIVERS\nvata.sys (NVIDIA Corporation)
DRV - (nvatabus [Boot | Running]) -- C:\windows\system32\DRIVERS\nvatabus.sys (NVIDIA Corporation)
DRV - (NVENETFD [On_Demand | Running]) -- C:\windows\System32\DRIVERS\NVENETFD.sys (NVIDIA Corporation)
DRV - (nvnetbus [On_Demand | Running]) -- C:\windows\System32\DRIVERS\nvnetbus.sys (NVIDIA Corporation)
DRV - (nvraid [Boot | Running]) -- C:\windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (NVTCP [System | Running]) -- C:\windows\System32\DRIVERS\NVTcp.sys (NVIDIA Corporation)
DRV - (NwlnkIpx [Auto | Running]) -- C:\windows\System32\DRIVERS\nwlnkipx.sys (Microsoft Corporation)
DRV - (NwlnkNb [Auto | Running]) -- C:\windows\System32\DRIVERS\nwlnknb.sys (Microsoft Corporation)
DRV - (NwlnkSpx [Auto | Running]) -- C:\windows\System32\DRIVERS\nwlnkspx.sys (Microsoft Corporation)
DRV - (PAC207 [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\PFC027.SYS (PixArt Imaging Inc.)
DRV - (prodrv06 [System | Running]) -- C:\windows\System32\drivers\prodrv06.sys (Protection Technology)
DRV - (prohlp02 [Boot | Running]) -- C:\windows\System32\drivers\prohlp02.sys (Protection Technology)
DRV - (prosync1 [Boot | Running]) -- C:\windows\System32\drivers\prosync1.sys (Protection Technology)
DRV - (Ptilink [On_Demand | Running]) -- C:\windows\System32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (PxHelp20 [Boot | Running]) -- C:\windows\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (SandBox [System | Running]) -- C:\windows\System32\drivers\SandBox.sys (Agnitum Ltd.)
DRV - (SCDEmu [System | Running]) -- C:\windows\System32\drivers\scdemu.sys (PowerISO Computing, Inc.)
DRV - (Secdrv [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (SenFiltService [On_Demand | Running]) -- C:\windows\System32\drivers\Senfilt.sys (Sensaura)
DRV - (Ser2pl [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\ser2pl.sys (Prolific Technology Inc.)
DRV - (sfhlp01 [Boot | Running]) -- C:\windows\System32\drivers\sfhlp01.sys (Protection Technology)
DRV - (usbaudio [On_Demand | Stopped]) -- C:\windows\System32\drivers\usbaudio.sys (Microsoft Corporation)
DRV - (VMnetAdapter [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\vmnetadapter.sys (VMware, Inc.)
DRV - (vstor2 [Auto | Running]) -- C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vstor2.sys (VMware, Inc.)
DRV - (wceusbsh [On_Demand | Stopped]) -- C:\windows\System32\DRIVERS\wceusbsh.sys (Microsoft Corporation)
DRV - (YMIDUSB [On_Demand | Stopped]) -- C:\windows\System32\Drivers\ymidusb.sys (Yamaha Corporation)
DRV - ({95808DC4-FA4A-4C74-92FE-5B863F82066B} [Auto | Running]) -- C:\Program Files\CyberLink\PowerDVD\000.fcl (Cyberlink Corp.)

========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm


IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-329068152-1960408961-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKU\S-1-5-21-329068152-1960408961-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch
IE - HKU\S-1-5-21-329068152-1960408961-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [Binary data over 100 bytes]
IE - HKU\S-1-5-21-329068152-1960408961-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
IE - HKU\S-1-5-21-329068152-1960408961-725345543-1003\S-1-5-21-329068152-1960408961-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.google.co.uk/"
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.11

FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/06/28 21:31:48 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/06/28 21:31:15 | 00,000,000 | ---D | M]

[2009/06/28 21:31:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\mozilla\Extensions
[2009/06/28 21:31:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/06/28 21:31:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\mozilla\Firefox\Profiles\qhi1wv8o.default\extensions
[2009/06/28 21:31:16 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/06/28 21:31:16 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/06/03 05:24:27 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/06/03 05:24:27 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009/06/03 05:24:27 | 00,065,528 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll
[2008/01/04 16:36:50 | 00,001,538 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml
[2006/07/05 19:47:38 | 00,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml
[2008/01/04 16:36:50 | 00,000,947 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml
[2008/03/08 10:35:22 | 00,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml
[2008/09/22 20:14:04 | 00,000,759 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml
[2008/04/16 05:08:20 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2008/03/28 19:11:14 | 00,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
[2008/01/04 16:36:50 | 00,000,831 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml

O1 HOSTS File: (317661 bytes) - C:\windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.123topsearch.com
O1 - Hosts: 127.0.0.1 123topsearch.com
O1 - Hosts: 127.0.0.1 www.132.com
O1 - Hosts: 127.0.0.1 132.com
O1 - Hosts: 127.0.0.1 www.136136.net
O1 - Hosts: 127.0.0.1 136136.net
O1 - Hosts: 10897 more lines...
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll File not found
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll File not found
O2 - BHO: (no name) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - No CLSID value found.
O2 - BHO: (no name) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKU\S-1-5-21-329068152-1960408961-725345543-1003\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O4 - HKLM..\Run: [LogonStudio] C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe (Stardock and Luca Saggese)
O4 - HKLM..\Run: [NvCplDaemon] C:\windows\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [OutpostMonitor] C:\Program Files\Agnitum\Outpost Firewall\op_mon.exe (Agnitum Ltd.)
O4 - HKLM..\Run: [Zboard] C:\Program Files\Ideazon\ZEngine\Zboard.exe (Ideazon, Inc.)
O4 - HKU\S-1-5-21-329068152-1960408961-725345543-1003..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-329068152-1960408961-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-329068152-1960408961-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKU\S-1-5-21-329068152-1960408961-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskmgr = 0
O8 - Extra context menu item: &Search - File not found
O8 - Extra context menu item: Download all with Free Download Manager - Reg Error: Value error. File not found
O8 - Extra context menu item: Download selected with Free Download Manager - Reg Error: Value error. File not found
O8 - Extra context menu item: Download with Free Download Manager - Reg Error: Value error. File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\windows\System32\nwprovau.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\windows\System32\wshbth.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\windows\System32\nvappfilter.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\windows\System32\nvappfilter.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\windows\System32\nvappfilter.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\windows\System32\nvappfilter.dll (NVIDIA)
O15 - HKLM\..Trusted Domains: 57 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\.DEFAULT\..Trusted Domains: 56 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-18\..Trusted Domains: 56 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-329068152-1960408961-725345543-1003\..Trusted Domains: 63 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/2008.1...toUploader5.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab (Symantec AntiVirus scanner)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/Solit...wn.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab (Symantec RuFSI Utility Class)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash...t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_07)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.6.40.178 194.72.9.38 192.168.1.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - Reg Error: Key error. File not found
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - Reg Error: Key error. File not found
O18 - Protocol\Filter: - text/xml - Reg Error: Key error. File not found
O20 - AppInit_DLLs: (c:\progra~1\agnitum\outpos~1\wl_hook.dll) - c:\Program Files\Agnitum\Outpost Firewall\wl_hook.dll (Agnitum Ltd.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\Explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (C:\WINDOWS\system32\logonuiX.exe) - C:\windows\System32\logonuiX.exe (Microsoft Corporation)
O20 - Winlogon\Notify\LMIinit: DllName - LMIinit.dll - C:\windows\System32\LMIinit.dll (LogMeIn, Inc.)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2008/05/04 20:02:58 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2007/02/26 02:39:48 | 00,000,041 | R--- | M] () - I:\Autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2003/04/22 11:24:02 | 00,019,469 | ---- | M] () - J:\Autorun.inf -- [ NTFS ]
O33 - MountPoints2\{47231cc8-aa6c-11dd-98fc-001d604b3aea}\Shell - "" = AutoRun
O33 - MountPoints2\{47231cc8-aa6c-11dd-98fc-001d604b3aea}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{47231cc8-aa6c-11dd-98fc-001d604b3aea}\Shell\AutoRun\command - "" = N:\umenu.exe -- File not found
O33 - MountPoints2\J\Shell\AutoRun\command - "" = C:\windows\System32\setup.exe -- [2008/04/14 05:42:36 | 00,023,040 | ---- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\windows\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found

========== Files/Folders - Created Within 30 Days ==========

[2009/07/16 13:59:28 | 00,001,374 | ---- | C] () -- C:\windows\imsins.BAK
[2009/07/09 21:33:21 | 16,158,0979 | ---- | C] () -- C:\Documents and Settings\Matt\Desktop\net card driver.zip
[2009/07/04 23:20:09 | 00,304,160 | ---- | C] () -- C:\PA207.DAT
[2009/07/04 23:16:48 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\ArcSoft
[2009/07/04 23:16:43 | 00,011,776 | ---- | C] (Arcsoft, Inc.) -- C:\windows\System32\drivers\afc.sys
[2009/07/04 23:16:43 | 00,001,634 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Video Impression 2.lnk
[2009/07/04 23:15:54 | 00,212,480 | ---- | C] (Eastman Kodak) -- C:\windows\PCDLIB32.DLL
[2009/07/04 23:15:48 | 00,000,000 | ---D | C] -- C:\Program Files\ArcSoft
[2009/07/04 23:14:54 | 00,048,128 | ---- | C] (PixArt Imaging Incorporation) -- C:\windows\System32\Remove.exe
[2009/07/04 23:14:54 | 00,000,399 | ---- | C] () -- C:\windows\System32\Remover.ini
[2009/07/04 23:14:41 | 00,618,112 | ---- | C] (PixArt Imaging Inc.) -- C:\windows\System32\drivers\PFC027.SYS
[2009/07/04 23:14:41 | 00,006,656 | ---- | C] (PixArt Imaging Inc.) -- C:\windows\System32\CoInst_080213.dll
[2009/07/04 23:14:38 | 00,000,000 | ---D | C] -- C:\Program Files\Salix
[2009/07/04 23:14:37 | 00,129,024 | ---- | C] (PixArt Imaging Incorporation) -- C:\windows\System32\SP207.ax
[2009/07/04 23:14:37 | 00,014,336 | ---- | C] (PixArt Imaging Inc.) -- C:\windows\System32\P207USD.dll
[2009/07/04 23:14:37 | 00,000,566 | ---- | C] () -- C:\windows\System32\SP207.ini
[2009/07/04 23:14:37 | 00,000,000 | ---D | C] -- C:\windows\PixArt
[2009/07/04 23:14:37 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\PAC207
[2009/07/04 16:07:31 | 00,000,000 | ---D | C] -- J:\My Documents\music from desktop
[2009/07/04 16:07:30 | 00,000,000 | ---D | C] -- J:\My Documents\picks from desktop
[2009/07/04 16:06:28 | 00,000,000 | ---D | C] -- J:\My Documents\random shit from desktop
[2009/07/04 01:38:08 | 00,001,757 | ---- | C] () -- C:\Documents and Settings\Matt\Desktop\Outpost Firewall.lnk
[2009/07/04 01:20:57 | 00,000,940 | ---- | C] () -- C:\Documents and Settings\Matt\Desktop\Spybot - Search & Destroy.lnk
[2009/07/04 01:20:37 | 00,704,384 | ---- | C] (Agnitum Ltd.) -- C:\windows\System32\drivers\SandBox.sys
[2009/07/04 01:20:11 | 00,257,432 | ---- | C] (Agnitum Ltd.) -- C:\windows\System32\drivers\afwcore.sys
[2009/07/04 01:18:53 | 00,000,049 | ---- | C] () -- C:\windows\transp.gif
[2009/07/04 01:18:49 | 00,031,128 | ---- | C] (Agnitum Ltd.) -- C:\windows\System32\drivers\afw.sys
[2009/07/04 01:18:38 | 00,000,000 | ---D | C] -- C:\Program Files\Agnitum
[2009/07/04 01:17:32 | 00,051,376 | ---- | C] (ALWIL Software) -- C:\windows\System32\drivers\aswTdi.sys
[2009/07/04 01:17:32 | 00,023,152 | ---- | C] (ALWIL Software) -- C:\windows\System32\drivers\aswRdr.sys
[2009/07/04 01:17:32 | 00,001,716 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\avast! Antivirus.lnk
[2009/07/04 01:17:31 | 00,097,480 | ---- | C] (ALWIL Software) -- C:\windows\System32\AvastSS.scr
[2009/07/04 01:17:31 | 00,026,944 | ---- | C] (ALWIL Software) -- C:\windows\System32\drivers\aavmker4.sys
[2009/07/04 01:17:30 | 00,114,768 | ---- | C] (ALWIL Software) -- C:\windows\System32\drivers\aswSP.sys
[2009/07/04 01:17:30 | 00,094,032 | ---- | C] (ALWIL Software) -- C:\windows\System32\drivers\aswmon2.sys
[2009/07/04 01:17:30 | 00,093,296 | ---- | C] (ALWIL Software) -- C:\windows\System32\drivers\aswmon.sys
[2009/07/04 01:17:30 | 00,020,560 | ---- | C] (ALWIL Software) -- C:\windows\System32\drivers\aswFsBlk.sys
[2009/07/04 01:17:06 | 01,256,296 | ---- | C] (ALWIL Software) -- C:\windows\System32\aswBoot.exe
[2009/07/04 01:17:06 | 00,380,928 | ---- | C] () -- C:\windows\System32\actskin4.ocx
[2009/07/04 01:13:58 | 00,055,640 | ---- | C] (Avira GmbH) -- C:\windows\System32\drivers\avgntflt.sys
[2009/07/04 01:11:22 | 00,000,000 | ---D | C] -- C:\Program Files\SpywareGuard
[2009/07/04 01:10:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009/07/04 01:08:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2009/07/04 01:08:38 | 00,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2009/07/04 01:08:38 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Application Data\SUPERAntiSpyware.com
[2009/07/04 01:07:54 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SiteAdvisor
[2009/07/04 01:07:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2009/07/04 00:52:07 | 00,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2009/07/03 23:01:34 | 00,116,224 | ---- | C] (Xerox) -- C:\windows\System32\dllcache\xrxwiadr.dll
[2009/07/03 23:01:32 | 00,023,040 | ---- | C] (Xerox Corporation) -- C:\windows\System32\dllcache\xrxwbtmp.dll
[2009/07/03 23:01:32 | 00,018,944 | ---- | C] () -- C:\windows\System32\dllcache\xrxscnui.dll
[2009/07/03 23:01:30 | 00,027,648 | ---- | C] () -- C:\windows\System32\dllcache\xrxftplt.exe
[2009/07/03 23:01:27 | 00,004,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\xrxflnch.exe
[2009/07/03 23:01:17 | 00,099,865 | ---- | C] (Eicon Technology) -- C:\windows\System32\dllcache\xlog.exe
[2009/07/03 23:01:14 | 00,019,455 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\wvchntxx.sys
[2009/07/03 23:01:14 | 00,016,970 | ---- | C] (US Robotics MCD (Megahertz)) -- C:\windows\System32\dllcache\xem336n5.sys
[2009/07/03 23:01:12 | 00,012,063 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\wsiintxx.sys
[2009/07/03 23:01:03 | 00,008,832 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\wmiacpi.sys
[2009/07/03 23:01:02 | 00,154,624 | ---- | C] (Lucent Technologies) -- C:\windows\System32\dllcache\wlluc48.sys
[2009/07/03 23:01:00 | 00,034,890 | ---- | C] (Raytheon Corp.) -- C:\windows\System32\dllcache\wlandrv2.sys
[2009/07/03 23:00:56 | 00,771,581 | ---- | C] (Rockwell) -- C:\windows\System32\dllcache\winacisa.sys
[2009/07/03 23:00:53 | 00,053,760 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\wiamsmud.dll
[2009/07/03 23:00:51 | 00,087,040 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\wiafbdrv.dll
[2009/07/03 23:00:48 | 00,701,386 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\wdhaalba.sys
[2009/07/03 23:00:48 | 00,023,615 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\wch7xxnt.sys
[2009/07/03 23:00:45 | 00,035,871 | ---- | C] (Winbond Electronics Corp.) -- C:\windows\System32\dllcache\wbfirdma.sys
[2009/07/03 23:00:45 | 00,033,599 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\watv04nt.sys
[2009/07/03 23:00:44 | 00,029,311 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\watv01nt.sys
[2009/07/03 23:00:44 | 00,019,551 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\watv02nt.sys
[2009/07/03 23:00:43 | 00,012,127 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\wadv02nt.sys
[2009/07/03 23:00:43 | 00,011,775 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\wadv05nt.sys
[2009/07/03 23:00:42 | 00,012,415 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\wadv01nt.sys
[2009/07/03 23:00:40 | 00,016,925 | ---- | C] (Winbond Electronics Corporation) -- C:\windows\System32\dllcache\w940nd.sys
[2009/07/03 23:00:38 | 00,019,016 | ---- | C] (Winbond Electronics Corporation) -- C:\windows\System32\dllcache\w926nd.sys
[2009/07/03 23:00:36 | 00,019,528 | ---- | C] (Winbond Electronics Corporation) -- C:\windows\System32\dllcache\w840nd.sys
[2009/07/03 23:00:32 | 00,064,605 | ---- | C] (PCtel, Inc.) -- C:\windows\System32\dllcache\vvoice.sys
[2009/07/03 23:00:30 | 00,397,502 | ---- | C] (PCtel, Inc.) -- C:\windows\System32\dllcache\vpctcom.sys
[2009/07/03 23:00:28 | 00,604,253 | ---- | C] (PCTEL, INC.) -- C:\windows\System32\dllcache\vmodem.sys
[2009/07/03 23:00:25 | 00,249,402 | ---- | C] (Xircom) -- C:\windows\System32\dllcache\vinwm.sys
[2009/07/03 23:00:23 | 00,024,576 | ---- | C] (VIA Technologies, Inc.) -- C:\windows\System32\dllcache\viairda.sys
[2009/07/03 23:00:22 | 00,005,376 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\viaide.sys
[2009/07/03 23:00:19 | 00,687,999 | ---- | C] (U.S. Robotics Corporation) -- C:\windows\System32\dllcache\usrwdxjs.sys
[2009/07/03 23:00:17 | 00,765,884 | ---- | C] (U.S. Robotics, Inc.) -- C:\windows\System32\dllcache\usrti.sys
[2009/07/03 23:00:15 | 00,113,762 | ---- | C] (U.S. Robotics Corporation) -- C:\windows\System32\dllcache\usrpda.sys
[2009/07/03 23:00:13 | 00,007,556 | ---- | C] (U.S. Robotics Corporation) -- C:\windows\System32\dllcache\usroslba.sys
[2009/07/03 23:00:11 | 00,224,802 | ---- | C] (U.S. Robotics Corporation) -- C:\windows\System32\dllcache\usr1807a.sys
[2009/07/03 23:00:09 | 00,794,399 | ---- | C] (U.S. Robotics, Inc.) -- C:\windows\System32\dllcache\usr1806v.sys
[2009/07/03 23:00:06 | 00,793,598 | ---- | C] (U.S. Robotics, Inc.) -- C:\windows\System32\dllcache\usr1806.sys
[2009/07/03 23:00:04 | 00,794,654 | ---- | C] (U.S. Robotics, Inc.) -- C:\windows\System32\dllcache\usr1801.sys
[2009/07/03 23:00:04 | 00,020,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\usbuhci.sys
[2009/07/03 23:00:03 | 00,032,384 | ---- | C] (KLSI USA, Inc.) -- C:\windows\System32\dllcache\usb101et.sys
[2009/07/03 23:00:03 | 00,025,856 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\usbprint.sys
[2009/07/03 23:00:00 | 00,094,720 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\umaxud32.dll
[2009/07/03 22:59:58 | 00,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\umaxu40.dll
[2009/07/03 22:59:56 | 00,026,624 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\umaxu22.dll
[2009/07/03 22:59:53 | 00,069,632 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\umaxu12.dll
[2009/07/03 22:59:51 | 00,050,688 | ---- | C] (UMAX DATA SYSTEMS INC.) -- C:\windows\System32\dllcache\umaxscan.dll
[2009/07/03 22:59:49 | 00,022,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\umaxpcls.sys
[2009/07/03 22:59:47 | 00,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\umaxp60.dll
[2009/07/03 22:59:45 | 00,047,616 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\umaxcam.dll
[2009/07/03 22:59:43 | 00,211,968 | ---- | C] (UMAX Data Systems Inc.) -- C:\windows\System32\dllcache\um54scan.dll
[2009/07/03 22:59:41 | 00,216,064 | ---- | C] (UMAX Data Systems Inc.) -- C:\windows\System32\dllcache\um34scan.dll
[2009/07/03 22:59:39 | 00,036,736 | ---- | C] (Promise Technology, Inc.) -- C:\windows\System32\dllcache\ultra.sys
[2009/07/03 22:59:36 | 00,011,520 | ---- | C] (IBM Corporation) -- C:\windows\System32\dllcache\twotrack.sys
[2009/07/03 22:59:33 | 00,166,784 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\tridxpm.sys
[2009/07/03 22:59:31 | 00,525,568 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\tridxp.dll
[2009/07/03 22:59:29 | 00,159,232 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\tridkbm.sys
[2009/07/03 22:59:27 | 00,440,576 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\tridkb.dll
[2009/07/03 22:59:25 | 00,222,336 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\trid3dm.sys
[2009/07/03 22:59:23 | 00,315,520 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\trid3d.dll
[2009/07/03 22:59:21 | 00,034,375 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\tpro4.sys
[2009/07/03 22:59:19 | 00,042,496 | ---- | C] (IBM Corporation) -- C:\windows\System32\dllcache\tp4res.dll
[2009/07/03 22:59:18 | 00,082,944 | ---- | C] (IBM Corporation) -- C:\windows\System32\dllcache\tp4mon.exe
[2009/07/03 22:59:16 | 00,031,744 | ---- | C] (IBM Corporation) -- C:\windows\System32\dllcache\tp4.dll
[2009/07/03 22:59:14 | 00,004,992 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\toside.sys
[2009/07/03 22:59:12 | 00,230,912 | ---- | C] (Toshiba Corporation) -- C:\windows\System32\dllcache\tosdvd03.sys
[2009/07/03 22:59:10 | 00,241,664 | ---- | C] (Toshiba Corporation) -- C:\windows\System32\dllcache\tosdvd02.sys
[2009/07/03 22:59:07 | 00,028,232 | ---- | C] (TOSHIBA Corporation) -- C:\windows\System32\dllcache\tos4mo.sys
[2009/07/03 22:59:05 | 00,123,995 | ---- | C] (Tiger Jet Network) -- C:\windows\System32\dllcache\tjisdn.sys
[2009/07/03 22:59:02 | 00,138,528 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\tgiulnt5.sys
[2009/07/03 22:59:00 | 00,081,408 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\tgiul50.dll
[2009/07/03 22:58:59 | 00,149,376 | ---- | C] (M-Systems) -- C:\windows\System32\dllcache\tffsport.sys
[2009/07/03 22:58:57 | 00,017,129 | ---- | C] (TDK Corporation) -- C:\windows\System32\dllcache\tdkcd31.sys
[2009/07/03 22:58:55 | 00,037,961 | ---- | C] (TDK Corporation) -- C:\windows\System32\dllcache\tdk100b.sys
[2009/07/03 22:58:51 | 00,030,464 | ---- | C] (Toshiba Corporation) -- C:\windows\System32\dllcache\tbatm155.sys
[2009/07/03 22:58:49 | 00,007,040 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\tandqic.sys
[2009/07/03 22:58:47 | 00,036,640 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\windows\System32\dllcache\t2r4mini.sys
[2009/07/03 22:58:45 | 00,172,768 | ---- | C] (Number Nine Visual Technology) -- C:\windows\System32\dllcache\t2r4disp.dll
[2009/07/03 22:58:43 | 00,032,640 | ---- | C] (LSI Logic) -- C:\windows\System32\dllcache\symc8xx.sys
[2009/07/03 22:58:41 | 00,016,256 | ---- | C] (Symbios Logic Inc.) -- C:\windows\System32\dllcache\symc810.sys
[2009/07/03 22:58:39 | 00,030,688 | ---- | C] (LSI Logic) -- C:\windows\System32\dllcache\sym_u3.sys
[2009/07/03 22:58:37 | 00,028,384 | ---- | C] (LSI Logic) -- C:\windows\System32\dllcache\sym_hi.sys
[2009/07/03 22:58:35 | 00,094,293 | ---- | C] (Perle Systems Ltd. ) -- C:\windows\System32\dllcache\sxports.dll
[2009/07/03 22:58:33 | 00,103,936 | ---- | C] (Perle Systems Ltd. ) -- C:\windows\System32\dllcache\sx.sys
[2009/07/03 22:58:31 | 00,003,968 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\swusbflt.sys
[2009/07/03 22:58:29 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\swpidflt.dll
[2009/07/03 22:58:27 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\swpdflt2.dll
[2009/07/03 22:58:25 | 00,053,760 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\sw_wheel.dll
[2009/07/03 22:58:23 | 00,041,472 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\sw_effct.dll
[2009/07/03 22:58:21 | 00,155,648 | ---- | C] (Stallion Technologies) -- C:\windows\System32\dllcache\stlnprop.dll
[2009/07/03 22:58:19 | 00,053,248 | ---- | C] (Stallion Technologies) -- C:\windows\System32\dllcache\stlncoin.dll
[2009/07/03 22:58:17 | 00,285,760 | ---- | C] (Stallion Technologies) -- C:\windows\System32\dllcache\stlnata.sys
[2009/07/03 22:58:15 | 00,016,896 | ---- | C] (SCM Microsystems, Inc.) -- C:\windows\System32\dllcache\stcusb.sys
[2009/07/03 22:58:12 | 00,048,736 | ---- | C] (3Com) -- C:\windows\System32\dllcache\srwlnd5.sys
[2009/07/03 22:58:10 | 00,099,328 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\srusd.dll
[2009/07/03 22:58:07 | 00,024,660 | ---- | C] (Perle Systems Ltd.) -- C:\windows\System32\dllcache\spxupchk.dll
[2009/07/03 22:58:05 | 00,061,824 | ---- | C] (Perle Systems Ltd.) -- C:\windows\System32\dllcache\speed.sys
[2009/07/03 22:58:03 | 00,106,584 | ---- | C] (Perle Systems Ltd.) -- C:\windows\System32\dllcache\spdports.dll
[2009/07/03 22:58:01 | 00,019,072 | ---- | C] (Adaptec, Inc.) -- C:\windows\System32\dllcache\sparrow.sys
[2009/07/03 22:57:59 | 00,007,552 | ---- | C] (Sony Corporation) -- C:\windows\System32\dllcache\sonypvu1.sys
[2009/07/03 22:57:57 | 00,037,040 | ---- | C] (Sony Corporation) -- C:\windows\System32\dllcache\sonypi.sys
[2009/07/03 22:57:55 | 00,114,688 | ---- | C] (Sony Corporation) -- C:\windows\System32\dllcache\sonypi.dll
[2009/07/03 22:57:53 | 00,020,752 | ---- | C] (Sony Corporation) -- C:\windows\System32\dllcache\sonync.sys
[2009/07/03 22:57:51 | 00,009,600 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\sonymc.sys
[2009/07/03 22:57:51 | 00,007,552 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\sonyait.sys
[2009/07/03 22:57:48 | 00,007,040 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\snyaitmc.sys
[2009/07/03 22:56:57 | 00,058,368 | ---- | C] (Silicon Motion Inc.) -- C:\windows\System32\dllcache\smiminib.sys
[2009/07/03 22:56:55 | 00,147,200 | ---- | C] (Silicon Motion Inc.) -- C:\windows\System32\dllcache\smidispb.dll
[2009/07/03 22:56:53 | 00,025,034 | ---- | C] (SMC Networks, Inc.) -- C:\windows\System32\dllcache\smcpwr2n.sys
[2009/07/03 22:56:51 | 00,035,913 | ---- | C] (SMC) -- C:\windows\System32\dllcache\smcirda.sys
[2009/07/03 22:56:49 | 00,024,576 | ---- | C] (SMC Networks, Inc.) -- C:\windows\System32\dllcache\smc8000n.sys
[2009/07/03 22:56:47 | 00,006,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\smbclass.sys
[2009/07/03 22:56:47 | 00,006,784 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\smbhc.sys
[2009/07/03 22:56:46 | 00,016,000 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\smbbatt.sys
[2009/07/03 22:56:44 | 00,045,568 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\smb3w.dll
[2009/07/03 22:56:42 | 00,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\smb0w.dll
[2009/07/03 22:56:40 | 00,028,672 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\sma0w.dll
[2009/07/03 22:56:38 | 00,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\sm91w.dll
[2009/07/03 22:56:35 | 00,063,547 | ---- | C] (Symbol Technologies) -- C:\windows\System32\dllcache\sla30nd5.sys
[2009/07/03 22:56:33 | 00,091,294 | ---- | C] (SysKonnect, a business unit of Schneider & Koch & Co. Datensysteme GmbH.) -- C:\windows\System32\dllcache\skfpwin.sys
[2009/07/03 22:56:31 | 00,094,698 | ---- | C] (SysKonnect GmbH.) -- C:\windows\System32\dllcache\sk98xwin.sys
[2009/07/03 22:56:29 | 00,157,696 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\windows\System32\dllcache\sisv256.dll
[2009/07/03 22:56:27 | 00,050,432 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\windows\System32\dllcache\sisv.sys
[2009/07/03 22:56:27 | 00,032,768 | ---- | C] (SiS Corporation) -- C:\windows\System32\dllcache\sisnic.sys
[2009/07/03 22:56:25 | 00,238,592 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\windows\System32\dllcache\sisgrv.dll
[2009/07/03 22:56:23 | 00,104,064 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\windows\System32\dllcache\sisgrp.sys
[2009/07/03 22:56:21 | 00,150,144 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\windows\System32\dllcache\sis6306v.dll
[2009/07/03 22:56:19 | 00,068,608 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\windows\System32\dllcache\sis6306p.sys
[2009/07/03 22:56:17 | 00,252,032 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\windows\System32\dllcache\sis300iv.dll
[2009/07/03 22:56:15 | 00,101,760 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\windows\System32\dllcache\sis300ip.sys
[2009/07/03 22:56:11 | 00,161,568 | ---- | C] (Micro Systemation) -- C:\windows\System32\dllcache\sgsmusb.sys
[2009/07/03 22:56:09 | 00,018,400 | ---- | C] (Micro Systemation) -- C:\windows\System32\dllcache\sgsmld.sys
[2009/07/03 22:56:07 | 00,098,080 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\sgiulnt5.sys
[2009/07/03 22:56:05 | 00,386,560 | ---- | C] (Trident Microsystems Inc.) -- C:\windows\System32\dllcache\sgiul50.dll
[2009/07/03 22:56:04 | 00,036,480 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\sfmanm.sys
[2009/07/03 22:56:01 | 00,006,784 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\serscan.sys
[2009/07/03 22:55:34 | 00,006,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\seaddsmc.sys
[2009/07/03 22:55:33 | 00,011,520 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\scsiscan.sys
[2009/07/03 22:55:31 | 00,011,648 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\scsiprnt.sys
[2009/07/03 22:52:51 | 00,017,280 | ---- | C] (SCM Microsystems) -- C:\windows\System32\dllcache\scr111.sys
[2009/07/03 22:52:49 | 00,016,640 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\scmstcs.sys
[2009/07/03 22:52:47 | 00,023,936 | ---- | C] (OMNIKEY AG) -- C:\windows\System32\dllcache\sccmusbm.sys
[2009/07/03 22:52:46 | 00,023,936 | ---- | C] (OMNIKEY AG) -- C:\windows\System32\dllcache\sccmn50m.sys
[2009/07/03 22:52:45 | 00,043,904 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\sbp2port.sys
[2009/07/03 22:52:43 | 00,495,616 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\sblfx.dll
[2009/07/03 22:52:39 | 00,075,392 | ---- | C] (S3 Graphics, Inc.) -- C:\windows\System32\dllcache\s3savmxm.sys
[2009/07/03 22:52:37 | 00,245,632 | ---- | C] (S3 Graphics, Inc.) -- C:\windows\System32\dllcache\s3savmx.dll
[2009/07/03 22:52:35 | 00,077,824 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3sav4m.sys
[2009/07/03 22:52:34 | 00,198,400 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3sav4.dll
[2009/07/03 22:52:32 | 00,061,504 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3sav3dm.sys
[2009/07/03 22:52:30 | 00,179,264 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3sav3d.dll
[2009/07/03 22:52:28 | 00,210,496 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3mvirge.dll
[2009/07/03 22:52:26 | 00,062,496 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3mtrio.dll
[2009/07/03 22:52:24 | 00,041,216 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3mt3d.sys
[2009/07/03 22:52:23 | 00,182,272 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3mt3d.dll
[2009/07/03 22:52:21 | 00,166,720 | ---- | C] (S3 Incorporated) -- C:\windows\System32\dllcache\s3m.sys
[2009/07/03 22:52:19 | 00,065,664 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\s3legacy.sys
[2009/07/03 22:52:17 | 00,082,432 | ---- | C] (Ricoh Co., Ltd.) -- C:\windows\System32\dllcache\rwia450.dll
[2009/07/03 22:52:15 | 00,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\windows\System32\dllcache\rwia430.dll
[2009/07/03 22:52:14 | 00,029,696 | ---- | C] (Ricoh Co., Ltd.) -- C:\windows\System32\dllcache\rw450ext.dll
[2009/07/03 22:52:13 | 00,027,648 | ---- | C] (Ricoh Co., Ltd.) -- C:\windows\System32\dllcache\rw430ext.dll
[2009/07/03 22:52:12 | 00,020,992 | ---- | C] (Realtek Semiconductor Corporation) -- C:\windows\System32\dllcache\rtl8139.sys
[2009/07/03 22:52:11 | 00,019,017 | ---- | C] (Realtek Semiconductor Corporation) -- C:\windows\System32\dllcache\rtl8029.sys
[2009/07/03 22:52:09 | 00,030,720 | ---- | C] (Conexant Systems Inc.) -- C:\windows\System32\dllcache\rthwcls.sys
[2009/07/03 22:52:07 | 00,009,216 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\rsmgrstr.dll
[2009/07/03 22:52:05 | 00,003,840 | ---- | C] (Conexant Systems Inc.) -- C:\windows\System32\dllcache\rpfun.sys
[2009/07/03 22:52:04 | 00,079,104 | ---- | C] (Comtrol Corporation) -- C:\windows\System32\dllcache\rocket.sys
[2009/07/03 22:52:02 | 00,037,563 | ---- | C] (RadioLAN) -- C:\windows\System32\dllcache\rlnet5.sys
[2009/07/03 22:52:00 | 00,086,097 | ---- | C] (Xircom) -- C:\windows\System32\dllcache\reslog32.dll
[2009/07/03 22:51:09 | 00,019,584 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\rasirda.sys
[2009/07/03 22:51:06 | 00,714,762 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\r2mdmkxx.sys
[2009/07/03 22:51:05 | 00,899,146 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\r2mdkxga.sys
[2009/07/03 22:51:03 | 00,041,472 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\qvusd.dll
[2009/07/03 22:51:01 | 00,003,328 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\qv2kux.sys
[2009/07/03 22:50:58 | 00,049,024 | ---- | C] (QLogic Corporation) -- C:\windows\System32\dllcache\ql1280.sys
[2009/07/03 22:50:56 | 00,040,448 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ql1240.sys
[2009/07/03 22:50:55 | 00,045,312 | ---- | C] (QLogic Corporation) -- C:\windows\System32\dllcache\ql12160.sys
[2009/07/03 22:50:53 | 00,033,152 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ql10wnt.sys
[2009/07/03 22:50:51 | 00,040,320 | ---- | C] (QLogic Corporation) -- C:\windows\System32\dllcache\ql1080.sys
[2009/07/03 22:50:50 | 00,006,016 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\qic157.sys
[2009/07/03 22:50:48 | 00,130,942 | ---- | C] (PCTEL, INC.) -- C:\windows\System32\dllcache\ptserlv.sys
[2009/07/03 22:50:46 | 00,112,574 | ---- | C] (PCTEL, INC.) -- C:\windows\System32\dllcache\ptserlp.sys
[2009/07/03 22:50:44 | 00,159,232 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ptpusd.dll
[2009/07/03 22:50:44 | 00,128,286 | ---- | C] (PCTEL, INC.) -- C:\windows\System32\dllcache\ptserli.sys
[2009/07/03 22:50:42 | 00,033,280 | ---- | C] () -- C:\windows\System32\dllcache\psisrndr.ax
[2009/07/03 22:50:42 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ptpusb.dll
[2009/07/03 22:50:40 | 00,363,520 | ---- | C] () -- C:\windows\System32\dllcache\psisdecd.dll
[2009/07/03 22:50:40 | 00,035,328 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\psisload.dll
[2009/07/03 22:50:38 | 00,016,128 | ---- | C] (SCM Microsystems, Inc.) -- C:\windows\System32\dllcache\pscr.sys
[2009/07/03 22:48:14 | 00,083,748 | ---- | C] () -- C:\windows\System32\dllcache\prcp.nls
[2009/07/03 22:38:12 | 00,083,748 | ---- | C] () -- C:\windows\System32\dllcache\prc.nls
[2009/07/03 22:32:57 | 00,017,664 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ppa3.sys
[2009/07/03 22:32:55 | 00,017,792 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ppa.sys
[2009/07/03 22:32:55 | 00,008,832 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\powerfil.sys
[2009/07/03 22:32:53 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\pnrmc.sys
[2009/07/03 22:32:50 | 00,121,344 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\phvfwext.dll
[2009/07/03 22:32:48 | 00,019,840 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\philtune.sys
[2009/07/03 22:32:46 | 00,092,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\phildec.sys
[2009/07/03 22:32:44 | 00,173,696 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\philcam2.sys
[2009/07/03 22:32:42 | 00,075,776 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\philcam1.sys
[2009/07/03 22:32:41 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\philcam1.dll
[2009/07/03 22:32:39 | 00,105,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\phdsext.ax
[2009/07/03 22:32:38 | 00,259,328 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:\windows\System32\dllcache\perm3dd.dll
[2009/07/03 22:32:38 | 00,211,584 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:\windows\System32\dllcache\perm2dll.dll
[2009/07/03 22:32:38 | 00,028,032 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:\windows\System32\dllcache\perm3.sys
[2009/07/03 22:32:37 | 00,027,904 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:\windows\System32\dllcache\perm2.sys
[2009/07/03 22:32:36 | 00,005,504 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\perc2hib.sys
[2009/07/03 22:32:34 | 00,027,296 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\perc2.sys
[2009/07/03 22:32:33 | 00,169,984 | ---- | C] (Cisco Systems) -- C:\windows\System32\dllcache\pcx500.sys
[2009/07/03 22:32:31 | 00,086,016 | ---- | C] (PCtel, Inc.) -- C:\windows\System32\dllcache\pctspk.exe
[2009/07/03 22:32:30 | 00,035,328 | ---- | C] (AMD Inc.) -- C:\windows\System32\dllcache\pcntpci5.sys
[2009/07/03 22:32:28 | 00,029,769 | ---- | C] (AMD Inc.) -- C:\windows\System32\dllcache\pcntn5m.sys
[2009/07/03 22:32:26 | 00,030,282 | ---- | C] (AMD Inc.) -- C:\windows\System32\dllcache\pcntn5hl.sys
[2009/07/03 22:32:24 | 00,029,502 | ---- | C] (Marconi Communications, Inc.) -- C:\windows\System32\dllcache\pca200e.sys
[2009/07/03 22:32:24 | 00,026,153 | ---- | C] (Linksys) -- C:\windows\System32\dllcache\pcmlm56.sys
[2009/07/03 22:32:22 | 00,030,495 | ---- | C] (Linksys) -- C:\windows\System32\dllcache\pc100nds.sys
[2009/07/03 22:32:18 | 00,041,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovui2rc.dll
[2009/07/03 22:32:16 | 00,044,544 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovui2.dll
[2009/07/03 22:32:14 | 00,025,216 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovsound2.sys
[2009/07/03 22:32:12 | 00,039,424 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovcoms.exe
[2009/07/03 22:32:11 | 00,020,480 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovcomc.dll
[2009/07/03 22:32:09 | 00,351,616 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovcodek2.sys
[2009/07/03 22:32:07 | 00,116,736 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovcodec2.dll
[2009/07/03 22:32:05 | 00,031,872 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovce.sys
[2009/07/03 22:32:04 | 00,028,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovcd.sys
[2009/07/03 22:32:02 | 00,048,000 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovcam2.sys
[2009/07/03 22:32:00 | 00,025,088 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ovca.sys
[2009/07/03 22:31:58 | 00,054,186 | ---- | C] (Ositech Communications, Inc.) -- C:\windows\System32\dllcache\otcsercb.sys
[2009/07/03 22:31:56 | 00,043,689 | ---- | C] (Ositech Communications, Inc.) -- C:\windows\System32\dllcache\otceth5.sys
[2009/07/03 22:31:55 | 00,027,209 | ---- | C] (Ositech Communications, Inc.) -- C:\windows\System32\dllcache\otc06x5.sys
[2009/07/03 22:31:53 | 00,054,528 | ---- | C] (Yamaha Corp.) -- C:\windows\System32\dllcache\opl3sax.sys
[2009/07/03 22:31:49 | 00,198,144 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\dllcache\nv3.sys
[2009/07/03 22:31:47 | 00,123,776 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\dllcache\nv3.dll
[2009/07/03 22:31:44 | 00,051,552 | ---- | C] (Kensington Technology Group) -- C:\windows\System32\dllcache\ntgrip.sys
[2009/07/03 22:30:55 | 00,009,344 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ntapm.sys
[2009/07/03 22:30:53 | 00,007,552 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\nsmmc.sys
[2009/07/03 22:30:52 | 00,028,672 | ---- | C] (National Semiconductor Corporation) -- C:\windows\System32\dllcache\nscirda.sys
[2009/07/03 22:30:50 | 00,087,040 | ---- | C] (NeoMagic Corporation) -- C:\windows\System32\dllcache\nm6wdm.sys
[2009/07/03 22:30:48 | 00,126,080 | ---- | C] (NeoMagic Corporation) -- C:\windows\System32\dllcache\nm5a2wdm.sys
[2009/07/03 22:30:46 | 00,032,840 | ---- | C] (NETGEAR Corporation.) -- C:\windows\System32\dllcache\ngrpci.sys
[2009/07/03 22:30:20 | 00,053,248 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\nextlink.dll
[2009/07/03 22:29:52 | 00,132,695 | ---- | C] (802.11b) -- C:\windows\System32\dllcache\netwlan5.sys
[2009/07/03 22:29:50 | 00,065,278 | ---- | C] (Compaq Computer Corporation) -- C:\windows\System32\dllcache\netflx3.sys
[2009/07/03 22:29:48 | 00,039,264 | ---- | C] (NeoMagic Corporation) -- C:\windows\System32\dllcache\neo20xx.sys
[2009/07/03 22:29:46 | 00,060,480 | ---- | C] (NeoMagic Corporation) -- C:\windows\System32\dllcache\neo20xx.dll
[2009/07/03 22:29:44 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ne2000.sys
[2009/07/03 22:29:42 | 00,091,488 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\windows\System32\dllcache\n9i3disp.dll
[2009/07/03 22:29:41 | 00,027,936 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\windows\System32\dllcache\n9i3d.sys
[2009/07/03 22:29:39 | 00,033,088 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\windows\System32\dllcache\n9i128v2.sys
[2009/07/03 22:29:37 | 00,059,104 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\windows\System32\dllcache\n9i128v2.dll
[2009/07/03 22:29:36 | 00,013,664 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\windows\System32\dllcache\n9i128.sys
[2009/07/03 22:29:34 | 00,035,392 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\windows\System32\dllcache\n9i128.dll
[2009/07/03 22:29:32 | 00,128,000 | ---- | C] (Compaq Computer Corporation) -- C:\windows\System32\dllcache\n100325.sys
[2009/07/03 22:29:31 | 00,052,255 | ---- | C] (Compaq Computer Corporation) -- C:\windows\System32\dllcache\n1000nt5.sys
[2009/07/03 22:29:29 | 00,075,520 | ---- | C] (Moxa Technologies Co., Ltd.) -- C:\windows\System32\dllcache\mxport.sys
[2009/07/03 22:29:27 | 00,007,168 | ---- | C] (Moxa Technologies Co., Ltd) -- C:\windows\System32\dllcache\mxport.dll
[2009/07/03 22:29:26 | 00,019,968 | ---- | C] (Macronix International Co., Ltd. ) -- C:\windows\System32\dllcache\mxnic.sys
[2009/07/03 22:29:24 | 00,019,968 | ---- | C] (Moxa Technologies Co., Ltd) -- C:\windows\System32\dllcache\mxicfg.dll
[2009/07/03 22:29:22 | 00,021,888 | ---- | C] (Moxa Technologies Co., Ltd.) -- C:\windows\System32\dllcache\mxcard.sys
[2009/07/03 22:29:20 | 00,103,296 | ---- | C] (Matrox Graphics Inc) -- C:\windows\System32\dllcache\mtxvideo.sys
[2009/07/03 22:29:16 | 00,049,024 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\mstape.sys
[2009/07/03 22:29:14 | 00,012,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\msriffwv.sys
[2009/07/03 22:29:12 | 00,002,944 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\msmpu401.sys
[2009/07/03 22:29:11 | 00,022,016 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\msircomm.sys
[2009/07/03 22:28:42 | 00,039,936 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\msinfo32.exe
[2009/07/03 22:28:19 | 00,035,200 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\msgame.sys
[2009/07/03 22:28:18 | 00,006,016 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\msfsio.sys
[2009/07/03 22:28:17 | 00,056,832 | ---- | C] () -- C:\windows\System32\dllcache\msdvbnp.ax
[2009/07/03 22:28:17 | 00,051,200 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\msdv.sys
[2009/07/03 22:28:14 | 00,017,280 | ---- | C] (American Megatrends Inc.) -- C:\windows\System32\dllcache\mraid35x.sys
[2009/07/03 22:28:13 | 00,015,232 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\mpe.sys
[2009/07/03 22:28:11 | 00,016,128 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\modemcsa.sys
[2009/07/03 22:28:08 | 00,006,528 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\miniqic.sys
[2009/07/03 22:27:43 | 00,034,304 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\migisol.exe
[2009/07/03 22:27:29 | 00,320,384 | ---- | C] (Matrox Graphics Inc.) -- C:\windows\System32\dllcache\mgaum.sys
[2009/07/03 22:27:27 | 00,235,648 | ---- | C] (Matrox Graphics Inc.) -- C:\windows\System32\dllcache\mgaud.dll
[2009/07/03 22:27:02 | 00,092,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\mga.sys
[2009/07/03 22:26:01 | 00,092,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\mga.dll
[2009/07/03 22:24:21 | 00,026,112 | ---- | C] (Sony Corporation) -- C:\windows\System32\dllcache\memstpci.sys
[2009/07/03 22:24:19 | 00,047,616 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\memgrp.dll
[2009/07/03 22:24:18 | 00,008,320 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\memcard.sys
[2009/07/03 22:23:47 | 00,026,624 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\mdsync.dll
[2009/07/03 22:23:27 | 00,164,586 | ---- | C] (Madge Networks Ltd) -- C:\windows\System32\dllcache\mdgndis5.sys
[2009/07/03 22:23:25 | 00,007,424 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\mammoth.sys
[2009/07/03 22:20:12 | 00,048,768 | ---- | C] (ESS Technology, Inc.) -- C:\windows\System32\dllcache\maestro.sys
[2009/07/03 22:20:11 | 00,058,880 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\m3092dc.dll
[2009/07/03 22:20:09 | 00,058,368 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\m3091dc.dll
[2009/07/03 22:20:07 | 00,022,848 | ---- | C] (Logitech Inc.) -- C:\windows\System32\dllcache\lwusbhid.sys
[2009/07/03 22:20:07 | 00,020,864 | ---- | C] (Logitech Inc.) -- C:\windows\System32\dllcache\lwadihid.sys
[2009/07/03 22:20:05 | 00,797,500 | ---- | C] (LT) -- C:\windows\System32\dllcache\ltsmt.sys
[2009/07/03 22:20:04 | 00,802,683 | ---- | C] (Lucent Technologies) -- C:\windows\System32\dllcache\ltsm.sys
[2009/07/03 22:20:04 | 00,007,040 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ltotape.sys
[2009/07/03 22:20:03 | 00,420,992 | ---- | C] (LT) -- C:\windows\System32\dllcache\ltmdmntt.sys
[2009/07/03 22:20:02 | 00,576,746 | ---- | C] (LT) -- C:\windows\System32\dllcache\ltmdmntl.sys
[2009/07/03 22:20:01 | 00,606,684 | ---- | C] (LT) -- C:\windows\System32\dllcache\ltmdmnt.sys
[2009/07/03 22:20:00 | 00,727,786 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\ltck000c.sys
[2009/07/03 22:19:58 | 00,004,992 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\loop.sys
[2009/07/03 22:19:55 | 00,070,730 | ---- | C] (Linksys Group, Inc.) -- C:\windows\System32\dllcache\lne100tx.sys
[2009/07/03 22:19:54 | 00,020,573 | ---- | C] (The Linksts Group ) -- C:\windows\System32\dllcache\lne100.sys
[2009/07/03 22:19:52 | 00,025,065 | ---- | C] (D-Link) -- C:\windows\System32\dllcache\lmndis3.sys
[2009/07/03 22:19:51 | 00,015,744 | ---- | C] (Litronic Industries) -- C:\windows\System32\dllcache\lit220p.sys
[2009/07/03 22:19:50 | 00,034,688 | ---- | C] (Toshiba Corp.) -- C:\windows\System32\dllcache\lbrtfdc.sys
[2009/07/03 22:19:49 | 00,026,442 | ---- | C] (SMSC) -- C:\windows\System32\dllcache\lanepic5.sys
[2009/07/03 22:19:47 | 00,019,016 | ---- | C] (Kingston Technology Company ) -- C:\windows\System32\dllcache\ktc111.sys
[2009/07/03 22:19:45 | 00,037,376 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kousd.dll
[2009/07/03 22:19:44 | 00,253,952 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kdsusd.dll
[2009/07/03 22:19:43 | 00,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kdsui.dll
[2009/07/03 22:19:38 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kbdkor.dll
[2009/07/03 22:19:37 | 00,008,704 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kbdjpn.dll
[2009/07/03 22:19:32 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kbd106.dll
[2009/07/03 22:19:30 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kbd103.dll
[2009/07/03 22:19:29 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kbd101c.dll
[2009/07/03 22:19:27 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\kbd101b.dll
[2009/07/03 22:19:24 | 00,026,624 | ---- | C] (SigmaTel, Inc.) -- C:\windows\System32\dllcache\irstusb.sys
[2009/07/03 22:19:23 | 00,018,688 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\irsir.sys
[2009/07/03 22:19:21 | 00,088,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\irda.sys
[2009/07/03 22:19:21 | 00,023,552 | ---- | C] (MKNet Corporation) -- C:\windows\System32\dllcache\irmk7.sys
[2009/07/03 22:19:19 | 00,045,632 | ---- | C] (Interphase ® Corporation a Windows ® 2000 DDK Driver Provider) -- C:\windows\System32\dllcache\ip5515.sys
[2009/07/03 22:19:17 | 00,090,200 | ---- | C] (Perle Systems Ltd. ) -- C:\windows\System32\dllcache\io8ports.dll
[2009/07/03 22:19:16 | 00,038,784 | ---- | C] (Perle Systems Ltd. ) -- C:\windows\System32\dllcache\io8.sys
[2009/07/03 22:19:15 | 00,005,504 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\intelide.sys
[2009/07/03 22:19:14 | 00,013,056 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\inport.sys
[2009/07/03 22:19:12 | 00,016,000 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ini910u.sys
[2009/07/03 22:17:49 | 00,003,584 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\iismui.dll
[2009/07/03 22:15:37 | 00,060,928 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\iisclex4.dll
[2009/07/03 22:14:41 | 00,093,184 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ieinfo5.ocx
[2009/07/03 22:14:21 | 00,372,824 | ---- | C] (Xircom) -- C:\windows\System32\dllcache\iconf32.dll
[2009/07/03 22:14:20 | 00,154,496 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\icam4usb.sys
[2009/07/03 22:14:18 | 00,061,952 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\icam4ext.dll
[2009/07/03 22:14:17 | 00,091,136 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\icam4com.dll
[2009/07/03 22:14:15 | 00,026,624 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\icam3ext.dll
[2009/07/03 22:14:14 | 00,141,056 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\icam3.sys
[2009/07/03 22:14:12 | 00,038,528 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ibmvcap.sys
[2009/07/03 22:14:11 | 00,109,085 | ---- | C] (IBM Corporation) -- C:\windows\System32\dllcache\ibmtrp.sys
[2009/07/03 22:14:10 | 00,100,936 | ---- | C] (IBM Corporation) -- C:\windows\System32\dllcache\ibmtok.sys
[2009/07/03 22:14:08 | 00,009,216 | ---- | C] (IBM Corporation) -- C:\windows\System32\dllcache\ibmsgnet.dll
[2009/07/03 22:14:07 | 00,028,700 | ---- | C] (IBM Corp.) -- C:\windows\System32\dllcache\ibmexmp.sys
[2009/07/03 22:14:06 | 00,702,845 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\i81xdnt5.dll
[2009/07/03 22:14:06 | 00,161,020 | ---- | C] (Intel® Corporation) -- C:\windows\System32\dllcache\i81xnt5.sys
[2009/07/03 22:14:04 | 00,058,592 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\i740nt5.sys
[2009/07/03 22:14:03 | 00,353,184 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\i740dnt5.dll
[2009/07/03 22:14:02 | 00,018,560 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\i2omp.sys
[2009/07/03 22:14:02 | 00,008,576 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\i2omgmt.sys
[2009/07/03 22:13:48 | 00,488,383 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_v124.sys
[2009/07/03 22:13:47 | 00,050,751 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_tone.sys
[2009/07/03 22:13:45 | 00,073,279 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_spkp.sys
[2009/07/03 22:13:44 | 00,044,863 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_soar.sys
[2009/07/03 22:13:43 | 00,057,471 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_samp.sys
[2009/07/03 22:13:41 | 00,542,879 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_msft.sys
[2009/07/03 22:13:40 | 00,391,199 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_k56k.sys
[2009/07/03 22:13:38 | 00,009,759 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_inst.dll
[2009/07/03 22:13:37 | 00,115,807 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_fsks.sys
[2009/07/03 22:13:36 | 00,199,711 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_faxx.sys
[2009/07/03 22:13:34 | 00,289,887 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_fall.sys
[2009/07/03 22:13:33 | 00,067,167 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_bsc2.sys
[2009/07/03 22:13:31 | 00,150,239 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hsf_amos.sys
[2009/07/03 22:13:30 | 00,019,456 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hr1w.dll
[2009/07/03 22:13:28 | 00,005,760 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpt4qic.sys
[2009/07/03 22:13:27 | 00,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpsjmcro.dll
[2009/07/03 22:13:26 | 00,324,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpojwia.dll
[2009/07/03 22:13:24 | 00,025,952 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpn.sys
[2009/07/03 22:13:23 | 00,032,768 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpgtmcro.dll
[2009/07/03 22:13:21 | 00,068,608 | ---- | C] (Avisioin) -- C:\windows\System32\dllcache\hpgt53tk.dll
[2009/07/03 22:13:20 | 00,165,888 | ---- | C] () -- C:\windows\System32\dllcache\hpgt53.dll
[2009/07/03 22:13:19 | 00,031,232 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpgt42tk.dll
[2009/07/03 22:13:17 | 00,093,696 | ---- | C] () -- C:\windows\System32\dllcache\hpgt42.dll
[2009/07/03 22:13:16 | 00,126,976 | ---- | C] (Hewlett Packard) -- C:\windows\System32\dllcache\hpgt34tk.dll
[2009/07/03 22:13:15 | 00,101,376 | ---- | C] () -- C:\windows\System32\dllcache\hpgt34.dll
[2009/07/03 22:13:13 | 00,048,128 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpgt33tk.dll
[2009/07/03 22:13:12 | 00,089,088 | ---- | C] () -- C:\windows\System32\dllcache\hpgt33.dll
[2009/07/03 22:13:11 | 00,123,392 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpgt21tk.dll
[2009/07/03 22:13:09 | 00,083,968 | ---- | C] () -- C:\windows\System32\dllcache\hpgt21.dll
[2009/07/03 22:13:08 | 00,119,296 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hpdigwia.dll
[2009/07/03 22:13:06 | 00,002,688 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hidswvd.sys
[2009/07/03 22:13:05 | 00,020,352 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hidbatt.sys
[2009/07/03 22:13:05 | 00,008,576 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\hidgame.sys
[2009/07/03 22:13:03 | 00,907,456 | ---- | C] (Conexant) -- C:\windows\System32\dllcache\hcf_msft.sys
[2009/07/03 22:13:02 | 00,028,288 | ---- | C] (Gemplus) -- C:\windows\System32\dllcache\grserial.sys
[2009/07/03 22:13:00 | 00,082,304 | ---- | C] (Gemplus) -- C:\windows\System32\dllcache\grclass.sys
[2009/07/03 22:12:59 | 00,017,408 | ---- | C] (Gemplus) -- C:\windows\System32\dllcache\gpr400.sys
[2009/07/03 22:12:58 | 00,059,136 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\gckernel.sys
[2009/07/03 22:12:58 | 00,010,624 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\gameenum.sys
[2009/07/03 22:12:57 | 00,322,432 | ---- | C] (Matrox Graphics Inc.) -- C:\windows\System32\dllcache\g400m.sys
[2009/07/03 22:12:55 | 01,733,120 | ---- | C] (Matrox Graphics Inc.) -- C:\windows\System32\dllcache\g400d.dll
[2009/07/03 22:12:54 | 00,320,384 | ---- | C] (Matrox Graphics Inc.) -- C:\windows\System32\dllcache\g200m.sys
[2009/07/03 22:12:53 | 00,470,144 | ---- | C] (Matrox Graphics Inc.) -- C:\windows\System32\dllcache\g200d.dll
[2009/07/03 22:12:52 | 00,454,912 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\fxusbase.sys
[2009/07/03 22:12:47 | 00,092,160 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\fuusd.dll
[2009/07/03 22:12:45 | 00,455,296 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\fusbbase.sys
[2009/07/03 22:12:44 | 00,455,680 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\fus2base.sys
[2009/07/03 22:12:42 | 00,442,240 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\fpnpbase.sys
[2009/07/03 22:12:41 | 00,441,728 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\fpcmbase.sys
[2009/07/03 22:12:40 | 00,444,416 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\fpcibase.sys
[2009/07/03 22:12:39 | 00,034,173 | ---- | C] (Marconi Communications, Inc.) -- C:\windows\System32\dllcache\forehe.sys
[2009/07/03 22:12:38 | 00,071,680 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\fnfilter.dll
[2009/07/03 22:12:06 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\flattemp.exe
[2009/07/03 22:11:46 | 00,027,165 | ---- | C] (VIA Technologies, Inc. ) -- C:\windows\System32\dllcache\fetnd5.sys
[2009/07/03 22:11:42 | 00,022,090 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\fem556n5.sys
[2009/07/03 22:11:12 | 00,024,618 | ---- | C] (NETGEAR) -- C:\windows\System32\dllcache\fa410nd5.sys
[2009/07/03 22:11:11 | 00,016,074 | ---- | C] (NETGEAR Corp.) -- C:\windows\System32\dllcache\fa312nd5.sys
[2009/07/03 22:11:10 | 00,011,850 | ---- | C] (FUJITSU LIMITED) -- C:\windows\System32\dllcache\f3ab18xj.sys
[2009/07/03 22:11:09 | 00,012,362 | ---- | C] (FUJITSU LIMITED) -- C:\windows\System32\dllcache\f3ab18xi.sys
[2009/07/03 22:11:07 | 00,007,040 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\exabyte2.sys
[2009/07/03 22:11:06 | 00,016,998 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\ex10.sys
[2009/07/03 22:11:04 | 00,045,568 | ---- | C] (SEIKO EPSON CORP.) -- C:\windows\System32\dllcache\esunib.dll
[2009/07/03 22:11:03 | 00,045,568 | ---- | C] (SEIKO EPSON CORP.) -- C:\windows\System32\dllcache\esuni.dll
[2009/07/03 22:11:01 | 00,034,816 | ---- | C] (SEIKO EPSON CORP.) -- C:\windows\System32\dllcache\esuimg.dll
[2009/07/03 22:11:00 | 00,137,088 | ---- | C] (ESS Technology, Inc.) -- C:\windows\System32\dllcache\essm2e.sys
[2009/07/03 22:11:00 | 00,043,008 | ---- | C] (SEIKO EPSON CORP.) -- C:\windows\System32\dllcache\esucm.dll
[2009/07/03 22:10:58 | 00,063,360 | ---- | C] (ESS Technology, Inc.) -- C:\windows\System32\dllcache\ess.sys
[2009/07/03 22:10:57 | 00,347,550 | ---- | C] (ESS Technology, Inc.) -- C:\windows\System32\dllcache\es56tpi.sys
[2009/07/03 22:10:56 | 00,594,238 | ---- | C] (ESS Technology, Inc.) -- C:\windows\System32\dllcache\es56hpi.sys
[2009/07/03 22:10:55 | 00,595,647 | ---- | C] (ESS Technology, Inc.) -- C:\windows\System32\dllcache\es56cvmp.sys
[2009/07/03 22:10:54 | 00,174,464 | ---- | C] (ESS Technology, Inc.) -- C:\windows\System32\dllcache\es198x.sys
[2009/07/03 22:10:53 | 00,072,192 | ---- | C] (ESS Technology Inc.) -- C:\windows\System32\dllcache\es1969.sys
[2009/07/03 22:10:52 | 00,040,704 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\es1371mp.sys
[2009/07/03 22:10:51 | 00,037,120 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\es1370mp.sys
[2009/07/03 22:10:49 | 00,061,952 | ---- | C] (Equinox Systems Inc.) -- C:\windows\System32\dllcache\eqnloop.exe
[2009/07/03 22:10:48 | 00,051,200 | ---- | C] (Equinox Systems Inc.) -- C:\windows\System32\dllcache\eqnlogr.exe
[2009/07/03 22:10:47 | 00,053,248 | ---- | C] (Equinox Systems Inc.) -- C:\windows\System32\dllcache\eqndiag.exe
[2009/07/03 22:10:46 | 00,629,952 | ---- | C] (Equinox Systems Inc.) -- C:\windows\System32\dllcache\eqn.sys
[2009/07/03 22:10:45 | 00,114,944 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\epstw2k.sys
[2009/07/03 22:10:44 | 00,018,503 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\epro4.sys
[2009/07/03 22:10:43 | 00,144,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\epcfw2k.sys
[2009/07/03 22:10:42 | 00,283,904 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\emu10k1m.sys
[2009/07/03 22:10:40 | 00,019,996 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\em556n4.sys
[2009/07/03 22:10:39 | 00,025,159 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\elnk3.sys
[2009/07/03 22:10:39 | 00,007,296 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\elmsmc.sys
[2009/07/03 22:10:38 | 00,171,520 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el99xn51.sys
[2009/07/03 22:10:37 | 00,070,174 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el98xn5.sys
[2009/07/03 22:10:36 | 00,455,199 | ---- | C] (3Com Corporation.) -- C:\windows\System32\dllcache\el985n51.sys
[2009/07/03 22:10:35 | 00,153,631 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el90xnd5.sys
[2009/07/03 22:10:35 | 00,066,591 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el90xbc5.sys
[2009/07/03 22:10:34 | 00,241,206 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el656se5.sys
[2009/07/03 22:10:33 | 00,077,386 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el656nd5.sys
[2009/07/03 22:10:32 | 00,634,134 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el656ct5.sys
[2009/07/03 22:10:32 | 00,069,194 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el656cd5.sys
[2009/07/03 22:10:31 | 00,026,141 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el589nd5.sys
[2009/07/03 22:10:30 | 00,069,692 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el575nd5.sys
[2009/07/03 22:10:29 | 00,055,999 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el556nd5.sys
[2009/07/03 22:10:29 | 00,024,653 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el574nd4.sys
[2009/07/03 22:10:28 | 00,044,103 | ---- | C] (3Com Corporation) -- C:\windows\System32\dllcache\el515.sys
[2009/07/03 22:10:24 | 00,019,594 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\e100isa4.sys
[2009/07/03 22:10:23 | 00,117,760 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\e100b325.sys
[2009/07/03 22:10:23 | 00,050,719 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\e1000nt5.sys
[2009/07/03 22:10:21 | 00,020,992 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dshowext.ax
[2009/07/03 22:10:20 | 00,334,208 | ---- | C] (Yamaha Corp.) -- C:\windows\System32\dllcache\ds1wdm.sys
[2009/07/03 22:10:19 | 00,020,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dpti2o.sys
[2009/07/03 22:10:18 | 00,028,062 | ---- | C] (National Semiconductor Coproration) -- C:\windows\System32\dllcache\dp83820.sys
[2009/07/03 22:10:17 | 00,023,808 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dot4usb.sys
[2009/07/03 22:10:17 | 00,008,704 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dot4scan.sys
[2009/07/03 22:10:16 | 00,206,976 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dot4.sys
[2009/07/03 22:10:16 | 00,012,928 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dot4prt.sys
[2009/07/03 22:10:14 | 00,029,696 | ---- | C] (CNet Technology, Inc. ) -- C:\windows\System32\dllcache\dm9pci5.sys
[2009/07/03 22:10:14 | 00,008,320 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dlttape.sys
[2009/07/03 22:10:13 | 00,026,698 | ---- | C] (D-Link Corporation) -- C:\windows\System32\dllcache\dlh5xnd5.sys
[2009/07/03 22:10:12 | 00,952,007 | ---- | C] (Eicon Technology) -- C:\windows\System32\dllcache\diwan.sys
[2009/07/03 22:10:11 | 00,037,962 | ---- | C] () -- C:\windows\System32\dllcache\divaprop.dll
[2009/07/03 22:10:11 | 00,029,768 | ---- | C] () -- C:\windows\System32\dllcache\divasu.dll
[2009/07/03 22:10:10 | 00,006,216 | ---- | C] () -- C:\windows\System32\dllcache\divaci.dll
[2009/07/03 22:10:09 | 00,236,060 | ---- | C] (Eicon Technology) -- C:\windows\System32\dllcache\ditrace.exe
[2009/07/03 22:10:09 | 00,038,985 | ---- | C] (Eicon Technology) -- C:\windows\System32\dllcache\disrvsu.dll
[2009/07/03 22:10:08 | 00,031,305 | ---- | C] (Eicon Technology) -- C:\windows\System32\dllcache\disrvpp.dll
[2009/07/03 22:10:08 | 00,006,729 | ---- | C] (Eicon Technology) -- C:\windows\System32\dllcache\disrvci.dll
[2009/07/03 22:10:07 | 00,091,305 | ---- | C] (Eicon Technology) -- C:\windows\System32\dllcache\dimaint.sys
[2009/07/03 22:10:06 | 00,614,429 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digiview.exe
[2009/07/03 22:10:05 | 00,110,621 | ---- | C] (Digi International, Inc.) -- C:\windows\System32\dllcache\digirlpt.dll
[2009/07/03 22:10:05 | 00,042,432 | ---- | C] (Digi International, Inc.) -- C:\windows\System32\dllcache\digirlpt.sys
[2009/07/03 22:10:04 | 00,021,606 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digiisdn.sys
[2009/07/03 22:10:03 | 00,102,484 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digiinf.dll
[2009/07/03 22:10:03 | 00,041,046 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digiisdn.dll
[2009/07/03 22:10:02 | 00,159,828 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digihlc.dll
[2009/07/03 22:10:01 | 00,229,462 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digifwrk.dll
[2009/07/03 22:10:01 | 00,090,525 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digifep5.sys
[2009/07/03 22:10:00 | 00,103,044 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digidxb.sys
[2009/07/03 22:09:59 | 00,131,156 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digidbp.dll
[2009/07/03 22:09:59 | 00,037,735 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digiasyn.sys
[2009/07/03 22:09:58 | 00,065,622 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\digiasyn.dll
[2009/07/03 22:09:57 | 00,419,357 | ---- | C] (Digi International) -- C:\windows\System32\dllcache\dgconfig.dll
[2009/07/03 22:09:56 | 00,029,531 | ---- | C] (Digi International Inc.) -- C:\windows\System32\dllcache\dgapci.sys
[2009/07/03 22:09:56 | 00,024,649 | ---- | C] (D-Link) -- C:\windows\System32\dllcache\dfe650d.sys
[2009/07/03 22:09:55 | 00,024,648 | ---- | C] (D-Link) -- C:\windows\System32\dllcache\dfe650.sys
[2009/07/03 22:09:54 | 00,256,512 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\devcon32.dll
[2009/07/03 22:09:54 | 00,024,064 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\devldr32.exe
[2009/07/03 22:09:53 | 00,020,928 | ---- | C] (Digital Networks, LLC) -- C:\windows\System32\dllcache\defpa.sys
[2009/07/03 22:09:52 | 00,007,424 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ddsmc.sys
[2009/07/03 22:09:51 | 00,110,592 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dc260usd.dll
[2009/07/03 22:09:51 | 00,086,016 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dc240usd.dll
[2009/07/03 22:09:50 | 00,063,208 | ---- | C] (Intel Corporation.) -- C:\windows\System32\dllcache\dc21x4.sys
[2009/07/03 22:09:49 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dc210usd.dll
[2009/07/03 22:09:49 | 00,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dc210_32.dll
[2009/07/03 22:09:48 | 00,014,720 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\dac960nt.sys
[2009/07/03 22:09:47 | 00,179,584 | ---- | C] (Mylex Corporation) -- C:\windows\System32\dllcache\dac2w2k.sys
[2009/07/03 22:09:46 | 00,117,760 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\d100ib5.sys
[2009/07/03 22:09:45 | 00,049,792 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cyzport.sys
[2009/07/03 22:09:45 | 00,027,648 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cyzports.dll
[2009/07/03 22:09:44 | 00,027,136 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cyzcoins.dll
[2009/07/03 22:09:43 | 00,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cyyport.sys
[2009/07/03 22:09:43 | 00,027,648 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cyyports.dll
[2009/07/03 22:09:42 | 00,028,672 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cyycoins.dll
[2009/07/03 22:09:42 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cyclom-y.sys
[2009/07/03 22:09:41 | 00,048,640 | ---- | C] (Crystal Semiconductor Corp.) -- C:\windows\System32\dllcache\cwrwdm.sys
[2009/07/03 22:09:41 | 00,017,152 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cyclad-z.sys
[2009/07/03 22:09:40 | 00,093,952 | ---- | C] (Crystal Semiconductor Corp.) -- C:\windows\System32\dllcache\cwcwdm.sys
[2009/07/03 22:09:39 | 00,111,872 | ---- | C] (Crystal Semiconductor Corp.) -- C:\windows\System32\dllcache\cwcspud.sys
[2009/07/03 22:09:39 | 00,003,584 | ---- | C] (Crystal Semiconductor Corp.) -- C:\windows\System32\dllcache\cwcosnt5.sys
[2009/07/03 22:09:38 | 00,072,832 | ---- | C] (Crystal Semiconductor Corp.) -- C:\windows\System32\dllcache\cwbwdm.sys
[2009/07/03 22:09:38 | 00,003,072 | ---- | C] (Crystal Semiconductor Corp.) -- C:\windows\System32\dllcache\cwbmidi.sys
[2009/07/03 22:09:37 | 00,003,072 | ---- | C] (Crystal Semiconductor Corp.) -- C:\windows\System32\dllcache\cwbase.sys
[2009/07/03 22:09:36 | 00,249,856 | ---- | C] (Comtrol® Corporation) -- C:\windows\System32\dllcache\ctmasetp.dll
[2009/07/03 22:09:36 | 00,004,096 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\ctwdm32.dll
[2009/07/03 22:09:35 | 00,096,256 | ---- | C] (Copyright © Creative Technology Ltd. 1994-2001) -- C:\windows\System32\dllcache\ctlsb16.sys
[2009/07/03 22:09:35 | 00,003,712 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\ctljystk.sys
[2009/07/03 22:09:34 | 00,006,912 | ---- | C] (Creative Technology Ltd.) -- C:\windows\System32\dllcache\ctlfacem.sys
[2009/07/03 22:09:33 | 00,175,104 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\csamsp.dll
[2009/07/03 22:09:33 | 00,042,112 | ---- | C] (Conexant Systems Inc.) -- C:\windows\System32\dllcache\crtaud.sys
[2009/07/03 22:09:32 | 00,216,064 | ---- | C] (COMPAQ Inc.) -- C:\windows\System32\dllcache\cpscan.dll
[2009/07/03 22:09:31 | 00,060,970 | ---- | C] (Compaq Computer Corp.) -- C:\windows\System32\dllcache\cpqtrnd5.sys
[2009/07/03 22:09:31 | 00,021,533 | ---- | C] (Compaq Computer Corporation) -- C:\windows\System32\dllcache\cpqndis5.sys
[2009/07/03 22:09:30 | 00,014,976 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cpqarray.sys
[2009/07/03 22:09:27 | 00,039,936 | ---- | C] (Conexant Systems, Inc.) -- C:\windows\System32\dllcache\cnxt1803.sys
[2009/07/03 22:09:27 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\compbatt.sys
[2009/07/03 22:09:26 | 00,044,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cnusd.dll
[2009/07/03 22:09:25 | 00,020,736 | ---- | C] (OMNIKEY AG) -- C:\windows\System32\dllcache\cmbp0wdm.sys
[2009/07/03 22:09:25 | 00,006,656 | ---- | C] (CMD Technology, Inc.) -- C:\windows\System32\dllcache\cmdide.sys
[2009/07/03 22:09:24 | 00,248,064 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cl546xm.sys
[2009/07/03 22:09:24 | 00,013,952 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cmbatt.sys
[2009/07/03 22:09:23 | 00,170,880 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cl546x.dll
[2009/07/03 22:09:23 | 00,111,232 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cl5465.dll
[2009/07/03 22:09:23 | 00,045,696 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cirrus.sys
[2009/07/03 22:09:22 | 00,091,264 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cirrus.dll
[2009/07/03 22:09:21 | 00,980,034 | ---- | C] (Xircom) -- C:\windows\System32\dllcache\cicap.sys
[2009/07/03 22:09:21 | 00,272,640 | ---- | C] (RAVISENT Technologies Inc.) -- C:\windows\System32\dllcache\cinemclc.sys
[2009/07/03 22:09:15 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\changer.sys
[2009/07/03 22:09:14 | 00,049,182 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\cem56n5.sys
[2009/07/03 22:09:14 | 00,022,044 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\cem33n5.sys
[2009/07/03 22:09:13 | 00,027,164 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\ce3n5.sys
[2009/07/03 22:09:13 | 00,022,044 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\cem28n5.sys
[2009/07/03 22:09:13 | 00,021,530 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\ce2n5.sys
[2009/07/03 22:09:12 | 00,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\cd20xrnt.sys
[2009/07/03 22:09:11 | 00,714,698 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\cbmdmkxx.sys
[2009/07/03 22:09:11 | 00,046,108 | ---- | C] (Xircom, Inc.) -- C:\windows\System32\dllcache\cben5.sys
[2009/07/03 22:09:10 | 00,039,680 | ---- | C] (Silicom Ltd.) -- C:\windows\System32\dllcache\cb325.sys
[2009/07/03 22:09:10 | 00,037,916 | ---- | C] (Fast Ethernet Controller Provider) -- C:\windows\System32\dllcache\cb102.sys
[2009/07/03 22:09:09 | 00,164,923 | ---- | C] (Eicon Technology) -- C:\windows\System32\dllcache\diapi2.sys
[2009/07/03 22:09:09 | 00,032,256 | ---- | C] (Eicon Technology Corporation) -- C:\windows\System32\dllcache\diapi2NT.dll
[2009/07/03 22:09:07 | 00,236,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camext20.dll
[2009/07/03 22:09:07 | 00,121,856 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camext30.dll
[2009/07/03 22:09:07 | 00,116,736 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camext30.ax
[2009/07/03 22:09:06 | 00,244,224 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camext20.ax
[2009/07/03 22:09:06 | 00,074,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camexo20.dll
[2009/07/03 22:09:05 | 00,223,232 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camdrv21.sys
[2009/07/03 22:09:05 | 00,171,264 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camdrv30.sys
[2009/07/03 22:09:05 | 00,073,216 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camexo20.ax
[2009/07/03 22:09:04 | 00,314,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\camdro21.sys
[2009/07/03 22:08:49 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\bulltlp3.sys
[2009/07/03 22:08:48 | 00,031,529 | ---- | C] (BreezeCOM) -- C:\windows\System32\dllcache\brzwlan.sys
[2009/07/03 22:08:47 | 00,060,416 | ---- | C] (Brother Industries Ltd.) -- C:\windows\System32\dllcache\brserwdm.sys
[2009/07/03 22:08:47 | 00,011,008 | ---- | C] (Brother Industries Ltd.) -- C:\windows\System32\dllcache\brusbmdm.sys
[2009/07/03 22:08:47 | 00,010,368 | ---- | C] (Brother Industries Ltd.) -- C:\windows\System32\dllcache\brusbscn.sys
[2009/07/03 22:08:46 | 00,009,728 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brserif.dll
[2009/07/03 22:08:46 | 00,005,120 | ---- | C] (Brother Industries,Ltd.) -- C:\windows\System32\dllcache\brscnrsm.dll
[2009/07/03 22:08:45 | 00,039,552 | ---- | C] (Brother Industries Ltd.) -- C:\windows\System32\dllcache\brparwdm.sys
[2009/07/03 22:08:45 | 00,003,168 | ---- | C] (Brother Industries Ltd.) -- C:\windows\System32\dllcache\brparimg.sys
[2009/07/03 22:08:44 | 00,041,472 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brmfusb.dll
[2009/07/03 22:08:44 | 00,032,256 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brmfrsmg.exe
[2009/07/03 22:08:43 | 00,081,408 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\brmfcwia.dll
[2009/07/03 22:08:43 | 00,029,696 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brmflpt.dll
[2009/07/03 22:08:43 | 00,015,360 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brmfbidi.dll
[2009/07/03 22:08:42 | 00,012,160 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brfiltlo.sys
[2009/07/03 22:08:42 | 00,003,968 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brfiltup.sys
[2009/07/03 22:08:42 | 00,002,944 | ---- | C] (Brother Industries Ltd.) -- C:\windows\System32\dllcache\brfilt.sys
[2009/07/03 22:08:41 | 00,012,800 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brevif.dll
[2009/07/03 22:08:41 | 00,009,728 | ---- | C] (Brother Industries Ltd.) -- C:\windows\System32\dllcache\brcoinst.dll
[2009/07/03 22:08:40 | 00,019,456 | ---- | C] (Brother Industries, Ltd.) -- C:\windows\System32\dllcache\brbidiif.dll
[2009/07/03 22:08:39 | 00,102,400 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\binlsvc.dll
[2009/07/03 22:08:39 | 00,011,776 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\bdasup.sys
[2009/07/03 22:08:38 | 00,871,388 | ---- | C] (BCM) -- C:\windows\System32\dllcache\bcmdm.sys
[2009/07/03 22:08:38 | 00,026,568 | ---- | C] (Broadcom Corporation) -- C:\windows\System32\dllcache\bcm4e5.sys
[2009/07/03 22:08:38 | 00,018,432 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\bdaplgin.ax
[2009/07/03 22:08:37 | 00,066,557 | ---- | C] (Broadcom Corporation) -- C:\windows\System32\dllcache\bcm42u.sys
[2009/07/03 22:08:37 | 00,054,271 | ---- | C] (Broadcom Corporation) -- C:\windows\System32\dllcache\bcm42xx5.sys
[2009/07/03 22:08:36 | 00,342,336 | ---- | C] (3Dfx Interactive, Inc.) -- C:\windows\System32\dllcache\banshee.dll
[2009/07/03 22:08:36 | 00,036,128 | ---- | C] (3Dfx Interactive, Inc.) -- C:\windows\System32\dllcache\banshee.sys
[2009/07/03 22:08:36 | 00,014,208 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\battc.sys
[2009/07/03 22:08:35 | 00,096,640 | ---- | C] (Broadcom Corporation) -- C:\windows\System32\dllcache\b57xp32.sys
[2009/07/03 22:08:35 | 00,089,952 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\b1cbase.sys
[2009/07/03 22:08:35 | 00,036,992 | ---- | C] (Aztech Systems Ltd) -- C:\windows\System32\dllcache\aztw2320.sys
[2009/07/03 22:08:34 | 00,144,384 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\avmenum.dll
[2009/07/03 22:08:34 | 00,087,552 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\avmcoxp.dll
[2009/07/03 22:08:34 | 00,037,568 | ---- | C] (AVM GmbH) -- C:\windows\System32\dllcache\avmwan.sys
[2009/07/03 22:08:33 | 00,036,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\avcaudio.sys
[2009/07/03 22:08:33 | 00,013,696 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\avcstrm.sys
[2009/07/03 22:08:32 | 00,038,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\avc.sys
[2009/07/03 22:08:31 | 00,026,624 | ---- | C] () -- C:\windows\System32\dllcache\ativxbar.sys
[2009/07/03 22:08:31 | 00,023,552 | ---- | C] () -- C:\windows\System32\dllcache\atixbar.sys
[2009/07/03 22:08:30 | 00,019,456 | ---- | C] () -- C:\windows\System32\dllcache\ativttxx.sys
[2009/07/03 22:08:30 | 00,017,152 | ---- | C] () -- C:\windows\System32\dllcache\atitvsnd.sys
[2009/07/03 22:08:30 | 00,009,472 | ---- | C] () -- C:\windows\System32\dllcache\ativmdcd.sys
[2009/07/03 22:08:29 | 00,070,528 | ---- | C] (ATI Technologies Inc.) -- C:\windows\System32\dllcache\atiragem.sys
[2009/07/03 22:08:29 | 00,049,920 | ---- | C] () -- C:\windows\System32\dllcache\atirtcap.sys
[2009/07/03 22:08:29 | 00,026,880 | ---- | C] () -- C:\windows\System32\dllcache\atirtsnd.sys
[2009/07/03 22:08:29 | 00,017,152 | ---- | C] () -- C:\windows\System32\dllcache\atitunep.sys
[2009/07/03 22:08:28 | 00,281,600 | ---- | C] (ATI Technologies Inc.) -- C:\windows\System32\dllcache\atimtai.sys
[2009/07/03 22:08:28 | 00,104,832 | ---- | C] (ATI Technologies Inc.) -- C:\windows\System32\dllcache\atiraged.dll
[2009/07/03 22:08:28 | 00,010,240 | ---- | C] () -- C:\windows\System32\dllcache\atipcxxx.sys
[2009/07/03 22:08:27 | 00,289,664 | ---- | C] (ATI Technologies Inc.) -- C:\windows\System32\dllcache\atimpab.sys
[2009/07/03 22:08:27 | 00,075,136 | ---- | C] (ATI Technologies Inc.) -- C:\windows\System32\dllcache\atimpae.sys
[2009/07/03 22:08:27 | 00,037,376 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\atievxx.exe
[2009/07/03 22:08:26 | 00,382,592 | ---- | C] (ATI Technologies Inc.) -- C:\windows\System32\dllcache\atidrab.dll
[2009/07/03 22:08:26 | 00,268,160 | ---- | C] (ATI Technologies Inc.) -- C:\windows\System32\dllcache\atidvai.dll
[2009/07/03 22:08:26 | 00,137,216 | ---- | C] (ATI Technologies Inc.) -- C:\windows\System32\dllcache\atidrae.dll
[2009/07/03 22:08:25 | 00,077,568 | ---- | C] (ATI Technologies, Inc.) -- C:\windows\System32\dllcache\ati.sys
[2009/07/03 22:08:25 | 00,046,464 | ---- | C] () -- C:\windows\System32\dllcache\atibt829.sys
[2009/07/03 22:08:24 | 00,096,128 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ati.dll
[2009/07/03 22:08:23 | 00,097,354 | ---- | C] (Bay Networks, Inc.) -- C:\windows\System32\dllcache\aspndis3.sys
[2009/07/03 22:08:23 | 00,022,400 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\asc3350p.sys
[2009/07/03 22:08:23 | 00,014,848 | ---- | C] (Advanced System Products, Inc.) -- C:\windows\System32\dllcache\asc3550.sys
[2009/07/03 22:08:22 | 00,026,496 | ---- | C] (Advanced System Products, Inc.) -- C:\windows\System32\dllcache\asc.sys
[2009/07/03 22:07:51 | 00,006,272 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\apmbatt.sys
[2009/07/03 22:07:50 | 00,036,224 | ---- | C] (ADMtek Incorporated.) -- C:\windows\System32\dllcache\an983.sys
[2009/07/03 22:07:50 | 00,016,969 | ---- | C] (AmbiCom, Inc.) -- C:\windows\System32\dllcache\amb8002.sys
[2009/07/03 22:07:50 | 00,012,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\amsint.sys
[2009/07/03 22:07:49 | 00,056,960 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\aic78xx.sys
[2009/07/03 22:07:49 | 00,027,678 | ---- | C] (Acer Laboratories Inc.) -- C:\windows\System32\dllcache\ali5261.sys
[2009/07/03 22:07:49 | 00,026,624 | ---- | C] (Acer Laboratories Inc.) -- C:\windows\System32\dllcache\alifir.sys
[2009/07/03 22:07:49 | 00,005,248 | ---- | C] (Acer Laboratories Inc.) -- C:\windows\System32\dllcache\aliide.sys
[2009/07/03 22:07:48 | 00,055,168 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\aic78u2.sys
[2009/07/03 22:07:48 | 00,012,800 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\aha154x.sys
[2009/07/03 22:07:47 | 00,024,576 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\agcgauge.ax
[2009/07/03 22:07:16 | 00,101,888 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\adpu160m.sys
[2009/07/03 22:07:15 | 00,046,112 | ---- | C] (Adaptec, Inc ) -- C:\windows\System32\dllcache\adptsf50.sys
[2009/07/03 22:07:14 | 00,747,392 | ---- | C] (Aureal, Inc.) -- C:\windows\System32\dllcache\adm8830.sys
[2009/07/03 22:07:14 | 00,553,984 | ---- | C] (Aureal, Inc.) -- C:\windows\System32\dllcache\adm8820.sys
[2009/07/03 22:07:14 | 00,010,880 | ---- | C] (Aureal, Inc.) -- C:\windows\System32\dllcache\admjoy.sys
[2009/07/03 22:07:13 | 00,584,448 | ---- | C] (Aureal, Inc.) -- C:\windows\System32\dllcache\adm8810.sys
[2009/07/03 22:07:13 | 00,061,440 | ---- | C] (Color Flatbed Scanner) -- C:\windows\System32\dllcache\acerscad.dll
[2009/07/03 22:07:13 | 00,020,160 | ---- | C] (ADMtek Incorporated) -- C:\windows\System32\dllcache\adm8511.sys
[2009/07/03 22:07:13 | 00,007,424 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\adicvls.sys
[2009/07/03 22:07:12 | 00,297,728 | ---- | C] (Silicon Integrated Systems Corp.) -- C:\windows\System32\dllcache\ac97sis.sys
[2009/07/03 22:07:12 | 00,084,480 | ---- | C] (VIA Technologies, Inc.) -- C:\windows\System32\dllcache\ac97via.sys
[2009/07/03 22:07:11 | 00,231,552 | ---- | C] (Acer Laboratories Inc.) -- C:\windows\System32\dllcache\ac97ali.sys
[2009/07/03 22:07:11 | 00,096,256 | ---- | C] (Intel Corporation) -- C:\windows\System32\dllcache\ac97intc.sys
[2009/07/03 22:07:11 | 00,023,552 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\abp480n5.sys
[2009/07/03 22:07:10 | 00,462,848 | ---- | C] (Aureal Inc.) -- C:\windows\System32\dllcache\a3dapi.dll
[2009/07/03 22:07:10 | 00,048,128 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\61883.sys
[2009/07/03 22:07:10 | 00,038,400 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\8514a.dll
[2009/07/03 22:07:09 | 00,689,216 | ---- | C] (3dfx Interactive, Inc.) -- C:\windows\System32\dllcache\3dfxvs.dll
[2009/07/03 22:07:09 | 00,148,352 | ---- | C] (3dfx Interactive, Inc.) -- C:\windows\System32\dllcache\3dfxvsm.sys
[2009/07/03 22:07:09 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\4mmdat.sys
[2009/07/03 22:07:08 | 00,762,780 | ---- | C] (3Com, Inc.) -- C:\windows\System32\dllcache\3cwmcru.sys
[2009/07/03 22:07:08 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\1394vdbg.sys
[2009/07/03 22:06:57 | 00,066,048 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\s3legacy.dll
[2009/07/03 22:06:27 | 00,169,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\iisui.dll
[2009/07/03 21:09:24 | 00,173,119 | ---- | C] (Eric_71) -- C:\Documents and Settings\Matt\Desktop\Rooter.exe
[2009/07/03 21:00:03 | 00,000,000 | ---D | C] -- C:\Rooter$
[2009/07/03 20:51:34 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Agnitum
[2009/07/03 20:44:30 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Application Data\Malwarebytes
[2009/07/03 20:44:27 | 00,000,703 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/07/03 20:44:24 | 00,038,160 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbamswissarmy.sys
[2009/07/03 20:44:22 | 00,019,096 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys
[2009/07/03 20:44:22 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/07/03 20:44:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2009/07/03 20:40:37 | 00,000,000 | ---D | C] -- C:\windows\ERDNT
[2009/07/03 03:18:35 | 00,513,536 | R--- | C] (OldTimer Tools) -- C:\Documents and Settings\Matt\Desktop\OTL.exe
[2009/06/29 19:13:26 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\microsoft shared
[2009/06/29 19:11:27 | 00,000,000 | -HSD | C] -- C:\found.000
[2009/06/28 21:31:49 | 00,000,000 | ---- | C] () -- C:\windows\nsreg.dat
[2009/06/28 21:31:45 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Local Settings\Application Data\Mozilla
[2009/06/28 21:31:45 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Application Data\Mozilla
[2009/06/28 21:31:17 | 00,001,609 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/06/28 21:31:15 | 00,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2009/06/28 20:53:32 | 00,102,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\iecompat.dll
[2009/06/28 20:53:19 | 00,000,000 | ---D | C] -- C:\windows\ie8updates
[2009/06/28 20:52:56 | 00,012,800 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\xpshims.dll
[2009/06/28 20:52:55 | 00,246,272 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dllcache\ieproxy.dll
[2009/06/28 20:52:15 | 00,000,000 | -H-D | C] -- C:\windows\ie8
[2009/06/28 03:23:31 | 00,000,833 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Express Burn.lnk
[2009/06/27 19:43:25 | 00,000,000 | ---D | C] -- C:\Program Files\ophcrack
[2009/06/27 15:35:01 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Matt\Application Data\InstallShield
[2009/01/08 20:48:50 | 00,001,862 | ---- | C] () -- C:\windows\wininit.ini
[2008/12/25 16:47:55 | 00,000,308 | ---- | C] () -- C:\windows\game.ini
[2008/12/16 12:35:21 | 00,000,120 | ---- | C] () -- C:\windows\comodoor (fw).INI
[2008/12/01 18:49:42 | 00,053,248 | ---- | C] () -- C:\windows\System32\CommonDL.dll
[2008/12/01 18:49:42 | 00,002,412 | ---- | C] () -- C:\windows\System32\lgAxconfig.ini
[2008/11/24 17:22:21 | 00,000,031 | ---- | C] () -- C:\windows\tapp.ini
[2008/11/24 17:21:51 | 00,000,000 | ---- | C] () -- C:\windows\TheoryTest.ini
[2008/10/27 22:03:08 | 00,000,365 | ---- | C] () -- C:\windows\PSADMIN.INI
[2008/09/26 18:42:12 | 00,176,235 | ---- | C] () -- C:\windows\System32\Primomonnt.dll
[2008/08/13 15:53:43 | 00,000,116 | ---- | C] () -- C:\windows\NeroDigital.ini
[2008/05/17 18:27:50 | 00,000,997 | ---- | C] () -- C:\windows\Rtcwplat.INI
[2008/05/09 21:17:41 | 00,000,024 | ---- | C] () -- C:\windows\LogonStudio.ini
[2008/05/09 21:06:23 | 00,187,392 | ---- | C] () -- C:\windows\System32\JPGUtils.dll
[2008/05/07 21:19:55 | 00,043,520 | ---- | C] () -- C:\windows\System32\CmdLineExt03.dll
[2008/05/05 14:29:43 | 00,000,376 | ---- | C] () -- C:\windows\ODBC.INI
[2008/05/04 20:39:14 | 00,024,576 | R--- | C] () -- C:\windows\System32\AsIO.dll
[2008/05/04 20:39:14 | 00,012,664 | R--- | C] () -- C:\windows\System32\drivers\AsIO.sys
[2008/05/04 20:27:21 | 00,000,804 | R--- | C] () -- C:\windows\System32\AsusSetup.ini
[2008/05/04 20:27:21 | 00,000,396 | R--- | C] () -- C:\windows\System32\raidmgmt.ini
[2008/05/04 20:25:43 | 00,033,860 | ---- | C] () -- C:\windows\Ascd_tmp.ini
[2008/05/04 20:25:41 | 00,005,810 | R--- | C] () -- C:\windows\System32\drivers\ASACPI.sys
[2008/05/04 20:25:27 | 00,010,288 | ---- | C] () -- C:\windows\System32\drivers\ASUSHWIO.SYS
[2007/04/12 16:44:00 | 01,703,936 | ---- | C] () -- C:\windows\System32\nvwdmcpl.dll
[2007/04/12 16:44:00 | 01,486,848 | ---- | C] () -- C:\windows\System32\nview.dll
[2007/04/12 16:44:00 | 01,019,904 | ---- | C] () -- C:\windows\System32\nvwimg.dll
[2007/04/12 16:44:00 | 00,466,944 | ---- | C] () -- C:\windows\System32\nvshell.dll
[2007/04/12 16:44:00 | 00,286,720 | ---- | C] () -- C:\windows\System32\nvnt4cpl.dll
[2006/11/01 07:54:30 | 00,180,224 | ---- | C] () -- C:\windows\System32\xvidvfw.dll
[2006/11/01 07:52:38 | 00,765,952 | ---- | C] () -- C:\windows\System32\xvidcore.dll
[2006/05/26 14:29:14 | 00,005,120 | ---- | C] () -- C:\windows\System32\ff_vfw.dll
[2006/04/03 13:26:36 | 00,000,547 | ---- | C] () -- C:\windows\System32\ff_vfw.dll.manifest
[2005/03/07 18:54:16 | 04,628,480 | ---- | C] () -- C:\windows\System32\smh-qt-mt333.dll
[2004/08/04 13:00:00 | 00,000,340 | ---- | C] () -- C:\windows\win.ini
[2004/08/04 13:00:00 | 00,000,000 | ---- | C] () -- C:\windows\system.ini
[2003/05/15 07:39:50 | 00,155,136 | ---- | C] () -- C:\windows\System32\unrar.dll
[2002/05/15 05:58:38 | 00,122,880 | ---- | C] () -- C:\windows\System32\v2k2_dec.dll

========== Files - Modified Within 30 Days ==========

[2009/07/16 23:32:56 | 00,317,661 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts
[2009/07/16 23:27:49 | 00,001,374 | ---- | M] () -- C:\windows\System32\wpa.dbl
[2009/07/16 23:26:11 | 00,000,024 | ---- | M] () -- C:\windows\LogonStudio.ini
[2009/07/16 23:26:06 | 00,180,365 | ---- | M] () -- C:\windows\System32\nvapps.xml
[2009/07/16 23:25:32 | 00,000,006 | -H-- | M] () -- C:\windows\tasks\SA.DAT
[2009/07/16 23:25:26 | 00,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2009/07/16 14:00:51 | 00,001,374 | ---- | M] () -- C:\windows\imsins.BAK
[2009/07/14 21:22:23 | 00,000,008 | ---- | M] () -- C:\windows\System32\nvModes.dat
[2009/07/14 14:09:39 | 00,000,340 | ---- | M] () -- C:\windows\win.ini
[2009/07/14 14:09:39 | 00,000,000 | ---- | M] () -- C:\windows\system.ini
[2009/07/09 21:33:26 | 16,158,0979 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\net card driver.zip
[2009/07/08 23:59:25 | 00,187,392 | ---- | M] () -- C:\Documents and Settings\Matt\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/07/07 16:10:56 | 24,539,592 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\MRT.exe
[2009/07/04 23:20:09 | 00,304,160 | ---- | M] () -- C:\PA207.DAT
[2009/07/04 23:16:43 | 00,001,634 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Video Impression 2.lnk
[2009/07/04 15:07:24 | 00,000,444 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\Return to Castle Wolfenstein (Multiplayer).lnk
[2009/07/04 15:07:08 | 00,000,478 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\RTCW (Single Player).lnk
[2009/07/04 15:06:46 | 00,000,853 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\QUAKE ET.lnk
[2009/07/04 14:59:21 | 00,000,567 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\Safecracker.lnk
[2009/07/04 14:59:03 | 00,000,428 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\Wolfenstein - Enemy Territory.lnk
[2009/07/04 14:58:38 | 00,000,578 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\Super Taxi Driver.lnk
[2009/07/04 14:38:35 | 00,001,624 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\Radmin Viewer 3.0.lnk
[2009/07/04 01:38:08 | 00,001,757 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\Outpost Firewall.lnk
[2009/07/04 01:30:11 | 00,316,755 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090716-233256.backup
[2009/07/04 01:25:26 | 00,316,755 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090704-013011.backup
[2009/07/04 01:20:57 | 00,000,940 | ---- | M] () -- C:\Documents and Settings\Matt\Desktop\Spybot - Search & Destroy.lnk
[2009/07/04 01:17:32 | 00,001,716 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Antivirus.lnk
[2009/07/04 01:17:30 | 00,002,626 | ---- | M] () -- C:\windows\System32\CONFIG.NT
[2009/07/03 21:53:28 | 00,001,374 | ---- | M] () -- C:\windows\System32\wpa.bak
[2009/07/03 21:51:12 | 00,513,536 | R--- | M] (OldTimer Tools) -- C:\Documents and Settings\Matt\Desktop\OTL.exe
[2009/07/03 21:50:46 | 00,173,119 | ---- | M] (Eric_71) -- C:\Documents and Settings\Matt\Desktop\Rooter.exe
[2009/07/03 21:29:36 | 00,070,248 | ---- | M] () -- C:\Documents and Settings\Matt\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/07/03 20:44:27 | 00,000,703 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/07/01 22:47:35 | 00,264,616 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2009/06/29 20:36:00 | 00,000,116 | ---- | M] () -- C:\windows\NeroDigital.ini
[2009/06/29 19:46:36 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090704-012526.backup
[2009/06/29 19:35:45 | 00,397,560 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2009/06/29 19:35:45 | 00,059,780 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2009/06/29 19:01:12 | 00,000,223 | -HS- | M] () -- C:\boot.ini
[2009/06/29 18:58:05 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090629-194636.backup
[2009/06/29 18:34:12 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090629-185805.backup
[2009/06/29 18:32:03 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090629-183412.backup
[2009/06/28 23:08:38 | 02,117,782 | -H-- | M] () -- C:\Documents and Settings\Matt\Local Settings\Application Data\IconCache.db
[2009/06/28 21:31:49 | 00,000,000 | ---- | M] () -- C:\windows\nsreg.dat
[2009/06/28 21:31:17 | 00,001,609 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2009/06/28 03:23:31 | 00,000,833 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Express Burn.lnk
[2009/06/27 15:31:46 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090629-183203.backup
[2009/06/26 16:30:08 | 00,307,208 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090627-153146.backup
[2009/06/26 16:26:32 | 00,306,491 | R--- | M] () -- C:\windows\System32\drivers\etc\hosts.20090626-163008.backup
[2009/06/17 11:27:56 | 00,038,160 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbamswissarmy.sys
[2009/06/17 11:27:44 | 00,019,096 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys

========== LOP Check ==========

[2008/05/04 20:49:37 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\Administrator\Application Data
[2008/05/04 20:49:37 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\Administrator.PCWS1\Application Data
[2009/07/16 13:25:58 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\All Users\Application Data
[2009/07/03 20:51:34 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Agnitum
[2008/09/07 00:08:46 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CyberLink
[2008/12/01 18:49:52 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LGMOBILEAX
[2008/06/06 22:04:34 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LogMeIn
[2008/11/02 23:40:27 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
[2008/08/25 14:45:09 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Propellerhead Software
[2009/07/16 13:24:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2008/07/11 00:04:45 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\YAMAHA
[2008/05/04 20:49:37 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\Default User\Application Data
[2009/06/16 01:58:50 | 00,000,000 | -H-D | M] -- C:\Documents and Settings\kyle\Application Data
[2009/02/26 23:28:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kyle\Application Data\Ideazon
[2009/04/22 12:51:00 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kyle\Application Data\LimeWire
[2009/07/04 01:36:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data
[2009/07/04 08:42:16 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\SACore
[2009/07/04 01:36:58 | 00,000,000 | -H-D | M] -- C:\Documents and Settings\Matt\Application Data
[2009/03/15 21:11:24 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\BitTorrent
[2008/11/20 13:11:02 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\CamfrogWEB
[2008/09/26 19:06:47 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2008/09/07 00:09:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\CyberLink
[2009/03/23 23:03:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\DNA
[2008/05/07 20:59:05 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\Ideazon
[2008/05/15 21:15:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\IGN_DLM
[2008/05/12 21:23:16 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\Leadertech
[2009/06/29 18:35:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\LimeWire
[2008/07/10 00:08:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\M-Audio
[2008/11/02 23:43:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\NCH Swift Sound
[2008/08/25 18:33:06 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\Propellerhead Software
[2008/09/28 11:56:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\Quark
[2008/05/07 18:44:38 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\Radmin
[2008/12/29 13:28:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Matt\Application Data\TSO
[2009/06/16 10:52:25 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\mum\Application Data
[2009/06/16 10:46:06 | 00,000,000 | ---D | M] -- C:\Documents and Settings\mum\Application Data\Ideazon
[2008/05/04 20:05:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data
[2004/08/04 13:00:00 | 00,000,065 | RH-- | M] () -- C:\windows\Tasks\desktop.ini
[2009/07/16 23:25:32 | 00,000,006 | -H-- | M] () -- C:\windows\Tasks\SA.DAT

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
< End of report >
Go to the top of the page
 
+Quote Post
Essexboy
post Jul 17 2009, 10:45 AM
Post #4


GeekU Moderator
Group Icon
Posts: 18,766
From: Darkest Cornwall
OS: Vista Ultimate & Windows 7



Wrong log smile.gif But, I will survive - what problems are you experiencing ?

Run OTL.exe
  • Under the Custom Scans/Fixes box at the bottom, paste in the following
    CODE
    :OTL
    PRC - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
    O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll File not found
    O2 - BHO: (no name) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
    O3 - HKU\S-1-5-21-329068152-1960408961-725345543-1003\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
    O8 - Extra context menu item: Download all with Free Download Manager - Reg Error: Value error. File not found
    O8 - Extra context menu item: Download selected with Free Download Manager - Reg Error: Value error. File not found
    O8 - Extra context menu item: Download with Free Download Manager - Reg Error: Value error. File not found
    O33 - MountPoints2\{47231cc8-aa6c-11dd-98fc-001d604b3aea}\Shell\AutoRun\command - "" = N:\umenu.exe -- File not found
    [2009/07/04 23:20:09 | 00,304,160 | ---- | C] () -- C:\PA207.DAT

    :Commands
    [purity]
    [emptytemp]
    [start explorer]
    [Reboot]
  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot when it is done
  • Then post a new OTL2 log ( don't check the boxes beside LOP Check or Purity this time )
Go to the top of the page
 
+Quote Post
Essexboy
post Jul 23 2009, 01:14 PM
Post #5


GeekU Moderator
Group Icon
Posts: 18,766
From: Darkest Cornwall
OS: Vista Ultimate & Windows 7



Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
Go to the top of the page
 
+Quote Post

Closed TopicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 

RSS Time is now: 7th November 2009 - 10:53 PM

Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks mentioned on this page are the property of their respective owners.

© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy | Advertising