Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

MODS: PLEASE CLOSE


  • Please log in to reply

#1
the-icon

the-icon

    Member

  • Member
  • PipPip
  • 34 posts
Hey guys; I'm having another problem.

This time, I have audio ads playing in the background of my computer with no way to find or shut them off. Also, after about 10 minutes or so, the computer freezes and I have to restart. There may be more symptoms, but that's what I've seen in the past few hours.

Oh, and it won't let MBAM run or install.

If you need more information, I will gladly provide it.


Rooter Log:

Rooter.exe (v1.0) by Eric_71
¨
Microsoft Windows XP Home Edition (5.1.2600) Service Pack 3
32_bits - x86 Family 6 Model 15 Stepping 13, GenuineIntel
¨
C:\ [Fixed-NTFS] .. ( Total:465 Go - Free:293 Go )
D:\ [CD_Rom]
E:\ [CD_Rom]
F:\ [CD_Rom]
G:\ [CD_Rom]
H:\ [CD_Rom]
I:\ [Removable]
J:\ [Removable]
¨
Scan : 21:00.47
Path : C:\Documents and Settings\Jennifer\Desktop\Rooter.exe
User : Jennifer ( Administrator -> YES )
¨
----------------------\\ Processes
¨
Locked [System Process] (0)
______ System (4)
______ \SystemRoot\System32\smss.exe (612)
______ \??\C:\WINDOWS\system32\csrss.exe (668)
______ \??\C:\WINDOWS\system32\winlogon.exe (700)
______ C:\WINDOWS\system32\services.exe (744)
______ C:\WINDOWS\system32\lsass.exe (756)
______ C:\WINDOWS\system32\Ati2evxx.exe (936)
______ C:\WINDOWS\system32\svchost.exe (956)
______ C:\WINDOWS\system32\svchost.exe (1172)
______ C:\WINDOWS\System32\svchost.exe (1452)
______ C:\WINDOWS\system32\Ati2evxx.exe (1528)
______ C:\WINDOWS\system32\svchost.exe (1536)
______ C:\WINDOWS\system32\svchost.exe (1708)
______ C:\WINDOWS\System32\svchost.exe (1824)
______ C:\WINDOWS\system32\svchost.exe (1912)
______ C:\WINDOWS\System32\svchost.exe (1928)
______ C:\WINDOWS\system32\spoolsv.exe (188)
______ C:\WINDOWS\System32\SCardSvr.exe (276)
______ C:\WINDOWS\system32\svchost.exe (428)
______ C:\WINDOWS\system32\netdde.exe (456)
______ C:\WINDOWS\system32\msdtc.exe (512)
______ C:\WINDOWS\System32\alg.exe (584)
______ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (596)
______ C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (648)
______ C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe (672)
______ C:\Program Files\Bonjour\mDNSResponder.exe (868)
______ C:\PROGRA~1\AVG\AVG8\avgrsx.exe (1028)
______ C:\PROGRA~1\AVG\AVG8\avgnsx.exe (976)
______ C:\WINDOWS\system32\clipsrv.exe (1056)
______ C:\WINDOWS\system32\dllhost.exe (1140)
______ C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (1348)
______ C:\WINDOWS\System32\svchost.exe (1940)
______ C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (2016)
______ C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (2084)
______ C:\Program Files\Java\jre6\bin\jqs.exe (2116)
______ C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe (2168)
______ C:\WINDOWS\system32\msiexec.exe (2292)
______ C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (2312)
______ C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (2400)
______ C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (2492)
______ C:\WINDOWS\system32\HPZipm12.exe (2520)
______ C:\Program Files\CyberLink\Shared Files\RichVideo.exe (2676)
______ C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (2732)
______ C:\WINDOWS\system32\svchost.exe (2856)
______ C:\WINDOWS\system32\dllhost.exe (2952)
______ C:\WINDOWS\System32\vssvc.exe (3172)
______ C:\WINDOWS\system32\wbem\wmiapsrv.exe (3268)
______ C:\PROGRA~1\AVG\AVG8\avgemc.exe (3348)
______ C:\WINDOWS\System32\dmadmin.exe (3400)
______ C:\Program Files\AVG\AVG8\avgcsrvx.exe (3556)
______ C:\WINDOWS\Explorer.EXE (3044)
______ C:\Program Files\Winamp\winampa.exe (3604)
______ C:\Program Files\Java\jre6\bin\jusched.exe (3612)
______ C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe (3628)
______ C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe (3640)
______ C:\WINDOWS\Logi_MwX.Exe (3564)
______ C:\Program Files\lg_fwupdate\fwupdate.exe (664)
______ C:\Program Files\Microsoft IntelliType Pro\itype.exe (3020)
______ C:\Program Files\iTunes\iTunesHelper.exe (3100)
______ C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (3864)
______ C:\Program Files\Microsoft IntelliPoint\ipoint.exe (3940)
______ C:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe (3324)
______ C:\Program Files\Nero\Nero 7\InCD\InCD.exe (3988)
______ C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (4004)
______ C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe (4028)
______ C:\Program Files\Creative\Shared Files\CamTray.exe (4036)
______ C:\PROGRA~1\AVG\AVG8\avgtray.exe (344)
______ C:\WINDOWS\system32\ctfmon.exe (1152)
______ C:\Program Files\LG Soft India\fortePivot\bin\fortePivot.exe (3908)
______ C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.productivity.tools.base.app.win32_3.5.0.20081031-1700\soffice.exe (1608)
______ C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (4100)
______ C:\Program Files\iPod\bin\iPodService.exe (4564)
______ C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe (4948)
______ C:\Program Files\Java\jre6\bin\jucheck.exe (6060)
______ C:\Documents and Settings\Jennifer\Desktop\Rooter.exe (1340)
¨
----------------------\\ Device\Harddisk0\
¨
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
¨
\Device\Harddisk0\Partition1 --[ MBR ]-- (Start_Offset:32256 | Length:500096991744)
¨
----------------------\\ Scheduled Tasks
¨
C:\WINDOWS\Tasks\desktop.ini
C:\WINDOWS\Tasks\Google Software Updater.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachine.job
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-329068152-861567501-725345543-1004.job
C:\WINDOWS\Tasks\Jon's Music (All).job
C:\WINDOWS\Tasks\SA.DAT
¨
----------------------\\ Registry
¨
¨
----------------------\\ Files & Folders
¨
----------------------\\ Scan completed at 21:00.50
¨
C:\Rooter$\Rooter_3.txt - (15/06/2009 | 21:00.50)

OTLI Log:

OTL logfile created on: 6/15/2009 9:10:57 PM - Run 2
OTL by OldTimer - Version 2.1.1.0 Folder = C:\Documents and Settings\Jennifer\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.00 Gb Total Physical Memory | 1.16 Gb Available Physical Memory | 57.86% Memory free
3.85 Gb Paging File | 3.13 Gb Available in Paging File | 81.43% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 465.75 Gb Total Space | 293.08 Gb Free Space | 62.93% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive J: | 3.73 Gb Total Space | 3.35 Gb Free Space | 89.87% Space Free | Partition Type: FAT32

Computer Name: OMOIKANE
Current User Name: Jennifer
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Output = Minimal
File Age = 30 Days
Company Name Whitelist: On

========== Processes (SafeList) ==========

PRC - C:\WINDOWS\system32\Ati2evxx.exe (ATI Technologies Inc.)
PRC - C:\WINDOWS\system32\Ati2evxx.exe (ATI Technologies Inc.)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
PRC - C:\Program Files\AVG\AVG8\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
PRC - C:\Program Files\AVG\AVG8\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG8\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
PRC - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
PRC - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Nero AG)
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe (Microsoft Corporation)
PRC - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (Nero AG)
PRC - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (Nero AG)
PRC - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
PRC - C:\WINDOWS\system32\HPZipm12.exe (HP)
PRC - C:\Program Files\CyberLink\Shared Files\RichVideo.exe ()
PRC - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
PRC - C:\Program Files\AVG\AVG8\avgemc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG8\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\WINDOWS\Explorer.EXE (Microsoft Corporation)
PRC - C:\Program Files\Winamp\winampa.exe ()
PRC - C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe (Nero AG)
PRC - C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe (Cyberlink Corp.)
PRC - C:\WINDOWS\Logi_MwX.Exe (Logitech Inc.)
PRC - C:\Program Files\lg_fwupdate\fwupdate.exe (BL)
PRC - C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
PRC - C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
PRC - C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
PRC - C:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
PRC - C:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe (Microsoft Corporation)
PRC - C:\Program Files\Nero\Nero 7\InCD\InCD.exe (Nero AG)
PRC - C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (Hewlett-Packard Company)
PRC - C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe (VIA Technologies, Inc.)
PRC - C:\Program Files\Creative\Shared Files\CamTray.exe (Creative Technology Ltd)
PRC - C:\Program Files\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\LG Soft India\fortePivot\bin\fortePivot.exe (LG Soft India)
PRC - C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.productivity.tools.base.app.win32_3.5.0.20081031-1700\soffice.exe ()
PRC - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
PRC - C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
PRC - C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe (Hewlett-Packard Co.)
PRC - C:\Program Files\Java\jre6\bin\jucheck.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Internet Explorer\Iexplore.exe (Microsoft Corporation)
PRC - C:\Program Files\Windows Live\Toolbar\wltuser.exe (Microsoft Corporation)
PRC - C:\WINDOWS\notepad.exe (Microsoft Corporation)
PRC - C:\WINDOWS\notepad.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Documents and Settings\Jennifer\Desktop\OTL.exe (OldTimer Tools)

========== Win32 Services (SafeList) ==========

SRV - (Apple Mobile Device [Auto | Running]) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (aspnet_state [Auto | Running]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (Ati HotKey Poller [Auto | Running]) -- C:\WINDOWS\system32\Ati2evxx.exe (ATI Technologies Inc.)
SRV - (avg8emc [Auto | Running]) -- C:\Program Files\AVG\AVG8\avgemc.exe (AVG Technologies CZ, s.r.o.)
SRV - (avg8wd [Auto | Running]) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (Bonjour Service [Auto | Running]) -- C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (FLEXnet Licensing Service [Auto | Running]) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (fsssvc [On_Demand | Stopped]) -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe (Microsoft Corporation)
SRV - (gupdate1c9b9a54b5ca538 [Auto | Stopped]) -- C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (gusvc [Auto | Stopped]) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (helpsvc [Auto | Running]) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (IDriverT [Auto | Running]) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (InCDsrv [Auto | Running]) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Nero AG)
SRV - (iPod Service [On_Demand | Running]) -- C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
SRV - (JavaQuickStarterService [Auto | Running]) -- C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (MDM [Auto | Running]) -- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe (Microsoft Corporation)
SRV - (NBService [Auto | Running]) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (Nero AG)
SRV - (NeroRegInCDSrv [Auto | Stopped]) -- File not found
SRV - (NMIndexingService [Auto | Running]) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (Nero AG)
SRV - (ose [Auto | Running]) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (Pml Driver HPZ12 [Auto | Running]) -- C:\WINDOWS\system32\HPZipm12.exe (HP)
SRV - (RichVideo [Auto | Running]) -- C:\Program Files\CyberLink\Shared Files\RichVideo.exe ()
SRV - (SeaPort [Auto | Running]) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)

========== Driver Services (SafeList) ==========

DRV - (ati2mtag [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\ati2mtag.sys (ATI Technologies Inc.)
DRV - (AvgLdx86 [System | Running]) -- C:\WINDOWS\System32\Drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgMfx86 [System | Running]) -- C:\WINDOWS\System32\Drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AvgTdiX [System | Running]) -- C:\WINDOWS\System32\Drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
DRV - (fssfltr [Auto | Running]) -- C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys (Microsoft Corporation)
DRV - (GEARAspiWDM [On_Demand | Running]) -- C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (HdAudAddService [On_Demand | Running]) -- C:\WINDOWS\system32\drivers\AtiHdAud.sys (ATI Research Inc.)
DRV - (HDAudBus [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\HDAudBus.sys (Windows ® Server 2003 DDK provider)
DRV - (HPZid412 [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\HPZid412.sys (HP)
DRV - (HPZipr12 [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\HPZipr12.sys (HP)
DRV - (HPZius12 [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\HPZius12.sys (HP)
DRV - (InCDfs [Disabled | Running]) -- C:\WINDOWS\system32\drivers\InCDFs.sys (Nero AG)
DRV - (InCDPass [System | Running]) -- C:\WINDOWS\system32\drivers\InCDPass.sys (Nero AG)
DRV - (incdrm [System | Running]) -- C:\WINDOWS\system32\drivers\InCDRm.sys (Nero AG)
DRV - (L1e [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\l1e51x86.sys (Atheros Communications, Inc.)
DRV - (L8042pr2 [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\L8042pr2.Sys (Logitech, Inc.)
DRV - (LHidFlt2 [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\LHidFlt2.Sys (Logitech, Inc.)
DRV - (LHidUsb [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\LHidUsb.Sys (Logitech, Inc.)
DRV - (LMouFlt2 [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\LMouFlt2.Sys (Logitech, Inc.)
DRV - (monfilt [On_Demand | Running]) -- C:\WINDOWS\system32\drivers\monfilt.sys (Creative Technology Ltd.)
DRV - (MTsensor [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\ASACPI.sys ()
DRV - (P1130VID [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\P1130Vid.sys (Creative Technology Ltd.)
DRV - (pavboot [Boot | Running]) -- C:\WINDOWS\system32\drivers\pavboot.sys (Panda Security, S.L.)
DRV - (Point32 [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\point32.sys (Microsoft Corporation)
DRV - (Ptilink [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (PxHelp20 [Boot | Running]) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (Secdrv [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (sptd [Boot | Running]) -- C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (USBAAPL [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\usbaapl.sys (Apple, Inc.)
DRV - (VIAHdAudAddService [On_Demand | Running]) -- C:\WINDOWS\system32\drivers\viahduaa.sys (VIA Technologies, Inc.)

========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft...p...ER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn...st/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn...st/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...amp;ar=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: {0538E3E3-7E9B-4d49-8831-A227C80A7AD3}:0.9.9
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: {AE93811A-5C9A-4d34-8462-F7B864FC4696}:3.29
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.11
FF - prefs.js..extensions.enabledItems: {d596c130-b00a-11db-abbd-0800200c9a66}:2.080708
FF - prefs.js..extensions.enabledItems: [email protected]:0.2.11.2

FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\PROGRAM FILES\AVG\AVG8\FIREFOX [2009/05/04 20:51:28 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2009/05/06 13:19:03 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS [2009/06/12 13:16:29 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS [2009/06/12 13:16:29 | 00,000,000 | ---D | M]

[2009/05/21 00:11:23 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jennifer\Application Data\mozilla\Extensions
[2009/05/21 00:11:23 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jennifer\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/06/13 12:30:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jennifer\Application Data\mozilla\Firefox\Profiles\rs9gr81m.default\extensions
[2009/06/08 14:42:25 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jennifer\Application Data\mozilla\Firefox\Profiles\rs9gr81m.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
[2009/06/07 21:17:23 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jennifer\Application Data\mozilla\Firefox\Profiles\rs9gr81m.default\extensions\{AE93811A-5C9A-4d34-8462-F7B864FC4696}
[2009/06/06 22:51:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jennifer\Application Data\mozilla\Firefox\Profiles\rs9gr81m.default\extensions\{d596c130-b00a-11db-abbd-0800200c9a66}
[2009/06/06 22:50:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jennifer\Application Data\mozilla\Firefox\Profiles\rs9gr81m.default\extensions\[email protected]
[2009/06/06 22:51:01 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jennifer\Application Data\mozilla\Firefox\Profiles\rs9gr81m.default\extensions\[email protected]\chrome\mozapps\extensions
[2009/06/15 13:05:33 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/06/12 13:16:29 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/06/12 13:16:22 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/06/12 13:16:23 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009/04/23 20:39:08 | 00,001,394 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom.xml
[2009/04/23 20:39:08 | 00,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml
[2009/04/23 20:39:08 | 00,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml
[2009/04/23 20:39:08 | 00,002,343 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay.xml
[2009/04/23 20:39:08 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2009/04/23 20:39:08 | 00,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
[2009/04/23 20:39:08 | 00,000,792 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo.xml

O1 HOSTS File: (27 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - Reg Error: Key error. File not found
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Creative WebCam Tray] C:\Program Files\Creative\Shared Files\CamTray.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1 (VIA Technologies, Inc.)
O4 - HKLM..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" (Hewlett-Packard Company)
O4 - HKLM..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe (Nero AG)
O4 - HKLM..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe" (Microsoft Corporation)
O4 - HKLM..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup (InstallShield Software Corporation)
O4 - HKLM..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start (InstallShield Software Corporation)
O4 - HKLM..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" (Apple Inc.)
O4 - HKLM..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe" (Microsoft Corporation)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" ()
O4 - HKLM..\Run: [LGODDFU] "C:\Program Files\lg_fwupdate\fwupdate.exe" blrun (BL)
O4 - HKLM..\Run: [Logitech Utility] Logi_MwX.Exe (Logitech Inc.)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [net] "C:\WINDOWS\system32\net.net" File not found
O4 - HKLM..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime (Apple Inc.)
O4 - HKLM..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" (Cyberlink Corp.)
O4 - HKLM..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe (Nero AG)
O4 - HKLM..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe" ()
O4 - HKCU..\Run: [Google Update] "C:\Documents and Settings\Jennifer\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c (Google Inc.)
O4 - HKCU..\Run: [SODCPreLoad] C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.productivity.tools.base.app.win32_3.5.0.20081031-1700\preload.exe C:\DOCUME~1\Jennifer\IBM\Lotus\Symphony\.sodc\ ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\fortePivot.lnk = C:\Program Files\LG Soft India\fortePivot\bin\fortePivot.exe (LG Soft India)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe (Hewlett-Packard Co.)
O4 - Startup: C:\Documents and Settings\Jennifer\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 File not found
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [mdnsNSP] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKLM\..Trusted Domains: antimalwareguard.com ([]* in Trusted sites)
O15 - HKLM\..Trusted Domains: gomyhit.com ([]* in Trusted sites)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKCU\..Trusted Domains: antimalwareguard.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: aol.com ([free] http in Trusted sites)
O15 - HKCU\..Trusted Domains: gomyhit.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: 2 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} http://acs.pandasoft...s/as2stubie.cab (ActiveScan 2.0 Installer Class)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.micr...78f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} https://h20436.www2....re/HPDEXAXO.cab (HP Download Manager)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.ma...ash/swflash.cab (Shockwave Flash Object)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\system32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/08/26 12:17:41 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - * [2009/06/15 21:10:51 | 00,000,000 | ---D | M]

========== Files/Folders - Created Within 30 Days ==========

[2009/06/15 20:54:45 | 00,000,000 | ---D | C] -- C:\Rooter$
[2009/06/15 20:53:23 | 00,000,767 | ---- | C] () -- C:\Documents and Settings\Jennifer\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
[2009/06/15 20:53:20 | 00,000,611 | ---- | C] () -- C:\Documents and Settings\Jennifer\Desktop\NTREGOPT.lnk
[2009/06/15 20:53:20 | 00,000,592 | ---- | C] () -- C:\Documents and Settings\Jennifer\Desktop\ERUNT.lnk
[2009/06/15 16:53:45 | 00,501,760 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jennifer\Desktop\OTL.exe
[2009/06/15 16:53:39 | 00,170,029 | ---- | C] (Eric_71) -- C:\Documents and Settings\Jennifer\Desktop\Rooter.exe
[2009/06/15 16:53:03 | 03,371,376 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Jennifer\Desktop\mbam-setup.exe
[2009/06/15 16:52:51 | 00,791,393 | ---- | C] (Lars Hederer ) -- C:\Documents and Settings\Jennifer\Desktop\erunt_setup.exe
[2009/06/15 16:52:36 | 00,021,504 | ---- | C] (Doug Knox) -- C:\Documents and Settings\Jennifer\Desktop\SysRestorePoint.exe
[2009/06/15 16:51:41 | 00,264,704 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jennifer\Desktop\TFC.exe
[2009/06/15 16:45:17 | 00,001,808 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[2009/06/15 16:45:17 | 00,001,669 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\fortePivot.lnk
[2009/06/15 16:45:17 | 00,000,798 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Image Zone Fast Start.lnk
[2009/06/15 00:15:33 | 00,000,955 | ---- | C] () -- C:\Documents and Settings\Jennifer\Desktop\Spybot - Search & Destroy (for blind users).lnk
[2009/06/15 00:15:33 | 00,000,933 | ---- | C] () -- C:\Documents and Settings\Jennifer\Desktop\Spybot - Search & Destroy.lnk
[2009/06/15 00:14:30 | 16,409,960 | ---- | C] (Safer Networking Limited ) -- C:\Documents and Settings\Jennifer\Desktop\spybotsd162.exe
[2009/06/15 00:08:13 | 00,001,866 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\MalwareRemovalBot.lnk
[2009/06/15 00:07:55 | 06,129,610 | ---- | C] () -- C:\Documents and Settings\Jennifer\Desktop\setupxv.exe
[2009/06/10 10:59:41 | 00,361,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\TCPIP.SYS.ORIGINAL
[2009/06/10 10:55:19 | 00,000,077 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Homepage.url
[2009/06/08 12:45:42 | 00,048,118 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\thug-aim.jpg
[2009/06/07 23:45:15 | 00,197,070 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\veep.swf
[2009/06/06 22:40:01 | 00,021,885 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\bookmarks.html
[2009/06/05 13:45:17 | 00,178,357 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Untitled-3.png
[2009/06/03 21:42:36 | 00,466,943 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\EFG.png
[2009/06/03 21:26:01 | 00,482,945 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\HHG.png
[2009/06/03 21:24:00 | 00,519,847 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\fA copy.png
[2009/06/03 21:17:55 | 01,739,272 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\fA.psd
[2009/06/03 18:11:09 | 01,873,192 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\HHG.psd
[2009/06/03 17:53:52 | 00,042,160 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Caslon-Antique-Italic.ttf
[2009/06/03 17:52:24 | 00,076,020 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Windlass.ttf
[2009/06/03 17:51:38 | 00,031,412 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Caslon-Antique-Italic.zip.zip
[2009/06/03 17:50:40 | 00,048,348 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Windlass.zip.zip
[2009/06/03 17:25:40 | 00,010,166 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\workout.m3u
[2009/06/01 11:44:31 | 00,579,186 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\lol.png
[2009/05/29 19:45:01 | 00,004,450 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\pipe1.gif
[2009/05/29 19:39:47 | 00,004,894 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\pipe2.gif
[2009/05/29 18:38:34 | 00,042,288 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\pipe2.psd
[2009/05/29 18:36:21 | 00,039,052 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\pipe1.psd
[2009/05/29 17:56:55 | 00,021,548 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\portal.psd
[2009/05/29 13:21:43 | 00,257,178 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Banjofight-ringtone.wav
[2009/05/28 03:01:00 | 00,001,084 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\vogue.gif
[2009/05/28 02:41:58 | 00,025,372 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\vogue.psd
[2009/05/28 00:52:36 | 00,007,958 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\mom & dad's 25th.odt
[2009/05/27 21:30:28 | 00,003,919 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\macattack.gif
[2009/05/27 20:53:02 | 00,069,240 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\macattack.psd
[2009/05/27 20:01:26 | 00,010,785 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\electrocute.gif
[2009/05/27 19:47:44 | 00,086,452 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\_lightning_helix__by_the_icon.psd
[2009/05/27 17:29:34 | 00,336,867 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\electrocute.psd
[2009/05/27 11:19:50 | 02,570,216 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\mtg_gamepack.exe
[2009/05/27 11:18:43 | 00,000,715 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Magic Workstation.lnk
[2009/05/27 11:18:43 | 00,000,668 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\MWS Online Play.lnk
[2009/05/27 11:18:36 | 00,000,000 | ---D | C] -- C:\Program Files\Magic Workstation
[2009/05/27 11:18:12 | 09,690,219 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\mws094f.exe
[2009/05/26 00:14:04 | 00,008,382 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\bread.odt
[2009/05/25 11:22:23 | 00,006,576 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\machine gun.odt
[2009/05/25 11:10:54 | 00,002,527 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Rosetta Stone.lnk
[2009/05/24 23:46:09 | 00,092,454 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Untitled-3.gif
[2009/05/24 23:43:14 | 00,861,258 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Untitled-3.psd
[2009/05/24 22:52:22 | 00,508,392 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\id.psd
[2009/05/24 22:38:12 | 00,006,788 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\spiral_animation.gif
[2009/05/24 21:51:19 | 00,002,735 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\the-icon.gif
[2009/05/24 21:44:38 | 00,007,333 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\avatar copy.png
[2009/05/24 20:54:25 | 00,168,476 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\avatar.psd
[2009/05/24 20:43:09 | 00,005,598 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\lit-tag copy.png
[2009/05/24 20:18:58 | 00,175,562 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\lit-tag.psd
[2009/05/24 19:34:16 | 00,006,509 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\web.odt
[2009/05/24 02:43:15 | 00,000,484 | ---- | C] () -- C:\WINDOWS\tasks\Jon's Music (All).job
[2009/05/23 17:58:35 | 00,008,686 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\herbs.odt
[2009/05/23 13:07:28 | 00,375,498 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Window_by_Kittyd_Stock.jpg
[2009/05/23 12:36:30 | 00,036,177 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\_An_open_window___by_the_icon.jpg
[2009/05/23 03:44:52 | 00,050,322 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Untitled-1 copy.png
[2009/05/23 03:42:12 | 04,642,616 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\aUntitled-1.psd
[2009/05/23 03:16:19 | 00,428,563 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Epic_Munchkin.pdf
[2009/05/23 02:27:36 | 00,008,370 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\window.odt
[2009/05/22 13:42:05 | 00,867,929 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\pirate.png
[2009/05/21 00:11:17 | 00,001,614 | ---- | C] () -- C:\Documents and Settings\Jennifer\Desktop\Mozilla Firefox.lnk
[2009/05/21 00:11:17 | 00,001,602 | ---- | C] () -- C:\Documents and Settings\Jennifer\My Documents\Mozilla Firefox.lnk
[2009/05/21 00:11:14 | 00,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2009/05/21 00:10:31 | 07,526,856 | ---- | C] (Mozilla) -- C:\Documents and Settings\Jennifer\My Documents\Firefox Setup 3.0.10.exe
[2009/05/21 00:09:40 | 03,338,496 | ---- | C] (Unity Technologies ApS) -- C:\Documents and Settings\Jennifer\My Documents\UnityWebPlayer (1).exe
[2009/05/21 00:07:18 | 00,000,000 | ---D | C] -- C:\Program Files\Unity
[2009/05/19 10:38:05 | 00,081,408 | -HS- | C] () -- C:\Documents and Settings\Jennifer\Desktop\Thumbs.db
[2009/01/26 00:09:04 | 00,000,785 | ---- | C] () -- C:\WINDOWS\entpack.ini
[2008/09/17 20:41:22 | 00,042,320 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll
[2008/09/05 11:35:58 | 00,000,287 | ---- | C] () -- C:\WINDOWS\SIERRA.INI
[2008/08/31 19:25:47 | 00,717,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2008/08/27 17:37:47 | 00,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008/08/26 15:09:02 | 00,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008/08/26 14:18:27 | 00,000,265 | ---- | C] () -- C:\WINDOWS\lgfwup.ini
[2008/08/26 12:23:33 | 00,012,075 | ---- | C] () -- C:\WINDOWS\Ascd_log.ini
[2008/08/26 12:23:22 | 00,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2008/08/26 12:23:21 | 00,011,832 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2008/08/26 12:23:13 | 00,012,536 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2008/08/05 18:02:12 | 03,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2008/08/05 17:59:04 | 00,000,416 | ---- | C] () -- C:\WINDOWS\System32\dtu100.dll.manifest
[2008/08/05 17:59:04 | 00,000,416 | ---- | C] () -- C:\WINDOWS\System32\dpl100.dll.manifest
[2008/08/05 17:58:14 | 00,012,288 | ---- | C] () -- C:\WINDOWS\System32\DivXWMPExtType.dll
[2006/02/28 08:00:00 | 00,002,048 | ---- | C] () -- C:\WINDOWS\System32\syscvchk.dll
[2006/02/28 08:00:00 | 00,000,661 | ---- | C] () -- C:\WINDOWS\win.ini
[2006/02/28 08:00:00 | 00,000,227 | ---- | C] () -- C:\WINDOWS\system.ini

========== Files - Modified Within 30 Days ==========

[2009/06/15 20:53:23 | 00,000,767 | ---- | M] () -- C:\Documents and Settings\Jennifer\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
[2009/06/15 20:53:20 | 00,000,611 | ---- | M] () -- C:\Documents and Settings\Jennifer\Desktop\NTREGOPT.lnk
[2009/06/15 20:53:20 | 00,000,592 | ---- | M] () -- C:\Documents and Settings\Jennifer\Desktop\ERUNT.lnk
[2009/06/15 20:53:02 | 00,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2009/06/15 20:51:52 | 00,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[2009/06/15 20:51:44 | 00,000,265 | ---- | M] () -- C:\WINDOWS\lgfwup.ini
[2009/06/15 20:51:35 | 00,000,062 | -HS- | M] () -- C:\Documents and Settings\Jennifer\Local Settings\desktop.ini
[2009/06/15 20:50:06 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/06/15 20:50:03 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/06/15 19:30:25 | 00,000,938 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-861567501-725345543-1004.job
[2009/06/15 18:05:17 | 37,139,497 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2009/06/15 18:05:17 | 00,077,549 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\microavi.avg
[2009/06/15 16:53:45 | 00,501,760 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jennifer\Desktop\OTL.exe
[2009/06/15 16:53:39 | 00,170,029 | ---- | M] (Eric_71) -- C:\Documents and Settings\Jennifer\Desktop\Rooter.exe
[2009/06/15 16:53:06 | 03,371,376 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Jennifer\Desktop\mbam-setup.exe
[2009/06/15 16:52:51 | 00,791,393 | ---- | M] (Lars Hederer ) -- C:\Documents and Settings\Jennifer\Desktop\erunt_setup.exe
[2009/06/15 16:52:37 | 00,021,504 | ---- | M] (Doug Knox) -- C:\Documents and Settings\Jennifer\Desktop\SysRestorePoint.exe
[2009/06/15 16:51:41 | 00,264,704 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jennifer\Desktop\TFC.exe
[2009/06/15 16:46:59 | 00,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/06/15 16:44:38 | 00,000,661 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/06/15 16:44:38 | 00,000,281 | RHS- | M] () -- C:\boot.ini
[2009/06/15 16:44:38 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2009/06/15 00:15:33 | 00,000,955 | ---- | M] () -- C:\Documents and Settings\Jennifer\Desktop\Spybot - Search & Destroy (for blind users).lnk
[2009/06/15 00:15:33 | 00,000,933 | ---- | M] () -- C:\Documents and Settings\Jennifer\Desktop\Spybot - Search & Destroy.lnk
[2009/06/15 00:14:45 | 16,409,960 | ---- | M] (Safer Networking Limited ) -- C:\Documents and Settings\Jennifer\Desktop\spybotsd162.exe
[2009/06/15 00:08:13 | 00,001,866 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\MalwareRemovalBot.lnk
[2009/06/15 00:08:01 | 06,129,610 | ---- | M] () -- C:\Documents and Settings\Jennifer\Desktop\setupxv.exe
[2009/06/14 23:52:12 | 00,068,964 | ---- | M] () -- C:\WINDOWS\hpoins05.dat
[2009/06/10 21:28:15 | 00,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2009/06/10 20:51:53 | 01,590,856 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/06/10 20:49:47 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009/06/10 10:59:42 | 00,361,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\TCPIP.SYS
[2009/06/10 10:59:42 | 00,361,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\TCPIP.SYS
[2009/06/10 10:59:41 | 00,361,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\TCPIP.SYS.ORIGINAL
[2009/06/09 19:42:25 | 00,536,576 | -HS- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Thumbs.db
[2009/06/08 12:45:43 | 00,048,118 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\thug-aim.jpg
[2009/06/07 23:45:16 | 00,197,070 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\veep.swf
[2009/06/06 22:40:01 | 00,021,885 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\bookmarks.html
[2009/06/05 13:48:22 | 00,178,357 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Untitled-3.png
[2009/06/03 21:42:38 | 00,466,943 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\EFG.png
[2009/06/03 21:28:08 | 00,482,945 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\HHG.png
[2009/06/03 21:24:01 | 00,519,847 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\fA copy.png
[2009/06/03 21:17:57 | 01,739,272 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\fA.psd
[2009/06/03 18:20:16 | 01,873,192 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\HHG.psd
[2009/06/03 17:51:38 | 00,031,412 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Caslon-Antique-Italic.zip.zip
[2009/06/03 17:50:41 | 00,048,348 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Windlass.zip.zip
[2009/06/03 17:25:40 | 00,010,166 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\workout.m3u
[2009/06/02 23:10:33 | 00,000,484 | ---- | M] () -- C:\WINDOWS\tasks\Jon's Music (All).job
[2009/06/01 12:51:12 | 23,635,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe
[2009/06/01 11:44:34 | 00,579,186 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\lol.png
[2009/05/29 19:47:37 | 00,039,052 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\pipe1.psd
[2009/05/29 19:47:34 | 00,042,288 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\pipe2.psd
[2009/05/29 19:45:01 | 00,004,450 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\pipe1.gif
[2009/05/29 19:39:47 | 00,004,894 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\pipe2.gif
[2009/05/29 18:22:49 | 00,021,548 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\portal.psd
[2009/05/29 13:21:44 | 00,257,178 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Banjofight-ringtone.wav
[2009/05/28 03:01:01 | 00,001,084 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\vogue.gif
[2009/05/28 02:42:00 | 00,025,372 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\vogue.psd
[2009/05/28 02:17:44 | 00,007,958 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\mom & dad's 25th.odt
[2009/05/27 22:02:01 | 00,069,240 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\macattack.psd
[2009/05/27 21:30:28 | 00,003,919 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\macattack.gif
[2009/05/27 20:11:40 | 00,336,867 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\electrocute.psd
[2009/05/27 20:01:26 | 00,010,785 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\electrocute.gif
[2009/05/27 19:47:45 | 00,086,452 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\_lightning_helix__by_the_icon.psd
[2009/05/27 11:19:57 | 02,570,216 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\mtg_gamepack.exe
[2009/05/27 11:18:43 | 00,000,715 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Magic Workstation.lnk
[2009/05/27 11:18:43 | 00,000,668 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\MWS Online Play.lnk
[2009/05/27 11:18:12 | 09,690,219 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\mws094f.exe
[2009/05/26 21:18:00 | 00,006,576 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\machine gun.odt
[2009/05/26 15:07:22 | 00,008,382 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\bread.odt
[2009/05/25 11:10:54 | 00,002,527 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Rosetta Stone.lnk
[2009/05/24 23:46:09 | 00,092,454 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Untitled-3.gif
[2009/05/24 23:45:32 | 00,861,258 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Untitled-3.psd
[2009/05/24 22:52:23 | 00,508,392 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\id.psd
[2009/05/24 22:38:12 | 00,006,788 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\spiral_animation.gif
[2009/05/24 21:54:19 | 00,168,476 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\avatar.psd
[2009/05/24 21:51:20 | 00,002,735 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\the-icon.gif
[2009/05/24 21:50:52 | 00,007,333 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\avatar copy.png
[2009/05/24 20:44:58 | 00,005,598 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\lit-tag copy.png
[2009/05/24 20:39:35 | 00,175,562 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\lit-tag.psd
[2009/05/24 19:34:16 | 00,006,509 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\web.odt
[2009/05/24 14:37:06 | 00,008,686 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\herbs.odt
[2009/05/23 14:07:59 | 00,008,370 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\window.odt
[2009/05/23 13:26:00 | 00,050,322 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Untitled-1 copy.png
[2009/05/23 13:07:28 | 00,375,498 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Window_by_Kittyd_Stock.jpg
[2009/05/23 12:36:31 | 00,036,177 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\_An_open_window___by_the_icon.jpg
[2009/05/23 03:42:14 | 04,642,616 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\aUntitled-1.psd
[2009/05/23 03:16:19 | 00,428,563 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Epic_Munchkin.pdf
[2009/05/22 13:42:24 | 00,867,929 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\pirate.png
[2009/05/21 00:11:17 | 00,001,614 | ---- | M] () -- C:\Documents and Settings\Jennifer\Desktop\Mozilla Firefox.lnk
[2009/05/21 00:11:17 | 00,001,602 | ---- | M] () -- C:\Documents and Settings\Jennifer\My Documents\Mozilla Firefox.lnk
[2009/05/21 00:10:51 | 07,526,856 | ---- | M] (Mozilla) -- C:\Documents and Settings\Jennifer\My Documents\Firefox Setup 3.0.10.exe
[2009/05/21 00:09:40 | 03,338,496 | ---- | M] (Unity Technologies ApS) -- C:\Documents and Settings\Jennifer\My Documents\UnityWebPlayer (1).exe
[2009/05/19 16:44:52 | 00,081,408 | -HS- | M] () -- C:\Documents and Settings\Jennifer\Desktop\Thumbs.db
< End of report >

Edited by the-icon, 18 June 2009 - 05:49 AM.

  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP