The exact text is:
Connection interrupted
the document contains no data
the network link was interrupted while negotiating a connection. Please try again later.
I am also unable to connect the website using Internet Explorer.
I would really appreciate your help as this is getting so infuriating.
I have seen the same problem mentioned many times in Google but can't find a
solution at the moment
MBAM Log
Malwarebytes' Anti-Malware 1.38
Database version: 2340
Windows 5.1.2600 Service Pack 3
27/06/2009 07:57:13
mbam-log-2009-06-27 (07-57-13).txt
Scan type: Quick Scan
Objects scanned: 98751
Time elapsed: 5 minute(s), 47 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\documents and settings\denise\desktop\Install_2001-19.exe (Rogue.Installer) -> Quarantined and deleted successfully.
-----------------
OTL log
OTL logfile created on: 27/06/2009 09:42:17 - Run 1
OTL by OldTimer - Version 3.0.5.3 Folder = C:\Documents and Settings\Denise\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
2.00 Gb Total Physical Memory | 1.15 Gb Available Physical Memory | 57.49% Memory free
3.85 Gb Paging File | 3.07 Gb Available in Paging File | 79.80% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232.82 Gb Total Space | 152.05 Gb Free Space | 65.31% Space Free | Partition Type: NTFS
Drive D: | 586.40 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
Drive F: | 232.88 Gb Total Space | 162.55 Gb Free Space | 69.80% Space Free | Partition Type: NTFS
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: BUBBLES
Current User Name: Denise
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - C:\WINDOWS\System32\Ati2evxx.exe (ATI Technologies Inc.)
PRC - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
PRC - C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe ()
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
PRC - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
PRC - C:\Program Files\Citrix\GoToMyPC\g2svc.exe (Citrix Online, a division of Citrix Systems, Inc.)
PRC - C:\Program Files\Citrix\GoToMyPC\g2comm.exe (Citrix Online, a division of Citrix Systems, Inc.)
PRC - C:\Program Files\Citrix\GoToMyPC\g2pre.exe (Citrix Online, a division of Citrix Systems, Inc.)
PRC - C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
PRC - C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
PRC - C:\WINDOWS\System32\HPZipm12.exe (HP)
PRC - C:\Program Files\Citrix\GoToMyPC\g2tray.exe (Citrix Online, a division of Citrix Systems, Inc.)
PRC - C:\Program Files\SoSure Backup\configservice.exe ()
PRC - C:\WINDOWS\System32\wdfmgr.exe (Microsoft Corporation)
PRC - C:\Program Files\Xobni\XobniService.exe (Xobni Corporation)
PRC - C:\Program Files\Canon\CAL\CALMAIN.exe (Canon Inc.)
PRC - C:\Program Files\SoSure Backup\licenseservice.exe (SPAMfighter)
PRC - C:\Program Files\SoSure Backup\updateservice.exe (SPAMfighter)
PRC - C:\WINDOWS\Explorer.EXE (Microsoft Corporation)
PRC - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
PRC - C:\WINDOWS\System32\CTHELPER.EXE (Creative Technology Ltd)
PRC - C:\WINDOWS\System32\CTXFIHLP.EXE (Creative Technology Ltd)
PRC - C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (Hewlett-Packard Development Company, L.P.)
PRC - C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
PRC - C:\WINDOWS\System32\CTXFISPI.EXE (Creative Technology Ltd)
PRC - C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
PRC - C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
PRC - C:\Program Files\Logitech\QuickCam\Quickcam.exe ()
PRC - C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
PRC - C:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
PRC - C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
PRC - C:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe (Microsoft Corporation)
PRC - C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe (Nuance Communications, Inc.)
PRC - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
PRC - C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe (Adobe Systems Incorporated)
PRC - C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe (Google)
PRC - C:\Documents and Settings\Denise\Local Settings\Application Data\Google\Update\GoogleUpdate.exe (Google Inc.)
PRC - C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe ()
PRC - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
PRC - C:\Program Files\Wakoopa\Wakoopa.exe (Wakoopa)
PRC - C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
PRC - C:\Program Files\Google\Google Desktop Search\GoogleDesktopDisplay.exe (Google)
PRC - C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
PRC - C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe (Google)
PRC - C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit UK)
PRC - C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)
PRC - C:\Program Files\Nuance\NaturallySpeaking10\Program\natspeak.exe (Nuance Communications, Inc.)
PRC - C:\Program Files\Evernote\Evernote3\EvernoteTray.exe (Evernote Corporation)
PRC - C:\Program Files\Texter\texter.exe ()
PRC - C:\Program Files\Skype\Plugin Manager\skypePM.exe (Skype Technologies)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Documents and Settings\Denise\Desktop\OTL.exe (OldTimer Tools)
========== Win32 Services (SafeList) ==========
SRV - (Adobe Version Cue CS4 [On_Demand | Stopped]) -- C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe (Adobe Systems Incorporated)
SRV - (AdobeActiveFileMonitor4.0 [Auto | Running]) -- C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe ()
SRV - (Apple Mobile Device [Auto | Running]) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (aspnet_state [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (aswUpdSv [Auto | Running]) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
SRV - (Ati HotKey Poller [Auto | Running]) -- C:\WINDOWS\System32\Ati2evxx.exe (ATI Technologies Inc.)
SRV - (ATI Smart [Auto | Stopped]) -- C:\WINDOWS\System32\ati2sgag.exe ()
SRV - (avast! Antivirus [Auto | Running]) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
SRV - (avast! Mail Scanner [On_Demand | Running]) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
SRV - (avast! Web Scanner [On_Demand | Running]) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
SRV - (Bonjour Service [Auto | Running]) -- C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (CCALib8 [Auto | Running]) -- C:\Program Files\Canon\CAL\CALMAIN.exe (Canon Inc.)
SRV - (clr_optimization_v2.0.50727_32 [Auto | Running]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (FilePathsrv [Auto | Stopped]) -- C:\WINDOWS\System32\FilePathsrv.exe (IBM Corporation)
SRV - (FLEXnet Licensing Service [On_Demand | Stopped]) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (FontCache3.0.0.0 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (GoogleDesktopManager [On_Demand | Stopped]) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe (Google)
SRV - (GoToAssist Express Customer [On_Demand | Stopped]) -- C:\Program Files\Citrix\GoToAssist Express Customer\152\g2ax_service.exe (Citrix Online, a division of Citrix Systems, Inc.)
SRV - (GoToMyPC [Auto | Running]) -- C:\Program Files\Citrix\GoToMyPC\g2svc.exe (Citrix Online, a division of Citrix Systems, Inc.)
SRV - (gupdate1c9e675bcdd159c [Auto | Stopped]) -- C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (gusvc [Auto | Stopped]) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (helpsvc [Auto | Running]) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (IDriverT [On_Demand | Stopped]) -- C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (idsvc [Unknown | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation)
SRV - (iPod Service [On_Demand | Stopped]) -- C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
SRV - (JavaQuickStarterService [Auto | Running]) -- C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (LVPrcSrv [Auto | Running]) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV - (NetTcpPortSharing [Disabled | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (odserv [On_Demand | Stopped]) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (ose [On_Demand | Stopped]) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (Pml Driver HPZ12 [Unknown | Running]) -- C:\WINDOWS\System32\HPZipm12.exe (HP)
SRV - (PTK License-SOSURE BACKUP-939981086 [Auto | Running]) -- C:\Program Files\SoSure Backup\licenseservice.exe (SPAMfighter)
SRV - (PTK Live Update-SOSURE BACKUP-939981086 [Auto | Running]) -- C:\Program Files\SoSure Backup\updateservice.exe (SPAMfighter)
SRV - (PTK SharedAccess-SOSURE BACKUP-939981086 [Auto | Running]) -- C:\Program Files\SoSure Backup\configservice.exe ()
SRV - (QBCFMonitorService [Disabled | Stopped]) -- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe (Intuit)
SRV - (QBFCService [On_Demand | Stopped]) -- C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe (Intuit Inc.)
SRV - (UMWdf [Auto | Running]) -- C:\WINDOWS\System32\wdfmgr.exe (Microsoft Corporation)
SRV - (XobniService [Auto | Running]) -- C:\Program Files\Xobni\XobniService.exe (Xobni Corporation)
========== Driver Services (SafeList) ==========
DRV - (Aavmker4 [System | Running]) -- C:\WINDOWS\System32\drivers\aavmker4.sys (ALWIL Software)
DRV - (adfs [Auto | Running]) -- C:\WINDOWS\System32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (aggampax [System | Running]) -- C:\WINDOWS\system32\drivers\aggampax.sys ()
DRV - (aswFsBlk [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\aswFsBlk.sys (ALWIL Software)
DRV - (aswMon2 [Auto | Running]) -- C:\WINDOWS\System32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswRdr [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswSP [System | Running]) -- C:\WINDOWS\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswTdi [System | Running]) -- C:\WINDOWS\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (ati2mtag [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\ati2mtag.sys (ATI Technologies Inc.)
DRV - (cercsr6 [Boot | Stopped]) -- C:\WINDOWS\System32\drivers\cercsr6.sys (Adaptec, Inc.)
DRV - (ctac32k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctac32k.sys (Creative Technology Ltd)
DRV - (ctaud2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctaud2k.sys (Creative Technology Ltd)
DRV - (ctprxy2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctprxy2k.sys (Creative Technology Ltd)
DRV - (ctsfm2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctsfm2k.sys (Creative Technology Ltd)
DRV - (e1express [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\e1e5132.sys (Intel Corporation)
DRV - (emupia [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\emupia2k.sys (Creative Technology Ltd)
DRV - (FilePath [System | Running]) -- C:\WINDOWS\System32\DRIVERS\fp.sys (IBM Corporation)
DRV - (FilterService [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\lvuvcflt.sys (Logitech Inc.)
DRV - (GEARAspiWDM [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (ha20x2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ha20x2k.sys (Creative Technology Ltd)
DRV - (HPZid412 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\HPZid412.sys (HP)
DRV - (HPZipr12 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\HPZipr12.sys (HP)
DRV - (HPZius12 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\HPZius12.sys (HP)
DRV - (iastor [Boot | Running]) -- C:\WINDOWS\system32\DRIVERS\iaStor.sys (Intel Corporation)
DRV - (IntelC51 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\IntelC51.sys (Intel Corporation)
DRV - (IntelC52 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\IntelC52.sys (Intel Corporation)
DRV - (IntelC53 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\IntelC53.sys (Intel Corporation)
DRV - (LVPr2Mon [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\LVPr2Mon.sys ()
DRV - (LVRS [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\lvrs.sys (Logitech Inc.)
DRV - (LVUSBSta [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\LVUSBSta.sys (Logitech Inc.)
DRV - (LVUVC [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\lvuvc.sys (Logitech Inc.)
DRV - (MODEMCSA [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\MODEMCSA.sys (Microsoft Corporation)
DRV - (mohfilt [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\mohfilt.sys (Intel Corporation)
DRV - (NuidFltr [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\NuidFltr.sys (Microsoft Corporation)
DRV - (OMCI [System | Running]) -- C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS (Dell Computer Corporation)
DRV - (ossrv [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\ctoss2k.sys (Creative Technology Ltd.)
DRV - (Point32 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\point32.sys (Microsoft Corporation)
DRV - (Ptilink [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (PxHelp20 [Boot | Running]) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (RT73 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\rt73.sys (Ralink Technology, Corp.)
DRV - (Secdrv [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (usbaudio [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\usbaudio.sys (Microsoft Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn...st/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn...st/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft...p...&ar=msnhome
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.defaulturl: "http://www.google.co...-8&oe=UTF-8&q="
FF - prefs.js..browser.search.selectedEngine: "[email protected]"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.co.uk/"
FF - prefs.js..extensions.enabledItems: {22119944-ED35-4ab1-910B-E619EA06A115}:6.9.95
FF - prefs.js..extensions.enabledItems: [email protected]:0.5.1.3
FF - prefs.js..extensions.enabledItems: [email protected]:1.5.1
FF - prefs.js..extensions.enabledItems: {fce36c1e-58d8-498a-b2a5-66ad1cedebbb}:0.76
FF - prefs.js..extensions.enabledItems: {E0B8C461-F8FB-49b4-8373-FE32E9252800}:3.0.0.51093
FF - prefs.js..extensions.enabledItems: {3112ca9c-de6d-4884-a869-9855de68056c}:3.1.20090119W
FF - prefs.js..extensions.enabledItems: {EF522540-89F5-46b9-B6FE-1829E2B572C6}:3.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledItems: [email protected]:1.33
FF - prefs.js..extensions.enabledItems: {FC5BAC7D-D696-4ba6-B913-CF8F000C33DF}:1.9.7
FF - prefs.js..extensions.enabledItems: [email protected]:0.9945
FF - prefs.js..extensions.enabledItems: {53A03D43-5363-4669-8190-99061B2DEBA5}:1.3.3.9
FF - prefs.js..extensions.enabledItems: [email protected]:0.8.5.16
FF - prefs.js..extensions.enabledItems: {20291fcc-1471-46c8-8213-5911f5ce6d67}:0.9.9
FF - prefs.js..extensions.enabledItems: {B13721C7-F507-4982-B2E5-502A71474FED}:2.2.0.102
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: {AE93811A-5C9A-4d34-8462-F7B864FC4696}:3.29
FF - prefs.js..extensions.enabledItems: {75623d5d-4683-402a-b610-ac4bab767c86}:2.0.5
FF - prefs.js..extensions.enabledItems: [email protected]:0.4.0
FF - prefs.js..extensions.enabledItems: {10c62ce3-3794-4c18-a881-481733c1a425}:1.5.9
FF - prefs.js..extensions.enabledItems: {c45c406e-ab73-11d8-be73-000a95be3b12}:1.1.6
FF - prefs.js..extensions.enabledItems: {636fd8b0-ce2b-4e00-b812-2afbe77ee899}:1.4.2
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.0
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.11
FF - HKLM\software\mozilla\Firefox\extensions\\[email protected]: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2009/03/28 20:23:55 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/06/27 09:06:22 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/06/20 13:32:25 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/06/20 13:32:25 | 00,000,000 | ---D | M]
[2009/06/17 12:00:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Extensions
[2009/03/27 12:51:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/06/17 12:00:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Extensions\[email protected]
[2009/06/27 09:27:16 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions
[2009/04/07 07:04:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{10c62ce3-3794-4c18-a881-481733c1a425}
[2009/06/04 04:24:39 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{1ABADB6E-DC4B-11DA-9F70-791A9CD9513E}
[2009/04/13 08:45:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{20291fcc-1471-46c8-8213-5911f5ce6d67}
[2009/03/29 08:34:27 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{283f22a5-7fd7-4714-a764-693b69dc76e9}
[2009/03/29 08:49:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2009/06/24 11:02:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{317B5128-0B0B-49b2-B2DB-1E7560E16C74}
[2009/04/12 11:56:52 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}
[2009/06/03 07:12:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{3EB3C1FE-4FED-4ef7-A78C-6616E2521FB5}
[2009/04/22 07:52:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{4BBDD651-70CF-4821-84F8-2B918CF89CA3}
[2009/04/23 14:44:05 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}
[2009/06/24 11:02:42 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{5fb1186a-3398-4c47-b579-0f2eee222ad1}
[2009/04/07 16:41:39 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{636fd8b0-ce2b-4e00-b812-2afbe77ee899}
[2009/06/06 07:31:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{75623d5d-4683-402a-b610-ac4bab767c86}
[2009/06/12 06:39:23 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2009/04/01 12:27:53 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{9a3fa4df-b5e1-4520-a207-ec1c32ea9fb0}
[2009/04/24 15:00:03 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{AE93811A-5C9A-4d34-8462-F7B864FC4696}
[2009/04/23 14:44:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{C02713A2-FA2D-11DA-B855-001321F5C1D9}
[2009/03/29 08:34:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}
[2009/04/03 16:58:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{d07a4843-111f-4699-8551-8ce2afa075cd}
[2009/05/18 17:49:15 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{d57c9ff1-6389-48fc-b770-f78bd89b6e8a}
[2009/06/21 12:40:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{E0B8C461-F8FB-49b4-8373-FE32E9252800}
[2009/04/23 07:14:01 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2009/05/01 13:10:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
[2009/06/04 04:24:52 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6}
[2009/04/24 06:59:02 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{FC5BAC7D-D696-4ba6-B913-CF8F000C33DF}
[2009/04/22 07:52:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\{fce36c1e-58d8-498a-b2a5-66ad1cedebbb}
[2009/06/03 07:12:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/24 11:02:39 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/04/20 07:06:16 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/23 08:56:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/14 21:20:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/10 16:27:32 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/05/08 09:42:07 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/15 09:34:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/04/23 14:44:06 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/04/14 07:24:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/24 11:02:39 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/24 11:02:39 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/05/01 13:04:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/24 11:02:38 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/03/29 08:34:26 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/14 07:12:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Denise\Application Data\mozilla\Firefox\Profiles\2ehvw6b3.default\extensions\[email protected]
[2009/06/21 20:45:10 | 00,001,629 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\Mozilla\FireFox\Profiles\2ehvw6b3.default\searchplugins\alexa.xml
[2009/04/23 14:45:41 | 00,002,128 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\Mozilla\FireFox\Profiles\2ehvw6b3.default\searchplugins\breadcrumbs.xml
[2009/04/23 14:40:05 | 00,001,532 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\Mozilla\FireFox\Profiles\2ehvw6b3.default\searchplugins\googleomgili.xml
[2009/04/01 12:28:01 | 00,001,632 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\Mozilla\FireFox\Profiles\2ehvw6b3.default\searchplugins\live-search.xml
[2009/04/17 20:19:54 | 00,002,059 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\Mozilla\FireFox\Profiles\2ehvw6b3.default\searchplugins\search-freethesaurusnet.xml
[2009/03/29 08:34:38 | 00,001,898 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\Mozilla\FireFox\Profiles\2ehvw6b3.default\searchplugins\surf-canyon.xml
[2009/06/27 09:26:56 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/06/20 13:32:25 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/06/15 12:55:29 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}
[2009/03/28 20:24:04 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2009/06/14 21:22:17 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\Access Privileges Test
[2009/06/20 13:32:18 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/06/20 13:32:18 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009/06/14 02:43:39 | 00,156,672 | ---- | M] (Google) -- C:\Program Files\mozilla firefox\components\GoogleDesktopMozilla.dll
[2009/03/28 20:23:55 | 00,410,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeploytk.dll
[2009/06/20 13:32:20 | 00,065,528 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll
[2006/10/26 21:12:16 | 00,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL
[2009/06/19 12:24:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll
[2009/06/19 12:24:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll
[2009/06/19 12:24:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll
[2009/06/19 12:24:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll
[2009/06/19 12:24:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll
[2009/06/19 12:24:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll
[2009/06/19 12:24:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll
[2008/01/04 16:36:50 | 00,001,538 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml
[2006/07/05 19:47:38 | 00,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml
[2008/01/04 16:36:50 | 00,000,947 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml
[2008/03/08 10:35:22 | 00,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml
[2008/09/22 20:14:04 | 00,000,759 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml
[2008/04/16 05:08:20 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2008/03/28 19:11:14 | 00,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
[2008/01/04 16:36:50 | 00,000,831 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: (764 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2 - BHO: (SnagIt Toolbar Loader) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 8\SnagItBHO.dll (TechSmith Corporation)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\Adobe Contribute CS4\contributeieplugin.dll (Adobe Systems Incorporated.)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll (Google Inc.)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\Adobe Contribute CS4\contributeieplugin.dll (Adobe Systems Incorporated.)
O3 - HKLM\..\Toolbar: (Net Snippets) - {67970B26-F57D-4455-8262-81C3AE3B8B5E} - C:\Program Files\NetSnippets\NetSnip.DLL (Net Snippets LTD.)
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKLM\..\Toolbar: (SnagIt) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 8\SnagItIEAddin.dll (TechSmith Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe_ID0ENQBO] C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (ATI Technologies, Inc.)
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O4 - HKLM..\Run: [CTHelper] C:\WINDOWS\System32\CTHELPER.EXE (Creative Technology Ltd)
O4 - HKLM..\Run: [CTxfiHlp] C:\WINDOWS\System32\CTXFIHLP.EXE (Creative Technology Ltd)
O4 - HKLM..\Run: [DNS7reminder] C:\Program Files\Nuance\NaturallySpeaking10\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [Google Desktop Search] File not found
O4 - HKLM..\Run: [GoToMyPC] C:\Program Files\Citrix\GoToMyPC\g2svc.exe (Citrix Online, a division of Citrix Systems, Inc.)
O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [IntelliPoint] C:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [itype] C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\QuickCam\Quickcam.exe ()
O4 - HKLM..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PPort11reminder] C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [ScanSoft OmniPage 16-reminder] C:\Program Files\ScanSoft\OmniPage16\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
O4 - HKCU..\Run: [AdobeBridge] File not found
O4 - HKCU..\Run: [Google Update] C:\Documents and Settings\Denise\Local Settings\Application Data\Google\Update\GoogleUpdate.exe (Google Inc.)
O4 - HKCU..\Run: [MSMSGS] C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O4 - HKCU..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
O4 - HKCU..\Run: [OpAgent] File not found
O4 - HKCU..\Run: [Remove Duplicate Photos] File not found
O4 - HKCU..\Run: [RoboForm] C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4 - HKCU..\Run: [Skype] C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer Networking Limited)
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKCU..\Run: [Wakoopa] C:\Program Files\Wakoopa\Wakoopa.exe (Wakoopa)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit UK)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Denise\Start Menu\Programs\Startup\Dragon NaturallySpeaking.lnk = C:\Program Files\Nuance\NaturallySpeaking10\Program\natspeak.exe (Nuance Communications, Inc.)
O4 - Startup: C:\Documents and Settings\Denise\Start Menu\Programs\Startup\Evernote.lnk = C:\Program Files\Evernote\Evernote3\EvernoteTray.exe (Evernote Corporation)
O4 - Startup: C:\Documents and Settings\Denise\Start Menu\Programs\Startup\Texter.lnk = C:\Program Files\Texter\texter.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskmgr = 0
O8 - Extra context menu item: Add to Evernote - C:\Program Files\Evernote\Evernote3\enbar.dll (Evernote Corporation)
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: Add to Net Snippets - C:\Program Files\NetSnippets\Res\clipper.htm ()
O8 - Extra context menu item: Add to SV Bookmark - C:\Program Files\SmElis\SV Bookmark\SVBMCom.dll ()
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Customize Menu - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Fill Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: Snippets - {7130DF06-BBC1-4e16-83D4-1F875E65B695} - C:\Program Files\NetSnippets\NetSnip.DLL (Net Snippets LTD.)
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E9252800} - C:\Program Files\Evernote\Evernote3\enbar.dll (Evernote Corporation)
O9 - Extra 'Tools' menuitem : Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E9252800} - C:\Program Files\Evernote\Evernote3\enbar.dll (Evernote Corporation)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\rsvpsp.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zon...kr.cab56986.cab (Checkers Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.micros...b?1238111833593 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zon...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} https://plugins.valu...ashax/iefax.cab (Flash Casino Helper Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Filter: - text/xml - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GO333C~1\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\GoToAssist Express Customer: DllName - C:\Program Files\Citrix\GoToAssist Express Customer\152\g2ax_winlogon.dll - C:\Program Files\Citrix\GoToAssist Express Customer\152\g2ax_winlogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
O20 - Winlogon\Notify\GoToMyPC: DllName - C:\Program Files\Citrix\GoToMyPC\G2WinLogon.dll - C:\Program Files\Citrix\GoToMyPC\G2WinLogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/03/26 21:48:41 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2005/10/02 23:06:28 | 00,000,054 | R--- | M] () - D:\autorun.inf -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
========== Files/Folders - Created Within 30 Days ==========
[2009/06/27 09:41:10 | 00,513,536 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Denise\Desktop\OTL.exe
[2009/06/27 09:39:32 | 00,000,000 | ---D | C] -- C:\Rooter$
[2009/06/27 09:29:22 | 00,173,119 | ---- | C] (Eric_71) -- C:\Documents and Settings\Denise\Desktop\Rooter.exe
[2009/06/27 08:50:08 | 00,000,000 | -HSD | C] -- C:\Config.Msi
[2009/06/27 08:45:29 | 00,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iecompat.dll
[2009/06/27 08:45:17 | 00,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2009/06/27 08:45:01 | 00,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpshims.dll
[2009/06/27 08:45:00 | 00,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieproxy.dll
[2009/06/27 08:44:06 | 00,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2009/06/27 07:57:42 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Desktop\GeeksToGo
[2009/06/27 07:50:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\Malwarebytes
[2009/06/27 07:50:22 | 00,038,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/06/27 07:50:20 | 00,019,096 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/06/27 07:50:20 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/06/27 07:50:20 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2009/06/27 07:49:15 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2009/06/27 07:48:42 | 00,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2009/06/27 06:33:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\SlimBrowser
[2009/06/27 06:32:59 | 00,000,000 | ---D | C] -- C:\Program Files\SlimBrowser
[2009/06/26 15:45:17 | 00,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2009/06/26 15:45:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2009/06/26 07:47:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\My Documents\GTD
[2009/06/26 01:03:20 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\.thinkingrock
[2009/06/26 01:00:57 | 00,000,000 | ---D | C] -- C:\Program Files\TR-2.2.1
[2009/06/26 00:51:45 | 39,002,058 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\tr-2.2.1.exe
[2009/06/25 16:25:38 | 09,577,800 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\winzip121.exe
[2009/06/25 05:48:25 | 00,003,292 | -H-- | C] () -- C:\Documents and Settings\Denise\Desktop\ZbThumbnail.info
[2009/06/24 15:33:31 | 00,460,467 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\Hummin a car with gbirds at Home.docx
[2009/06/21 12:01:14 | 00,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wstdecod.dll
[2009/06/21 12:01:13 | 01,230,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msvidctl.dll
[2009/06/21 12:01:13 | 00,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2009/06/21 12:01:13 | 00,354,816 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisdecd.dll
[2009/06/21 12:01:13 | 00,052,224 | ---- | C] () -- C:\WINDOWS\System32\msdvbnp.ax
[2009/06/21 12:01:13 | 00,052,224 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdvbnp.ax
[2009/06/21 12:01:13 | 00,052,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\msdv.sys
[2009/06/21 12:01:13 | 00,052,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdv.sys
[2009/06/21 12:01:13 | 00,030,208 | ---- | C] () -- C:\WINDOWS\System32\psisrndr.ax
[2009/06/21 12:01:13 | 00,030,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisrndr.ax
[2009/06/21 12:01:13 | 00,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bdaplgin.ax
[2009/06/21 12:01:13 | 00,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bdaplgin.ax
[2009/06/21 12:01:13 | 00,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mpe.sys
[2009/06/21 12:01:13 | 00,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mpe.sys
[2009/06/21 12:01:13 | 00,011,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bdasup.sys
[2009/06/21 12:01:13 | 00,011,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bdasup.sys
[2009/06/21 12:01:12 | 00,733,184 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qedwipes.dll
[2009/06/21 12:01:12 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksolay.ax
[2009/06/21 12:01:11 | 01,798,144 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qedit.dll
[2009/06/21 12:01:11 | 00,470,528 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qdvd.dll
[2009/06/21 12:01:11 | 00,324,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mswebdvd.dll
[2009/06/21 12:01:11 | 00,316,928 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qdv.dll
[2009/06/21 12:01:11 | 00,257,024 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qcap.dll
[2009/06/21 12:01:11 | 00,136,192 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mpg2splt.ax
[2009/06/21 12:01:11 | 00,034,304 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mciqtz32.dll
[2009/06/21 12:01:11 | 00,013,312 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdmo.dll
[2009/06/21 12:01:10 | 00,132,608 | ---- | C] () -- C:\WINDOWS\System32\dllcache\devenum.dll
[2009/06/21 12:01:10 | 00,122,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmusic.dll
[2009/06/21 12:01:10 | 00,100,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmsynth.dll
[2009/06/21 12:01:10 | 00,098,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmstyle.dll
[2009/06/21 12:01:10 | 00,064,512 | ---- | C] () -- C:\WINDOWS\System32\dllcache\amstream.dll
[2009/06/21 12:01:09 | 01,201,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3d8.dll
[2009/06/21 12:01:09 | 00,667,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dinput8.dll
[2009/06/21 12:01:09 | 00,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmime.dll
[2009/06/21 12:01:09 | 00,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmscript.dll
[2009/06/21 12:01:09 | 00,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmcompos.dll
[2009/06/21 12:01:09 | 00,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmloader.dll
[2009/06/21 12:01:09 | 00,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmband.dll
[2009/06/21 12:01:09 | 00,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dswave.dll
[2009/06/21 12:01:08 | 00,974,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxdiag.exe
[2009/06/21 12:01:08 | 00,491,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsdmoprp.dll
[2009/06/21 12:01:08 | 00,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvoice.dll
[2009/06/21 12:01:08 | 00,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsdmo.dll
[2009/06/21 12:01:08 | 00,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvvox.dll
[2009/06/21 12:01:08 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvsetup.exe
[2009/06/21 12:01:08 | 00,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dxdllreg.exe
[2009/06/21 12:01:08 | 00,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvacm.dll
[2009/06/21 12:01:07 | 01,189,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dx8vb.dll
[2009/06/21 12:01:07 | 00,723,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnet.dll
[2009/06/21 12:01:07 | 00,602,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dx7vb.dll
[2009/06/21 12:01:07 | 00,208,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\joy.cpl
[2009/06/21 12:01:07 | 00,068,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnhupnp.dll
[2009/06/21 12:01:07 | 00,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnhpast.dll
[2009/06/21 12:01:07 | 00,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pid.dll
[2009/06/21 12:01:07 | 00,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnsvr.exe
[2009/06/21 12:01:07 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3d8thk.dll
[2009/06/21 12:01:07 | 00,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnlobby.dll
[2009/06/21 12:01:07 | 00,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnaddr.dll
[2009/06/21 12:01:06 | 01,294,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsound3d.dll
[2009/06/21 12:01:06 | 00,797,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3dim700.dll
[2009/06/21 12:01:06 | 00,648,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dinput.dll
[2009/06/21 12:01:06 | 00,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsound.dll
[2009/06/21 12:01:06 | 00,292,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ddraw.dll
[2009/06/21 12:01:06 | 00,230,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dplayx.dll
[2009/06/21 12:01:06 | 00,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpwsockx.dll
[2009/06/21 12:01:06 | 00,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpmodemx.dll
[2009/06/21 12:01:06 | 00,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dplaysvr.exe
[2009/06/21 12:01:06 | 00,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ddrawex.dll
[2009/06/21 11:53:11 | 00,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2009/06/21 11:41:51 | 00,000,000 | ---- | C] () -- C:\WINDOWS\OpPrintServer.INI
[2009/06/21 11:39:18 | 00,002,407 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\ZoomBrowser EX.lnk
[2009/06/21 11:38:15 | 00,000,000 | ---D | C] -- C:\Program Files\Canon
[2009/06/21 11:30:55 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ptpusb.dll
[2009/06/21 11:30:34 | 00,159,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ptpusd.dll
[2009/06/20 21:49:14 | 00,106,825 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\Site3.wpp
[2009/06/20 16:29:35 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\Serif
[2009/06/20 15:59:24 | 00,000,000 | ---D | C] -- C:\Program Files\Serif
[2009/06/20 15:45:34 | 00,544,047 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\yo.png
[2009/06/20 07:01:33 | 02,913,560 | ---- | C] (Siber Systems) -- C:\Documents and Settings\Denise\Desktop\AiRoboForm-cnetc.exe
[2009/06/19 23:56:18 | 00,161,280 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\Agreement For Services.doc
[2009/06/19 23:06:14 | 00,000,000 | ---D | C] -- C:\Program Files\TweetDeck
[2009/06/19 12:33:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\Apple Computer
[2009/06/19 12:32:33 | 00,000,000 | ---D | C] -- C:\Program Files\iPod
[2009/06/19 12:32:31 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2009/06/19 12:32:30 | 00,000,000 | ---D | C] -- C:\Program Files\iTunes
[2009/06/19 12:30:35 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2009/06/19 12:24:31 | 00,001,604 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk
[2009/06/19 12:23:58 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple Computer
[2009/06/19 06:15:18 | 00,023,630 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\hosting.png
[2009/06/18 17:21:24 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\My Documents\My Received Files
[2009/06/17 14:26:27 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\My Documents\My Snippets
[2009/06/17 14:26:25 | 00,000,645 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Net Snippets Desktop Bar.lnk
[2009/06/17 14:26:22 | 00,000,000 | ---D | C] -- C:\Program Files\NetSnippets
[2009/06/17 12:52:59 | 00,003,131 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\iran-tw-33.png
[2009/06/17 12:00:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Local Settings\Application Data\Sedna Wireless
[2009/06/17 12:00:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\Sedna Wireless
[2009/06/17 12:00:04 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\My Documents\My Call Graphs
[2009/06/17 11:57:47 | 00,000,711 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\Call Graph.lnk
[2009/06/17 11:57:34 | 00,000,000 | ---D | C] -- C:\Program Files\Call Graph
[2009/06/17 11:57:34 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\Call Graph
[2009/06/16 10:49:51 | 00,000,000 | ---D | C] -- C:\Program Files\PerfectIt
[2009/06/15 12:57:47 | 00,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2009/06/15 12:57:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\skypePM
[2009/06/15 12:55:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\Skype
[2009/06/15 12:55:33 | 00,001,878 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2009/06/15 12:55:32 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2009/06/15 12:55:30 | 00,000,000 | R--D | C] -- C:\Program Files\Skype
[2009/06/15 12:55:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Skype
[2009/06/15 12:53:49 | 20,631,848 | ---- | C] (Skype Technologies S.A.) -- C:\Documents and Settings\Denise\Desktop\SkypeSetupFull.exe
[2009/06/14 08:24:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Last.fm
[2009/06/14 08:24:07 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Local Settings\Application Data\Last.fm
[2009/06/14 08:24:00 | 00,000,000 | ---D | C] -- C:\Program Files\Last.fm
[2009/06/14 02:58:05 | 00,000,129 | ---- | C] () -- C:\Documents and Settings\Denise\Local Settings\Application Data\fusioncache.dat
[2009/06/14 02:49:57 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Local Settings\Application Data\intuit
[2009/06/14 02:44:02 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\supportsoft
[2009/06/14 02:43:54 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\My Documents\My Google Gadgets
[2009/06/14 02:43:50 | 00,000,943 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Google Desktop.lnk
[2009/06/14 02:43:13 | 01,933,312 | ---- | C] (Amyuni Technologies
http://www.amyuni.com) -- C:\WINDOWS\System32\cdintf251.dll
[2009/06/14 02:42:45 | 00,002,109 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk
[2009/06/14 02:42:44 | 00,001,979 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\QuickBooks SimpleStart Free Starter Edition.lnk
[2009/06/14 02:39:30 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\AnswerWorks 4.0
[2009/06/14 02:38:55 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Intuit
[2009/06/14 02:38:55 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\Intuit
[2009/06/14 02:38:55 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Intuit
[2009/06/14 02:38:54 | 00,000,000 | ---D | C] -- C:\Program Files\Intuit
[2009/06/14 02:37:20 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\COMMON FILES
[2009/06/14 02:37:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Local Settings\Application Data\ApplicationHistory
[2009/06/14 02:34:33 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTEMP
[2009/06/14 02:09:44 | 33,714,9057 | ---- | C] (Intuit, Inc. ) -- C:\Documents and Settings\Denise\Desktop\SimpleStartFSEDirect.exe
[2009/06/13 07:06:56 | 00,000,640 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\TweetDeck.lnk
[2009/06/11 06:10:31 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\twitulater.BC54C219386C1E2570E0081EE759EFB0DFEA2770.1
[2009/06/11 06:10:25 | 00,000,000 | ---D | C] -- C:\Program Files\Twitulater
[2009/06/10 14:58:30 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\net.twitterlocal.onair.A589D10E991C524019173F7ADEB73C85B538C40C.1
[2009/06/10 14:58:22 | 00,000,000 | ---D | C] -- C:\Program Files\TwitterLocal
[2009/06/10 12:39:28 | 00,002,699 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Dragon NaturallySpeaking 10.0.lnk
[2009/06/09 01:19:23 | 00,021,771 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\options.xlsx
[2009/06/08 19:03:42 | 00,013,007 | ---- | C] () -- C:\Documents and Settings\Denise\Application Data\Comma Separated Values (Windows).CAL
[2009/06/08 15:34:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\com.seesmic.desktop.client.D89F32799270693BEF34AAA36E9B2632B59240FA.1
[2009/06/08 15:34:26 | 00,000,000 | ---D | C] -- C:\Program Files\Seesmic Desktop
[2009/06/08 15:23:41 | 00,318,464 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\bookmarks2.html
[2009/06/08 12:32:03 | 01,774,504 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\system info.nfo
[2009/06/08 08:14:31 | 00,000,024 | ---- | C] () -- C:\Documents and Settings\Denise\Application Data\MyPhrases.dta
[2009/06/07 09:15:55 | 00,000,000 | ---D | C] -- C:\Program Files\Bradbury
[2009/06/07 06:35:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\TypingMaster7
[2009/06/07 06:35:32 | 00,000,000 | R--D | C] -- C:\Program Files\TypingMaster
[2009/06/07 00:44:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Local Settings\Application Data\PCHealth
[2009/06/06 08:11:52 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Application Data\Google
[2009/06/06 08:09:31 | 00,000,882 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[2009/06/06 08:08:51 | 00,000,868 | ---- | C] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2009/06/06 08:08:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google Updater
[2009/06/06 08:08:35 | 01,086,592 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\Google Updater.exe
[2009/06/05 17:02:12 | 00,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2009/06/05 15:25:51 | 00,000,742 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\Keyword Elite.lnk
[2009/06/05 15:25:46 | 00,000,000 | ---D | C] -- C:\Program Files\Keyword Elite
[2009/06/05 15:05:30 | 01,597,171 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\SEOE_setup4097.exe
[2009/06/04 05:08:34 | 00,168,448 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\Publication1.pub
[2009/06/03 15:09:52 | 02,532,858 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\UFA-SearchEngineBook-v155.pdf
[2009/06/02 14:11:49 | 00,695,642 | ---- | C] () -- C:\WINDOWS\unins000.exe
[2009/06/02 14:11:49 | 00,535,552 | ---- | C] () -- C:\WINDOWS\Status.exe
[2009/06/02 14:11:49 | 00,386,048 | ---- | C] () -- C:\WINDOWS\System32\agsecure.dll
[2009/06/02 14:11:49 | 00,049,626 | ---- | C] () -- C:\WINDOWS\unins000.dat
[2009/06/02 14:11:49 | 00,028,268 | R--- | C] () -- C:\WINDOWS\System32\aggampax.dat
[2009/06/02 14:11:49 | 00,016,768 | R--- | C] () -- C:\WINDOWS\System32\drivers\aggampax.sys
[2009/06/02 14:11:49 | 00,014,781 | R--- | C] () -- C:\WINDOWS\System32\aggampax.url
[2009/06/02 14:11:49 | 00,001,150 | ---- | C] () -- C:\WINDOWS\System32\betfilter.ico
[2009/06/01 06:48:18 | 00,009,527 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\email addresses.csv
[2009/06/01 06:46:36 | 00,013,522 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\email addresses.xlsx
[2009/06/01 06:45:14 | 00,003,510 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\MyOLcontacts.CSV
[2009/06/01 06:39:28 | 00,118,459 | ---- | C] () -- C:\Documents and Settings\Denise\My Documents\Mycontacts.CSV
[2009/06/01 06:37:16 | 00,003,300 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\contacts(3).csv
[2009/06/01 06:30:40 | 00,017,554 | ---- | C] () -- C:\Documents and Settings\Denise\Desktop\contacts(2).csv
[2009/06/01 06:25:41 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Denise\Local Settings\Application Data\Xobni
[2009/06/01 06:18:49 | 00,000,000 | ---D | C] -- C:\Program Files\Xobni
[2009/06/01 05:21:02 | 00,000,000 | ---D | C] -- C:\Program Files\Wakoopa
[2009/06/01 03:58:09 | 00,000,000 | ---D | C] -- C:\Program Files\OverDisk
[2009/04/13 06:44:23 | 00,000,360 | ---- | C] () -- C:\WINDOWS\CompetitionDominator.INI
[2009/04/07 16:17:28 | 00,032,131 | ---- | C] () -- C:\WINDOWS\maxlink.ini
[2009/03/28 13:02:37 | 00,000,088 | ---- | C] () -- C:\WINDOWS\VisitorVille.INI
[2009/03/28 00:39:34 | 00,081,110 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini
[2009/03/27 02:08:22 | 00,000,000 | ---- | C] () -- C:\WINDOWS\plclient.INI
[2009/03/27 01:54:50 | 02,463,976 | ---- | C] () -- C:\WINDOWS\System32\NPSWF32.dll
[2009/03/27 00:39:34 | 00,000,162 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008/12/16 22:58:54 | 00,025,624 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVPr2Mon.sys
[2008/12/16 22:50:56 | 00,013,584 | ---- | C] () -- C:\WINDOWS\System32\drivers\iKeyLgFT.dll
[2007/09/27 10:51:02 | 00,020,698 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 10:48:48 | 00,030,628 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 10:48:28 | 00,031,698 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini
[2006/12/19 08:15:20 | 00,065,154 | ---- | C] () -- C:\WINDOWS\System32\instwdm.ini
[2006/12/12 11:48:22 | 00,043,520 | ---- | C] () -- C:\WINDOWS\System32\CTBurst.dll
[2006/12/12 11:47:24 | 00,034,816 | ---- | C] ( ) -- C:\WINDOWS\System32\a3d.dll
[2006/11/30 09:01:26 | 00,000,054 | ---- | C] () -- C:\WINDOWS\System32\ctzapxx.ini
[2006/05/18 08:03:24 | 00,000,269 | ---- | C] () -- C:\WINDOWS\System32\KILL.INI
[2006/01/04 06:42:04 | 00,077,824 | ---- | C] () -- C:\WINDOWS\System32\HPZIDS01.dll
[2005/01/24 10:55:50 | 00,078,088 | ---- | C] ( ) -- C:\WINDOWS\System32\PacificLogicOle.dll
[2004/08/04 11:00:00 | 00,000,587 | ---- | C] () -- C:\WINDOWS\win.ini
[2004/08/04 11:00:00 | 00,000,231 | ---- | C] () -- C:\WINDOWS\system.ini
[2001/07/07 04:00:00 | 00,003,399 | ---- | C] () -- C:\WINDOWS\System32\hptcpmon.ini
========== Files - Modified Within 30 Days ==========
[2009/06/27 09:41:10 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Denise\Desktop\OTL.exe
[2009/06/27 09:29:22 | 00,173,119 | ---- | M] (Eric_71) -- C:\Documents and Settings\Denise\Desktop\Rooter.exe
[2009/06/27 09:21:47 | 00,101,432 | ---- | M] () -- C:\Documents and Settings\Denise\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/06/27 09:16:59 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/06/27 09:16:43 | 00,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[2009/06/27 09:16:30 | 00,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2009/06/27 09:16:15 | 02,397,248 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/06/27 09:16:09 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/06/27 09:16:04 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/06/27 09:15:56 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\lvuvc.hs
[2009/06/27 09:15:47 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\logiflt.iad
[2009/06/27 09:15:08 | 00,064,756 | ---- | M] () -- C:\WINDOWS\System32\DVCState-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx
[2009/06/27 09:15:08 | 00,054,328 | ---- | M] () -- C:\WINDOWS\System32\BMXStateBkp-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx
[2009/06/27 09:15:08 | 00,054,328 | ---- | M] () -- C:\WINDOWS\System32\BMXState-{00000005-00000000-00000004-00001102-00000005-10031102}.rfx
[2009/06/27 09:15:08 | 00,001,080 | ---- | M] () -- C:\WINDOWS\System32\settingsbkup.sfm
[2009/06/27 09:15:08 | 00,001,080 | ---- | M] () -- C:\WINDOWS\System32\settings.sfm
[2009/06/27 09:09:29 | 00,533,958 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/06/27 09:09:29 | 00,464,632 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/06/27 09:09:29 | 00,078,900 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/06/27 08:58:15 | 00,000,063 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2009/06/27 08:47:50 | 00,000,587 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/06/27 08:45:28 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009/06/27 07:10:44 | 00,014,336 | ---- | M] () -- C:\Documents and Settings\Denise\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/06/27 04:51:15 | 00,000,928 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-861567501-1417001333-839522115-1003.job
[2009/06/26 19:31:14 | 00,028,268 | R--- | M] () -- C:\WINDOWS\System32\aggampax.dat
[2009/06/26 15:52:57 | 00,021,771 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\options.xlsx
[2009/06/26 09:14:31 | 00,003,633 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\SAS7_000.DAT
[2009/06/26 08:10:01 | 00,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2009/06/26 00:54:03 | 39,002,058 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\tr-2.2.1.exe
[2009/06/25 16:26:09 | 09,577,800 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\winzip121.exe
[2009/06/25 05:48:25 | 00,003,292 | -H-- | M] () -- C:\Documents and Settings\Denise\Desktop\ZbThumbnail.info
[2009/06/25 05:48:18 | 00,002,407 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\ZoomBrowser EX.lnk
[2009/06/25 03:00:29 | 00,000,484 | ---- | M] () -- C:\WINDOWS\tasks\NatSpeak Periodic Language Model Optimization.job
[2009/06/24 15:33:32 | 00,460,467 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\Hummin a car with gbirds at Home.docx
[2009/06/21 13:08:25 | 00,544,047 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\yo.png
[2009/06/21 11:53:45 | 00,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2009/06/21 11:52:45 | 00,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2009/06/21 11:41:51 | 00,000,000 | ---- | M] () -- C:\WINDOWS\OpPrintServer.INI
[2009/06/21 09:27:12 | 00,000,088 | ---- | M] () -- C:\WINDOWS\VisitorVille.INI
[2009/06/20 21:49:20 | 00,106,825 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\Site3.wpp
[2009/06/20 16:11:50 | 00,074,308 | -H-- | M] () -- C:\WINDOWS\System32\mlfcache.dat
[2009/06/20 07:01:39 | 02,913,560 | ---- | M] (Siber Systems) -- C:\Documents and Settings\Denise\Desktop\AiRoboForm-cnetc.exe
[2009/06/19 23:56:22 | 00,161,280 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\Agreement For Services.doc
[2009/06/19 23:06:15 | 00,000,640 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\TweetDeck.lnk
[2009/06/19 12:24:31 | 00,001,604 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk
[2009/06/19 06:15:18 | 00,023,630 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\hosting.png
[2009/06/17 14:26:25 | 00,000,645 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Net Snippets Desktop Bar.lnk
[2009/06/17 12:53:05 | 00,003,131 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\iran-tw-33.png
[2009/06/17 11:57:47 | 00,000,711 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\Call Graph.lnk
[2009/06/17 11:27:56 | 00,038,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/06/17 11:27:44 | 00,019,096 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/06/15 12:57:47 | 00,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat
[2009/06/15 12:55:33 | 00,001,878 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2009/06/15 12:55:02 | 20,631,848 | ---- | M] (Skype Technologies S.A.) -- C:\Documents and Settings\Denise\Desktop\SkypeSetupFull.exe
[2009/06/14 02:58:05 | 00,000,129 | ---- | M] () -- C:\Documents and Settings\Denise\Local Settings\Application Data\fusioncache.dat
[2009/06/14 02:43:50 | 00,000,943 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Desktop.lnk
[2009/06/14 02:42:45 | 00,002,109 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk
[2009/06/14 02:42:44 | 00,001,979 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\QuickBooks SimpleStart Free Starter Edition.lnk
[2009/06/14 02:31:48 | 33,714,9057 | ---- | M] (Intuit, Inc. ) -- C:\Documents and Settings\Denise\Desktop\SimpleStartFSEDirect.exe
[2009/06/10 12:39:37 | 00,000,898 | ---- | M] () -- C:\Documents and Settings\Denise\Start Menu\Programs\Startup\Dragon NaturallySpeaking.lnk
[2009/06/10 12:39:28 | 00,002,699 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Dragon NaturallySpeaking 10.0.lnk
[2009/06/08 19:03:43 | 00,003,510 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\MyOLcontacts.CSV
[2009/06/08 19:03:42 | 00,013,007 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\Comma Separated Values (Windows).CAL
[2009/06/08 15:23:41 | 00,318,464 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\bookmarks2.html
[2009/06/08 13:16:21 | 00,000,360 | ---- | M] () -- C:\WINDOWS\CompetitionDominator.INI
[2009/06/08 12:34:25 | 01,774,504 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\system info.nfo
[2009/06/08 08:14:42 | 00,000,024 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\MyPhrases.dta
[2009/06/07 09:12:38 | 00,000,372 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\spider.sav
[2009/06/07 00:38:55 | 00,000,162 | ---- | M] () -- C:\WINDOWS\ODBC.INI
[2009/06/06 08:08:37 | 01,086,592 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\Google Updater.exe
[2009/06/05 15:28:02 | 00,000,742 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\Keyword Elite.lnk
[2009/06/05 15:07:37 | 00,000,718 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\SEO Elite 4.lnk
[2009/06/05 15:05:30 | 01,597,171 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\SEOE_setup4097.exe
[2009/06/04 05:09:38 | 00,168,448 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\Publication1.pub
[2009/06/03 15:09:58 | 02,532,858 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\UFA-SearchEngineBook-v155.pdf
[2009/06/02 14:11:49 | 00,049,626 | ---- | M] () -- C:\WINDOWS\unins000.dat
[2009/06/02 14:08:15 | 00,695,642 | ---- | M] () -- C:\WINDOWS\unins000.exe
[2009/06/02 11:12:46 | 00,102,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iecompat.dll
[2009/06/01 17:51:12 | 23,635,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe
[2009/06/01 06:50:51 | 00,009,527 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\email addresses.csv
[2009/06/01 06:46:36 | 00,013,522 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\email addresses.xlsx
[2009/06/01 06:45:13 | 00,038,475 | ---- | M] () -- C:\Documents and Settings\Denise\Application Data\Comma Separated Values (Windows).ADR
[2009/06/01 06:39:35 | 00,118,459 | ---- | M] () -- C:\Documents and Settings\Denise\My Documents\Mycontacts.CSV
[2009/06/01 06:37:16 | 00,003,300 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\contacts(3).csv
[2009/06/01 06:30:42 | 00,017,554 | ---- | M] () -- C:\Documents and Settings\Denise\Desktop\contacts(2).csv
[2009/06/01 03:56:28 | 00,000,460 | ---- | M] () -- C:\WINDOWS\tasks\NatSpeak Periodic Acoustic Optimization.job
========== Alternate Data Streams ==========
@Alternate Data Stream - 448 bytes -> C:\Documents and Settings\Denise\My Documents\Site3.wpp:SummaryInformation
@Alternate Data Stream - 223 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F35A93AD
@Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CD5BCD16
< End of report >
----------------------
Extras Log
OTL Extras logfile created on: 27/06/2009 09:42:17 - Run 1
OTL by OldTimer - Version 3.0.5.3 Folder = C:\Documents and Settings\Denise\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
2.00 Gb Total Physical Memory | 1.15 Gb Available Physical Memory | 57.49% Memory free
3.85 Gb Paging File | 3.07 Gb Available in Paging File | 79.80% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232.82 Gb Total Space | 152.05 Gb Free Space | 65.31% Space Free | Partition Type: NTFS
Drive D: | 586.40 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
Drive F: | 232.88 Gb Total Space | 162.55 Gb Free Space | 69.80% Space Free | Partition Type: NTFS
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: BUBBLES
Current User Name: Denise
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm [@ = chm.file] -- C:\WINDOWS\hh.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"5353:TCP" = 5353:TCP:*:Enabled:Adobe CSI CS4
"3703:TCP" = 3703:TCP:*:Enabled:Adobe Version Cue CS4 Server
"3704:TCP" = 3704:TCP:*:Enabled:Adobe Version Cue CS4 Server
"51000:TCP" = 51000:TCP:*:Enabled:Adobe Version Cue CS4 Server
"51001:TCP" = 51001:TCP:*:Enabled:Adobe Version Cue CS4 Server
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 (Microsoft Corporation)
C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call (Microsoft Corporation)
C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe (Hewlett-Packard Development Company, L.P.)
C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe (Hewlett-Packard Development Company, L.P.)
C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe (Hewlett-Packard Development Company, L.P.)
C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe (Hewlett-Packard Development Company, L.P.)
C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe (Hewlett-Packard Development Company, L.P.)
C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe ()
C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe (Hewlett-Packard)
C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe (Hewlett-Packard Development Company, L.P.)
C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe (Hewlett-Packard)
C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe (Hewlett-Packard Development Company, L.P.)
C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe (Hewlett-Packard)
C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe ( )
C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe (Hewlett-Packard Development Company, L.P.)
C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe (Hewlett-Packard Development Company, L.P.)
%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 (Microsoft Corporation)
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook (Microsoft Corporation)
C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe:*:Enabled:Adobe CSI CS4 (Adobe Systems Incorporated)
C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe:*:Enabled:Adobe Version Cue CS4 Server (Adobe Systems Incorporated)
C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe:*:Enabled:Adobe Dreamweaver CS4 (Adobe Systems, Inc.)
C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call (Microsoft Corporation)
C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger (Microsoft Corporation)
C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger (Microsoft Corporation)
C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (Mozilla Corporation)
C:\Program Files\Intuit\QuickBooks 2008\QBDBMgrN.exe:*:Enabled:QuickBooks 2008 Data Manager (iAnywhere Solutions, Inc.)
C:\Program Files\Call Graph\CallGraph.exe:*:Enabled:Call Graph (Sedna Wireless Pvt. Ltd.)
C:\Program Files\Java\jre6\bin\java.exe:*:Enabled:Java Platform SE binary (Sun Microsystems, Inc.)
C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour (Apple Inc.)
C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes (Apple Inc.)
C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype (Skype Technologies S.A.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{0224CACC-994D-45F8-B973-D65056EA9C2F}" = Adobe XMP DVA Panels CS3
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{098A2A49-7CF3-4F08-A38D-FB879117152A}" = Adobe Color NA Extra Settings CS4
"{0A146245-DB79-4197-BF5D-FE1A699A2CC7}" = Camera Window DS
"{0AAA9C97-74D4-47CE-B089-0B147EF3553C}" = Windows Live Messenger
"{0BEDBD4E-2D34-47B5-9973-57E62B29307C}" = ATI Control Panel
"{0CEC06EF-5052-4CE8-8256-74AE363A4238}" = Adobe Creative Suite 3 Master Collection
"{0D025345-1033-4F35-A5CE-68CDCDE6CC03}" = Evernote
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0DC0E85F-36E4-463B-B3EA-4CD8ED2222A1}" = Adobe Color EU Recommended Settings CS4
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{0FA9A7F0-B2B3-52C9-2034-5F28C9DB525C}" = TweetDeck
"{121634B0-2F4B-11D3-ADA3-00C04F52DD52}" = Windows Installer Clean Up
"{14F70205-1940-4000-88C7-BE799A6B2CAD}" = Adobe Soundbooth CS4
"{15BF7AAF-846C-4A6D-80E1-5D1FC7FB461B}" = Adobe SGM CS4
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin
"{193EAFD0-1BAF-4FB4-B18F-79D5D6A4B285}" = Adobe After Effects CS3 Presets
"{1B7C06E1-4888-47A6-992A-0990B9683486}" = Adobe Version Cue CS4 Server
"{1DCA3EAA-6EB5-4563-A970-EA14D75037BA}" = Adobe InDesign CS4
"{1DDB76B6-9B33-47DE-8577-78EBFD3E2FF3}" = Adobe Setup
"{1E04CB54-AF4E-4AC3-B4B7-C0A160BE57F1}" = Adobe InDesign CS4 Icon Handler
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{2168245A-B5AD-40D8-A641-48E3E070B5B6}" = Adobe Flash CS4 STI-en
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2376813B-2E5A-4641-B7B3-A0D5ADB55229}" = HPPhotoSmartExpress
"{24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}" = Skype™ 4.0
"{2505571C-03B3-4F9F-AC35-33F1CB4B5E9E}_is1" = RescueTime 1.0.7
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java 6 Update 13
"{297190A1-4B0D-4CD6-8B9F-3907F15C3FD8}" = Adobe CS4 American English Speech Analysis Models
"{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3
"{2BAF2B96-7560-48B4-87D4-10178DDBE217}" = Adobe InDesign CS4 Application Feature Set Files (Roman)
"{2BC2781A-F7F6-452E-95EB-018A522F1B2C}" = PaperPort Image Printer
"{2EFFFC71-1E66-454E-A6E6-CEEC800B96D2}" = Adobe Flash Video Encoder
"{30C8AA56-4088-426F-91D1-0EDFD3A25678}" = Adobe Dreamweaver CS4
"{33711828-7194-4446-8C05-0DC0E59A0C1B}" = CANON iMAGE GATEWAY Task
"{345112D9-0930-4A68-AB71-A831BA5DE7AA}" = Microsoft IntelliType Pro 6.2
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{363790D2-DA98-41DD-9C9F-69FA36B169DE}" = PanoStandAlone
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3A6829EF-0791-4FDD-9382-C690DD0821B9}" = Adobe Flash Player 10 ActiveX
"{3AA898C1-B885-4524-9058-AE811F661027}" = VisitorVille
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{428FDF9F-E010-4C4C-A8BB-156960AFCA1C}" = Adobe Fireworks CS4
"{43509E18-076E-40FE-AF38-CA5ED400A5A9}" = Pixel Bender Toolkit
"{44E240EC-2224-4078-A88B-2CEE0D3016EF}" = Adobe After Effects CS4 Presets
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{45B8A76B-57EC-4242-B019-066400CD8428}" = BufferChm
"{45EC816C-0771-4C14-AE6D-72D1B578F4C8}" = Adobe After Effects CS4
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A52555C-032A-4083-BDD9-6A85ABFB39A8}" = Adobe SING CS4
"{4A5A427F-BA39-4BF0-9A47-9999FBE60C9F}" = Visual C++ Runtime for Dragon NaturallySpeaking
"{4DBBF091-FACD-422C-B43C-786335BD5398}" = MovieEdit Task
"{4EA684E9-5C81-4033-A696-3019EC57AC3A}" = HPProductAssistant
"{50E25180-3BDC-4B6D-80A2-3F1F0C9CF39D}" = Camera Window DVC
"{52232EF4-CC12-4C21-ABCF-ADB79618302D}" = Adobe Soundbooth CS4 Codecs
"{5417ABDC-3947-2E0D-F4E7-FE7431D2FF67}" = Seesmic Desktop
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{561968FD-56A1-49FD-9ED0-F55482C7C5BC}" = Adobe Media Encoder CS4 Exporter
"{57B2281D-A34A-4a48-8C68-169B8873659D}" = c4100_Help
"{58F4D4FD-1814-4068-B316-C28FC776C6DD}" = GoToMyPC
"{5A3F6A80-7913-475E-8B96-477A952CFA43}" = SupportSoft Assisted Service
"{5D601655-6D54-4384-B52C-17EC5385FBBD}" = iTunes
"{5EAD5443-7194-46CC-A055-428E6ABB1BAF}" = Adobe Encore CS4
"{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}" = Adobe Dynamiclink Support
"{61D6891E-E822-4448-9F9A-0AAAAEB6AF6C}" = Adobe Creative Suite 4 Master Collection
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{66910000-8B30-4973-A159-6371345AFFA5}" = WebReg
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{68763C27-235D-4165-A961-FDEA228CE504}" = AiOSoftwareNPI
"{6909F917-5499-482e-9AA1-FAD06A99F231}" = Toolbox
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6B52140A-F189-4945-BFFC-DB3F00B8C589}" = Adobe Flash CS3
"{6BBAA81D-6A7E-43AD-8889-2F002DCAAFDD}" = AHV content for Acrobat and Flash
"{6C3A75A6-9A90-44A3-A703-82AC1EA6A85D}" = Camera Window MC
"{6D8D64BE-F500-55B6-705D-DFD08AFE0624}" = Acrobat.com
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{736C803C-DD3B-4015-BC51-AFB9E67B9076}" = Readme
"{7406DF60-016D-476B-A2C7-55D997592047}" = Adobe OnLocation CS4
"{77AC2FA8-215F-4F67-90AF-59CD0375AF8B}" = ScanSoft OmniPage 16
"{793D1D88-6141-43DE-BE58-59BCE31B4090}" = Adobe Flash CS4 Extension - Flash Lite STI en
"{7ACFB90E-8FD0-4397-AD3A-5195412623A3}" = Adobe Help Viewer CS3
"{7CC7BDD5-6F10-4724-96A1-EAC7D9F2831C}" = Adobe InDesign CS4 Common Base Files
"{7E545666-F419-45FD-B3DF-C0B99A1A579F}" = QuickBooks SimpleStart Free Starter Edition
"{7E7B7865-6C80-4373-8BC1-C2EB9431F9DE}" = ProductContextNPI
"{8186FF34-D389-4B7E-9A2F-C197585BCFBD}" = Adobe Media Encoder CS4 Importer
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{82A2B13D-D95A-DCF4-382A-46E6D7C5020D}" = Twitulater
"{8331C3EA-0C91-43AA-A4D4-27221C631139}" = Status
"{8355F970-601D-442D-A79B-1D7DB4F24CAD}" = Apple Mobile Device Support
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{874E44F3-B9A7-4AA1-B4BA-83E5684ED9C6}" = PhotoStitch
"{87532CAB-7932-4F84-8937-823337622807}" = Adobe Illustrator CS4
"{8829E394-87E1-41C0-BCED-9B47F7C6DCDD}" = Serif WebPlus X2
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C5FAD77-F678-4758-A296-C12F08D179E0}" = Microsoft IntelliPoint 6.2
"{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}" = Unload
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8DC069E7-893C-41E1-9442-DE89FEC33371}" = Xobni Core
"{8EAA36CC-E2CA-44AA-B113-CD65FD0F3AC8}" = ScanSoft PaperPort 11
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{8FFC924C-ED06-44CB-8867-3CA778ECE903}" = Adobe Help Center 2.0
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PRJSTD_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_VISPRO_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_WebDesigner_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PRJSTD_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}_VISPRO_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}_WebDesigner_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_PRJSTD_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}_VISPRO_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}_WebDesigner_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0026-0000-0000-0000000FF1CE}" = Microsoft Expression Web
"{90120000-0026-0000-0000-0000000FF1CE}_WebDesigner_{9037FDA8-8383-4B6F-859D-D49C3C625225}" = Microsoft Expression Web Service Pack 1 (SP1)
"{90120000-0026-0409-0000-0000000FF1CE}" = Microsoft Expression Web MUI (English)
"{90120000-0026-0409-0000-0000000FF1CE}_WebDesigner_{E1044ED2-E4AD-4B39-B500-31109750F6B4}" = Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-003A-0000-0000-0000000FF1CE}" = Microsoft Office Project Standard 2007
"{90120000-003A-0000-0000-0000000FF1CE}_PRJSTD_{9E73617F-2F38-4864-BD61-BB2DDFE43323}" = Microsoft Office Project 2007 Service Pack 2 (SP2)
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0051-0000-0000-0000000FF1CE}" = Microsoft Office Visio Professional 2007
"{90120000-0051-0000-0000-0000000FF1CE}_VISPRO_{0FD405D3-CAF8-4CA6-8BFD-911D2F8A6585}" = Microsoft Office Visio 2007 Service Pack 2 (SP2)
"{90120000-0054-0409-0000-0000000FF1CE}" = Microsoft Office Visio MUI (English) 2007
"{90120000-0054-0409-0000-0000000FF1CE}_VISPRO_{519D9F45-CBF4-4E57-B419-11F196CCA8AE}" = Microsoft Office Visio 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_PRJSTD_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_PROPLUS_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_VISPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}_WebDesigner_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00B4-0409-0000-0000000FF1CE}" = Microsoft Office Project MUI (English) 2007
"{90120000-00B4-0409-0000-0000000FF1CE}_PRJSTD_{27A9D316-D332-433B-8EB1-1D93EE49F26D}" = Microsoft Office Project 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_PRJSTD_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}_PROPLUS_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}_VISPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}_WebDesigner_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_PROPLUS_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{901F8ED7-13E8-43EF-B738-2FE89B0588EB}" = Camera Access Library
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{937B232D-9776-471E-92BD-D424E514EF14}" = Logitech QuickCam
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{97F77B0E-DB04-4417-936C-73DDA5CDE5E1}" = Jing
"{97F81AF1-0E47-DC99-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 ATL (x86) WinSXS MSM
"{98B6FB8A-8638-4037-AD44-CF7D0EEAB875}_is1" = TypingMaster Pro
"{98CB24AD-52FB-DB5F-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 CRT (x86) WinSXS MSM
"{996512CF-F35B-48DE-9291-557FA5316967}" = ScannerCopy
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{A1D0D14A-B776-4907-BC00-5149F2298086}" = Camera Support Core Library
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A2EB8F2E-6D9B-4F8B-96EB-F976D33F416F}" = Camera Window DVC
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A420F081-EEAE-451F-8208-50F57CF2DD95}_is1" = Happy Harvester version 2.4.2.133
"{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}" = SigmaTel Audio
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A6EC82A0-1414-475D-8AFD-469089F3080D}" = Adobe Contribute CS4
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AC76BA86-1033-F400-7760-000000000004}" = Adobe Acrobat 9 Pro - English, Français, Deutsch
"{AC76BA86-1033-F400-7760-000000000004}_911" = Adobe Acrobat 9.1.1 - CPSID_49013
"{AEB9948B-4FF2-47C9-990E-47014492A0FE}" = MSXML 6.0 Parser
"{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15}" = Adobe MotionPicture Color Files CS4
"{B15381DD-FF97-4FCD-A881-ED4DB0975500}" = Adobe Color Video Profiles AE CS4
"{B169BC97-B8AA-4ACA-9CF2-9D0FF5BABDF7}" = Adobe Premiere Pro CS4 Functional Content
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B535B621-5559-11DE-A7A1-005056806466}" = Google Earth Plugin
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{B671CBFD-4109-4D35-9252-3062D3CCB7B2}" = Adobe SING CS3
"{B73CFB12-C814-4638-AFFD-7E3AAFAF0B4E}" = Adobe BridgeTalk Plugin CS3
"{B9F4561A-924D-4510-A85A-BB0960C338CB}" = Adobe Asset Services CS4
"{BAA43DA2-B6C5-46EC-B163-0E8EEAF975A4}" = RAW Image Task 2.2
"{BAF78226-3200-4DB4-BE33-4D922A799840}" = Windows Presentation Foundation
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BBBC2B89-E193-4348-A83C-C8DD8210A4AC}" = Canon PhotoRecord
"{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}" = HP Photosmart, Officejet and Deskjet 7.0.A
"{BE5F3842-8309-4754-92D5-83E02E6077A3}" = Adobe Extension Manager CS3
"{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}" = Adobe Media Encoder CS4 Additional Exporter
"{BF250D88-A8F1-B407-DA49-694C48DE0C06}" = TwitterLocal
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C1D76D7A-F3BB-47EA-A746-5B1E2FFC1DF2}" = Canon ZoomBrowser EX (E)
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C57F97C8-31C7-45D3-8F37-DB589473081F}" = Remove Duplicate Photos
"{C5BD220A-EFE8-48A5-B70E-9503D535FACE}" = Adobe WAS CS3
"{C6CA8874-5F22-4AF0-9BE3-016BF299C536}" = Windows Live Essentials
"{C78EAC6F-7A73-452E-8134-DBB2165C5A68}" = QuickTime
"{C7F54CF8-D6FB-4E0A-93A3-E68AE0D6C476}" = SolutionCenter
"{C871525F-7116-4d26-BA6D-215F59B6F88B}" = C4100
"{C8748FFB-1713-4e95-B3DF-4F1622D96F93}_is1" = UBitMenu UK
"{C8753E28-2680-49BF-BD48-DD38FD086EFE}" = AiO_Scan_CDA
"{C9294CBF-CA34-4F2C-B5B5-ABF72DED8334}" = SoSure Backup
"{C938BE91-3BB5-4B84-9EF6-88F0505D0038}" = Adobe Premiere Pro CS4 Third Party Content
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC016F21-3970-11DE-B878-005056806466}" = Google Earth
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240B7}" = WinZip 12.0
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D0E8C34D-19D2-49FD-A900-88DEB788FF86}" = Internet Library
"{D499F8DE-3F31-4900-9157-61061613704B}" = Adobe Premiere Pro CS4
"{D5A31AB1-345D-47C7-A87B-036A669F6DF1}" = Adobe XMP Panels CS3
"{DA0BF7AB-88EB-4675-8FA1-531EAD938821}" = SnagIt 8
"{DBC20735-34E6-4E97-A9E5-2066B66B243D}" = TrayApp
"{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}" = Adobe Media Encoder CS4
"{E17EF5E4-5B2E-4E1D-AF84-707D9A91A383}" = Serif WebPlus X2 Template Pack: Business & Commerce
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{E7712E53-7A7F-46EB-AA13-70D5987D30F2}" = Dragon NaturallySpeaking 10
"{E8EE9410-8AC4-4F43-A626-DDECA75C79F3}" = Adobe Setup
"{EA7B3CC4-366D-4CF6-8350-FD7A7034116E}" = Adobe InDesign CS3 Icon Handler
"{EBB7C1C1-D439-4D9B-9FDC-954C10F266B0}" = Adobe Photoshop Elements 4.0
"{EE353798-E875-42E0-B58D-7E6696182EA8}" = Adobe Media Encoder CS4 Dolby
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F157460F-720E-482f-8625-AD7843891E5F}" = InstantShareDevicesMFC
"{F3760724-B29D-465B-BC53-E5D72095BCC4}" = Scan
"{F6076EF9-08E1-442F-B6A2-BFB61B295A14}" = Fax_CDA
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{F6E99614-F042-4459-82B7-8B38B2601356}" = Adobe Flash CS4
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FB15E224-67C3-491F-9F5C-F257BC418412}" = Destinations
"{FB2A5FCC-B81B-48C2-A009-7804694D83E9}" = Adobe Encore CS4 Codecs
"{FBB980B0-63F8-4B48-8D65-90F1D9F81D9F}" = NewCopy_CDA
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"ActiveWords" = ActiveWords
"Adobe AIR" = Adobe AIR
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop Elements 4" = Adobe Photoshop Elements 4.0
"Adobe_5ac697db6c6103f6f8b5198d25f73f7" = Add or Remove Adobe Creative Suite 3 Master Collection
"Adobe_b2d6abde968e6f277ddbfd501383e02" = Adobe Creative Suite 4 Master Collection
"All ATI Software" = ATI - Software Uninstall Utility
"Artisteer 2" = Artisteer 2
"ATI Display Driver" = ATI Display Driver
"avast!" = avast! Antivirus
"BETFILTER_is1" = BETFILTER 1.0.45 build 229
"Call Graph" = Call Graph
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"Competition Dominator_is1" = Competition Dominator
"Directory Submitter_is1" = Directory Submitter 1.0.29
"ERUNT_is1" = ERUNT 1.1j
"Everything" = Everything 1.2.1.371
"Google Desktop" = Google Desktop
"Google Updater" = Google Updater
"GoToAssist Express Customer" = GoToAssist Express Customer 1.0.0.152
"HP Imaging Device Functions" = HP Imaging Device Functions 7.0
"HP Solution Center & Imaging Support Tools" = HP Solution Center 7.0
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"InstallShield_{0A146245-DB79-4197-BF5D-FE1A699A2CC7}" = Canon Camera Window DSLR 5 for ZoomBrowser EX
"InstallShield_{33711828-7194-4446-8C05-0DC0E59A0C1B}" = CANON iMAGE GATEWAY Task for ZoomBrowser EX
"InstallShield_{4DBBF091-FACD-422C-B43C-786335BD5398}" = Canon MovieEdit Task for ZoomBrowser EX
"InstallShield_{50E25180-3BDC-4B6D-80A2-3F1F0C9CF39D}" = Canon Camera Window DC_DV 6 for ZoomBrowser EX
"InstallShield_{6C3A75A6-9A90-44A3-A703-82AC1EA6A85D}" = Canon Camera Window MC 6 for ZoomBrowser EX
"InstallShield_{874E44F3-B9A7-4AA1-B4BA-83E5684ED9C6}" = Canon Utilities PhotoStitch 3.1
"InstallShield_{901F8ED7-13E8-43EF-B738-2FE89B0588EB}" = Canon Camera Access Library
"InstallShield_{A1D0D14A-B776-4907-BC00-5149F2298086}" = Canon Camera Support Core Library
"InstallShield_{A2EB8F2E-6D9B-4F8B-96EB-F976D33F416F}" = Canon Camera Window DC_DV 5 for ZoomBrowser EX
"InstallShield_{BAA43DA2-B6C5-46EC-B163-0E8EEAF975A4}" = Canon RAW Image Task for ZoomBrowser EX
"InstallShield_{D0E8C34D-19D2-49FD-A900-88DEB788FF86}" = Canon Internet Library for ZoomBrowser EX
"Intel® 537EP V9x DF PCI Modem" = Intel® 537EP V9x DF PCI Modem
"LastFM_is1" = Last.fm 1.5.4.24567
"lvdrivers_11.90" = Logitech QuickCam Driver Package
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.0.11)" = Mozilla Firefox (3.0.11)
"MSNINST" = MSN
"Net Snippets" = Net Snippets
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"oDMCam" = oDesk MiniCam 2.0.72
"oDShare" = oDesk Share 2.0.69
"oDSSnap" = oDesk ScreenSnap 2.0.111
"oDVT" = oDesk Team 2.0.121
"OverDisk" = OverDisk (remove only)
"PerfectIt_is1" = PerfectIt
"Picasa 3" = Picasa 3
"PRJSTD" = Microsoft Office Project Standard 2007
"PROPLUS" = Microsoft Office Professional Plus 2007
"PROSet" = Intel® PRO Network Connections Drivers
"Shopping Cart 3" = Shopping Cart 3
"SlimBrowser" = SlimBrowser (remove only)
"SmElis Web Previewer_is1" = SmElis Web Previewer 1.3
"SV Bookmark_is1" = SV Bookmark 2.9
"SystemRequirementsLab" = System Requirements Lab
"TopStyle3_is1" = TopStyle (Version 3)
"TR-2.2.1" = ThinkingRock-2.2.1
"VISPRO" = Microsoft Office Visio Professional 2007
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"WebDesigner" = Microsoft Expression Web
"WebPosition 4" = WebPosition 4
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
"XobniMain" = Xobni
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"AI RoboForm" = AI RoboForm
"Google Chrome" = Google Chrome
"Wakoopa" = Wakoopa
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 25/06/2009 10:48:37 | Computer Name = BUBBLES | Source = Application Hang | ID = 1002
Description = Hanging application Everything.exe, version 1.2.1.371, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 26/06/2009 05:37:19 | Computer Name = BUBBLES | Source = Application Hang | ID = 1002
Description = Hanging application java.exe, version 6.0.130.3, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 26/06/2009 10:58:47 | Computer Name = BUBBLES | Source = Application Hang | ID = 1002
Description = Hanging application SpybotSD.exe, version 1.6.2.46, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 26/06/2009 16:05:40 | Computer Name = BUBBLES | Source = Application Error | ID = 1000
Description = Faulting application dreamweaver.exe, version 10.0.0.4117, faulting
module mfc80u.dll, version 8.0.50727.762, fault address 0x00013036.
Error - 27/06/2009 02:29:02 | Computer Name = BUBBLES | Source = Microsoft Office 12 | ID = 1000
Description = Faulting application winword.exe, version 12.0.6504.5000, stamp 49e7f5b6,
faulting module msptls.dll, version 12.0.6211.1000, stamp 46ccd9ee, debug? 0, fault
address 0x00075167.
Error - 27/06/2009 02:29:23 | Computer Name = BUBBLES | Source = Microsoft Office 12 | ID = 1000
Description = Faulting application winword.exe, version 12.0.6504.5000, stamp 49e7f5b6,
faulting module wwlib.dll, version 12.0.6504.5000, stamp 49e7f5f9, debug? 0, fault
address 0x0030207b.
Error - 27/06/2009 04:13:07 | Computer Name = BUBBLES | Source = Windows Search Service | ID = 3083
Description = The protocol handler IEPH.HistoryHandler cannot be loaded. Error description:
The system cannot find the file specified. .
Error - 27/06/2009 04:13:07 | Computer Name = BUBBLES | Source = Windows Search Service | ID = 3083
Description = The protocol handler IEPH.RSSHandler cannot be loaded. Error description:
MAPI: Logon failed. .
Error - 27/06/2009 04:37:38 | Computer Name = BUBBLES | Source = Application Hang | ID = 1002
Description = Hanging application Rooter.exe, version 0.1.1.1, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 27/06/2009 04:38:46 | Computer Name = BUBBLES | Source = Application Hang | ID = 1002
Description = Hanging application Rooter.exe, version 0.1.1.1, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
[ OSession Events ]
Error - 17/06/2009 13:50:55 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 70
seconds with 60 seconds of active time. This session ended with a crash.
Error - 17/06/2009 17:11:44 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 2391
seconds with 300 seconds of active time. This session ended with a crash.
Error - 18/06/2009 11:27:35 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 28893
seconds with 1260 seconds of active time. This session ended with a crash.
Error - 18/06/2009 11:28:00 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 5
seconds with 0 seconds of active time. This session ended with a crash.
Error - 19/06/2009 02:27:58 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 86
seconds with 60 seconds of active time. This session ended with a crash.
Error - 21/06/2009 02:59:38 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 51031
seconds with 360 seconds of active time. This session ended with a crash.
Error - 21/06/2009 13:21:01 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 16597
seconds with 120 seconds of active time. This session ended with a crash.
Error - 23/06/2009 11:38:05 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 19019
seconds with 2460 seconds of active time. This session ended with a crash.
Error - 27/06/2009 02:28:57 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 381
seconds with 120 seconds of active time. This session ended with a crash.
Error - 27/06/2009 02:29:22 | Computer Name = BUBBLES | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 16
seconds with 0 seconds of active time. This session ended with a crash.
[ System Events ]
Error - 02/05/2009 04:12:59 | Computer Name = BUBBLES | Source = Service Control Manager | ID = 7031
Description = The Windows Search service terminated unexpectedly. It has done this
1 time(s). The following corrective action will be taken in 30000 milliseconds:
Restart the service.
Error - 04/05/2009 00:48:38 | Computer Name = BUBBLES | Source = Tivoli CDP for Files | ID = 6000
Description = FilePath ERROR InitialCondition: Could not create [M:\RealTimeBackup\]
5053
Error - 05/05/2009 00:03:23 | Computer Name = BUBBLES | Source = Tivoli CDP for Files | ID = 6000
Description = FilePath ERROR InitialCondition: Could not create [M:\RealTimeBackup\]
5053
Error - 05/05/2009 04:30:31 | Computer Name = BUBBLES | Source = Tivoli CDP for Files | ID = 6000
Description = FilePath ERROR InitialCondition: Could not create [M:\RealTimeBackup\]
5053
Error - 08/05/2009 05:11:11 | Computer Name = BUBBLES | Source = Service Control Manager | ID = 7031
Description = The Windows Search service terminated unexpectedly. It has done this
1 time(s). The following corrective action will be taken in 30000 milliseconds:
Restart the service.
Error - 10/05/2009 06:50:49 | Computer Name = BUBBLES | Source = Service Control Manager | ID = 7031
Description = The Windows Search service terminated unexpectedly. It has done this
1 time(s). The following corrective action will be taken in 30000 milliseconds:
Restart the service.
Error - 10/05/2009 07:12:59 | Computer Name = BUBBLES | Source = Service Control Manager | ID = 7031
Description = The Windows Search service terminated unexpectedly. It has done this
2 time(s). The following corrective action will be taken in 30000 milliseconds:
Restart the service.
Error - 11/05/2009 18:35:08 | Computer Name = BUBBLES | Source = Service Control Manager | ID = 7031
Description = The Windows Search service terminated unexpectedly. It has done this
1 time(s). The following corrective action will be taken in 30000 milliseconds:
Restart the service.
Error - 11/05/2009 18:36:57 | Computer Name = BUBBLES | Source = Service Control Manager | ID = 7031
Description = The Windows Search service terminated unexpectedly. It has done this
2 time(s). The following corrective action will be taken in 30000 milliseconds:
Restart the service.
Error - 11/05/2009 18:37:51 | Computer Name = BUBBLES | Source = Service Control Manager | ID = 7034
Description = The Pml Driver HPZ12 service terminated unexpectedly. It has done
this 1 time(s).
< End of report >
Rooter.exe (v1.0.2) by Eric_71
.
SeDebugPrivilege granted successfully ...
.
Windows XP . (5.1.2600) Service Pack 3
[32_bits] - x86 Family 15 Model 4 Stepping 4, GenuineIntel
.
[wscsvc] (Security Center) RUNNING (state:4)
[SharedAccess] RUNNING (state:4)
Windows Firewall -> Enabled
.
Internet Explorer 8.0.6001.18702
Mozilla Firefox 3.0.11 (en-GB)
.
C:\ [Fixed-NTFS] .. ( Total:232 Go - Free:152 Go )
D:\ [CD_Rom]
E:\ [CD_Rom]
F:\ [Fixed-NTFS] .. ( Total:232 Go - Free:162 Go )
G:\ [Removable]
H:\ [Removable]
I:\ [Removable]
J:\ [Removable]
L:\ [Removable]
.
Scan : 09:39.44
Path : C:\Documents and Settings\Denise\Desktop\Rooter.exe
User : Denise ( Administrator -> YES )
.
----------------------
Rooter2 Log
\\ Processes
.
Locked [System Process] (0)
______ System (4)
______ \SystemRoot\System32\smss.exe (660)
______ \??\C:\WINDOWS\system32\csrss.exe (736)
______ \??\C:\WINDOWS\system32\winlogon.exe (764)
______ C:\WINDOWS\system32\services.exe (820)
______ C:\WINDOWS\system32\lsass.exe (832)
______ C:\WINDOWS\system32\Ati2evxx.exe (1000)
______ C:\WINDOWS\system32\svchost.exe (1016)
______ C:\WINDOWS\system32\svchost.exe (1108)
______ C:\WINDOWS\System32\svchost.exe (1204)
______ C:\WINDOWS\system32\svchost.exe (1300)
______ C:\WINDOWS\system32\svchost.exe (1396)
______ C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (1460)
______ C:\Program Files\Alwil Software\Avast4\ashServ.exe (1512)
______ C:\WINDOWS\system32\spoolsv.exe (1840)
______ C:\WINDOWS\system32\svchost.exe (524)
______ C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe (560)
______ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (568)
______ C:\Program Files\Bonjour\mDNSResponder.exe (668)
______ C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (724)
______ C:\Program Files\Citrix\GoToMyPC\g2svc.exe (1276)
______ C:\Program Files\Citrix\GoToMyPC\g2comm.exe (1328)
______ C:\Program Files\Citrix\GoToMyPC\g2pre.exe (1420)
______ C:\Program Files\Google\Update\GoogleUpdate.exe (1648)
______ C:\Program Files\Java\jre6\bin\jqs.exe (1968)
______ C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (236)
______ C:\WINDOWS\system32\HPZipm12.exe (296)
______ C:\Program Files\Citrix\GoToMyPC\g2tray.exe (452)
______ C:\Program Files\SoSure Backup\configservice.exe (860)
______ C:\WINDOWS\system32\svchost.exe (2108)
______ C:\WINDOWS\system32\wdfmgr.exe (2204)
______ C:\WINDOWS\system32\SearchIndexer.exe (2272)
______ C:\Program Files\Xobni\XobniService.exe (2372)
______ C:\Program Files\Canon\CAL\CALMAIN.exe (2944)
______ C:\Program Files\SoSure Backup\licenseservice.exe (3008)
______ C:\Program Files\SoSure Backup\updateservice.exe (3104)
______ C:\WINDOWS\Explorer.EXE (3192)
______ C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (3320)
______ C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (3424)
______ C:\WINDOWS\System32\alg.exe (3700)
______ C:\WINDOWS\system32\CTHELPER.EXE (3808)
______ C:\WINDOWS\system32\CTXFIHLP.EXE (3840)
______ C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (3964)
______ C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe (3184)
______ C:\WINDOWS\SYSTEM32\CTXFISPI.EXE (1992)
______ C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (3300)
______ C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (2148)
______ C:\Program Files\Logitech\QuickCam\Quickcam.exe (3164)
______ C:\Program Files\Microsoft IntelliType Pro\itype.exe (2528)
______ C:\Program Files\Microsoft IntelliPoint\ipoint.exe (2740)
______ C:\Program Files\Java\jre6\bin\jusched.exe (2936)
______ C:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe (2956)
______ C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe (4088)
______ C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (2056)
______ C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe (1312)
______ C:\WINDOWS\system32\ctfmon.exe (2200)
______ C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe (3816)
______ C:\Documents and Settings\Denise\Local Settings\Application Data\Google\Update\GoogleUpdate.exe (3908)
______ C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe (3952)
______ C:\Program Files\Messenger\msmsgs.exe (1744)
______ C:\Program Files\Wakoopa\Wakoopa.exe (3512)
______ C:\Program Files\Skype\Phone\Skype.exe (2220)
______ C:\Program Files\Google\Google Desktop Search\GoogleDesktopDisplay.exe (1756)
______ C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (3928)
______ C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe (4196)
______ C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (4272)
______ C:\Program Files\Windows Desktop Search\WindowsSearch.exe (4400)
______ C:\Program Files\Nuance\NaturallySpeaking10\Program\natspeak.exe (4496)
______ C:\Program Files\Evernote\Evernote3\EvernoteTray.exe (4736)
______ C:\Program Files\Texter\texter.exe (4900)
______ C:\Program Files\Skype\Plugin Manager\skypePM.exe (4460)
______ C:\Program Files\Mozilla Firefox\firefox.exe (4664)
______ C:\WINDOWS\system32\SearchProtocolHost.exe (900)
______ C:\WINDOWS\system32\SearchFilterHost.exe (5112)
______ C:\Documents and Settings\Denise\Desktop\Rooter.exe (4604)
______ C:\WINDOWS\system32\NOTEPAD.EXE (6036)
.
----------------------\\ Device\Harddisk0\
.
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
.
\Device\Harddisk0\Partition1 --[ MBR ]-- (Start_Offset:32256 | Length:249990902784)
.
----------------------\\ Scheduled Tasks
.
C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
C:\WINDOWS\Tasks\desktop.ini
C:\WINDOWS\Tasks\Google Software Updater.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachine.job
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-861567501-1417001333-839522115-1003.job
C:\WINDOWS\Tasks\NatSpeak Periodic Acoustic Optimization.job
C:\WINDOWS\Tasks\NatSpeak Periodic Language Model Optimization.job
C:\WINDOWS\Tasks\SA.DAT
.
----------------------\\ Registry
.
.
----------------------\\ Files & Folders
.
----------------------\\ Scan completed at 09:40.05
.
C:\Rooter$\Rooter_2.txt - (27/06/2009 | 09:40.05)
-----------------
many thanks in advance for your help
Edited by DeniseBarcroft, 30 June 2009 - 02:25 AM.