Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

cannot access task manager


  • Please log in to reply

#1
yumitsui123

yumitsui123

    New Member

  • Member
  • Pip
  • 1 posts
I need help i cannot access task manager i cannot open the add or remove programs, i cannot open the properties when i right click the desktop the one used to change background and stuff and i also cannot open regedit. It says that it has been blocked by the administrator. Please help.

OTL logfile created on: 11/6/2010 7:55:59 PM - Run 1
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Documents and Settings\Yu\My Documents\Downloads
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 63.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 85.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.52 Gb Total Space | 8.82 Gb Free Space | 11.83% Space Free | Partition Type: NTFS

Computer Name: YU-55A9CCF79880 | User Name: Yu | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2010/11/06 19:55:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Yu\My Documents\Downloads\OTL.exe
PRC - [2010/11/06 12:00:14 | 000,011,776 | ---- | M] () -- C:\DOCUME~1\Yu\LOCALS~1\Temp\lnfe.exe
PRC - [2010/11/06 12:00:06 | 000,030,720 | ---- | M] () -- C:\DOCUME~1\Yu\LOCALS~1\Temp\winxdsgu.exe
PRC - [2010/11/01 14:36:03 | 001,056,824 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Yu\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2010/10/06 18:39:57 | 000,405,880 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\uTorrent\uTorrent.exe
PRC - [2010/10/06 16:13:31 | 000,202,256 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2010/10/03 22:11:34 | 000,932,864 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\Downloads\xpadder_gamepad_profiler\Xpadder.exe
PRC - [2010/10/01 07:43:14 | 000,057,624 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\QueryExplorer\queryexplorer117.exe
PRC - [2010/10/01 07:43:14 | 000,057,624 | ---- | M] () -- C:\Program Files\QueryExplorer\queryexplorer.exe
PRC - [2010/09/28 15:42:48 | 000,740,144 | ---- | M] (Pinball Corporation.) -- C:\Program Files\ClickPotatoLite\bin\10.0.530.0\ClickPotatoLiteSA.exe
PRC - [2010/04/01 02:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2009/09/30 17:57:20 | 000,718,688 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe
PRC - [2008/12/04 20:28:28 | 000,303,104 | R-S- | M] () -- C:\WINDOWS\system\KEYBOARD.exe
PRC - [2008/12/04 20:28:28 | 000,225,280 | R-S- | M] () -- C:\WINDOWS\System32\dllcache\Recycler.{645FF040-5081-101B-9F08-00AA002F954E}\system.exe
PRC - [2008/12/04 20:28:28 | 000,225,280 | R-S- | M] () -- C:\WINDOWS\System32\dllcache\Recycler.{645FF040-5081-101B-9F08-00AA002F954E}\svchost.exe
PRC - [2008/12/04 20:28:28 | 000,225,280 | R-S- | M] () -- C:\WINDOWS\Fonts\Fonts.exe
PRC - [2008/12/04 20:28:28 | 000,225,280 | RHS- | M] () -- C:\WINDOWS\System32\dllcache\Recycler.{645FF040-5081-101B-9F08-00AA002F954E}\Global.exe
PRC - [2008/12/03 14:55:44 | 002,158,592 | ---- | M] () -- C:\Program Files\Vtune\TBPanel.exe
PRC - [2008/07/03 00:57:44 | 001,033,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE


========== Modules (SafeList) ==========

MOD - [2010/11/06 19:55:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Yu\My Documents\Downloads\OTL.exe
MOD - [2010/10/01 07:43:52 | 000,577,536 | ---- | M] () -- C:\Program Files\QueryExplorer\queryexplorer.dll
MOD - [2006/08/25 03:45:56 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [On_Demand | Stopped] -- -- (MSDTC)
SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\hidserv.dll -- (HidServ)
SRV - [2010/10/01 07:43:14 | 000,057,624 | ---- | M] () [Auto | Running] -- C:\Documents and Settings\All Users\Application Data\QueryExplorer\queryexplorer117.exe -- (QueryExplorer Service)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Yu\LOCALS~1\Temp\EagleNT.sys -- (EagleNT)
DRV - File not found [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\nvmmfg.sys -- (asc3360pr)
DRV - [2010/10/02 15:00:10 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010/02/11 04:08:25 | 000,226,880 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tcpip6.sys -- (Tcpip6)
DRV - [2009/09/09 18:24:14 | 000,062,424 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\xusb21.sys -- (xusb21)
DRV - [2008/12/03 00:35:49 | 006,188,320 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2008/11/25 09:37:50 | 004,952,576 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2008/08/07 12:14:00 | 000,111,360 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2007/03/16 10:11:38 | 000,012,256 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2007/03/16 10:11:38 | 000,012,256 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex)
DRV - [2005/01/07 13:07:18 | 000,138,752 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2004/08/13 19:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2004/08/04 03:00:00 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004/08/04 03:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2004/08/04 03:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/10/02 13:11:40 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\ShopperReports@ShopperReports.com: C:\Program Files\ShopperReports3\bin\3.0.497.0\firefox\firefoxtoolbar\extensions [2010/10/02 19:58:15 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\ClickPotatoLite@ClickPotatoLite.com: C:\Program Files\ClickPotatoLite\bin\10.0.530.0\firefox\extensions [2010/10/02 19:58:30 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2004/08/04 03:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (ShopperReports) - {100EB1FD-D03E-47fd-81F3-EE91287F9465} - C:\Program Files\ShopperReports3\bin\3.0.497.0\ShopperReports.dll (SmartShopper Inc.)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O4 - HKLM..\Run: [] C:\WINDOWS\system\KEYBOARD.exe ()
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [ClickPotatoLiteSA] C:\Program Files\ClickPotatoLite\bin\10.0.530.0\ClickPotatoLiteSA.exe (Pinball Corporation.)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [XboxStat] c:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe (Microsoft Corporation)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [TBPanel] C:\Program Files\Vtune\TBPanel.exe ()
O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKCU..\Run: [Xpadder] C:\Documents and Settings\Yu\My Documents\Downloads\xpadder_gamepad_profiler\Xpadder.exe ()
O4 - HKLM..\RunOnce: [] C:\WINDOWS\System32\dllcache\Default.exe ()
O4 - HKCU..\RunOnce: [] C:\WINDOWS\System32\dllcache\Default.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: sys = C:\WINDOWS\Fonts\Fonts.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O9 - Extra Button: ClickPotato - {B58926D6-CFB0-45d2-9C28-4B5A0F0368AE} - C:\Program Files\ClickPotatoLite\bin\10.0.530.0\ClickPotatoLiteSABHO.dll (Pinball Corporation)
O9 - Extra Button: ShopperReports - Compare product prices - {C5428486-50A0-4a02-9D20-520B59A9F9B2} - C:\Program Files\ShopperReports3\bin\3.0.497.0\ShopperReports.dll (SmartShopper Inc.)
O9 - Extra Button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\Program Files\ShopperReports3\bin\3.0.497.0\ShopperReports.dll (SmartShopper Inc.)
O9 - Extra Button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_21)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 124.106.6.2 124.106.7.2
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Yu\Application Data\Microsoft\Windows Live Photo Gallery\Windows Live Photo Gallery Wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Yu\Application Data\Microsoft\Windows Live Photo Gallery\Windows Live Photo Gallery Wallpaper.bmp
O27 - HKLM IFEO\auto.exe: Debugger - C:\WINDOWS\system32\drivers\drivers.cab.exe ()
O27 - HKLM IFEO\autorun.exe: Debugger - C:\WINDOWS\system32\drivers\drivers.cab.exe ()
O27 - HKLM IFEO\autoruns.exe: Debugger - C:\WINDOWS\system32\drivers\drivers.cab.exe ()
O27 - HKLM IFEO\boot.exe: Debugger - C:\WINDOWS\Fonts\fonts.exe ()
O27 - HKLM IFEO\ctfmon.exe: Debugger - C:\WINDOWS\Fonts\Fonts.exe ()
O27 - HKLM IFEO\msconfig.exe: Debugger - C:\WINDOWS\Media\rndll32.pif ()
O27 - HKLM IFEO\ProcessManager.exe: Debugger - C:\WINDOWS\pchealth\helpctr\binaries\HelpHost.com ()
O27 - HKLM IFEO\procexp.exe: Debugger - C:\WINDOWS\pchealth\helpctr\binaries\HelpHost.com ()
O27 - HKLM IFEO\rundll32.exe: Debugger - C:\WINDOWS\Fonts\Fonts.exe ()
O27 - HKLM IFEO\taskmgr.exe: Debugger - C:\WINDOWS\Fonts\tskmgr.exe ()
O30 - LSA: Authentication Packages - (nwprovau) - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/10/02 12:54:50 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010/11/06 19:52:06 | 000,000,118 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{53b90d65-de41-11df-a87f-00248cc9d51b}\Shell - "" = AutoRun
O33 - MountPoints2\{53b90d65-de41-11df-a87f-00248cc9d51b}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{53b90d65-de41-11df-a87f-00248cc9d51b}\Shell\Explore\command - "" = F:\MS-DOS.com -- File not found
O33 - MountPoints2\{53b90d65-de41-11df-a87f-00248cc9d51b}\Shell\Open\command - "" = F:\MS-DOS.com -- File not found
O33 - MountPoints2\{6b71edee-ce1d-11df-9eec-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{6b71edee-ce1d-11df-9eec-806d6172696f}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{6b71edee-ce1d-11df-9eec-806d6172696f}\Shell\Explore\command - "" = C:\MS-DOS.com -- [2008/12/04 20:28:28 | 000,294,912 | RHS- | M] ()
O33 - MountPoints2\{6b71edee-ce1d-11df-9eec-806d6172696f}\Shell\Open\command - "" = C:\MS-DOS.com -- [2008/12/04 20:28:28 | 000,294,912 | RHS- | M] ()
O33 - MountPoints2\{9de18fcb-e557-11df-a88b-00248cc9d51b}\Shell - "" = AutoRun
O33 - MountPoints2\{9de18fcb-e557-11df-a88b-00248cc9d51b}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{9de18fcb-e557-11df-a88b-00248cc9d51b}\Shell\Explore\command - "" = F:\MS-DOS.com -- File not found
O33 - MountPoints2\{9de18fcb-e557-11df-a88b-00248cc9d51b}\Shell\Open\command - "" = F:\MS-DOS.com -- File not found
O33 - MountPoints2\{c1502f8a-d212-11df-a856-00248cc9d51b}\Shell - "" = AutoRun
O33 - MountPoints2\{c1502f8a-d212-11df-a856-00248cc9d51b}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{c1502f8a-d212-11df-a856-00248cc9d51b}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010/11/06 14:09:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\turtle [bleep]
[2010/11/05 16:45:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\okinawa lion
[2010/11/04 23:33:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\New Folder (2)
[2010/11/01 23:06:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\Unused Desktop Shortcuts
[2010/11/01 22:36:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\linkythingamajiga
[2010/10/31 20:47:20 | 000,000,000 | ---D | C] -- C:\Program Files\dsemu
[2010/10/30 16:42:07 | 000,679,936 | ---- | C] (Generated by JEDI) -- C:\WINDOWS\System32\D3DX81ab.dll
[2010/10/30 16:42:07 | 000,000,000 | ---D | C] -- C:\Program Files\Cheat Engine
[2010/10/28 18:35:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\My Documents\Heroes of Newerth
[2010/10/28 18:34:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\My Documents\GarenaMessenger
[2010/10/28 18:32:38 | 000,000,000 | ---D | C] -- C:\Program Files\Garena Messenger
[2010/10/28 14:47:48 | 000,323,648 | ---- | C] (Level Up! Inc. ) -- C:\Documents and Settings\Yu\Desktop\KOS_Setup_20100701.exe
[2010/10/24 22:49:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Application Data\.minecraft
[2010/10/23 22:12:12 | 000,000,000 | ---D | C] -- C:\Program Files\Steinberg
[2010/10/22 20:51:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\to be sent
[2010/10/22 20:39:11 | 000,000,000 | -HSD | C] -- C:\WINDOWS\System32\dllcache\Recycler.{645FF040-5081-101B-9F08-00AA002F954E}
[2010/10/22 18:03:21 | 000,000,000 | ---D | C] -- C:\Program Files\d-lusion
[2010/10/21 15:59:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Application Data\Antares
[2010/10/21 15:59:44 | 000,000,000 | ---D | C] -- C:\Program Files\Antares Audio Technologies
[2010/10/21 15:10:36 | 000,000,000 | ---D | C] -- C:\Program Files\ASIO4ALL v2
[2010/10/21 15:10:28 | 000,225,280 | ---- | C] (Propellerhead Software AB) -- C:\WINDOWS\System32\rewire.dll
[2010/10/21 15:10:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\My Documents\Image-Line
[2010/10/21 15:10:03 | 000,000,000 | ---D | C] -- C:\Program Files\VstPlugins
[2010/10/21 15:10:00 | 000,000,000 | ---D | C] -- C:\Program Files\Outsim
[2010/10/21 15:07:29 | 000,000,000 | ---D | C] -- C:\Program Files\Image-Line
[2010/10/17 20:14:55 | 000,000,000 | ---D | C] -- C:\Program Files\zsnes
[2010/10/17 15:44:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Application Data\Garena
[2010/10/13 00:51:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2010/10/12 23:22:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\New Folder
[2010/10/12 02:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Level Up Games
[2010/10/11 22:16:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\wawa
[2010/10/11 19:33:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Desktop\Allods Online
[2010/10/11 19:33:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Local Settings\Application Data\PMB Files
[2010/10/11 19:33:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PMB Files
[2010/10/11 19:32:07 | 000,000,000 | ---D | C] -- C:\Program Files\Pando Networks
[2010/10/10 21:45:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Application Data\Dev-Cpp
[2010/10/10 21:45:36 | 000,000,000 | ---D | C] -- C:\Dev-Cpp
[2010/10/10 08:53:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DivX
[2010/10/10 08:27:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Application Data\AskToolbar
[2010/10/10 08:27:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Local Settings\Application Data\AskToolbar
[2010/10/08 19:03:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yu\Local Settings\Application Data\Adobe
[2010/10/08 19:01:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2010/10/08 19:01:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010/10/08 19:01:10 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/11/06 19:52:06 | 000,000,118 | RHS- | M] () -- C:\WINDOWS\System32\dllcache\autorun.inf
[2010/11/06 19:52:06 | 000,000,118 | RHS- | M] () -- C:\autorun.inf
[2010/11/06 19:48:39 | 000,030,208 | ---- | M] () -- C:\Documents and Settings\Yu\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/11/06 19:34:00 | 000,000,966 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-1303643608-725345543-1003UA.job
[2010/11/06 19:01:00 | 000,000,228 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2010/11/06 17:42:30 | 000,002,261 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\Google Chrome.lnk
[2010/11/06 17:42:30 | 000,002,239 | ---- | M] () -- C:\Documents and Settings\Yu\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/11/06 15:47:03 | 000,022,780 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\henp.jpg
[2010/11/06 11:56:28 | 000,000,272 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1708537768-1303643608-725345543-1003.job
[2010/11/06 11:56:26 | 000,000,280 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1708537768-1303643608-725345543-1003.job
[2010/11/06 11:54:06 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/11/06 11:54:03 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/11/05 23:28:06 | 000,345,559 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\6a00e54ee8a8ff883300e55299d6a88834-800wi.jpg
[2010/11/05 17:08:51 | 000,788,692 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\Doc1.docx
[2010/11/05 06:34:00 | 000,000,914 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-1303643608-725345543-1003Core.job
[2010/11/04 23:42:14 | 000,024,576 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\Price list.doc
[2010/11/04 23:41:13 | 000,012,171 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\Price list.docx
[2010/11/04 23:36:49 | 000,012,169 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\COCO NECKLACEHC.docx
[2010/11/02 14:29:44 | 000,314,838 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/11/02 14:29:44 | 000,041,040 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/11/02 13:01:21 | 000,203,188 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010/11/01 23:07:45 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\Shortcut to VisualBoyAdvance.lnk
[2010/10/30 16:42:09 | 000,000,670 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\Cheat Engine.lnk
[2010/10/29 01:00:06 | 000,000,096 | -H-- | M] () -- C:\WINDOWS\System32\HsInfo.dat
[2010/10/28 18:33:32 | 000,001,703 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\HoN.lnk
[2010/10/28 18:33:32 | 000,000,773 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\GarenaMessenger.lnk
[2010/10/28 16:01:07 | 423,201,477 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\KOS_Setup_20100701-1a.bin
[2010/10/28 14:48:01 | 000,323,648 | ---- | M] (Level Up! Inc. ) -- C:\Documents and Settings\Yu\Desktop\KOS_Setup_20100701.exe
[2010/10/25 00:35:23 | 000,203,795 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\asdas.mine
[2010/10/21 15:10:28 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\FL Studio 9.lnk
[2010/10/18 00:48:20 | 000,000,645 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\Shortcut to zsnesw.lnk
[2010/10/14 03:15:23 | 000,048,450 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\Worksheets.docx
[2010/10/13 08:49:12 | 000,181,904 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\RESEARCH presentation.pptx
[2010/10/12 06:10:23 | 000,075,165 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\History 1 - The contiuning resistance.pptx
[2010/10/12 05:24:04 | 000,026,257 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\asa2.jpg
[2010/10/12 05:23:13 | 000,034,234 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\asa.jpg
[2010/10/12 02:57:27 | 000,123,479 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\Presentation1.pptx
[2010/10/11 23:08:09 | 001,756,927 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\MITSUI-cs11project.pptx
[2010/10/11 14:16:32 | 000,011,610 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\editor's note.docx
[2010/10/10 21:49:28 | 000,000,116 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\Untitled1.cpp
[2010/10/10 21:48:52 | 000,626,718 | ---- | M] () -- C:\Documents and Settings\Yu\My Documents\Untitled1.exe
[2010/10/10 21:45:55 | 000,000,519 | ---- | M] () -- C:\Documents and Settings\Yu\Application Data\Microsoft\Internet Explorer\Quick Launch\Dev-C++.lnk
[2010/10/08 08:05:32 | 000,330,688 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/10/08 02:31:24 | 000,047,804 | ---- | M] () -- C:\Documents and Settings\Yu\Desktop\770316-goliath_1_super.jpg
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/11/06 15:47:06 | 000,022,780 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\henp.jpg
[2010/11/05 23:28:12 | 000,345,559 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\6a00e54ee8a8ff883300e55299d6a88834-800wi.jpg
[2010/11/05 17:08:50 | 000,788,692 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\Doc1.docx
[2010/11/04 23:42:14 | 000,024,576 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\Price list.doc
[2010/11/04 23:41:13 | 000,012,171 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\Price list.docx
[2010/11/04 23:36:49 | 000,012,169 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\COCO NECKLACEHC.docx
[2010/11/01 23:07:45 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\Shortcut to VisualBoyAdvance.lnk
[2010/10/30 16:42:09 | 000,000,670 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\Cheat Engine.lnk
[2010/10/30 16:42:07 | 001,970,176 | ---- | C] () -- C:\WINDOWS\System32\d3dx9.dll
[2010/10/28 18:33:32 | 000,001,703 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\HoN.lnk
[2010/10/28 18:33:32 | 000,000,773 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\GarenaMessenger.lnk
[2010/10/28 14:48:00 | 423,201,477 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\KOS_Setup_20100701-1a.bin
[2010/10/24 23:17:01 | 000,203,795 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\asdas.mine
[2010/10/22 20:39:17 | 000,294,912 | RHS- | C] () -- C:\MS-DOS.com
[2010/10/22 20:39:17 | 000,000,118 | RHS- | C] () -- C:\autorun.inf
[2010/10/22 20:39:11 | 000,303,104 | R-S- | C] () -- C:\WINDOWS\System\KEYBOARD.exe
[2010/10/22 20:39:11 | 000,303,104 | R-S- | C] () -- C:\WINDOWS\System32\dllcache\Default.exe
[2010/10/22 20:39:11 | 000,225,280 | R-S- | C] () -- C:\WINDOWS\Fonts\tskmgr.exe
[2010/10/22 20:39:11 | 000,225,280 | R-S- | C] () -- C:\WINDOWS\System32\dllcache\Recycler.{645FF040-5081-101B-9F08-00AA002F954E}\system.exe
[2010/10/22 20:39:11 | 000,225,280 | R-S- | C] () -- C:\WINDOWS\System32\dllcache\Recycler.{645FF040-5081-101B-9F08-00AA002F954E}\svchost.exe
[2010/10/22 20:39:11 | 000,225,280 | R-S- | C] () -- C:\WINDOWS\System32\regedit.exe
[2010/10/22 20:39:11 | 000,225,280 | R-S- | C] () -- C:\WINDOWS\System32\dllcache\Global.exe
[2010/10/22 20:39:11 | 000,225,280 | R-S- | C] () -- C:\WINDOWS\Fonts\Fonts.exe
[2010/10/22 20:39:11 | 000,225,280 | R-S- | C] () -- C:\WINDOWS\System32\drivers\drivers.cab.exe
[2010/10/22 20:39:11 | 000,225,280 | RHS- | C] () -- C:\WINDOWS\System32\dllcache\Recycler.{645FF040-5081-101B-9F08-00AA002F954E}\Global.exe
[2010/10/22 20:39:11 | 000,000,118 | RHS- | C] () -- C:\WINDOWS\System32\dllcache\autorun.inf
[2010/10/21 15:10:28 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\FL Studio 9.lnk
[2010/10/18 00:48:20 | 000,000,645 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\Shortcut to zsnesw.lnk
[2010/10/14 03:15:22 | 000,048,450 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\Worksheets.docx
[2010/10/12 06:02:27 | 000,075,165 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\History 1 - The contiuning resistance.pptx
[2010/10/12 05:24:04 | 000,026,257 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\asa2.jpg
[2010/10/12 05:23:13 | 000,034,234 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\asa.jpg
[2010/10/12 04:53:20 | 000,181,904 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\RESEARCH presentation.pptx
[2010/10/12 02:52:21 | 000,123,479 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\Presentation1.pptx
[2010/10/11 23:00:40 | 001,756,927 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\MITSUI-cs11project.pptx
[2010/10/10 21:47:32 | 000,626,718 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\Untitled1.exe
[2010/10/10 21:47:31 | 000,000,116 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\Untitled1.cpp
[2010/10/10 21:45:55 | 000,000,519 | ---- | C] () -- C:\Documents and Settings\Yu\Application Data\Microsoft\Internet Explorer\Quick Launch\Dev-C++.lnk
[2010/10/10 21:19:18 | 000,011,610 | ---- | C] () -- C:\Documents and Settings\Yu\My Documents\editor's note.docx
[2010/10/08 02:31:24 | 000,047,804 | ---- | C] () -- C:\Documents and Settings\Yu\Desktop\770316-goliath_1_super.jpg
[2010/10/04 18:40:04 | 000,030,208 | ---- | C] () -- C:\Documents and Settings\Yu\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/10/02 15:00:10 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010/10/02 13:16:36 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2010/10/02 13:16:22 | 000,023,105 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2010/10/02 13:16:22 | 000,010,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2010/10/02 13:08:19 | 000,000,731 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2010/10/02 05:44:17 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008/12/03 00:35:49 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2008/12/03 00:35:49 | 001,486,848 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2008/12/03 00:35:49 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2008/12/03 00:35:49 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2008/10/07 09:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008/10/07 09:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008/10/07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2005/12/08 00:19:22 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\EGamesPlugin.dll
[2005/12/08 00:19:22 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\EGameEncrypt.dll

========== LOP Check ==========

[2010/10/02 19:58:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65
[2010/11/06 16:26:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ClickPotatoLiteSA
[2010/10/02 15:00:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2010/10/03 17:12:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nexon
[2010/10/11 19:33:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PMB Files
[2010/10/02 20:01:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\QueryExplorer
[2010/10/24 23:20:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\.minecraft
[2010/10/21 15:59:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\Antares
[2010/10/10 08:27:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\AskToolbar
[2010/10/02 19:58:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\ClickPotatoLite
[2010/10/02 15:06:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\DAEMON Tools Lite
[2010/10/10 21:50:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\Dev-Cpp
[2010/10/03 17:07:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\DragonicaSCB
[2010/10/17 15:44:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\Garena
[2010/10/03 19:06:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\ShopperReports3
[2010/11/06 19:57:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yu\Application Data\uTorrent
[2010/11/06 19:01:00 | 000,000,228 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 88 bytes -> C:\Documents and Settings\Yu\My Documents\Downloads\xpadder_gamepad_profiler\Xpadder.exe:SummaryInformation

< End of report >
  • 0

Advertisements


#2
edge2022

edge2022

    Member 2k

  • Member
  • PipPipPipPipPip
  • 2,117 posts
If you suspect a malware problem, go here: http://www.geekstogo...cleaning-guide/
And follow the instructions to create a new topic in the malware forum. Let a malware tech clean you up, and when they give you a clean bill of health, you can post back here if you have any more problems.
Thanks :D
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP