I have no idea what is wrong with my computer, or what type of malware/virus (or combination) I originally had, but after attempting to remove it, possibly even successfully removing it, with Malwarebytes Anti Malware my computer now takes an excessively long time to start up (it stays on the blue Windows "Welcome" screen for 30+ minutes before moving on to the desktop screen). And when it does finally get to the desktop I get an error message that says C:\WINDOWS\wowuwmg.DLL File not found. Also, I don't know if this is related or just an unfortunate coincidence, when I try to plug my USB flash drive into any of the USB ports, my computer doesn't see it.
When I ran the original Anti Malware scan it may have said something at the end about having trouble removing something, but I can't remember exactly what it said, except that it wanted me to reboot my computer to finish the removal process. It was on that reboot that I first began having the 30+ minute start up time. I scanned several more times with Anti Malware & found a couple more things that it removed & I hoped that would fix it, but no luck. When I run it now it says no threats found, but I'm still having the start up problems & getting the error message, so I don't know if that just means I have something it can't find, or if I did something wrong when initally removing things. My OTL log is below, but if you need additional info (like the logs from the Anti Malware scans) let me know.
I am eternally grateful for any help you can provide.
Thanks,
AE
++++++++++++++++++++++++++++++++++++++++
OTL logfile created on: 11/13/2010 2:29:59 PM - Run 1
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Documents and Settings\Amy Grace\My Documents
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,015.00 Mb Total Physical Memory | 423.00 Mb Available Physical Memory | 42.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 83.00% Paging File free
Paging file location(s): C:\pagefile.sys 1522 1522 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 81.65 Gb Total Space | 29.45 Gb Free Space | 36.07% Space Free | Partition Type: NTFS
Drive D: | 62.47 Gb Total Space | 62.40 Gb Free Space | 99.89% Space Free | Partition Type: NTFS
Computer Name: AMYGRACE | User Name: Amy Grace | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2010/11/13 14:29:07 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Amy Grace\My Documents\OTL.exe
PRC - [2010/09/07 10:12:02 | 002,838,912 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2010/09/07 10:11:59 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2010/03/25 22:38:10 | 002,937,528 | ---- | M] () -- C:\Program Files\Pando Networks\Media Booster\PMB.exe
PRC - [2009/10/18 17:09:46 | 000,386,872 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jucheck.exe
PRC - [2008/10/15 14:18:28 | 000,359,936 | ---- | M] (ASUSTek COMPUTER INC. ) -- C:\WINDOWS\EeePCDisableAutoPlay\EeePCDisableAutoPlay.exe
PRC - [2008/09/17 15:15:34 | 000,376,832 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\Asus\EeePC\Super Hybrid Engine\SuperHybridEngine.exe
PRC - [2008/09/17 13:54:20 | 000,106,496 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsTray.exe
PRC - [2008/09/16 16:16:38 | 000,593,920 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
PRC - [2008/09/03 11:34:42 | 000,335,872 | ---- | M] (ELANTECH Devices Corp.) -- C:\Program Files\Elantech\ETDCTRL.EXE
PRC - [2008/08/22 17:18:44 | 000,204,800 | ---- | M] (ELANTECH Devices Corp.) -- C:\Program Files\Elantech\ETDDECT.EXE
PRC - [2008/05/21 00:56:24 | 000,094,208 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsEPCMon.exe
PRC - [2008/04/14 07:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/03/17 20:06:00 | 001,848,648 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
PRC - [2007/12/19 10:07:40 | 000,163,840 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxext.exe
PRC - [2007/05/21 03:37:36 | 000,124,512 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
PRC - [2007/01/04 18:48:52 | 000,112,152 | R--- | M] (InterVideo) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
PRC - [2006/02/20 14:23:08 | 000,495,616 | ---- | M] ( ) -- C:\WINDOWS\system32\lxcrcoms.exe
PRC - [2004/07/01 16:20:20 | 000,212,992 | ---- | M] (Moodlogic) -- C:\Updater.exe
========== Modules (SafeList) ==========
MOD - [2010/11/13 14:29:07 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Amy Grace\My Documents\OTL.exe
MOD - [2010/08/23 11:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010/09/07 10:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
SRV - [2010/09/07 10:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
SRV - [2010/09/07 10:11:59 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010/03/04 12:00:56 | 000,025,704 | R--- | M] (Amazon.com) [On_Demand | Stopped] -- C:\Program Files\Amazon\Amazon Unbox Video\ADVWindowsClientService.exe -- (ADVService)
SRV - [2007/10/25 14:27:54 | 000,266,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\installer\WLSetupSvc.exe -- (WLSetupSvc)
SRV - [2007/01/04 18:48:52 | 000,112,152 | R--- | M] (InterVideo) [Auto | Running] -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
SRV - [2006/02/20 14:23:08 | 000,495,616 | ---- | M] ( ) [On_Demand | Running] -- C:\WINDOWS\System32\lxcrcoms.exe -- (lxcr_device)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\uvclf.sys -- (uvclf)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\RT2860.sys -- (RT80x86)
DRV - [2010/09/07 09:52:25 | 000,046,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2010/09/07 09:52:03 | 000,165,584 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2010/09/07 09:47:46 | 000,023,376 | ---- | M] (AVAST Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2010/09/07 09:47:19 | 000,100,176 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2010/09/07 09:47:07 | 000,017,744 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2010/09/07 09:46:51 | 000,028,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2008/09/18 18:44:38 | 001,326,528 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\athw.sys -- (AR5416)
DRV - [2008/09/18 05:48:58 | 004,816,896 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2008/08/25 01:59:40 | 000,026,112 | ---- | M] (ELANTECH Devices Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ETD.sys -- (Ktp)
DRV - [2008/08/19 09:16:36 | 000,991,656 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL)
DRV - [2008/04/14 07:51:44 | 000,144,384 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2008/04/14 00:11:00 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\changer.sys -- (Changer)
DRV - [2008/04/14 00:10:28 | 000,034,688 | ---- | M] (Toshiba Corp.) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\lbrtfdc.sys -- (lbrtfdc)
DRV - [2008/04/08 14:59:28 | 000,010,752 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASUSACPI.SYS -- (AsusACPI)
DRV - [2008/03/11 06:37:00 | 000,036,864 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1e51x86.sys -- (L1e)
DRV - [2008/02/04 04:57:44 | 000,037,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver)
DRV - [2007/12/19 10:32:12 | 005,854,688 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\igxpmp32.sys -- (ialm)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\software\mozilla\Firefox\Extensions\\{3ABE10FA-0575-4DCE-99F5-0E17CC68786A}: C:\Documents and Settings\Amy Grace\Local Settings\Application Data\{3ABE10FA-0575-4DCE-99F5-0E17CC68786A} [2010/11/12 19:20:05 | 000,000,000 | ---D | M]
O1 HOSTS File: ([2006/02/28 22:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Windows Live Toolbar Helper) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Windows Live Toolbar) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Windows Live Toolbar) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll (Microsoft Corporation)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [AsusACPIServer] C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusEPCMonitor] C:\Program Files\EeePC\ACPI\AsEPCMon.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusTray] C:\Program Files\EeePC\ACPI\AsTray.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [ETDWare] C:\Program Files\Elantech\ETDCTRL.EXE (ELANTECH Devices Corp.)
O4 - HKLM..\Run: [ETDWareDetect] C:\Program Files\Elantech\ETDDECT.EXE (ELANTECH Devices Corp.)
O4 - HKLM..\Run: [IJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (CANON INC.)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [iRiver Updater] \Updater.exe ()
O4 - HKLM..\Run: [LXCRCATS] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCRtime.DLL ()
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKCU..\Run: [Lrododegexino] C:\WINDOWS\wowuwmg.DLL File not found
O4 - HKCU..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\EeePCDisableAutoPlay.lnk = C:\WINDOWS\Installer\{564DBEDA-BD68-459A-B4B6-74341F28CF1D}\EeePCDisableAutoPl_564DBEDABD68459AB4B674341F28CF1D.exe (Macrovision Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\SuperHybridEngine.lnk = C:\Program Files\Asus\EeePC\Super Hybrid Engine\SuperHybridEngine.exe (ASUSTeK Computer Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: &Windows Live Search - C:\Program Files\Windows Live Toolbar\msntb.dll (Microsoft Corporation)
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send To Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebo...oUploader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macr...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 209.18.47.61 209.18.47.62
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Amy Grace\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Amy Grace\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - Unable to open key or key not present!
O32 - AutoRun File - [2008/08/18 02:56:54 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{5cc1ae64-f0a8-11de-b158-00224353103c}\Shell - "" = AutoRun
O33 - MountPoints2\{5cc1ae64-f0a8-11de-b158-00224353103c}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{5cc1ae64-f0a8-11de-b158-00224353103c}\Shell\AutoRun\command - "" = E:\SETUP.EXE -- File not found
O33 - MountPoints2\{5cc1ae64-f0a8-11de-b158-00224353103c}\Shell\configure\command - "" = E:\SETUP.EXE -- File not found
O33 - MountPoints2\{5cc1ae64-f0a8-11de-b158-00224353103c}\Shell\install\command - "" = E:\SETUP.EXE -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKCU\...exe [@ = exefile] -- Reg Error: Key error. File not found
========== Files/Folders - Created Within 30 Days ==========
[2010/11/13 14:29:06 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Amy Grace\My Documents\OTL.exe
[2010/11/12 19:20:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Amy Grace\Local Settings\Application Data\{3ABE10FA-0575-4DCE-99F5-0E17CC68786A}
[2010/11/12 19:17:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\WSTB
[2010/11/12 19:17:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Amy Grace\Application Data\Ilgy
[2010/11/12 19:17:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Amy Grace\Application Data\Hiumyf
[2010/11/12 19:16:57 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Documents\Server
[2009/08/11 11:08:03 | 000,409,600 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcrinpa.dll
[2009/08/11 11:08:03 | 000,393,216 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcriesc.dll
[2009/08/11 11:07:35 | 001,183,744 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcrserv.dll
[2009/08/11 11:07:35 | 000,995,328 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcrusb1.dll
[2009/08/11 11:07:35 | 000,536,576 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcrlmpm.dll
[2009/08/11 11:07:35 | 000,163,840 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcrprox.dll
[2009/08/11 11:07:35 | 000,114,688 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcrpplc.dll
[2009/08/11 11:07:34 | 000,610,304 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcrcomc.dll
[2009/08/11 11:07:34 | 000,421,888 | ---- | C] ( ) -- C:\WINDOWS\System32\lxcrcomm.dll
[2008/08/18 03:49:45 | 015,523,560 | ---- | C] (Macrovision Corporation) -- C:\Program Files\U1 Setup.exe
========== Files - Modified Within 30 Days ==========
[2010/11/13 14:29:07 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Amy Grace\My Documents\OTL.exe
[2010/11/13 14:26:01 | 000,000,994 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1077469927-2372699774-2319586602-1006UA.job
[2010/11/13 13:57:00 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
[2010/11/13 13:44:00 | 000,000,254 | ---- | M] () -- C:\WINDOWS\tasks\Check Updates for Windows Live Toolbar.job
[2010/11/13 12:57:00 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At13.job
[2010/11/13 12:28:19 | 000,441,692 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/11/13 12:28:19 | 000,071,462 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/11/13 12:27:27 | 000,002,389 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\EeePCDisableAutoPlay.lnk
[2010/11/13 12:27:04 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/11/13 12:26:02 | 000,000,942 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1077469927-2372699774-2319586602-1006Core.job
[2010/11/13 12:05:00 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At5.job
[2010/11/13 12:04:59 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
[2010/11/13 12:04:59 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2010/11/13 12:04:41 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/11/13 12:04:33 | 000,265,416 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/11/13 12:03:48 | 000,000,268 | -H-- | M] () -- C:\sqmdata08.sqm
[2010/11/13 12:03:48 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt08.sqm
[2010/11/13 12:02:49 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/11/12 22:58:35 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At23.job
[2010/11/12 22:27:28 | 000,000,120 | ---- | M] () -- C:\WINDOWS\Swafamagabo.dat
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At24.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At22.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At21.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At20.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At19.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At18.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At17.job
[2010/11/12 19:20:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At16.job
[2010/11/12 19:20:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
[2010/11/12 19:20:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\Qkoqi.bin
[2010/11/12 19:19:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At9.job
[2010/11/12 19:19:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At8.job
[2010/11/12 19:19:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At10.job
[2010/11/12 19:19:09 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At7.job
[2010/11/12 19:19:09 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At6.job
[2010/11/12 19:19:03 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2010/11/12 19:18:57 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2010/11/12 19:18:56 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
[2010/11/12 19:18:54 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[2010/11/09 13:59:17 | 000,000,268 | -H-- | M] () -- C:\sqmdata07.sqm
[2010/11/09 13:59:17 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt07.sqm
[2010/11/08 00:27:50 | 000,002,316 | ---- | M] () -- C:\Documents and Settings\Amy Grace\Desktop\Google Chrome.lnk
[2010/11/02 03:15:11 | 016,115,032 | ---- | M] () -- C:\Documents and Settings\Amy Grace\My Documents\manual for sharon's printer.exe
[2010/11/02 02:22:43 | 000,000,268 | -H-- | M] () -- C:\sqmdata06.sqm
[2010/11/02 02:22:43 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt06.sqm
[2010/11/02 00:55:28 | 000,000,268 | -H-- | M] () -- C:\sqmdata05.sqm
[2010/11/02 00:55:27 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt05.sqm
[2010/10/31 21:16:45 | 000,000,268 | -H-- | M] () -- C:\sqmdata04.sqm
[2010/10/31 21:16:45 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt04.sqm
[2010/10/31 00:15:57 | 000,000,268 | -H-- | M] () -- C:\sqmdata03.sqm
[2010/10/31 00:15:57 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt03.sqm
[2010/10/29 23:03:59 | 000,000,268 | -H-- | M] () -- C:\sqmdata02.sqm
[2010/10/29 23:03:59 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt02.sqm
[2010/10/27 00:32:32 | 000,000,268 | -H-- | M] () -- C:\sqmdata01.sqm
[2010/10/27 00:32:32 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt01.sqm
[2010/10/21 19:11:22 | 000,000,268 | -H-- | M] () -- C:\sqmdata00.sqm
[2010/10/21 19:11:22 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt00.sqm
[2010/10/18 10:11:33 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/10/18 08:43:27 | 000,000,268 | -H-- | M] () -- C:\sqmdata19.sqm
[2010/10/18 08:43:27 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt19.sqm
[2010/10/16 01:13:08 | 000,000,268 | -H-- | M] () -- C:\sqmdata18.sqm
[2010/10/16 01:13:08 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt18.sqm
========== Files Created - No Company Name ==========
[2010/11/12 19:20:50 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At24.job
[2010/11/12 19:20:49 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At23.job
[2010/11/12 19:20:49 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At22.job
[2010/11/12 19:20:48 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At21.job
[2010/11/12 19:20:47 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At20.job
[2010/11/12 19:20:47 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At19.job
[2010/11/12 19:20:45 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At18.job
[2010/11/12 19:20:44 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At17.job
[2010/11/12 19:20:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Qkoqi.bin
[2010/11/12 19:20:38 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At16.job
[2010/11/12 19:20:34 | 000,000,120 | ---- | C] () -- C:\WINDOWS\Swafamagabo.dat
[2010/11/12 19:20:29 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At15.job
[2010/11/12 19:20:24 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At14.job
[2010/11/12 19:19:39 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At13.job
[2010/11/12 19:19:36 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At12.job
[2010/11/12 19:19:31 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At11.job
[2010/11/12 19:19:27 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At10.job
[2010/11/12 19:19:23 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At9.job
[2010/11/12 19:19:10 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At8.job
[2010/11/12 19:19:08 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At7.job
[2010/11/12 19:19:04 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At6.job
[2010/11/12 19:18:58 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At5.job
[2010/11/12 19:18:57 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At4.job
[2010/11/12 19:18:56 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At3.job
[2010/11/12 19:18:53 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At2.job
[2010/11/12 19:18:50 | 000,000,422 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
[2010/11/02 03:15:11 | 016,115,032 | ---- | C] () -- C:\Documents and Settings\Amy Grace\My Documents\manual for sharon's printer.exe
[2010/03/22 00:49:12 | 000,012,778 | -HS- | C] () -- C:\Documents and Settings\Amy Grace\Local Settings\Application Data\VH56DJI7u87yo
[2010/03/22 00:49:12 | 000,012,778 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\VH56DJI7u87yo
[2010/01/05 22:30:14 | 000,000,032 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\ezsid.dat
[2009/09/12 01:56:27 | 000,005,120 | ---- | C] () -- C:\Documents and Settings\Amy Grace\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/08/25 07:57:42 | 000,014,548 | ---- | C] () -- C:\Documents and Settings\Amy Grace\Application Data\wklnhst.dat
[2009/08/11 11:08:04 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxcrvs.dll
[2009/08/11 11:08:03 | 000,303,104 | ---- | C] () -- C:\WINDOWS\System32\lxcrcoin.dll
[2009/08/11 11:07:45 | 000,692,224 | ---- | C] () -- C:\WINDOWS\System32\lxcrdrs.dll
[2009/08/11 11:07:45 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\lxcrcaps.dll
[2009/08/11 11:07:45 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\lxcrcnv4.dll
[2009/08/11 11:07:35 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\LXCRinst.dll
[2009/08/11 00:01:29 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\Amy Grace\Local Settings\Application Data\fusioncache.dat
[2008/10/08 18:28:58 | 000,004,608 | ---- | C] () -- C:\WINDOWS\System32\SSUSBC.dll
[2008/09/02 06:25:26 | 002,854,912 | ---- | C] () -- C:\WINDOWS\System32\btwicons.dll
[2008/08/19 10:16:56 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2008/08/19 10:03:11 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\drivers\tshd4_kern_i386.sys
[2008/08/19 10:03:11 | 000,048,128 | R--- | C] () -- C:\WINDOWS\System32\drivers\maxv_kern_i386.sys
[2008/08/19 10:03:11 | 000,040,832 | R--- | C] () -- C:\WINDOWS\System32\drivers\cshp_kern_i386.sys
[2008/08/19 10:03:11 | 000,030,592 | R--- | C] () -- C:\WINDOWS\System32\drivers\hp360_kern_i386.sys
[2008/08/19 10:03:10 | 000,038,272 | R--- | C] () -- C:\WINDOWS\System32\drivers\srs_premiumsound_i386.sys
[2008/08/18 10:50:23 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008/08/18 03:51:48 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2008/08/18 03:51:47 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2008/08/18 03:51:47 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2008/08/18 03:51:47 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2008/08/18 03:51:47 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2008/08/18 03:51:45 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2008/08/18 03:26:54 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4906.dll
[2008/07/30 18:31:52 | 000,021,864 | ---- | C] () -- C:\WINDOWS\AsAcpiSvrLang.ini
[2008/04/25 00:08:42 | 000,005,312 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2008/03/17 14:54:36 | 000,012,208 | ---- | C] () -- C:\WINDOWS\AsTrayLang.ini
[2001/11/14 12:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll
========== LOP Check ==========
[2010/04/02 13:55:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2009/09/24 01:38:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Amazon
[2010/03/09 22:21:35 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2010/03/09 11:24:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJEGV
[2010/03/12 10:01:40 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJScan
[2008/08/18 04:47:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ECAP
[2008/08/18 04:39:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010/03/25 22:38:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PMB Files
[2009/08/10 23:14:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap
[2010/11/13 04:41:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WSTB
[2009/08/12 03:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2010/03/19 22:32:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Amy Grace\Application Data\Canon
[2010/11/12 19:19:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Amy Grace\Application Data\Hiumyf
[2010/11/12 22:46:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Amy Grace\Application Data\Ilgy
[2010/03/23 20:51:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Amy Grace\Application Data\StarOffice8
[2009/08/25 07:57:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Amy Grace\Application Data\Template
[2010/11/12 19:18:54 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
[2010/11/12 19:19:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At10.job
[2010/11/13 12:04:59 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At11.job
[2010/11/13 12:04:59 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At12.job
[2010/11/13 12:57:00 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At13.job
[2010/11/13 13:57:00 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At14.job
[2010/11/12 19:20:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At15.job
[2010/11/12 19:20:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At16.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At17.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At18.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At19.job
[2010/11/12 19:18:56 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At20.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At21.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At22.job
[2010/11/12 22:58:35 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At23.job
[2010/11/12 19:21:02 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At24.job
[2010/11/12 19:18:57 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
[2010/11/12 19:19:03 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
[2010/11/13 12:05:00 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At5.job
[2010/11/12 19:19:09 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At6.job
[2010/11/12 19:19:09 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At7.job
[2010/11/12 19:19:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At8.job
[2010/11/12 19:19:44 | 000,000,422 | ---- | M] () -- C:\WINDOWS\Tasks\At9.job
[2010/11/13 13:44:00 | 000,000,254 | ---- | M] () -- C:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job
========== Purity Check ==========
< End of report >