OTL by OldTimer - Version 3.2.18.0 Folder = C:\Users\Owner\Desktop
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
4.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 48.00% Memory free
8.00 Gb Paging File | 6.00 Gb Available in Paging File | 70.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 283.40 Gb Total Space | 230.33 Gb Free Space | 81.27% Space Free | Partition Type: NTFS
Drive D: | 175.39 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: UDF
Computer Name: OWNER-PC | User Name: Owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2010/12/28 18:22:06 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Owner\Desktop\OTL.exe
PRC - [2010/12/09 20:51:27 | 001,389,400 | ---- | M] (Lavasoft) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
PRC - [2010/12/09 20:51:27 | 000,930,032 | ---- | M] (Lavasoft) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
PRC - [2010/11/23 13:34:16 | 000,724,048 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2010/11/23 13:34:14 | 006,128,208 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2010/11/18 09:49:48 | 000,233,936 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10l_ActiveX.exe
PRC - [2010/11/16 19:03:38 | 000,274,608 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
PRC - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
PRC - [2010/10/22 04:57:54 | 002,745,696 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\avgtray.exe
PRC - [2010/10/16 00:40:40 | 000,037,664 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
PRC - [2010/09/22 12:19:36 | 000,273,672 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\mswinext.exe
PRC - [2010/05/24 08:55:34 | 000,444,928 | ---- | M] (Livescribe) -- C:\Program Files (x86)\Common Files\Livescribe\PenComm\PenCommService.exe
PRC - [2009/11/13 16:15:00 | 001,807,600 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
PRC - [2009/09/17 11:05:00 | 000,656,624 | ---- | M] (SoftThinks) -- C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
PRC - [2009/06/09 08:11:14 | 000,155,648 | ---- | M] (Stardock Corporation) -- C:\Program Files\Dell\DellDock\DockLogin.exe
PRC - [2008/11/09 12:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
========== Modules (SafeList) ==========
MOD - [2010/12/28 18:22:06 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Owner\Desktop\OTL.exe
MOD - [2010/08/20 21:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2009/07/16 17:06:22 | 000,033,280 | ---- | M] () [Auto | Running] -- C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE -- (wltrysvc)
SRV:64bit: - [2009/07/13 17:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/06/28 20:44:38 | 000,240,128 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\stacsv64.exe -- (STacSV)
SRV:64bit: - [2009/06/09 08:11:14 | 000,155,648 | ---- | M] (Stardock Corporation) [Auto | Running] -- C:\Program Files\Dell\DellDock\DockLogin.exe -- (DockLoginService)
SRV:64bit: - [2009/03/01 21:42:58 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\AESTSr64.exe -- (AESTFilters)
SRV - [2010/12/09 20:51:27 | 001,389,400 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2010/12/08 15:25:55 | 003,020,888 | ---- | M] () [Auto | Running] -- c:\Program Files (x86)\Common Files\Akamai\netsession_win_aeec0f0.dll -- (Akamai)
SRV - [2010/11/23 13:34:14 | 006,128,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010/10/16 00:40:40 | 000,037,664 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/05/24 08:55:34 | 000,444,928 | ---- | M] (Livescribe) [Auto | Running] -- C:\Program Files (x86)\Common Files\Livescribe\PenComm\PenCommService.exe -- (PenCommService)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/12/17 17:45:04 | 000,016,680 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\514\g2aservice.exe -- (GoToAssist)
SRV - [2009/09/17 11:05:00 | 000,656,624 | ---- | M] (SoftThinks) [Auto | Running] -- C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE -- (SftService)
SRV - [2009/06/10 13:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/11/09 12:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ==========
DRV:64bit: - File not found [Kernel | Disabled | Running] -- C:\Windows\SysNative\Drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2010/12/08 04:12:36 | 000,308,304 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:64bit: - [2010/11/17 16:34:58 | 000,025,072 | ---- | M] (PC-Doctor, Inc.) [Kernel | On_Demand | Running] -- c:\Program Files\Dell Support Center\pcdsrvc_x64.pkms -- (PCDSRVC{1E208CE0-FB7451FF-06020101}_0)
DRV:64bit: - [2010/11/12 13:19:38 | 000,382,032 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:64bit: - [2010/09/28 15:44:52 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2010/09/22 23:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2010/09/13 15:28:00 | 000,027,216 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AVGIDSEH.sys -- (AVGIDSEH)
DRV:64bit: - [2010/09/07 02:48:56 | 000,041,040 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:64bit: - [2010/09/07 02:48:50 | 000,030,288 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:64bit: - [2010/08/19 20:42:38 | 000,157,264 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV:64bit: - [2010/08/19 20:42:38 | 000,035,920 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV:64bit: - [2010/08/12 04:15:20 | 000,069,152 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\Lbd.sys -- (Lbd)
DRV:64bit: - [2010/05/24 08:55:34 | 000,026,112 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\PulseUsb.sys -- (PulseUsb)
DRV:64bit: - [2009/09/03 16:30:20 | 000,128,512 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tiehdusb.sys -- (TIEHDUSB)
DRV:64bit: - [2009/07/16 17:06:20 | 000,022,520 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcm42rly.sys -- (BCM42RLY)
DRV:64bit: - [2009/07/16 17:06:18 | 002,769,400 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2009/07/13 17:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2009/07/13 17:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009/07/13 17:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 17:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 17:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/13 17:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/28 20:44:38 | 000,487,424 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2009/06/15 11:06:42 | 000,172,704 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CtClsFlt.sys -- (CtClsFlt)
DRV:64bit: - [2009/06/10 12:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009/06/10 12:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 12:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 12:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 12:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/06/02 19:16:56 | 007,333,472 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/05/22 06:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/05/18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009/05/08 00:15:18 | 000,215,552 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2009/03/24 22:28:56 | 000,230,960 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Apfiltr.sys -- (ApfiltrService)
DRV:64bit: - [2007/05/14 15:06:18 | 000,027,520 | ---- | M] (Research In Motion Limited) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys -- (RimUsb)
DRV:64bit: - [2006/11/01 10:51:00 | 000,151,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2010/11/05 18:59:05 | 000,017,440 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys -- (Lavasoft Kernexplorer)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 2A F5 C6 9A 64 A6 CB 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files (x86)\AVG\AVG10\Firefox\ [2010/12/27 18:41:37 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010/11/16 19:03:51 | 000,000,000 | ---D | M]
[2010/08/05 01:08:31 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Mozilla\Extensions
[2010/08/06 10:36:36 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\vd0pwor2.default\extensions
[2010/08/09 21:00:11 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\vd0pwor2.default\extensions\[email protected]
[2010/08/09 21:00:11 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\vd0pwor2.default\extensions\[email protected]
[2010/08/05 01:08:02 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Firefox\extensions
O1 HOSTS File: ([2009/06/10 13:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll (AVG Technologies CZ, s.r.o.)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg64.dll (Google Inc.)
O2:64bit: - BHO: (no name) - AutorunsDisabled - No CLSID value found.
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.)
O2 - BHO: (WOT Helper) - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files (x86)\WOT\WOT.dll File not found
O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll (Microsoft Corporation)
O2 - BHO: (no name) - AutorunsDisabled - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Ant.com Download Toolbar) - {2E924F4F-67F0-4BD8-9560-49F468E843D2} - C:\Program Files (x86)\Ant.com\IE add-on\AntToolbar.dll File not found
O3 - HKLM\..\Toolbar: (WOT) - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files (x86)\WOT\WOT.dll File not found
O3 - HKLM\..\Toolbar: (@C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Ant.com Download Toolbar) - {2E924F4F-67F0-4BD8-9560-49F468E843D2} - C:\Program Files (x86)\Ant.com\IE add-on\AntToolbar.dll File not found
O3 - HKCU\..\Toolbar\WebBrowser: (WOT) - {71576546-354D-41C9-AAE8-31F2EC22BF0D} - C:\Program Files (x86)\WOT\WOT.dll File not found
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4:64bit: - HKLM..\Run: [Broadcom Wireless Manager UI] C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE (Dell Inc.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe ()
O4 - HKLM..\Run: [DellSupportCenter] C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe File not found
O4 - HKLM..\Run: [Easy Dock] File not found
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [DW6] C:\Program Files (x86)\The Weather Channel FW\Desktop\DesktopWeather.exe File not found
O4 - HKCU..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - Startup: C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk = C:\Program Files (x86)\Dell\DellDock\DellDock.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowLegacyWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowUnhashedWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O9 - Extra Button: Download videos by Ant.com - {70AF6C9F-0818-4cf7-924A-BBDBB24211D3} - C:\Program Files (x86)\Ant.com\IE add-on\Download.ant File not found
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.micros...n/ieawsdc32.cab (Microsoft Office Template and Media Control)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} http://cdn.scan.onec...s/wlscctrl2.cab (Windows Live OneCare safety scanner control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} http://lads.myspace....ceUploader2.cab (MySpace Uploader Control)
O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.87.69.150 68.87.85.102
O18:64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgppa.dll (AVG Technologies CZ, s.r.o.)
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wot {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - Reg Error: Key error. File not found
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\wot {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files (x86)\WOT\WOT.dll File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\GoToAssist: DllName - Reg Error: Key error. - C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG10\avgchsva.exe /sync) - C:\Program Files (x86)\AVG\AVG10\avgchsva.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG10\avgrsa.exe /sync /restart) - C:\Program Files (x86)\AVG\AVG10\avgrsa.exe (AVG Technologies CZ, s.r.o.)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010/12/28 18:21:59 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Users\Owner\Desktop\OTL.exe
[2010/12/28 14:45:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2010/12/24 01:24:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WordRacer Buddy
[2010/12/20 21:27:37 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2010/12/20 21:27:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2010/12/20 21:27:37 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2010/12/14 10:21:47 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2010/12/09 15:55:53 | 000,000,000 | ---D | C] -- C:\Program Files\Dell Support Center
[2010/12/09 15:47:45 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\PCDr
[2010/12/08 04:12:36 | 000,308,304 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgldx64.sys
[2010/12/05 20:55:01 | 000,000,000 | ---D | C] -- C:\Windows\Sun
[2010/12/05 20:55:00 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Sun
[2010/12/02 23:56:25 | 000,128,512 | ---- | C] (Texas Instruments) -- C:\Windows\SysNative\drivers\tiehdusb.sys
[2010/12/02 23:56:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\TI Shared
[2010/12/02 23:56:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TI Education
[2010/12/02 23:56:08 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\MyTIData
[2010/12/02 23:54:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
[2010/02/24 17:26:20 | 008,653,312 | ---- | C] (Dell, Inc. ) -- C:\Users\Owner\AppData\Roaming\DataSafeDotNet.exe
========== Files - Modified Within 30 Days ==========
[2010/12/28 18:22:06 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Owner\Desktop\OTL.exe
[2010/12/28 18:20:47 | 000,000,896 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/12/28 18:20:46 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/12/28 16:10:45 | 000,000,212 | ---- | M] () -- C:\Users\Owner\Desktop\Free Download - The Best Firewall Protection and Anti-Virus Scan Software from Comodo.url
[2010/12/28 14:49:00 | 000,000,892 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/12/28 14:45:07 | 000,002,975 | ---- | M] () -- C:\Users\Owner\Desktop\HiJackThis.lnk
[2010/12/28 13:19:28 | 000,000,145 | ---- | M] () -- C:\Users\Owner\Desktop\support.desktop.weather.com-ics-survey-survey.asp.url
[2010/12/28 13:19:28 | 000,000,000 | ---- | M] () -- C:\Users\Owner\Desktop\Parature Header.url
[2010/12/28 13:18:08 | 000,000,578 | ---- | M] () -- C:\Windows\wininit.ini
[2010/12/28 11:01:41 | 000,000,422 | ---- | M] () -- C:\Windows\tasks\SystemToolsDailyTest.job
[2010/12/28 10:49:54 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010/12/28 10:49:54 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010/12/28 10:41:48 | 3191,623,680 | -HS- | M] () -- C:\hiberfil.sys
[2010/12/28 10:24:13 | 102,824,950 | ---- | M] () -- C:\Windows\SysNative\drivers\AVG\incavi.avm
[2010/12/27 22:23:45 | 000,000,170 | ---- | M] () -- C:\Users\Owner\Desktop\Anaphylaxis eMedicine Allergy and Immunology.url
[2010/12/27 19:03:32 | 000,000,955 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2011.lnk
[2010/12/27 18:34:39 | 000,000,153 | ---- | M] () -- C:\Users\Owner\Desktop\amazon.com-Record-Story-Guess-Much-Miss-dp-1450802001.url
[2010/12/27 18:34:39 | 000,000,000 | ---- | M] () -- C:\Users\Owner\Desktop\Amazon.com Record a Story Guess How Much I Miss You (9781450802000) Editors of Publications International Ltd. Books.url
[2010/12/27 16:00:06 | 000,000,211 | ---- | M] () -- C:\Users\Owner\Desktop\Charity - Sample Organizing Documents - Draft B - Declaration of Trust.url
[2010/12/27 15:58:31 | 000,000,211 | ---- | M] () -- C:\Users\Owner\Desktop\irs.gov-charities-charitable-article-0,,id=123028,00.html.url
[2010/12/27 15:58:31 | 000,000,000 | ---- | M] () -- C:\Users\Owner\Desktop\Life Cycle of a Public Charity - Sample Organizing Documents - Draft A - Charter.url
[2010/12/27 15:56:30 | 000,000,211 | ---- | M] () -- C:\Users\Owner\Desktop\Life Cycle of a Public Charity.url
[2010/12/27 15:11:10 | 000,000,236 | ---- | M] () -- C:\Users\Owner\Desktop\A mother's bedtime story, told from inside prison OregonLive.com (2).url
[2010/12/27 14:19:29 | 000,000,254 | ---- | M] () -- C:\Users\Owner\Desktop\dshs washington state children of incarserated parent - Bing.url
[2010/12/27 13:20:46 | 000,000,198 | ---- | M] () -- C:\Users\Owner\Desktop\Punishment of innocents Children of parents behind bars.url
[2010/12/27 13:11:21 | 000,000,125 | ---- | M] () -- C:\Users\Owner\Desktop\dshs.wa.gov-incarcerated-.url
[2010/12/27 13:11:21 | 000,000,000 | ---- | M] () -- C:\Users\Owner\Desktop\DSHS - Children and Families Dealing with Incarceration.url
[2010/12/24 01:32:34 | 000,000,153 | ---- | M] () -- C:\Users\Owner\Desktop\Scrabble Word Finder, Anagram Solver, Dictionary, Helper & Cheats Scrabble Dictionaries.url
[2010/12/24 01:23:02 | 000,000,186 | ---- | M] () -- C:\Users\Owner\Desktop\Word Racer Solver.url
[2010/12/21 12:49:11 | 000,871,870 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010/12/21 12:49:11 | 000,726,236 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010/12/21 12:49:11 | 000,146,222 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010/12/17 16:00:35 | 000,152,310 | ---- | M] () -- C:\Users\Owner\Desktop\COINS[1].docx
[2010/12/17 12:20:44 | 000,002,261 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2010/12/17 12:20:44 | 000,002,245 | ---- | M] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/12/17 12:20:22 | 000,002,290 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2010/12/16 03:23:40 | 004,988,840 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010/12/16 00:21:54 | 000,235,008 | ---- | M] () -- C:\Users\Owner\Documents\COINS[1].doc
[2010/12/14 18:06:51 | 002,834,432 | ---- | M] () -- C:\Users\Owner\Documents\lotto.accdb
[2010/12/13 09:10:07 | 000,000,564 | ---- | M] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[2010/12/12 22:37:46 | 033,356,112 | ---- | M] () -- C:\Users\Owner\Documents\R264250.exe
[2010/12/12 22:37:34 | 004,535,765 | ---- | M] () -- C:\Users\Owner\Documents\SE1_ED15.zip
[2010/12/12 22:37:28 | 009,872,720 | ---- | M] () -- C:\Users\Owner\Documents\FASTACCESS_FACIAL-RECOGNITIO_A28_R257644.exe
[2010/12/12 22:37:18 | 002,667,480 | ---- | M] () -- C:\Users\Owner\Documents\R260056.exe
[2010/12/12 22:37:15 | 000,457,112 | ---- | M] () -- C:\Users\Owner\Documents\DELL_DATASAFE-LOCAL-2-0_A00_R260476.exe
[2010/12/12 22:37:13 | 003,912,304 | ---- | M] () -- C:\Users\Owner\Documents\R224473.exe
[2010/12/12 22:37:12 | 019,729,279 | ---- | M] () -- C:\Users\Owner\Documents\R244364_RoxioBurn_v1.01_120B16F.zip
[2010/12/12 22:37:12 | 001,683,973 | ---- | M] () -- C:\Users\Owner\Documents\GT10N_A109.zip
[2010/12/12 22:37:04 | 001,625,893 | ---- | M] () -- C:\Users\Owner\Documents\R250548_KD03FW.zip
[2010/12/12 22:37:03 | 022,953,024 | ---- | M] () -- C:\Users\Owner\Documents\R228085.exe
[2010/12/12 22:36:55 | 000,145,904 | ---- | M] () -- C:\Users\Owner\Documents\DELL_WEBCAM-SOFTWARE--MS-INB_A00_R250373.exe
[2010/12/12 22:36:53 | 003,755,416 | ---- | M] () -- C:\Users\Owner\Documents\DELL_QUICKSET_A00_R226931.exe
[2010/12/12 22:36:49 | 007,542,624 | ---- | M] () -- C:\Users\Owner\Documents\R237653.exe
[2010/12/12 22:33:31 | 008,579,920 | ---- | M] () -- C:\Users\Owner\Documents\R286189.exe
[2010/12/12 22:31:59 | 026,506,912 | ---- | M] () -- C:\Users\Owner\Documents\R260511.exe
[2010/12/12 22:29:51 | 064,664,328 | ---- | M] () -- C:\Users\Owner\Documents\R228749.exe
[2010/12/12 22:27:13 | 077,518,680 | ---- | M] () -- C:\Users\Owner\Documents\R228550.exe
[2010/12/12 22:26:03 | 026,032,432 | ---- | M] () -- C:\Users\Owner\Documents\R246753.exe
[2010/12/12 22:25:21 | 007,686,592 | ---- | M] () -- C:\Users\Owner\Documents\R228308.exe
[2010/12/12 22:24:17 | 005,491,928 | ---- | M] () -- C:\Users\Owner\Documents\R228652.exe
[2010/12/12 22:18:30 | 077,519,000 | ---- | M] () -- C:\Users\Owner\Documents\R228532.exe
[2010/12/12 22:16:40 | 126,075,107 | ---- | M] () -- C:\Users\Owner\Documents\R220993.zip
[2010/12/12 22:15:04 | 001,574,031 | ---- | M] () -- C:\Users\Owner\Documents\R220849.zip
[2010/12/12 22:14:40 | 010,271,424 | ---- | M] () -- C:\Users\Owner\Documents\R260312.exe
[2010/12/12 21:43:37 | 001,152,135 | ---- | M] () -- C:\Users\Owner\Documents\1440_A07.EXE
[2010/12/10 14:32:22 | 000,000,125 | ---- | M] () -- C:\Users\Owner\Desktop\ecomall.com-biz-clean.htm.url
[2010/12/10 14:32:22 | 000,000,000 | ---- | M] () -- C:\Users\Owner\Desktop\THE CLEAN ENVIRONMENT CO. - Commercial and Household Cleaning Products - CLEANERS.url
[2010/12/09 20:51:37 | 000,015,880 | ---- | M] () -- C:\Windows\SysNative\lsdelete.exe
[2010/12/08 04:12:36 | 000,308,304 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgldx64.sys
[2010/12/02 23:56:10 | 000,001,379 | ---- | M] () -- C:\Users\Public\Desktop\TI Connect.lnk
[2010/12/02 23:53:21 | 015,858,856 | ---- | M] () -- C:\Users\Owner\Desktop\ticonnect_eng.exe
[2010/11/30 22:59:39 | 000,000,163 | ---- | M] () -- C:\Users\Owner\Desktop\TI-89 Titanium - Voyage™ 200 Guidebook - Texas Instruments - US and Canada - Texas Instruments - US and Canada.url
========== Files Created - No Company Name ==========
[2010/12/28 16:10:44 | 000,000,212 | ---- | C] () -- C:\Users\Owner\Desktop\Free Download - The Best Firewall Protection and Anti-Virus Scan Software from Comodo.url
[2010/12/28 14:51:24 | 000,010,549 | ---- | C] () -- C:\Users\Owner\host.txt
[2010/12/28 14:45:07 | 000,002,975 | ---- | C] () -- C:\Users\Owner\Desktop\HiJackThis.lnk
[2010/12/28 13:19:28 | 000,000,145 | ---- | C] () -- C:\Users\Owner\Desktop\support.desktop.weather.com-ics-survey-survey.asp.url
[2010/12/28 13:19:28 | 000,000,000 | ---- | C] () -- C:\Users\Owner\Desktop\Parature Header.url
[2010/12/27 22:23:45 | 000,000,170 | ---- | C] () -- C:\Users\Owner\Desktop\Anaphylaxis eMedicine Allergy and Immunology.url
[2010/12/27 19:03:32 | 000,000,955 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2011.lnk
[2010/12/27 18:34:39 | 000,000,153 | ---- | C] () -- C:\Users\Owner\Desktop\amazon.com-Record-Story-Guess-Much-Miss-dp-1450802001.url
[2010/12/27 18:34:39 | 000,000,000 | ---- | C] () -- C:\Users\Owner\Desktop\Amazon.com Record a Story Guess How Much I Miss You (9781450802000) Editors of Publications International Ltd. Books.url
[2010/12/27 16:00:05 | 000,000,211 | ---- | C] () -- C:\Users\Owner\Desktop\Charity - Sample Organizing Documents - Draft B - Declaration of Trust.url
[2010/12/27 15:58:31 | 000,000,211 | ---- | C] () -- C:\Users\Owner\Desktop\irs.gov-charities-charitable-article-0,,id=123028,00.html.url
[2010/12/27 15:58:31 | 000,000,000 | ---- | C] () -- C:\Users\Owner\Desktop\Life Cycle of a Public Charity - Sample Organizing Documents - Draft A - Charter.url
[2010/12/27 15:56:29 | 000,000,211 | ---- | C] () -- C:\Users\Owner\Desktop\Life Cycle of a Public Charity.url
[2010/12/27 15:11:10 | 000,000,236 | ---- | C] () -- C:\Users\Owner\Desktop\A mother's bedtime story, told from inside prison OregonLive.com (2).url
[2010/12/27 14:19:29 | 000,000,254 | ---- | C] () -- C:\Users\Owner\Desktop\dshs washington state children of incarserated parent - Bing.url
[2010/12/27 13:20:46 | 000,000,198 | ---- | C] () -- C:\Users\Owner\Desktop\Punishment of innocents Children of parents behind bars.url
[2010/12/27 13:11:21 | 000,000,125 | ---- | C] () -- C:\Users\Owner\Desktop\dshs.wa.gov-incarcerated-.url
[2010/12/27 13:11:21 | 000,000,000 | ---- | C] () -- C:\Users\Owner\Desktop\DSHS - Children and Families Dealing with Incarceration.url
[2010/12/24 01:32:34 | 000,000,153 | ---- | C] () -- C:\Users\Owner\Desktop\Scrabble Word Finder, Anagram Solver, Dictionary, Helper & Cheats Scrabble Dictionaries.url
[2010/12/24 01:23:01 | 000,000,186 | ---- | C] () -- C:\Users\Owner\Desktop\Word Racer Solver.url
[2010/12/17 12:20:44 | 000,002,261 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2010/12/17 12:20:22 | 000,002,290 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2010/12/16 00:23:09 | 000,152,310 | ---- | C] () -- C:\Users\Owner\Desktop\COINS[1].docx
[2010/12/16 00:11:06 | 000,235,008 | ---- | C] () -- C:\Users\Owner\Documents\COINS[1].doc
[2010/12/12 22:37:18 | 004,535,765 | ---- | C] () -- C:\Users\Owner\Documents\SE1_ED15.zip
[2010/12/12 22:37:15 | 033,356,112 | ---- | C] () -- C:\Users\Owner\Documents\R264250.exe
[2010/12/12 22:37:13 | 000,457,112 | ---- | C] () -- C:\Users\Owner\Documents\DELL_DATASAFE-LOCAL-2-0_A00_R260476.exe
[2010/12/12 22:37:12 | 009,872,720 | ---- | C] () -- C:\Users\Owner\Documents\FASTACCESS_FACIAL-RECOGNITIO_A28_R257644.exe
[2010/12/12 22:37:12 | 002,667,480 | ---- | C] () -- C:\Users\Owner\Documents\R260056.exe
[2010/12/12 22:37:04 | 001,683,973 | ---- | C] () -- C:\Users\Owner\Documents\GT10N_A109.zip
[2010/12/12 22:37:03 | 003,912,304 | ---- | C] () -- C:\Users\Owner\Documents\R224473.exe
[2010/12/12 22:36:55 | 001,625,893 | ---- | C] () -- C:\Users\Owner\Documents\R250548_KD03FW.zip
[2010/12/12 22:36:53 | 000,145,904 | ---- | C] () -- C:\Users\Owner\Documents\DELL_WEBCAM-SOFTWARE--MS-INB_A00_R250373.exe
[2010/12/12 22:36:49 | 019,729,279 | ---- | C] () -- C:\Users\Owner\Documents\R244364_RoxioBurn_v1.01_120B16F.zip
[2010/12/12 22:36:37 | 022,953,024 | ---- | C] () -- C:\Users\Owner\Documents\R228085.exe
[2010/12/12 22:36:37 | 007,542,624 | ---- | C] () -- C:\Users\Owner\Documents\R237653.exe
[2010/12/12 22:36:37 | 003,755,416 | ---- | C] () -- C:\Users\Owner\Documents\DELL_QUICKSET_A00_R226931.exe
[2010/12/12 22:33:18 | 008,579,920 | ---- | C] () -- C:\Users\Owner\Documents\R286189.exe
[2010/12/12 22:31:40 | 026,506,912 | ---- | C] () -- C:\Users\Owner\Documents\R260511.exe
[2010/12/12 22:29:08 | 064,664,328 | ---- | C] () -- C:\Users\Owner\Documents\R228749.exe
[2010/12/12 22:26:21 | 077,518,680 | ---- | C] () -- C:\Users\Owner\Documents\R228550.exe
[2010/12/12 22:25:41 | 026,032,432 | ---- | C] () -- C:\Users\Owner\Documents\R246753.exe
[2010/12/12 22:25:10 | 007,686,592 | ---- | C] () -- C:\Users\Owner\Documents\R228308.exe
[2010/12/12 22:24:07 | 005,491,928 | ---- | C] () -- C:\Users\Owner\Documents\R228652.exe
[2010/12/12 22:17:33 | 077,519,000 | ---- | C] () -- C:\Users\Owner\Documents\R228532.exe
[2010/12/12 22:15:14 | 126,075,107 | ---- | C] () -- C:\Users\Owner\Documents\R220993.zip
[2010/12/12 22:14:59 | 001,574,031 | ---- | C] () -- C:\Users\Owner\Documents\R220849.zip
[2010/12/12 22:14:24 | 010,271,424 | ---- | C] () -- C:\Users\Owner\Documents\R260312.exe
[2010/12/12 21:43:31 | 001,152,135 | ---- | C] () -- C:\Users\Owner\Documents\1440_A07.EXE
[2010/12/10 14:32:22 | 000,000,125 | ---- | C] () -- C:\Users\Owner\Desktop\ecomall.com-biz-clean.htm.url
[2010/12/10 14:32:22 | 000,000,000 | ---- | C] () -- C:\Users\Owner\Desktop\THE CLEAN ENVIRONMENT CO. - Commercial and Household Cleaning Products - CLEANERS.url
[2010/12/09 15:56:18 | 000,000,564 | ---- | C] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[2010/12/09 15:56:16 | 000,000,422 | ---- | C] () -- C:\Windows\tasks\SystemToolsDailyTest.job
[2010/12/03 17:22:04 | 002,834,432 | ---- | C] () -- C:\Users\Owner\Documents\lotto.accdb
[2010/12/03 17:22:04 | 002,097,152 | ---- | C] () -- C:\Users\Owner\Documents\Tasks.accdb
[2010/12/03 17:22:04 | 000,622,592 | ---- | C] () -- C:\Users\Owner\Documents\CIS145EHelm_LHoshaw HW-6.accdb
[2010/12/03 17:22:04 | 000,579,994 | ---- | C] () -- C:\Users\Owner\Documents\Tasks.accdt
[2010/12/03 17:22:04 | 000,319,488 | ---- | C] () -- C:\Users\Owner\Documents\TO DO LIST.accdb
[2010/12/02 23:56:10 | 000,001,379 | ---- | C] () -- C:\Users\Public\Desktop\TI Connect.lnk
[2010/12/02 23:53:21 | 015,858,856 | ---- | C] () -- C:\Users\Owner\Desktop\ticonnect_eng.exe
[2010/11/30 22:59:39 | 000,000,163 | ---- | C] () -- C:\Users\Owner\Desktop\TI-89 Titanium - Voyage™ 200 Guidebook - Texas Instruments - US and Canada - Texas Instruments - US and Canada.url
[2010/09/07 15:36:54 | 000,000,578 | ---- | C] () -- C:\Windows\wininit.ini
[2010/07/08 22:40:23 | 000,007,604 | ---- | C] () -- C:\Users\Owner\AppData\Local\Resmon.ResmonCfg
[2010/06/03 20:35:09 | 000,005,872 | ---- | C] () -- C:\ProgramData\AntLog.txt
[2010/06/02 00:08:58 | 000,864,266 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/05/07 07:52:14 | 000,000,000 | ---- | C] () -- C:\Users\Owner\AppData\Roaming\wklnhst.dat
[2010/03/02 20:14:03 | 000,005,632 | ---- | C] () -- C:\Users\Owner\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/07/13 15:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 13:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
========== LOP Check ==========
[2010/10/20 10:21:24 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\AVG10
[2010/08/26 20:13:10 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010/06/18 01:30:42 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010/08/06 10:38:47 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\DassaultSystemes
[2010/08/07 11:41:33 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Downloaded Installations
[2010/12/09 15:48:44 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\PCDr
[2010/08/26 20:27:50 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2010/06/17 09:18:09 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Template
[2010/06/03 18:45:19 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\TubeTilla
[2010/08/31 17:59:40 | 000,000,000 | ---D | M] -- C:\Users\Owner\AppData\Roaming\Windows Live Writer
[2010/12/13 09:10:07 | 000,000,564 | ---- | M] () -- C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
[2010/09/11 06:49:29 | 000,032,648 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2010/12/28 11:01:41 | 000,000,422 | ---- | M] () -- C:\Windows\Tasks\SystemToolsDailyTest.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:0B4227B4
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:F8AD8061
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:BC0013C8
< End of report >
hope this helps some