Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Randon computer restarts


  • This topic is locked This topic is locked

#1
LiamB

LiamB

    Member

  • Member
  • PipPip
  • 44 posts
System restarts randomly. Has done so up to 5 times a day. No suspect entries in Event Log.



Running XP Pro 32 Bit, AVG 2011 and Register Booster. No reported problems.



Ran OTL and file attached.

OTL logfile created on: 31/01/2011 19:08:41 - Run 2
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Documents and Settings\Liam Bradley\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

1,023.00 Mb Total Physical Memory | 522.00 Mb Available Physical Memory | 51.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 18.55 Gb Total Space | 7.18 Gb Free Space | 38.68% Space Free | Partition Type: NTFS
Drive F: | 7.40 Gb Total Space | 5.56 Gb Free Space | 75.16% Space Free | Partition Type: NTFS
Drive G: | 10.33 Gb Total Space | 7.75 Gb Free Space | 75.04% Space Free | Partition Type: NTFS
Drive H: | 86.82 Gb Total Space | 86.18 Gb Free Space | 99.26% Space Free | Partition Type: NTFS
Drive Q: | 58.49 Gb Total Space | 51.98 Gb Free Space | 88.87% Space Free | Partition Type: NTFS

Computer Name: LIAMSDESKTOP | User Name: Liam Bradley | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/01/31 19:02:55 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Liam Bradley\Desktop\OTL.exe
PRC - [2011/01/10 10:29:13 | 003,246,040 | ---- | M] (Acronis) -- C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
PRC - [2011/01/07 01:22:54 | 002,747,744 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgtray.exe
PRC - [2011/01/06 15:23:20 | 000,737,872 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2011/01/06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2011/01/05 19:02:48 | 000,821,048 | ---- | M] (Trusteer Ltd.) -- C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
PRC - [2010/12/06 07:37:40 | 000,390,728 | ---- | M] (Acronis) -- C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
PRC - [2010/12/06 07:37:38 | 000,804,528 | ---- | M] (Acronis) -- C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
PRC - [2010/12/06 07:37:08 | 005,542,488 | ---- | M] (Acronis) -- F:\Program Files\TrueImageMonitor.exe
PRC - [2010/12/05 16:26:40 | 000,654,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgrsx.exe
PRC - [2010/12/05 16:26:12 | 000,650,592 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgchsvx.exe
PRC - [2010/11/16 04:06:22 | 002,536,752 | ---- | M] (Acronis) -- C:\Program Files\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe
PRC - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgwdsvc.exe
PRC - [2007/12/10 15:55:26 | 000,323,584 | ---- | M] (PixArt Imaging Incorporation) -- C:\WINDOWS\PixArt\PAC207\Monitor.exe
PRC - [2007/10/09 15:21:06 | 000,169,328 | ---- | M] (Maxtor Corporation) -- C:\Program Files\Seagate\Basics\Basics Status\MaxMenuMgrBasics.exe
PRC - [2007/10/09 15:21:02 | 000,124,280 | ---- | M] (Seagate Technology LLC) -- C:\Program Files\Seagate\Basics\Service\SyncServicesBasics.exe
PRC - [2007/03/23 13:34:08 | 000,024,576 | R--- | M] () -- C:\Program Files\SVRemote\TVCardRemote.exe
PRC - [2006/09/28 09:20:00 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
PRC - [2006/08/09 13:27:48 | 000,036,864 | ---- | M] (Ulead Systems, Inc.) -- G:\TV from Computer\uvPL.exe
PRC - [2006/07/15 18:53:56 | 000,811,008 | ---- | M] () -- C:\Program Files\OM 809 Mouse Driver\MouseDrv.exe
PRC - [2005/03/31 16:48:14 | 000,438,272 | ---- | M] () -- C:\Program Files\Cable&Wireless\C&W_802.11g_Utility\C&WWLAN.exe
PRC - [2004/09/14 16:20:20 | 000,180,269 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2004/08/04 00:56:58 | 000,073,796 | ---- | M] (Smart Link) -- C:\WINDOWS\system32\slserv.exe
PRC - [2004/08/03 23:56:52 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\inetsrv\inetinfo.exe
PRC - [2004/08/03 23:56:50 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004/06/16 06:03:04 | 000,081,920 | ---- | M] (InstallShield Software Corporation) -- C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
PRC - [2003/08/27 07:00:00 | 000,057,344 | ---- | M] (brother Industries Ltd) -- C:\WINDOWS\system32\brsvc01a.exe
PRC - [2003/03/19 17:08:14 | 000,299,008 | ---- | M] (Palm, Inc.) -- C:\Program Files\Palm\HOTSYNC.EXE
PRC - [2002/12/03 17:06:52 | 000,045,056 | ---- | M] (Creative Technology Ltd) -- C:\Program Files\Creative\SB Drive Det\SBDrvDet.exe
PRC - [2002/10/29 08:18:24 | 000,049,152 | ---- | M] (Creative Technology Ltd) -- C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
PRC - [2002/09/30 00:00:00 | 000,045,056 | ---- | M] (Creative Technology Ltd) -- C:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDET.exe
PRC - [2001/12/12 07:01:00 | 000,045,056 | ---- | M] (brother Industries Ltd) -- C:\WINDOWS\system32\brss01a.exe
PRC - [2001/11/27 08:10:00 | 000,106,560 | ---- | M] (WinZip Computing, Inc.) -- C:\Program Files\WinZip\WZQKPICK.EXE
PRC - [2001/08/17 22:36:54 | 000,086,016 | ---- | M] (PCtel, Inc.) -- C:\WINDOWS\system32\pctspk.exe


========== Modules (SafeList) ==========

MOD - [2011/01/31 19:02:55 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Liam Bradley\Desktop\OTL.exe
MOD - [2004/08/03 23:57:02 | 001,050,624 | R--- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- -- (SDhelper)
SRV - [2011/01/10 10:29:13 | 003,246,040 | ---- | M] (Acronis) [Auto | Start_Pending] -- C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe -- (afcdpsrv)
SRV - [2011/01/06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Start_Pending] -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/01/05 19:02:48 | 000,821,048 | ---- | M] (Trusteer Ltd.) [Auto | Running] -- C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe -- (RapportMgmtService)
SRV - [2010/12/06 07:37:38 | 000,804,528 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
SRV - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2007/10/09 15:21:02 | 000,124,280 | ---- | M] (Seagate Technology LLC) [Auto | Running] -- C:\Program Files\Seagate\Basics\Service\SyncServicesBasics.exe -- (Basics Service)
SRV - [2006/09/28 09:20:00 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
SRV - [2004/08/04 00:56:58 | 000,073,796 | ---- | M] (Smart Link) [Auto | Running] -- C:\WINDOWS\System32\slserv.exe -- (SLService)
SRV - [2004/08/03 23:56:52 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\inetsrv\inetinfo.exe -- (W3SVC)
SRV - [2004/08/03 23:56:52 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\inetsrv\inetinfo.exe -- (SMTPSVC) Simple Mail Transfer Protocol (SMTP)
SRV - [2004/08/03 23:56:52 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\inetsrv\inetinfo.exe -- (IISADMIN)
SRV - [2003/08/27 07:00:00 | 000,057,344 | ---- | M] (brother Industries Ltd) [Auto | Running] -- C:\WINDOWS\system32\brsvc01a.exe -- (Brother XP spl Service)
SRV - [2001/08/17 22:36:54 | 000,086,016 | ---- | M] (PCtel, Inc.) [Auto | Running] -- C:\WINDOWS\system32\pctspk.exe -- (Pctspk)


========== Driver Services (SafeList) ==========

DRV - [2011/01/10 10:29:25 | 000,167,968 | ---- | M] (Acronis) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\afcdp.sys -- (afcdp)
DRV - [2011/01/10 10:28:57 | 000,752,128 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\tdrpm273.sys -- (tdrpman273) Acronis Try&Decide and Restore Points filter (build 273)
DRV - [2011/01/10 10:28:55 | 000,600,928 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\timntr.sys -- (timounter)
DRV - [2011/01/10 10:28:36 | 000,170,528 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\snapman.sys -- (snapman)
DRV - [2011/01/05 19:11:24 | 000,047,928 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Application Data\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus_22705.sys -- (RapportCerberus_22705)
DRV - [2011/01/05 19:02:54 | 000,156,344 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys -- (RapportPG)
DRV - [2011/01/05 19:02:54 | 000,063,160 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys -- (RapportEI)
DRV - [2011/01/05 19:02:54 | 000,053,816 | ---- | M] (Trusteer Ltd.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\RapportKELL.sys -- (RapportKELL)
DRV - [2010/12/08 04:12:38 | 000,251,728 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2010/11/12 13:19:38 | 000,299,984 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2010/09/13 15:27:24 | 000,025,680 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2010/09/07 03:48:56 | 000,034,384 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2010/09/07 03:48:50 | 000,026,064 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2010/08/19 20:42:38 | 000,030,288 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2010/08/19 20:42:36 | 000,123,472 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2010/08/19 20:42:34 | 000,026,192 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2009/12/30 11:20:54 | 000,027,064 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\revoflt.sys -- (Revoflt)
DRV - [2008/02/13 13:17:26 | 000,618,112 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\PFC027.SYS -- (PAC207)
DRV - [2007/07/13 08:56:08 | 000,230,784 | R--- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\U6000ALL.sys -- (U6000ALL) U6000 TV Box(ALL)
DRV - [2006/12/05 11:06:38 | 000,024,128 | R--- | M] (Philips Semiconductors) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\PhTVTune.sys -- (PhTVTune)
DRV - [2006/12/05 11:06:36 | 000,336,128 | R--- | M] (Philips Semiconductors) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Cap7134.sys -- (Cap7134)
DRV - [2005/12/13 15:18:50 | 000,050,048 | ---- | M] (PCTools Research Pty Ltd.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ikhlayer.sys -- (ikhlayer)
DRV - [2004/12/22 19:05:08 | 000,259,584 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ZD1211U.sys -- (ZD1211U(Cable & Wireless)) Cable & Wireless 802.11g Series Wireless LAN USB(Cable & Wireless)
DRV - [2004/08/04 00:05:44 | 000,015,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mpe.sys -- (MPE)
DRV - [2004/08/04 00:05:44 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004/08/03 22:41:46 | 000,095,424 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\slnthal.sys -- (SlNtHal)
DRV - [2004/08/03 22:41:46 | 000,013,240 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\slwdmsup.sys -- (SlWdmSup)
DRV - [2004/08/03 22:41:44 | 000,404,990 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\slntamr.sys -- (Slntamr)
DRV - [2004/08/03 22:41:40 | 000,180,360 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ntmtlfax.sys -- (NtMtlFax)
DRV - [2004/08/03 22:41:40 | 000,126,686 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mtlmnt5.sys -- (Mtlmnt5)
DRV - [2004/08/03 22:41:38 | 001,309,184 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mtlstrm.sys -- (Mtlstrm)
DRV - [2004/08/03 22:03:36 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004/08/03 21:29:56 | 001,897,408 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2004/07/16 14:19:52 | 000,070,400 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Rtlnicxp.sys -- (RTL8023xp)
DRV - [2004/06/30 12:54:04 | 000,019,200 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\ZDBRGSYS.sys -- (ZDBRGSYS)
DRV - [2004/03/05 17:09:02 | 000,003,904 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\CheckIt\Diagnostics\MAPMEM.SYS -- (MAPMEM)
DRV - [2004/03/05 17:09:00 | 000,003,744 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\CheckIt\Diagnostics\BCMNTIO.SYS -- (BCMNTIO)
DRV - [2004/02/17 09:38:06 | 000,070,688 | R--- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcaudsl.sys -- (alcaudsl)
DRV - [2004/01/14 10:30:00 | 000,017,151 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\ZDPNDIS5.sys -- (ZDPNDIS5)
DRV - [2003/12/08 10:53:48 | 000,053,600 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcan5wn.sys -- (alcan5wn) SpeedTouch USB ADSL PPP Networking Driver (NDISWAN)
DRV - [2003/04/11 05:32:36 | 000,502,160 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM)
DRV - [2003/04/03 02:59:46 | 000,850,880 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k)
DRV - [2003/04/01 12:07:58 | 000,142,752 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\haP16v2k.sys -- (hap16v2k)
DRV - [2003/03/27 04:58:56 | 000,287,920 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctdvda2k.sys -- (ctdvda2k)
DRV - [2003/03/25 12:13:30 | 000,144,736 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emupia2k.sys -- (emupia)
DRV - [2003/03/25 12:13:20 | 000,135,696 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2003/03/25 12:13:02 | 000,006,144 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctprxy2k.sys -- (ctprxy2k)
DRV - [2003/03/25 12:12:54 | 000,190,176 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2003/03/25 12:11:24 | 000,134,656 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctac32k.sys -- (ctac32k)
DRV - [2003/03/19 17:08:38 | 000,016,509 | ---- | M] (Palm, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PalmUSBD.sys -- (PalmUSBD)
DRV - [2003/03/06 13:48:08 | 000,003,840 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\BANTExt.sys -- (BANTExt)
DRV - [2003/03/05 11:19:28 | 000,015,840 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\pfmodnt.sys -- (PfModNT)
DRV - [2002/12/30 04:53:36 | 000,012,160 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctgame.sys -- (ctgame)
DRV - [2002/10/01 08:22:32 | 000,009,856 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc)
DRV - [2002/09/16 17:14:32 | 000,004,228 | ---- | M] (PowerQuest Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\PQNTDRV.sys -- (PQNTDrv)
DRV - [2001/08/23 12:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2001/08/23 12:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2001/08/17 14:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001/08/17 13:28:16 | 000,397,502 | ---- | M] (PCtel, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\vpctcom.sys -- (Vpctcom)
DRV - [2001/08/17 13:28:16 | 000,064,605 | ---- | M] (PCtel, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\vvoice.sys -- (Vvoice)
DRV - [2001/08/17 13:28:14 | 000,604,253 | ---- | M] (PCTEL, INC.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\vmodem.sys -- (Vmodem)
DRV - [2001/08/17 13:28:12 | 000,128,286 | ---- | M] (PCTEL, INC.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ptserli.sys -- (Ptserli)
DRV - [2001/08/17 12:50:26 | 000,731,648 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nv4.sys -- (nv4)
DRV - [2001/08/17 12:20:04 | 000,096,256 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ac97intc.sys -- (ac97intc) Intel® 82801 Audio Driver Install Service (WDM)
DRV - [2000/06/29 07:30:46 | 001,246,080 | ---- | M] ( ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\v90drv.sys -- (V90drv)
DRV - [1999/02/16 01:06:00 | 000,006,336 | ---- | M] (LSI Logic) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\Aspixnt.sys -- (ASPIXNT)
DRV - [1997/10/01 12:12:38 | 000,013,344 | ---- | M] (ahead software gmbh
im stöckmädle 6
76307 karlsbad, germany
Fax: ++49-7248-911-888
Compuserve: 101776.1057) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\drivers\NEROCDNT.SYS -- (NeroCdNt)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.selectedEngine: "Google"

FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG10\Firefox\ [2011/01/24 23:50:46 | 000,000,000 | ---D | M]

[2004/09/14 16:12:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Liam Bradley\Application Data\Mozilla\Firefox\Profiles\fh0it3xk.default\extensions
[2004/09/14 16:12:17 | 000,000,000 | ---D | M] (Firefox (default)) -- C:\Documents and Settings\Liam Bradley\Application Data\Mozilla\Firefox\Profiles\fh0it3xk.default\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

O1 HOSTS File: ([2004/11/05 01:18:58 | 000,000,736 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (IEObject Class) - {58EA989D-FD9C-4660-B6BC-9AE5296DA453} - C:\WINDOWS\system32\LxrSGe10q.dll (Lexar, Inc)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (PrintMe) - {97387E2B-B2FA-4E4A-A607-F3B5C134F71C} - F:\Program Files\htpmcap.dll (Electronics For Imaging, Inc.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (PrintMe) - {97387E2B-B2FA-4E4A-A607-F3B5C134F71C} - F:\Program Files\htpmcap.dll (Electronics For Imaging, Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O4 - HKLM..\Run: [Acronis Scheduler2 Service] C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [basicsmssmenu] C:\Program Files\Seagate\Basics\Basics Status\MaxMenuMgrBasics.exe (Maxtor Corporation)
O4 - HKLM..\Run: [CTDVDDet] C:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDET.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe (PixArt Imaging Incorporation)
O4 - HKLM..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [PAC207_Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe (PixArt Imaging Incorporation)
O4 - HKLM..\Run: [SAOB Monitor] C:\Program Files\Acronis\TrueImageHome\OnlineBackupStandalone\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [SBDrvDet] C:\Program Files\Creative\SB Drive Det\SBDrvDet.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [SVRemote] c:\Program Files\SVRemote\TVCardRemote.exe ()
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [TrueImageMonitor.exe] F:\Program Files\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [UpdReg] C:\WINDOWS\Updreg.EXE (Creative Technology Ltd.)
O4 - HKLM..\Run: [UVS10 Preload] G:\TV from Computer\uvPL.exe (Ulead Systems, Inc.)
O4 - HKLM..\Run: [WireLessMouse] File not found
O4 - HKCU..\Run: [BlockAds] File not found
O4 - HKCU..\Run: [RealPlayer] C:\Program Files\Real\RealPlayer\realplay.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [TransparentIcons] File not found
O4 - HKCU..\Run: [TransTask] File not found
O4 - HKCU..\Run: [Tweak-XP] File not found
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Cable & Wireless 11g Wireless USB.lnk = C:\Program Files\Cable&Wireless\C&W_802.11g_Utility\C&WWLAN.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\SpySubtract.lnk = File not found
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE (WinZip Computing, Inc.)
O4 - Startup: C:\Documents and Settings\Liam Bradley\Start Menu\Programs\Startup\HotSync Manager.lnk = C:\Program Files\Palm\HOTSYNC.EXE (Palm, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = [binary data]
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = [binary data]
O8 - Extra context menu item: &Google Search - c:\program files\google\GoogleToolbar1.dll (Google Inc.)
O8 - Extra context menu item: Backward Links - c:\program files\google\GoogleToolbar1.dll (Google Inc.)
O8 - Extra context menu item: Cached Snapshot of Page - c:\program files\google\GoogleToolbar1.dll (Google Inc.)
O8 - Extra context menu item: Similar Pages - c:\program files\google\GoogleToolbar1.dll (Google Inc.)
O8 - Extra context menu item: Translate into English - c:\program files\google\GoogleToolbar1.dll (Google Inc.)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: JumpDrive TouchGuard Auto Login - {DED62EF1-948C-4ED6-9625-AF4285E78995} - C:\WINDOWS\system32\LxrSGe10q.dll (Lexar, Inc)
O9 - Extra 'Tools' menuitem : JumpDrive TouchGuard Auto Login - {DED62EF1-948C-4ED6-9625-AF4285E78995} - C:\WINDOWS\system32\LxrSGe10q.dll (Lexar, Inc)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {33564D57-9980-0010-8000-00AA00389B71} http://codecs.micros...386/wmv9dmo.cab (Reg Error: Key error.)
O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} http://office.micros...ontent/opuc.cab (Office Update Installation Engine)
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} http://software-dl.r...ip/RdxIE601.cab (RdxIE Class)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.micros...b?1294318541944 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.micros...b?1294318531849 (MUWebControl Class)
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} http://messenger.msn...pDownloader.cab (MsnMessengerSetupDownloadControl Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macr...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {FF3F0F03-0F01-131A-A3F9-08F02B23E0CC} http://66.117.37.13/gba2218.exe (Reg Error: Key error.)
O16 - DPF: DirectAnimation Java Classes Reg Error: Value error. (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java Reg Error: Value error. (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.2
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - File not found
O22 - SharedTaskScheduler: {A2D9D3F0-8C2A-2A1D-A376-1BECFB10AB72} - Reload Browse - Reg Error: Key error. File not found
O24 - Desktop WallPaper: C:\Documents and Settings\Liam Bradley\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Liam Bradley\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2003/11/20 10:50:17 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/01/31 19:02:55 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Liam Bradley\Desktop\OTL.exe
[2011/01/31 16:31:00 | 000,173,568 | ---- | C] (Bflix) -- F:\My Documents\BflixInstaller.exe.doc
[2011/01/31 09:57:18 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy
[2011/01/28 12:42:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\ImgBurn
[2011/01/25 06:29:55 | 002,137,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2011/01/25 06:29:52 | 002,181,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2011/01/25 06:29:48 | 002,016,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2011/01/25 06:29:46 | 002,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlpa.exe
[2011/01/25 06:24:58 | 000,272,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bthport.sys
[2011/01/25 06:22:36 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2011/01/25 06:22:36 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2011/01/25 06:22:29 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2011/01/25 06:22:25 | 001,985,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2011/01/25 06:22:19 | 011,076,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2011/01/24 22:12:06 | 000,454,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2011/01/24 22:04:36 | 000,884,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msimsg.dll
[2011/01/24 22:04:36 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msihnd.dll
[2011/01/24 22:04:36 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msisip.dll
[2011/01/24 13:25:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
[2011/01/24 12:47:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2011/01/24 12:42:47 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winzm.ime
[2011/01/24 12:42:47 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winsp.ime
[2011/01/24 12:42:46 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winpy.ime
[2011/01/24 12:42:45 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winime.ime
[2011/01/24 12:42:44 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wingb.ime
[2011/01/24 12:42:43 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winar30.ime
[2011/01/24 12:42:40 | 000,041,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.dll
[2011/01/24 12:42:40 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.sys
[2011/01/24 12:42:34 | 000,048,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32.dll
[2011/01/24 12:42:33 | 000,426,041 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicepad.dll
[2011/01/24 12:42:33 | 000,086,073 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicesub.dll
[2011/01/24 12:42:24 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniime.dll
[2011/01/24 12:42:24 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unicdime.ime
[2011/01/24 12:42:22 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe
[2011/01/24 12:42:18 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintsetp.exe
[2011/01/24 12:42:18 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmigrate.dll
[2011/01/24 12:42:17 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlgnt.ime
[2011/01/24 12:42:17 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlphr.exe
[2011/01/24 12:42:16 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\thawbrkr.dll
[2011/01/24 12:42:15 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdipx.sys
[2011/01/24 12:42:15 | 000,019,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdspx.sys
[2011/01/24 12:42:14 | 000,013,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdasync.sys
[2011/01/24 12:42:05 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srusbusd.dll
[2011/01/24 12:41:59 | 000,143,422 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\softkey.dll
[2011/01/24 12:41:59 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpthrd.dll
[2011/01/24 12:41:58 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpincl.dll
[2011/01/24 12:41:58 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpsmir.dll
[2011/01/24 12:41:58 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpstup.dll
[2011/01/24 12:41:57 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpcl.dll
[2011/01/24 12:41:56 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smimsgif.dll
[2011/01/24 12:41:55 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smi2smir.exe
[2011/01/24 12:41:55 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsm.dll
[2011/01/24 12:41:55 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsy.dll
[2011/01/24 12:41:54 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm9aw.dll
[2011/01/24 12:41:54 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smb6w.dll
[2011/01/24 12:41:54 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sma3w.dll
[2011/01/24 12:41:54 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm93w.dll
[2011/01/24 12:41:54 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm92w.dll
[2011/01/24 12:41:53 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8cw.dll
[2011/01/24 12:41:53 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm90w.dll
[2011/01/24 12:41:53 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8dw.dll
[2011/01/24 12:41:53 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8aw.dll
[2011/01/24 12:41:52 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm87w.dll
[2011/01/24 12:41:52 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm81w.dll
[2011/01/24 12:41:52 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm89w.dll
[2011/01/24 12:41:52 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm59w.dll
[2011/01/24 12:41:35 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2011/01/24 12:41:35 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2011/01/24 12:41:35 | 000,026,624 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll
[2011/01/24 12:41:35 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rw001ext.dll
[2011/01/24 12:41:30 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\romanime.ime
[2011/01/24 12:41:28 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe
[2011/01/24 12:41:22 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quick.ime
[2011/01/24 12:41:22 | 000,020,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ramdisk.sys
[2011/01/24 12:41:22 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe
[2011/01/24 12:41:21 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe
[2011/01/24 12:41:13 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll
[2011/01/24 12:41:12 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmigrate.dll
[2011/01/24 12:41:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll
[2011/01/24 12:41:12 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll
[2011/01/24 12:41:11 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlgnt.ime
[2011/01/24 12:41:11 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlphr.exe
[2011/01/24 12:41:08 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlcsd.dll
[2011/01/24 12:41:07 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phon.ime
[2011/01/24 12:41:04 | 000,036,927 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs411.dll
[2011/01/24 12:41:04 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs804.dll
[2011/01/24 12:41:04 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs412.dll
[2011/01/24 12:41:03 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs404.dll
[2011/01/24 12:40:40 | 000,229,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\multibox.dll
[2011/01/24 12:40:39 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtstocom.exe
[2011/01/24 12:40:24 | 001,875,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.lex
[2011/01/24 12:40:24 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.dll
[2011/01/24 12:39:56 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migregdb.exe
[2011/01/24 12:39:54 | 000,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys
[2011/01/24 12:39:54 | 000,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll
[2011/01/24 12:39:49 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lprmon.dll
[2011/01/24 12:39:48 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lpdsvc.dll
[2011/01/24 12:39:42 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\korwbrkr.dll
[2011/01/24 12:39:41 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdvntc.dll
[2011/01/24 12:39:40 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll
[2011/01/24 12:39:40 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdurdu.dll
[2011/01/24 12:39:39 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth3.dll
[2011/01/24 12:39:39 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth2.dll
[2011/01/24 12:39:39 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth1.dll
[2011/01/24 12:39:38 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth0.dll
[2011/01/24 12:39:38 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr2.dll
[2011/01/24 12:39:38 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr1.dll
[2011/01/24 12:39:36 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecat.dll
[2011/01/24 12:39:36 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecnt.dll
[2011/01/24 12:39:36 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnec95.dll
[2011/01/24 12:39:35 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlk41a.dll
[2011/01/24 12:39:35 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlk41j.dll
[2011/01/24 12:39:34 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinpun.dll
[2011/01/24 12:39:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintel.dll
[2011/01/24 12:39:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintam.dll
[2011/01/24 12:39:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinmar.dll
[2011/01/24 12:39:33 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinkan.dll
[2011/01/24 12:39:33 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinhin.dll
[2011/01/24 12:39:33 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinguj.dll
[2011/01/24 12:39:32 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdibm02.dll
[2011/01/24 12:39:32 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdindev.dll
[2011/01/24 12:39:31 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdheb.dll
[2011/01/24 12:39:31 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgeo.dll
[2011/01/24 12:39:30 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdfa.dll
[2011/01/24 12:39:30 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv2.dll
[2011/01/24 12:39:29 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv1.dll
[2011/01/24 12:39:28 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdax2.dll
[2011/01/24 12:39:28 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarmw.dll
[2011/01/24 12:39:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda3.dll
[2011/01/24 12:39:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda2.dll
[2011/01/24 12:39:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda1.dll
[2011/01/24 12:39:27 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarme.dll
[2011/01/24 12:39:26 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jupiw.dll
[2011/01/24 12:39:26 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd106n.dll
[2011/01/24 12:39:26 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101a.dll
[2011/01/24 12:39:26 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101.dll
[2011/01/24 12:39:22 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iprip.dll
[2011/01/24 12:39:18 | 000,315,452 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskf.dll
[2011/01/24 12:39:17 | 000,471,102 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskdic.dll
[2011/01/24 12:39:17 | 000,102,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imlang.dll
[2011/01/24 12:39:16 | 000,274,489 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputyc.dll
[2011/01/24 12:39:16 | 000,262,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputy.exe
[2011/01/24 12:39:16 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imkrinst.exe
[2011/01/24 12:39:16 | 000,045,109 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpuex.exe
[2011/01/24 12:39:15 | 000,233,527 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjprw.exe
[2011/01/24 12:39:15 | 000,208,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpmig.exe
[2011/01/24 12:39:14 | 000,307,257 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.exe
[2011/01/24 12:39:14 | 000,155,705 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdsvr.exe
[2011/01/24 12:39:14 | 000,081,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.dll
[2011/01/24 12:39:14 | 000,057,398 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdadm.exe
[2011/01/24 12:39:13 | 000,716,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcus.dll
[2011/01/24 12:39:13 | 000,368,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcic.dll
[2011/01/24 12:39:12 | 000,811,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81k.dll
[2011/01/24 12:39:12 | 000,340,023 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81.ime
[2011/01/24 12:39:12 | 000,311,359 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsv.exe
[2011/01/24 12:39:12 | 000,102,463 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsm.dll
[2011/01/24 12:39:11 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrcic.dll
[2011/01/24 12:39:11 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekr61.ime
[2011/01/24 12:39:11 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmbx.dll
[2011/01/24 12:39:11 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmig.exe
[2011/01/24 12:39:00 | 010,129,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxkor.dll
[2011/01/24 12:38:50 | 010,096,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxcht.dll
[2011/01/24 12:38:46 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hanjadic.dll
[2011/01/24 12:38:41 | 000,400,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsxp32.dll
[2011/01/24 12:38:41 | 000,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxstiff.dll
[2011/01/24 12:38:41 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxswzrd.dll
[2011/01/24 12:38:41 | 000,154,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsui.dll
[2011/01/24 12:38:40 | 000,562,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsst.dll
[2011/01/24 12:38:40 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssvc.exe
[2011/01/24 12:38:40 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxst30.dll
[2011/01/24 12:38:40 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssend.exe
[2011/01/24 12:38:39 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsroute.dll
[2011/01/24 12:38:39 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsmon.dll
[2011/01/24 12:38:39 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsperf.dll
[2011/01/24 12:38:39 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsres.dll
[2011/01/24 12:38:38 | 000,285,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscomex.dll
[2011/01/24 12:38:38 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscover.exe
[2011/01/24 12:38:38 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsevent.dll
[2011/01/24 12:38:38 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsdrv.dll
[2011/01/24 12:38:38 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsext32.dll
[2011/01/24 12:38:37 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclnt.exe
[2011/01/24 12:38:37 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclntr.dll
[2011/01/24 12:38:37 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscfgwz.dll
[2011/01/24 12:38:37 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscom.dll
[2011/01/24 12:38:36 | 000,452,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsapi.dll
[2011/01/24 12:38:36 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpsv251.dll
[2011/01/24 12:38:35 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpctrs2.dll
[2011/01/24 12:38:35 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpmib.dll
[2011/01/24 12:38:35 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll
[2011/01/24 12:38:32 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe
[2011/01/24 12:38:29 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\f3ahvoas.dll
[2011/01/24 12:38:27 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2011/01/24 12:38:27 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\et4000.sys
[2011/01/24 12:38:26 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2011/01/24 12:38:26 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2011/01/24 12:38:08 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dayi.ime
[2011/01/24 12:38:03 | 000,057,399 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cplexe.exe
[2011/01/24 12:38:03 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe
[2011/01/24 12:37:55 | 000,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintsetp.exe
[2011/01/24 12:37:55 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintime.dll
[2011/01/24 12:37:55 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintlgnt.ime
[2011/01/24 12:37:54 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtskdic.dll
[2011/01/24 12:37:53 | 000,838,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtbrkr.dll
[2011/01/24 12:37:53 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtmbx.dll
[2011/01/24 12:37:52 | 001,677,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chsbrkr.dll
[2011/01/24 12:37:51 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe
[2011/01/24 12:37:51 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe
[2011/01/24 12:37:51 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe
[2011/01/24 12:37:50 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chajei.ime
[2011/01/24 12:37:50 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe
[2011/01/24 12:37:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2011/01/24 12:37:47 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll
[2011/01/24 12:37:47 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_is2022.dll
[2011/01/24 12:37:46 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_g18030.dll
[2011/01/24 12:37:19 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0804.dll
[2011/01/24 12:37:19 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0412.dll
[2011/01/24 12:37:19 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0411.dll
[2011/01/24 12:37:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt040d.dll
[2011/01/24 12:37:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0404.dll
[2011/01/24 12:37:17 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0401.dll
[2011/01/24 12:32:16 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isignup.exe
[2011/01/24 12:28:00 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetmgr.exe
[2011/01/24 12:27:52 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svc.dll
[2011/01/24 12:27:52 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sspifilt.dll
[2011/01/24 12:27:51 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpod51.dll
[2011/01/24 12:27:51 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpmb51.dll
[2011/01/24 12:12:31 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll
[2011/01/24 12:12:31 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\dllcache\spxcoins.dll
[2011/01/24 12:12:31 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll
[2011/01/24 12:12:31 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irclass.dll
[2011/01/22 10:13:06 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Liam Bradley\Recent
[2011/01/21 21:33:41 | 000,000,000 | ---D | C] -- C:\Program Files\MSECache
[2011/01/19 11:34:40 | 000,000,000 | ---D | C] -- F:\My Documents\Emule Music 190111
[2011/01/19 11:13:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\eMule
[2011/01/19 10:49:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\CCleaner
[2011/01/19 10:49:41 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/01/18 15:59:57 | 000,000,000 | ---D | C] -- C:\Program Files\AV8
[2011/01/17 17:11:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\skypePM
[2011/01/17 16:12:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Skype
[2011/01/17 16:12:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2011/01/17 16:12:43 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2011/01/17 16:12:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\Skype
[2011/01/17 16:12:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Skype
[2011/01/15 15:47:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Hewlett-Packard
[2011/01/15 15:43:16 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2011/01/13 17:52:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\WinRAR
[2011/01/13 17:52:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Start Menu\Programs\WinRAR
[2011/01/13 17:52:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\WinRAR
[2011/01/12 15:53:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\Trusteer
[2011/01/12 15:53:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Trusteer Rapport
[2011/01/12 15:53:32 | 000,000,000 | ---D | C] -- C:\Program Files\Trusteer
[2011/01/12 15:50:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Trusteer
[2011/01/11 17:21:55 | 000,000,000 | -H-D | C] -- C:\$AVG
[2011/01/11 16:44:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\AVG10
[2011/01/11 16:41:56 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011/01/11 16:41:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AVG 2011
[2011/01/11 16:38:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011/01/11 16:38:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\AVG
[2011/01/11 16:37:32 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2011/01/11 16:35:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/01/11 11:32:49 | 000,000,000 | ---D | C] -- C:\Program Files\Speccy
[2011/01/11 11:01:01 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2011/01/11 11:00:39 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live SkyDrive
[2011/01/11 11:00:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Live
[2011/01/11 10:49:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\Creative ASR2
[2011/01/10 22:14:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\Uniblue
[2011/01/10 22:14:32 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{DE8EABB5-1C85-4410-A68D-79BD8A4518F4}
[2011/01/10 22:14:27 | 000,000,000 | ---D | C] -- C:\Program Files\Uniblue
[2011/01/10 22:14:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Uniblue
[2011/01/10 22:14:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Local Settings\Application Data\PackageAware
[2011/01/10 10:29:25 | 000,167,968 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\afcdp.sys
[2011/01/10 10:28:57 | 000,752,128 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\tdrpm273.sys
[2011/01/10 10:28:52 | 000,600,928 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\timntr.sys
[2011/01/10 10:28:36 | 000,170,528 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\snapman.sys
[2011/01/10 10:27:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Acronis
[2011/01/10 10:21:34 | 000,000,000 | ---D | C] -- C:\Program Files\Acronis
[2011/01/10 10:21:22 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Acronis
[2011/01/10 10:10:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\Acronis
[2011/01/10 10:10:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Acronis
[2011/01/09 15:58:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Local Settings\Application Data\VS Revo Group
[2011/01/09 15:58:34 | 000,027,064 | ---- | C] (VS Revo Group) -- C:\WINDOWS\System32\drivers\revoflt.sys
[2011/01/09 15:58:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Revo Uninstaller Pro
[2011/01/09 13:55:22 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2011/01/09 13:46:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Smith Micro Shared
[2011/01/09 13:46:38 | 000,000,000 | ---D | C] -- C:\Program Files\CheckIt
[2011/01/09 12:10:41 | 000,000,000 | ---D | C] -- C:\Program Files\QuestBrwSearch
[2011/01/09 12:09:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\ShoppingReport2
[2011/01/09 06:09:02 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2011/01/08 18:32:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2011/01/08 18:32:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2011/01/08 18:32:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2011/01/08 18:28:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2011/01/08 18:22:58 | 000,043,008 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\drivers\amdagp.sys
[2011/01/08 18:22:58 | 000,025,471 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\atv04nt5.dll
[2011/01/08 18:22:58 | 000,021,183 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\atv01nt5.dll
[2011/01/08 18:22:58 | 000,017,279 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\atv10nt5.dll
[2011/01/08 18:22:58 | 000,014,143 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\atv06nt5.dll
[2011/01/08 18:22:58 | 000,011,359 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\atv02nt5.dll
[2011/01/08 18:22:58 | 000,004,255 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\adv01nt5.dll
[2011/01/08 18:22:58 | 000,003,967 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\adv02nt5.dll
[2011/01/08 18:22:58 | 000,003,775 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\adv11nt5.dll
[2011/01/08 18:22:58 | 000,003,711 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\adv09nt5.dll
[2011/01/08 18:22:58 | 000,003,647 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\adv07nt5.dll
[2011/01/08 18:22:58 | 000,003,615 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\adv05nt5.dll
[2011/01/08 18:22:58 | 000,003,135 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\adv08nt5.dll
[2011/01/08 18:22:57 | 000,041,088 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\WINDOWS\System32\drivers\sisagp.sys
[2011/01/08 18:22:57 | 000,030,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rndismpx.sys
[2011/01/08 18:22:57 | 000,015,423 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\ch7xxnt5.dll
[2011/01/08 18:22:57 | 000,012,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mutohpen.sys
[2011/01/08 18:22:57 | 000,011,325 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\vchnt5.dll
[2011/01/08 18:22:57 | 000,003,901 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\siint5.dll
[2011/01/08 18:22:41 | 000,128,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fltmgr.sys
[2011/01/08 18:22:40 | 000,382,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qmgr.dll
[2011/01/08 18:21:17 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sessmgr.exe
[2011/01/08 18:21:16 | 000,051,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\msdv.sys
[2011/01/08 18:21:16 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irenum.sys
[2011/01/08 18:21:15 | 000,139,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpwd.sys
[2011/01/08 18:21:15 | 000,073,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sr.sys
[2011/01/08 18:21:14 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdtcp.sys
[2011/01/08 18:21:14 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\asfsipc.dll
[2011/01/08 18:21:14 | 000,012,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdpipe.sys
[2011/01/08 16:54:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot_bak
[2011/01/08 14:48:00 | 000,000,000 | R--D | C] -- F:\My Documents\Documents
[2011/01/08 14:10:42 | 000,000,000 | ---D | C] -- F:\My Documents\Copy of Audiio Books
[2011/01/08 14:03:48 | 000,000,000 | ---D | C] -- F:\My Documents\Banking
[2011/01/08 14:03:45 | 000,000,000 | ---D | C] -- F:\My Documents\Downloaded Program Updates
[2011/01/08 14:03:44 | 000,000,000 | ---D | C] -- F:\My Documents\e mail related info
[2011/01/08 14:03:42 | 000,000,000 | ---D | C] -- F:\My Documents\My eBooks
[2011/01/08 14:03:42 | 000,000,000 | ---D | C] -- F:\My Documents\House
[2011/01/08 14:03:15 | 000,000,000 | R--D | C] -- F:\My Documents\My Pictures
[2011/01/08 14:03:15 | 000,000,000 | ---D | C] -- F:\My Documents\My Received Files
[2011/01/08 14:03:15 | 000,000,000 | ---D | C] -- F:\My Documents\My PSP Files
[2011/01/08 14:03:11 | 000,000,000 | --SD | C] -- F:\My Documents\My Webs
[2011/01/08 14:03:11 | 000,000,000 | R--D | C] -- F:\My Documents\My Videos
[2011/01/08 14:03:11 | 000,000,000 | ---D | C] -- F:\My Documents\Tax Return filled in 021205 PDF Version_files
[2011/01/08 14:03:11 | 000,000,000 | ---D | C] -- F:\My Documents\Paypal
[2011/01/08 14:03:10 | 000,000,000 | ---D | C] -- F:\My Documents\Ulead VideoStudio SE
[2011/01/08 14:03:10 | 000,000,000 | ---D | C] -- F:\My Documents\Tax Return filled in 021205_files
[2011/01/08 14:03:07 | 000,482,609 | ---- | C] (Macromedia, Inc.) -- F:\My Documents\JaxChristmasCard5.exe
[2011/01/08 14:03:05 | 012,631,561 | ---- | C] (NVIDIA Corporation) -- F:\My Documents\61.77_win2kxp_english.exe
[2011/01/08 11:25:41 | 000,048,128 | ---- | C] (PixArt Imaging Incorporation) -- C:\WINDOWS\System32\Remove.exe
[2011/01/08 11:25:40 | 000,618,112 | ---- | C] (PixArt Imaging Inc.) -- C:\WINDOWS\System32\drivers\PFC027.SYS
[2011/01/08 11:25:40 | 000,006,656 | ---- | C] (PixArt Imaging Inc.) -- C:\WINDOWS\System32\CoInst_080213.dll
[2011/01/08 11:25:39 | 000,129,024 | ---- | C] (PixArt Imaging Incorporation) -- C:\WINDOWS\System32\SP207.ax
[2011/01/08 11:25:39 | 000,014,336 | ---- | C] (PixArt Imaging Inc.) -- C:\WINDOWS\System32\P207USD.dll
[2011/01/08 11:25:39 | 000,000,000 | ---D | C] -- C:\Program Files\Trust
[2011/01/08 11:25:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Trust
[2011/01/08 11:11:25 | 000,000,000 | ---D | C] -- C:\Program Files\Belarc
[2011/01/08 11:11:18 | 000,000,000 | ---D | C] -- C:\Program Files\LGGSM
[2011/01/08 11:11:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\LG GSM
[2011/01/08 11:11:10 | 000,000,000 | ---D | C] -- C:\Program Files\LG Electronics
[2011/01/08 11:08:22 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2011/01/07 14:59:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Local Settings\Application Data\Microsoft Corporation
[2011/01/07 13:52:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\assembly
[2011/01/07 13:51:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2011/01/07 12:02:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2011/01/07 11:20:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Tracing
[2011/01/07 11:18:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\microsoft
[2011/01/07 11:17:27 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2011/01/07 11:09:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Windows Live
[2011/01/07 10:58:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2011/01/07 09:06:20 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\browserchoice.exe
[2011/01/06 17:34:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$(2)
[2011/01/06 15:21:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\PixArt
[2011/01/06 15:21:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PAC207
[2011/01/06 15:21:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Liam Bradley\Application Data\InstallShield
[2011/01/06 13:15:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2011/01/06 13:01:29 | 000,274,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll
[2011/01/06 13:01:29 | 000,016,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll.mui
[2011/01/06 12:59:05 | 000,021,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wucltui.dll.mui
[2011/01/06 12:59:04 | 000,015,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll.mui
[2011/01/06 12:41:19 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Liam Bradley\PrivacIE
[2011/01/06 12:39:48 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Liam Bradley\IETldCache
[2011/01/06 12:37:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2011/01/06 12:35:56 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2011/01/06 12:35:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2011/01/06 12:34:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Real
[2011/01/05 19:02:54 | 000,053,816 | ---- | C] (Trusteer Ltd.) -- C:\WINDOWS\System32\drivers\RapportKELL.sys
[2004/06/14 22:49:29 | 000,065,536 | ---- | C] ( ) -- C:\WINDOWS\System32\a3d.dll
[2000/06/29 07:30:46 | 001,246,080 | ---- | C] ( ) -- C:\WINDOWS\System32\drivers\v90drv.sys
[270 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 F:\My Documents\*.tmp files -> F:\My Documents\*.tmp -> ]
[11 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/01/31 19:11:52 | 004,990,228 | ---- | M] () -- C:\WINDOWS\{00000002-00000000-00000000-00001102-00000004-10021102}.CDF
[2011/01/31 19:09:41 | 000,000,578 | ---- | M] () -- C:\WINDOWS\M3JPEG.INI
[2011/01/31 19:07:32 | 000,000,278 | ---- | M] () -- C:\WINDOWS\tasks\RegistryBooster.job
[2011/01/31 19:07:19 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/01/31 19:07:16 | 1073,270,784 | -HS- | M] () -- C:\hiberfil.sys
[2011/01/31 19:06:58 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\Sweeper.cfg
[2011/01/31 19:02:55 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Liam Bradley\Desktop\OTL.exe
[2011/01/31 18:44:57 | 000,013,002 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/01/31 17:16:51 | 105,068,310 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/01/31 16:31:00 | 000,173,568 | ---- | M] (Bflix) -- F:\My Documents\BflixInstaller.exe.doc
[2011/01/31 10:50:17 | 000,030,168 | ---- | M] () -- C:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000000-00001102-00000004-10021102}.rfx
[2011/01/31 10:50:17 | 000,030,168 | ---- | M] () -- C:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000000-00001102-00000004-10021102}.rfx
[2011/01/31 10:50:17 | 000,030,132 | ---- | M] () -- C:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000000-00001102-00000004-10021102}.rfx
[2011/01/31 10:50:17 | 000,030,132 | ---- | M] () -- C:\WINDOWS\System32\BMXState-{00000002-00000000-00000000-00001102-00000004-10021102}.rfx
[2011/01/31 10:50:17 | 000,001,080 | ---- | M] () -- C:\WINDOWS\System32\settingsbkup.sfm
[2011/01/31 10:50:17 | 000,001,080 | ---- | M] () -- C:\WINDOWS\System32\settings.sfm
[2011/01/31 10:50:17 | 000,000,292 | ---- | M] () -- C:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000000-00001102-00000004-10021102}.dat
[2011/01/31 10:50:17 | 000,000,292 | ---- | M] () -- C:\WINDOWS\System32\DVCState-{00000002-00000000-00000000-00001102-00000004-10021102}.dat
[2011/01/31 10:47:38 | 000,002,483 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Desktop\Microsoft Word.lnk
[2011/01/28 14:48:08 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2011/01/28 12:43:28 | 000,654,920 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Desktop\mtinst.exe
[2011/01/28 12:38:52 | 000,000,776 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Application Data\Microsoft\Internet Explorer\Quick Launch\ImgBurn.lnk
[2011/01/28 12:38:52 | 000,000,776 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\ImgBurn.lnk
[2011/01/28 08:58:49 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2011/01/28 08:43:04 | 000,283,720 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/01/28 00:07:31 | 000,019,968 | ---- | M] () -- F:\My Documents\G2G 270111 Rev1.doc
[2011/01/27 13:20:14 | 000,049,152 | ---- | M] () -- F:\My Documents\Dell Inspiron 570 1.doc
[2011/01/27 11:32:21 | 000,100,352 | ---- | M] () -- F:\My Documents\Acer Aspire Compare 2.doc
[2011/01/27 11:32:21 | 000,100,352 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Acer Aspire Compare 2.doc
[2011/01/27 11:31:15 | 000,100,352 | ---- | M] () -- F:\My Documents\Acer Aspire Compare.doc
[2011/01/27 08:49:41 | 000,000,690 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG 2011.lnk
[2011/01/27 03:25:58 | 000,441,980 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/01/27 03:25:58 | 000,075,946 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/01/27 03:02:00 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011/01/25 10:50:31 | 000,000,301 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Desktop\Sounds and Audio Devices.lnk
[2011/01/24 23:27:02 | 000,019,968 | ---- | M] () -- F:\My Documents\AVG Serial No 240111.doc
[2011/01/24 22:05:51 | 000,002,272 | ---- | M] () -- C:\WINDOWS\epplauncher.mif
[2011/01/24 14:13:55 | 000,155,648 | ---- | M] () -- F:\My Documents\WGA Location 240111.ppt
[2011/01/24 14:12:44 | 000,002,469 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Desktop\Microsoft PowerPoint.lnk
[2011/01/24 12:45:03 | 000,056,088 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2011/01/24 12:35:29 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2011/01/24 12:35:25 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/01/24 12:35:25 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/01/24 12:35:01 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2011/01/24 12:29:33 | 000,025,568 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011/01/24 12:24:37 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2011/01/24 11:50:01 | 000,007,680 | ---- | M] () -- F:\My Documents\Image of Liams Desktop File System 240111.ppt
[2011/01/24 11:17:12 | 000,007,506 | ---- | M] () -- C:\WINDOWS\setupapi.old
[2011/01/21 21:21:00 | 000,013,730 | ---- | M] () -- F:\My Documents\Meeting of RSCDS Forfar Branch 20th Jan2011.docx
[2011/01/20 17:26:56 | 000,031,232 | ---- | M] () -- F:\My Documents\Abbey Close Accounts 200111 Rev 2.doc
[2011/01/20 17:21:37 | 000,031,232 | ---- | M] () -- C:\Documents and Settings\All Users\Documents\Abbey Close Accounts 200111 Rev 2.doc
[2011/01/19 11:13:28 | 000,000,570 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\eMule.lnk
[2011/01/19 11:05:48 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Application Data\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk
[2011/01/19 10:49:45 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2011/01/18 15:48:18 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011/01/18 15:12:19 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for
[2011/01/17 17:15:09 | 002,009,088 | ---- | M] () -- F:\My Documents\Skype 2 Rev1.doc
[2011/01/17 17:11:17 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat
[2011/01/17 16:07:20 | 000,019,968 | ---- | M] () -- F:\My Documents\Skype.doc
[2011/01/15 15:49:24 | 000,103,511 | ---- | M] () -- C:\WINDOWS\hpoins04.dat
[2011/01/15 14:39:38 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Microsoft Outlook.lnk
[2011/01/15 14:37:18 | 000,000,436 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Desktop\Wireless Network Connection 2.lnk
[2011/01/11 11:59:40 | 000,004,953 | ---- | M] () -- F:\My Documents\Syatem Snapshot Speccy 110111.speccy
[2011/01/11 11:38:02 | 000,124,928 | ---- | M] () -- F:\My Documents\System spec from SPECCY 110111.ppt
[2011/01/11 11:32:50 | 000,000,654 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SpeccySystem Snapshot.lnk
[2011/01/10 22:46:26 | 000,421,376 | ---- | M] () -- F:\My Documents\Registry Scan 100111.ppt
[2011/01/10 22:46:05 | 000,026,624 | ---- | M] () -- F:\My Documents\Registry Booster Key and System Tweeker.doc
[2011/01/10 22:43:30 | 000,000,551 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SystemTweaker.lnk
[2011/01/10 22:14:42 | 000,001,719 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Application Data\Microsoft\Internet Explorer\Quick Launch\Uniblue RegistryBooster.lnk
[2011/01/10 22:14:42 | 000,001,701 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Uniblue RegistryBooster.lnk
[2011/01/10 10:29:25 | 000,167,968 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\afcdp.sys
[2011/01/10 10:28:57 | 000,752,128 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\tdrpm273.sys
[2011/01/10 10:28:55 | 000,600,928 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\timntr.sys
[2011/01/10 10:28:36 | 000,170,528 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\snapman.sys
[2011/01/10 10:27:48 | 000,000,526 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Acronis True Image Home 2011.lnk
[2011/01/10 10:27:47 | 000,001,172 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Acronis Online Backup.lnk
[2011/01/10 10:10:53 | 000,000,122 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\blank
[2011/01/10 10:04:41 | 000,021,504 | ---- | M] () -- F:\My Documents\Geeks to Go pointers to Help.doc
[2011/01/09 15:58:36 | 000,000,639 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Revo Uninstaller Pro.lnk
[2011/01/09 13:32:09 | 000,051,200 | ---- | M] () -- F:\My Documents\XP Ser No Everex System Summary 090111.doc
[2011/01/09 12:44:02 | 000,051,200 | ---- | M] () -- F:\My Documents\Everex System Summary 090111.doc
[2011/01/09 12:03:37 | 000,024,064 | ---- | M] () -- F:\My Documents\Carnoustie buddin.doc
[2011/01/09 11:15:50 | 000,024,064 | ---- | M] () -- F:\My Documents\Tesco Personal Finance.doc
[2011/01/08 14:50:37 | 000,000,472 | ---- | M] () -- C:\Program Files\Trust 100K Series Webcam.lnk
[2011/01/08 14:40:48 | 000,002,481 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Desktop\Microsoft Excel.lnk
[2011/01/08 12:53:52 | 000,001,383 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Desktop\PartitionMagic 8.0.lnk
[2011/01/07 11:02:39 | 000,036,352 | ---- | M] () -- F:\My Documents\Copy of Computer Details recovered 970111.doc
[2011/01/07 11:02:39 | 000,036,352 | ---- | M] () -- F:\My Documents\Computer Details recovered 970111.doc
[2011/01/07 09:05:59 | 000,041,984 | ---- | M] () -- F:\My Documents\Copy of Computer Details 060111.doc
[2011/01/07 09:05:59 | 000,041,984 | ---- | M] () -- F:\My Documents\Computer Details 060111.doc
[2011/01/07 09:03:22 | 000,000,162 | -H-- | M] () -- F:\My Documents\Copy of ~$mputer Details 060111.doc
[2011/01/07 09:03:22 | 000,000,162 | -H-- | M] () -- F:\My Documents\~$mputer Details 060111.doc
[2011/01/06 12:39:53 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\Liam Bradley\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/01/05 19:02:54 | 000,053,816 | ---- | M] (Trusteer Ltd.) -- C:\WINDOWS\System32\drivers\RapportKELL.sys
[270 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 F:\My Documents\*.tmp files -> F:\My Documents\*.tmp -> ]
[11 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/01/31 17:16:51 | 105,068,310 | ---- | C] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/01/28 12:43:25 | 000,654,920 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Desktop\mtinst.exe
[2011/01/28 12:38:52 | 000,000,776 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Application Data\Microsoft\Internet Explorer\Quick Launch\ImgBurn.lnk
[2011/01/28 12:38:52 | 000,000,776 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\ImgBurn.lnk
[2011/01/27 23:47:41 | 000,019,968 | ---- | C] () -- F:\My Documents\G2G 270111 Rev1.doc
[2011/01/27 13:18:22 | 000,049,152 | ---- | C] () -- F:\My Documents\Dell Inspiron 570 1.doc
[2011/01/27 11:35:28 | 000,100,352 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Acer Aspire Compare 2.doc
[2011/01/27 11:32:21 | 000,100,352 | ---- | C] () -- F:\My Documents\Acer Aspire Compare 2.doc
[2011/01/27 10:26:20 | 000,100,352 | ---- | C] () -- F:\My Documents\Acer Aspire Compare.doc
[2011/01/25 10:50:30 | 000,000,301 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Desktop\Sounds and Audio Devices.lnk
[2011/01/24 23:27:01 | 000,019,968 | ---- | C] () -- F:\My Documents\AVG Serial No 240111.doc
[2011/01/24 14:13:55 | 000,155,648 | ---- | C] () -- F:\My Documents\WGA Location 240111.ppt
[2011/01/24 12:41:08 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2011/01/24 12:39:42 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2011/01/24 12:39:17 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2011/01/24 12:39:15 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2011/01/24 12:39:10 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2011/01/24 12:38:54 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2011/01/24 12:38:45 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2011/01/24 12:37:54 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2011/01/24 12:12:53 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2011/01/24 12:12:06 | 000,141,702 | ---- | C] () -- C:\WINDOWS\System32\dllcache\netfx.cat
[2011/01/24 12:12:06 | 000,110,116 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tabletpc.cat
[2011/01/24 12:12:06 | 000,031,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mediactr.cat
[2011/01/24 12:12:06 | 000,024,209 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn7.cat
[2011/01/24 12:12:06 | 000,011,651 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn9.cat
[2011/01/24 12:12:06 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2011/01/24 12:12:06 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2011/01/24 12:12:06 | 000,007,245 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT
[2011/01/24 12:12:05 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2011/01/24 12:12:05 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2011/01/24 12:12:05 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2011/01/24 12:12:05 | 000,031,281 | ---- | C] () -- C:\WINDOWS\System32\dllcache\FP4.CAT
[2011/01/24 12:12:05 | 000,013,753 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IMS.CAT
[2011/01/24 12:12:05 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2011/01/24 12:12:05 | 000,009,581 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT
[2011/01/24 12:12:04 | 002,012,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5.CAT
[2011/01/24 12:12:04 | 001,042,903 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2011/01/24 12:12:03 | 000,502,724 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT
[2011/01/24 11:50:00 | 000,007,680 | ---- | C] () -- F:\My Documents\Image of Liams Desktop File System 240111.ppt
[2011/01/21 21:21:00 | 000,013,730 | ---- | C] () -- F:\My Documents\Meeting of RSCDS Forfar Branch 20th Jan2011.docx
[2011/01/21 14:45:51 | 000,031,232 | ---- | C] () -- C:\Documents and Settings\All Users\Documents\Abbey Close Accounts 200111 Rev 2.doc
[2011/01/20 17:26:56 | 000,031,232 | ---- | C] () -- F:\My Documents\Abbey Close Accounts 200111 Rev 2.doc
[2011/01/19 11:13:28 | 000,000,570 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\eMule.lnk
[2011/01/19 11:05:48 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Application Data\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk
[2011/01/19 10:49:45 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2011/01/18 15:12:19 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
[2011/01/17 17:11:17 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2011/01/17 17:04:34 | 002,009,088 | ---- | C] () -- F:\My Documents\Skype 2 Rev1.doc
[2011/01/17 16:12:51 | 000,002,265 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2011/01/17 16:07:20 | 000,019,968 | ---- | C] () -- F:\My Documents\Skype.doc
[2011/01/15 15:42:10 | 000,000,372 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2011/01/15 15:42:07 | 000,103,511 | ---- | C] () -- C:\WINDOWS\hpoins04.dat
[2011/01/15 15:42:07 | 000,017,176 | ---- | C] () -- C:\WINDOWS\hpomdl04.dat
[2011/01/15 14:37:18 | 000,000,436 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Desktop\Wireless Network Connection 2.lnk
[2011/01/12 15:03:43 | 000,001,467 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Start Menu\Programs\Startup\HotSync Manager.lnk
[2011/01/12 15:03:43 | 000,000,483 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\SpySubtract.lnk
[2011/01/11 16:41:29 | 000,000,690 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\AVG 2011.lnk
[2011/01/11 11:59:40 | 000,004,953 | ---- | C] () -- F:\My Documents\Syatem Snapshot Speccy 110111.speccy
[2011/01/11 11:38:02 | 000,124,928 | ---- | C] () -- F:\My Documents\System spec from SPECCY 110111.ppt
[2011/01/11 11:32:50 | 000,000,654 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SpeccySystem Snapshot.lnk
[2011/01/10 22:46:05 | 000,026,624 | ---- | C] () -- F:\My Documents\Registry Booster Key and System Tweeker.doc
[2011/01/10 22:43:30 | 000,000,551 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SystemTweaker.lnk
[2011/01/10 22:22:09 | 000,421,376 | ---- | C] () -- F:\My Documents\Registry Scan 100111.ppt
[2011/01/10 22:14:58 | 000,000,278 | ---- | C] () -- C:\WINDOWS\tasks\RegistryBooster.job
[2011/01/10 22:14:30 | 000,001,719 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Application Data\Microsoft\Internet Explorer\Quick Launch\Uniblue RegistryBooster.lnk
[2011/01/10 22:14:30 | 000,001,701 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Uniblue RegistryBooster.lnk
[2011/01/10 11:20:13 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
[2011/01/10 10:27:48 | 000,000,526 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Acronis True Image Home 2011.lnk
[2011/01/10 10:27:47 | 000,001,172 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Acronis Online Backup.lnk
[2011/01/10 10:04:40 | 000,021,504 | ---- | C] () -- F:\My Documents\Geeks to Go pointers to Help.doc
[2011/01/09 15:58:36 | 000,000,639 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Revo Uninstaller Pro.lnk
[2011/01/09 13:21:32 | 000,051,200 | ---- | C] () -- F:\My Documents\XP Ser No Everex System Summary 090111.doc
[2011/01/09 12:43:47 | 000,051,200 | ---- | C] () -- F:\My Documents\Everex System Summary 090111.doc
[2011/01/09 11:54:53 | 000,024,064 | ---- | C] () -- F:\My Documents\Carnoustie buddin.doc
[2011/01/09 10:42:19 | 000,024,064 | ---- | C] () -- F:\My Documents\Tesco Personal Finance.doc
[2011/01/08 14:50:37 | 000,000,472 | ---- | C] () -- C:\Program Files\Trust 100K Series Webcam.lnk
[2011/01/08 14:03:10 | 001,609,728 | ---- | C] () -- F:\My Documents\Temp Spyaxe list.ppt
[2011/01/08 14:03:10 | 000,332,800 | ---- | C] () -- F:\My Documents\Zone Alarm Tutorial.doc
[2011/01/08 14:03:10 | 000,144,384 | ---- | C] () -- F:\My Documents\Temp Web Casm Delete SW.ppt
[2011/01/08 14:03:10 | 000,130,048 | ---- | C] () -- F:\My Documents\TEmp on Security.ppt
[2011/01/08 14:03:10 | 000,067,584 | ---- | C] () -- F:\My Documents\three days in Rome.doc
[2011/01/08 14:03:10 | 000,029,184 | ---- | C] () -- F:\My Documents\Temp Mail boxes Username and passwords.doc
[2011/01/08 14:03:10 | 000,026,112 | ---- | C] () -- F:\My Documents\Tax Return Logon details 26th Sept 2009.doc
[2011/01/08 14:03:10 | 000,026,112 | ---- | C] () -- F:\My Documents\Tax Return Logon detaile 19th Nov 2005.doc
[2011/01/08 14:03:10 | 000,019,968 | ---- | C] () -- F:\My Documents\temp address.doc
[2011/01/08 14:03:10 | 000,000,162 | -H-- | C] () -- F:\My Documents\~$yware and Reg Mechanics purchase 121205.doc
[2011/01/08 14:03:10 | 000,000,162 | -H-- | C] () -- F:\My Documents\~$y Code for Nero 6.doc
[2011/01/08 14:03:10 | 000,000,162 | -H-- | C] () -- F:\My Documents\~$x Return filled in 021205.doc
[2011/01/08 14:03:10 | 000,000,162 | -H-- | C] () -- F:\My Documents\~$mputer Details 060111.doc
[2011/01/08 14:03:09 | 000,666,445 | ---- | C] () -- F:\My Documents\Tax Return filled in 021205 Ver2.htm
[2011/01/08 14:03:09 | 000,254,663 | ---- | C] () -- F:\My Documents\Tax Return filled in 021205.doc
[2011/01/08 14:03:09 | 000,242,688 | ---- | C] () -- F:\My Documents\Spyfalcon.doc
[2011/01/08 14:03:09 | 000,148,480 | ---- | C] () -- F:\My Documents\Spyware and Reg Mechanics purchase 121205.doc
[2011/01/08 14:03:09 | 000,071,680 | ---- | C] () -- F:\My Documents\Successful Brainstorming.ppt
[2011/01/08 14:03:09 | 000,031,232 | ---- | C] () -- F:\My Documents\Sheilas 17 LCD.doc
[2011/01/08 14:03:09 | 000,024,576 | ---- | C] () -- F:\My Documents\SONY RDR HX900.doc
[2011/01/08 14:03:09 | 000,024,064 | ---- | C] () -- F:\My Documents\Sky TV Services Codes.doc
[2011/01/08 14:03:09 | 000,020,480 | ---- | C] () -- F:\My Documents\Tax payment info 051205.doc
[2011/01/08 14:03:09 | 000,008,163 | ---- | C] () -- F:\My Documents\Tax Dec 05 9531188166_SubmissionReceipt_SA04-05.htm
[2011/01/08 14:03:09 | 000,004,398 | ---- | C] () -- F:\My Documents\Tax Return filled in 021205 PDF Version.htm
[2011/01/08 14:03:08 | 000,723,313 | ---- | C] () -- F:\My Documents\SA_Tax_Return_interactionmgr021205.pdf
[2011/01/08 14:03:08 | 000,281,143 | ---- | C] () -- F:\My Documents\RegSeeker.zip
[2011/01/08 14:03:08 | 000,123,904 | ---- | C] () -- F:\My Documents\SGU Registration 290306.ppt
[2011/01/08 14:03:08 | 000,067,584 | ---- | C] () -- F:\My Documents\Rome in three days.doc
[2011/01/08 14:03:08 | 000,054,272 | ---- | C] () -- F:\My Documents\Open Halifax Web Saver.doc
[2011/01/08 14:03:08 | 000,041,472 | ---- | C] () -- F:\My Documents\Open Halifax Web Saver 2.doc
[2011/01/08 14:03:08 | 000,039,424 | ---- | C] () -- F:\My Documents\Panasonic DMRHS2 Hard Drive DVD Recorder.doc
[2011/01/08 14:03:08 | 000,038,400 | ---- | C] () -- F:\My Documents\Partition Magic Read Me.doc
[2011/01/08 14:03:08 | 000,035,840 | ---- | C] () -- F:\My Documents\Open Halifax Web Saver 3.doc
[2011/01/08 14:03:08 | 000,022,528 | ---- | C] () -- F:\My Documents\Panasonic DMRHS2 Hard Drive DVD Recorder 2.doc
[2011/01/08 14:03:08 | 000,019,968 | ---- | C] () -- F:\My Documents\peter 020306.doc
[2011/01/08 14:03:08 | 000,019,968 | ---- | C] () -- F:\My Documents\Paula Kirkman.doc
[2011/01/08 14:03:08 | 000,019,968 | ---- | C] () -- F:\My Documents\Palm 1.doc
[2011/01/08 14:03:08 | 000,019,968 | ---- | C] () -- F:\My Documents\Northern Rock details 121205.doc
[2011/01/08 14:03:08 | 000,014,336 | ---- | C] () -- F:\My Documents\Pension and SBS Calculations 030306.xls
[2011/01/08 14:03:08 | 000,007,206 | ---- | C] () -- F:\My Documents\Searchers & Beatles.nra
[2011/01/08 14:03:08 | 000,006,025 | ---- | C] () -- F:\My Documents\Searchers & Beatles.ncd
[2011/01/08 14:03:07 | 002,803,380 | ---- | C] () -- F:\My Documents\mexico_super_rs_485-4125_manual.pdf
[2011/01/08 14:03:07 | 000,975,609 | ---- | C] () -- F:\My Documents\LCD1810-UsersGuide-english.pdf
[2011/01/08 14:03:07 | 000,413,184 | ---- | C] () -- F:\My Documents\JAMIE OLIVERS second book.doc
[2011/01/08 14:03:07 | 000,131,584 | ---- | C] () -- F:\My Documents\MJU 400 4MP Olympus Weatherproof Digital Camera.doc
[2011/01/08 14:03:07 | 000,091,136 | ---- | C] () -- F:\My Documents\Helpful Travel Information.doc
[2011/01/08 14:03:07 | 000,033,792 | ---- | C] () -- F:\My Documents\Golf and Fitness Tracking.xls
[2011/01/08 14:03:07 | 000,024,064 | ---- | C] () -- F:\My Documents\House Payment Planning.xls
[2011/01/08 14:03:07 | 000,024,064 | ---- | C] () -- F:\My Documents\Gas Tap problem.ppt
[2011/01/08 14:03:07 | 000,020,480 | ---- | C] () -- F:\My Documents\honest john.doc
[2011/01/08 14:03:07 | 000,019,968 | ---- | C] () -- F:\My Documents\Key code for Zone Alarm.doc
[2011/01/08 14:03:07 | 000,019,968 | ---- | C] () -- F:\My Documents\Key Code for Nero 6.doc
[2011/01/08 14:03:06 | 000,347,648 | ---- | C] () -- F:\My Documents\E-Mail outlook setup Tutorial.doc
[2011/01/08 14:03:06 | 000,119,296 | ---- | C] () -- F:\My Documents\Boiler PCB Order info 2 100306.ppt
[2011/01/08 14:03:06 | 000,054,272 | ---- | C] () -- F:\My Documents\Fujifilm A120 info.doc
[2011/01/08 14:03:06 | 000,048,640 | ---- | C] () -- F:\My Documents\Boiler Receipt for PCB 3 100306.doc
[2011/01/08 14:03:06 | 000,044,032 | ---- | C] () -- F:\My Documents\ccbill com lac 140105 90days.ppt
[2011/01/08 14:03:06 | 000,043,520 | ---- | C] () -- F:\My Documents\Closing The Deal.ppt
[2011/01/08 14:03:06 | 000,041,984 | ---- | C] () -- F:\My Documents\Computer Details 060111.doc
[2011/01/08 14:03:06 | 000,036,352 | ---- | C] () -- F:\My Documents\Computer Details recovered 970111.doc
[2011/01/08 14:03:06 | 000,023,552 | ---- | C] () -- F:\My Documents\Counselling 070306.doc
[2011/01/08 14:03:06 | 000,019,968 | ---- | C] () -- F:\My Documents\Details of Optics Layout 1.doc
[2011/01/08 14:03:06 | 000,013,312 | ---- | C] () -- F:\My Documents\Boiler PCB Order info 1 100306.ppt
[2011/01/08 14:03:06 | 000,000,000 | -H-- | C] () -- F:\My Documents\Default.rdp
[2011/01/08 14:03:05 | 000,531,595 | ---- | C] () -- F:\My Documents\avg_free_firewall_install_en_70_5.pdf
[2011/01/08 14:03:05 | 000,161,280 | ---- | C] () -- F:\My Documents\Annuity Hargreves Lansdown.ppt
[2011/01/08 14:03:05 | 000,115,200 | ---- | C] () -- F:\My Documents\- Getting Started Tips -.doc
[2011/01/08 14:03:05 | 000,069,120 | ---- | C] () -- F:\My Documents\1-Get Started.DOC
[2011/01/08 14:03:05 | 000,036,352 | ---- | C] () -- F:\My Documents\8 Ways to Control Stress.doc
[2011/01/08 14:03:05 | 000,018,944 | ---- | C] () -- F:\My Documents\2-Sample File.XLS
[2011/01/08 14:03:05 | 000,007,206 | ---- | C] () -- F:\My Documents\Audio1 v2.nra
[2011/01/08 12:53:52 | 000,001,383 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Desktop\PartitionMagic 8.0.lnk
[2011/01/08 11:25:41 | 000,000,399 | ---- | C] () -- C:\WINDOWS\System32\Remover.ini
[2011/01/08 11:25:39 | 000,000,566 | ---- | C] () -- C:\WINDOWS\System32\SP207.ini
[2011/01/07 11:02:38 | 000,036,352 | ---- | C] () -- F:\My Documents\Copy of Computer Details recovered 970111.doc
[2011/01/07 09:03:22 | 000,000,162 | -H-- | C] () -- F:\My Documents\Copy of ~$mputer Details 060111.doc
[2011/01/06 17:29:40 | 000,041,984 | ---- | C] () -- F:\My Documents\Copy of Computer Details 060111.doc
[2011/01/06 12:31:18 | 000,002,272 | ---- | C] () -- C:\WINDOWS\epplauncher.mif
[2010/02/09 15:08:04 | 000,230,784 | R--- | C] () -- C:\WINDOWS\System32\drivers\U6000ALL.sys
[2009/04/30 07:51:03 | 000,081,920 | R--- | C] () -- C:\WINDOWS\System32\srctrl.dll
[2007/08/31 08:54:01 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\InsDrvZD.dll
[2007/06/23 13:47:06 | 000,000,134 | ---- | C] () -- C:\WINDOWS\IMSI_EZ.INI
[2007/06/23 13:47:06 | 000,000,002 | ---- | C] () -- C:\WINDOWS\IMSI_EZN.INI
[2007/06/08 19:12:12 | 000,262,144 | ---- | C] () -- C:\WINDOWS\System32\GTTunerCard.dll
[2007/02/28 17:55:01 | 000,000,306 | ---- | C] () -- C:\WINDOWS\QTW.INI
[2007/02/28 17:53:06 | 000,000,331 | ---- | C] () -- C:\WINDOWS\Maris.ini
[2005/12/06 00:38:18 | 000,000,111 | ---- | C] () -- C:\WINDOWS\CRIBBAGE.INI
[2005/12/06 00:00:20 | 000,000,113 | ---- | C] () -- C:\WINDOWS\HEARTS.INI
[2005/12/05 23:59:23 | 000,000,271 | ---- | C] () -- C:\WINDOWS\BRIDGE.INI
[2005/12/05 23:57:18 | 000,189,952 | ---- | C] () -- C:\WINDOWS\Qcard32.dll
[2005/12/02 14:37:23 | 000,000,104 | ---- | C] () -- C:\WINDOWS\EKBC.INI
[2005/11/24 17:26:54 | 000,000,290 | ---- | C] () -- C:\WINDOWS\mpsettings.ini
[2005/10/28 14:18:09 | 000,000,000 | ---- | C] () -- C:\WINDOWS\QuickInstall.INI
[2005/09/08 23:15:44 | 000,003,840 | ---- | C] () -- C:\WINDOWS\System32\drivers\BANTExt.sys
[2005/08/09 22:13:31 | 000,831,488 | ---- | C] () -- C:\WINDOWS\System32\libeay32.dll
[2005/08/09 22:13:31 | 000,159,744 | ---- | C] () -- C:\WINDOWS\System32\ssleay32.dll
[2005/08/09 22:12:28 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005/04/19 22:01:25 | 000,278,528 | ---- | C] () -- C:\WINDOWS\System32\LxrSGe10e.dll
[2005/04/18 17:47:40 | 000,020,992 | ---- | C] () -- C:\WINDOWS\jestertb.dll
[2005/02/04 14:35:29 | 000,002,154 | ---- | C] () -- C:\WINDOWS\System32\ssmute.ini
[2005/02/03 23:46:36 | 000,000,578 | ---- | C] () -- C:\WINDOWS\M3JPEG.INI
[2004/11/09 17:32:36 | 000,000,067 | ---- | C] () -- C:\WINDOWS\DVDRegionFree.INI
[2004/11/09 17:29:03 | 000,036,864 | R--- | C] () -- C:\WINDOWS\System32\ctrldll.dll
[2004/11/06 17:46:11 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini
[2004/11/06 16:27:48 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Application Data\dm.ini
[2004/11/06 02:51:33 | 000,000,000 | ---- | C] () -- C:\WINDOWS\frontpg.ini
[2004/11/06 02:50:10 | 000,021,791 | ---- | C] () -- C:\WINDOWS\System32\smtpctrs.ini
[2004/11/06 02:50:10 | 000,001,037 | ---- | C] () -- C:\WINDOWS\System32\ntfsdrct.ini
[2004/11/06 02:49:43 | 000,038,576 | ---- | C] () -- C:\WINDOWS\System32\w3ctrs.ini
[2004/11/06 02:49:42 | 000,010,225 | ---- | C] () -- C:\WINDOWS\System32\axperf.ini
[2004/11/06 02:49:34 | 000,011,435 | ---- | C] () -- C:\WINDOWS\System32\infoctrs.ini
[2004/11/01 22:39:45 | 000,000,031 | ---- | C] () -- C:\WINDOWS\CTWave32.ini
[2004/09/29 21:19:46 | 000,005,606 | ---- | C] () -- C:\WINDOWS\System32\stci.dll
[2004/09/23 18:52:24 | 000,000,021 | ---- | C] () -- C:\WINDOWS\VI_setup.ini
[2004/09/22 22:11:58 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2004/09/14 16:23:57 | 000,000,560 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2004/09/14 16:14:46 | 000,000,071 | ---- | C] () -- C:\Program Files\fmg2.ram
[2004/09/13 13:12:14 | 001,170,363 | ---- | C] () -- C:\Program Files\zp403wmv.rar
[2004/08/04 00:56:46 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004/08/03 23:56:46 | 001,287,680 | ---- | C] () -- C:\WINDOWS\System32\quartz(2).dll
[2004/07/29 02:19:46 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll
[2004/07/17 10:48:44 | 000,249,270 | ---- | C] () -- C:\WINDOWS\System32\_004723_.tmp.dll
[2004/07/17 10:48:44 | 000,022,040 | ---- | C] () -- C:\WINDOWS\System32\_004691_.tmp.dll
[2004/07/17 10:36:38 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys
[2004/06/14 22:50:37 | 000,000,231 | ---- | C] () -- C:\WINDOWS\AC3API.INI
[2004/06/14 22:49:41 | 000,068,908 | ---- | C] () -- C:\WINDOWS\System32\Emu10kx.ini
[2004/06/14 22:49:41 | 000,000,029 | ---- | C] () -- C:\WINDOWS\System32\ctzapxx.ini
[2004/06/14 22:49:35 | 000,005,515 | ---- | C] () -- C:\WINDOWS\System32\ENSDEF.INI
[2004/06/14 22:49:35 | 000,000,194 | ---- | C] () -- C:\WINDOWS\System32\KILL.INI
[2004/06/14 22:46:56 | 000,000,136 | ---- | C] () -- C:\WINDOWS\SBWIN.INI
[2004/05/26 17:30:46 | 004,194,441 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Application Data\sdi.db
[2004/05/18 20:47:15 | 000,181,760 | ---- | C] () -- C:\WINDOWS\patchw32.dll
[2004/05/13 18:09:45 | 002,150,574 | ---- | C] () -- C:\Program Files\aaw6181.exe
[2004/05/06 18:47:16 | 007,116,288 | ---- | C] () -- C:\Program Files\avg6665fu_free.exe
[2004/01/20 00:32:56 | 000,094,720 | ---- | C] () -- C:\Documents and Settings\Liam Bradley\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2004/01/09 13:40:08 | 000,000,478 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2003/11/20 14:05:13 | 000,003,961 | R--- | C] () -- C:\WINDOWS\sllights.ini
[2003/11/20 11:12:02 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2003/06/28 14:34:20 | 000,069,707 | ---- | C] () -- C:\WINDOWS\System32\DISP_OPT1.dll
[2002/06/12 07:37:56 | 000,091,136 | ---- | C] () -- C:\WINDOWS\System32\mp4fil32.dll
[2002/04/05 15:40:02 | 000,294,912 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2002/04/01 22:29:28 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2002/04/01 22:16:30 | 000,454,656 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2002/04/01 22:16:14 | 000,118,784 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2002/04/01 22:15:40 | 000,011,264 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2002/03/21 15:39:02 | 000,073,728 | R--- | C] () -- C:\WINDOWS\System32\UNACEV2.DLL
[2002/03/20 22:01:06 | 000,006,688 | R--- | C] () -- C:\WINDOWS\System32\Digita.sys
[2002/03/20 22:00:20 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\TransportUSB.dll
[2002/03/20 22:00:20 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\TransportSerial.dll
[2002/03/20 22:00:20 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\TransportIrDA.dll
[2002/03/20 22:00:20 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\TransportIrCOMM.dll
[2000/11/24 17:05:06 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\CPUINFO2.DLL
[2000/08/23 05:26:26 | 000,106,496 | ---- | C] () -- C:\WINDOWS\System32\APmpg4v1.dll
[2000/07/22 15:49:46 | 000,431,104 | ---- | C] () -- C:\WINDOWS\System32\VFCodec.dll


< End of report >

  • 0

Advertisements


#2
LiamB

LiamB

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts
Ran "WhoCrashed" and got the following. Is a download of ntoskrnl.exe a possible solution? Ta, LiamB



http://www.resplendence.com/download/whocrashedSetup.exe



On Wed 02/02/2011 23:22:58 GMT your computer crashed
crash dump file: C:\WINDOWS\Minidump\Mini020211-03.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0xA892)
Bugcheck code: 0xD1 (0x0, 0x2, 0x0, 0x0)
Error: DRIVER_IRQL_NOT_LESS_OR_EQUAL
file path: C:\WINDOWS\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that a kernel-mode driver attempted to access pageable memory at a process IRQL that was too high.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver which cannot be identified at this time.


On Wed 02/02/2011 23:22:58 GMT your computer crashed
crash dump file: C:\WINDOWS\memory.dmp
This was probably caused by the following module: ntoskrnl.exe (nt!Kei386EoiHelper+0x2836)
Bugcheck code: 0xD1 (0x0, 0x2, 0x0, 0x0)
Error: DRIVER_IRQL_NOT_LESS_OR_EQUAL
file path: C:\WINDOWS\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that a kernel-mode driver attempted to access pageable memory at a process IRQL that was too high.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver which cannot be identified at this time.


On Wed 02/02/2011 22:53:16 GMT your computer crashed
crash dump file: C:\WINDOWS\Minidump\Mini020211-02.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0xA892)
Bugcheck code: 0xD1 (0x0, 0x2, 0x0, 0x0)
Error: DRIVER_IRQL_NOT_LESS_OR_EQUAL
file path: C:\WINDOWS\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that a kernel-mode driver attempted to access pageable memory at a process IRQL that was too high.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver which cannot be identified at this time.


On Wed 02/02/2011 20:59:48 GMT your computer crashed
crash dump file: C:\WINDOWS\Minidump\Mini020211-01.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0xA892)
Bugcheck code: 0xD1 (0x0, 0x2, 0x0, 0x0)
Error: DRIVER_IRQL_NOT_LESS_OR_EQUAL
file path: C:\WINDOWS\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that a kernel-mode driver attempted to access pageable memory at a process IRQL that was too high.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver which cannot be identified at this time.
  • 0

#3
LiamB

LiamB

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts
Hi, have addressed this issue ~ 1month ago and have had no fixes identified. I now see associated with the time of the restarts in the "System Event Viewer", part of the Computer Management utility the following: "Error..DCOM..10005" on a number of occasions about the time (within seconds) the restart happens. In addition I have also extracted the supplementry details:- DCOM got error "The service database is locked. " attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
1. Whats going on?
2. Can anyone help?
3. Should I disable DCOM? (I can get details to disable from MS website.)
Thanks LiamB

  • 0

#4
Gammo

Gammo

    Member 2k

  • Malware Removal
  • 2,299 posts
Hi,

Please uninstall AVG first. The following tool can't run with AVG present on your PC.

Download ComboFix from one of these locations:

Link 1
Link 2


* IMPORTANT !!! Save ComboFix.exe to your Desktop


  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. Here is a guide on how to disable them:

    Click me

    If you can't disable them then just continue on.

  • Double click on ComboFix.exe & follow the prompts.

  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.

  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.


Posted Image



Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

Posted Image


Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\ComboFix.txt log in your next reply.
  • 0

#5
LiamB

LiamB

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts
Hi Gammo. Apologies for the delay in getting back. Will be proceeding with you solution on Sat. (Just making sure I have a long enough time available to do all that's required.) Many thanks, will provide update tomorrow. Thanks again. LiamB
  • 0

#6
Gammo

Gammo

    Member 2k

  • Malware Removal
  • 2,299 posts
Fine by me. I'll keep this topic open. :D
  • 0

#7
LiamB

LiamB

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts
Hi Gammo. Followed your instructions and here is the required file. Look forward to your comments. Thanks. LiamB ( Not sure how to attach the actual file...so full extract provided. If you want the actual *.txt file let me know how and will do.)

ComboFix 11-03-18.05 - Liam 19/03/2011 16:48:03.1.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1023.785 [GMT 0:00]
Running from: c:\documents and settings\Liam\Desktop\ComboFix.exe
.
.
((((((((((((((((((((((((( Files Created from 2011-02-19 to 2011-03-19 )))))))))))))))))))))))))))))))
.
.
2011-02-26 14:21 . 2011-02-26 14:21 -------- d-----w- C:\Seagate
2011-02-26 14:18 . 2011-02-28 15:32 -------- d-----w- C:\Miscellaneous and Liam 161210
2011-02-26 14:18 . 2011-02-26 14:49 -------- d-----w- C:\GoFlex_BundledSW
2011-02-26 14:14 . 2011-02-28 15:28 -------- d-----w- C:\Backup before XP Update Liams Desktop 240111
2011-02-26 14:10 . 2011-02-26 14:41 -------- d-----w- C:\My Music
2011-02-26 14:08 . 2011-02-26 14:08 -------- d-----w- C:\Contents
2011-02-26 14:08 . 2011-02-26 14:08 -------- d-----w- C:\7a3b29d434d292d405514d
2011-02-26 14:07 . 2011-02-26 14:38 -------- d-----w- C:\HW Monitor
2011-02-26 14:07 . 2011-02-26 14:38 -------- d-----w- C:\FromJDrv
2011-02-26 14:07 . 2011-02-26 14:37 -------- d-----w- C:\$ntservicepackuninstall$(2)
2011-02-26 14:04 . 2011-02-26 14:35 -------- d-----w- C:\WGA 210211
2011-02-26 14:04 . 2011-02-26 14:35 -------- d-----w- C:\RegSeeker
2011-02-26 14:03 . 2011-02-28 18:37 -------- d-----w- C:\Media
2011-02-26 14:03 . 2011-02-26 14:03 -------- d-----w- C:\NVIDIA
2011-02-26 14:03 . 2011-02-26 14:03 -------- d-----w- C:\Inetpub
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-02-09 13:53 . 2008-04-14 12:00 270848 ----a-w- c:\windows\system32\sbe.dll
2011-02-09 13:53 . 2008-04-14 12:00 186880 ----a-w- c:\windows\system32\encdec.dll
2011-01-21 14:44 . 2011-01-21 14:44 8462336 ----a-w- c:\windows\system32\SET162.tmp
2011-01-21 14:44 . 2008-04-14 12:00 439296 ----a-w- c:\windows\system32\shimgvw.dll
2011-01-07 14:09 . 2008-04-14 12:00 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-12-31 13:10 . 2008-04-14 12:00 1854976 ----a-w- c:\windows\system32\win32k.sys
2010-12-23 13:19 . 2010-12-23 13:15 235696345 ----a-w- C:\GoFlex_BundledSW.zip
2010-12-22 12:34 . 2008-04-14 12:00 301568 ----a-w- c:\windows\system32\kerberos.dll
2010-12-20 23:59 . 2008-04-14 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-12-20 23:59 . 2008-04-14 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2010-12-20 23:59 . 2008-04-14 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-12-20 17:26 . 2008-04-14 12:00 730112 ----a-w- c:\windows\system32\lsasrv.dll
2010-12-20 12:55 . 2008-04-14 12:00 385024 ------w- c:\windows\system32\html.iec
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2010-04-16 3872080]
"SB Audigy 2 Startup Menu"="c:\program files\Creative\SBAudigy2\Program\Startup Menu\ChkColor.EXE" [2002-11-13 45056]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="g:\real player march 2011\update\realsched.exe" [2011-02-28 273544]
"CTSysVol"="c:\program files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe" [2002-10-29 49152]
"CTDVDDet"="c:\program files\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE" [2002-09-30 45056]
"CTHelper"="CTHELPER.EXE" [2003-04-10 28672]
"AsioReg"="CTASIO.DLL" [2003-04-11 118784]
"SBDrvDet"="c:\program files\Creative\SB Drive Det\SBDrvDet.exe" [2002-12-03 45056]
"UpdReg"="c:\windows\UpdReg.EXE" [2000-05-11 90112]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2011-01-30 35736]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-11-10 932288]
"PAC207_Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2007-12-10 323584]
"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2007-12-10 323584]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Cable & Wireless 11g Wireless USB.lnk - g:\c&w usb adaptor 250211\C&WWLAN.exe [2011-2-26 438272]
Microsoft Office.lnk - g:\office10\OSA.EXE [2001-2-13 83360]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\usmt\\migwiz.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
.
R3 ctgame;Game Port;c:\windows\system32\drivers\ctgame.sys [28/02/2011 17:46 12160]
R3 PAC207;Trust 100K Series Webcam;c:\windows\system32\drivers\PFC027.SYS [02/03/2011 10:03 618112]
R3 ZD1211U(Cable & Wireless);Cable & Wireless 802.11g Series Wireless LAN USB(Cable & Wireless);c:\windows\system32\drivers\ZD1211U.sys [26/02/2011 12:56 259584]
S0 cerc6;cerc6; [x]
S1 MpKsl69e22731;MpKsl69e22731; [x]
.
Contents of the 'Scheduled Tasks' folder
.
2011-03-19 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-1409082233-507921405-854245398-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2011-01-24 14:25]
.
2011-03-16 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-1409082233-507921405-854245398-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2011-01-24 14:25]
.
2011-03-19 c:\windows\Tasks\RegistryBooster.job
- c:\program files\Uniblue\RegistryBooster\rbmonitor.exe [2011-01-21 14:19]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.co.uk/
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-03-19 16:55
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10m_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10m_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
Completion time: 2011-03-19 16:57:58
ComboFix-quarantined-files.txt 2011-03-19 16:57
.
Pre-Run: 16,149,344,256 bytes free
Post-Run: 16,174,563,328 bytes free
.
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - C6A44E5FAFD981455E0DAF0D6DC11DA1
  • 0

#8
Gammo

Gammo

    Member 2k

  • Malware Removal
  • 2,299 posts
Hi,

I don't see any malware in your log files.

Download TFC to your desktop
  • Open the file and close any other windows.
  • It will close all programs itself when run, make sure to let it run uninterrupted.
  • Click the Start button to begin the process. The program should not take long to finish its job
  • Once its finished it should reboot your machine, if not, do this yourself to ensure a complete clean

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Please download Malwarebytes' Anti-Malware

Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, click the "Update" tab and click the "Check For updates" button.
  • Once the updates were downloaded, click the "Scanner" tab, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.
Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

ESET Online Scanner:

Note: You can use either Internet Explorer or Mozilla FireFox for this scan. You will however need to disable your current installed Anti-Virus, how to do so can be read here.

Vista users: You will need to to right-click on the either the IE or FF icon in the Start Menu or Quick Launch Bar on the Taskbar and select Run as Administrator from the context menu.

  • Please go here then click on: Posted Image

    Note: If using Mozilla Firefox you will need to download esetsmartinstaller_enu.exe when prompted then double click on it to install.
    All of the below instructions are compatible with either Internet Explorer or Mozilla FireFox.

  • Select the option YES, I accept the Terms of Use then click on: Posted Image
  • When prompted allow the Add-On/Active X to install.
  • Make sure that the option Remove found threats is NOT checked, and the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Now click on: Posted Image
  • The virus signature database... will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • When completed select Uninstall application on close if you so wish, make sure you copy the logfile first!
  • Now click on: Posted Image
  • Use notepad to open the logfile located at C:\Program Files\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.
Note: Do not forget to re-enable your Anti-Virus application after running the above scan!
  • 0

#9
LiamB

LiamB

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts
Good morning Gammo. Ran TFC, ran MBAM (file below) BUT when running ESET I got following message "Can not get Update. Is proxy configured?" during virus database download. Clicked "BACK" and checked "Use custon Settings" box. Same result. What can I do next. Thanks, LiamB

Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Database version: 6110

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

20/03/2011 10:29:56
mbam-log-2011-03-20 (10-29-56).txt

Scan type: Quick scan
Objects scanned: 131120
Time elapsed: 2 minute(s), 35 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)
  • 0

#10
LiamB

LiamB

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts
Update...Update. Found out from ESET site that its inportant to recognise I'm on a WiFi link and the Router has to be configured to allow update to Virus Database. Is that my problem? Ta, LiamB
  • 0

#11
Gammo

Gammo

    Member 2k

  • Malware Removal
  • 2,299 posts
LiamB, I don't think your problem is caused by malware.

Please follow these two clean-up instructions first please:

Remove Combofix now that we're done with it.
  • Please press the Windows Key and R on your keyboard. This will bring up the Run... command.
  • Now type in Combofix /Uninstall in the runbox and click OK. (Notice the space between the "x" and "/")
    Posted Image
  • Please follow the prompts to uninstall Combofix.
  • You will then recieve a message saying Combofix was uninstalled successfully once it's done uninstalling itself.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

  • Download OTC to your desktop and run it
  • A list of tool components used in the Cleanup of malware will be downloaded.
  • If your Firewall or Real Time protection attempts to block OTC to reach the Internet, please allow the application to do so.
  • Click Yes to begin the Cleanup process and remove these components, including this application.
  • You will be asked to reboot the machine to finish the Cleanup process. If you are asked to reboot the machine choose Yes.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

After doing the above you can start a new topic about your problem here if you want. :D
  • 0

#12
LiamB

LiamB

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts
Hi Gammo. Many thanks for all your help. I think you're correct. It not a Malware problem. I will now switch my attention to the Event Viewer to see what event is triggering the Restart if thats possible. What wouls we do without G2G! Bye for now. LiamB
  • 0

#13
Gammo

Gammo

    Member 2k

  • Malware Removal
  • 2,299 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :D

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP