so I'd really like to get this fixed, mostly because I'm locked out of my main account (only lets me in using guest) and ALL of my daughters pics are on there and I've been slacking and don't have backups for the most recent ones.
I can only access anything at all in guest mode. I've tried safe mode and I just keep getting messages saying access for administrator only. It will let me run malwarebytes and spybot in guest mode, and says that the problems been taken care of, but when i restart immediately it just starts all over again and if I don't restart immediately it gives me anywhere from like 20 minutes to a half an hour before it comes up with an error code and then restarts itself. I'm not really technologically savvy so at this point I've completely exhausted my limited ablities. short of throwing it out the window. I would really really appreciate any help.
heres the oldtimers thingy:
OTL logfile created on: 3/3/2011 12:18:13 PM - Run 1
OTL by OldTimer - Version 3.2.22.2 Folder = C:\Documents and Settings\Guest\My Documents\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 82.00% Memory free
5.00 Gb Paging File | 4.00 Gb Available in Paging File | 89.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 698.64 Gb Total Space | 508.86 Gb Free Space | 72.84% Space Free | Partition Type: NTFS
Drive E: | 573.86 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive F: | 6.42 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Drive G: | 697.28 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive H: | 599.03 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive I: | 713.41 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive J: | 414.48 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive K: | 740.78 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive L: | 406.23 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive M: | 413.72 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive N: | 2.16 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive O: | 6.76 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Computer Name: YOUR-6C1F87708D | User Name: Guest | NOT logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/03/03 12:18:05 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Guest\My Documents\Downloads\OTL.exe
PRC - [2011/03/01 20:10:16 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010/08/25 04:09:07 | 000,524,632 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
PRC - [2009/11/24 18:51:40 | 000,081,000 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe
PRC - [2009/10/30 18:08:26 | 000,486,216 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
PRC - [2008/08/21 07:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004/09/29 11:14:36 | 000,069,632 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe
========== Modules (SafeList) ==========
MOD - [2011/03/03 12:18:05 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Guest\My Documents\Downloads\OTL.exe
MOD - [2010/08/23 11:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
========== Driver Services (SafeList) ==========
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledItems: {F76EDD7E-76D0-4EDD-A245-80B389B2D510}:1.9.1
FF - HKLM\software\mozilla\Firefox\Extensions\\{36253578-F354-476D-A8E1-39B9D005CBC1}: C:\Documents and Settings\Randi\Local Settings\Application Data\{36253578-F354-476D-A8E1-39B9D005CBC1}
FF - HKLM\software\mozilla\Firefox\Extensions\\{9C510257-B83A-423B-9CCE-C267E01A1B26}: C:\Documents and Settings\Administrator\Local Settings\Application Data\{9C510257-B83A-423B-9CCE-C267E01A1B26}
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.14\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/03/01 20:10:23 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.14\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/03/01 20:10:23 | 000,000,000 | ---D | M]
[2011/02/04 19:18:04 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Guest\Application Data\Mozilla\Extensions
[2011/02/06 02:51:36 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\16iu3bdn.default\extensions
[2011/02/06 02:51:36 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\16iu3bdn.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/06/03 15:07:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/05/07 17:51:23 | 000,000,000 | ---D | M] (XULRunner) -- C:\DOCUMENTS AND SETTINGS\GUEST\LOCAL SETTINGS\APPLICATION DATA\{F76EDD7E-76D0-4EDD-A245-80B389B2D510}
[2010/07/30 03:32:30 | 001,923,464 | ---- | M] (ArtistScope) -- C:\Program Files\Mozilla Firefox\plugins\npArtistScope.dll
[2010/05/25 11:09:48 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
O1 HOSTS File: ([2011/02/25 19:26:55 | 000,430,092 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 14807 more lines...
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O3 - HKLM\..\Toolbar: (no name) - {9D425283-D487-4337-BAB6-AB8354A81457} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.254.254 192.168.254.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/09/25 13:35:51 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2005/02/15 03:53:04 | 000,000,000 | R--D | M] - E:\AutoRun -- [ CDFS ]
O32 - AutoRun File - [2005/02/15 03:49:04 | 000,700,416 | R--- | M] (Electronic Arts Inc.) - E:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2005/02/15 00:53:16 | 000,618,496 | R--- | M] (Electronic Arts Inc.) - E:\AutoRunGUI.dll -- [ CDFS ]
O32 - AutoRun File - [2005/02/15 03:52:54 | 000,000,152 | R--- | M] () - E:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2008/03/23 08:34:39 | 000,000,000 | R--D | M] - G:\AutoRun -- [ CDFS ]
O32 - AutoRun File - [2006/09/09 10:01:57 | 000,704,512 | R--- | M] (Electronic Arts Inc.) - G:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2006/09/09 02:13:17 | 000,634,880 | R--- | M] (Electronic Arts Inc.) - G:\AutoRunGUI.dll -- [ CDFS ]
O32 - AutoRun File - [2006/09/09 10:05:49 | 000,000,146 | R--- | M] () - G:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2008/03/23 11:01:35 | 000,000,000 | R--D | M] - H:\AutoRun -- [ CDFS ]
O32 - AutoRun File - [2006/02/06 21:28:25 | 000,700,416 | R--- | M] (Electronic Arts Inc.) - H:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2006/02/06 19:46:43 | 000,630,784 | R--- | M] (Electronic Arts Inc.) - H:\AutoRunGUI.dll -- [ CDFS ]
O32 - AutoRun File - [2006/02/06 21:31:24 | 000,000,159 | R--- | M] () - H:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2008/10/23 18:56:12 | 000,000,000 | R--D | M] - I:\AutoRun -- [ CDFS ]
O32 - AutoRun File - [2008/10/23 18:58:06 | 000,703,552 | R--- | M] (Electronic Arts Inc.) - I:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2008/10/23 18:58:07 | 000,662,592 | R--- | M] (Electronic Arts Inc.) - I:\AutoRunGUI.dll -- [ CDFS ]
O32 - AutoRun File - [2008/10/23 18:57:48 | 000,000,166 | R--- | M] () - I:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2008/05/27 17:27:45 | 000,000,000 | R--D | M] - J:\AutoRun -- [ CDFS ]
O32 - AutoRun File - [2008/05/27 17:29:19 | 000,703,552 | R--- | M] (Electronic Arts Inc.) - J:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2008/05/27 17:29:19 | 000,662,592 | R--- | M] (Electronic Arts Inc.) - J:\AutoRunGUI.dll -- [ CDFS ]
O32 - AutoRun File - [2008/05/27 17:29:01 | 000,000,158 | R--- | M] () - J:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2008/03/23 10:50:49 | 000,000,000 | R--D | M] - K:\AutoRun -- [ CDFS ]
O32 - AutoRun File - [2007/01/26 03:36:30 | 000,700,416 | R--- | M] (Electronic Arts Inc.) - K:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2007/01/26 02:06:20 | 000,651,264 | R--- | M] (Electronic Arts Inc.) - K:\AutoRunGUI.dll -- [ CDFS ]
O32 - AutoRun File - [2007/01/26 03:40:58 | 000,000,149 | R--- | M] () - K:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2008/04/14 12:31:08 | 000,000,000 | R--D | M] - L:\AutoRun -- [ CDFS ]
O32 - AutoRun File - [2008/03/11 23:03:12 | 000,703,552 | R--- | M] (Electronic Arts Inc.) - L:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2008/03/11 21:58:10 | 000,662,592 | R--- | M] (Electronic Arts Inc.) - L:\AutoRunGUI.dll -- [ CDFS ]
O32 - AutoRun File - [2008/03/11 23:02:54 | 000,000,178 | R--- | M] () - L:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2007/05/14 22:01:23 | 000,000,000 | R--D | M] - M:\AutoRun -- [ CDFS ]
O32 - AutoRun File - [2007/05/14 22:01:23 | 000,700,416 | R--- | M] (Electronic Arts Inc.) - M:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2007/05/14 20:55:32 | 000,651,264 | R--- | M] (Electronic Arts Inc.) - M:\AutoRunGUI.dll -- [ CDFS ]
O32 - AutoRun File - [2007/05/14 22:02:52 | 000,000,159 | R--- | M] () - M:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2005/07/05 14:05:52 | 001,019,904 | R--- | M] (Microsoft Corporation) - N:\autorun.exe -- [ CDFS ]
O32 - AutoRun File - [2005/05/18 14:59:05 | 000,000,228 | R--- | M] () - N:\Autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2010/09/21 02:23:57 | 000,054,544 | R--- | M] (Electronic Arts) - O:\Autorun.exe -- [ UDF ]
O32 - AutoRun File - [2010/06/27 04:12:50 | 000,000,049 | R--- | M] () - O:\Autorun.inf -- [ UDF ]
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2005/02/15 03:49:04 | 000,700,416 | R--- | M] (Electronic Arts Inc.)
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe -- [2006/09/09 10:01:57 | 000,704,512 | R--- | M] (Electronic Arts Inc.)
O33 - MountPoints2\H\Shell - "" = AutoRun
O33 - MountPoints2\H\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\AutoRun.exe -- [2006/02/06 21:28:25 | 000,700,416 | R--- | M] (Electronic Arts Inc.)
O33 - MountPoints2\I\Shell - "" = AutoRun
O33 - MountPoints2\I\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\I\Shell\AutoRun\command - "" = I:\AutoRun.exe -- [2008/10/23 18:58:06 | 000,703,552 | R--- | M] (Electronic Arts Inc.)
O33 - MountPoints2\J\Shell - "" = AutoRun
O33 - MountPoints2\J\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\J\Shell\AutoRun\command - "" = J:\AutoRun.exe -- [2008/05/27 17:29:19 | 000,703,552 | R--- | M] (Electronic Arts Inc.)
O33 - MountPoints2\K\Shell - "" = AutoRun
O33 - MountPoints2\K\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\K\Shell\AutoRun\command - "" = K:\AutoRun.exe -- [2007/01/26 03:36:30 | 000,700,416 | R--- | M] (Electronic Arts Inc.)
O33 - MountPoints2\L\Shell - "" = AutoRun
O33 - MountPoints2\L\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\L\Shell\AutoRun\command - "" = L:\AutoRun.exe -- [2008/03/11 23:03:12 | 000,703,552 | R--- | M] (Electronic Arts Inc.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
O34 - HKLM BootExecute: (ootExecute settings...) - File not found
O34 - HKLM BootExecute: (on\E) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O36 - AppCertDlls: AppSecDll - (C:\Documents and Settings\All Users\Application Data\yvJQeNCfpv.dll) - C:\Documents and Settings\All Users\Application Data\yvJQeNCfpv.dll (ACTS)
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/03/03 12:18:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\My Documents\Downloads
[2011/03/03 11:45:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Application Data\WinRAR
[2011/03/03 09:22:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Start Menu\Programs\Hard Drive
[2011/03/03 00:03:37 | 000,733,184 | ---- | C] (ACTS) -- C:\Documents and Settings\All Users\Application Data\yvJQeNCfpv.dll
[2011/02/24 19:51:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Spybot - Search & Destroy
[2011/02/24 19:51:44 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2011/02/24 19:51:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2011/02/23 09:03:26 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2011/02/21 03:18:38 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/02/21 03:18:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/02/21 03:18:31 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/02/21 03:18:30 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes
[2011/02/21 02:58:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/02/20 23:35:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Local Settings\Application Data\Identities
[2011/02/20 23:35:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Application Data\TuneUp Software
[2011/02/20 23:29:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Application Data\Yahoo!
[2011/02/20 23:29:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Local Settings\Application Data\Yahoo
[2011/02/10 21:21:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
[2011/02/10 21:21:29 | 000,107,368 | ---- | C] (GEAR Software Inc.) -- C:\WINDOWS\System32\GEARAspi.dll
[2011/02/10 21:20:33 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/02/10 21:20:28 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/02/10 21:20:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/02/10 21:19:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple Computer
[2011/02/10 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2011/02/10 21:19:00 | 004,184,352 | ---- | C] (Apple, Inc.) -- C:\WINDOWS\System32\usbaaplrc.dll
[2011/02/10 21:18:19 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2011/02/10 21:18:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple
[2011/02/06 03:03:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\My Documents\Electronic Arts
[2011/02/06 02:18:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\pKnJfLg05200
[2011/02/04 19:17:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Local Settings\Application Data\Mozilla
[2011/02/04 19:17:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Application Data\Mozilla
[2011/02/04 18:52:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Guest\Application Data\Malwarebytes
[2011/02/02 12:07:37 | 000,000,000 | ---D | C] -- C:\swsetup
[2011/02/01 15:40:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[41 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\System32\drivers\*.tmp files -> C:\WINDOWS\System32\drivers\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/03/03 11:59:16 | 000,012,598 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/03/03 11:58:44 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/03/03 11:58:42 | 3210,883,072 | -HS- | M] () -- C:\hiberfil.sys
[2011/03/03 11:41:04 | 000,671,744 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\111187.exe
[2011/03/03 11:38:36 | 000,000,408 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\186671
[2011/03/03 11:27:35 | 000,000,240 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\~186671
[2011/03/03 11:27:35 | 000,000,168 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\~186671r
[2011/03/03 09:44:01 | 000,000,392 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\587359
[2011/03/03 09:22:39 | 000,000,240 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\~23515
[2011/03/03 09:22:38 | 000,000,168 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\~23515r
[2011/03/03 09:21:58 | 000,000,344 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\23515
[2011/03/03 09:14:28 | 000,671,744 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\587359.exe
[2011/03/03 08:52:08 | 000,671,744 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\186671.exe
[2011/03/03 00:03:37 | 000,733,184 | ---- | M] (ACTS) -- C:\Documents and Settings\All Users\Application Data\yvJQeNCfpv.dll
[2011/02/25 19:26:55 | 000,430,092 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011/02/23 16:01:29 | 001,112,064 | R--- | M] () -- C:\Documents and Settings\All Users\Documents\ESBK.mbb
[2011/02/23 16:01:29 | 000,647,168 | R--- | M] () -- C:\Documents and Settings\All Users\Documents\ESBK.mb
[2011/02/21 02:51:05 | 000,005,612 | -HS- | M] () -- C:\Documents and Settings\All Users\Application Data\mt1g23v02b57q6ihcw1k2qu8485u81yu7lpn7536y43s
[2011/02/20 22:47:17 | 000,001,917 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011/02/10 21:21:42 | 000,001,542 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2011/02/06 04:18:04 | 001,228,854 | ---- | M] () -- C:\fsqwr.bmp
[2011/02/04 17:15:40 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/02/02 12:54:03 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2011/02/02 12:53:43 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/02/02 12:53:43 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/02/01 15:40:14 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[41 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[4 C:\WINDOWS\System32\drivers\*.tmp files -> C:\WINDOWS\System32\drivers\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/03/03 11:41:03 | 000,671,744 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\111187.exe
[2011/03/03 11:07:53 | 3210,883,072 | -HS- | C] () -- C:\hiberfil.sys
[2011/03/03 09:22:38 | 000,000,240 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\~23515
[2011/03/03 09:22:38 | 000,000,168 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\~23515r
[2011/03/03 09:21:58 | 000,000,344 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\23515
[2011/03/03 09:14:31 | 000,000,392 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\587359
[2011/03/03 09:14:28 | 000,671,744 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\587359.exe
[2011/03/03 08:52:22 | 000,000,168 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\~186671r
[2011/03/03 08:52:21 | 000,000,240 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\~186671
[2011/03/03 08:52:13 | 000,000,408 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\186671
[2011/03/03 08:52:08 | 000,671,744 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\186671.exe
[2011/02/20 20:46:44 | 000,005,612 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\mt1g23v02b57q6ihcw1k2qu8485u81yu7lpn7536y43s
[2011/02/10 21:21:42 | 000,001,542 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2011/02/10 21:19:12 | 000,001,830 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Apple Software Update.lnk
[2011/02/06 04:18:03 | 001,228,854 | ---- | C] () -- C:\fsqwr.bmp
[2011/02/02 12:53:43 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/02/02 12:53:43 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/02/01 15:40:14 | 000,000,719 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2010/11/08 12:56:13 | 000,266,240 | ---- | C] () -- C:\WINDOWS\System32\CSHelper.exe
[2010/10/11 01:30:11 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
[2010/10/03 11:07:34 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2010/06/27 23:04:40 | 000,102,262 | ---- | C] () -- C:\WINDOWS\hpoins05.dat
[2010/06/27 23:04:40 | 000,017,505 | ---- | C] () -- C:\WINDOWS\hpomdl07.dat
[2010/05/07 17:51:24 | 000,000,120 | ---- | C] () -- C:\Documents and Settings\Guest\Local Settings\Application Data\Xledikov.dat
[2010/05/07 17:51:24 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Guest\Local Settings\Application Data\Pnibigokimakigej.bin
[2010/03/16 10:25:10 | 000,015,688 | ---- | C] () -- C:\WINDOWS\System32\lsdelete.exe
[2010/03/15 22:11:04 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2010/03/15 22:11:03 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/03/15 22:07:37 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Pnibigokimakigej.bin
[2010/02/16 09:04:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009/09/25 16:24:42 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2009/09/25 13:39:35 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009/09/25 13:34:04 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009/09/25 13:22:56 | 000,000,418 | ---- | C] () -- C:\WINDOWS\System32\Oeminfo.ini
[2009/09/25 13:22:45 | 000,432,356 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2009/09/25 13:22:45 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2009/09/25 13:22:45 | 000,067,312 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2009/09/25 13:22:45 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2009/09/25 13:22:45 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2009/09/25 13:22:44 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2009/09/25 13:22:44 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2009/09/25 13:22:44 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2009/09/25 13:22:44 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2009/09/25 13:22:44 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2009/09/25 13:22:40 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2009/09/25 13:22:39 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2009/09/25 06:28:38 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009/09/25 06:27:49 | 000,114,176 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
< End of report >