Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Keep Getting "has encountered a problem and needs to close."


  • Please log in to reply

#1
Ritaj

Ritaj

    Member

  • Member
  • PipPip
  • 40 posts
This first came to light a couple of days ago when I downloaded a new piece of software
It seems to have installed properly (several re=uploads to make sure) but every time I
try to run the software I get the "has encountered a problem and needs to close." message.

I eventually decided to try to do a System Restore, only to find that I get the same
message when I try to run that, and now also on a couple of other software installations
too.

I am running Windows XP, my computer has been a bit slow lately, so because of this problem
I ran Ccleaner, and used their uninstaller to delete the new software program and re-installed with
no change. Then ran Malwarebytes, which did find 6 items, but again no change still getting
the same message.

I do not have a clue what to try next, so I hope that someone here may be able to help.

I have run the OTL program, (report hereunder).

If anyone has any suggestions, I would be very appreciative.

Rita

OTL logfile created on: 3/6/2011 17:22:35 - Run 5
OTL by OldTimer - Version 3.2.22.2 Folder = C:\Documents and Settings\Administrator\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: M/d/yyyy

894.00 Mb Total Physical Memory | 219.00 Mb Available Physical Memory | 24.00% Memory free
2.00 Gb Paging File | 1.00 Gb Available in Paging File | 71.00% Paging File free
Paging file location(s): C:\pagefile.sys 1344 2688 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 141.03 Gb Total Space | 65.16 Gb Free Space | 46.20% Space Free | Partition Type: NTFS
Drive D: | 8.01 Gb Total Space | 6.31 Gb Free Space | 78.80% Space Free | Partition Type: NTFS

Computer Name: RITAHP | User Name: Administrator | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/03/06 17:21:30 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Desktop\OTL.exe
PRC - [2011/03/05 00:57:40 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/01/14 18:52:40 | 000,623,616 | ---- | M] () -- C:\Program Files\Yuuguu\yuuguu.exe
PRC - [2010/11/08 11:49:45 | 000,160,328 | ---- | M] (Siber Systems) -- C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe
PRC - [2010/06/10 05:58:32 | 001,218,008 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
PRC - [2010/06/10 05:58:32 | 000,865,832 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSC\mcmscsvc.exe
PRC - [2010/02/17 15:52:00 | 000,144,704 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\Mcshield.exe
PRC - [2010/02/17 14:53:26 | 000,606,736 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\mcsysmon.exe
PRC - [2009/10/27 10:19:46 | 000,895,696 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MPF\MpfSrv.exe
PRC - [2009/10/02 12:02:56 | 000,026,640 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSK\msksrver.exe
PRC - [2009/07/08 19:22:24 | 005,134,864 | ---- | M] (McAfee) -- C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe
PRC - [2009/07/08 10:54:34 | 000,359,952 | ---- | M] (McAfee, Inc.) -- c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe
PRC - [2009/07/07 18:10:02 | 002,482,848 | ---- | M] (McAfee, Inc.) -- c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe
PRC - [2009/01/23 09:46:14 | 000,203,280 | ---- | M] () -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
PRC - [2008/04/14 00:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (SafeList) ==========

MOD - [2011/03/06 17:21:30 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Desktop\OTL.exe
MOD - [2010/10/18 14:40:21 | 000,040,960 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll
MOD - [2010/08/23 16:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2009/01/23 09:46:18 | 000,013,840 | ---- | M] () -- C:\Program Files\McAfee\SiteAdvisor\sahook.dll


========== Win32 Services (SafeList) ==========

SRV - [2010/06/10 05:58:32 | 000,865,832 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\MSC\mcmscsvc.exe -- (mcmscsvc)
SRV - [2010/02/24 12:16:08 | 000,365,072 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV - [2010/02/17 15:52:00 | 000,144,704 | ---- | M] (McAfee, Inc.) [Unknown | Running] -- C:\Program Files\McAfee\VirusScan\Mcshield.exe -- (McShield)
SRV - [2010/02/17 14:53:26 | 000,606,736 | ---- | M] (McAfee, Inc.) [On_Demand | Running] -- C:\Program Files\McAfee\VirusScan\mcsysmon.exe -- (McSysmon)
SRV - [2009/10/27 10:19:46 | 000,895,696 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\MPF\MPFSrv.exe -- (MpfService)
SRV - [2009/10/02 12:02:56 | 000,026,640 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\MSK\MskSrver.exe -- (MSK80Service)
SRV - [2009/07/08 19:22:22 | 000,068,112 | ---- | M] (McAfee) [On_Demand | Stopped] -- C:\Program Files\McAfee\MBK\MBackMonitor.exe -- (MBackMonitor)
SRV - [2009/07/08 10:54:34 | 000,359,952 | ---- | M] (McAfee, Inc.) [Auto | Running] -- c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe -- (McProxy)
SRV - [2009/07/07 18:10:02 | 002,482,848 | ---- | M] (McAfee, Inc.) [Auto | Running] -- c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe -- (McNASvc)
SRV - [2009/01/23 09:46:14 | 000,203,280 | ---- | M] () [Auto | Running] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)


========== Driver Services (SafeList) ==========

DRV - [2010/09/03 12:26:24 | 000,395,464 | ---- | M] (Paragon) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\Uim_IM.sys -- (Uim_IM)
DRV - [2010/09/03 12:26:22 | 000,056,208 | ---- | M] (Paragon Software Group) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\hotcore3.sys -- (hotcore3)
DRV - [2010/09/03 12:26:22 | 000,037,080 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\UimBus.sys -- (UimBus)
DRV - [2010/08/24 13:57:38 | 000,386,712 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2010/07/15 14:18:22 | 000,120,136 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\Mpfp.sys -- (MPFP)
DRV - [2010/02/17 15:52:48 | 000,079,816 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk)
DRV - [2010/02/17 15:52:48 | 000,040,552 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfesmfk.sys -- (mfesmfk)
DRV - [2010/02/17 15:52:48 | 000,035,272 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk)
DRV - [2010/02/17 15:52:10 | 000,034,248 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mferkdk.sys -- (mferkdk)
DRV - [2009/12/07 11:50:48 | 000,021,248 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MREMP50.sys -- (MREMP50)
DRV - [2009/12/07 11:50:46 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MRESP50.sys -- (MRESP50)
DRV - [2008/12/10 21:05:37 | 000,015,172 | ---- | M] (Prassi Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\Drivers\PzWDM.sys -- (PzWDM)
DRV - [2006/09/28 17:01:00 | 000,500,480 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\V0230VID.sys -- (V0230VID)
DRV - [2006/09/13 16:06:30 | 000,003,840 | ---- | M] (ATI Technologies Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\atiide.sys -- (atiide)
DRV - [2006/08/01 19:07:02 | 004,356,608 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006/07/22 21:13:48 | 001,579,008 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2006/07/02 06:39:40 | 000,036,864 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
DRV - [2006/05/10 15:00:16 | 000,156,160 | R--- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2006/03/23 17:00:00 | 000,006,272 | R--- | M] (EyePower Games Pte. Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\V0230Vfx.sys -- (V0230Vfx)
DRV - [2005/09/22 04:27:51 | 000,149,504 | R--- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\VoIPUSBDriver.sys -- (BulkUsb)
DRV - [2005/01/08 01:07:16 | 000,145,920 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService)
DRV - [2004/08/03 17:29:50 | 000,019,455 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wVchNTxx.sys -- (iAimFP4)
DRV - [2004/08/03 17:29:48 | 000,012,063 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wSiINTxx.sys -- (iAimFP3)
DRV - [2004/08/03 17:29:46 | 000,025,471 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV10nt.sys -- (iAimTV5)
DRV - [2004/08/03 17:29:46 | 000,023,615 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wCh7xxNT.sys -- (iAimTV4)
DRV - [2004/08/03 17:29:46 | 000,022,271 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV06nt.sys -- (iAimTV6)
DRV - [2004/08/03 17:29:44 | 000,033,599 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV04nt.sys -- (iAimTV3)
DRV - [2004/08/03 17:29:44 | 000,019,551 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV02NT.sys -- (iAimTV1)
DRV - [2004/08/03 17:29:42 | 000,029,311 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wATV01nt.sys -- (iAimTV0)
DRV - [2004/08/03 17:29:42 | 000,011,871 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV09NT.sys -- (iAimFP7)
DRV - [2004/08/03 17:29:40 | 000,011,807 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV07nt.sys -- (iAimFP5)
DRV - [2004/08/03 17:29:40 | 000,011,295 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV08NT.sys -- (iAimFP6)
DRV - [2004/08/03 17:29:38 | 000,161,020 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\i81xnt5.sys -- (i81x)
DRV - [2004/08/03 17:29:38 | 000,012,415 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV01nt.sys -- (iAimFP0)
DRV - [2004/08/03 17:29:38 | 000,012,127 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV02NT.sys -- (iAimFP1)
DRV - [2004/08/03 17:29:38 | 000,011,775 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wADV05NT.sys -- (iAimFP2)
DRV - [2002/04/04 05:32:06 | 000,028,416 | R--- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symmpi.sys -- (Symmpi)
DRV - [2000/07/24 00:01:00 | 000,019,537 | ---- | M] (Brother Industries Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\BrPar.sys -- (BrPar)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch = http://uk.red.client...fo/bt_side.html
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.co...ie=utf8&oe=utf8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.sky.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 75 48 D8 8C 77 CF CA 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
IE - HKCU\..\URLSearchHook: {90d46c30-9f25-4104-aea9-35c3f84477ff} - C:\Program Files\mipony-plugin\tbmipo.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========


FF - HKLM\software\mozilla\Firefox\extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2011/03/05 20:58:24 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010/10/18 14:40:22 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\{22119944-ED35-4ab1-910B-E619EA06A115}: C:\Program Files\Siber Systems\AI RoboForm\Firefox [2007/12/13 01:37:19 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/03/05 00:57:51 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/03/05 00:57:51 | 000,000,000 | ---D | M]

[2009/01/24 13:59:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Extensions
[2011/03/05 21:19:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions
[2010/04/27 15:37:59 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/11/15 22:21:07 | 000,000,000 | ---D | M] (SeoQuake) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{317B5128-0B0B-49b2-B2DB-1E7560E16C74}
[2010/03/25 00:41:46 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2011/03/04 02:58:13 | 000,000,000 | ---D | M] (mipony-plugin Community Toolbar) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{90d46c30-9f25-4104-aea9-35c3f84477ff}
[2010/10/25 19:46:35 | 000,000,000 | ---D | M] (WOT) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2010/12/09 10:33:55 | 000,000,000 | ---D | M] (FireFTP) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}
[2011/02/13 02:44:28 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011/01/07 16:16:29 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2011/02/09 15:12:20 | 000,000,000 | ---D | M] (DownThemAll!) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}
[2010/08/21 20:02:39 | 000,000,000 | ---D | M] (File-Search Toolbar) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{de6fdbf9-913c-461d-857a-4ed69d47c755}
[2010/03/21 23:56:17 | 000,000,000 | ---D | M] (DVDVideoSoft Toolbar) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}
[2011/02/03 01:23:21 | 000,000,000 | ---D | M] (Sothink Web Video Downloader for Firefox) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{FCAB6FDD-5585-425b-95C1-5ED856F3FD08}
[2011/01/21 22:39:27 | 000,000,000 | ---D | M] (viraltrafficfrenzy Community Toolbar) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\{fee90072-01ea-4444-8fca-d460fe44f920}
[2011/03/04 02:58:12 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\[email protected]
[2011/02/03 01:23:30 | 000,000,000 | ---D | M] (Google Reader Watcher) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\[email protected]
[2009/03/19 23:40:35 | 000,000,000 | ---D | M] (Flash AX Control) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\[email protected]
[2009/05/19 23:54:30 | 000,000,000 | ---D | M] (Stomper Tools) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\[email protected]
[2010/09/24 21:16:03 | 000,000,000 | ---D | M] (VTzilla) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\u9o0ghyu.default\extensions\[email protected]
[2011/03/05 20:05:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/05/20 00:56:48 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2010/10/06 01:23:53 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/10/25 22:48:41 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010/09/15 03:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010/03/02 12:28:18 | 000,164,120 | ---- | M] (Tracker Software Products Ltd.) -- C:\Program Files\Mozilla Firefox\plugins\npPDFXCviewNPPlugin.dll
[2010/12/11 01:31:06 | 000,001,538 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/12/11 01:31:06 | 000,000,947 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2010/12/11 01:31:06 | 000,000,769 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2010/12/11 01:31:07 | 000,001,135 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-en-GB.xml

O1 HOSTS File: ([2010/11/01 23:49:27 | 000,000,110 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 213.203.216.114 http://www.marketsamurai.com
O1 - Hosts: 213.203.216.114 marketsamurai.com
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
O2 - BHO: (mipony-plugin Toolbar) - {90d46c30-9f25-4104-aea9-35c3f84477ff} - C:\Program Files\mipony-plugin\tbmipo.dll (Conduit Ltd.)
O2 - BHO: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\SKYPE\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKLM\..\Toolbar: (mipony-plugin Toolbar) - {90d46c30-9f25-4104-aea9-35c3f84477ff} - C:\Program Files\mipony-plugin\tbmipo.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O3 - HKCU\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [McAfee Backup] C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe (McAfee)
O4 - HKLM..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [McENUI] C:\Program Files\McAfee\MHN\McENUI.exe (McAfee, Inc.)
O4 - HKCU..\Run: [RoboForm] C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4 - Startup: C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Yuuguu.lnk = C:\Program Files\Yuuguu\yuuguu.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: &ieSpell Options - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O8 - Extra context menu item: Check &Spelling - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O8 - Extra context menu item: Customize Menu - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: Download with Mipony - C:\Program Files\MiPony\Browser\IEContext.htm ()
O8 - Extra context menu item: Fill Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll (Google Inc.)
O8 - Extra context menu item: Lookup on Merriam Webster - C:\Program Files\ieSpell\Merriam Webster.HTM ()
O8 - Extra context menu item: Lookup on Wikipedia - C:\Program Files\ieSpell\wikipedia.HTM ()
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: iOpus iMacros - {0483894E-2422-45E0-8384-021AFF1AF3CD} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : iMacros Web Automation - {0483894E-2422-45E0-8384-021AFF1AF3CD} - Reg Error: Value error. File not found
O9 - Extra Button: Sky - {08E730A4-FB02-45BD-A900-01E4AD8016F6} - File not found
O9 - Extra Button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra 'Tools' menuitem : ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra 'Tools' menuitem : ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll (Red Egg Software)
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\SKYPE\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\SKYPE\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O15 - HKCU\..Trusted Domains: aol.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: cbonline.co.uk ([www] http in Trusted sites)
O15 - HKCU\..Trusted Domains: email-remover.com ([www] http in Trusted sites)
O15 - HKCU\..Trusted Domains: gmail.com ([www] http in Trusted sites)
O15 - HKCU\..Trusted Domains: hsbc.co.uk ([www] http in Trusted sites)
O15 - HKCU\..Trusted Domains: internet ([]about in Trusted sites)
O15 - HKCU\..Trusted Domains: mcafee.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: mcafee.com ([]https in Trusted sites)
O15 - HKCU\..Trusted Domains: orange.com ([www] http in Trusted sites)
O15 - HKCU\..Trusted Domains: paypal.com ([]https in Trusted sites)
O15 - HKCU\..Trusted Domains: specialoperationssoftware.com ([]http in Trusted sites)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.micros...b?1232667125906 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.ma...r/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} http://help.broadban...tivePreQual.cab (PreQualifier Class)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creat...15112/CTPID.cab (Creative Software AutoUpdate Support Package)
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} https://plugins.valu...ashax/iefax.cab (Flash Casino Helper Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Program Files\Article Content Spinner\DLL\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Program Files\Article Content Spinner\DLL\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Program Files\Article Content Spinner\DLL\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Program Files\Article Content Spinner\DLL\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\SKYPE\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\Program Files\Article Content Spinner\DLL\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Program Files\Article Content Spinner\DLL\mshtml.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/03/06 17:21:29 | 000,581,120 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Desktop\OTL.exe
[2011/03/06 00:23:26 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/03/06 00:23:21 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/03/05 23:43:43 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Recent
[2011/03/05 23:25:12 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/03/05 23:25:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Google Chrome
[2011/03/05 19:30:04 | 000,000,000 | ---D | C] -- C:\Program Files\cyberzilla high pr backlink
[2011/03/05 19:10:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Yuuguu
[2011/03/05 19:10:15 | 000,000,000 | ---D | C] -- C:\Program Files\Yuuguu
[2011/03/04 21:02:42 | 000,000,000 | ---D | C] -- C:\Program Files\Easy Automated Safelist Credits
[2011/03/04 04:23:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\Safelist Guide
[2011/03/04 02:57:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Mipony
[2011/03/04 02:56:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\mipony-plugin
[2011/03/04 02:56:11 | 000,000,000 | ---D | C] -- C:\Program Files\mipony-plugin
[2011/03/04 02:56:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\MiPony
[2011/03/04 02:56:05 | 000,000,000 | ---D | C] -- C:\Program Files\MiPony
[2011/03/04 02:34:39 | 000,000,000 | ---D | C] -- C:\Program Files\MiPONY - Hotfile Etc downloader
[2011/03/04 02:11:37 | 000,000,000 | ---D | C] -- C:\Program Files\Instant Lead Magnet
[2011/03/04 02:07:02 | 000,000,000 | ---D | C] -- C:\Program Files\Instant Video Articles
[2011/03/03 20:30:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\cb id ON yOUtUBE vIDEO
[2011/03/02 23:24:43 | 000,000,000 | ---D | C] -- C:\Program Files\VIDEO MAKING SWARE
[2011/03/02 22:08:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\Video Marketing Goldmine
[2011/03/02 03:55:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\GOOGLE AFFIL X
[2011/03/02 03:03:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\FREE MONEY FORMULA
[2011/03/02 02:37:13 | 000,000,000 | ---D | C] -- C:\Program Files\KEYWORD SCRAPER - MONEY
[2011/03/02 01:34:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\TODAY
[2011/03/01 20:09:01 | 000,000,000 | ---D | C] -- C:\Program Files\KEYWORD KRAKEN
[2011/02/28 21:24:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\Auto Traffic X
[2011/02/28 21:20:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\Paypal Bomb
[2011/02/26 16:14:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\ODDS & ENDS
[2011/02/26 16:08:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\SOFTWARE2
[2011/02/26 15:11:01 | 000,000,000 | ---D | C] -- C:\Program Files\WP AUTOTUBE PRESS
[2011/02/25 14:46:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\HonestWorkFromHome Forum
[2011/02/22 00:31:11 | 000,000,000 | ---D | C] -- C:\Program Files\NicheLOP Website Builder
[2011/02/21 21:43:21 | 000,000,000 | ---D | C] -- C:\Program Files\Desktop Mngement tool
[2011/02/16 21:54:19 | 000,000,000 | ---D | C] -- C:\Program Files\Directory Power Submitter
[2011/02/16 16:23:18 | 000,000,000 | ---D | C] -- C:\Program Files\Traffic Predator Pro
[2011/02/15 13:52:06 | 000,000,000 | ---D | C] -- C:\Program Files\WP AutoPress
[2011/02/15 00:15:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Webfoot Software
[2011/02/15 00:14:35 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2011/02/15 00:14:34 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2011/02/15 00:12:14 | 000,000,000 | ---D | C] -- C:\Program Files\SOCIAL BLASTER PRO
[2011/02/14 01:56:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Traffic Travis v3
[2011/02/14 01:56:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Affilorama
[2011/02/14 01:47:47 | 000,000,000 | ---D | C] -- C:\Program Files\Traffic Travis 3.3
[2011/02/13 01:09:33 | 000,000,000 | ---D | C] -- C:\Program Files\RSS Feed Generator sware
[2011/02/13 00:16:59 | 000,000,000 | ---D | C] -- C:\Program Files\WP Expander plugin
[2011/02/12 03:08:33 | 000,000,000 | ---D | C] -- C:\Program Files\AUTO CONTENT GOLDMINE SWARE
[2011/02/11 22:41:18 | 000,000,000 | ---D | C] -- C:\Program Files\ActionScript Goldmine - Ecover sware
[2011/02/11 20:04:27 | 000,000,000 | ---D | C] -- C:\Program Files\WP Affiliate Themes
[2011/02/11 20:00:43 | 000,000,000 | ---D | C] -- C:\Program Files\Instant Indexer
[2011/02/11 19:31:12 | 000,000,000 | ---D | C] -- C:\Program Files\Upsell Page Generator
[2011/02/11 14:08:07 | 000,000,000 | ---D | C] -- C:\Program Files\WP Date plugin
[2011/02/11 03:56:08 | 000,000,000 | ---D | C] -- C:\Program Files\AUTO CLICK PROFITS
[2011/02/11 02:42:01 | 000,000,000 | ---D | C] -- C:\Program Files\BACKLINK BOOSTER
[2011/02/11 01:25:10 | 000,000,000 | ---D | C] -- C:\Program Files\Trigger Words Software
[2011/02/10 22:53:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Webcasts
[2011/02/10 22:53:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\.webrenderer
[2011/02/10 20:10:45 | 000,000,000 | ---D | C] -- C:\Program Files\Sweepstake Ninja
[2011/02/10 00:19:37 | 000,000,000 | ---D | C] -- C:\Program Files\CLICKBANK PRESS
[2011/02/09 23:04:16 | 000,000,000 | ---D | C] -- C:\Program Files\WP Import Plugin
[2011/02/09 19:25:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\New Folder
[2011/02/08 00:21:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Power Article Rewriter
[2011/02/08 00:17:31 | 000,000,000 | ---D | C] -- C:\Program Files\Power Article Rewriter
[2011/02/07 23:19:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Submit Suite
[2011/02/07 23:19:41 | 000,000,000 | ---D | C] -- C:\Program Files\Submit Suite
[2011/02/07 01:50:08 | 000,000,000 | ---D | C] -- C:\Program Files\Domain Organiser Lite
[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/03/06 17:21:30 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Desktop\OTL.exe
[2011/03/06 17:21:16 | 000,000,302 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1521489415-2647122012-2521685627-500.job
[2011/03/06 17:21:16 | 000,000,294 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1521489415-2647122012-2521685627-500.job
[2011/03/06 17:09:50 | 000,032,819 | ---- | M] () -- C:\WINDOWS\System32\Config.MPF
[2011/03/06 01:46:00 | 000,000,884 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/03/06 00:40:25 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/03/06 00:39:22 | 000,000,880 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/03/06 00:39:22 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\OGALogon.job
[2011/03/06 00:39:19 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/03/06 00:39:16 | 937,771,008 | -HS- | M] () -- C:\hiberfil.sys
[2011/03/05 23:54:39 | 000,528,596 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/03/05 23:54:39 | 000,097,358 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/03/05 23:25:10 | 000,001,791 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/03/05 23:17:38 | 000,719,539 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\EReaderOnDemandProfits.zip
[2011/03/05 23:01:00 | 000,309,338 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\The Niche Jackpot.pdf
[2011/03/05 22:37:11 | 000,782,739 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Articlesbase_Annihilation.pdf
[2011/03/05 21:23:54 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/03/05 20:36:49 | 000,000,010 | ---- | M] () -- C:\WINDOWS\WININIT.INI
[2011/03/05 19:10:30 | 000,000,704 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Yuuguu.lnk
[2011/03/05 19:10:30 | 000,000,686 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Yuuguu.lnk
[2011/03/05 19:10:30 | 000,000,666 | ---- | M] () -- C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Yuuguu.lnk
[2011/03/05 18:57:05 | 002,144,743 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\S.O.A.P.zip
[2011/03/05 02:00:00 | 000,000,358 | ---- | M] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-RITAHP-Administrator.job
[2011/03/05 01:41:24 | 000,868,394 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Viral-Video-Ninjas.pdf
[2011/03/04 21:36:49 | 018,952,598 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\microniche.pdf tools
[2011/03/04 05:36:12 | 002,254,488 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\microniche.pdf
[2011/03/04 02:56:06 | 000,000,672 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\MiPony.lnk
[2011/03/03 01:20:16 | 002,217,771 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\AffiliateCashFormula.zip
[2011/03/02 19:36:29 | 000,140,294 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Easy Cash Blueprint.pdf
[2011/03/02 02:40:42 | 000,390,307 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\freefacebooktraffic.pdf
[2011/03/01 01:00:31 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\McQcTask.job
[2011/02/21 02:00:00 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\Backup.job
[2011/02/15 01:04:11 | 000,000,356 | ---- | M] () -- C:\WINDOWS\tasks\McDefragTask.job
[2011/02/10 01:28:19 | 000,867,660 | ---- | M] () -- C:\Documents and Settings\Administrator\My Documents\freetraffic.pdf - cpa.pdf
[2011/02/09 19:07:56 | 000,167,504 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/02/05 21:52:47 | 000,092,396 | ---- | M] () -- C:\Documents and Settings\Administrator\My Documents\How I made 700 In Commission with one Sale.pdf
[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/03/06 00:39:16 | 937,771,008 | -HS- | C] () -- C:\hiberfil.sys
[2011/03/05 23:25:10 | 000,001,791 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/03/05 23:17:35 | 000,719,539 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\EReaderOnDemandProfits.zip
[2011/03/05 23:00:57 | 000,309,338 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\The Niche Jackpot.pdf
[2011/03/05 22:37:05 | 000,782,739 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Articlesbase_Annihilation.pdf
[2011/03/05 20:36:47 | 000,000,010 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2011/03/05 19:10:30 | 000,000,704 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Yuuguu.lnk
[2011/03/05 19:10:30 | 000,000,686 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Yuuguu.lnk
[2011/03/05 19:10:30 | 000,000,666 | ---- | C] () -- C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\Yuuguu.lnk
[2011/03/05 01:41:19 | 000,868,394 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Viral-Video-Ninjas.pdf
[2011/03/04 21:36:49 | 018,952,598 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\microniche.pdf tools
[2011/03/04 05:36:02 | 002,254,488 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\microniche.pdf
[2011/03/04 02:56:06 | 000,000,672 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\MiPony.lnk
[2011/03/03 01:20:03 | 002,217,771 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\AffiliateCashFormula.zip
[2011/03/03 01:11:33 | 002,144,743 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\S.O.A.P.zip
[2011/03/02 19:36:26 | 000,140,294 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Easy Cash Blueprint.pdf
[2011/03/02 02:40:38 | 000,390,307 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\freefacebooktraffic.pdf
[2011/02/10 01:28:17 | 000,867,660 | ---- | C] () -- C:\Documents and Settings\Administrator\My Documents\freetraffic.pdf - cpa.pdf
[2011/02/05 21:52:47 | 000,092,396 | ---- | C] () -- C:\Documents and Settings\Administrator\My Documents\How I made 700 In Commission with one Sale.pdf
[2011/01/19 22:47:46 | 000,906,247 | ---- | C] () -- C:\WINDOWS\Hot Keyword Hunter Uninstaller.exe
[2010/11/22 23:51:56 | 069,953,947 | ---- | C] () -- C:\Program Files\Amazing Signature Banner.zip
[2010/11/03 17:22:14 | 000,134,675 | ---- | C] () -- C:\WINDOWS\Data Extractor Uninstaller.exe
[2010/10/30 20:11:02 | 000,456,026 | ---- | C] () -- C:\Program Files\rapidwebsiteindexer.zip
[2010/10/24 17:46:42 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010/10/24 17:46:42 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010/10/24 17:46:42 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010/10/24 17:46:42 | 000,079,872 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010/10/24 17:46:42 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010/10/01 13:12:20 | 000,386,408 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2010/10/01 12:46:01 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\OggEnc.exe
[2010/10/01 12:46:01 | 000,145,408 | ---- | C] () -- C:\WINDOWS\System32\Lame.exe
[2010/10/01 12:46:01 | 000,076,800 | ---- | C] () -- C:\WINDOWS\System32\Faac.exe
[2010/10/01 12:46:01 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\NMSAccessU.exe
[2010/09/22 18:35:23 | 000,000,136 | ---- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\fusioncache.dat
[2010/08/20 20:57:52 | 240,821,836 | ---- | C] () -- C:\Program Files\WP Silo Plugin.zip
[2010/08/08 15:56:23 | 000,005,056 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\drctchbl.xvi
[2010/08/08 15:56:20 | 000,004,110 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\xqkcebzs.dik
[2010/07/26 22:22:19 | 000,053,271 | ---- | C] () -- C:\Program Files\WPR710.zip
[2010/07/26 13:20:17 | 000,075,776 | ---- | C] () -- C:\WINDOWS\cadkasdeinst01e.exe
[2010/06/23 12:19:45 | 000,000,098 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\Microsoft.SqlServer.Compact.351.32.bc
[2010/05/20 01:05:04 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010/03/27 22:02:44 | 000,000,059 | ---- | C] () -- C:\WINDOWS\s2t.ini
[2010/03/27 22:01:16 | 000,000,047 | ---- | C] () -- C:\WINDOWS\s2f.ini
[2010/03/22 18:50:05 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/03/16 23:33:37 | 000,000,278 | -H-- | C] () -- C:\Documents and Settings\Administrator\Application Data\foxextshl.out
[2010/03/02 16:53:58 | 000,002,675 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\SAS7_000.DAT
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | ---- | C] () -- C:\WINDOWS\System32\OGAEXEC.exe
[2009/06/29 18:07:42 | 000,170,456 | ---- | C] () -- C:\WINDOWS\hpqins00.dat
[2009/05/19 23:53:52 | 000,429,623 | ---- | C] () -- C:\Program Files\stompertools.xpi
[2009/04/26 18:09:26 | 000,025,088 | ---- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/02/03 00:12:48 | 000,030,256 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2009/01/24 13:59:49 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009/01/23 01:54:20 | 000,258,047 | ---- | C] () -- C:\WINDOWS\System32\vshost.exe
[2008/12/10 21:05:32 | 000,091,923 | ---- | C] () -- C:\WINDOWS\System32\EPPICPrinterDB.dat
[2008/12/10 21:05:32 | 000,076,956 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern2.dat
[2008/12/10 21:05:32 | 000,039,121 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern1.dat
[2008/12/10 21:05:32 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_JP.dat
[2008/11/24 14:43:12 | 000,013,824 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Settings.cfg
[2008/11/23 13:56:08 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\YCRWin32.dll
[2008/08/30 13:46:19 | 000,000,482 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2007/11/16 14:44:10 | 000,002,241 | ---- | C] () -- C:\WINDOWS\System32\ASPRTMM5.DLL
[2007/09/08 03:37:17 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\BROSNMP.DLL
[2007/09/08 03:37:17 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\BRGSRC32.DLL
[2007/09/08 03:37:17 | 000,004,608 | ---- | C] () -- C:\WINDOWS\System32\BRGSRC16.DLL
[2007/09/08 03:37:17 | 000,000,410 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2007/09/08 03:37:17 | 000,000,312 | ---- | C] () -- C:\WINDOWS\BRDIAG.INI
[2007/09/08 03:37:17 | 000,000,141 | ---- | C] () -- C:\WINDOWS\BRVIDEO.INI
[2007/09/08 03:37:17 | 000,000,040 | ---- | C] () -- C:\WINDOWS\opt_1430.ini
[2007/09/08 03:37:17 | 000,000,026 | ---- | C] () -- C:\WINDOWS\brpp2ka.ini
[2007/09/08 03:37:17 | 000,000,023 | ---- | C] () -- C:\WINDOWS\Brownie.ini
[2007/09/08 03:37:17 | 000,000,000 | ---- | C] () -- C:\WINDOWS\BROHL143.INI
[2007/09/08 03:37:17 | 000,000,000 | ---- | C] () -- C:\WINDOWS\brmx2001.ini
[2007/09/08 03:37:16 | 000,013,109 | ---- | C] () -- C:\WINDOWS\HL-1430.INI
[2007/09/08 03:37:11 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\BRSS01A.ini
[2007/09/07 08:02:56 | 000,135,162 | ---- | C] () -- C:\WINDOWS\hpwins10.dat
[2007/09/07 07:17:15 | 000,003,716 | R--- | C] () -- C:\WINDOWS\System32\drivers\V0230FwH.bin
[2007/09/07 07:17:15 | 000,003,716 | R--- | C] () -- C:\WINDOWS\System32\drivers\V0230FwF.bin
[2007/03/08 10:43:03 | 000,010,335 | ---- | C] () -- C:\WINDOWS\hpwscr10.dat
[2007/02/28 02:19:55 | 000,001,042 | ---- | C] () -- C:\WINDOWS\hpwmdl10.dat
[2007/02/19 13:16:15 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2007/02/19 13:07:32 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2007/02/19 13:07:32 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2007/02/19 13:07:32 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2007/02/19 13:07:32 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2007/02/19 13:07:32 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2007/02/19 13:07:32 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2007/02/19 13:06:56 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
[2007/02/19 13:06:56 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2007/02/19 12:53:58 | 000,127,614 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2006/04/25 18:05:14 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2006/04/25 17:43:54 | 000,528,596 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006/04/25 17:43:54 | 000,097,358 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006/04/25 17:39:48 | 000,167,504 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2006/04/25 17:31:56 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2006/04/25 17:27:12 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2006/02/28 02:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006/02/28 02:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006/02/28 02:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006/02/28 02:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2006/02/28 02:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006/02/28 02:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006/02/28 02:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006/02/28 02:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2002/05/28 07:55:42 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2002/05/28 07:54:40 | 000,004,605 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2002/05/08 10:12:22 | 000,000,820 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2002/01/22 16:54:28 | 000,010,539 | ---- | C] () -- C:\WINDOWS\System32\NICFIND.EXE
[2001/07/25 12:00:10 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\HWINV.DLL
[2001/07/25 12:00:10 | 000,026,572 | ---- | C] () -- C:\WINDOWS\System32\INV16.DLL

========== LOP Check ==========

[2011/02/14 01:56:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Affilorama
[2010/10/14 19:12:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Aktura Technology
[2010/04/26 14:24:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\ArcticLine
[2010/11/17 03:20:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Article Marketing Robot
[2011/03/05 23:35:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Azureus
[2008/11/23 14:19:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\BT
[2011/03/05 20:41:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Byngo
[2010/08/22 14:22:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\CherryPickerLive
[2008/11/26 10:50:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\CoreFTP
[2010/05/28 14:07:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\DomainSamurai.6E37012E1CBD7F47B14488FCC715944F3EBDCEDC.1
[2010/11/11 14:25:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Dropbox
[2009/06/09 19:33:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Dynamic
[2008/11/24 14:43:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\EmailNotifier
[2010/12/22 11:41:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Enplase
[2010/03/04 13:55:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\FILEminimizerPictures
[2010/11/16 23:28:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\FileZilla
[2010/06/04 15:42:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\FreeImageConverter
[2010/08/08 16:13:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\FreeVideoConverter
[2010/07/04 20:24:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\G-Lock Software
[2011/03/06 01:00:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\GoodSync
[2010/05/31 02:44:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\GrabPro
[2010/12/17 15:59:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\gtk-2.0
[2010/03/22 00:02:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\IBP
[2009/04/27 22:22:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\IcoFX
[2010/06/07 12:30:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Image Zone Express
[2010/10/29 11:02:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\KompoZer
[2011/01/20 14:30:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Kristanix Software
[2010/04/25 23:52:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\MarketSamurai.6E37012E1CBD7F47B14488FCC715944F3EBDCEDC.1
[2011/03/04 11:46:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Mipony
[2010/08/07 21:26:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\muvee Technologies
[2010/06/23 12:13:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\NeoSoftTools
[2010/02/27 02:37:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Nuance
[2009/04/28 21:51:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Nvu
[2010/08/06 15:00:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\OpenOffice.org
[2010/05/31 02:47:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Orbit
[2010/01/29 00:43:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Paltalk
[2010/12/25 14:01:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Pixpedia Publisher
[2009/04/22 20:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Printer Info Cache
[2007/02/19 13:13:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\SampleView
[2010/08/08 16:13:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Search Settings
[2008/11/24 14:52:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\SiteClasses
[2008/11/24 14:51:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Sites
[2010/06/23 15:55:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Soluto
[2010/07/21 01:34:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010/04/26 19:41:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\ubot
[2010/10/24 20:17:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\uTorrent
[2010/01/29 00:11:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\vmntoolbar
[2010/10/25 19:32:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\WinPatrol
[2010/06/05 00:15:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Bimesoft
[2008/11/23 14:19:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BT
[2009/01/24 12:31:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Citrix
[2011/03/05 20:41:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CodedColor
[2010/12/25 14:02:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CodedColor Common
[2008/11/24 14:43:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EmailNotifier
[2010/03/20 04:23:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FileCure
[2008/08/30 14:17:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GoodSync
[2010/05/17 01:04:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Keyword Sniper Pro
[2010/09/29 11:43:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\launcher
[2010/04/27 16:22:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Micro Niche Finder
[2010/08/07 20:55:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\muvee Technologies
[2010/06/23 12:13:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NeoSoftTools
[2010/02/27 02:34:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nuance
[2009/04/22 21:40:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2010/10/01 12:45:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Pianosoft
[2010/12/25 14:01:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Pixpedia Publisher
[2008/09/01 01:19:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PY_Software
[2010/10/10 20:36:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2007/12/13 01:37:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RoboForm
[2010/02/27 02:35:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ScanSoft
[2010/06/23 15:55:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Soluto
[2010/04/25 02:02:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TechSmith
[2010/10/24 11:57:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/10/28 11:24:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Wondershare
[2011/02/21 02:00:00 | 000,000,276 | ---- | M] () -- C:\WINDOWS\Tasks\Backup.job
[2011/02/15 01:04:11 | 000,000,356 | ---- | M] () -- C:\WINDOWS\Tasks\McDefragTask.job
[2011/03/01 01:00:31 | 000,000,334 | ---- | M] () -- C:\WINDOWS\Tasks\McQcTask.job
[2011/03/06 00:39:22 | 000,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\OGALogon.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 164 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:B1CD2545
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F35A93AD

< End of report >
  • 0

Advertisements


#2
RealWingsFan

RealWingsFan

    Member

  • Member
  • PipPip
  • 14 posts
I'm not a tech but I do see your using toolbars and they tend to conflict at some point in time not always right after installation. The less toolbars the happier a pc is in my opinion. McAfee is a resource hog but since I can't tell if you have malware or another infection I wouldn't recommend replacing it till a tech advises to do so. Also McAfee may be blocking the software your trying to install if it has determined it to be unsafe. You are also low on memory and that may be the cause. You could free up some space by using free storage sites like http://mozy.com/ and http://explore.live....s-live-skydrive and http://photobucket.com/
  • 0

#3
Macboatmaster

Macboatmaster

    7k

  • Member
  • PipPipPipPipPipPipPipPip
  • 7,237 posts
Ritaj

Go here please.
http://www.geekstogo...cleaning-guide/

and post the same in Malware.
Then post on this thread to confirm you have done so.
You need the help of a certified malware removal expert

I advise that you leave matters just as they are until you have their advice.

Please be patient they are very busy.
Good Luck.
  • 0

#4
Ritaj

Ritaj

    Member

  • Topic Starter
  • Member
  • PipPip
  • 40 posts
Many thanks for your advice. I will repost as you suggest.

This is a great forum!
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP