Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Very slow computer and spazing internet browser


  • Please log in to reply

#1
Shaene

Shaene

    New Member

  • Member
  • Pip
  • 3 posts
Ok what is happening is that any program i run(it just started like two days ago) is at like half speed and will just seize up and freeze. Another problem i am haveing is the same thing is happeing to my internet browser. i use IE. I tried delete cookies, history, teporary internet files all of that and it didnt help. Even typeing this is laging.

Here is my OTL log...


OTL logfile created on: 5/15/2011 11:25:14 AM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Shane Soliday\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1,013.00 Mb Total Physical Memory | 374.00 Mb Available Physical Memory | 37.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 70.00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 138.05 Gb Total Space | 114.26 Gb Free Space | 82.77% Space Free | Partition Type: NTFS

Computer Name: KARENS | User Name: Shane Soliday | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - File not found --
PRC - [2011/04/27 16:58:08 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2011/03/21 13:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2011/03/04 14:36:52 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2011/03/04 14:36:51 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010/11/24 15:33:26 | 000,921,600 | ---- | M] () -- C:\Program Files\TVersity\Media Server\MediaServer.exe
PRC - [2010/08/05 09:46:02 | 000,583,640 | ---- | M] (PC Tools) -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
PRC - [2010/05/14 12:44:46 | 000,501,480 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
PRC - [2010/05/12 21:05:00 | 000,051,712 | ---- | M] (ALi) -- C:\WINDOWS\WebCam\S6000\S6000Mnt.exe
PRC - [2010/04/07 23:18:40 | 000,908,368 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LManager.exe
PRC - [2010/04/07 23:18:40 | 000,312,400 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\dsiwmis.exe
PRC - [2010/04/07 23:18:40 | 000,298,064 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LMworker.exe
PRC - [2010/01/28 18:27:36 | 000,243,232 | ---- | M] (Acer Group) -- C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
PRC - [2010/01/14 21:11:00 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2009/06/04 21:03:32 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2009/06/04 21:03:06 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2008/04/14 07:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (SafeList) ==========

MOD - [2010/08/23 11:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/04/27 16:58:08 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011/03/04 14:36:52 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2010/11/24 15:33:26 | 000,921,600 | ---- | M] () [Auto | Running] -- C:\Program Files\TVersity\Media Server\MediaServer.exe -- (TVersityMediaServer)
SRV - [2010/10/12 12:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/08/05 09:46:02 | 000,583,640 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe -- (PCToolsSSDMonitorSvc)
SRV - [2010/04/07 23:18:40 | 000,312,400 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Program Files\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2010/01/28 18:27:36 | 000,243,232 | ---- | M] (Acer Group) [Auto | Running] -- C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe -- (Updater Service)
SRV - [2009/06/04 21:03:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel®
SRV - [2008/11/07 20:55:30 | 000,026,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\system32\spupdsvc.exe -- (spupdsvc)


========== Driver Services (SafeList) ==========

DRV - [2011/03/04 16:11:12 | 000,137,656 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2011/03/04 14:37:13 | 000,061,960 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2010/06/17 14:27:22 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010/06/17 14:27:12 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2010/05/14 11:49:02 | 003,221,120 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\S6000KNT.sys -- (S6000KNT)
DRV - [2010/04/13 01:16:50 | 000,252,536 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2010/03/12 16:41:22 | 005,867,040 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2010/03/04 04:53:16 | 000,060,456 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2010/01/04 19:54:48 | 001,602,856 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\athw.sys -- (AR5416)
DRV - [2009/11/17 18:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009/11/17 18:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emac...44wuj5r4692r772
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.emac...44wuj5r4692r772


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emac...44wuj5r4692r772
IE - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.emac...44wuj5r4692r772
IE - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MyWebSearch\bar\1.bin
FF - HKLM\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011/05/15 06:14:50 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011/05/15 06:14:51 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2008/04/14 07:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll (Google Inc.)
O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\..\Toolbar\WebBrowser: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\..\Toolbar\WebBrowser: (uTorrentBar Toolbar) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [AzMixerSel] C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [S6000Mnt] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {9C65AB3E-C9A8-4789-AE24-B365A1C4A6F9} http://emachines-us....tivex/snret.cab (SNRet Control)
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicr...osoft/wrc32.ocx (WRC Class)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 24.220.0.10 24.220.0.11
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O32 - Unable to read "AutoRun" value or value not present!
O32 - AutoRun File - [2010/05/03 21:23:35 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/05/15 08:11:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\DivX
[2011/05/15 08:06:56 | 000,000,000 | ---D | C] -- C:\Program Files\ffdshow
[2011/05/15 08:04:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Start Menu\Programs\TVersity Media Server
[2011/05/15 08:04:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Start Menu\Programs\TVersity Codec Pack
[2011/05/15 08:04:40 | 000,000,000 | ---D | C] -- C:\Program Files\TVersity Codec Pack
[2011/05/15 08:04:19 | 000,000,000 | ---D | C] -- C:\Program Files\TVersity
[2011/05/15 07:11:03 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/05/15 06:51:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood
[2011/05/15 06:16:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\DDMSettings
[2011/05/15 06:14:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\DivX
[2011/05/15 06:13:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\DivX Plus
[2011/05/15 06:12:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DivX Shared
[2011/05/15 06:12:15 | 000,000,000 | ---D | C] -- C:\Program Files\DivX
[2011/05/15 06:11:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DivX
[2011/05/15 05:46:41 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2011/05/15 05:46:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\ConduitEngine
[2011/05/15 05:46:31 | 000,000,000 | ---D | C] -- C:\Program Files\ConduitEngine
[2011/05/15 05:46:21 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrentBar
[2011/05/14 15:50:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\My Documents\My Cheat Tables
[2011/05/10 13:51:53 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio
[2011/05/10 13:51:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2011/05/10 13:50:31 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2011/05/10 13:47:25 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 8
[2011/05/10 13:46:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\SHELLNEW
[2011/05/10 13:45:10 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2011/05/10 13:15:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\uTorrentBar
[2011/05/08 10:25:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2011/05/06 18:39:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\My Documents\Finale Files
[2011/05/06 18:38:24 | 000,000,000 | ---D | C] -- C:\Program Files\Finale NotePad 2011
[2011/04/27 09:12:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\System
[2011/04/27 09:12:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\SmartDraw
[2011/04/26 15:06:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\Liteon
[2011/04/26 15:06:54 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Shane Soliday\My Documents\My Videos
[2011/04/25 21:44:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Desktop\Enochian
[2011/04/24 14:12:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\PriceGong
[2011/04/24 13:59:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\My Documents\Downloads
[2011/04/24 13:59:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\Conduit
[2011/04/24 13:58:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\Temp
[2011/04/24 13:58:42 | 000,000,000 | ---D | C] -- C:\extensions
[2011/04/20 10:24:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\Avira
[2011/04/20 06:44:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Tracing
[2011/04/19 22:55:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\Identities
[2011/04/19 12:10:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Desktop\Websites
[2011/04/19 06:12:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Macromedia
[2011/04/19 06:10:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2011/04/19 05:47:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Avira
[2011/04/19 05:47:40 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2011/04/19 05:47:38 | 000,137,656 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2011/04/19 05:47:38 | 000,061,960 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2011/04/19 05:47:38 | 000,022,360 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys
[2011/04/19 05:47:37 | 000,045,416 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys
[2011/04/19 05:47:36 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2011/04/19 05:47:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Avira
[2011/04/15 20:19:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\MakeMusic
[2011/04/15 20:17:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Finale Reader
[2011/04/15 20:16:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MakeMusic
[2011/04/15 20:16:45 | 000,000,000 | ---D | C] -- C:\Program Files\Finale Reader
[2011/04/15 20:16:33 | 000,000,000 | ---D | C] -- C:\PSFONTS
[2011/04/15 20:15:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Desktop\Music
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/05/15 11:24:01 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/05/15 10:22:07 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/05/15 06:57:51 | 000,004,608 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/05/15 06:54:48 | 000,000,802 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011/05/15 06:54:48 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\Windows Media Player.lnk
[2011/05/15 06:54:18 | 000,004,682 | ---- | M] () -- C:\WINDOWS\System32\spupdsvc.inf
[2011/05/15 06:54:05 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/05/15 06:54:05 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/05/15 06:50:26 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/05/15 04:13:50 | 000,445,938 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/05/15 04:13:50 | 000,072,978 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/05/15 04:09:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/05/15 04:09:10 | 1062,305,792 | -HS- | M] () -- C:\hiberfil.sys
[2011/05/14 19:00:00 | 000,000,282 | ---- | M] () -- C:\WINDOWS\tasks\RMSchedule.job
[2011/05/14 13:38:59 | 000,049,798 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\PowerUpRewards Coupon.pdf
[2011/05/14 07:19:28 | 000,367,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/05/06 18:39:00 | 000,000,809 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Finale NotePad 2011.lnk
[2011/04/28 08:56:45 | 000,455,357 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\diploma.JPG
[2011/04/24 14:23:16 | 043,370,086 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\Pokemon_Nintendo_DP_Strategy_Guide.pdf
[2011/04/20 23:58:33 | 013,797,238 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\vhayste_sonata_2008jun09.pdf
[2011/04/19 08:45:59 | 000,002,391 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Norton Online Backup.lnk
[2011/04/19 05:47:53 | 000,001,709 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Avira AntiVir Control Center.lnk
[2011/04/15 20:17:08 | 000,000,762 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Finale Reader.lnk
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/05/15 08:07:00 | 000,050,688 | ---- | C] () -- C:\WINDOWS\System32\ff_acm.acm
[2011/05/15 08:06:59 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2011/05/15 06:53:03 | 000,004,682 | ---- | C] () -- C:\WINDOWS\System32\spupdsvc.inf
[2011/05/15 06:10:37 | 000,000,802 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011/05/15 06:10:18 | 000,004,608 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/05/14 13:38:58 | 000,049,798 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Desktop\PowerUpRewards Coupon.pdf
[2011/05/06 18:39:00 | 000,000,809 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Finale NotePad 2011.lnk
[2011/04/28 08:31:30 | 000,455,357 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Desktop\diploma.JPG
[2011/04/27 09:12:54 | 000,000,689 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Start Menu\Programs\SmartDraw VP.lnk
[2011/04/24 13:59:30 | 043,370,086 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Desktop\Pokemon_Nintendo_DP_Strategy_Guide.pdf
[2011/04/20 23:58:27 | 013,797,238 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Desktop\vhayste_sonata_2008jun09.pdf
[2011/04/19 05:47:53 | 000,001,709 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Avira AntiVir Control Center.lnk
[2011/04/15 20:17:08 | 000,000,762 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Finale Reader.lnk
[2011/01/06 19:59:53 | 000,037,336 | ---- | C] () -- C:\WINDOWS\System32\CleanMFT32.exe
[2010/06/21 06:27:00 | 000,076,288 | ---- | C] () -- C:\WINDOWS\System32\S6000DIF.dll
[2010/06/21 06:27:00 | 000,015,190 | ---- | C] () -- C:\WINDOWS\S6000Twn.ini
[2010/05/03 23:40:39 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\ZH.INI
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\S3.INI
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\FR-CA.INI
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\EN-GB.INI
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\EN-CA.INI
[2010/05/03 22:41:22 | 000,361,808 | ---- | C] () -- C:\WINDOWS\EMCRI_E.dll
[2010/05/03 22:38:16 | 000,231,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTConvEQ.dat
[2010/05/03 22:38:16 | 000,030,856 | ---- | C] () -- C:\WINDOWS\System32\drivers\RtPCEE3.DAT
[2010/05/03 22:38:16 | 000,001,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\RtHdatEx.dat
[2010/05/03 22:38:16 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX3.dat
[2010/05/03 22:38:16 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX2.dat
[2010/05/03 22:38:16 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX1.dat
[2010/05/03 22:38:16 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX0.dat
[2010/05/03 22:38:16 | 000,000,176 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTHDAEQ1.dat
[2010/05/03 22:38:16 | 000,000,024 | ---- | C] () -- C:\WINDOWS\System32\drivers\rtkhdaud.dat
[2010/05/03 21:59:51 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2010/05/03 21:59:49 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2010/05/03 21:59:49 | 000,445,938 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2010/05/03 21:59:49 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2010/05/03 21:59:49 | 000,072,978 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2010/05/03 21:59:49 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2010/05/03 21:59:49 | 000,004,524 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2010/05/03 21:59:48 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2010/05/03 21:59:45 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2010/05/03 21:59:45 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2010/05/03 21:59:40 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2010/05/03 21:59:38 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2010/05/03 21:26:26 | 000,032,768 | ---- | C] () -- C:\WINDOWS\AMove.exe
[2010/05/03 21:26:26 | 000,024,264 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2010/05/03 21:25:31 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010/05/03 21:21:44 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010/05/03 21:20:50 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2010/05/03 14:18:37 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010/05/03 14:17:52 | 000,367,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT

========== LOP Check ==========

[2011/03/10 16:21:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
[2010/05/03 22:54:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\eMachines
[2011/05/06 18:38:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MakeMusic
[2011/01/14 16:35:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Partner
[2011/04/10 19:36:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/01/25 14:09:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WildTangent
[2011/02/08 16:12:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\John Winterberg\Application Data\Tific
[2011/01/05 00:08:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Karen KnightSoliday\Application Data\Faerie Solitaire
[2011/01/06 19:54:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Karen KnightSoliday\Application Data\Tific
[2011/05/15 06:16:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\DDMSettings
[2011/05/04 17:23:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\Liteon
[2011/05/06 18:39:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\MakeMusic
[2011/05/15 05:56:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\PriceGong
[2011/04/27 09:18:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\SmartDraw
[2011/01/15 15:12:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\Tific
[2011/05/14 19:00:00 | 000,000,282 | ---- | M] () -- C:\WINDOWS\Tasks\RMSchedule.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D1B5B4F1

< End of report >
  • 0

Advertisements


#2
Shaene

Shaene

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts
Oh and here is the extra file...

OTL logfile created on: 5/15/2011 11:25:14 AM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Shane Soliday\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1,013.00 Mb Total Physical Memory | 374.00 Mb Available Physical Memory | 37.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 70.00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 138.05 Gb Total Space | 114.26 Gb Free Space | 82.77% Space Free | Partition Type: NTFS

Computer Name: KARENS | User Name: Shane Soliday | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - File not found --
PRC - [2011/04/27 16:58:08 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2011/03/21 13:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2011/03/04 14:36:52 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2011/03/04 14:36:51 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010/11/24 15:33:26 | 000,921,600 | ---- | M] () -- C:\Program Files\TVersity\Media Server\MediaServer.exe
PRC - [2010/08/05 09:46:02 | 000,583,640 | ---- | M] (PC Tools) -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
PRC - [2010/05/14 12:44:46 | 000,501,480 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
PRC - [2010/05/12 21:05:00 | 000,051,712 | ---- | M] (ALi) -- C:\WINDOWS\WebCam\S6000\S6000Mnt.exe
PRC - [2010/04/07 23:18:40 | 000,908,368 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LManager.exe
PRC - [2010/04/07 23:18:40 | 000,312,400 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\dsiwmis.exe
PRC - [2010/04/07 23:18:40 | 000,298,064 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LMworker.exe
PRC - [2010/01/28 18:27:36 | 000,243,232 | ---- | M] (Acer Group) -- C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
PRC - [2010/01/14 21:11:00 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2009/06/04 21:03:32 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2009/06/04 21:03:06 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2008/04/14 07:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (SafeList) ==========

MOD - [2010/08/23 11:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/04/27 16:58:08 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011/03/04 14:36:52 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2010/11/24 15:33:26 | 000,921,600 | ---- | M] () [Auto | Running] -- C:\Program Files\TVersity\Media Server\MediaServer.exe -- (TVersityMediaServer)
SRV - [2010/10/12 12:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/08/05 09:46:02 | 000,583,640 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe -- (PCToolsSSDMonitorSvc)
SRV - [2010/04/07 23:18:40 | 000,312,400 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Program Files\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2010/01/28 18:27:36 | 000,243,232 | ---- | M] (Acer Group) [Auto | Running] -- C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe -- (Updater Service)
SRV - [2009/06/04 21:03:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel®
SRV - [2008/11/07 20:55:30 | 000,026,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\system32\spupdsvc.exe -- (spupdsvc)


========== Driver Services (SafeList) ==========

DRV - [2011/03/04 16:11:12 | 000,137,656 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2011/03/04 14:37:13 | 000,061,960 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2010/06/17 14:27:22 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010/06/17 14:27:12 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2010/05/14 11:49:02 | 003,221,120 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\S6000KNT.sys -- (S6000KNT)
DRV - [2010/04/13 01:16:50 | 000,252,536 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2010/03/12 16:41:22 | 005,867,040 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2010/03/04 04:53:16 | 000,060,456 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2010/01/04 19:54:48 | 001,602,856 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\athw.sys -- (AR5416)
DRV - [2009/11/17 18:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009/11/17 18:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emac...44wuj5r4692r772
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.emac...44wuj5r4692r772


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emac...44wuj5r4692r772
IE - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.emac...44wuj5r4692r772
IE - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MyWebSearch\bar\1.bin
FF - HKLM\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011/05/15 06:14:50 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011/05/15 06:14:51 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2008/04/14 07:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll (Google Inc.)
O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\..\Toolbar\WebBrowser: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\..\Toolbar\WebBrowser: (uTorrentBar Toolbar) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [AzMixerSel] C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [S6000Mnt] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3000887322-1698683601-3399203189-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {9C65AB3E-C9A8-4789-AE24-B365A1C4A6F9} http://emachines-us....tivex/snret.cab (SNRet Control)
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicr...osoft/wrc32.ocx (WRC Class)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 24.220.0.10 24.220.0.11
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O32 - Unable to read "AutoRun" value or value not present!
O32 - AutoRun File - [2010/05/03 21:23:35 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/05/15 08:11:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\DivX
[2011/05/15 08:06:56 | 000,000,000 | ---D | C] -- C:\Program Files\ffdshow
[2011/05/15 08:04:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Start Menu\Programs\TVersity Media Server
[2011/05/15 08:04:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Start Menu\Programs\TVersity Codec Pack
[2011/05/15 08:04:40 | 000,000,000 | ---D | C] -- C:\Program Files\TVersity Codec Pack
[2011/05/15 08:04:19 | 000,000,000 | ---D | C] -- C:\Program Files\TVersity
[2011/05/15 07:11:03 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/05/15 06:51:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood
[2011/05/15 06:16:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\DDMSettings
[2011/05/15 06:14:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\DivX
[2011/05/15 06:13:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\DivX Plus
[2011/05/15 06:12:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DivX Shared
[2011/05/15 06:12:15 | 000,000,000 | ---D | C] -- C:\Program Files\DivX
[2011/05/15 06:11:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DivX
[2011/05/15 05:46:41 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2011/05/15 05:46:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\ConduitEngine
[2011/05/15 05:46:31 | 000,000,000 | ---D | C] -- C:\Program Files\ConduitEngine
[2011/05/15 05:46:21 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrentBar
[2011/05/14 15:50:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\My Documents\My Cheat Tables
[2011/05/10 13:51:53 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio
[2011/05/10 13:51:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2011/05/10 13:50:31 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2011/05/10 13:47:25 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 8
[2011/05/10 13:46:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\SHELLNEW
[2011/05/10 13:45:10 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2011/05/10 13:15:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\uTorrentBar
[2011/05/08 10:25:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2011/05/06 18:39:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\My Documents\Finale Files
[2011/05/06 18:38:24 | 000,000,000 | ---D | C] -- C:\Program Files\Finale NotePad 2011
[2011/04/27 09:12:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\System
[2011/04/27 09:12:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\SmartDraw
[2011/04/26 15:06:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\Liteon
[2011/04/26 15:06:54 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Shane Soliday\My Documents\My Videos
[2011/04/25 21:44:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Desktop\Enochian
[2011/04/24 14:12:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\PriceGong
[2011/04/24 13:59:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\My Documents\Downloads
[2011/04/24 13:59:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\Conduit
[2011/04/24 13:58:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\Temp
[2011/04/24 13:58:42 | 000,000,000 | ---D | C] -- C:\extensions
[2011/04/20 10:24:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\Avira
[2011/04/20 06:44:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Tracing
[2011/04/19 22:55:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\Identities
[2011/04/19 12:10:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Desktop\Websites
[2011/04/19 06:12:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Macromedia
[2011/04/19 06:10:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2011/04/19 05:47:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Avira
[2011/04/19 05:47:40 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2011/04/19 05:47:38 | 000,137,656 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2011/04/19 05:47:38 | 000,061,960 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2011/04/19 05:47:38 | 000,022,360 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys
[2011/04/19 05:47:37 | 000,045,416 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys
[2011/04/19 05:47:36 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2011/04/19 05:47:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Avira
[2011/04/15 20:19:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Application Data\MakeMusic
[2011/04/15 20:17:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Finale Reader
[2011/04/15 20:16:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MakeMusic
[2011/04/15 20:16:45 | 000,000,000 | ---D | C] -- C:\Program Files\Finale Reader
[2011/04/15 20:16:33 | 000,000,000 | ---D | C] -- C:\PSFONTS
[2011/04/15 20:15:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Shane Soliday\Desktop\Music
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/05/15 11:24:01 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/05/15 10:22:07 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/05/15 06:57:51 | 000,004,608 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/05/15 06:54:48 | 000,000,802 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011/05/15 06:54:48 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\Windows Media Player.lnk
[2011/05/15 06:54:18 | 000,004,682 | ---- | M] () -- C:\WINDOWS\System32\spupdsvc.inf
[2011/05/15 06:54:05 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/05/15 06:54:05 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/05/15 06:50:26 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/05/15 04:13:50 | 000,445,938 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/05/15 04:13:50 | 000,072,978 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/05/15 04:09:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/05/15 04:09:10 | 1062,305,792 | -HS- | M] () -- C:\hiberfil.sys
[2011/05/14 19:00:00 | 000,000,282 | ---- | M] () -- C:\WINDOWS\tasks\RMSchedule.job
[2011/05/14 13:38:59 | 000,049,798 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\PowerUpRewards Coupon.pdf
[2011/05/14 07:19:28 | 000,367,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/05/06 18:39:00 | 000,000,809 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Finale NotePad 2011.lnk
[2011/04/28 08:56:45 | 000,455,357 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\diploma.JPG
[2011/04/24 14:23:16 | 043,370,086 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\Pokemon_Nintendo_DP_Strategy_Guide.pdf
[2011/04/20 23:58:33 | 013,797,238 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Desktop\vhayste_sonata_2008jun09.pdf
[2011/04/19 08:45:59 | 000,002,391 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Norton Online Backup.lnk
[2011/04/19 05:47:53 | 000,001,709 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Avira AntiVir Control Center.lnk
[2011/04/15 20:17:08 | 000,000,762 | ---- | M] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Finale Reader.lnk
[7 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/05/15 08:07:00 | 000,050,688 | ---- | C] () -- C:\WINDOWS\System32\ff_acm.acm
[2011/05/15 08:06:59 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2011/05/15 06:53:03 | 000,004,682 | ---- | C] () -- C:\WINDOWS\System32\spupdsvc.inf
[2011/05/15 06:10:37 | 000,000,802 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011/05/15 06:10:18 | 000,004,608 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/05/14 13:38:58 | 000,049,798 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Desktop\PowerUpRewards Coupon.pdf
[2011/05/06 18:39:00 | 000,000,809 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Finale NotePad 2011.lnk
[2011/04/28 08:31:30 | 000,455,357 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Desktop\diploma.JPG
[2011/04/27 09:12:54 | 000,000,689 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Start Menu\Programs\SmartDraw VP.lnk
[2011/04/24 13:59:30 | 043,370,086 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Desktop\Pokemon_Nintendo_DP_Strategy_Guide.pdf
[2011/04/20 23:58:27 | 013,797,238 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Desktop\vhayste_sonata_2008jun09.pdf
[2011/04/19 05:47:53 | 000,001,709 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Avira AntiVir Control Center.lnk
[2011/04/15 20:17:08 | 000,000,762 | ---- | C] () -- C:\Documents and Settings\Shane Soliday\Application Data\Microsoft\Internet Explorer\Quick Launch\Finale Reader.lnk
[2011/01/06 19:59:53 | 000,037,336 | ---- | C] () -- C:\WINDOWS\System32\CleanMFT32.exe
[2010/06/21 06:27:00 | 000,076,288 | ---- | C] () -- C:\WINDOWS\System32\S6000DIF.dll
[2010/06/21 06:27:00 | 000,015,190 | ---- | C] () -- C:\WINDOWS\S6000Twn.ini
[2010/05/03 23:40:39 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\ZH.INI
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\S3.INI
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\FR-CA.INI
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\EN-GB.INI
[2010/05/03 22:42:38 | 000,000,168 | ---- | C] () -- C:\WINDOWS\EN-CA.INI
[2010/05/03 22:41:22 | 000,361,808 | ---- | C] () -- C:\WINDOWS\EMCRI_E.dll
[2010/05/03 22:38:16 | 000,231,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTConvEQ.dat
[2010/05/03 22:38:16 | 000,030,856 | ---- | C] () -- C:\WINDOWS\System32\drivers\RtPCEE3.DAT
[2010/05/03 22:38:16 | 000,001,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\RtHdatEx.dat
[2010/05/03 22:38:16 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX3.dat
[2010/05/03 22:38:16 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX2.dat
[2010/05/03 22:38:16 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX1.dat
[2010/05/03 22:38:16 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTEQEX0.dat
[2010/05/03 22:38:16 | 000,000,176 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTHDAEQ1.dat
[2010/05/03 22:38:16 | 000,000,024 | ---- | C] () -- C:\WINDOWS\System32\drivers\rtkhdaud.dat
[2010/05/03 21:59:51 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2010/05/03 21:59:49 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2010/05/03 21:59:49 | 000,445,938 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2010/05/03 21:59:49 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2010/05/03 21:59:49 | 000,072,978 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2010/05/03 21:59:49 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2010/05/03 21:59:49 | 000,004,524 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2010/05/03 21:59:48 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2010/05/03 21:59:45 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2010/05/03 21:59:45 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2010/05/03 21:59:40 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2010/05/03 21:59:38 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2010/05/03 21:26:26 | 000,032,768 | ---- | C] () -- C:\WINDOWS\AMove.exe
[2010/05/03 21:26:26 | 000,024,264 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2010/05/03 21:25:31 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010/05/03 21:21:44 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010/05/03 21:20:50 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2010/05/03 14:18:37 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010/05/03 14:17:52 | 000,367,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT

========== LOP Check ==========

[2011/03/10 16:21:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
[2010/05/03 22:54:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\eMachines
[2011/05/06 18:38:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MakeMusic
[2011/01/14 16:35:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Partner
[2011/04/10 19:36:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/01/25 14:09:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WildTangent
[2011/02/08 16:12:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\John Winterberg\Application Data\Tific
[2011/01/05 00:08:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Karen KnightSoliday\Application Data\Faerie Solitaire
[2011/01/06 19:54:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Karen KnightSoliday\Application Data\Tific
[2011/05/15 06:16:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\DDMSettings
[2011/05/04 17:23:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\Liteon
[2011/05/06 18:39:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\MakeMusic
[2011/05/15 05:56:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\PriceGong
[2011/04/27 09:18:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\SmartDraw
[2011/01/15 15:12:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shane Soliday\Application Data\Tific
[2011/05/14 19:00:00 | 000,000,282 | ---- | M] () -- C:\WINDOWS\Tasks\RMSchedule.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D1B5B4F1

< End of report >
  • 0

#3
Shaene

Shaene

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts
~bump~
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP