My computer is running the internet extremely slow. It can take 5-10 mins to load a page, and half the time it looks like what it would if you were loading it on your cel phone. The uploading is paticulary slow. I talked to my ISP, and they said my connection is fine. I should mention that I pay for extra speed. I have run virus scans (MSE, Housecall, Kapersky's - all other online scanners wouldn't work), malware scans (Malwarebytes, Superantispyware), a whole bunch of removal tools from Kapersky's, and a bunch of rootkit detectors. I only get positive results from Sophos and one other rootkit detector (Rootkit Revealer, I think, I'm sorry I can't remember or find it, I have run so many the past few days). But the values change everytime I run it and they are unspecified and, most importantly, I honestly don't know enough about them to play around without a utility that doesn't fix the problem by itself.
If you could please, please help as soon as possible, it would be really appreacited. I have some research to do, and I can't get anything done with the internet not working right. Thank-you so much!
(BTW, I can't figure out how I got this stupid thing. It happened about a week ago, most likely from an internet search, although it could have been a torrent.)
OTL LOG
OTL logfile created on: 7/23/2011 8:41:22 AM - Run 2
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\LR\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.87 Gb Total Physical Memory | 2.10 Gb Available Physical Memory | 73.18% Memory free
4.71 Gb Paging File | 4.10 Gb Available in Paging File | 87.14% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 465.75 Gb Total Space | 449.71 Gb Free Space | 96.56% Space Free | Partition Type: NTFS
Drive E: | 1863.01 Gb Total Space | 792.80 Gb Free Space | 42.55% Space Free | Partition Type: NTFS
Computer Name: LR-75D2A86C7E85 | User Name: LR | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/07/22 00:43:09 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\LR\Desktop\OTL.exe
PRC - [2011/07/14 06:21:10 | 000,108,032 | ---- | M] () -- C:\Program Files\VideoLAN\VLC\vlc.exe
PRC - [2010/11/30 13:20:36 | 000,997,408 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2010/11/11 12:26:40 | 000,011,736 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
PRC - [2008/04/14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2001/08/17 16:36:42 | 000,024,064 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\devldr32.exe
========== Modules (SafeList) ==========
MOD - [2011/07/22 00:43:09 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\LR\Desktop\OTL.exe
MOD - [2010/08/23 10:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2009/04/28 10:05:56 | 000,715,264 | ---- | M] (Agnitum Ltd.) -- c:\Program Files\Agnitum\Outpost Firewall\wl_hook.dll
========== Win32 Services (SafeList) ==========
SRV - [2011/05/25 15:14:34 | 000,053,248 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus®
SRV - [2010/11/11 12:26:40 | 000,011,736 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -- (MsMpSvc)
SRV - [2009/04/28 10:06:06 | 001,195,008 | ---- | M] (Agnitum Ltd.) [Auto | Running] -- C:\Program Files\Agnitum\Outpost Firewall\acs.exe -- (acssrv)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Running] -- -- (MEMSWEEP2)
DRV - [2011/07/23 01:00:57 | 000,028,752 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{B1C36241-81F4-402C-B1CE-C66A664FDFA5}\MpKsla8f1557d.sys -- (MpKsla8f1557d)
DRV - [2011/07/22 11:46:43 | 000,012,714 | ---- | M] (Kaspersky Lab.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\flcss.sys -- (KLAntiFL)
DRV - [2010/05/10 12:41:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2010/02/17 12:25:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2009/04/06 11:37:12 | 000,704,384 | ---- | M] (Agnitum Ltd.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\SandBox.sys -- (SandBox)
DRV - [2009/02/18 17:30:56 | 000,031,128 | ---- | M] (Agnitum Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afw.sys -- (afw)
DRV - [2009/02/10 16:15:42 | 000,257,432 | ---- | M] (Agnitum Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afwcore.sys -- (afwcore)
DRV - [2008/04/14 00:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2008/02/25 12:54:56 | 000,105,088 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp)
DRV - [2004/08/03 16:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2001/08/17 06:19:34 | 000,036,480 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sfmanm.sys -- (sfman) Creative SoundFont Manager Driver (WDM)
DRV - [2001/08/17 06:19:28 | 000,006,912 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctlfacem.sys -- (emu10k1) Creative Interface Manager Driver (WDM)
DRV - [2001/08/17 06:19:26 | 000,283,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emu10k1m.sys -- (emu10k) Creative SB Live! (WDM)
DRV - [2001/08/17 06:19:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nosltd.com/getPlus+®,version=1.6.2.103: C:\Program Files\NOS\bin\np_gp.dll (NOS Microsystems Ltd.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
O1 HOSTS File: ([2006/02/28 06:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll (Google Inc.)
O4 - HKLM..\Run: [KL AntiFunLove] C:\WINDOWS\system32\flcss.exe (Kaspersky Lab.)
O4 - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [OutpostMonitor] C:\Program Files\Agnitum\Outpost Firewall\op_mon.exe (Agnitum Ltd.)
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll (Google Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft....k/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.micros...b?1309015527531 (WUWebControl Class)
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} http://www.superadbl...ivex/sabspx.cab (SABScanProcesses Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (get_atlcom Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 142.165.200.135 142.165.157.5
O20 - AppInit_DLLs: (c:\progra~1\agnitum\outpos~1\wl_hook.dll) - c:\Program Files\Agnitum\Outpost Firewall\wl_hook.dll (Agnitum Ltd.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/06/25 08:50:44 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/07/22 15:48:02 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\LR\Recent
[2011/07/22 11:48:23 | 000,135,232 | ---- | C] (Kaspersky Lab.) -- C:\WINDOWS\System32\flcss.exe
[2011/07/22 11:46:43 | 000,135,232 | RHS- | C] (Kaspersky Lab.) -- C:\WINDOWS\System32\flcss.bkp
[2011/07/22 11:46:43 | 000,012,714 | ---- | C] (Kaspersky Lab.) -- C:\WINDOWS\System32\flcss.sys
[2011/07/22 10:55:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Desktop\Today Programs
[2011/07/22 00:43:01 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\LR\Desktop\OTL.exe
[2011/07/21 07:56:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Sophos
[2011/07/21 07:56:20 | 000,000,000 | ---D | C] -- C:\Program Files\Sophos
[2011/07/18 03:14:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\vlc
[2011/07/18 02:07:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[2011/07/10 08:24:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\Google
[2011/07/10 08:19:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011/07/04 03:00:21 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2011/07/03 11:56:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\HP
[2011/07/03 11:49:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\HPAppData
[2011/07/03 11:21:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\WEBREG
[2011/07/03 11:18:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\HP
[2011/07/03 11:17:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\HP Product Assistant
[2011/07/03 11:17:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\HP
[2011/07/03 11:17:40 | 000,000,000 | ---D | C] -- C:\Program Files\Hewlett-Packard
[2011/07/03 11:17:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Hewlett-Packard
[2011/07/03 11:17:19 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\HP
[2011/07/03 11:16:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
[2011/07/03 11:15:17 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2011/07/03 11:14:54 | 000,000,000 | -H-D | C] -- C:\Config.Msi
[2011/07/02 23:27:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Desktop\New Folder
[2011/07/02 21:02:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\WinRAR
[2011/07/02 21:02:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Start Menu\Programs\WinRAR
[2011/07/02 21:02:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\WinRAR
[2011/07/02 21:01:52 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2011/07/02 16:48:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2011/07/02 16:45:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Local Settings\Application Data\Temp
[2011/07/02 16:44:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011/07/02 16:43:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2011/07/02 16:43:48 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2011/07/02 16:43:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2011/07/02 16:43:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Local Settings\Application Data\Adobe
[2011/07/02 16:43:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2011/07/02 16:43:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Local Settings\Application Data\Google
[2011/07/02 16:42:59 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2011/07/02 16:42:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google
[2011/07/02 16:42:37 | 000,000,000 | ---D | C] -- C:\Program Files\NOS
[2011/07/02 16:42:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NOS
[2011/06/28 11:09:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\DVDVideoSoft
[2011/06/28 11:09:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\My Documents\DVDVideoSoft
[2011/06/28 11:08:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DVDVideoSoft
[2011/06/28 11:08:47 | 000,000,000 | ---D | C] -- C:\Program Files\DVDVideoSoft
[2011/06/28 05:50:36 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\LR\IECompatCache
[2011/06/27 18:40:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\Apple Computer
[2011/06/27 18:40:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
[2011/06/27 18:39:05 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/06/27 18:39:01 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/06/27 18:39:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/06/27 18:38:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\QuickTime
[2011/06/27 18:37:50 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2011/06/27 18:37:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple Computer
[2011/06/27 18:37:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Local Settings\Application Data\Apple
[2011/06/27 18:37:25 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2011/06/27 18:37:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Apple Computer
[2011/06/27 18:37:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2011/06/27 18:36:38 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2011/06/27 18:36:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2011/06/27 18:36:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple
[2011/06/27 18:35:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Local Settings\Application Data\Apple Computer
[2011/06/26 22:15:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\Adobe
[2011/06/26 22:12:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\Macromedia
[2011/06/26 21:55:13 | 000,704,384 | ---- | C] (Agnitum Ltd.) -- C:\WINDOWS\System32\drivers\SandBox.sys
[2011/06/26 21:55:06 | 000,257,432 | ---- | C] (Agnitum Ltd.) -- C:\WINDOWS\System32\drivers\afwcore.sys
[2011/06/26 21:53:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Agnitum
[2011/06/26 21:52:16 | 000,031,128 | ---- | C] (Agnitum Ltd.) -- C:\WINDOWS\System32\drivers\afw.sys
[2011/06/26 21:51:28 | 000,000,000 | ---D | C] -- C:\Program Files\Agnitum
[2011/06/26 21:51:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Agnitum
[2011/06/26 21:35:20 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent
[2011/06/26 21:00:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\My Documents\The Crystal Method - Divided By Night (2009) 320Kbps [Electr0]
[2011/06/26 20:59:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\My Documents\Patterns
[2011/06/26 20:58:34 | 000,000,000 | R--D | C] -- C:\Documents and Settings\LR\My Documents\My Videos
[2011/06/26 20:58:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\My Documents\My Scans
[2011/06/26 20:52:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\My Documents\Music
[2011/06/26 20:51:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\My Documents\backup!
[2011/06/26 20:49:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\My Documents\julian's stuff
[2011/06/26 20:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\uTorrent
[2011/06/26 20:34:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\My Documents\Camp forms
[2011/06/26 20:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Local Settings\Application Data\Identities
[2011/06/26 12:43:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/06/26 11:27:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SpywareBlaster
[2011/06/26 11:27:36 | 000,000,000 | ---D | C] -- C:\Program Files\SpywareBlaster
[2011/06/26 11:06:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\Malwarebytes
[2011/06/26 00:26:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Silverlight
[2011/06/26 00:26:03 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2011/06/25 16:48:06 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011/06/25 16:45:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Desktop\Computer Cleaners
[2011/06/25 16:44:27 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/06/25 16:44:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/06/25 16:44:22 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/06/25 16:44:22 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/06/25 16:40:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\SUPERAntiSpyware.com
[2011/06/25 16:40:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2011/06/25 16:40:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SUPERAntiSpyware
[2011/06/25 16:40:38 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2011/06/25 16:39:27 | 000,000,000 | ---D | C] -- C:\Program Files\Speccy
[2011/06/25 16:38:07 | 000,000,000 | ---D | C] -- C:\Program Files\Recuva
[2011/06/25 16:37:30 | 000,000,000 | ---D | C] -- C:\Program Files\Defraggler
[2011/06/25 16:36:27 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/06/25 16:34:22 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2011/06/25 16:32:44 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\LR\PrivacIE
[2011/06/25 16:21:57 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\LR\IETldCache
[2011/06/25 16:10:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2011/06/25 16:09:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2011/06/25 16:09:02 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2011/06/25 11:37:51 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2011/06/25 11:25:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
[2011/06/25 11:24:22 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2011/06/25 11:22:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2011/06/25 11:07:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2011/06/25 11:02:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2011/06/25 11:02:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2011/06/25 11:02:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2011/06/25 11:02:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2011/06/25 11:02:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2011/06/25 11:01:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2011/06/25 11:00:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2011/06/25 10:59:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2011/06/25 10:57:10 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2011/06/25 09:31:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2011/06/25 09:28:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2011/06/25 09:28:24 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2011/06/25 09:25:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2011/06/25 09:24:52 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\LR\UserData
[2011/06/25 09:21:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Application Data\Identities
[2011/06/25 09:21:19 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2011/06/25 09:21:18 | 000,000,000 | R--D | C] -- C:\Documents and Settings\LR\My Documents\My Pictures
[2011/06/25 09:21:18 | 000,000,000 | R--D | C] -- C:\Documents and Settings\LR\My Documents\My Music
[2011/06/25 09:21:15 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LR\Application Data\Microsoft
[2011/06/25 09:21:15 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\LR\SendTo
[2011/06/25 09:21:15 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\LR\Application Data
[2011/06/25 09:21:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\LR\Start Menu\Programs\Startup
[2011/06/25 09:21:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\LR\Start Menu
[2011/06/25 09:21:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\LR\My Documents
[2011/06/25 09:21:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\LR\Favorites
[2011/06/25 09:21:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\LR\Start Menu\Programs\Accessories
[2011/06/25 09:21:15 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\LR\Cookies
[2011/06/25 09:21:15 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\LR\Templates
[2011/06/25 09:21:15 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\LR\PrintHood
[2011/06/25 09:21:15 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\LR\NetHood
[2011/06/25 09:21:15 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\LR\Local Settings
[2011/06/25 09:21:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Local Settings\Application Data\Microsoft
[2011/06/25 09:21:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LR\Desktop
[2011/06/25 09:17:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2011/06/25 09:17:02 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2011/06/25 09:17:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2011/06/25 09:17:01 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2011/06/25 08:53:59 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2011/06/25 08:53:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2011/06/25 08:52:29 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2011/06/25 08:52:29 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2011/06/25 08:51:33 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2011/06/25 08:51:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2011/06/25 08:51:11 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2011/06/25 08:51:11 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2011/06/25 08:50:58 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2011/06/25 08:49:43 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2011/06/25 08:49:35 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2011/06/25 08:49:35 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2011/06/25 08:49:26 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2011/06/25 08:49:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2011/06/25 08:48:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2011/06/25 08:48:38 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2011/06/25 08:48:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2011/06/25 08:48:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2011/06/25 08:48:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2011/06/25 08:48:26 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2011/06/25 08:48:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2011/06/25 08:48:15 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2011/06/25 08:48:13 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2011/06/25 08:48:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2011/06/25 08:48:06 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2011/06/25 08:48:05 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Pictures
[2011/06/25 08:47:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Games
[2011/06/25 08:47:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2011/06/25 08:47:31 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools
[2011/06/25 08:47:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2011/06/25 08:47:25 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Music
[2011/06/25 08:47:25 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2011/06/25 08:47:25 | 000,000,000 | ---D | C] -- C:\Program Files\Online Services
[2011/06/25 08:47:20 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2011/06/25 08:47:17 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2011/06/25 08:46:38 | 000,000,000 | ---D | C] -- C:\Program Files\MSN
[2011/06/25 08:46:36 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2011/06/25 08:46:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2011/06/25 08:46:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[2011/06/25 08:46:20 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Videos
[2011/06/25 08:33:29 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Accessories
[2011/06/25 02:25:45 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2011/06/25 02:25:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2011/06/25 02:25:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2011/06/25 02:25:41 | 000,000,000 | R--D | C] -- C:\Program Files
[2011/06/25 02:25:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2011/06/25 02:25:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2011/06/25 02:25:17 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup
[2011/06/25 02:25:17 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu
[2011/06/25 02:25:17 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents
[2011/06/25 02:25:17 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Templates
[2011/06/25 02:25:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
[2011/06/25 02:25:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Desktop
[2011/06/25 02:25:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2011/06/25 02:25:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2011/06/25 02:25:00 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2011/06/25 02:25:00 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data
[2011/06/25 02:24:39 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2011/06/25 02:24:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2011/06/25 02:17:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\ehome
[2011/06/25 02:17:54 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2011/06/25 02:17:54 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2011/06/25 02:17:54 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2011/06/25 02:17:54 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2011/06/25 02:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/07/23 08:43:10 | 000,000,416 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{196FE181-EE2C-471D-BB36-B6DE6A612368}.job
[2011/07/23 08:42:00 | 000,000,878 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/07/23 02:32:50 | 000,010,058 | ---- | M] () -- C:\Documents and Settings\LR\Local Settings\Application Data\census.cache
[2011/07/23 02:32:49 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\LR\Local Settings\Application Data\ars.cache
[2011/07/23 01:16:57 | 000,000,036 | ---- | M] () -- C:\Documents and Settings\LR\Local Settings\Application Data\housecall.guid.cache
[2011/07/23 01:09:53 | 000,000,424 | -H-- | M] () -- C:\WINDOWS\tasks\MP Scheduled Scan.job
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\srv32.exe
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\scrsvr.exe
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\marco!.scr
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\instit.bat
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\bride.exe
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\brasil.pif
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\brasil.exe
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\alevir.exe
[2011/07/23 01:01:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\aavar.pif
[2011/07/23 01:00:54 | 000,013,724 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/07/23 01:00:54 | 000,000,874 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/07/23 01:00:48 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/07/22 19:59:15 | 000,052,224 | ---- | M] () -- C:\Documents and Settings\LR\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/07/22 14:17:10 | 000,006,582 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\cc_20110722_141707.reg
[2011/07/22 11:48:23 | 000,135,232 | ---- | M] (Kaspersky Lab.) -- C:\WINDOWS\System32\flcss.exe
[2011/07/22 11:46:43 | 000,135,232 | RHS- | M] (Kaspersky Lab.) -- C:\WINDOWS\System32\flcss.bkp
[2011/07/22 11:46:43 | 000,012,714 | ---- | M] (Kaspersky Lab.) -- C:\WINDOWS\System32\flcss.sys
[2011/07/22 00:43:09 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\LR\Desktop\OTL.exe
[2011/07/21 08:33:48 | 099,123,520 | ---- | M] () -- C:\Documents and Settings\LR\Desktop\setup_11.0.0.1245.x01_2011_07_21_17_18.exe
[2011/07/21 07:56:00 | 001,376,832 | ---- | M] () -- C:\Documents and Settings\LR\Desktop\sar_15_sfx.exe
[2011/07/18 02:07:47 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2011/07/18 01:54:48 | 021,073,936 | ---- | M] () -- C:\Documents and Settings\LR\Desktop\vlc-1.1.11-win32.exe
[2011/07/17 03:16:50 | 000,000,606 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\cc_20110717_031646.reg
[2011/07/14 03:32:26 | 000,091,888 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/07/11 19:24:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/07/10 07:56:59 | 000,002,662 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\cc_20110710_075654.reg
[2011/07/06 19:52:42 | 000,041,272 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/07/06 19:52:42 | 000,022,712 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/07/03 11:20:53 | 000,157,683 | ---- | M] () -- C:\WINDOWS\hpoins28.dat
[2011/06/30 03:21:33 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/06/29 05:23:05 | 000,000,297 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\Document.tch.rtf
[2011/06/29 01:41:48 | 000,001,542 | ---- | M] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\iTunes.lnk
[2011/06/29 01:13:16 | 000,000,722 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\cc_20110629_011313.reg
[2011/06/28 11:09:09 | 000,000,892 | ---- | M] () -- C:\Documents and Settings\LR\Desktop\DVDVideoSoft Free Studio.lnk
[2011/06/27 20:15:30 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\E-mail.lnk
[2011/06/27 19:37:19 | 000,015,488 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\cc_20110627_193716.reg
[2011/06/26 21:35:25 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2011/06/26 11:28:56 | 000,000,978 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\cc_20110626_112854.reg
[2011/06/26 00:19:13 | 000,311,604 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/06/26 00:19:13 | 000,039,992 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/06/25 16:53:05 | 000,001,552 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\cc_20110625_165302.reg
[2011/06/25 16:49:46 | 000,009,868 | ---- | M] () -- C:\Documents and Settings\LR\My Documents\cc_20110625_164935.reg
[2011/06/25 16:48:22 | 000,000,350 | ---- | M] () -- C:\Documents and Settings\LR\Desktop\Shortcut to Downloads.lnk
[2011/06/25 16:34:49 | 000,001,945 | ---- | M] () -- C:\WINDOWS\epplauncher.mif
[2011/06/25 11:25:05 | 000,252,316 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2011/06/25 11:25:05 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin
[2011/06/25 11:24:25 | 000,252,316 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2011/06/25 11:24:25 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\nvdrswr.lk
[2011/06/25 11:11:42 | 000,013,724 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2011/06/25 11:07:50 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2011/06/25 10:59:54 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2011/06/25 09:21:26 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2011/06/25 08:54:02 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2011/06/25 08:52:53 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2011/06/25 08:50:44 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011/06/25 08:50:44 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011/06/25 08:50:44 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2011/06/25 08:50:44 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2011/06/25 08:50:44 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2011/06/25 08:50:41 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/06/25 08:50:41 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/06/25 08:50:32 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2011/06/25 08:47:46 | 000,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011/06/25 08:32:58 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/07/23 02:32:50 | 000,010,058 | ---- | C] () -- C:\Documents and Settings\LR\Local Settings\Application Data\census.cache
[2011/07/23 02:32:49 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\LR\Local Settings\Application Data\ars.cache
[2011/07/23 01:16:57 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\LR\Local Settings\Application Data\housecall.guid.cache
[2011/07/22 14:17:08 | 000,006,582 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\cc_20110722_141707.reg
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\srv32.exe
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\scrsvr.exe
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\marco!.scr
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\instit.bat
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\bride.exe
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\brasil.pif
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\brasil.exe
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\alevir.exe
[2011/07/22 11:48:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\aavar.pif
[2011/07/21 08:33:45 | 099,123,520 | ---- | C] () -- C:\Documents and Settings\LR\Desktop\setup_11.0.0.1245.x01_2011_07_21_17_18.exe
[2011/07/21 07:55:51 | 001,376,832 | ---- | C] () -- C:\Documents and Settings\LR\Desktop\sar_15_sfx.exe
[2011/07/18 02:07:47 | 000,000,719 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2011/07/18 01:53:26 | 021,073,936 | ---- | C] () -- C:\Documents and Settings\LR\Desktop\vlc-1.1.11-win32.exe
[2011/07/17 03:16:48 | 000,000,606 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\cc_20110717_031646.reg
[2011/07/10 07:56:57 | 000,002,662 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\cc_20110710_075654.reg
[2011/07/03 11:19:10 | 000,000,731 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\I.R.I.S. OCR Registration.lnk
[2011/07/03 11:13:12 | 000,157,683 | ---- | C] () -- C:\WINDOWS\hpoins28.dat
[2011/07/03 11:13:12 | 000,000,932 | ---- | C] () -- C:\WINDOWS\hpomdl28.dat
[2011/07/02 16:44:49 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader X.lnk
[2011/07/02 16:43:21 | 000,000,878 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/07/02 16:43:21 | 000,000,874 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/06/30 03:21:33 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/06/29 05:23:05 | 000,000,297 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\Document.tch.rtf
[2011/06/29 01:41:48 | 000,001,542 | ---- | C] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\iTunes.lnk
[2011/06/29 01:13:15 | 000,000,722 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\cc_20110629_011313.reg
[2011/06/28 11:09:08 | 000,000,892 | ---- | C] () -- C:\Documents and Settings\LR\Desktop\DVDVideoSoft Free Studio.lnk
[2011/06/28 09:00:22 | 000,000,416 | -H-- | C] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{196FE181-EE2C-471D-BB36-B6DE6A612368}.job
[2011/06/27 20:15:30 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\E-mail.lnk
[2011/06/27 19:37:18 | 000,015,488 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\cc_20110627_193716.reg
[2011/06/27 18:37:31 | 000,000,284 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/06/27 18:37:27 | 000,001,830 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Apple Software Update.lnk
[2011/06/26 21:53:35 | 000,000,049 | ---- | C] () -- C:\WINDOWS\transp.gif
[2011/06/26 21:35:25 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2011/06/26 21:01:37 | 000,263,215 | ---- | C] () -- C:\Documents and Settings\LR\Desktop\Application for a Death Certificate.pdf
[2011/06/26 21:01:37 | 000,000,657 | ---- | C] () -- C:\Documents and Settings\LR\Desktop\ASIO4ALL v2 Instruction Manual.lnk
[2011/06/26 21:00:25 | 000,657,888 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\28-DayBreakFreePlan.pdf
[2011/06/26 21:00:25 | 000,462,820 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\USSUGSAhealth.pdf
[2011/06/26 21:00:25 | 000,400,835 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\RiceCooker.pdf
[2011/06/26 21:00:25 | 000,032,390 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\fjerase.zip
[2011/06/26 11:28:55 | 000,000,978 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\cc_20110626_112854.reg
[2011/06/26 00:25:51 | 000,225,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msimain.sdb
[2011/06/25 16:53:03 | 000,001,552 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\cc_20110625_165302.reg
[2011/06/25 16:49:44 | 000,009,868 | ---- | C] () -- C:\Documents and Settings\LR\My Documents\cc_20110625_164935.reg
[2011/06/25 16:48:22 | 000,000,350 | ---- | C] () -- C:\Documents and Settings\LR\Desktop\Shortcut to Downloads.lnk
[2011/06/25 16:39:37 | 000,000,424 | -H-- | C] () -- C:\WINDOWS\tasks\MP Scheduled Scan.job
[2011/06/25 16:34:49 | 000,001,945 | ---- | C] () -- C:\WINDOWS\epplauncher.mif
[2011/06/25 16:34:28 | 000,001,680 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Security Essentials.lnk
[2011/06/25 11:25:05 | 000,252,316 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2011/06/25 11:24:25 | 000,252,316 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2011/06/25 11:24:25 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2011/06/25 11:24:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\nvdrswr.lk
[2011/06/25 11:15:34 | 000,052,224 | ---- | C] () -- C:\Documents and Settings\LR\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/06/25 11:11:42 | 000,013,724 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2011/06/25 11:02:22 | 000,613,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2011/06/25 11:02:22 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2011/06/25 11:02:22 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2011/06/25 11:02:22 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2011/06/25 11:02:22 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2011/06/25 11:02:22 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2011/06/25 11:02:22 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2011/06/25 11:02:22 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2011/06/25 11:02:22 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2011/06/25 11:02:22 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2011/06/25 11:02:22 | 000,067,374 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2011/06/25 11:02:22 | 000,029,070 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2011/06/25 11:02:22 | 000,023,195 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2011/06/25 11:02:22 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2011/06/25 11:02:22 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2011/06/25 11:02:22 | 000,000,855 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2011/06/25 11:02:22 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2011/06/25 11:02:21 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2011/06/25 11:02:21 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2011/06/25 11:02:21 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2011/06/25 11:02:21 | 000,077,307 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2011/06/25 11:02:21 | 000,066,725 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2011/06/25 11:02:21 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2011/06/25 11:02:21 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2011/06/25 11:02:21 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2011/06/25 11:02:21 | 000,017,272 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2011/06/25 11:02:21 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2011/06/25 11:02:21 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2011/06/25 11:02:21 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2011/06/25 11:02:21 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2011/06/25 11:02:21 | 000,006,769 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2011/06/25 11:02:21 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2011/06/25 11:02:21 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2011/06/25 11:02:21 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2011/06/25 11:02:21 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2011/06/25 11:02:21 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2011/06/25 11:02:21 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2011/06/25 11:02:21 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2011/06/25 11:02:21 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2011/06/25 11:02:21 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2011/06/25 11:02:21 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2011/06/25 11:02:21 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2011/06/25 11:02:21 | 000,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2011/06/25 11:02:21 | 000,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2011/06/25 11:02:21 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2011/06/25 11:02:21 | 000,001,451 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2011/06/25 11:02:21 | 000,001,448 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2011/06/25 11:02:21 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2011/06/25 11:02:21 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2011/06/25 11:02:21 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2011/06/25 11:02:21 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2011/06/25 11:02:21 | 000,001,250 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2011/06/25 11:02:21 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2011/06/25 11:02:21 | 000,001,049 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2011/06/25 11:02:21 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2011/06/25 11:02:21 | 000,001,036 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2011/06/25 11:02:21 | 000,000,908 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2011/06/25 11:02:21 | 000,000,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2011/06/25 11:02:21 | 000,000,787 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2011/06/25 11:02:21 | 000,000,784 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2011/06/25 11:02:21 | 000,000,783 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2011/06/25 11:02:21 | 000,000,775 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2011/06/25 11:02:21 | 000,000,733 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2011/06/25 11:02:21 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2011/06/25 11:02:20 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2011/06/25 11:02:20 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2011/06/25 11:02:20 | 000,018,286 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2011/06/25 11:02:20 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2011/06/25 11:02:20 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2011/06/25 11:02:20 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2011/06/25 11:02:20 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2011/06/25 11:02:20 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2011/06/25 11:02:19 | 000,184,959 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2011/06/25 11:02:19 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2011/06/25 11:02:19 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2011/06/25 11:02:19 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2011/06/25 11:02:19 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2011/06/25 11:02:19 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2011/06/25 11:02:19 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2011/06/25 11:02:19 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2011/06/25 11:00:03 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2011/06/25 11:00:03 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2011/06/25 11:00:02 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2011/06/25 09:21:26 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\LR\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2011/06/25 09:21:21 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\LR\Start Menu\Programs\Outlook Express.lnk
[2011/06/25 09:21:19 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\LR\Start Menu\Programs\Internet Explorer.lnk
[2011/06/25 09:21:15 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\LR\Start Menu\Programs\Remote Assistance.lnk
[2011/06/25 09:21:15 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\LR\Start Menu\Programs\Windows Media Player.lnk
[2011/06/25 08:54:02 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2011/06/25 08:52:53 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2011/06/25 08:52:24 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2011/06/25 08:52:12 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2011/06/25 08:52:04 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2011/06/25 08:52:03 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2011/06/25 08:52:02 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2011/06/25 08:51:51 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2011/06/25 08:51:47 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2011/06/25 08:51:35 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2011/06/25 08:50:44 | 000,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2011/06/25 08:50:44 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2011/06/25 08:50:44 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2011/06/25 08:50:44 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2011/06/25 08:50:44 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2011/06/25 08:50:41 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/06/25 08:50:41 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/06/25 08:50:40 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2011/06/25 08:49:25 | 000,000,786 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Movie Maker.lnk
[2011/06/25 08:49:15 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2011/06/25 08:48:48 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2011/06/25 08:48:48 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2011/06/25 08:48:42 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2011/06/25 08:47:46 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011/06/25 08:47:03 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
[2011/06/25 08:47:03 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
[2011/06/25 08:47:03 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
[2011/06/25 08:47:03 | 000,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
[2011/06/25 08:47:03 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
[2011/06/25 08:47:03 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
[2011/06/25 08:47:03 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
[2011/06/25 08:47:03 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
[2011/06/25 08:47:03 | 000,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
[2011/06/25 08:47:03 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2011/06/25 08:47:03 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
[2011/06/25 08:47:00 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2011/06/25 08:47:00 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2011/06/25 08:46:59 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2011/06/25 08:46:50 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2011/06/25 02:27:32 | 002,104,298 | ---- | C] () -- C:\WINDOWS\System32\drivers\2gmgsmt.sf2
[2011/06/25 02:25:45 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2011/06/25 02:25:43 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2011/06/25 02:25:43 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2011/06/25 02:25:42 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2011/06/25 02:25:42 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2011/06/25 02:25:26 | 000,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2011/06/25 02:25:16 | 001,042,903 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2011/06/25 02:25:16 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2011/06/25 02:25:16 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2011/06/25 02:25:16 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2011/06/25 02:25:16 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2011/06/25 02:25:16 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2011/06/25 02:25:16 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2011/06/25 02:25:16 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2011/06/25 02:24:38 | 000,091,888 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/06/25 02:23:34 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2011/06/25 02:23:31 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2011/02/23 02:57:00 | 002,292,678 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2006/02/28 06:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2006/02/28 06:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006/02/28 06:00:00 | 000,311,604 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006/02/28 06:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006/02/28 06:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006/02/28 06:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2006/02/28 06:00:00 | 000,039,992 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006/02/28 06:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006/02/28 06:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006/02/28 06:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2006/02/28 06:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006/02/28 06:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004/11/02 09:17:22 | 002,289,664 | ---- | C] () -- C:\WINDOWS\System32\ialmgicd.dll
========== LOP Check ==========
[2011/06/26 22:14:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Agnitum
[2011/07/22 14:50:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/06/27 18:40:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/07/23 08:24:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LR\Application Data\uTorrent
[2011/07/23 01:09:53 | 000,000,424 | -H-- | M] () -- C:\WINDOWS\Tasks\MP Scheduled Scan.job
[2011/07/23 08:43:10 | 000,000,416 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{196FE181-EE2C-471D-BB36-B6DE6A612368}.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 95 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
< End of report >
Edited by Lisa0917, 23 July 2011 - 08:59 AM.