Heres the OTL log
OTL logfile created on: 7/30/2011 5:17:07 PM - Run 2
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Tech\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
509.98 Mb Total Physical Memory | 192.26 Mb Available Physical Memory | 37.70% Memory free
1.22 Gb Paging File | 0.69 Gb Available in Paging File | 56.46% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.50 Gb Total Space | 37.61 Gb Free Space | 50.49% Space Free | Partition Type: NTFS
Computer Name: ROBINSON | User Name: Tech | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/07/30 09:03:32 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Tech\Desktop\OTL.exe
PRC - [2011/07/20 12:19:46 | 000,820,568 | ---- | M] (IObit) -- C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
PRC - [2011/07/08 03:16:28 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/07/06 19:52:38 | 000,449,584 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2011/07/06 19:52:38 | 000,366,640 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011/04/07 14:23:34 | 002,672,600 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
PRC - [2011/01/24 13:23:14 | 000,286,000 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Firewall Plus\FWService.exe
PRC - [2009/06/17 13:49:44 | 000,616,408 | ---- | M] () -- C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe
PRC - [2008/05/02 03:44:08 | 000,805,392 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPoint\SetPoint.exe
PRC - [2008/05/02 03:40:56 | 000,076,304 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
PRC - [2008/04/24 13:26:18 | 000,202,560 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
PRC - [2008/04/24 13:25:22 | 000,202,560 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/09/26 13:55:04 | 000,283,912 | ---- | M] (CA, Inc.) -- C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe
PRC - [2007/01/04 17:38:08 | 000,024,652 | ---- | M] (Viewpoint Corporation) -- C:\Program Files\Viewpoint\Common\ViewpointService.exe
PRC - [2006/04/16 07:43:40 | 000,580,096 | RHS- | M] (Microsoft) -- C:\WINDOWS\win32\server.exe
PRC - [2005/06/07 00:46:24 | 000,057,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
========== Modules (SafeList) ==========
MOD - [2011/07/30 09:03:32 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Tech\Desktop\OTL.exe
MOD - [2011/05/14 01:17:40 | 000,632,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\msvcr80.dll
MOD - [2010/08/23 12:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2008/05/02 03:42:50 | 000,045,584 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPoint\lgscroll.dll
MOD - [2007/04/19 14:21:40 | 000,116,264 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files\Comcast\Desktop Doctor\bin\sprthook.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- -- (LXCGCustomerConnect)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/07/20 12:19:46 | 000,820,568 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe -- (IMFservice)
SRV - [2011/07/06 19:52:38 | 000,366,640 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/06/29 16:29:13 | 003,435,096 | ---- | M] () [Auto | Running] -- c:\Program Files\Common Files\Akamai\netsession_win_e477fed.dll -- (Akamai)
SRV - [2011/01/24 13:23:14 | 000,286,000 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\PC Tools Firewall Plus\FWService.exe -- (PCToolsFirewallPlus)
SRV - [2010/12/06 09:31:48 | 001,238,408 | ---- | M] (LogMeIn Inc.) [Disabled | Stopped] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2010/02/10 12:01:00 | 003,428,588 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS\System32\GameMon.des -- (npggsvc)
SRV - [2009/06/17 13:49:44 | 000,616,408 | ---- | M] () [Auto | Running] -- C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe -- (AntiSpywareService)
SRV - [2008/05/02 03:42:06 | 000,121,360 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2008/04/24 13:26:18 | 000,202,560 | ---- | M] (SupportSoft, Inc.) [Auto | Running] -- C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe -- (sprtsvc_ddoctorv2) SupportSoft Sprocket Service (ddoctorv2)
SRV - [2007/09/26 13:55:04 | 000,283,912 | ---- | M] (CA, Inc.) [Auto | Running] -- C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe -- (ITMRTSVC)
SRV - [2007/01/04 17:38:08 | 000,024,652 | ---- | M] (Viewpoint Corporation) [Auto | Running] -- C:\Program Files\Viewpoint\Common\ViewpointService.exe -- (Viewpoint Manager Service)
========== Driver Services (SafeList) ==========
DRV - [2011/07/11 14:40:46 | 000,239,600 | ---- | M] () [File_System | Disabled | Stopped] -- C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys -- (FileMonitor)
DRV - [2011/07/06 19:52:42 | 000,022,712 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011/03/23 01:00:08 | 000,016,080 | ---- | M] (IObit.com) [Kernel | On_Demand | Stopped] -- C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\UrlFilter.sys -- (UrlFilter)
DRV - [2011/03/23 01:00:06 | 000,030,368 | ---- | M] (IObit.com) [Kernel | On_Demand | Stopped] -- C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\RegFilter.sys -- (RegFilter)
DRV - [2011/03/02 12:40:54 | 000,160,576 | ---- | M] (PC Tools) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\PCTAppEvent.sys -- (PCTAppEvent)
DRV - [2011/01/17 09:10:26 | 000,251,560 | ---- | M] (PC Tools) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\pctgntdi.sys -- (pctgntdi)
DRV - [2011/01/17 08:11:12 | 000,125,248 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctplfw.sys -- (pctplfw)
DRV - [2011/01/12 10:36:22 | 000,089,472 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys -- (PCTFW-PacketFilter)
DRV - [2010/07/08 08:49:10 | 000,057,536 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis.sys -- (pctNdisMP)
DRV - [2010/07/08 08:49:10 | 000,057,536 | ---- | M] (PC Tools) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pctNdis.sys -- (pctNdis)
DRV - [2010/04/28 08:44:02 | 000,054,760 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
DRV - [2010/02/03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2009/09/16 10:22:48 | 000,214,664 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2009/09/16 10:22:48 | 000,079,816 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk)
DRV - [2009/09/16 10:22:48 | 000,040,552 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfesmfk.sys -- (mfesmfk)
DRV - [2009/09/16 10:22:48 | 000,035,272 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk)
DRV - [2009/09/16 10:22:14 | 000,034,248 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mferkdk.sys -- (mferkdk)
DRV - [2008/04/13 14:36:41 | 000,063,744 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mf.sys -- (mf)
DRV - [2008/02/29 04:13:36 | 000,079,120 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LMouKE.Sys -- (LMouKE)
DRV - [2008/02/29 04:13:24 | 000,036,880 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2008/02/29 04:13:16 | 000,035,344 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2008/02/29 04:12:56 | 000,063,120 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\L8042mou.Sys -- (L8042mou)
DRV - [2008/02/29 04:12:48 | 000,020,240 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\L8042Kbd.sys -- (L8042Kbd)
DRV - [2007/06/19 01:21:36 | 000,018,560 | ---- | M] (LeapFrog) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\FlyUsb.sys -- (FlyUsb)
DRV - [2006/11/02 07:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
DRV - [2005/01/01 05:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\npptNT2.sys -- (NPPTNT2)
DRV - [2004/09/17 13:02:54 | 000,732,928 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt)
DRV - [2001/08/17 16:12:22 | 000,010,368 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BrUsbScn.sys -- (BrUsbScn)
DRV - [2001/08/17 16:12:12 | 000,002,944 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BrFilt.sys -- (brfilt)
DRV - [2001/08/17 16:11:18 | 000,020,160 | ---- | M] (ADMtek Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ADM8511.SYS -- (ADM8511)
DRV - [2001/08/17 14:53:42 | 000,004,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\loop.sys -- (msloop)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.c...rch/search.html
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch = http://us.rd.yahoo.c...rch/search.html
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.comcast.n...lbar2.0/search/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = B2 57 20 8D 50 4D CC 01 [binary data]
IE - HKCU\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {167d9323-f7cc-48f5-948a-6f012831a69f} - C:\Program Files\WhiteSmoke_Bar\prxtbWhit.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\prxtbPage.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {f78bf7a8-cf12-4de7-a6da-c463d1b539a7} - C:\Program Files\Dogpile Bundle Toolbar\Helper.dll ()
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@bittorrent.com/BitTorrentDNA: C:\Program Files\DNA\plugins\npbtdna.dll (BitTorrent, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.1: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.3: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: C:\Documents and Settings\All Users\Application Data\NexonUS\NGM\npNxGameUS.dll File not found
FF - HKLM\Software\MozillaPlugins\@ogplanet.com/npOGPPlugin: C:\WINDOWS\system32\npOGPPlugin.dll (OGPlanet)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Media Player\npViewpoint.dll ()
FF - HKLM\Software\MozillaPlugins\npDisplayEngine: C:\Program Files\LivingPlay Games\nplplaypop.dll ( )
FF - HKLM\Software\MozillaPlugins\[email protected]/YahooActiveXPluginBridge;version=1.0.0.1: C:\PROGRA~1\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
FF - HKCU\Software\MozillaPlugins\@nsroblox.roblox.com/launcher: C:\Documents and Settings\Tech\Local Settings\Application Data\RobloxVersions\version-f93a5a6aa7924fae\\NPRobloxProxy.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Tech\Local Settings\Application Data\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Tech\Local Settings\Application Data\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/07/30 08:03:21 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/07/29 19:49:27 | 000,000,000 | ---D | M]
[2011/07/30 16:50:13 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Tech\Application Data\Mozilla\Extensions
[2011/07/11 01:19:27 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2006/06/03 23:14:14 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Program Files\Mozilla Firefox\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2010/12/14 07:27:44 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010/04/28 21:16:51 | 000,000,000 | ---D | M] (Search Toolbar) -- C:\Program Files\Mozilla Firefox\extensions\[email protected]
File not found (No name found) --
[2010/07/01 03:53:36 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2011/07/08 03:16:28 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2009/10/06 05:40:40 | 000,098,304 | ---- | M] (OGPlanet Inc.) -- C:\Program Files\mozilla firefox\plugins\npOGPPlugin.dll
[2007/04/16 13:07:12 | 000,180,293 | ---- | M] () -- C:\Program Files\mozilla firefox\plugins\npViewpoint.dll
[2009/01/28 17:49:36 | 000,062,976 | ---- | M] (<NHN USA Inc>.) -- C:\Program Files\mozilla firefox\plugins\uc_sfighters_launching.dll
[2010/04/28 21:17:02 | 000,001,948 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing-zugo.xml
[2010/01/01 04:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
O1 HOSTS File: ([2006/06/28 01:44:30 | 000,181,088 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\HOSTS
O1 - Hosts: 127.0.0.1 downloads.aaa1screensavers.com #[Bargin Buddy]
O1 - Hosts: 127.0.0.1 dl.aaascreensavers.com
O1 - Hosts: 127.0.0.1 abcsearch.com
O1 - Hosts: 127.0.0.1 admin.abcsearch.com
O1 - Hosts: 127.0.0.1 www3.abcsearch.com #[Browseraid]
O1 - Hosts: 127.0.0.1 www.abcsearch.com
O1 - Hosts: 127.0.0.1 abc517.net #[Trojan.Mitglieder.H]
O1 - Hosts: 127.0.0.1 absoluagency.com #[Trojan.StartPage.H]
O1 - Hosts: 127.0.0.1 acestats.com
O1 - Hosts: 127.0.0.1 www.acestats.com
O1 - Hosts: 127.0.0.1 actualnames.com #[Parasite.ActualNames][Spyware.ActualNames]
O1 - Hosts: 127.0.0.1 www.actualnames.com
O1 - Hosts: 127.0.0.1 ad-up.com
O1 - Hosts: 127.0.0.1 www.ad-up.com
O1 - Hosts: 127.0.0.1 adatom.com
O1 - Hosts: 127.0.0.1 aesp.adatom.com
O1 - Hosts: 127.0.0.1 adbest.com
O1 - Hosts: 127.0.0.1 adserv.adbonus.com
O1 - Hosts: 127.0.0.1 www.adbonus.com
O1 - Hosts: 127.0.0.1 ad2.adcept.net
O1 - Hosts: 127.0.0.1 ad3.adcept.net
O1 - Hosts: 127.0.0.1 www.adcept.net
O1 - Hosts: 127.0.0.1 adcomplete.com
O1 - Hosts: 127.0.0.1 www.adcomplete.com
O1 - Hosts: 127.0.0.1 www.adcopy.info
O1 - Hosts: 5232 more lines...
O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll (Yahoo! Inc.)
O2 - BHO: (WhiteSmoke Bar Toolbar) - {167d9323-f7cc-48f5-948a-6f012831a69f} - C:\Program Files\WhiteSmoke_Bar\prxtbWhit.dll (Conduit Ltd.)
O2 - BHO: () - {206E52E0-D52E-11D4-AD54-0000E86C26F6} - Reg Error: Value error. File not found
O2 - BHO: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Comcast Toolbar) - {79CEEA4E-C231-4614-9E3B-53B2A02F39B7} - C:\Program Files\comcasttb\comcastdx.dll ()
O2 - BHO: (BitTorrentBar Toolbar) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files\BitTorrentBar\tbBitT.dll (Conduit Ltd.)
O2 - BHO: (PageRage Toolbar) - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\prxtbPage.dll (Conduit Ltd.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll (Google Inc.)
O2 - BHO: (Dogpile Bundle Toolbar BHO) - {BFE4B5CB-63F7-4A51-9266-6167655D5B4F} - C:\Program Files\Dogpile Bundle Toolbar\Toolbar.dll ()
O2 - BHO: (PDF-XChange Viewer IE-Plugin) - {C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F} - C:\Program Files\Tracker Software\PDF-XChange 4 Pro\PDF-XChange PDF Viewer\pdf-viewer\PDFXCviewIEPlugin.dll (Tracker Software Products Ltd.)
O2 - BHO: (LivingPlay) - {D9291F9E-7010-4D7A-8DF6-455DEEF8EF51} - C:\Program Files\LivingPlay Games\lplaytl.dll ()
O2 - BHO: (Yontoo Layers) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - File not found
O3 - HKLM\..\Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {119DBEDA-9c41-4F97-94B4-B6BCD01133CF} - No CLSID value found.
O3 - HKLM\..\Toolbar: (WhiteSmoke Bar Toolbar) - {167d9323-f7cc-48f5-948a-6f012831a69f} - C:\Program Files\WhiteSmoke_Bar\prxtbWhit.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Comcast Toolbar) - {79CEEA4E-C231-4614-9E3B-53B2A02F39B7} - C:\Program Files\comcasttb\comcastdx.dll ()
O3 - HKLM\..\Toolbar: (BitTorrentBar Toolbar) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files\BitTorrentBar\tbBitT.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (PageRage Toolbar) - {9565115d-c7d6-46d3-bd63-b67b481a4368} - C:\Program Files\PageRage\prxtbPage.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - {9D425283-D487-4337-BAB6-AB8354A81457} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Dogpile Bundle Toolbar) - {C80BDEB2-8735-44C6-BD55-A1CCD555667A} - C:\Program Files\Dogpile Bundle Toolbar\Toolbar.dll ()
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKLM\..\Toolbar: (FreshDownload Bar) - {ED0E8CA5-42FB-4B18-997B-769E0408E79D} - Reg Error: Value error. File not found
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (WhiteSmoke Bar Toolbar) - {167D9323-F7CC-48F5-948A-6F012831A69F} - C:\Program Files\WhiteSmoke_Bar\prxtbWhit.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (BitTorrentBar Toolbar) - {88C7F2AA-F93F-432C-8F0E-B7D85967A527} - C:\Program Files\BitTorrentBar\tbBitT.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (PageRage Toolbar) - {9565115D-C7D6-46D3-BD63-B67B481A4368} - C:\Program Files\PageRage\prxtbPage.dll (Conduit Ltd.)
O4 - HKLM..\Run: [00PCTFW] C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe (PC Tools)
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [ddoctorv2] C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKLM..\Run: [HKLM] C:\WINDOWS\win32\server.exe (Microsoft)
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\WINDOWS\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKCU..\Run: [HKCU] C:\WINDOWS\win32\server.exe (Microsoft)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: Policies = C:\WINDOWS\win32\server.exe (Microsoft)
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: Policies = C:\WINDOWS\win32\server.exe (Microsoft)
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll (Google Inc.)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\npjpi160_17.dll (Sun Microsystems, Inc.)
O9 - Extra Button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - File not found
O9 - Extra 'Tools' menuitem : PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - File not found
O9 - Extra Button: FreshDownload - {D7EED146-8E35-46B9-B981-04FBFA077A5B} - File not found
O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\GameLink.dll (www.Easy2Game.com)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\GameLink.dll (www.Easy2Game.com)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\GameLink.dll (www.Easy2Game.com)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\GameLink.dll (www.Easy2Game.com)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\GameLink.dll (www.Easy2Game.com)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\GameLink.dll (www.Easy2Game.com)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\GameLink.dll (www.Easy2Game.com)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\GameLink.dll (www.Easy2Game.com)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zon...kr.cab56986.cab (Checkers Class)
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} http://www.fileplane..._2.3.10.115.cab (Reg Error: Key error.)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zon...1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.micros...b?1154298186734 (MUWebControl Class)
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} http://atv.disney.go...y/OTOYAX29b.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.ma...t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {99CAAA27-FA0C-4FA4-B88A-4AB1CC7A17FE} http://www.netgame.c...ch_USAv1005.cab (MGLaunch_v1004 Class)
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} http://a.download.to...0.16/ttinst.cab (Reg Error: Key error.)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zon...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {C4925E65-7A1E-11D2-8BB4-00A0C9CC72C3} http://a532.g.akamai...0/installer.exe (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} http://a532.g.akamai...l/installer.exe (Reg Error: Key error.)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zon...er.cab56986.cab (Minesweeper Flags Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.87.64.150 68.87.75.198
O18 - Protocol\Filter\text/html - No CLSID value found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O20 - Winlogon\Notify\StillImage: DllName - C:\WINDOWS\system32\k6pm0g71e6.dll - C:\WINDOWS\system32\k6pm0g71e6.dll ()
O24 - Desktop WallPaper: C:\Documents and Settings\Tech\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Tech\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/03/07 12:04:01 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/07/30 16:51:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\FCTB000060231
[2011/07/30 16:50:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\Dogpile Bundle Toolbar
[2011/07/30 16:50:18 | 000,000,000 | ---D | C] -- C:\Program Files\Dogpile Bundle Toolbar
[2011/07/30 16:50:05 | 000,000,000 | ---D | C] -- C:\Program Files\LivingPlay Games
[2011/07/30 09:03:32 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Tech\Desktop\OTL.exe
[2011/07/30 08:44:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Malwarebytes
[2011/07/30 08:03:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Mozilla
[2011/07/29 23:07:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\IObit Malware Fighter
[2011/07/29 23:06:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\IObit
[2011/07/29 21:46:03 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\Administrative Tools
[2011/07/29 21:28:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Desktop\Back Up Folder
[2011/07/29 20:59:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\IObit
[2011/07/29 20:07:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Walgreens
[2011/07/29 20:02:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\lol
[2011/07/29 16:39:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\PriceGong
[2011/07/29 14:04:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\InstallShield
[2011/07/28 14:41:48 | 000,000,000 | ---D | C] -- C:\Program Files\Setup Support for RelevantKnowledge
[2011/07/28 14:07:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\GetFunGames
[2011/07/28 13:59:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\FreeCause
[2011/07/28 13:58:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\WhiteSmoke
[2011/07/28 13:57:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\WhiteSmoke_Bar
[2011/07/28 13:56:53 | 000,000,000 | ---D | C] -- C:\Program Files\WhiteSmoke_Bar
[2011/07/28 13:56:33 | 000,000,000 | ---D | C] -- C:\Program Files\WhiteSmoke
[2011/07/28 13:43:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Real
[2011/07/28 03:26:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\Google Chrome
[2011/07/28 03:24:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\CallingID
[2011/07/28 03:23:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Google
[2011/07/28 03:23:11 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Tech\PrivacIE
[2011/07/27 20:12:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Desktop\Lostsaga_screenshot
[2011/07/27 19:37:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\Conduit
[2011/07/27 19:37:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\Temp
[2011/07/27 08:51:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\Lost Saga
[2011/07/26 22:25:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\BitTorrentBar
[2011/07/26 22:25:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\ConduitEngine
[2011/07/26 18:05:26 | 000,000,000 | ---D | C] -- C:\gPotato
[2011/07/24 21:30:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\OGPlanet
[2011/07/24 21:22:10 | 000,000,000 | ---D | C] -- C:\Program Files\OGPlanet
[2011/07/24 20:44:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\OGPlanet Games
[2011/07/21 11:51:45 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\My Documents\My Videos
[2011/07/21 11:45:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\Roblox
[2011/07/21 11:45:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\RobloxVersions
[2011/07/21 11:45:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\RobloxDownloads
[2011/07/21 11:45:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\Roblox
[2011/07/20 22:04:49 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Tech\My Documents\Mabinogi
[2011/07/20 12:56:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\xF-GunZx
[2011/07/20 12:49:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\FreestylersWorld Entertainment
[2011/07/20 12:49:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\blah
[2011/07/18 18:17:02 | 000,000,000 | ---D | C] -- C:\SG Interactive
[2011/07/15 00:24:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\gPotato
[2011/07/15 00:19:05 | 000,000,000 | ---D | C] -- C:\Program Files\gpotato
[2011/07/14 14:09:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\PMB Files
[2011/07/14 14:07:40 | 000,000,000 | ---D | C] -- C:\Program Files\Three Rings Design
[2011/07/14 13:06:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Sun
[2011/07/13 11:15:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\alaplaya
[2011/07/12 18:42:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\NeopleLauncherDFO
[2011/07/12 09:57:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\UNL
[2011/07/12 09:55:11 | 000,000,000 | ---D | C] -- C:\Program Files\Scarlet Weather Rhapsody
[2011/07/12 09:39:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\SWR
[2011/07/11 01:57:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\WinRAR
[2011/07/11 01:56:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\IN
[2011/07/11 01:49:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\Google
[2011/07/11 01:22:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Adobe
[2011/07/11 01:16:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\My Documents\Downloads
[2011/07/11 01:14:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\Mozilla
[2011/07/11 01:07:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\PageRage
[2011/07/11 00:58:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\comcasttb
[2011/07/11 00:55:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\Apple Computer
[2011/07/11 00:55:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Logitech
[2011/07/11 00:55:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\PCToolsFirewallPlus
[2011/07/11 00:55:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\SupportSoft
[2011/07/11 00:54:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Identities
[2011/07/11 00:54:06 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\My Documents\My Pictures
[2011/07/11 00:54:06 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\My Documents\My Music
[2011/07/11 00:54:03 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Tech\IETldCache
[2011/07/11 00:53:49 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Tech\Application Data\Microsoft
[2011/07/11 00:53:49 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Tech\SendTo
[2011/07/11 00:53:49 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Tech\Recent
[2011/07/11 00:53:49 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Tech\Application Data
[2011/07/11 00:53:49 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\Startup
[2011/07/11 00:53:49 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\Start Menu
[2011/07/11 00:53:49 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\My Documents
[2011/07/11 00:53:49 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\Favorites
[2011/07/11 00:53:49 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Tech\Start Menu\Programs\Accessories
[2011/07/11 00:53:49 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Tech\Cookies
[2011/07/11 00:53:49 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Tech\Templates
[2011/07/11 00:53:49 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Tech\PrintHood
[2011/07/11 00:53:49 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Tech\NetHood
[2011/07/11 00:53:49 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Tech\Local Settings
[2011/07/11 00:53:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Local Settings\Application Data\Microsoft
[2011/07/11 00:53:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Application Data\Macromedia
[2011/07/11 00:53:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tech\Desktop
[2011/07/07 21:42:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Steam
[2011/07/07 21:42:24 | 000,000,000 | ---D | C] -- C:\Program Files\Steam
[2011/07/06 22:27:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe
[2010/06/27 06:06:53 | 001,654,869 | ---- | C] (Dynu Systems Inc.) -- C:\Documents and Settings\All Users\Application Data\DynuEncrypt.dll
[2009/01/17 16:16:22 | 000,262,144 | ---- | C] (Ask.com) -- C:\Program Files\Uninstall Ask Toolbar.dll
[7 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/07/30 17:16:45 | 000,000,721 | -H-- | M] () -- C:\Documents and Settings\Tech\Application Data\logs.dat
[2011/07/30 16:59:02 | 000,000,974 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-527237240-682003330-725345543-1018UA.job
[2011/07/30 16:53:24 | 000,002,278 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/07/30 16:53:21 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/07/30 16:53:18 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-527237240-682003330-725345543-1018.job
[2011/07/30 16:53:02 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/07/30 16:49:02 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/07/30 09:03:32 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Tech\Desktop\OTL.exe
[2011/07/30 08:45:27 | 000,000,838 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/07/30 08:11:51 | 000,000,215 | ---- | M] () -- C:\boot.ini
[2011/07/30 08:03:29 | 000,000,778 | ---- | M] () -- C:\Documents and Settings\Tech\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/07/30 08:03:29 | 000,000,760 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2011/07/30 04:59:00 | 000,000,922 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-527237240-682003330-725345543-1018Core.job
[2011/07/29 23:07:04 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\IObit Malware Fighter.lnk
[2011/07/29 21:48:28 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Tech\defogger_reenable
[2011/07/29 17:12:05 | 000,000,064 | ---- | M] () -- C:\WINDOWS\GPlrLanc.dat
[2011/07/29 16:51:40 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Tech\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/07/29 14:06:04 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-527237240-682003330-725345543-1018.job
[2011/07/28 03:26:36 | 000,002,329 | ---- | M] () -- C:\Documents and Settings\Tech\Desktop\Google Chrome.lnk
[2011/07/28 03:26:36 | 000,002,307 | ---- | M] () -- C:\Documents and Settings\Tech\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/07/27 21:44:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/07/27 08:51:31 | 000,000,860 | ---- | M] () -- C:\Documents and Settings\Tech\Desktop\OGPlanet.lnk
[2011/07/27 08:51:14 | 000,001,711 | ---- | M] () -- C:\Documents and Settings\Tech\Desktop\Lost Saga.lnk
[2011/07/23 17:15:57 | 000,001,189 | ---- | M] () -- C:\Documents and Settings\Tech\Desktop\Play Roblox.lnk
[2011/07/23 12:26:45 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/07/20 12:56:04 | 000,000,031 | ---- | M] () -- C:\WINDOWS\GunzLauncher.INI
[2011/07/15 05:03:57 | 000,235,960 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/07/15 03:03:56 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011/07/15 00:24:10 | 000,000,858 | ---- | M] () -- C:\Documents and Settings\Tech\Desktop\TalesRunner.lnk
[2011/07/11 05:41:04 | 000,472,714 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/07/11 05:41:04 | 000,084,602 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/07/11 00:54:47 | 000,000,851 | ---- | M] () -- C:\Documents and Settings\Tech\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/07/11 00:54:43 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\Tech\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2011/07/06 19:52:42 | 000,041,272 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/07/06 19:52:42 | 000,022,712 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[7 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/07/30 08:45:27 | 000,000,838 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/07/30 08:03:29 | 000,000,778 | ---- | C] () -- C:\Documents and Settings\Tech\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/07/30 08:03:29 | 000,000,760 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2011/07/30 08:03:28 | 000,000,766 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnk
[2011/07/29 23:07:04 | 000,000,874 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\IObit Malware Fighter.lnk
[2011/07/29 21:48:28 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Tech\defogger_reenable
[2011/07/29 16:51:40 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Tech\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/07/28 13:52:52 | 000,000,064 | ---- | C] () -- C:\WINDOWS\GPlrLanc.dat
[2011/07/28 13:47:20 | 000,000,276 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-527237240-682003330-725345543-1018.job
[2011/07/28 13:47:18 | 000,000,284 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-527237240-682003330-725345543-1018.job
[2011/07/28 03:26:36 | 000,002,329 | ---- | C] () -- C:\Documents and Settings\Tech\Desktop\Google Chrome.lnk
[2011/07/28 03:26:36 | 000,002,307 | ---- | C] () -- C:\Documents and Settings\Tech\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/07/27 08:51:14 | 000,001,711 | ---- | C] () -- C:\Documents and Settings\Tech\Desktop\Lost Saga.lnk
[2011/07/24 21:30:46 | 000,000,860 | ---- | C] () -- C:\Documents and Settings\Tech\Desktop\OGPlanet.lnk
[2011/07/21 11:45:37 | 000,001,189 | ---- | C] () -- C:\Documents and Settings\Tech\Desktop\Play Roblox.lnk
[2011/07/15 03:03:52 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2011/07/15 00:24:10 | 000,000,858 | ---- | C] () -- C:\Documents and Settings\Tech\Desktop\TalesRunner.lnk
[2011/07/11 01:49:27 | 000,000,974 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-527237240-682003330-725345543-1018UA.job
[2011/07/11 01:49:26 | 000,000,922 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-527237240-682003330-725345543-1018Core.job
[2011/07/11 00:54:47 | 000,000,851 | ---- | C] () -- C:\Documents and Settings\Tech\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/07/11 00:54:47 | 000,000,839 | ---- | C] () -- C:\Documents and Settings\Tech\Start Menu\Programs\Internet Explorer.lnk
[2011/07/11 00:54:43 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\Tech\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2011/07/11 00:53:49 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\Tech\Start Menu\Programs\Remote Assistance.lnk
[2011/02/21 04:43:47 | 000,000,056 | ---- | C] () -- C:\WINDOWS\kgt2k.INI
[2011/02/05 22:31:51 | 000,230,752 | ---- | C] () -- C:\WINDOWS\patchw32.dll
[2011/02/05 22:31:50 | 000,118,176 | ---- | C] () -- C:\WINDOWS\patchw.dll
[2011/01/17 15:45:06 | 000,138,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2011/01/17 15:44:41 | 000,189,248 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2011/01/17 15:44:24 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2011/01/03 23:12:46 | 000,001,039 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2010/09/04 09:08:05 | 000,065,536 | ---- | C] () -- C:\WINDOWS\IFinst27.exe
[2010/08/17 07:52:32 | 000,001,468 | ---- | C] () -- C:\WINDOWS\Sandboxie.ini
[2010/08/17 07:49:39 | 000,000,318 | ---- | C] () -- C:\WINDOWS\uul°3 Ver 4.INI
[2010/08/12 12:12:09 | 000,000,025 | ---- | C] () -- C:\WINDOWS\popcinfot.dat
[2010/08/12 12:12:09 | 000,000,000 | ---- | C] () -- C:\WINDOWS\popcreg.dat
[2010/07/15 03:58:08 | 000,000,096 | -H-- | C] () -- C:\WINDOWS\System32\HsInfo.dat
[2010/05/03 02:03:12 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
[2010/05/03 02:03:12 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
[2010/05/03 02:03:12 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll
[2010/05/03 02:03:11 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\unrar3.dll
[2010/01/18 21:19:53 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2009/07/08 21:03:02 | 000,058,880 | ---- | C] () -- C:\WINDOWS\System32\bdmpegv.dll
[2008/09/22 04:05:14 | 001,053,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\CAMTHWDM.sys
[2008/08/31 23:17:39 | 000,000,022 | ---- | C] () -- C:\WINDOWS\msnmsgr.exe.ini
[2008/07/20 21:45:28 | 000,000,449 | ---- | C] () -- C:\WINDOWS\kaillera.ini
[2008/07/20 17:18:05 | 000,000,018 | ---- | C] () -- C:\WINDOWS\gfact.ini
[2008/05/24 18:45:18 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2008/02/10 03:41:34 | 000,000,025 | ---- | C] () -- C:\WINDOWS\TDH_Launcher.ini
[2008/01/18 22:53:29 | 000,000,872 | ---- | C] () -- C:\WINDOWS\Brpfx04a.ini
[2008/01/18 22:53:29 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\bridf06a.dat
[2008/01/18 22:51:44 | 000,000,000 | ---- | C] () -- C:\WINDOWS\brdfxspd.dat
[2007/11/21 22:05:48 | 000,000,031 | ---- | C] () -- C:\WINDOWS\GunzLauncher.INI
[2007/03/29 18:46:19 | 000,000,848 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
[2007/02/20 14:24:43 | 000,153,088 | ---- | C] () -- C:\WINDOWS\UNWISE.EXE
[2007/02/08 18:47:47 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2006/10/19 16:22:06 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2006/09/16 15:20:54 | 000,000,053 | ---- | C] () -- C:\WINDOWS\pvqobo.dat
[2006/09/06 04:00:31 | 000,000,308 | ---- | C] () -- C:\WINDOWS\em06y.ini
[2006/08/14 23:44:44 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2006/07/16 06:38:19 | 000,000,128 | ---- | C] () -- C:\WINDOWS\System32\dr.exe
[2006/07/16 06:37:52 | 000,000,128 | ---- | C] () -- C:\WINDOWS\System32\mc-110-12-0000137.exe
[2006/06/26 16:09:36 | 000,234,117 | R-S- | C] () -- C:\WINDOWS\System32\k6pm0g71e6.dll
[2006/06/21 22:47:30 | 000,001,094 | ---- | C] () -- C:\WINDOWS\System32\w016c871.ini
[2006/06/21 22:39:02 | 000,000,000 | ---- | C] () -- C:\WINDOWS\keyboard1.dat
[2006/06/15 06:01:48 | 000,003,858 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2006/06/13 22:47:53 | 000,000,049 | ---- | C] () -- C:\WINDOWS\iltwain.ini
[2006/06/11 04:40:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\taskkill.exe
[2006/05/20 09:20:47 | 000,000,035 | ---- | C] () -- C:\WINDOWS\atechloc.ini
[2006/05/20 09:20:41 | 000,000,083 | ---- | C] () -- C:\WINDOWS\atech.ini
[2006/04/21 12:15:54 | 000,002,097 | ---- | C] () -- C:\Program Files\folder.js
[2006/04/07 23:49:08 | 000,000,051 | ---- | C] () -- C:\WINDOWS\brmx2001.ini
[2006/04/07 23:49:08 | 000,000,040 | ---- | C] () -- C:\WINDOWS\opt_2460.ini
[2006/04/07 23:48:33 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini
[2006/04/07 23:48:17 | 000,002,188 | ---- | C] () -- C:\WINDOWS\BRMFBIDI.INI
[2006/04/07 23:48:06 | 000,001,142 | ---- | C] () -- C:\WINDOWS\Brpcfx.ini
[2006/04/07 23:48:06 | 000,000,419 | ---- | C] () -- C:\WINDOWS\brwmark.ini
[2006/04/07 23:48:06 | 000,000,079 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2006/04/07 23:48:06 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\mf322def.dat
[2006/04/07 23:47:51 | 000,000,256 | ---- | C] () -- C:\WINDOWS\System32\brmsi06.BIN
[2006/03/19 12:58:24 | 000,001,759 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/03/09 04:49:44 | 000,107,134 | ---- | C] () -- C:\WINDOWS\UninstallFirefox.exe
[2006/03/09 04:49:35 | 000,004,340 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2006/03/09 04:44:01 | 000,000,335 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2006/03/09 04:43:29 | 000,000,021 | ---- | C] () -- C:\WINDOWS\atid.ini
[2006/03/07 12:48:05 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\e100bmsg.dll
[2006/03/07 12:06:09 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2006/03/07 12:01:30 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2006/03/07 03:56:36 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2006/03/07 03:55:13 | 000,235,960 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2005/10/23 04:37:30 | 000,000,721 | -H-- | C] () -- C:\Documents and Settings\Tech\Application Data\logs.dat
[2004/08/04 01:07:22 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004/08/02 14:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2002/09/03 13:17:03 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2002/09/03 13:16:59 | 000,004,594 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2002/09/03 12:52:01 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2002/09/03 12:52:00 | 000,472,714 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2002/09/03 12:51:58 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2002/09/03 12:51:54 | 000,084,602 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2002/09/03 12:49:33 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2002/09/03 12:41:59 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2002/09/03 12:41:43 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2002/09/03 12:32:10 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
========== LOP Check ==========
[2010/08/18 01:41:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2011/02/10 23:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2009/05/07 23:26:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Comcast
[2011/01/04 02:38:14 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2009/11/28 17:46:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IJJIGame
[2011/07/29 20:59:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IObit
[2006/03/18 00:06:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Kazaa Lite
[2011/01/04 02:30:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2008/08/31 23:17:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MumboJumbo
[2010/08/18 01:32:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nexon
[2011/07/29 19:49:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NexonUS
[2008/07/05 22:41:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Outspark
[2007/02/24 09:41:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayFirst
[2011/07/26 15:11:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PMB Files
[2010/08/12 12:12:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap Games
[2008/08/30 12:51:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ROBLOX
[2008/08/21 21:59:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RobloxDownloads
[2007/02/27 04:32:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sandlot Games
[2010/06/23 02:40:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Simply Super Software
[2009/05/07 20:28:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SupportSoft
[2011/07/29 19:52:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Tarma Installer
[2011/07/30 16:55:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/01/03 21:31:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2008/12/30 00:40:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2008/11/10 00:51:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\YoYoGames
[2009/04/01 23:55:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[2011/01/03 21:25:52 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2009/12/30 00:23:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2011/01/04 03:54:13 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{DE8EABB5-1C85-4410-A68D-79BD8A4518F4}
[2011/07/29 16:40:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\CallingID
[2011/07/28 17:14:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\comcasttb
[2011/07/30 16:51:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\FCTB000060231
[2011/07/29 23:06:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\IObit
[2011/07/12 18:51:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\NeopleLauncherDFO
[2011/07/11 00:55:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\PCToolsFirewallPlus
[2011/07/29 22:56:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\PriceGong
[2011/07/29 20:07:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\Walgreens
[2011/07/29 14:07:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tech\Application Data\WhiteSmoke
[2006/04/16 05:34:49 | 000,000,000 | RHSD | M] -- C:\Documents and Settings\Tech\Application Data\win32
========== Purity Check ==========
========== Files - Unicode (All) ==========
[2006/09/15 20:09:10 | 000,000,000 | ---D | M](C:\WINDOWS\?ppPatch) -- C:\WINDOWS\АppPatch
[2006/09/14 22:17:59 | 000,000,000 | ---D | M](C:\WINDOWS\?ppPatch\MCROSO~1) -- C:\WINDOWS\АppPatch\MCROSO~1
[2006/07/21 17:23:42 | 000,000,000 | ---D | M](C:\Program Files\W?nSxS) -- C:\Program Files\WіnSxS
[2006/07/21 17:23:42 | 000,000,000 | ---D | M](C:\Program Files\W?nSxS) -- C:\Program Files\WіnSxS
[2006/07/18 02:52:50 | 000,000,000 | ---D | M](C:\WINDOWS\System32\s?mbols) -- C:\WINDOWS\System32\sуmbols
[2006/07/18 02:52:50 | 000,000,000 | ---D | C](C:\WINDOWS\System32\s?mbols) -- C:\WINDOWS\System32\sуmbols
[2006/06/22 19:04:47 | 000,000,000 | ---D | M](C:\WINDOWS\M?crosoft\M?crosoft) -- C:\WINDOWS\Mіcrosoft\Mіcrosoft
[2006/06/22 13:04:42 | 000,000,000 | ---D | M](C:\WINDOWS\M?crosoft) -- C:\WINDOWS\Mіcrosoft
[2006/06/22 13:04:16 | 000,000,000 | ---D | C](C:\WINDOWS\M?crosoft) -- C:\WINDOWS\Mіcrosoft
[2006/06/21 22:40:04 | 000,000,000 | ---D | C](C:\WINDOWS\?ppPatch) -- C:\WINDOWS\АppPatch
(C:\Program Files\W?nSxS) -- C:\Program Files\WіnSxS
========== Alternate Data Streams ==========
@Alternate Data Stream - 498 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:05EE1EEF
@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F8B88761
@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CB0AACC9
@Alternate Data Stream - 123 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D06A4C76
@Alternate Data Stream - 121 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C31F31E6
< End of report >
Edited by kotaishi, 30 July 2011 - 04:18 PM.