Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Unbootable computer


  • Please log in to reply

#181
michaelg9

michaelg9

    Trusted Helper

  • Malware Removal
  • 2,949 posts
Never heard of it, but it's a heuristic detection engine, so it possible to flag legit files as False Positives.
I wouldn't suggest you using it
  • 0

Advertisements


#182
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
Im still with this thread i just havent had the time to be able to run this as ive been busy with college work.
Hopefully i will get it done today as im not doing much today :)
  • 0

#183
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
OTL logfile created on: 9/2/2011 8:50:38 PM - Run
OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE
Windows Vista ™ Business Service Pack 2 (Version = 6.0.6002) - Type = System
Internet Explorer (Version = 8.0.6001.19120)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 82.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 96.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 1.46 Gb Total Space | 0.69 Gb Free Space | 47.34% Space Free | Partition Type: NTFS
Drive D: | 126.10 Gb Total Space | 31.30 Gb Free Space | 24.82% Space Free | Partition Type: NTFS
Drive E: | 21.49 Gb Total Space | 15.99 Gb Free Space | 74.40% Space Free | Partition Type: NTFS
Drive F: | 3.72 Gb Total Space | 1.84 Gb Free Space | 49.40% Space Free | Partition Type: FAT32
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
Using ControlSet: ControlSet011

========== Win32 Services (SafeList) ==========

SRV - File not found [Auto] -- -- (XAudioService)
SRV - File not found [Auto] -- -- (wudfsvc)
SRV - File not found [Auto] -- -- (wuauserv)
SRV - File not found [Auto] -- -- (WSearch)
SRV - File not found [Auto] -- -- (wscsvc)
SRV - File not found [On_Demand] -- -- (WPFFontCache_v0400)
SRV - File not found [Auto] -- -- (WPDBusEnum)
SRV - File not found [On_Demand] -- -- (WMPNetworkSvc)
SRV - File not found [On_Demand] -- -- (wmiApSrv)
SRV - File not found [Auto] -- -- (Wlansvc)
SRV - File not found [On_Demand] -- -- (WinRM)
SRV - File not found [Auto] -- -- (Winmgmt)
SRV - File not found [On_Demand] -- -- (WinHttpAutoProxySvc)
SRV - File not found [Auto] -- -- (WinDefend)
SRV - File not found [Auto] -- -- (WerSvc)
SRV - File not found [On_Demand] -- -- (wercplsupport)
SRV - File not found [On_Demand] -- -- (Wecsvc)
SRV - File not found [Auto] -- -- (WebClient)
SRV - File not found [On_Demand] -- -- (WdiSystemHost)
SRV - File not found [On_Demand] -- -- (WdiServiceHost)
SRV - File not found [On_Demand] -- -- (WcsPlugInService)
SRV - File not found [On_Demand] -- -- (wcncsvc)
SRV - File not found [On_Demand] -- -- (wbengine)
SRV - File not found [Auto] -- -- (W32Time)
SRV - File not found [On_Demand] -- -- (VSS)
SRV - File not found [On_Demand] -- -- (vds)
SRV - File not found [Auto] -- -- (UxSms)
SRV - File not found [Auto] -- -- (upnphost)
SRV - File not found [On_Demand] -- -- (UmRdpService)
SRV - File not found [On_Demand] -- -- (UI0Detect)
SRV - File not found [Disabled] -- -- (TVT_UpdateMonitor)
SRV - File not found [Auto] -- -- (TVT Scheduler)
SRV - File not found [Auto] -- -- (TVT Backup Service)
SRV - File not found [Auto] -- -- (TVT Backup Protection Service)
SRV - File not found [Auto] -- -- (TSSCoreService)
SRV - File not found [On_Demand] -- -- (TrustedInstaller)
SRV - File not found [Auto] -- -- (TrkWks)
SRV - File not found [Auto] -- -- (TPHKSVC)
SRV - File not found [Auto] -- -- (TPHDEXLGSVC)
SRV - File not found [On_Demand] -- -- (THREADORDER)
SRV - File not found [Auto] -- -- (ThinkVantage Registry Monitor Service)
SRV - File not found [Auto] -- -- (Themes)
SRV - File not found [Auto] -- -- (TermService)
SRV - File not found [Disabled] -- -- (TeamViewer6)
SRV - File not found [Auto] -- -- (TBS)
SRV - File not found [On_Demand] -- -- (TapiSrv)
SRV - File not found [Auto] -- -- (TabletInputService)
SRV - File not found [Auto] -- -- (SysMain)
SRV - File not found [On_Demand] -- -- (swprv)
SRV - File not found [On_Demand] -- -- (stllssvr)
SRV - File not found [Auto] -- -- (stisvc)
SRV - File not found [On_Demand] -- -- (Steam Client Service)
SRV - File not found [On_Demand] -- -- (SstpSvc)
SRV - File not found [On_Demand] -- -- (SSDPSRV)
SRV - File not found [Auto] -- -- (Spooler)
SRV - File not found [On_Demand] -- -- (SNMPTRAP)
SRV - File not found [On_Demand] -- -- (SLUINotify)
SRV - File not found [Auto] -- -- (slsvc)
SRV - File not found [Auto] -- -- (ShellHWDetection)
SRV - File not found [Auto] -- -- (SharedAccess)
SRV - File not found [On_Demand] -- -- (SessionEnv)
SRV - File not found [Auto] -- -- (SENS)
SRV - File not found [Auto] -- -- (SeaPort)
SRV - File not found [On_Demand] -- -- (SDRSVC)
SRV - File not found [On_Demand] -- -- (SCPolicySvc)
SRV - File not found [Auto] -- -- (Schedule)
SRV - File not found [On_Demand] -- -- (SCardSvr)
SRV - File not found [Auto] -- -- (SamSs)
SRV - File not found [Auto] -- -- (RpcSs)
SRV - File not found [On_Demand] -- -- (RpcLocator)
SRV - File not found [On_Demand] -- -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - File not found [Disabled] -- -- (RoxMediaDB10)
SRV - File not found [On_Demand] -- -- (RemoteRegistry)
SRV - File not found [Disabled] -- -- (RemoteAccess)
SRV - File not found [Auto] -- -- (RegSrvc)
SRV - File not found [On_Demand] -- -- (RasMan)
SRV - File not found [On_Demand] -- -- (RasAuto)
SRV - File not found [Disabled] -- -- (PuranDefrag)
SRV - File not found [On_Demand] -- -- (ProtectedStorage)
SRV - File not found [Auto] -- -- (ProfSvc)
SRV - File not found [Auto] -- -- (Power Manager DBC Service)
SRV - File not found [Auto] -- -- (PolicyAgent)
SRV - File not found [On_Demand] -- -- (PNRPsvc)
SRV - File not found [On_Demand] -- -- (PNRPAutoReg)
SRV - File not found [Auto] -- -- (PlugPlay)
SRV - File not found [On_Demand] -- -- (pla)
SRV - File not found [Auto] -- -- (PcaSvc)
SRV - File not found [On_Demand] -- -- (p2psvc)
SRV - File not found [On_Demand] -- -- (p2pimsvc)
SRV - File not found [On_Demand] -- -- (ose)
SRV - File not found [On_Demand] -- -- (odserv)
SRV - File not found [Auto] -- -- (nsi)
SRV - File not found [On_Demand] -- -- (npggsvc)
SRV - File not found [Auto] -- -- (NlaSvc)
SRV - File not found [Disabled] -- -- (NetTcpPortSharing)
SRV - File not found [Disabled] -- -- (NetTcpActivator)
SRV - File not found [Auto] -- -- (netprofm)
SRV - File not found [Disabled] -- -- (NetPipeActivator)
SRV - File not found [Disabled] -- -- (NetMsmqActivator)
SRV - File not found [On_Demand] -- -- (Netman)
SRV - File not found [On_Demand] -- -- (Netlogon)
SRV - File not found [On_Demand] -- -- (napagent)
SRV - File not found [On_Demand] -- -- (MyWiFiDHCPDNS)
SRV - File not found [On_Demand] -- -- (msiserver)
SRV - File not found [On_Demand] -- -- (MSiSCSI)
SRV - File not found [On_Demand] -- -- (MSDTC)
SRV - File not found [Auto] -- -- (MpsSvc)
SRV - File not found [Auto] -- -- (MMCSS)
SRV - File not found [Auto] -- -- (lmhosts)
SRV - File not found [On_Demand] -- -- (lltdsvc)
SRV - File not found [Auto] -- -- (LENOVO.MICMUTE)
SRV - File not found [Auto] -- -- (LanmanWorkstation)
SRV - File not found [Auto] -- -- (LanmanServer)
SRV - File not found [Auto] -- -- (KtmRm)
SRV - File not found [On_Demand] -- -- (KeyIso)
SRV - File not found [Auto] -- -- (IviRegMgr)
SRV - File not found [On_Demand] -- -- (iPod Service)
SRV - File not found [Auto] -- -- (iphlpsvc)
SRV - File not found [On_Demand] -- -- (IPBusEnum)
SRV - File not found [Auto] -- -- (IKEEXT)
SRV - File not found [On_Demand] -- -- (idsvc)
SRV - File not found [On_Demand] -- -- (IDriverT)
SRV - File not found [Auto] -- -- (IBMPMSVC)
SRV - File not found [On_Demand] -- -- (hkmsvc)
SRV - File not found [Auto] -- -- (hidserv)
SRV - File not found [Auto] -- -- (gpsvc)
SRV - File not found [On_Demand] -- -- (fsssvc)
SRV - File not found [Auto] -- -- (FontCache3.0.0.0)
SRV - File not found [Auto] -- -- (FontCache)
SRV - File not found [On_Demand] -- -- (FirebirdServerDefaultInstance)
SRV - File not found [Auto] -- -- (FirebirdGuardianDefaultInstance)
SRV - File not found [Auto] -- -- (FDResPub)
SRV - File not found [On_Demand] -- -- (fdPHost)
SRV - File not found [On_Demand] -- -- (Fax)
SRV - File not found [Auto] -- -- (EvtEng)
SRV - File not found [Auto] -- -- (EventSystem)
SRV - File not found [Auto] -- -- (Eventlog)
SRV - File not found [Auto] -- -- (EMDMgmt)
SRV - File not found [On_Demand] -- -- (EapHost)
SRV - File not found [Auto] -- -- (dtsvc)
SRV - File not found [Auto] -- -- (DPS)
SRV - File not found [On_Demand] -- -- (dot3svc)
SRV - File not found [Auto] -- -- (Dnscache)
SRV - File not found [Auto] -- -- (Dhcp)
SRV - File not found [On_Demand] -- -- (DFSR)
SRV - File not found [Auto] -- -- (DDNIOEMService)
SRV - File not found [Auto] -- -- (DcomLaunch)
SRV - File not found [Auto] -- -- (CscService)
SRV - File not found [Auto] -- -- (CryptSvc)
SRV - File not found [On_Demand] -- -- (COMSysApp)
SRV - File not found [Auto] -- -- (clr_optimization_v4.0.30319_32)
SRV - File not found [Disabled] -- -- (clr_optimization_v2.0.50727_32)
SRV - File not found [On_Demand] -- -- (CertPropSvc)
SRV - File not found [Auto] -- -- (Browser)
SRV - File not found [Auto] -- -- (Bonjour Service)
SRV - File not found [Auto] -- -- (BITS)
SRV - File not found [Auto] -- -- (BFE)
SRV - File not found [Auto] -- -- (avast! Antivirus)
SRV - File not found [Auto] -- -- (Audiosrv)
SRV - File not found [Auto] -- -- (AudioEndpointBuilder)
SRV - File not found [Auto] -- -- (ATService)
SRV - File not found [Auto] -- -- (Ati External Event Utility)
SRV - File not found [On_Demand] -- -- (aspnet_state)
SRV - File not found [On_Demand] -- -- (AppMgmt)
SRV - File not found [Auto] -- -- (Apple Mobile Device)
SRV - File not found [On_Demand] -- -- (Appinfo)
SRV - File not found [On_Demand] -- -- (ALG)
SRV - File not found [Disabled] -- -- (Akamai)
SRV - File not found [Auto] -- -- (AeLookupSvc)
SRV - File not found [On_Demand] -- -- (ADMonitor)
SRV - File not found [Auto] -- -- (AcSvc)
SRV - File not found [Auto] -- -- (AcPrfMgrSvc)
SRV - File not found [On_Demand] -- -- (496336CA)
SRV - [2008/01/20 22:24:57 | 000,019,968 | ---- | M] (Microsoft Corporation) [Auto] -- D:\Windows\System32\seclogon.dll -- (seclogon)
SRV - [2008/01/20 22:23:57 | 000,243,712 | ---- | M] (Microsoft Corporation) [On_Demand] -- D:\Windows\System32\qwave.dll -- (QWAVE)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | Auto] -- -- (XAudio)
DRV - File not found [Kernel | On_Demand] -- -- (WUDFRd)
DRV - File not found [Kernel | On_Demand] -- -- (WpdUsb)
DRV - File not found [Kernel | On_Demand] -- -- (WmiAcpi)
DRV - File not found [Adapter | On_Demand] -- -- (Winsock)
DRV - File not found [Kernel | On_Demand] -- -- (winachsf)
DRV - File not found [File_System | On_Demand] -- -- (WimFltr)
DRV - File not found [Kernel | Boot] -- -- (Wdf01000)
DRV - File not found [Kernel | System] -- -- (Wanarpv6)
DRV - File not found [Kernel | On_Demand] -- -- (Wanarp)
DRV - File not found [Kernel | Boot] -- -- (volsnap)
DRV - File not found [Kernel | Boot] -- -- (volmgrx)
DRV - File not found [Kernel | Boot] -- -- (volmgr)
DRV - File not found [Kernel | On_Demand] -- -- (viaagp)
DRV - File not found [Kernel | System] -- -- (VgaSave)
DRV - File not found [Kernel | On_Demand] -- -- (vga)
DRV - File not found [Kernel | On_Demand] -- -- (utiynza4)
DRV - File not found [Kernel | On_Demand] -- -- (usbvideo) USB Video Device (WDM)
DRV - File not found [Kernel | On_Demand] -- -- (usbuhci)
DRV - File not found [Kernel | On_Demand] -- -- (USBSTOR)
DRV - File not found [Kernel | On_Demand] -- -- (usbscan)
DRV - File not found [Kernel | On_Demand] -- -- (usbprint)
DRV - File not found [Kernel | On_Demand] -- -- (USBIO) USBIO Driver (usbio.sys)
DRV - File not found [Kernel | On_Demand] -- -- (usbhub)
DRV - File not found [Kernel | On_Demand] -- -- (usbehci)
DRV - File not found [Kernel | On_Demand] -- -- (usbccgp)
DRV - File not found [Kernel | On_Demand] -- -- (USBAAPL)
DRV - File not found [Kernel | On_Demand] -- -- (umbus)
DRV - File not found [Kernel | On_Demand] -- -- (uliagpkx)
DRV - File not found [Kernel | On_Demand] -- -- (uagp35)
DRV - File not found [Kernel | System] -- -- (tvtumon)
DRV - File not found [Kernel | On_Demand] -- -- (TVTI2C)
DRV - File not found [File_System | Auto] -- -- (tvtfilter)
DRV - File not found [Kernel | On_Demand] -- -- (tunnel)
DRV - File not found [Kernel | On_Demand] -- -- (tunmp)
DRV - File not found [Kernel | On_Demand] -- -- (tssecsrv)
DRV - File not found [Kernel | System] -- -- (TPPWRIF)
DRV - File not found [Kernel | On_Demand] -- -- (TPM)
DRV - File not found [Kernel | Boot] -- -- (TPDIGIMN)
DRV - File not found [Kernel | System] -- -- (TermDD)
DRV - File not found [Kernel | System] -- -- (tdx)
DRV - File not found [Kernel | On_Demand] -- -- (TDTCP)
DRV - File not found [Kernel | On_Demand] -- -- (TDPIPE)
DRV - File not found [Kernel | Auto] -- -- (tcpipreg)
DRV - File not found [Kernel | On_Demand] -- -- (Tcpip6)
DRV - File not found [Kernel | Boot] -- -- (Tcpip)
DRV - File not found [Kernel | On_Demand] -- -- (SynTP)
DRV - File not found [Kernel | On_Demand] -- -- (swenum)
DRV - File not found [File_System | On_Demand] -- -- (srvnet)
DRV - File not found [File_System | On_Demand] -- -- (srv2)
DRV - File not found [File_System | On_Demand] -- -- (srv)
DRV - File not found [Kernel | Boot] -- -- (spldr)
DRV - File not found [Kernel | System] -- -- (Smb)
DRV - File not found [Kernel | On_Demand] -- -- (sisagp)
DRV - File not found [Kernel | Boot] -- -- (Shockprf)
DRV - File not found [Kernel | On_Demand] -- -- (sffp_sd)
DRV - File not found [Kernel | On_Demand] -- -- (sffp_mmc)
DRV - File not found [Kernel | On_Demand] -- -- (Serial)
DRV - File not found [Kernel | On_Demand] -- -- (Serenum)
DRV - File not found [Kernel | Auto] -- -- (secdrv)
DRV - File not found [Kernel | On_Demand] -- -- (s115obex)
DRV - File not found [Kernel | On_Demand] -- -- (s115mgmt) Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM)
DRV - File not found [Kernel | On_Demand] -- -- (s115mdm)
DRV - File not found [Kernel | On_Demand] -- -- (s115mdfl)
DRV - File not found [Kernel | On_Demand] -- -- (s115bus) Sony Ericsson Device 115 driver (WDM)
DRV - File not found [Kernel | Auto] -- -- (rspndr)
DRV - File not found [Kernel | On_Demand] -- -- (ROOTMODEM)
DRV - File not found [Kernel | On_Demand] -- -- (RimVSerPort)
DRV - File not found [Kernel | On_Demand] -- -- (RimUsb)
DRV - File not found [Kernel | On_Demand] -- -- (RDPWD)
DRV - File not found [Kernel | System] -- -- (RDPENCDD)
DRV - File not found [Kernel | On_Demand] -- -- (rdpdr)
DRV - File not found [Kernel | System] -- -- (RDPCDD)
DRV - File not found [File_System | System] -- -- (rdbss)
DRV - File not found [Kernel | On_Demand] -- -- (RasSstp)
DRV - File not found [Kernel | On_Demand] -- -- (RasPppoe)
DRV - File not found [Kernel | On_Demand] -- -- (Rasl2tp)
DRV - File not found [Kernel | System] -- -- (RasAcd)
DRV - File not found [Kernel | On_Demand] -- -- (QWAVEdrv)
DRV - File not found [Kernel | Boot] -- -- (PxHelp20)
DRV - File not found [Kernel | System] -- -- (PSched)
DRV - File not found [Kernel | On_Demand] -- -- (psadd)
DRV - File not found [Kernel | On_Demand] -- -- (PptpMiniport)
DRV - File not found [Kernel | Auto] -- -- (PEAUTH)
DRV - File not found [Kernel | Boot] -- -- (pcmcia)
DRV - File not found [Kernel | Boot] -- -- (pci)
DRV - File not found [Kernel | Auto] -- -- (Parvdm)
DRV - File not found [Kernel | Boot] -- -- (partmgr)
DRV - File not found [Kernel | On_Demand] -- -- (Parport)
DRV - File not found [Kernel | On_Demand] -- -- (ohci1394)
DRV - File not found [Kernel | On_Demand] -- -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand] -- -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand] -- -- (nv_agp)
DRV - File not found [Kernel | System] -- -- (Null)
DRV - File not found [Kernel | On_Demand] -- -- (NuidFltr)
DRV - File not found [File_System | On_Demand] -- -- (Ntfs)
DRV - File not found [Kernel | System] -- -- (nsiproxy)
DRV - File not found [File_System | System] -- -- (Npfs)
DRV - File not found [Kernel | On_Demand] -- -- (NETw5v32) Intel®
DRV - File not found [Kernel | System] -- -- (netbt)
DRV - File not found [File_System | System] -- -- (NetBIOS)
DRV - File not found [Kernel | On_Demand] -- -- (NDProxy)
DRV - File not found [Kernel | On_Demand] -- -- (NdisWan)
DRV - File not found [Kernel | On_Demand] -- -- (Ndisuio)
DRV - File not found [Kernel | On_Demand] -- -- (NdisTapi)
DRV - File not found [Kernel | Boot] -- -- (NDIS)
DRV - File not found [Kernel | On_Demand] -- -- (NativeWifiP)
DRV - File not found [Kernel | On_Demand] -- -- (MUXP)
DRV - File not found [Kernel | On_Demand] -- -- (MUXMP)
DRV - File not found [File_System | Boot] -- -- (Mup)
DRV - File not found [Kernel | On_Demand] -- -- (MSTEE)
DRV - File not found [Kernel | On_Demand] -- -- (mssmbios)
DRV - File not found [Kernel | On_Demand] -- -- (MsRPC)
DRV - File not found [Kernel | On_Demand] -- -- (MSPQM)
DRV - File not found [Kernel | On_Demand] -- -- (MSPCLOCK)
DRV - File not found [Kernel | On_Demand] -- -- (MSKSSRV)
DRV - File not found [Kernel | Boot] -- -- (msisadrv)
DRV - File not found [File_System | System] -- -- (Msfs)
DRV - File not found [Kernel | Boot] -- -- (msahci)
DRV - File not found [File_System | On_Demand] -- -- (mrxsmb20)
DRV - File not found [File_System | On_Demand] -- -- (mrxsmb10)
DRV - File not found [File_System | On_Demand] -- -- (mrxsmb)
DRV - File not found [File_System | On_Demand] -- -- (MRxDAV)
DRV - File not found [Kernel | On_Demand] -- -- (mpsdrv)
DRV - File not found [Kernel | Boot] -- -- (MountMgr)
DRV - File not found [Kernel | On_Demand] -- -- (mouhid)
DRV - File not found [Kernel | System] -- -- (mouclass)
DRV - File not found [Kernel | On_Demand] -- -- (monitor)
DRV - File not found [Kernel | On_Demand] -- -- (Modem)
DRV - File not found [Kernel | Auto] -- -- (mdmxsdk)
DRV - File not found [Kernel | On_Demand] -- -- (ManyCam)
DRV - File not found [File_System | Auto] -- -- (luafv)
DRV - File not found [Kernel | Auto] -- -- (lltdio)
DRV - File not found [Kernel | System] -- -- (lenovo.smi)
DRV - File not found [Kernel | Boot] -- -- (KSecDD)
DRV - File not found [Kernel | System] -- -- (kbdhid)
DRV - File not found [Kernel | System] -- -- (kbdclass)
DRV - File not found [Kernel | On_Demand] -- -- (iScsiPrt)
DRV - File not found [Kernel | On_Demand] -- -- (IRENUM)
DRV - File not found [Kernel | On_Demand] -- -- (IPNAT)
DRV - File not found [Kernel | On_Demand] -- -- (IpInIp)
DRV - File not found [Kernel | On_Demand] -- -- (IpFilterDriver)
DRV - File not found [Kernel | On_Demand] -- -- (intelppm)
DRV - File not found [Kernel | On_Demand] -- -- (intelkmd)
DRV - File not found [Kernel | On_Demand] -- -- (IBMPMDRV)
DRV - File not found [Kernel | Boot] -- -- (iaStor)
DRV - File not found [Kernel | System] -- -- (i8042prt)
DRV - File not found [Kernel | On_Demand] -- -- (HTTP)
DRV - File not found [Kernel | On_Demand] -- -- (HSXHWAZL)
DRV - File not found [Kernel | On_Demand] -- -- (HSFHWAZL)
DRV - File not found [Kernel | On_Demand] -- -- (HSF_DPV)
DRV - File not found [Kernel | On_Demand] -- -- (HidUsb)
DRV - File not found [Kernel | On_Demand] -- -- (HECI) Intel®
DRV - File not found [Kernel | On_Demand] -- -- (HDAudBus)
DRV - File not found [Kernel | On_Demand] -- -- (HdAudAddService)
DRV - File not found [Kernel | On_Demand] -- -- (GEARAspiWDM)
DRV - File not found [Kernel | On_Demand] -- -- (gagp30kx)
DRV - File not found [Kernel | On_Demand] -- -- (fssfltr)
DRV - File not found [Recognizer | System] -- -- (Fs_Rec)
DRV - File not found [File_System | Boot] -- -- (FltMgr)
DRV - File not found [File_System | On_Demand] -- -- (Filetrace)
DRV - File not found [File_System | Boot] -- -- (FileInfo)
DRV - File not found [File_System | On_Demand] -- -- (fastfat)
DRV - File not found [File_System | On_Demand] -- -- (exfat)
DRV - File not found [Kernel | Boot] -- -- (Ecache)
DRV - File not found [Kernel | On_Demand] -- -- (e1yexpress) Intel®
DRV - File not found [Kernel | On_Demand] -- -- (E1G60) Intel®
DRV - File not found [Kernel | On_Demand] -- -- (e1express) Intel®
DRV - File not found [Kernel | On_Demand] -- -- (DXGKrnl)
DRV - File not found [File_System | Auto] -- -- (DRVNDDM)
DRV - File not found [Kernel | Boot] -- -- (DRVMCDB)
DRV - File not found [Kernel | On_Demand] -- -- (drmkaud)
DRV - File not found [File_System | Auto] -- -- (DLAUDFAM)
DRV - File not found [File_System | Auto] -- -- (DLAUDF_M)
DRV - File not found [File_System | System] -- -- (DLARTL_M)
DRV - File not found [File_System | Auto] -- -- (DLAPoolM)
DRV - File not found [File_System | Auto] -- -- (DLAOPIOM)
DRV - File not found [File_System | Auto] -- -- (DLAIFS_M)
DRV - File not found [File_System | Auto] -- -- (DLADResM)
DRV - File not found [File_System | System] -- -- (DLACDBHM)
DRV - File not found [File_System | Auto] -- -- (DLABOIOM)
DRV - File not found [File_System | Auto] -- -- (DLABMFSM)
DRV - File not found [Kernel | Boot] -- -- (disk)
DRV - File not found [File_System | System] -- -- (DfsC)
DRV - File not found [Kernel | System] -- -- (CSC)
DRV - File not found [Kernel | Boot] -- -- (crcdisk)
DRV - File not found [Kernel | Boot] -- -- (Compbatt)
DRV - File not found [Kernel | On_Demand] -- -- (CnxtHdAudService)
DRV - File not found [Kernel | On_Demand] -- -- (CmBatt)
DRV - File not found [Kernel | Boot] -- -- (CLFS) Common Log (CLFS)
DRV - File not found [Kernel | System] -- -- (cdrom)
DRV - File not found [Kernel | On_Demand] -- -- (catchme)
DRV - File not found [Kernel | On_Demand] -- -- (BrUsbSer)
DRV - File not found [Kernel | On_Demand] -- -- (BrFiltUp)
DRV - File not found [Kernel | On_Demand] -- -- (BrFiltLo)
DRV - File not found [File_System | On_Demand] -- -- (bowser)
DRV - File not found [Kernel | System] -- -- (Beep)
DRV - File not found [Kernel | On_Demand] -- -- (ATSwpWDF)
DRV - File not found [Kernel | On_Demand] -- -- (atikmdag)
DRV - File not found [Kernel | Boot] -- -- (atapi)
DRV - File not found [Kernel | On_Demand] -- -- (AsyncMac)
DRV - File not found [Kernel | System] -- -- (aswTdi)
DRV - File not found [Kernel | System] -- -- (aswSP)
DRV - File not found [File_System | System] -- -- (aswSnx)
DRV - File not found [Kernel | System] -- -- (aswRdr)
DRV - File not found [File_System | Auto] -- -- (aswMonFlt)
DRV - File not found [File_System | Auto] -- -- (aswFsBlk)
DRV - File not found [Kernel | On_Demand] -- -- (amdkmdap)
DRV - File not found [Kernel | On_Demand] -- -- (amdkmdag)
DRV - File not found [Kernel | On_Demand] -- -- (amdagp)
DRV - File not found [Kernel | On_Demand] -- -- (agp440)
DRV - File not found [Kernel | System] -- -- (AFD)
DRV - File not found [Kernel | Boot] -- -- (ACPI)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\LENOVO_ON_D\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad [binary data]
IE - HKU\LENOVO_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page = http://uk.search.yah...836,16939,0,8,0
IE - HKU\LENOVO_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://uk.msn.com/?ocid=iehp
IE - HKU\LENOVO_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb
IE - HKU\LENOVO_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 31 CF 7A 26 E1 64 CC 01 [binary data]
IE - HKU\LENOVO_ON_D\Software\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\LENOVO_ON_D\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - File not found
IE - HKU\LENOVO_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\LocalService_ON_D\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - File not found

IE - HKU\NetworkService_ON_D\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - File not found


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: File not found
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=:
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: File not found
FF - HKLM\Software\MozillaPlugins\@zylom.com/ZylomGamesPlayer: File not found
FF - HKCU\Software\MozillaPlugins\@nsroblox.roblox.com/launcher: File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: File not found
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: File not found
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: File not found

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files\Object\facetheme
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{FCF36B88-1BBA-487f-B64B-D2E8980A9293}: C:\Program Files\Lenovo\Client Security Solution\PWM Firefox Extension
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files\Object\facetheme


Hosts file not found
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - File not found
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - File not found
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - File not found
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - File not found
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - File not found
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - File not found
O2 - BHO: (IePasswordManagerHelper Class) - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - File not found
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - File not found
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - File not found
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - File not found
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - File not found
O3 - HKU\LENOVO_ON_D\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - File not found
O4 - HKLM..\Run: [ACTray] File not found
O4 - HKLM..\Run: [ACWlIcon] File not found
O4 - HKLM..\Run: [AppleSyncNotifier] File not found
O4 - HKLM..\Run: [avast] File not found
O4 - HKLM..\Run: [CreateLMBCShortCut] File not found
O4 - HKLM..\Run: [cssauth] File not found
O4 - HKLM..\Run: [EZEJMNAP] File not found
O4 - HKLM..\Run: [FingerPrintSoftware] File not found
O4 - HKLM..\Run: [HotKeysCmds] File not found
O4 - HKLM..\Run: [IgfxTray] File not found
O4 - HKLM..\Run: [iTunesHelper] File not found
O4 - HKLM..\Run: [LENOVO.TPFNF6R] File not found
O4 - HKLM..\Run: [LPMailChecker] File not found
O4 - HKLM..\Run: [LPManager] File not found
O4 - HKLM..\Run: [Message Center Plus] File not found
O4 - HKLM..\Run: [Persistence] File not found
O4 - HKLM..\Run: [PWMTRV] File not found
O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] File not found
O4 - HKLM..\Run: [StartCCC] File not found
O4 - HKLM..\Run: [SynTPEnh] File not found
O4 - HKLM..\Run: [TkBellExe] File not found
O4 - HKLM..\Run: [TPFNF7] File not found
O4 - HKLM..\Run: [TpShocks] File not found
O4 - HKLM..\Run: [TVT Scheduler Proxy] File not found
O4 - HKU\LENOVO_ON_D..\Run: [msnmsgr] File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\LENOVO_ON_D\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\LENOVO_ON_D\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\LocalService_ON_D\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\NetworkService_ON_D\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\systemprofile_ON_D\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - File not found
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - File not found
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - File not found
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - File not found
O9 - Extra 'Tools' menuitem : Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - File not found
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zon...kr.cab56986.cab (Checkers Class)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} http://catalog.updat...b?1303935397869 (MUCatalogWebControl Class)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (OnlineScanner Control)
O16 - DPF: {816BE035-1450-40D0-8A3B-BA7825A83A77} http://support.lenov...AutoDetect2.cab (IASRunner Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zon...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {C4B977A3-E8A2-37E9-ADCD-2597FAAC61F5} http://shop.lenovo.c...MachineInfo.cab (MachineInfoActiveX.MachineInfoActiveX)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {DAF7E6E6-D53A-439A-B28D-12271406B8A9} http://mobileapps.bl...re/AxLoader.cab (RIM AxLoader)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.168.4.100 194.168.8.100
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - File not found
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - File not found
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - File not found
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - File not found
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - File not found
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - File not found
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - File not found
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - File not found
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - File not found
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - File not found
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - File not found
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - File not found
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - File not found
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - File not found
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - File not found
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - File not found
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - File not found
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - File not found
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O29 - HKLM SecurityProviders - (credssp.dll) - File not found
O30 - LSA: Authentication Packages - (msv1_0) - File not found
O30 - LSA: Security Packages - (kerberos) - File not found
O30 - LSA: Security Packages - (msv1_0) - File not found
O30 - LSA: Security Packages - (schannel) - File not found
O30 - LSA: Security Packages - (wdigest) - File not found
O30 - LSA: Security Packages - (tspkg) - File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 17:43:36 | 000,000,024 | ---- | M] () - D:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2011/03/10 21:45:28 | 000,000,016 | -H-- | M] () - F:\AUTORUN.INF -- [ FAT32 ]
O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: AeLookupSvc - File not found
NetSvcs: wercplsupport - File not found
NetSvcs: Themes - File not found
NetSvcs: CertPropSvc - File not found
NetSvcs: SCPolicySvc - File not found
NetSvcs: lanmanserver - File not found
NetSvcs: gpsvc - File not found
NetSvcs: IKEEXT - File not found
NetSvcs: AudioSrv - File not found
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Irmon - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Rasauto - File not found
NetSvcs: Rasman - File not found
NetSvcs: Remoteaccess - File not found
NetSvcs: SENS - File not found
NetSvcs: Sharedaccess - File not found
NetSvcs: SRService - File not found
NetSvcs: Tapisrv - File not found
NetSvcs: Wmi - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: TermService - File not found
NetSvcs: wuauserv - File not found
NetSvcs: BITS - File not found
NetSvcs: ShellHWDetection - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
NetSvcs: iphlpsvc - File not found
NetSvcs: seclogon - D:\Windows\System32\seclogon.dll (Microsoft Corporation)
NetSvcs: AppInfo - File not found
NetSvcs: msiscsi - File not found
NetSvcs: MMCSS - File not found
NetSvcs: ProfSvc - File not found
NetSvcs: EapHost - File not found
NetSvcs: winmgmt - File not found
NetSvcs: schedule - File not found
NetSvcs: SessionEnv - File not found
NetSvcs: browser - File not found
NetSvcs: hkmsvc - File not found
NetSvcs: AppMgmt - File not found

MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^ShortKeys 2.lnk - - File not found
MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^ShortKeys 3.lnk - - File not found
MsConfig - StartUpReg: iTunesHelper - hkey= - key= - File not found
MsConfig - StartUpReg: QuickTime Task - hkey= - key= - File not found
MsConfig - StartUpReg: RIMBBLaunchAgent.exe - hkey= - key= - File not found
MsConfig - StartUpReg: Steam - hkey= - key= - File not found
MsConfig - StartUpReg: TkBellExe - hkey= - key= - File not found
MsConfig - State: "services" - 2
MsConfig - State: "startup" - 2

SafeBootMin: AppInfo - File not found
SafeBootMin: AppMgmt - File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: CryptSvc - File not found
SafeBootMin: DcomLaunch - File not found
SafeBootMin: EventLog - File not found
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: KeyIso - File not found
SafeBootMin: Netlogon - File not found
SafeBootMin: NTDS - File not found
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PlugPlay - File not found
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: ProfSvc - File not found
SafeBootMin: RpcSs - File not found
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - File not found
SafeBootMin: SWPRV - File not found
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: TabletInputService - File not found
SafeBootMin: TBS - File not found
SafeBootMin: TrustedInstaller - File not found
SafeBootMin: VDS - File not found
SafeBootMin: vga.sys - File not found
SafeBootMin: vgasave.sys - File not found
SafeBootMin: volmgr.sys - File not found
SafeBootMin: volmgrx.sys - File not found
SafeBootMin: WinDefend - File not found
SafeBootMin: WinMgmt - File not found
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet: AFD - File not found
SafeBootNet: AppInfo - File not found
SafeBootNet: AppMgmt - File not found
SafeBootNet: Base - Driver Group
SafeBootNet: BFE - File not found
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: bowser - File not found
SafeBootNet: Browser - File not found
SafeBootNet: CryptSvc - File not found
SafeBootNet: DcomLaunch - File not found
SafeBootNet: dfsc - File not found
SafeBootNet: Dhcp - File not found
SafeBootNet: DnsCache - File not found
SafeBootNet: Dot3Svc - File not found
SafeBootNet: Eaphost - File not found
SafeBootNet: EventLog - File not found
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: IKEEXT - File not found
SafeBootNet: ipnat.sys - File not found
SafeBootNet: KeyIso - File not found
SafeBootNet: LanmanServer - File not found
SafeBootNet: LanmanWorkstation - File not found
SafeBootNet: LmHosts - File not found
SafeBootNet: Messenger - Service
SafeBootNet: MPSDrv - File not found
SafeBootNet: MPSSvc - File not found
SafeBootNet: mrxsmb - File not found
SafeBootNet: mrxsmb10 - File not found
SafeBootNet: mrxsmb20 - File not found
SafeBootNet: NativeWifiP - File not found
SafeBootNet: NDIS - File not found
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: Ndisuio - File not found
SafeBootNet: NetBIOS - File not found
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetBT - File not found
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Netlogon - File not found
SafeBootNet: NetMan - File not found
SafeBootNet: netprofm - File not found
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: NlaSvc - File not found
SafeBootNet: Nsi - File not found
SafeBootNet: nsiproxy.sys - File not found
SafeBootNet: NTDS - File not found
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PlugPlay - File not found
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: PolicyAgent - File not found
SafeBootNet: Primary disk - Driver Group
SafeBootNet: ProfSvc - File not found
SafeBootNet: rdbss - File not found
SafeBootNet: rdpencdd.sys - File not found
SafeBootNet: rdsessmgr - Service
SafeBootNet: RpcSs - File not found
SafeBootNet: sacsvr - Service
SafeBootNet: SCardSvr - File not found
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - File not found
SafeBootNet: SharedAccess - File not found
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: SWPRV - File not found
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TabletInputService - File not found
SafeBootNet: TBS - File not found
SafeBootNet: Tcpip - File not found
SafeBootNet: TDI - Driver Group
SafeBootNet: TrustedInstaller - File not found
SafeBootNet: VDS - File not found
SafeBootNet: vga.sys - File not found
SafeBootNet: vgasave.sys - File not found
SafeBootNet: volmgr.sys - File not found
SafeBootNet: volmgrx.sys - File not found
SafeBootNet: WinDefend - File not found
SafeBootNet: WinMgmt - File not found
SafeBootNet: Wlansvc - File not found
SafeBootNet: WudfPf - Driver
SafeBootNet: WudfRd - File not found
SafeBootNet: WudfSvc - File not found
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {166B1BCA-3F9C-11CF-8075-444553540000} - Macromedia Shockwave Director 8.0
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} -
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 11.0
ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Macromedia Shockwave Director 8.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} -
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.8
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP

Drivers32: aux - wdmaud.drv File not found
Drivers32: midi - wdmaud.drv File not found
Drivers32: midimapper - midimap.dll File not found
Drivers32: mixer - wdmaud.drv File not found
Drivers32: msacm.imaadpcm - imaadp32.acm File not found
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm File not found
Drivers32: msacm.msadpcm - msadp32.acm File not found
Drivers32: msacm.msg711 - msg711.acm File not found
Drivers32: msacm.msgsm610 - msgsm32.acm File not found
Drivers32: msacm.siren - sirenacm.dll File not found
Drivers32: MSVideo8 - VfWWDM32.dll File not found
Drivers32: vidc.cvid - iccvid.dll File not found
Drivers32: vidc.i420 - iyuv_32.dll File not found
Drivers32: VIDC.IYUV - iyuv_32.dll File not found
Drivers32: vidc.mrle - msrle32.dll File not found
Drivers32: vidc.msvc - msvidc32.dll File not found
Drivers32: VIDC.UYVY - msyuv.dll File not found
Drivers32: VIDC.X264 - x264vfw.dll File not found
Drivers32: VIDC.YUY2 - msyuv.dll File not found
Drivers32: VIDC.YVU9 - tsbyuv.dll File not found
Drivers32: VIDC.YVYU - msyuv.dll File not found
Drivers32: wave - wdmaud.drv File not found
Drivers32: wavemapper - msacm32.drv File not found

========== Files/Folders - Created Within 30 Days ==========


========== Files - Modified Within 30 Days ==========

[2011/08/26 03:21:28 | 000,032,768 | ---- | M] () -- C:\bcd_backup

========== Files Created - No Company Name ==========

[2011/08/26 03:21:27 | 000,032,768 | ---- | C] () -- C:\bcd_backup

========== LOP Check ==========


========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.exe >
[2008/07/29 18:37:58 | 000,180,224 | -HS- | M] () -- C:\LenovoSDrive.exe

< %SYSTEMDRIVE%\*.exe >
[2008/07/29 18:37:58 | 000,180,224 | -HS- | M] () -- C:\LenovoSDrive.exe

Invalid Environment Variable: %ALLUSERSPROFILE%\Application Data\*.exe

Invalid Environment Variable: %APPDATA%\*.


< %systemroot%\*. /mp /s >

< hklm\software\clients\startmenuinternet|command /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\Windows\system32\ie4uinit.exe" -hide
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\Windows\system32\ie4uinit.exe" -show
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\Windows\system32\ie4uinit.exe" -reinstall
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files\Internet Explorer\IEXPLORE.EXE"

< hklm\software\clients\startmenuinternet|command /64 /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\Windows\system32\ie4uinit.exe" -hide
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\Windows\system32\ie4uinit.exe" -show
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\Windows\system32\ie4uinit.exe" -reinstall
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files\Internet Explorer\IEXPLORE.EXE"

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< CREATERESTOREPOINT >
< End of report >
  • 0

#184
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
also on boot chkdsk ran
  • 0

#185
michaelg9

michaelg9

    Trusted Helper

  • Malware Removal
  • 2,949 posts
Hello,
You have chosen the wrong drive to run the scan.
These are your drives in OTLPE environment:

Drive C: | 1.46 Gb Total Space | 0.69 Gb Free Space | 47.34% Space Free | Partition Type: NTFS
Drive D: | 126.10 Gb Total Space | 31.30 Gb Free Space | 24.82% Space Free | Partition Type: NTFS
Drive E: | 21.49 Gb Total Space | 15.99 Gb Free Space | 74.40% Space Free | Partition Type: NTFS
Drive F: | 3.72 Gb Total Space | 1.84 Gb Free Space | 49.40% Space Free | Partition Type: FAT32
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

E: is your USB, X: your CD drive.
At this run, you have chosen the C: drive as the one to scan:

Drive C: | 1.46 Gb Total Space | 0.69 Gb Free Space | 47.34% Space Free | Partition Type: NTFS

This is not the drive we want to scan. This drive has total space approximately 1.5 GB, I believe it's a Recovery Partition.
The drive you need to choose is this one:

Drive D: | 126.10 Gb Total Space | 31.30 Gb Free Space | 24.82% Space Free | Partition Type: NTFS

The one with 126.10 Gb Total Space, that is the one with your real data on it.
You need to open My Computer, check which drive has 126.10 Gb Total Space, write down its letter and then open OTLPE. When it asks you to choose the windows folder, click on the drive you have written down as the correct one, and select the Windows folder. If you have done this correctly you'll see this:
Posted Image
Normally then it will continue with some other questions, continue from post#153




Next:

Do you hear any strange metallic sounds coming out of the Hard Drive?
  • 0

#186
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
No i did pick drive d...
and no none? the hard drive is normally quiet
although my clock does keep changing..

Edited by nortan360, 02 September 2011 - 02:23 PM.

  • 0

#187
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
Ran it again on SW_PRELOAD D Drive



OTL logfile created on: 9/2/2011 11:32:44 PM - Run
OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE
Windows Vista ™ Business Service Pack 2 (Version = 6.0.6002) - Type = System
Internet Explorer (Version = 8.0.6001.19120)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 82.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 96.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 1.46 Gb Total Space | 0.69 Gb Free Space | 47.33% Space Free | Partition Type: NTFS
Drive D: | 3.72 Gb Total Space | 1.84 Gb Free Space | 49.40% Space Free | Partition Type: FAT32
Drive E: | 126.10 Gb Total Space | 31.67 Gb Free Space | 25.12% Space Free | Partition Type: NTFS
Drive F: | 21.49 Gb Total Space | 15.99 Gb Free Space | 74.40% Space Free | Partition Type: NTFS
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
Using ControlSet: ControlSet011

========== Win32 Services (SafeList) ==========

SRV - File not found [Auto] -- -- (XAudioService)
SRV - File not found [Auto] -- -- (wudfsvc)
SRV - File not found [Auto] -- -- (wuauserv)
SRV - File not found [Auto] -- -- (WSearch)
SRV - File not found [Auto] -- -- (wscsvc)
SRV - File not found [On_Demand] -- -- (WPFFontCache_v0400)
SRV - File not found [Auto] -- -- (WPDBusEnum)
SRV - File not found [On_Demand] -- -- (WMPNetworkSvc)
SRV - File not found [On_Demand] -- -- (wmiApSrv)
SRV - File not found [Auto] -- -- (Wlansvc)
SRV - File not found [On_Demand] -- -- (WinRM)
SRV - File not found [Auto] -- -- (Winmgmt)
SRV - File not found [On_Demand] -- -- (WinHttpAutoProxySvc)
SRV - File not found [Auto] -- -- (WinDefend)
SRV - File not found [Auto] -- -- (WerSvc)
SRV - File not found [On_Demand] -- -- (wercplsupport)
SRV - File not found [On_Demand] -- -- (Wecsvc)
SRV - File not found [Auto] -- -- (WebClient)
SRV - File not found [On_Demand] -- -- (WdiSystemHost)
SRV - File not found [On_Demand] -- -- (WdiServiceHost)
SRV - File not found [On_Demand] -- -- (WcsPlugInService)
SRV - File not found [On_Demand] -- -- (wcncsvc)
SRV - File not found [On_Demand] -- -- (wbengine)
SRV - File not found [Auto] -- -- (W32Time)
SRV - File not found [On_Demand] -- -- (VSS)
SRV - File not found [On_Demand] -- -- (vds)
SRV - File not found [Auto] -- -- (UxSms)
SRV - File not found [Auto] -- -- (upnphost)
SRV - File not found [On_Demand] -- -- (UmRdpService)
SRV - File not found [On_Demand] -- -- (UI0Detect)
SRV - File not found [Disabled] -- -- (TVT_UpdateMonitor)
SRV - File not found [Auto] -- -- (TVT Scheduler)
SRV - File not found [Auto] -- -- (TVT Backup Service)
SRV - File not found [Auto] -- -- (TVT Backup Protection Service)
SRV - File not found [Auto] -- -- (TSSCoreService)
SRV - File not found [On_Demand] -- -- (TrustedInstaller)
SRV - File not found [Auto] -- -- (TrkWks)
SRV - File not found [Auto] -- -- (TPHKSVC)
SRV - File not found [Auto] -- -- (TPHDEXLGSVC)
SRV - File not found [On_Demand] -- -- (THREADORDER)
SRV - File not found [Auto] -- -- (ThinkVantage Registry Monitor Service)
SRV - File not found [Auto] -- -- (Themes)
SRV - File not found [Auto] -- -- (TermService)
SRV - File not found [Disabled] -- -- (TeamViewer6)
SRV - File not found [Auto] -- -- (TBS)
SRV - File not found [On_Demand] -- -- (TapiSrv)
SRV - File not found [Auto] -- -- (TabletInputService)
SRV - File not found [Auto] -- -- (SysMain)
SRV - File not found [On_Demand] -- -- (swprv)
SRV - File not found [On_Demand] -- -- (stllssvr)
SRV - File not found [Auto] -- -- (stisvc)
SRV - File not found [On_Demand] -- -- (Steam Client Service)
SRV - File not found [On_Demand] -- -- (SstpSvc)
SRV - File not found [On_Demand] -- -- (SSDPSRV)
SRV - File not found [Auto] -- -- (Spooler)
SRV - File not found [On_Demand] -- -- (SNMPTRAP)
SRV - File not found [On_Demand] -- -- (SLUINotify)
SRV - File not found [Auto] -- -- (slsvc)
SRV - File not found [Auto] -- -- (ShellHWDetection)
SRV - File not found [Auto] -- -- (SharedAccess)
SRV - File not found [On_Demand] -- -- (SessionEnv)
SRV - File not found [Auto] -- -- (SENS)
SRV - File not found [Auto] -- -- (SeaPort)
SRV - File not found [On_Demand] -- -- (SDRSVC)
SRV - File not found [On_Demand] -- -- (SCPolicySvc)
SRV - File not found [Auto] -- -- (Schedule)
SRV - File not found [On_Demand] -- -- (SCardSvr)
SRV - File not found [Auto] -- -- (SamSs)
SRV - File not found [Auto] -- -- (RpcSs)
SRV - File not found [On_Demand] -- -- (RpcLocator)
SRV - File not found [On_Demand] -- -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - File not found [Disabled] -- -- (RoxMediaDB10)
SRV - File not found [On_Demand] -- -- (RemoteRegistry)
SRV - File not found [Disabled] -- -- (RemoteAccess)
SRV - File not found [Auto] -- -- (RegSrvc)
SRV - File not found [On_Demand] -- -- (RasMan)
SRV - File not found [On_Demand] -- -- (RasAuto)
SRV - File not found [Disabled] -- -- (PuranDefrag)
SRV - File not found [On_Demand] -- -- (ProtectedStorage)
SRV - File not found [Auto] -- -- (ProfSvc)
SRV - File not found [Auto] -- -- (Power Manager DBC Service)
SRV - File not found [Auto] -- -- (PolicyAgent)
SRV - File not found [On_Demand] -- -- (PNRPsvc)
SRV - File not found [On_Demand] -- -- (PNRPAutoReg)
SRV - File not found [Auto] -- -- (PlugPlay)
SRV - File not found [On_Demand] -- -- (pla)
SRV - File not found [Auto] -- -- (PcaSvc)
SRV - File not found [On_Demand] -- -- (p2psvc)
SRV - File not found [On_Demand] -- -- (p2pimsvc)
SRV - File not found [On_Demand] -- -- (ose)
SRV - File not found [On_Demand] -- -- (odserv)
SRV - File not found [Auto] -- -- (nsi)
SRV - File not found [On_Demand] -- -- (npggsvc)
SRV - File not found [Auto] -- -- (NlaSvc)
SRV - File not found [Disabled] -- -- (NetTcpPortSharing)
SRV - File not found [Disabled] -- -- (NetTcpActivator)
SRV - File not found [Auto] -- -- (netprofm)
SRV - File not found [Disabled] -- -- (NetPipeActivator)
SRV - File not found [Disabled] -- -- (NetMsmqActivator)
SRV - File not found [On_Demand] -- -- (Netman)
SRV - File not found [On_Demand] -- -- (Netlogon)
SRV - File not found [On_Demand] -- -- (napagent)
SRV - File not found [On_Demand] -- -- (MyWiFiDHCPDNS)
SRV - File not found [On_Demand] -- -- (msiserver)
SRV - File not found [On_Demand] -- -- (MSiSCSI)
SRV - File not found [On_Demand] -- -- (MSDTC)
SRV - File not found [Auto] -- -- (MpsSvc)
SRV - File not found [Auto] -- -- (MMCSS)
SRV - File not found [Auto] -- -- (lmhosts)
SRV - File not found [On_Demand] -- -- (lltdsvc)
SRV - File not found [Auto] -- -- (LENOVO.MICMUTE)
SRV - File not found [Auto] -- -- (LanmanWorkstation)
SRV - File not found [Auto] -- -- (LanmanServer)
SRV - File not found [Auto] -- -- (KtmRm)
SRV - File not found [On_Demand] -- -- (KeyIso)
SRV - File not found [Auto] -- -- (IviRegMgr)
SRV - File not found [On_Demand] -- -- (iPod Service)
SRV - File not found [Auto] -- -- (iphlpsvc)
SRV - File not found [On_Demand] -- -- (IPBusEnum)
SRV - File not found [Auto] -- -- (IKEEXT)
SRV - File not found [On_Demand] -- -- (idsvc)
SRV - File not found [On_Demand] -- -- (IDriverT)
SRV - File not found [Auto] -- -- (IBMPMSVC)
SRV - File not found [On_Demand] -- -- (hkmsvc)
SRV - File not found [Auto] -- -- (hidserv)
SRV - File not found [Auto] -- -- (gpsvc)
SRV - File not found [On_Demand] -- -- (fsssvc)
SRV - File not found [Auto] -- -- (FontCache3.0.0.0)
SRV - File not found [Auto] -- -- (FontCache)
SRV - File not found [On_Demand] -- -- (FirebirdServerDefaultInstance)
SRV - File not found [Auto] -- -- (FirebirdGuardianDefaultInstance)
SRV - File not found [Auto] -- -- (FDResPub)
SRV - File not found [On_Demand] -- -- (fdPHost)
SRV - File not found [On_Demand] -- -- (Fax)
SRV - File not found [Auto] -- -- (EvtEng)
SRV - File not found [Auto] -- -- (EventSystem)
SRV - File not found [Auto] -- -- (Eventlog)
SRV - File not found [Auto] -- -- (EMDMgmt)
SRV - File not found [On_Demand] -- -- (EapHost)
SRV - File not found [Auto] -- -- (dtsvc)
SRV - File not found [Auto] -- -- (DPS)
SRV - File not found [On_Demand] -- -- (dot3svc)
SRV - File not found [Auto] -- -- (Dnscache)
SRV - File not found [Auto] -- -- (Dhcp)
SRV - File not found [On_Demand] -- -- (DFSR)
SRV - File not found [Auto] -- -- (DDNIOEMService)
SRV - File not found [Auto] -- -- (DcomLaunch)
SRV - File not found [Auto] -- -- (CscService)
SRV - File not found [Auto] -- -- (CryptSvc)
SRV - File not found [On_Demand] -- -- (COMSysApp)
SRV - File not found [Auto] -- -- (clr_optimization_v4.0.30319_32)
SRV - File not found [Disabled] -- -- (clr_optimization_v2.0.50727_32)
SRV - File not found [On_Demand] -- -- (CertPropSvc)
SRV - File not found [Auto] -- -- (Browser)
SRV - File not found [Auto] -- -- (Bonjour Service)
SRV - File not found [Auto] -- -- (BITS)
SRV - File not found [Auto] -- -- (BFE)
SRV - File not found [Auto] -- -- (avast! Antivirus)
SRV - File not found [Auto] -- -- (Audiosrv)
SRV - File not found [Auto] -- -- (AudioEndpointBuilder)
SRV - File not found [Auto] -- -- (ATService)
SRV - File not found [Auto] -- -- (Ati External Event Utility)
SRV - File not found [On_Demand] -- -- (aspnet_state)
SRV - File not found [On_Demand] -- -- (AppMgmt)
SRV - File not found [Auto] -- -- (Apple Mobile Device)
SRV - File not found [On_Demand] -- -- (Appinfo)
SRV - File not found [On_Demand] -- -- (ALG)
SRV - File not found [Disabled] -- -- (Akamai)
SRV - File not found [Auto] -- -- (AeLookupSvc)
SRV - File not found [On_Demand] -- -- (ADMonitor)
SRV - File not found [Auto] -- -- (AcSvc)
SRV - File not found [Auto] -- -- (AcPrfMgrSvc)
SRV - File not found [On_Demand] -- -- (496336CA)
SRV - [2008/01/20 22:24:57 | 000,019,968 | ---- | M] (Microsoft Corporation) [Auto] -- E:\Windows\System32\seclogon.dll -- (seclogon)
SRV - [2008/01/20 22:23:57 | 000,243,712 | ---- | M] (Microsoft Corporation) [On_Demand] -- E:\Windows\System32\qwave.dll -- (QWAVE)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | Auto] -- -- (XAudio)
DRV - File not found [Kernel | On_Demand] -- -- (WUDFRd)
DRV - File not found [Kernel | On_Demand] -- -- (WpdUsb)
DRV - File not found [Kernel | On_Demand] -- -- (WmiAcpi)
DRV - File not found [Adapter | On_Demand] -- -- (Winsock)
DRV - File not found [Kernel | On_Demand] -- -- (winachsf)
DRV - File not found [File_System | On_Demand] -- -- (WimFltr)
DRV - File not found [Kernel | Boot] -- -- (Wdf01000)
DRV - File not found [Kernel | System] -- -- (Wanarpv6)
DRV - File not found [Kernel | On_Demand] -- -- (Wanarp)
DRV - File not found [Kernel | Boot] -- -- (volsnap)
DRV - File not found [Kernel | Boot] -- -- (volmgrx)
DRV - File not found [Kernel | Boot] -- -- (volmgr)
DRV - File not found [Kernel | On_Demand] -- -- (viaagp)
DRV - File not found [Kernel | System] -- -- (VgaSave)
DRV - File not found [Kernel | On_Demand] -- -- (vga)
DRV - File not found [Kernel | On_Demand] -- -- (utiynza4)
DRV - File not found [Kernel | On_Demand] -- -- (usbvideo) USB Video Device (WDM)
DRV - File not found [Kernel | On_Demand] -- -- (usbuhci)
DRV - File not found [Kernel | On_Demand] -- -- (USBSTOR)
DRV - File not found [Kernel | On_Demand] -- -- (usbscan)
DRV - File not found [Kernel | On_Demand] -- -- (usbprint)
DRV - File not found [Kernel | On_Demand] -- -- (USBIO) USBIO Driver (usbio.sys)
DRV - File not found [Kernel | On_Demand] -- -- (usbhub)
DRV - File not found [Kernel | On_Demand] -- -- (usbehci)
DRV - File not found [Kernel | On_Demand] -- -- (usbccgp)
DRV - File not found [Kernel | On_Demand] -- -- (USBAAPL)
DRV - File not found [Kernel | On_Demand] -- -- (umbus)
DRV - File not found [Kernel | On_Demand] -- -- (uliagpkx)
DRV - File not found [Kernel | On_Demand] -- -- (uagp35)
DRV - File not found [Kernel | System] -- -- (tvtumon)
DRV - File not found [Kernel | On_Demand] -- -- (TVTI2C)
DRV - File not found [File_System | Auto] -- -- (tvtfilter)
DRV - File not found [Kernel | On_Demand] -- -- (tunnel)
DRV - File not found [Kernel | On_Demand] -- -- (tunmp)
DRV - File not found [Kernel | On_Demand] -- -- (tssecsrv)
DRV - File not found [Kernel | System] -- -- (TPPWRIF)
DRV - File not found [Kernel | On_Demand] -- -- (TPM)
DRV - File not found [Kernel | Boot] -- -- (TPDIGIMN)
DRV - File not found [Kernel | System] -- -- (TermDD)
DRV - File not found [Kernel | System] -- -- (tdx)
DRV - File not found [Kernel | On_Demand] -- -- (TDTCP)
DRV - File not found [Kernel | On_Demand] -- -- (TDPIPE)
DRV - File not found [Kernel | Auto] -- -- (tcpipreg)
DRV - File not found [Kernel | On_Demand] -- -- (Tcpip6)
DRV - File not found [Kernel | Boot] -- -- (Tcpip)
DRV - File not found [Kernel | On_Demand] -- -- (SynTP)
DRV - File not found [Kernel | On_Demand] -- -- (swenum)
DRV - File not found [File_System | On_Demand] -- -- (srvnet)
DRV - File not found [File_System | On_Demand] -- -- (srv2)
DRV - File not found [File_System | On_Demand] -- -- (srv)
DRV - File not found [Kernel | Boot] -- -- (spldr)
DRV - File not found [Kernel | System] -- -- (Smb)
DRV - File not found [Kernel | On_Demand] -- -- (sisagp)
DRV - File not found [Kernel | Boot] -- -- (Shockprf)
DRV - File not found [Kernel | On_Demand] -- -- (sffp_sd)
DRV - File not found [Kernel | On_Demand] -- -- (sffp_mmc)
DRV - File not found [Kernel | On_Demand] -- -- (Serial)
DRV - File not found [Kernel | On_Demand] -- -- (Serenum)
DRV - File not found [Kernel | Auto] -- -- (secdrv)
DRV - File not found [Kernel | On_Demand] -- -- (s115obex)
DRV - File not found [Kernel | On_Demand] -- -- (s115mgmt) Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM)
DRV - File not found [Kernel | On_Demand] -- -- (s115mdm)
DRV - File not found [Kernel | On_Demand] -- -- (s115mdfl)
DRV - File not found [Kernel | On_Demand] -- -- (s115bus) Sony Ericsson Device 115 driver (WDM)
DRV - File not found [Kernel | Auto] -- -- (rspndr)
DRV - File not found [Kernel | On_Demand] -- -- (ROOTMODEM)
DRV - File not found [Kernel | On_Demand] -- -- (RimVSerPort)
DRV - File not found [Kernel | On_Demand] -- -- (RimUsb)
DRV - File not found [Kernel | On_Demand] -- -- (RDPWD)
DRV - File not found [Kernel | System] -- -- (RDPENCDD)
DRV - File not found [Kernel | On_Demand] -- -- (rdpdr)
DRV - File not found [Kernel | System] -- -- (RDPCDD)
DRV - File not found [File_System | System] -- -- (rdbss)
DRV - File not found [Kernel | On_Demand] -- -- (RasSstp)
DRV - File not found [Kernel | On_Demand] -- -- (RasPppoe)
DRV - File not found [Kernel | On_Demand] -- -- (Rasl2tp)
DRV - File not found [Kernel | System] -- -- (RasAcd)
DRV - File not found [Kernel | On_Demand] -- -- (QWAVEdrv)
DRV - File not found [Kernel | Boot] -- -- (PxHelp20)
DRV - File not found [Kernel | System] -- -- (PSched)
DRV - File not found [Kernel | On_Demand] -- -- (psadd)
DRV - File not found [Kernel | On_Demand] -- -- (PptpMiniport)
DRV - File not found [Kernel | Auto] -- -- (PEAUTH)
DRV - File not found [Kernel | Boot] -- -- (pcmcia)
DRV - File not found [Kernel | Boot] -- -- (pci)
DRV - File not found [Kernel | Auto] -- -- (Parvdm)
DRV - File not found [Kernel | Boot] -- -- (partmgr)
DRV - File not found [Kernel | On_Demand] -- -- (Parport)
DRV - File not found [Kernel | On_Demand] -- -- (ohci1394)
DRV - File not found [Kernel | On_Demand] -- -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand] -- -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand] -- -- (nv_agp)
DRV - File not found [Kernel | System] -- -- (Null)
DRV - File not found [Kernel | On_Demand] -- -- (NuidFltr)
DRV - File not found [File_System | On_Demand] -- -- (Ntfs)
DRV - File not found [Kernel | System] -- -- (nsiproxy)
DRV - File not found [File_System | System] -- -- (Npfs)
DRV - File not found [Kernel | On_Demand] -- -- (NETw5v32) Intel®
DRV - File not found [Kernel | System] -- -- (netbt)
DRV - File not found [File_System | System] -- -- (NetBIOS)
DRV - File not found [Kernel | On_Demand] -- -- (NDProxy)
DRV - File not found [Kernel | On_Demand] -- -- (NdisWan)
DRV - File not found [Kernel | On_Demand] -- -- (Ndisuio)
DRV - File not found [Kernel | On_Demand] -- -- (NdisTapi)
DRV - File not found [Kernel | Boot] -- -- (NDIS)
DRV - File not found [Kernel | On_Demand] -- -- (NativeWifiP)
DRV - File not found [Kernel | On_Demand] -- -- (MUXP)
DRV - File not found [Kernel | On_Demand] -- -- (MUXMP)
DRV - File not found [File_System | Boot] -- -- (Mup)
DRV - File not found [Kernel | On_Demand] -- -- (MSTEE)
DRV - File not found [Kernel | On_Demand] -- -- (mssmbios)
DRV - File not found [Kernel | On_Demand] -- -- (MsRPC)
DRV - File not found [Kernel | On_Demand] -- -- (MSPQM)
DRV - File not found [Kernel | On_Demand] -- -- (MSPCLOCK)
DRV - File not found [Kernel | On_Demand] -- -- (MSKSSRV)
DRV - File not found [Kernel | Boot] -- -- (msisadrv)
DRV - File not found [File_System | System] -- -- (Msfs)
DRV - File not found [Kernel | Boot] -- -- (msahci)
DRV - File not found [File_System | On_Demand] -- -- (mrxsmb20)
DRV - File not found [File_System | On_Demand] -- -- (mrxsmb10)
DRV - File not found [File_System | On_Demand] -- -- (mrxsmb)
DRV - File not found [File_System | On_Demand] -- -- (MRxDAV)
DRV - File not found [Kernel | On_Demand] -- -- (mpsdrv)
DRV - File not found [Kernel | Boot] -- -- (MountMgr)
DRV - File not found [Kernel | On_Demand] -- -- (mouhid)
DRV - File not found [Kernel | System] -- -- (mouclass)
DRV - File not found [Kernel | On_Demand] -- -- (monitor)
DRV - File not found [Kernel | On_Demand] -- -- (Modem)
DRV - File not found [Kernel | Auto] -- -- (mdmxsdk)
DRV - File not found [Kernel | On_Demand] -- -- (ManyCam)
DRV - File not found [File_System | Auto] -- -- (luafv)
DRV - File not found [Kernel | Auto] -- -- (lltdio)
DRV - File not found [Kernel | System] -- -- (lenovo.smi)
DRV - File not found [Kernel | Boot] -- -- (KSecDD)
DRV - File not found [Kernel | System] -- -- (kbdhid)
DRV - File not found [Kernel | System] -- -- (kbdclass)
DRV - File not found [Kernel | On_Demand] -- -- (iScsiPrt)
DRV - File not found [Kernel | On_Demand] -- -- (IRENUM)
DRV - File not found [Kernel | On_Demand] -- -- (IPNAT)
DRV - File not found [Kernel | On_Demand] -- -- (IpInIp)
DRV - File not found [Kernel | On_Demand] -- -- (IpFilterDriver)
DRV - File not found [Kernel | On_Demand] -- -- (intelppm)
DRV - File not found [Kernel | On_Demand] -- -- (intelkmd)
DRV - File not found [Kernel | On_Demand] -- -- (IBMPMDRV)
DRV - File not found [Kernel | Boot] -- -- (iaStor)
DRV - File not found [Kernel | System] -- -- (i8042prt)
DRV - File not found [Kernel | On_Demand] -- -- (HTTP)
DRV - File not found [Kernel | On_Demand] -- -- (HSXHWAZL)
DRV - File not found [Kernel | On_Demand] -- -- (HSFHWAZL)
DRV - File not found [Kernel | On_Demand] -- -- (HSF_DPV)
DRV - File not found [Kernel | On_Demand] -- -- (HidUsb)
DRV - File not found [Kernel | On_Demand] -- -- (HECI) Intel®
DRV - File not found [Kernel | On_Demand] -- -- (HDAudBus)
DRV - File not found [Kernel | On_Demand] -- -- (HdAudAddService)
DRV - File not found [Kernel | On_Demand] -- -- (GEARAspiWDM)
DRV - File not found [Kernel | On_Demand] -- -- (gagp30kx)
DRV - File not found [Kernel | On_Demand] -- -- (fssfltr)
DRV - File not found [Recognizer | System] -- -- (Fs_Rec)
DRV - File not found [File_System | Boot] -- -- (FltMgr)
DRV - File not found [File_System | On_Demand] -- -- (Filetrace)
DRV - File not found [File_System | Boot] -- -- (FileInfo)
DRV - File not found [File_System | On_Demand] -- -- (fastfat)
DRV - File not found [File_System | On_Demand] -- -- (exfat)
DRV - File not found [Kernel | Boot] -- -- (Ecache)
DRV - File not found [Kernel | On_Demand] -- -- (e1yexpress) Intel®
DRV - File not found [Kernel | On_Demand] -- -- (E1G60) Intel®
DRV - File not found [Kernel | On_Demand] -- -- (e1express) Intel®
DRV - File not found [Kernel | On_Demand] -- -- (DXGKrnl)
DRV - File not found [File_System | Auto] -- -- (DRVNDDM)
DRV - File not found [Kernel | Boot] -- -- (DRVMCDB)
DRV - File not found [Kernel | On_Demand] -- -- (drmkaud)
DRV - File not found [File_System | Auto] -- -- (DLAUDFAM)
DRV - File not found [File_System | Auto] -- -- (DLAUDF_M)
DRV - File not found [File_System | System] -- -- (DLARTL_M)
DRV - File not found [File_System | Auto] -- -- (DLAPoolM)
DRV - File not found [File_System | Auto] -- -- (DLAOPIOM)
DRV - File not found [File_System | Auto] -- -- (DLAIFS_M)
DRV - File not found [File_System | Auto] -- -- (DLADResM)
DRV - File not found [File_System | System] -- -- (DLACDBHM)
DRV - File not found [File_System | Auto] -- -- (DLABOIOM)
DRV - File not found [File_System | Auto] -- -- (DLABMFSM)
DRV - File not found [Kernel | Boot] -- -- (disk)
DRV - File not found [File_System | System] -- -- (DfsC)
DRV - File not found [Kernel | System] -- -- (CSC)
DRV - File not found [Kernel | Boot] -- -- (crcdisk)
DRV - File not found [Kernel | Boot] -- -- (Compbatt)
DRV - File not found [Kernel | On_Demand] -- -- (CnxtHdAudService)
DRV - File not found [Kernel | On_Demand] -- -- (CmBatt)
DRV - File not found [Kernel | Boot] -- -- (CLFS) Common Log (CLFS)
DRV - File not found [Kernel | System] -- -- (cdrom)
DRV - File not found [Kernel | On_Demand] -- -- (catchme)
DRV - File not found [Kernel | On_Demand] -- -- (BrUsbSer)
DRV - File not found [Kernel | On_Demand] -- -- (BrFiltUp)
DRV - File not found [Kernel | On_Demand] -- -- (BrFiltLo)
DRV - File not found [File_System | On_Demand] -- -- (bowser)
DRV - File not found [Kernel | System] -- -- (Beep)
DRV - File not found [Kernel | On_Demand] -- -- (ATSwpWDF)
DRV - File not found [Kernel | On_Demand] -- -- (atikmdag)
DRV - File not found [Kernel | Boot] -- -- (atapi)
DRV - File not found [Kernel | On_Demand] -- -- (AsyncMac)
DRV - File not found [Kernel | System] -- -- (aswTdi)
DRV - File not found [Kernel | System] -- -- (aswSP)
DRV - File not found [File_System | System] -- -- (aswSnx)
DRV - File not found [Kernel | System] -- -- (aswRdr)
DRV - File not found [File_System | Auto] -- -- (aswMonFlt)
DRV - File not found [File_System | Auto] -- -- (aswFsBlk)
DRV - File not found [Kernel | On_Demand] -- -- (amdkmdap)
DRV - File not found [Kernel | On_Demand] -- -- (amdkmdag)
DRV - File not found [Kernel | On_Demand] -- -- (amdagp)
DRV - File not found [Kernel | On_Demand] -- -- (agp440)
DRV - File not found [Kernel | System] -- -- (AFD)
DRV - File not found [Kernel | Boot] -- -- (ACPI)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\LENOVO_ON_E\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad [binary data]
IE - HKU\LENOVO_ON_E\Software\Microsoft\Internet Explorer\Main,Start Page = http://uk.search.yah...836,16939,0,8,0
IE - HKU\LENOVO_ON_E\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://uk.msn.com/?ocid=iehp
IE - HKU\LENOVO_ON_E\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb
IE - HKU\LENOVO_ON_E\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 31 CF 7A 26 E1 64 CC 01 [binary data]
IE - HKU\LENOVO_ON_E\Software\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\LENOVO_ON_E\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - File not found
IE - HKU\LENOVO_ON_E\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\LocalService_ON_E\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - File not found

IE - HKU\NetworkService_ON_E\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - File not found


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: File not found
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.666: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=:
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: File not found
FF - HKLM\Software\MozillaPlugins\@zylom.com/ZylomGamesPlayer: File not found
FF - HKCU\Software\MozillaPlugins\@nsroblox.roblox.com/launcher: File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: File not found
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: File not found
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: File not found

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files\Object\facetheme
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{FCF36B88-1BBA-487f-B64B-D2E8980A9293}: C:\Program Files\Lenovo\Client Security Solution\PWM Firefox Extension
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{EB132DB0-A4CA-11DF-9732-0E29E0D72085}: C:\Program Files\Object\facetheme


Hosts file not found
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - File not found
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - File not found
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - File not found
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - File not found
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - File not found
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - File not found
O2 - BHO: (IePasswordManagerHelper Class) - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - File not found
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - File not found
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - File not found
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - File not found
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - File not found
O3 - HKU\LENOVO_ON_E\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - File not found
O4 - HKLM..\Run: [ACTray] File not found
O4 - HKLM..\Run: [ACWlIcon] File not found
O4 - HKLM..\Run: [AppleSyncNotifier] File not found
O4 - HKLM..\Run: [avast] File not found
O4 - HKLM..\Run: [CreateLMBCShortCut] File not found
O4 - HKLM..\Run: [cssauth] File not found
O4 - HKLM..\Run: [EZEJMNAP] File not found
O4 - HKLM..\Run: [FingerPrintSoftware] File not found
O4 - HKLM..\Run: [HotKeysCmds] File not found
O4 - HKLM..\Run: [IgfxTray] File not found
O4 - HKLM..\Run: [iTunesHelper] File not found
O4 - HKLM..\Run: [LENOVO.TPFNF6R] File not found
O4 - HKLM..\Run: [LPMailChecker] File not found
O4 - HKLM..\Run: [LPManager] File not found
O4 - HKLM..\Run: [Message Center Plus] File not found
O4 - HKLM..\Run: [Persistence] File not found
O4 - HKLM..\Run: [PWMTRV] File not found
O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] File not found
O4 - HKLM..\Run: [StartCCC] File not found
O4 - HKLM..\Run: [SynTPEnh] File not found
O4 - HKLM..\Run: [TkBellExe] File not found
O4 - HKLM..\Run: [TPFNF7] File not found
O4 - HKLM..\Run: [TpShocks] File not found
O4 - HKLM..\Run: [TVT Scheduler Proxy] File not found
O4 - HKU\LENOVO_ON_E..\Run: [msnmsgr] File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\LENOVO_ON_E\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\LENOVO_ON_E\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\LocalService_ON_E\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\NetworkService_ON_E\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\systemprofile_ON_E\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - File not found
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - File not found
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - File not found
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - File not found
O9 - Extra 'Tools' menuitem : Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - File not found
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zon...kr.cab56986.cab (Checkers Class)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} http://catalog.updat...b?1303935397869 (MUCatalogWebControl Class)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (OnlineScanner Control)
O16 - DPF: {816BE035-1450-40D0-8A3B-BA7825A83A77} http://support.lenov...AutoDetect2.cab (IASRunner Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zon...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {C4B977A3-E8A2-37E9-ADCD-2597FAAC61F5} http://shop.lenovo.c...MachineInfo.cab (MachineInfoActiveX.MachineInfoActiveX)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {DAF7E6E6-D53A-439A-B28D-12271406B8A9} http://mobileapps.bl...re/AxLoader.cab (RIM AxLoader)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.168.4.100 194.168.8.100
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - File not found
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - File not found
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - File not found
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - File not found
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - File not found
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - File not found
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - File not found
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - File not found
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - File not found
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - File not found
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - File not found
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - File not found
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - File not found
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - File not found
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - File not found
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - File not found
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - File not found
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - File not found
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - File not found
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - File not found
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - File not found
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O29 - HKLM SecurityProviders - (credssp.dll) - File not found
O30 - LSA: Authentication Packages - (msv1_0) - File not found
O30 - LSA: Security Packages - (kerberos) - File not found
O30 - LSA: Security Packages - (msv1_0) - File not found
O30 - LSA: Security Packages - (schannel) - File not found
O30 - LSA: Security Packages - (wdigest) - File not found
O30 - LSA: Security Packages - (tspkg) - File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/03/10 21:45:28 | 000,000,016 | -H-- | M] () - D:\AUTORUN.INF -- [ FAT32 ]
O32 - AutoRun File - [2006/09/18 17:43:36 | 000,000,024 | ---- | M] () - E:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: AeLookupSvc - File not found
NetSvcs: wercplsupport - File not found
NetSvcs: Themes - File not found
NetSvcs: CertPropSvc - File not found
NetSvcs: SCPolicySvc - File not found
NetSvcs: lanmanserver - File not found
NetSvcs: gpsvc - File not found
NetSvcs: IKEEXT - File not found
NetSvcs: AudioSrv - File not found
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Irmon - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Rasauto - File not found
NetSvcs: Rasman - File not found
NetSvcs: Remoteaccess - File not found
NetSvcs: SENS - File not found
NetSvcs: Sharedaccess - File not found
NetSvcs: SRService - File not found
NetSvcs: Tapisrv - File not found
NetSvcs: Wmi - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: TermService - File not found
NetSvcs: wuauserv - File not found
NetSvcs: BITS - File not found
NetSvcs: ShellHWDetection - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
NetSvcs: iphlpsvc - File not found
NetSvcs: seclogon - E:\Windows\System32\seclogon.dll (Microsoft Corporation)
NetSvcs: AppInfo - File not found
NetSvcs: msiscsi - File not found
NetSvcs: MMCSS - File not found
NetSvcs: ProfSvc - File not found
NetSvcs: EapHost - File not found
NetSvcs: winmgmt - File not found
NetSvcs: schedule - File not found
NetSvcs: SessionEnv - File not found
NetSvcs: browser - File not found
NetSvcs: hkmsvc - File not found
NetSvcs: AppMgmt - File not found

MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^ShortKeys 2.lnk - - File not found
MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^ShortKeys 3.lnk - - File not found
MsConfig - StartUpReg: iTunesHelper - hkey= - key= - File not found
MsConfig - StartUpReg: QuickTime Task - hkey= - key= - File not found
MsConfig - StartUpReg: RIMBBLaunchAgent.exe - hkey= - key= - File not found
MsConfig - StartUpReg: Steam - hkey= - key= - File not found
MsConfig - StartUpReg: TkBellExe - hkey= - key= - File not found
MsConfig - State: "services" - 2
MsConfig - State: "startup" - 2

SafeBootMin: AppInfo - File not found
SafeBootMin: AppMgmt - File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: CryptSvc - File not found
SafeBootMin: DcomLaunch - File not found
SafeBootMin: EventLog - File not found
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: KeyIso - File not found
SafeBootMin: Netlogon - File not found
SafeBootMin: NTDS - File not found
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PlugPlay - File not found
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: ProfSvc - File not found
SafeBootMin: RpcSs - File not found
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - File not found
SafeBootMin: SWPRV - File not found
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: TabletInputService - File not found
SafeBootMin: TBS - File not found
SafeBootMin: TrustedInstaller - File not found
SafeBootMin: VDS - File not found
SafeBootMin: vga.sys - File not found
SafeBootMin: vgasave.sys - File not found
SafeBootMin: volmgr.sys - File not found
SafeBootMin: volmgrx.sys - File not found
SafeBootMin: WinDefend - File not found
SafeBootMin: WinMgmt - File not found
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet: AFD - File not found
SafeBootNet: AppInfo - File not found
SafeBootNet: AppMgmt - File not found
SafeBootNet: Base - Driver Group
SafeBootNet: BFE - File not found
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: bowser - File not found
SafeBootNet: Browser - File not found
SafeBootNet: CryptSvc - File not found
SafeBootNet: DcomLaunch - File not found
SafeBootNet: dfsc - File not found
SafeBootNet: Dhcp - File not found
SafeBootNet: DnsCache - File not found
SafeBootNet: Dot3Svc - File not found
SafeBootNet: Eaphost - File not found
SafeBootNet: EventLog - File not found
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: IKEEXT - File not found
SafeBootNet: ipnat.sys - File not found
SafeBootNet: KeyIso - File not found
SafeBootNet: LanmanServer - File not found
SafeBootNet: LanmanWorkstation - File not found
SafeBootNet: LmHosts - File not found
SafeBootNet: Messenger - Service
SafeBootNet: MPSDrv - File not found
SafeBootNet: MPSSvc - File not found
SafeBootNet: mrxsmb - File not found
SafeBootNet: mrxsmb10 - File not found
SafeBootNet: mrxsmb20 - File not found
SafeBootNet: NativeWifiP - File not found
SafeBootNet: NDIS - File not found
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: Ndisuio - File not found
SafeBootNet: NetBIOS - File not found
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetBT - File not found
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Netlogon - File not found
SafeBootNet: NetMan - File not found
SafeBootNet: netprofm - File not found
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: NlaSvc - File not found
SafeBootNet: Nsi - File not found
SafeBootNet: nsiproxy.sys - File not found
SafeBootNet: NTDS - File not found
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PlugPlay - File not found
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: PolicyAgent - File not found
SafeBootNet: Primary disk - Driver Group
SafeBootNet: ProfSvc - File not found
SafeBootNet: rdbss - File not found
SafeBootNet: rdpencdd.sys - File not found
SafeBootNet: rdsessmgr - Service
SafeBootNet: RpcSs - File not found
SafeBootNet: sacsvr - Service
SafeBootNet: SCardSvr - File not found
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - File not found
SafeBootNet: SharedAccess - File not found
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: SWPRV - File not found
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TabletInputService - File not found
SafeBootNet: TBS - File not found
SafeBootNet: Tcpip - File not found
SafeBootNet: TDI - Driver Group
SafeBootNet: TrustedInstaller - File not found
SafeBootNet: VDS - File not found
SafeBootNet: vga.sys - File not found
SafeBootNet: vgasave.sys - File not found
SafeBootNet: volmgr.sys - File not found
SafeBootNet: volmgrx.sys - File not found
SafeBootNet: WinDefend - File not found
SafeBootNet: WinMgmt - File not found
SafeBootNet: Wlansvc - File not found
SafeBootNet: WudfPf - Driver
SafeBootNet: WudfRd - File not found
SafeBootNet: WudfSvc - File not found
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {166B1BCA-3F9C-11CF-8075-444553540000} - Macromedia Shockwave Director 8.0
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} -
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 11.0
ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Macromedia Shockwave Director 8.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} -
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.8
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP

Drivers32: aux - wdmaud.drv File not found
Drivers32: midi - wdmaud.drv File not found
Drivers32: midimapper - midimap.dll File not found
Drivers32: mixer - wdmaud.drv File not found
Drivers32: msacm.imaadpcm - imaadp32.acm File not found
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm File not found
Drivers32: msacm.msadpcm - msadp32.acm File not found
Drivers32: msacm.msg711 - msg711.acm File not found
Drivers32: msacm.msgsm610 - msgsm32.acm File not found
Drivers32: msacm.siren - sirenacm.dll File not found
Drivers32: MSVideo8 - VfWWDM32.dll File not found
Drivers32: vidc.cvid - iccvid.dll File not found
Drivers32: vidc.i420 - iyuv_32.dll File not found
Drivers32: VIDC.IYUV - iyuv_32.dll File not found
Drivers32: vidc.mrle - msrle32.dll File not found
Drivers32: vidc.msvc - msvidc32.dll File not found
Drivers32: VIDC.UYVY - msyuv.dll File not found
Drivers32: VIDC.X264 - x264vfw.dll File not found
Drivers32: VIDC.YUY2 - msyuv.dll File not found
Drivers32: VIDC.YVU9 - tsbyuv.dll File not found
Drivers32: VIDC.YVYU - msyuv.dll File not found
Drivers32: wave - wdmaud.drv File not found
Drivers32: wavemapper - msacm32.drv File not found

========== Files/Folders - Created Within 30 Days ==========


========== Files - Modified Within 30 Days ==========

[2011/08/26 03:21:28 | 000,032,768 | ---- | M] () -- C:\bcd_backup

========== Files Created - No Company Name ==========

[2011/08/26 03:21:27 | 000,032,768 | ---- | C] () -- C:\bcd_backup

========== LOP Check ==========


========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.exe >
[2008/07/29 18:37:58 | 000,180,224 | -HS- | M] () -- C:\LenovoSDrive.exe

< %SYSTEMDRIVE%\*.exe >
[2008/07/29 18:37:58 | 000,180,224 | -HS- | M] () -- C:\LenovoSDrive.exe

Invalid Environment Variable: %ALLUSERSPROFILE%\Application Data\*.exe

Invalid Environment Variable: %APPDATA%\*.


< %systemroot%\*. /mp /s >

< hklm\software\clients\startmenuinternet|command /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\Windows\system32\ie4uinit.exe" -hide
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\Windows\system32\ie4uinit.exe" -show
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\Windows\system32\ie4uinit.exe" -reinstall
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files\Internet Explorer\IEXPLORE.EXE"

< hklm\software\clients\startmenuinternet|command /64 /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files\Mozilla Firefox\firefox.exe
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -preferences
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\Windows\system32\ie4uinit.exe" -hide
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\Windows\system32\ie4uinit.exe" -show
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\Windows\system32\ie4uinit.exe" -reinstall
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: "C:\Program Files\Internet Explorer\IEXPLORE.EXE"

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< CREATERESTOREPOINT >
< End of report >
  • 0

#188
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
The computer does get quite hot although there is no sounds
  • 0

#189
michaelg9

michaelg9

    Trusted Helper

  • Malware Removal
  • 2,949 posts
You are still choosing the wrong drive. If you have chosen preload, then that's not the correct drive. Drive letters switch, so this time the correct one was E:

Drive E: | 126.10 Gb Total Space | 31.67 Gb Free Space | 25.12% Space Free | Partition Type: NTFS

You need to boot from the CD, open My Computer.
Check all the drives' properties and see which one has 126.10 Gb Total Space. Then this one is the one we need to scan. Write down its letter
Open OTLPE from the Desktop, and when it asks you which windows installation, click on the drive you have written down. It will expand and some folders will be displayed, you need to click the folder named Windows.
Then click OK and run the scan as previously mentioned
  • 0

#190
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
Somethings wrong the drive I'm clicking is the only drive that has a windows file in that I can scan I don't make mistakes twice
  • 0

Advertisements


#191
michaelg9

michaelg9

    Trusted Helper

  • Malware Removal
  • 2,949 posts
Hello
Boot into safe mode. Instructions here

  • Double-click My Computer, and then right-click the hard disk that you want to check. C:
  • Click Properties, and then click Tools.
  • Under Error-checking, click Check Now. A dialog box that shows the Check disk options is displayed
  • Check both boxes and then click Start.
    You will receive the following message:
    The disk check could not be performed because the disk check utility needs exclusive access to some Windows files on the disk. These files can be accessed by restarting Windows. Do you want to schedule the disk check to occur the next time you restart the computer?
  • Click Yes to schedule the disk check, but don't restart yet.


Next:

Right click on (My) Computer and select Manage (Continue) Then the Event Viewer. Next select Windows Logs. Right click on System and Clear Log, Clear. Repeat for Application. Reboot. The disk check will run and will probably take an hour or more to finish.

Next:

Click Start, click All Programs, click Accessories, right-click Command Prompt, and then click Run as administrator.
In the command prompt type:

sfc /scannow

Let it scan and fix anything it finds


Next:
  • Please download the Event Viewer Tool by Vino Rosso and save it to your Desktop. If you don't have internet access you can download it from a clean computer to a USB drive and then transfer it to the infected one.
  • Right-click VEW.exe and Run AS Administrator
  • Under 'Select log to query', select:
    System
  • Under 'Select type to list', select:
    Error
    Warning
  • Then use the 'Number of events' as follows:
  • Click the radio button for 'Number of events'
  • Type 20 in the 1 to 20 box
  • Then click the Run button.
  • Notepad will open with the output log.
  • Please post the Output log in your next reply then repeat but select Application.


Next:

Try to run another OTS scan again from safe mode:
Open OTS.exe from the tools folder
  • Make sure you close all other programs and don't use the PC while the scan runs.
  • Now click the Run Scan button on the toolbar. Make sure not to use the PC while the program is running or it will freeze.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.
Use the Add Reply button and post the information back here in an attachment. I will review it when it comes in. The last line is < End of Report >, so make sure that is the last line in the attached report.


Make sure you attach the report in your reply. If it is too big to upload, then zip the text file and upload it that way


If it crashes again, close it and open OTS again. Follow the same instructions but under Modules select None




Next:

Restart and let chkdsk scan your drive
  • 0

#192
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
CHDSK runs every time i boot anyway it ran when i booted this morning do you still want me to run it?
  • 0

#193
michaelg9

michaelg9

    Trusted Helper

  • Malware Removal
  • 2,949 posts
Yes
  • 0

#194
Bismillah

Bismillah

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 514 posts
I will get on to this but at the moment im experiencing internet issues (my router is failing)
If i dont post for a few days i havent left you :)
  • 0

#195
michaelg9

michaelg9

    Trusted Helper

  • Malware Removal
  • 2,949 posts
OK
Take your time :)
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP