Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

CPU goes to 100% when youtube video is played


  • This topic is locked This topic is locked

#1
Quad22*

Quad22*

    New Member

  • Member
  • Pip
  • 2 posts
I am experiencing problems when trying to play videos on youtube (and also on the tuturial video about malware removal on Geeks to Go). The symptoms are glitching of sound and video. When I check windows task manager it shows 100%CPU utilisation. I have updated to the latest version of flash player to try and ensure that this was not the problem. It may aso be worth noting that in have not yet installed SP3.

Additionaly, the other symptom seems to be an intermittant problem of SVCHOST also using 100% of my CPU. This seems to happen when I have switched my firewall (Sygate personal firewall) to "block all" and left the PC idle for a while.

Any help greafully received-Thanks

Attached OTL log below:

OTL logfile created on: 16/08/2011 19:44:52 - Run 3
OTL by OldTimer - Version 3.2.26.4 Folder = C:\Documents and Settings\Alan\Desktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18372)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

1.49 Gb Total Physical Memory | 0.77 Gb Available Physical Memory | 51.37% Memory free
2.84 Gb Paging File | 2.27 Gb Available in Paging File | 79.99% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.26 Gb Total Space | 18.85 Gb Free Space | 50.58% Space Free | Partition Type: NTFS
Drive F: | 298.09 Gb Total Space | 232.10 Gb Free Space | 77.86% Space Free | Partition Type: NTFS

Computer Name: JOALAN1 | User Name: Alan | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/08/16 17:21:08 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Alan\Desktop\OTL.exe
PRC - [2011/07/20 09:40:28 | 000,671,552 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
PRC - [2011/07/20 09:38:36 | 001,526,592 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
PRC - [2011/06/14 20:08:06 | 000,399,320 | ---- | M] (TomTom) -- C:\Program Files\MyTomTom 3\MyTomTomSA.exe
PRC - [2011/04/18 17:40:08 | 002,334,560 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgtray.exe
PRC - [2011/04/18 17:39:42 | 007,398,752 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2011/04/14 05:36:42 | 001,080,672 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgnsx.exe
PRC - [2011/03/28 03:00:52 | 000,351,072 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgcsrvx.exe
PRC - [2011/03/16 16:05:20 | 001,025,888 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgemcx.exe
PRC - [2011/03/16 16:05:14 | 000,656,736 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgchsvx.exe
PRC - [2011/02/10 07:55:18 | 001,148,256 | ---- | M] () -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2011/02/08 05:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgwdsvc.exe
PRC - [2011/02/08 05:33:20 | 000,658,784 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgrsx.exe
PRC - [2009/09/28 10:42:50 | 000,109,056 | ---- | M] (ArcSoft Inc.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2008/05/26 16:20:50 | 000,585,728 | ---- | M] (Affinegy, Inc.) -- C:\Program Files\Virgin Broadband Wireless\Wireless Manager.exe
PRC - [2008/05/26 16:14:56 | 000,143,360 | ---- | M] (Affinegy, Inc.) -- C:\Program Files\Virgin Broadband Wireless\AffinegyService.exe
PRC - [2008/05/26 16:09:24 | 000,044,032 | ---- | M] () -- C:\Program Files\Virgin Broadband Wireless\ndis_events.exe
PRC - [2008/05/26 16:07:16 | 000,086,016 | ---- | M] (CACE Technologies) -- C:\Program Files\WinPcap\rpcapd.exe
PRC - [2007/06/15 13:57:42 | 000,145,504 | ---- | M] (B.H.A Corporation) -- C:\WINDOWS\system32\bgsvcgen.exe
PRC - [2004/12/29 16:33:16 | 000,039,936 | ---- | M] (C-Dilla Ltd) -- C:\WINDOWS\system32\drivers\CDAC11BA.EXE
PRC - [2004/11/21 16:00:00 | 000,061,908 | ---- | M] (CANON INC.) -- C:\WINDOWS\system32\CAP3RSK.EXE
PRC - [2004/06/30 16:56:28 | 002,376,928 | ---- | M] (Sygate Technologies, Inc.) -- C:\Program Files\Sygate\SPF\Smc.exe
PRC - [2002/08/20 10:29:26 | 000,040,960 | ---- | M] (Easy Systems Japan Ltd.) -- C:\WINDOWS\system32\ezSP_Px.exe
PRC - [2002/07/18 16:00:00 | 000,136,704 | ---- | M] (CANON INC.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP3SWK.EXE
PRC - [2002/05/24 13:54:02 | 000,357,376 | ---- | M] () -- C:\Program Files\Tech\Wheel Mouse\5.3\Mouse32A.exe


========== Modules (No Company Name) ==========

MOD - [2011/07/26 10:15:58 | 002,532,680 | ---- | M] () -- C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll
MOD - [2011/06/14 20:08:10 | 000,183,256 | ---- | M] () -- C:\Program Files\MyTomTom 3\TomTomSupporterProxy.dll
MOD - [2011/06/14 20:08:08 | 000,060,888 | ---- | M] () -- C:\Program Files\MyTomTom 3\TomTomSupporterBase.dll
MOD - [2011/06/14 20:07:58 | 000,039,424 | ---- | M] () -- C:\Program Files\MyTomTom 3\TomTomPackage.dll
MOD - [2011/06/14 20:07:56 | 007,964,160 | ---- | M] () -- C:\Program Files\MyTomTom 3\QtGui4.dll
MOD - [2011/06/14 20:07:56 | 002,648,064 | ---- | M] () -- C:\Program Files\MyTomTom 3\QtXmlPatterns4.dll
MOD - [2011/06/14 20:07:56 | 002,302,464 | ---- | M] () -- C:\Program Files\MyTomTom 3\QtCore4.dll
MOD - [2011/06/14 20:07:56 | 000,980,480 | ---- | M] () -- C:\Program Files\MyTomTom 3\QtNetwork4.dll
MOD - [2011/06/14 20:07:56 | 000,357,888 | ---- | M] () -- C:\Program Files\MyTomTom 3\QtXml4.dll
MOD - [2011/02/10 07:55:18 | 001,148,256 | ---- | M] () -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
MOD - [2008/05/26 16:14:58 | 000,011,776 | ---- | M] () -- C:\Program Files\Virgin Broadband Wireless\AffinegyServicePS.dll
MOD - [2008/05/26 16:09:24 | 000,044,032 | ---- | M] () -- C:\Program Files\Virgin Broadband Wireless\ndis_events.exe
MOD - [2008/05/26 16:07:16 | 000,053,299 | ---- | M] () -- C:\WINDOWS\system32\pthreadVC.dll
MOD - [2002/07/04 10:38:00 | 000,053,248 | ---- | M] () -- C:\Program Files\ArcSoft\PhotoImpression 5\Share\PIHook.dll
MOD - [2002/05/24 13:54:02 | 000,357,376 | ---- | M] () -- C:\Program Files\Tech\Wheel Mouse\5.3\Mouse32A.exe
MOD - [2002/05/02 01:10:46 | 000,073,728 | ---- | M] () -- C:\Program Files\Tech\Wheel Mouse\5.3\MOUDL32A.dll
MOD - [1998/10/17 07:00:00 | 000,033,792 | ---- | M] () -- C:\Program Files\WinZip\WZSHLEXT.DLL


========== Win32 Services (SafeList) ==========

SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/07/26 10:16:02 | 001,025,352 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe -- (AVG Security Toolbar Service)
SRV - [2011/07/20 09:38:36 | 001,526,592 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc)
SRV - [2011/07/20 09:35:34 | 000,029,504 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\WINDOWS\system32\uxtuneup.dll -- (UxTuneUp)
SRV - [2011/04/18 17:39:42 | 007,398,752 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/02/08 05:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010/09/01 16:52:56 | 000,066,112 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus®
SRV - [2009/09/28 10:42:50 | 000,109,056 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2008/05/26 16:14:56 | 000,143,360 | ---- | M] (Affinegy, Inc.) [Auto | Running] -- C:\Program Files\Virgin Broadband Wireless\AffinegyService.exe -- (AffinegyService)
SRV - [2008/05/26 16:07:16 | 000,086,016 | ---- | M] (CACE Technologies) [Auto | Running] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2007/06/15 13:57:42 | 000,145,504 | ---- | M] (B.H.A Corporation) [Auto | Running] -- C:\WINDOWS\System32\bgsvcgen.exe -- (bgsvcgen)
SRV - [2004/12/29 16:33:16 | 000,039,936 | ---- | M] (C-Dilla Ltd) [Auto | Running] -- C:\WINDOWS\system32\drivers\CDAC11BA.EXE -- (C-DillaCdaC11BA)
SRV - [2004/06/30 16:56:28 | 002,376,928 | ---- | M] (Sygate Technologies, Inc.) [Auto | Running] -- C:\Program Files\Sygate\SPF\Smc.exe -- (SmcService)
SRV - [2002/09/27 12:56:20 | 000,139,264 | ---- | M] (Intel® Corporation) [On_Demand | Stopped] -- c:\Program Files\Intel\NCS\Sync\NetSvc.exe -- (NetSvc)


========== Driver Services (SafeList) ==========

DRV - [2011/07/06 19:52:42 | 000,041,272 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2011/06/06 17:07:20 | 000,010,064 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv)
DRV - [2011/04/14 21:28:42 | 000,134,480 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2011/04/05 00:59:56 | 000,297,168 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2011/03/16 16:03:20 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2011/03/01 14:25:18 | 000,034,896 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2011/02/22 08:13:02 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2011/02/10 07:53:54 | 000,027,216 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2011/02/10 07:53:52 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2011/01/07 06:41:46 | 000,248,656 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2008/05/26 16:09:42 | 000,027,072 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AFGSp50.sys -- (AFGSp50)
DRV - [2008/05/26 16:07:16 | 000,032,512 | ---- | M] (CACE Technologies) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF)
DRV - [2006/05/01 17:34:40 | 000,169,086 | R--- | M] (Roland Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rdwm1006.sys -- (RD1006)
DRV - [2006/02/20 20:17:40 | 000,033,408 | ---- | M] (B.H.A Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\cdrbsdrv.sys -- (cdrbsdrv)
DRV - [2005/02/23 15:58:56 | 000,011,776 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afc.sys -- (Afc)
DRV - [2005/01/03 11:55:42 | 000,008,864 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\CDAC15BA.SYS -- (CdaC15BA)
DRV - [2004/06/30 15:06:14 | 000,014,320 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg6n.sys -- (wg6n)
DRV - [2004/06/30 15:06:14 | 000,014,320 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg5n.sys -- (wg5n)
DRV - [2004/06/30 15:06:14 | 000,014,320 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg4n.sys -- (wg4n)
DRV - [2004/06/30 15:06:12 | 000,014,320 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg3n.sys -- (wg3n)
DRV - [2004/06/30 14:51:48 | 000,021,075 | ---- | M] (Sygate Technologies, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\wpsdrvnt.sys -- (wpsdrvnt)
DRV - [2004/06/30 14:49:56 | 000,059,472 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\SYSTEM32\Drivers\Teefer.sys -- (Teefer)
DRV - [2004/03/09 16:39:41 | 000,008,552 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\asctrm.sys -- (ASCTRM)
DRV - [2004/01/10 08:17:02 | 000,601,100 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2003/12/12 08:54:14 | 000,391,424 | ---- | M] (Sensaura Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS)
DRV - [2003/12/11 10:57:32 | 000,009,600 | R--- | M] (Cygnal Integrated Products) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CygF32x.sys -- (CYGF32X)
DRV - [2003/12/05 02:46:00 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc)
DRV - [2002/07/17 08:05:10 | 000,016,512 | R--- | M] (Adaptec) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aspi32.sys -- (Aspi32)
DRV - [2002/04/11 16:21:38 | 000,013,335 | R--- | M] (Microsystems Corp) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbcm.sys -- (usbcm)
DRV - [2002/02/13 19:27:30 | 000,166,419 | ---- | M] (Conexant Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSFHWBS2.sys -- (HSFHWBS2)
DRV - [2002/02/13 19:26:54 | 001,171,584 | ---- | M] (Conexant Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_DP.sys -- (HSF_DP)
DRV - [2002/02/13 19:20:46 | 000,594,032 | ---- | M] (Conexant Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys -- (winachsf)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.c...ects/search.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://signin.ebay....K&pageType=1883
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/defaulta.aspx
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 10 C6 F8 AB 6B 8F C9 01 [binary data]
IE - HKCU\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "AVG Secure Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.pennymach...php?f=9&t=1952"
FF - prefs.js..extensions.enabledItems: [email protected]:7.005.030.004
FF - prefs.js..extensions.enabledItems: {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1390
FF - prefs.js..keyword.URL: "http://search.avg.co...k&lng=en-GB&q="
FF - prefs.js..network.proxy.type: 4


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60129.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nosltd.com/getPlus+®,version=1.6.2.91: C:\Program Files\NOS\bin\np_gp.dll (NOS Microsystems Ltd.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{1d5287d1-8a92-0001-1f31-1cec198018d8}: C:\Program Files\AVG\AVG8\ToolbarFF
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\[email protected]: C:\Program Files\AVG\AVG10\Toolbar\Firefox\[email protected] [2011/08/13 07:18:20 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG10\Firefox4\ [2011/08/11 18:35:09 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0b7\extensions\\Components: C:\Program Files\Mozilla Firefox 4.0 Beta 7\components [2010/11/29 14:02:22 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/07/16 09:43:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/07/16 09:43:26 | 000,000,000 | ---D | M]

[2009/02/28 10:50:31 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Extensions
[2011/06/23 20:43:29 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\zwgcpd56.default\extensions
[2010/10/31 13:12:09 | 000,000,000 | ---D | M] (IE Tab 2 (FF 3.6+)) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\zwgcpd56.default\extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB}(2)
[2010/11/29 14:02:57 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\zwgcpd56.default\extensions\nostmp
[2011/06/23 20:12:22 | 000,002,233 | ---- | M] () -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\zwgcpd56.default\searchplugins\alot-search.xml
[2010/10/31 13:30:40 | 000,005,471 | ---- | M] () -- C:\Documents and Settings\Alan\Application Data\Mozilla\Firefox\Profiles\zwgcpd56.default\searchplugins\googlecom-in-english.xml
[2011/07/16 09:43:37 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/10/25 13:08:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions(2)
[2010/10/23 11:21:23 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions(2)\{972ce4c6-7e08-4474-a285-3208198ce6fd}(2)
File not found (No name found) --
[2011/08/11 18:35:09 | 000,000,000 | ---D | M] (AVG Safe Search) -- C:\PROGRAM FILES\AVG\AVG10\FIREFOX4
[2011/08/13 07:18:20 | 000,000,000 | ---D | M] ("urn:mozilla:install-manifest" em:id="[email protected]" em:name="AVG Security Toolbar" em:version="7.007.026.001" em:displayname="AVG Security Toolbar" em:iconURL="chrome://tavgp/skin/logo.ico" em:creator="AVG Technologies" em:description="AVG Security Toolbar" em:homepageURL="http://www.avg.com" >) -- C:\PROGRAM FILES\AVG\AVG10\TOOLBAR\FIREFOX\[email protected]
[2011/07/08 08:31:28 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2010/01/01 09:00:00 | 000,001,538 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml
[2010/01/01 09:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2010/01/01 09:00:00 | 000,000,947 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml
[2010/01/01 09:00:00 | 000,001,180 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml
[2010/01/01 09:00:00 | 000,001,135 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml

Hosts file not found
O2 - BHO: (ALOT Toolbar Helper) - {14CEEAFF-96DD-4101-AE37-D5ECDC23C3F6} - C:\Program Files\alot\bin\BHO\alotBHO.dll (Vertro)
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:\Program Files\Microsoft Money\System\mnyside.dll (Microsoft Corporation)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
O3 - HKLM\..\Toolbar: (ALOT Toolbar) - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - C:\Program Files\alot\bin\alot.dll (Vertro)
O3 - HKLM\..\Toolbar: (no name) - {8B79EE88-E62D-4AA8-B530-CC357BA112B7} - No CLSID value found.
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {4E7BD74F-2B8D-469E-84BA-B830E8D4E122} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {55FAF0F2-44D4-425F-B5F5-6B275B621EAB} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {8B79EE88-E62D-4AA8-B530-CC357BA112B7} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [CAP3ON] C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP3ONN.EXE (CANON INC.)
O4 - HKLM..\Run: [ezShieldProtector for Px] C:\WINDOWS\system32\ezSP_Px.exe (Easy Systems Japan Ltd.)
O4 - HKLM..\Run: [LWBMOUSE] C:\Program Files\Tech\Wheel Mouse\5.3\Mouse32A.exe ()
O4 - HKLM..\Run: [SmcService] C:\Program Files\Sygate\SPF\Smc.exe (Sygate Technologies, Inc.)
O4 - HKLM..\Run: [UserFaultCheck] File not found
O4 - HKLM..\Run: [Wireless Manager] C:\Program Files\Virgin Broadband Wireless\Wireless Manager.exe (Affinegy, Inc.)
O4 - HKCU..\Run: [MyTomTomSA.exe] C:\Program Files\MyTomTom 3\MyTomTomSA.exe (TomTom)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll (Google Inc.)
O9 - Extra Button: Money Viewer - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll (Microsoft Corporation)
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (Intertrust Technologies, Inc.)
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} http://www.expertage...asp/ScriptX.cab (MeadCo ScriptX)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {1B735B98-8010-11D5-AD0B-00500463D885} http://www.partsaren...IMIESRCHie7.cab (SearchCD Control)
O16 - DPF: {36C17E9B-3354-11D1-95CF-0000B4530F04} http://www.partsaren...ins/GFXVIEW.cab (GrafixViewControl)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://www.update.mi...b?1210889631125 (WUWebControl Class)
O16 - DPF: {FD0EBBED-0C42-4D0F-82DA-44399B5C420A} http://downloads.vir...er1/xp_mail.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file:///C:/WINDOWS/Java/classes/xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.168.4.100 194.168.8.100
O18 - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2004/03/09 16:05:54 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{240e0228-9917-11d8-a4f7-806d6172696f}\Shell\PlayWithPowerDVD\Command - "" = C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe -- [2003/07/29 19:41:58 | 000,409,600 | ---- | M] (CyberLink Corp.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/08/16 17:21:08 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Alan\Desktop\OTL.exe
[2011/08/16 17:08:36 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Alan\My Documents\OTL.exe
[2011/08/11 20:32:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Alan\Recent
[2011/08/11 18:37:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\TuneUp Utilities 2011
[2011/08/11 18:36:52 | 000,000,000 | ---D | C] -- C:\Program Files\TuneUp Utilities 2011
[2011/08/11 18:33:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\QuickTime
[2011/08/11 18:32:11 | 000,000,000 | ---D | C] -- C:\Program Files\Real
[2011/08/11 18:32:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Real
[2011/08/11 18:32:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Virgin Broadband Wireless
[2011/08/11 18:32:01 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
[2011/08/11 18:31:55 | 000,000,000 | ---D | C] -- C:\Program Files\Virgin Broadband Wireless
[2011/08/11 18:31:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Affinegy
[2011/07/23 22:58:57 | 000,029,504 | ---- | C] (TuneUp Software) -- C:\WINDOWS\System32\uxtuneup.dll
[2011/07/23 22:51:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\TuneUp Software
[2011/07/18 10:08:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Alan\Desktop\Holiday cottage in Tuckenhay, South Hams with 3.5 stars, sleeps 3_files
[2009/02/02 12:22:53 | 028,868,320 | ---- | C] (Microsoft Corporation) -- C:\Program Files\FileFormatConverters.exe
[2007/09/24 19:54:31 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Alan\Application Data\pcouffin.sys
[2006/05/08 18:27:42 | 024,543,232 | ---- | C] (Native Instruments Software Synthesis GmbH) -- C:\Program Files\GuitarRig 2.exe
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/08/16 18:57:03 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/08/16 18:57:02 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/08/16 17:21:08 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Alan\Desktop\OTL.exe
[2011/08/16 17:08:37 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Alan\My Documents\OTL.exe
[2011/08/16 17:03:59 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Alan\Local Settings\Application Data\prvlcl.dat
[2011/08/16 16:57:21 | 128,246,709 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/08/16 16:50:51 | 000,000,880 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cb743be08c4e18.job
[2011/08/16 16:50:40 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/08/16 16:50:38 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/08/13 09:52:27 | 000,286,904 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/08/13 07:24:48 | 000,000,690 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG 2011.lnk
[2011/08/11 19:08:23 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2011/08/04 10:27:44 | 001,059,983 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\PREAMP0001.pdf
[2011/07/27 17:19:42 | 000,000,026 | ---- | M] () -- C:\WINDOWS\Zone.Identifier
[2011/07/23 22:59:49 | 000,002,573 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\TDSL Personal Edition 1.1.lnk
[2011/07/23 07:59:47 | 636,461,286 | ---- | M] () -- C:\Documents and Settings\Alan\My Documents\TempImage.nrg
[2011/07/20 09:41:08 | 000,031,552 | ---- | M] (TuneUp Software) -- C:\WINDOWS\System32\TURegOpt.exe
[2011/07/20 09:35:34 | 000,029,504 | ---- | M] (TuneUp Software) -- C:\WINDOWS\System32\uxtuneup.dll
[2011/07/18 10:09:13 | 000,541,011 | ---- | M] () -- C:\Documents and Settings\Alan\Desktop\Holiday cottage in Tuckenhay, South Hams with 3.5 stars, sleeps 3.htm
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/08/04 10:27:44 | 001,059,983 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\PREAMP0001.pdf
[2011/07/23 22:59:41 | 000,002,573 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\TDSL Personal Edition 1.1.lnk
[2011/07/23 07:53:38 | 636,461,286 | ---- | C] () -- C:\Documents and Settings\Alan\My Documents\TempImage.nrg
[2011/07/18 10:08:46 | 000,541,011 | ---- | C] () -- C:\Documents and Settings\Alan\Desktop\Holiday cottage in Tuckenhay, South Hams with 3.5 stars, sleeps 3.htm
[2009/11/23 16:25:31 | 000,031,053 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern131.dat
[2009/11/23 16:25:31 | 000,027,417 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern121.dat
[2009/11/23 16:25:31 | 000,024,903 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern3.dat
[2009/11/23 16:25:31 | 000,021,390 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern5.dat
[2009/11/23 16:25:31 | 000,020,148 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern2.dat
[2009/11/23 16:25:31 | 000,011,811 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern4.dat
[2009/11/23 16:25:31 | 000,004,943 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern6.dat
[2009/11/23 16:25:31 | 000,001,146 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_DU.dat
[2009/11/23 16:25:31 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_PT.dat
[2009/11/23 16:25:31 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_BP.dat
[2009/11/23 16:25:31 | 000,001,136 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_ES.dat
[2009/11/23 16:25:31 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_FR.dat
[2009/11/23 16:25:31 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_CF.dat
[2009/11/23 16:25:31 | 000,001,120 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_IT.dat
[2009/11/23 16:25:31 | 000,001,107 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_GE.dat
[2009/11/23 16:25:31 | 000,001,104 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_EN.dat
[2009/11/23 13:17:21 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Alan\Local Settings\Application Data\prvlcl.dat
[2009/07/20 09:25:32 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2009/01/25 20:39:07 | 000,007,164 | ---- | C] () -- C:\WINDOWS\Perkins 1104D.ini
[2008/07/14 23:22:36 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008/07/14 17:44:08 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2008/07/08 17:48:50 | 000,000,182 | ---- | C] () -- C:\WINDOWS\System32\EBPPORT.DAT
[2008/07/04 10:20:57 | 000,096,768 | ---- | C] () -- C:\WINDOWS\SlantAdj.dll
[2008/07/04 10:20:57 | 000,003,136 | ---- | C] () -- C:\WINDOWS\Ade001.bin
[2008/07/04 10:20:57 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\epDPE.ini
[2007/11/24 18:09:34 | 000,634,880 | ---- | C] () -- C:\WINDOWS\System32\BVid20.dll
[2007/11/24 13:05:38 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\mcldecrypt.dll
[2007/11/24 12:36:20 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\msvcvm20.dll
[2007/11/24 12:31:37 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll
[2007/09/24 19:54:31 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Alan\Application Data\inst.exe
[2007/09/24 19:54:31 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Alan\Application Data\pcouffin.cat
[2007/09/24 19:54:31 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Alan\Application Data\pcouffin.inf
[2007/09/24 19:48:13 | 000,000,085 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\.zreglib
[2007/06/18 19:27:20 | 000,000,766 | ---- | C] () -- C:\Documents and Settings\Alan\Local Settings\Application Data\FASTApp.html
[2007/06/06 21:06:29 | 000,040,960 | ---- | C] () -- C:\Program Files\Uninstall_CDS.exe
[2007/05/19 09:20:42 | 000,000,150 | ---- | C] () -- C:\WINDOWS\System32\yeppcomm.dat
[2007/05/10 18:31:21 | 000,299,008 | ---- | C] () -- C:\WINDOWS\System32\LAME_MP3.dll
[2007/05/10 18:31:07 | 000,065,024 | ---- | C] () -- C:\WINDOWS\IFinst26.exe
[2007/04/05 09:41:47 | 000,000,000 | ---- | C] () -- C:\WINDOWS\frontend.INI
[2007/03/24 14:58:51 | 000,001,747 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2007/01/20 15:16:34 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat
[2007/01/20 15:05:09 | 000,663,552 | ---- | C] () -- C:\WINDOWS\System32\libeay32_1-1-0_DDR.dll
[2007/01/20 15:05:09 | 000,532,594 | ---- | C] () -- C:\WINDOWS\System32\xerces-c_1_40_0_DDR.dll
[2007/01/20 15:05:09 | 000,524,377 | ---- | C] () -- C:\WINDOWS\System32\stlport_4_0_0_DDR.dll
[2007/01/20 15:05:09 | 000,307,329 | ---- | C] () -- C:\WINDOWS\System32\BJBase_2-2-2_DDR.dll
[2007/01/20 15:05:09 | 000,159,744 | ---- | C] () -- C:\WINDOWS\System32\ssleay32_1-1-0_DDR.dll
[2006/11/01 09:57:24 | 000,524,288 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2006/09/23 11:21:10 | 000,096,256 | ---- | C] () -- C:\Documents and Settings\Alan\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2006/08/15 19:37:58 | 000,000,010 | ---- | C] () -- C:\WINDOWS\evypaths.bin
[2006/05/25 17:38:27 | 000,038,401 | R--- | C] () -- C:\WINDOWS\System32\RdCi1006.dll
[2006/05/25 17:38:25 | 000,004,088 | R--- | C] () -- C:\WINDOWS\System32\Rd4t1006.DAT
[2006/02/26 10:08:28 | 000,139,264 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2006/01/07 14:03:48 | 000,000,102 | ---- | C] () -- C:\WINDOWS\ANS2000.INI
[2006/01/07 14:03:48 | 000,000,020 | -H-- | C] () -- C:\WINDOWS\akebook.ini
[2006/01/07 14:03:48 | 000,000,004 | -H-- | C] () -- C:\WINDOWS\a3kebook.ini
[2005/11/08 18:52:39 | 000,000,381 | ---- | C] () -- C:\WINDOWS\AudStu.INI
[2005/11/08 18:47:13 | 000,000,037 | ---- | C] () -- C:\WINDOWS\MAGIX.INI
[2005/11/08 18:46:20 | 000,000,603 | ---- | C] () -- C:\WINDOWS\mgxoschk.ini
[2005/06/28 19:26:01 | 000,154,595 | ---- | C] () -- C:\WINDOWS\Mini Digital Signal Generator Uninstaller.exe
[2005/01/03 11:55:43 | 000,008,864 | ---- | C] () -- C:\WINDOWS\System32\drivers\CDAC15BA.SYS
[2004/12/29 16:47:19 | 000,000,029 | ---- | C] () -- C:\WINDOWS\DEBUGSM.INI
[2004/12/29 16:27:45 | 000,111,932 | ---- | C] () -- C:\WINDOWS\System32\EPPICPrinterDB.dat
[2004/12/29 16:27:45 | 000,026,154 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern1.dat
[2004/12/29 16:27:45 | 000,000,097 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini
[2004/12/29 16:27:01 | 000,064,000 | ---- | C] () -- C:\WINDOWS\System32\esfw41.bin
[2004/12/29 16:26:12 | 000,000,025 | ---- | C] () -- C:\WINDOWS\CDE P242580EF.ini
[2004/10/22 18:27:17 | 000,231,936 | ---- | C] () -- C:\WINDOWS\System32\SNWValid.dll
[2004/10/22 18:26:03 | 000,000,283 | ---- | C] () -- C:\WINDOWS\SIERRA.INI
[2004/08/20 18:16:09 | 000,004,171 | ---- | C] () -- C:\Documents and Settings\Alan\Application Data\Tubetrack Support
[2004/08/20 18:16:04 | 000,000,333 | ---- | C] () -- C:\Documents and Settings\Alan\Application Data\Tubetrack Preferences
[2004/08/04 18:13:53 | 000,000,000 | ---- | C] () -- C:\WINDOWS\mtstack.INI
[2004/08/03 23:04:45 | 000,000,021 | ---- | C] () -- C:\WINDOWS\GSP_ApRg.INI
[2004/08/03 23:03:30 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\MTSTACK.EXE
[2004/08/03 22:27:41 | 000,000,022 | ---- | C] () -- C:\WINDOWS\exchng.ini
[2004/08/03 22:27:40 | 000,000,611 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2004/08/03 21:47:56 | 000,000,116 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2004/08/03 21:47:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ARTGALRY.INI
[2004/08/03 21:47:30 | 000,000,124 | ---- | C] () -- C:\WINDOWS\GRAPH5.INI
[2004/08/03 21:47:22 | 000,000,009 | ---- | C] () -- C:\WINDOWS\WINHELP.INI
[2004/08/03 21:46:04 | 000,000,535 | ---- | C] () -- C:\WINDOWS\MSTXTCNV.INI
[2004/08/03 21:45:52 | 000,002,041 | ---- | C] () -- C:\WINDOWS\MSFNTMAP.INI
[2004/08/03 21:45:44 | 000,000,280 | ---- | C] () -- C:\WINDOWS\TTEMBED.INI
[2004/08/03 21:40:41 | 000,004,072 | ---- | C] () -- C:\WINDOWS\ULEAD32.INI
[2004/08/03 18:50:09 | 000,000,738 | ---- | C] () -- C:\Program Files\Outlook Express.lnk
[2004/08/03 18:38:24 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\Snape50.bin
[2004/08/03 18:38:24 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\Snape40.bin
[2004/08/02 14:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/03/12 10:31:12 | 000,155,648 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
[2004/03/12 10:31:11 | 000,001,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\alcxinit.dat
[2004/03/09 22:53:41 | 000,001,290 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2004/03/09 22:53:41 | 000,000,444 | ---- | C] () -- C:\WINDOWS\System32\emver.ini
[2004/03/09 22:53:18 | 000,392,432 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/03/09 22:53:18 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004/03/09 22:53:18 | 000,058,732 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/03/09 22:53:18 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004/03/09 22:53:17 | 000,004,486 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004/03/09 22:53:16 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004/03/09 22:53:15 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004/03/09 22:53:11 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004/03/09 22:53:11 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004/03/09 22:53:05 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004/03/09 22:52:57 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004/03/09 17:57:29 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2004/03/09 16:39:14 | 000,000,335 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2004/03/09 16:31:46 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004/03/09 16:21:27 | 000,532,544 | ---- | C] () -- C:\WINDOWS\PIC.dll
[2004/03/09 16:21:26 | 000,024,576 | ---- | C] () -- C:\WINDOWS\HKNTDLL.dll
[2004/03/09 16:08:01 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2004/03/09 16:03:46 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2004/03/09 15:58:32 | 000,004,346 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2004/03/09 15:57:43 | 000,286,904 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2003/06/11 15:22:52 | 000,507,904 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2002/10/07 19:15:36 | 000,016,384 | ---- | C] () -- C:\WINDOWS\System32\e100bmsg.dll
[1996/11/21 00:00:00 | 000,047,104 | ---- | C] () -- C:\WINDOWS\System32\WRKGADM.EXE
[1996/11/21 00:00:00 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\ODBCSTF.DLL
[1996/11/21 00:00:00 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\DOCOBJ.DLL
[1996/11/21 00:00:00 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\HLINKPRX.DLL

========== LOP Check ==========

[2008/07/15 13:10:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\.myibay
[2009/02/06 11:49:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\aAvgApi
[2011/06/23 20:05:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\alot
[2010/12/04 12:31:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\AVG10
[2007/05/26 12:03:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\AVSMedia
[2010/12/18 17:54:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2007/04/13 10:21:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\EPSON
[2010/12/09 11:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\GeoVid
[2008/08/28 19:39:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Iconix
[2007/12/22 13:11:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Leadertech
[2009/10/26 13:44:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\licenses
[2008/08/31 09:33:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\NCH Swift Sound
[2009/10/05 17:28:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\OpenOffice.org
[2009/11/23 16:42:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Panasonic
[2009/10/26 13:46:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\PCMM2009
[2011/06/23 20:43:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\PriceGong
[2008/07/05 13:12:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Publish Providers
[2007/03/04 08:32:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\SlipStream
[2008/07/16 16:48:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Smart Panel
[2009/10/26 10:31:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Sony
[2004/08/03 19:35:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Template
[2011/07/16 11:34:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\TuneUp Software
[2010/05/03 13:23:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Uniblue
[2011/06/26 22:58:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\uPlayer
[2009/12/31 16:41:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alan\Application Data\Vso
[2011/08/11 18:31:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Affinegy
[2011/08/11 18:31:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar
[2010/12/04 12:07:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2010/12/04 11:56:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9
[2010/10/15 18:28:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2010/12/09 11:51:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GeoVid
[2008/05/24 11:29:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Grisoft
[2008/07/04 15:12:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\JpegSizer
[2011/04/24 20:30:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2008/05/04 08:08:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
[2004/08/03 21:57:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OLYMPUS
[2011/06/23 20:27:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Panasonic
[2010/10/23 14:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RegCure
[2011/07/16 10:49:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/07/16 10:59:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2007/07/18 22:28:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WholeSecurity
[2011/07/16 10:56:01 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0B4227B4
@Alternate Data Stream - 116 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:1CA73D29

< End of report >
  • 0

Advertisements


#2
Quad22*

Quad22*

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts
Hello

I have now reformatted my C drive and reinstalled windows so all now working OK

Thanks for those that viewed my post
  • 0

#3
Gammo

Gammo

    Trusted Helper

  • Malware Removal
  • 2,299 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP