OTL logfile created on: 24/08/2011 20:01:10 - Run 1
OTL by OldTimer - Version 3.2.26.5 Folder = C:\Users\ross\Downloads
Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19088)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
955.25 Mb Total Physical Memory | 218.32 Mb Available Physical Memory | 22.86% Memory free
2.12 Gb Paging File | 1.43 Gb Available in Paging File | 67.61% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74.37 Gb Total Space | 38.72 Gb Free Space | 52.07% Space Free | Partition Type: NTFS
Drive E: | 73.21 Gb Total Space | 68.07 Gb Free Space | 92.97% Space Free | Partition Type: NTFS
Computer Name: FLOYDY2606 | User Name: ross | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/08/24 20:00:56 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\ross\Downloads\OTL.exe
PRC - [2011/06/14 16:31:50 | 001,176,064 | ---- | M] (SRWare) -- C:\Program Files\SRWare Iron\iron.exe
PRC - [2009/04/11 07:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
========== Modules (No Company Name) ==========
MOD - [2011/07/17 14:32:24 | 006,271,648 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll
MOD - [2011/06/07 21:38:20 | 001,320,462 | ---- | M] () -- C:\Program Files\SRWare Iron\avcodec-52.dll
MOD - [2011/06/07 21:38:20 | 000,166,926 | ---- | M] () -- C:\Program Files\SRWare Iron\avformat-52.dll
MOD - [2011/06/07 21:38:20 | 000,098,830 | ---- | M] () -- C:\Program Files\SRWare Iron\avutil-50.dll
========== Win32 Services (SafeList) ==========
SRV - [2011/04/18 17:39:42 | 007,398,752 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/02/08 05:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010/01/15 13:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
SRV - [2009/09/24 11:59:26 | 001,695,368 | ---- | M] (NanJing Nagasoft Co, LTD.) [Auto | Stopped] -- C:\Windows\System32\nagasoft\vjocx.dll -- (vvdsvc)
SRV - [2008/07/18 20:39:30 | 000,083,312 | ---- | M] (TOSHIBA Corporation) [Auto | Stopped] -- C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe -- (TNaviSrv)
SRV - [2008/04/24 10:21:56 | 000,099,720 | ---- | M] (Toshiba Europe GmbH) [Auto | Stopped] -- C:\Program Files\Toshiba TEMPRO\TempoSVC.exe -- (TempoMonitoringService)
SRV - [2008/04/17 00:19:48 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) [Auto | Stopped] -- C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
SRV - [2008/04/16 15:53:00 | 000,954,368 | ---- | M] (Atheros Communications, Inc.) [On_Demand | Stopped] -- C:\Program Files\Jumpstart\jswpsapi.exe -- (jswpsapi)
SRV - [2008/02/06 14:12:56 | 000,126,976 | ---- | M] (TOSHIBA Corporation) [Auto | Stopped] -- C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe -- (TOSHIBA SMART Log Service)
SRV - [2008/01/21 03:33:00 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2008/01/17 16:27:34 | 000,431,456 | ---- | M] (TOSHIBA Corporation) [Auto | Stopped] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV - [2007/11/21 17:23:32 | 000,129,632 | ---- | M] (TOSHIBA Corporation) [Auto | Stopped] -- C:\Windows\System32\TODDSrv.exe -- (TODDSrv)
SRV - [2006/08/23 16:39:48 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
========== Driver Services (SafeList) ==========
DRV - [2011/04/14 21:28:18 | 000,134,480 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2011/04/05 00:59:56 | 000,297,168 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2011/03/16 16:03:20 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2011/03/01 14:25:18 | 000,034,896 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Stopped] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2011/02/22 08:12:38 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2011/02/10 07:53:30 | 000,028,624 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2011/02/10 07:53:28 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2011/01/07 06:41:46 | 000,248,656 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2008/07/18 18:52:16 | 000,279,376 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\tos_sps32.sys -- (tos_sps32)
DRV - [2008/05/19 19:42:56 | 000,912,384 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2008/04/28 16:59:18 | 000,020,384 | ---- | M] (Atheros Communications, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\jswpslwf.sys -- (jswpslwf)
DRV - [2008/04/15 09:05:08 | 000,118,784 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2007/11/09 14:00:52 | 000,023,640 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\TVALZ_O.SYS -- (TVALZ)
DRV - [2007/10/17 21:36:54 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2006/11/20 14:11:14 | 000,007,168 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\FwLnk.sys -- (FwLnk)
DRV - [2006/11/02 08:41:50 | 000,983,552 | ---- | M] (Agere Systems) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2006/10/18 11:50:04 | 000,016,128 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tdcmdpst.sys -- (tdcmdpst)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.co...TSEA&bmod=TSEA;
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpr...1-CC640E27BABE}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.co...TSEA&bmod=TSEA;
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpr...1-CC640E27BABE}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:10.0.0.1143
FF - prefs.js..extensions.enabledItems: {64161300-e22b-11db-8314-0800200c9a66}:0.9.5.6
FF - prefs.js..extensions.enabledItems: {d33c2f7c-b1e6-4d46-ab0e-be1f6d05c904}:2.0.2
FF - prefs.js..network.proxy.type: 0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.1483: C:\Program Files\StormII\Codec\Plugins\nprpjplug.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2321: RealPlayer File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@veetle.com/vbp;version=0.9.17: C:\Program Files\Veetle\VLCBroadcast\npvbp.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG10\Firefox4\ [2011/08/09 10:22:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/06/23 18:07:41 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
[2010/10/25 12:41:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ross\AppData\Roaming\mozilla\Extensions
[2011/08/22 22:09:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ross\AppData\Roaming\mozilla\Firefox\Profiles\wsk5pso3.default\extensions
[2011/07/15 20:31:09 | 000,000,000 | ---D | M] (Reader) -- C:\Users\ross\AppData\Roaming\mozilla\Firefox\Profiles\wsk5pso3.default\extensions\{20068ab2-1901-4140-9f3c-81207d4dacc4}
[2011/07/04 08:38:26 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\ross\AppData\Roaming\mozilla\Firefox\Profiles\wsk5pso3.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2011/07/03 20:01:56 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/07/03 20:01:57 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
File not found (No name found) --
[2011/08/09 10:22:12 | 000,000,000 | ---D | M] (AVG Safe Search) -- C:\PROGRAM FILES\AVG\AVG10\FIREFOX4
() (No name found) -- C:\USERS\ROSS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\WSK5PSO3.DEFAULT\EXTENSIONS\{64161300-E22B-11DB-8314-0800200C9A66}.XPI
() (No name found) -- C:\USERS\ROSS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\WSK5PSO3.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
() (No name found) -- C:\USERS\ROSS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\WSK5PSO3.DEFAULT\EXTENSIONS\{D33C2F7C-B1E6-4D46-AB0E-BE1F6D05C904}.XPI
() (No name found) -- C:\USERS\ROSS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\WSK5PSO3.DEFAULT\EXTENSIONS\[email protected]
[2011/06/23 18:07:40 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2010/01/01 09:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
O1 HOSTS File: ([2006/09/18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (vShare Plugin) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll ()
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll ()
O2 - BHO: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (vShare Plugin) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll ()
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKCU\..\Toolbar\WebBrowser: (vShare Plugin) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O4 - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [cfFncEnabler.exe] File not found
O4 - HKLM..\Run: [Google EULA Launcher] c:\Program Files\Google\Google EULA\GoogleEULALauncher.exe ( )
O4 - HKLM..\Run: [jswtrayutil] File not found
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NDSTray.exe] File not found
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaRegistration.exe (Toshiba)
O4 - HKLM..\Run: [Toshiba TEMPO] C:\Program Files\Toshiba TEMPRO\Toshiba.Tempo.UI.TrayApplication.exe (Toshiba Europe GmbH)
O4 - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [FlashGet 3] File not found
O4 - HKCU..\Run: [FlashGetBHO] File not found
O4 - HKCU..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe (FreeDownloadManager.ORG)
O4 - HKCU..\Run: [TOSCDSPD] File not found
O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\Windows\System32\cmd.exe (Microsoft Corporation)
O8 - Extra context menu item: Download All By FlashGet3 - C:\Users\ross\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: Download all with Free Download Manager - C:\Program Files\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Download By FlashGet3 - C:\Users\ross\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: Download selected with Free Download Manager - C:\Program Files\Free Download Manager\dlselected.htm ()
O8 - Extra context menu item: Download video with Free Download Manager - C:\Program Files\Free Download Manager\dlfvideo.htm ()
O8 - Extra context menu item: Download with Free Download Manager - C:\Program Files\Free Download Manager\dllink.htm ()
O9 - Extra Button: eBay.co.uk - Buy It Sell It Love It - {76577871-04EC-495E-A12B-91F7C3600AFA} - File not found
O9 - Extra Button: Amazon.co.uk - {8A918C1D-E123-4E36-B562-5C1519E434CE} - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {05C1004E-2596-48E5-8E26-39362985EEB9} http://p3p.sogou.com/MMCShell.cab (MMCPlayer Class)
O16 - DPF: {69731714-6886-4587-A9AA-D80C2763884D} http://dl.google.com...PluginIEWin.cab (Google Gadget Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {AC414988-E5BB-4C2C-873B-EA53D2F3D23A} http://t.live.cctv.c...dateInstall.dll (CCTVUpdateInstall)
O16 - DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_06)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D4003189-95B1-4A2F-9A87-F2B03665960D} http://vexcast.com/d...oad/vexcast.cab (VodClient Control Class)
O16 - DPF: {EF0D1A14-1033-41A2-A589-240C01EDC078} http://dl.pplive.com/PluginSetup.cab (PPLive Lite Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\vsharechrome {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - C:\Program Files\vShare\vshare_toolbar.dll ()
O20 - AppInit_DLLs: (C:\PROGRA~1\GOOGLE\GOOGLE~2\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\ross\AppData\Roaming\Mozilla\Firefox\Desktop Background.bmp
O24 - Desktop BackupWallPaper: C:\Users\ross\AppData\Roaming\Mozilla\Firefox\Desktop Background.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{0bd228a8-9730-11de-a17a-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{0bd228a8-9730-11de-a17a-806e6f6e6963}\Shell\AutoRun\command - "" = F:\presetup.EXE
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O35 - HKCU\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKCU\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/08/24 15:40:12 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/08/23 15:27:03 | 000,000,000 | ---D | C] -- C:\ProgramData\PCPitstop
[2011/08/23 09:58:41 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2011/08/21 21:50:00 | 000,000,000 | ---D | C] -- C:\Windows\Temp
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/08/24 18:40:25 | 000,000,680 | ---- | M] () -- C:\Users\ross\AppData\Local\d3d9caps.dat
[2011/08/24 17:05:37 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/08/24 15:42:05 | 000,000,416 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{B47339CA-7745-4F6B-BF83-E9EB27DE643B}.job
[2011/08/24 15:41:26 | 104,631,884 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm.prepare
[2011/08/24 15:38:33 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/08/24 15:38:33 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/08/24 15:37:12 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/08/11 21:09:43 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/08/11 18:45:58 | 127,668,256 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2011/08/09 10:22:24 | 000,000,835 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2011.lnk
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/08/22 22:05:06 | 000,000,680 | ---- | C] () -- C:\Users\ross\AppData\Local\d3d9caps.dat
[2011/05/22 21:59:28 | 000,012,910 | -HS- | C] () -- C:\ProgramData\mssfsi1vlq8g1bx8lmkcbl8
[2011/05/22 21:59:27 | 000,012,910 | -HS- | C] () -- C:\Users\ross\AppData\Local\mssfsi1vlq8g1bx8lmkcbl8
[2011/05/21 16:49:07 | 000,011,204 | -HS- | C] () -- C:\Users\ross\AppData\Local\e4p658450oy660al14dx
[2011/05/21 16:49:07 | 000,011,204 | -HS- | C] () -- C:\ProgramData\e4p658450oy660al14dx
[2010/12/14 16:18:15 | 000,026,340 | ---- | C] () -- C:\Users\ross\AppData\Roaming\UserTile.png
[2010/02/07 17:40:06 | 000,151,552 | R--- | C] () -- C:\Windows\UnUSBDrv.exe
[2009/11/25 14:04:42 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2009/11/25 14:02:39 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009/10/19 16:03:29 | 000,000,025 | ---- | C] () -- C:\Windows\libem.INI
[2009/10/19 16:02:53 | 000,000,248 | ---- | C] () -- C:\Windows\System32\secustat.dat
[2009/09/22 19:21:25 | 000,517,638 | ---- | C] () -- C:\Users\ross\AppData\Local\lkifgctr_nav.dat
[2009/09/22 19:21:25 | 000,003,408 | ---- | C] () -- C:\Users\ross\AppData\Local\lkifgctr.dat
[2009/09/22 19:21:25 | 000,001,484 | ---- | C] () -- C:\Users\ross\AppData\Local\lkifgctr_navps.dat
[2009/09/15 16:57:45 | 000,008,192 | ---- | C] () -- C:\Users\ross\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/09/14 03:33:18 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009/09/01 20:49:47 | 000,128,113 | ---- | C] () -- C:\Windows\System32\csellang.ini
[2009/09/01 20:49:47 | 000,045,056 | ---- | C] () -- C:\Windows\System32\csellang.dll
[2009/09/01 20:49:47 | 000,009,484 | ---- | C] () -- C:\Windows\System32\tosmreg.ini
[2009/09/01 20:49:47 | 000,007,671 | ---- | C] () -- C:\Windows\System32\cseltbl.ini
[2009/08/03 16:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 16:07:42 | 000,230,768 | ---- | C] () -- C:\Windows\System32\OGAEXEC.exe
[2009/02/04 10:50:32 | 000,024,576 | ---- | C] () -- C:\Windows\System32\nsis_loader.dll
[2008/08/11 16:43:04 | 000,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll
[2008/08/11 16:43:04 | 000,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll
[2008/08/11 16:43:04 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll
[2008/08/11 16:43:04 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll
[2008/08/11 16:43:04 | 000,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll
[2008/08/11 16:43:04 | 000,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll
[2008/08/11 16:34:39 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2008/08/11 16:20:16 | 002,192,024 | ---- | C] () -- C:\Windows\System32\igkrng500.bin
[2008/08/11 16:20:16 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1502.dll
[2008/08/11 16:20:13 | 000,492,496 | ---- | C] () -- C:\Windows\System32\igcompkrng500.bin
[2008/08/11 16:20:13 | 000,147,172 | ---- | C] () -- C:\Windows\System32\igfcg550.bin
[2008/08/11 15:36:22 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2006/11/02 13:53:49 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 13:44:53 | 000,321,200 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 11:33:01 | 000,587,178 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 11:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 11:33:01 | 000,101,250 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 11:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 11:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 09:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 09:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 08:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
< End of report >
OTL Extras logfile created on: 24/08/2011 20:01:10 - Run 1
OTL by OldTimer - Version 3.2.26.5 Folder = C:\Users\ross\Downloads
Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19088)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
955.25 Mb Total Physical Memory | 218.32 Mb Available Physical Memory | 22.86% Memory free
2.12 Gb Paging File | 1.43 Gb Available in Paging File | 67.61% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74.37 Gb Total Space | 38.72 Gb Free Space | 52.07% Space Free | Partition Type: NTFS
Drive E: | 73.21 Gb Total Space | 68.07 Gb Free Space | 92.97% Space Free | Partition Type: NTFS
Computer Name: FLOYDY2606 | User Name: ross | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- Reg Error: Key error. File not found
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\SogouExplorer\SogouExplorer.exe" "%1"
http [open] -- "C:\Program Files\Opera\Opera.exe" "%1"
https [open] -- "C:\Program Files\Opera\Opera.exe" "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"$INSTDIR\FlvDetector.exe" = C:\Program Files\FlashGet Network\FlashGet 3\FlvDetector.exe:*:Enabled:FGFlvDetector
"C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{229A2127-EB73-4715-9604-8AE3FBAFF36E}" = lport=138 | protocol=17 | dir=in | app=system |
"{3F50E02C-84CB-4C1D-8AE2-9E989B1A14F6}" = lport=139 | protocol=6 | dir=in | app=system |
"{51C8CA8F-9F55-4B5F-9370-660701AC18AD}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{632BD932-C791-4388-90FA-D0BE02194F54}" = rport=139 | protocol=6 | dir=out | app=system |
"{69516E60-1F20-4D67-B182-F632351642F2}" = rport=445 | protocol=6 | dir=out | app=system |
"{75D81E4D-A969-48E8-8395-1D8BC28C3790}" = rport=138 | protocol=17 | dir=out | app=system |
"{8F46B38B-2F85-4033-937B-D1B9C0BC09A9}" = rport=137 | protocol=17 | dir=out | app=system |
"{B040D2ED-4D92-4190-AB24-833BE785C9EF}" = lport=137 | protocol=17 | dir=in | app=system |
"{B2D9BA70-016F-416B-9E8B-999914A704AD}" = lport=445 | protocol=6 | dir=in | app=system |
"{B45CE2DB-242B-44FA-8771-091C15C81076}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A866DB3-B8E0-4535-B33E-BF40B2F58DA8}" = protocol=6 | dir=in | app=c:\program files\common files\pplivenetwork\ppap.exe |
"{0F13D6C6-DC82-4F19-8F9E-8EF371113DEA}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe |
"{10BF3261-2DC9-4F87-9B84-562182CFE808}" = protocol=1 | dir=in | [email protected],-28543 |
"{232F2929-96F4-4237-BFD5-7091D1B6E956}" = protocol=1 | dir=out | [email protected],-28544 |
"{281AE859-6D54-4ADC-AA9D-D57D39200D8A}" = protocol=17 | dir=in | app=c:\program files\pplive\pptv\pplive.exe |
"{292225C5-7D8B-439A-B215-9FA600202706}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe |
"{2C78FD2C-7B5B-4E7E-9010-6E5181D75C3E}" = protocol=17 | dir=in | app=c:\program files\common files\pplivenetwork\ppap.exe |
"{431E95C5-0267-4FCF-B97F-7C9E96AB9AB6}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe |
"{46D200A4-B4C0-4B1E-82F5-1E9A86751AAA}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe |
"{47E24441-8E57-4F7C-A213-BCC23D5D07F5}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe |
"{4B2E5B4C-C58F-44DB-A85E-7ECB4B0920EC}" = protocol=6 | dir=in | app=c:\program files\pplive\pptv\ppliveu.exe |
"{52AF3D22-04CE-44C8-91E8-A30B94B48D17}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{5DFED821-4D47-492D-86F6-1BD3DD6434DB}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe |
"{63E64CCD-9EAA-4469-9A3A-EF4F00BF8FD2}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe |
"{66D6F354-EA47-4834-A07C-BDB2A75DE75F}" = protocol=17 | dir=in | app=c:\program files\sogouexplorer\sogouexplorer.exe |
"{6BE05A0F-999E-49A6-AE4C-2FEB77CD363E}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe |
"{766910D8-DB4C-41D3-9910-87CE45EC81C3}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{7736701D-CB7C-41F1-A066-C1A016B9A0E5}" = protocol=17 | dir=in | app=c:\program files\ppliveva\crashupload.exe |
"{79F7CEED-E191-4EDC-9A94-27E22C78AE78}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe |
"{7B9834B0-65A7-40DC-A8C7-096CCC929CEF}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgmfapx.exe |
"{7BF38752-43CE-4AAF-A32B-A0B0B5F85DA4}" = protocol=6 | dir=in | app=c:\program files\ppliveva\crashupload.exe |
"{7EF7DDBE-2889-4ECE-84F4-BFC9FFDF81BF}" = protocol=6 | dir=in | app=c:\program files\pplive\pptv\pplive.exe |
"{85032057-D371-4316-AC9F-F86EEBBC2CE0}" = protocol=6 | dir=in | app=c:\program files\ppliveva\flvpick.exe |
"{85DBC648-B4E8-43EC-96D3-302731DBBD77}" = protocol=17 | dir=in | app=c:\program files\pplive\pptv\ppliveu.exe |
"{8B254F39-D5CE-4E5A-B8C2-DA12DE8C7F59}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe |
"{8CAEEFDD-3698-44F8-B784-2BC1B0D52244}" = protocol=6 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe |
"{916BBA0E-8B20-411F-9AB7-57A18A60B94F}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgnsx.exe |
"{9791FB74-F1DB-4206-A819-14CE79AD601D}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe |
"{A1AE2F00-F985-4B14-B965-A0FEA313B308}" = protocol=6 | dir=in | app=c:\program files\ppliveva\download.exe |
"{BBC1C6A2-E367-4D3B-9488-A778C23D9EEE}" = protocol=17 | dir=in | app=c:\program files\ppliveva\download.exe |
"{C309903A-F7F4-495D-A1DA-EF342F06795E}" = protocol=58 | dir=out | [email protected],-28546 |
"{C4B96218-6345-4F10-8009-00744D732BD1}" = protocol=17 | dir=in | app=c:\program files\ppliveva\flvpick.exe |
"{D1415815-7B73-4954-9D1C-6744D6C9E224}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgemcx.exe |
"{DA3D0821-9AFC-467A-9833-5586B0F05ABB}" = protocol=17 | dir=in | app=c:\downloads\sopcast-3.2.4\setup-sopcast-3.2.4-2009-7-9.exe |
"{DAB41063-A93B-49BB-9FF2-2B3E913A6A29}" = protocol=58 | dir=in | [email protected],-28545 |
"{DAFDA231-36C0-4B6E-82D2-FC5EF396E893}" = protocol=17 | dir=in | app=c:\program files\avg\avg10\avgdiagex.exe |
"{DD156D9A-706F-4581-AE7B-2718E45C9C87}" = protocol=6 | dir=in | app=c:\program files\sogouexplorer\sogouexplorer.exe |
"{DD5DAB70-8BEE-4866-9F61-E92F31F3EF6D}" = protocol=6 | dir=in | app=c:\program files\ppliveva\downloadprogress.exe |
"{DE0C7CA4-0417-42E1-BB5E-B9A05E778F02}" = protocol=6 | dir=in | app=c:\downloads\sopcast-3.2.4\setup-sopcast-3.2.4-2009-7-9.exe |
"{E04AED22-30E6-4F3C-906B-6CC53A1C943C}" = protocol=17 | dir=in | app=c:\program files\ppliveva\downloadprogress.exe |
"{E95B7918-7CBE-4BDB-B9F1-277EAC642A7E}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{EBC6FD4A-485B-4321-A76A-A1EE9CEF100E}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"TCP Query User{0C7EC348-4DAD-4E90-8190-8E13CC7C3437}C:\program files\streamtorrent 1.0\streamtorrent.exe" = protocol=6 | dir=in | app=c:\program files\streamtorrent 1.0\streamtorrent.exe |
"TCP Query User{0CF06D61-DCC6-4DCF-8FEF-0A6C7102185F}C:\program files\safari\safari.exe" = protocol=6 | dir=in | app=c:\program files\safari\safari.exe |
"TCP Query User{0D6DCF91-FFF7-41D4-81C3-F2A134582E8A}C:\program files\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe |
"TCP Query User{32E780AD-0B32-47A6-88B4-1A4756262BD6}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{56B8467F-70A0-47E5-9FF5-4CF847C6844A}C:\users\ross\appdata\local\google\chrome\application\chrome.exe" = protocol=6 | dir=in | app=c:\users\ross\appdata\local\google\chrome\application\chrome.exe |
"TCP Query User{58212545-D44C-4E17-B79F-AB6EC8F79F76}C:\users\ross\appdata\local\temp\fgcn_548.exe" = protocol=6 | dir=in | app=c:\users\ross\appdata\local\temp\fgcn_548.exe |
"TCP Query User{62E9814B-F2F1-4353-AA2E-C859ED6E0C26}C:\program files\flashget network\flashget 3\flashget3.exe" = protocol=6 | dir=in | app=c:\program files\flashget network\flashget 3\flashget3.exe |
"TCP Query User{6DF515D0-6D67-461D-8FB1-5C7102874A00}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
"TCP Query User{74AF3B99-12F2-48D3-8F33-EE4E0F7C85F9}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe |
"TCP Query User{8C093B79-9C30-41CD-B440-028D4A4BD7D6}C:\program files\srware iron\iron.exe" = protocol=6 | dir=in | app=c:\program files\srware iron\iron.exe |
"TCP Query User{9EE4D575-80E9-47FC-A335-C1FCFB30AB04}C:\program files\streamtorrent 1.0\streamtorrent.exe" = protocol=6 | dir=in | app=c:\program files\streamtorrent 1.0\streamtorrent.exe |
"TCP Query User{B8867DF9-F215-4213-AD4A-1AA982E2C3B4}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe |
"TCP Query User{BEE56847-0BF7-45DA-9D95-FA47C2364F57}C:\program files\srware iron\iron.exe" = protocol=6 | dir=in | app=c:\program files\srware iron\iron.exe |
"TCP Query User{CD24774A-B0A5-4C81-A675-5BD92930AA01}C:\program files\stormii\stormpop.exe" = protocol=6 | dir=in | app=c:\program files\stormii\stormpop.exe |
"TCP Query User{D09C4D4F-33E3-44CA-AEFF-B78E1851D782}C:\program files\safari\safari.exe" = protocol=6 | dir=in | app=c:\program files\safari\safari.exe |
"TCP Query User{E2C6DEE6-A281-4033-BF87-FCE8A6406DBC}C:\program files\vuze\azureus.exe" = protocol=6 | dir=in | app=c:\program files\vuze\azureus.exe |
"TCP Query User{F8541D02-C90E-442B-8722-52DB07508E83}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
"TCP Query User{FFA9E6E5-68F9-408D-91ED-2C519B747227}C:\program files\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe |
"UDP Query User{06A5839A-8B4D-46E2-8CF7-959C5FE094E8}C:\program files\stormii\stormpop.exe" = protocol=17 | dir=in | app=c:\program files\stormii\stormpop.exe |
"UDP Query User{0DB53F9B-CB4A-4005-9EE6-4766D9BBCF80}C:\program files\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe |
"UDP Query User{18C88ACE-71F6-47AE-AACE-3CA85616FDD0}C:\program files\flashget network\flashget 3\flashget3.exe" = protocol=17 | dir=in | app=c:\program files\flashget network\flashget 3\flashget3.exe |
"UDP Query User{1905A590-1AE7-46E2-8617-BEC61750DF28}C:\program files\streamtorrent 1.0\streamtorrent.exe" = protocol=17 | dir=in | app=c:\program files\streamtorrent 1.0\streamtorrent.exe |
"UDP Query User{249683A8-CE89-4CEE-A825-500C21C38B2F}C:\program files\vuze\azureus.exe" = protocol=17 | dir=in | app=c:\program files\vuze\azureus.exe |
"UDP Query User{4838F029-B291-4746-8070-95E818595C16}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
"UDP Query User{6935BF01-B557-4308-8EF5-890C1CF20AF8}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{786994AA-0489-42A7-8D2F-CAFE87E7A60A}C:\program files\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\adv\sopadver.exe |
"UDP Query User{7D07A1A3-96AB-49A3-BD77-DEAFFE8B3B7E}C:\program files\safari\safari.exe" = protocol=17 | dir=in | app=c:\program files\safari\safari.exe |
"UDP Query User{8D319CF1-29F7-4E5A-84E4-4BCF1D531B3D}C:\program files\streamtorrent 1.0\streamtorrent.exe" = protocol=17 | dir=in | app=c:\program files\streamtorrent 1.0\streamtorrent.exe |
"UDP Query User{B3CD803D-190D-4AC9-AED5-9FEBE3BFA43B}C:\program files\safari\safari.exe" = protocol=17 | dir=in | app=c:\program files\safari\safari.exe |
"UDP Query User{BA6FD346-8CE5-4BA7-BF11-282A9DF3A065}C:\users\ross\appdata\local\temp\fgcn_548.exe" = protocol=17 | dir=in | app=c:\users\ross\appdata\local\temp\fgcn_548.exe |
"UDP Query User{C3BDBDEB-116F-47C3-B68F-88E7964F73CE}C:\program files\srware iron\iron.exe" = protocol=17 | dir=in | app=c:\program files\srware iron\iron.exe |
"UDP Query User{D1843E1C-7FC1-45C9-A908-B2009A997071}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe |
"UDP Query User{EC6A5F43-73AB-4932-B6E3-195EE3D2E002}C:\program files\srware iron\iron.exe" = protocol=17 | dir=in | app=c:\program files\srware iron\iron.exe |
"UDP Query User{EDC25D06-86D2-4A5C-B882-2B8BD1BFCB0B}C:\users\ross\appdata\local\google\chrome\application\chrome.exe" = protocol=17 | dir=in | app=c:\users\ross\appdata\local\google\chrome\application\chrome.exe |
"UDP Query User{F1B5DF64-62ED-442D-BC2C-A6C413DD36F5}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe |
"UDP Query User{F55C54CF-3D3F-41C6-BEBC-C5C21B4A5553}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{03FAA727-E2B7-471C-AC41-2E1C7F29C7EA}" = Toshiba TEMPRO
"{0D5D0BEE-FBA9-4928-A50D-6CDFAB827755}" = TOSHIBA ConfigFree
"{12B3A009-A080-4619-9A2A-C6DB151D8D67}" = TOSHIBA Assist
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20EAC554-95F9-4926-8D9A-C4FF3EC44C72}" = AVG 2011
"{2290A680-4083-410A-ADCC-7092C67FC052}" = Toshiba Online Product Information
"{26A24AE4-039D-4CA4-87B4-2F83216015FF}" = Java 6 Update 26
"{2883F6F5-0509-43F3-868C-D50330DD9DD3}" = TOSHIBA Hardware Setup
"{2A981294-F14C-4F0F-9627-D793270922F8}" = Bonjour
"{3248F0A8-6813-11D6-A77B-00B0D0160060}" = Java 6 Update 6
"{3F92ABBB-6BBF-11D5-B229-002078017FBF}" = NetWaiting
"{415B2719-AD3A-4944-B404-C472DB6085B3}" = Cisco EAP-FAST Module
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B1E87C3-00DE-4898-8E39-E390AAEF2391}" = TOSHIBA Supervisor Password
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}" = Cisco PEAP Module
"{695B13B2-7919-4EC5-8601-092F0D2DE069}" = AVG 2011
"{6C1E7AA1-44E9-446D-AAB2-0DE6D9EFEAB1}" = Safari
"{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TRDCReminder
"{83770D14-21B9-44B3-8689-F7B523F94560}" = Cisco LEAP Module
"{853A4763-6643-4604-8D64-28BDD8925F4C}" = Apple Application Support
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 8168 8101E 8102E Ethernet Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}" = CD/DVD Drive Acoustic Silencer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1033-7B44-A81200000003}" = Adobe Reader 8.1.2
"{B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13}" = Atheros Wi-Fi Protected Setup Library
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B5FDA445-CAC4-4BA6-A8FB-A7212BD439DE}" = Microsoft XML Parser
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Disc Creator
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C59CF2CE-B302-4833-AA35-E0E07D8EBC52}_is1" = SRWare Iron 12.0.750.0
"{CACAEB5F-174D-4C7C-AC56-A33289A807CA}" = Apple Mobile Device Support
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DC24971E-1946-445D-8A82-CE685433FA7D}" = Realtek USB 2.0 Card Reader
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORDCLauncher
"{E7271ABF-69D3-4E9D-AA0A-2DE34C10A93D}" = TOSHIBA Manuals
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F214EAA4-A069-4BAF-9DA4-4DB8BEEDE485}" = DVD MovieFactory for TOSHIBA
"{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AVG" = AVG 2011
"CNXT_MODEM_PCI_VEN_14F1&DEV_2C06&SUBSYS_14F10000" = HDAUDIO Soft Data Fax Modem with SmartCP
"Google Desktop" = Google Desktop
"HDMI" = Intel® Graphics Media Accelerator Driver
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TRDCReminder
"InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORDCLauncher
"InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.1.1800
"McAfee Security Scan" = McAfee Security Scan Plus
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Mira3_00" = Remove MiraScan USB Driver
"Mozilla Firefox 5.0 (x86 en-US)" = Mozilla Firefox 5.0 (x86 en-US)
"myphotobook" = myphotobook 3.6
"Picasa2" = Picasa 2
"SopCast" = SopCast 3.2.9
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"Temp File Cleaner" = Temp File Cleaner
"TVAnts 1.0" = TVAnts 1.0
"Veetle TV" = Veetle TV 0.9.18
"vShare" = vShare Plugin
"Windows Media Encoder 9" = Windows Media Encoder 9 Series
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 24/08/2011 07:15:00 | Computer Name = floydy2606 | Source = WinMgmt | ID = 10
Description =
Error - 24/08/2011 07:21:00 | Computer Name = floydy2606 | Source = EventSystem | ID = 4609
Description =
Error - 24/08/2011 07:21:49 | Computer Name = floydy2606 | Source = WinMgmt | ID = 10
Description =
Error - 24/08/2011 07:55:17 | Computer Name = floydy2606 | Source = WinMgmt | ID = 10
Description =
Error - 24/08/2011 08:08:05 | Computer Name = floydy2606 | Source = WinMgmt | ID = 10
Description =
Error - 24/08/2011 08:13:27 | Computer Name = floydy2606 | Source = EventSystem | ID = 4609
Description =
Error - 24/08/2011 08:14:18 | Computer Name = floydy2606 | Source = WinMgmt | ID = 10
Description =
Error - 24/08/2011 10:37:34 | Computer Name = floydy2606 | Source = WinMgmt | ID = 10
Description =
Error - 24/08/2011 12:06:24 | Computer Name = floydy2606 | Source = EventSystem | ID = 4609
Description =
Error - 24/08/2011 12:07:03 | Computer Name = floydy2606 | Source = WinMgmt | ID = 10
Description =
[ System Events ]
Error - 24/08/2011 08:14:19 | Computer Name = floydy2606 | Source = Service Control Manager | ID = 7026
Description =
Error - 24/08/2011 10:29:35 | Computer Name = floydy2606 | Source = DCOM | ID = 10005
Description =
Error - 24/08/2011 12:05:40 | Computer Name = floydy2606 | Source = EventLog | ID = 6008
Description = The previous system shutdown at 15:41:44 on 24/08/2011 was unexpected.
Error - 24/08/2011 12:06:05 | Computer Name = floydy2606 | Source = Microsoft-Windows-WLAN-AutoConfig | ID = 10000
Description =
Error - 24/08/2011 12:06:17 | Computer Name = floydy2606 | Source = DCOM | ID = 10005
Description =
Error - 24/08/2011 12:06:24 | Computer Name = floydy2606 | Source = DCOM | ID = 10005
Description =
Error - 24/08/2011 12:06:29 | Computer Name = floydy2606 | Source = DCOM | ID = 10005
Description =
Error - 24/08/2011 12:06:29 | Computer Name = floydy2606 | Source = DCOM | ID = 10005
Description =
Error - 24/08/2011 12:07:04 | Computer Name = floydy2606 | Source = Service Control Manager | ID = 7001
Description =
Error - 24/08/2011 12:07:04 | Computer Name = floydy2606 | Source = Service Control Manager | ID = 7026
Description =
< End of report >