logfile created on: 24/08/2011 11:37:56 AM - Run 1
OTL by OldTimer - Version 3.2.26.5 Folder = C:\Users\Nicola\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00001009 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy
1.75 Gb Total Physical Memory | 1.11 Gb Available Physical Memory | 63.53% Memory free
3.74 Gb Paging File | 3.25 Gb Available in Paging File | 87.02% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 144.30 Gb Total Space | 69.34 Gb Free Space | 48.05% Space Free | Partition Type: NTFS
Drive D: | 144.03 Gb Total Space | 143.90 Gb Free Space | 99.91% Space Free | Partition Type: NTFS
Computer Name: NICOLA-PC | User Name: Nicola | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/08/24 11:37:30 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Nicola\Downloads\OTL.exe
PRC - [2011/08/11 17:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe
PRC - [2009/04/11 00:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2006/11/22 11:11:26 | 000,099,248 | ---- | M] () -- C:\Program Files\Lexmark 5400 Series\LXCTlpx.exe
PRC - [2006/11/22 11:11:22 | 000,291,760 | ---- | M] () -- C:\Program Files\Lexmark 5400 Series\lxctmon.exe
========== Modules (No Company Name) ==========
MOD - [2006/11/22 11:11:26 | 000,099,248 | ---- | M] () -- C:\Program Files\Lexmark 5400 Series\LXCTlpx.exe
MOD - [2006/11/22 11:11:22 | 000,291,760 | ---- | M] () -- C:\Program Files\Lexmark 5400 Series\lxctmon.exe
MOD - [2006/08/08 16:54:18 | 000,278,528 | ---- | M] () -- C:\Program Files\Lexmark 5400 Series\lxctscw.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- -- (RoxLiveShare9)
SRV - File not found [Auto | Stopped] -- -- (LiveUpdate Notice Ex)
SRV - File not found [Auto | Stopped] -- -- (CLTNetCnService)
SRV - [2011/08/11 17:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE -- (!SASCORE)
SRV - [2011/07/06 19:52:38 | 000,366,640 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/05/30 11:33:54 | 001,025,352 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe -- (AVG Security Toolbar Service)
SRV - [2011/05/23 07:37:06 | 000,061,088 | ---- | M] (F-Secure Corporation) [On_Demand | Stopped] -- C:\Program Files\Shaw Secure\ORSP Client\fsorsp.exe -- (FSORSPClient)
SRV - [2011/04/18 17:39:42 | 007,398,752 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/02/28 18:44:14 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011/02/25 10:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011/02/08 05:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010/10/20 09:11:36 | 000,013,160 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files\Citrix\GoToAssist\607\g2aservice.exe -- (GoToAssist)
SRV - [2010/05/20 15:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
SRV - [2010/03/23 08:36:29 | 000,522,848 | ---- | M] (F-Secure Corporation) [On_Demand | Stopped] -- C:\Program Files\Shaw Secure\FWES\Program\fsdfwd.exe -- (FSDFWD)
SRV - [2009/08/05 09:58:52 | 000,186,976 | ---- | M] (F-Secure Corporation) [Auto | Stopped] -- C:\Program Files\Shaw Secure\Common\FSMA32.EXE -- (FSMA)
SRV - [2009/08/05 09:56:10 | 000,215,648 | ---- | M] (F-Secure Corporation) [Auto | Stopped] -- C:\Program Files\Shaw Secure\Anti-Virus\fsgk32st.exe -- (F-Secure Gatekeeper Handler Starter)
SRV - [2008/01/29 18:38:31 | 000,583,048 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe -- (LiveUpdate Notice Service)
SRV - [2008/01/19 01:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/09/12 19:27:24 | 002,999,664 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_2.EXE -- (LiveUpdate)
SRV - [2007/09/12 19:27:24 | 000,554,352 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe -- (Automatic LiveUpdate Scheduler)
SRV - [2007/04/04 19:54:08 | 000,266,343 | ---- | M] (CyberLink) [Auto | Stopped] -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe -- (Acer HomeMedia Connect Service)
SRV - [2007/02/07 01:04:26 | 000,457,512 | ---- | M] (HiTRSUT) [Auto | Stopped] -- C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe -- (eDataSecurity Service)
SRV - [2007/01/31 19:18:42 | 000,053,248 | ---- | M] (Acer Inc.) [Auto | Stopped] -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe -- (eRecoveryService)
SRV - [2006/12/29 18:51:56 | 000,028,672 | ---- | M] () [Auto | Stopped] -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe -- (AcerMemUsageCheckService)
SRV - [2006/11/22 11:11:36 | 000,537,520 | ---- | M] ( ) [Auto | Stopped] -- C:\Windows\System32\lxctcoms.exe -- (lxct_device)
========== Driver Services (SafeList) ==========
DRV - [2011/07/22 10:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Stopped] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2011/07/12 15:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Stopped] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2011/07/06 19:52:42 | 000,022,712 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011/06/08 20:38:56 | 000,148,648 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\Shaw Secure\Anti-Virus\minifilter\fsgk.sys -- (F-Secure Gatekeeper)
DRV - [2011/04/14 21:28:18 | 000,134,480 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2011/04/05 00:59:56 | 000,297,168 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2011/03/16 16:03:20 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2011/03/01 14:25:18 | 000,034,896 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Stopped] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2011/02/22 08:12:38 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2011/02/10 07:53:30 | 000,028,624 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2011/02/10 07:53:28 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2011/01/07 06:41:46 | 000,248,656 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2010/12/16 15:37:20 | 000,073,160 | ---- | M] (F-Secure Corporation) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\fsdfw.sys -- (FSFW)
DRV - [2010/12/16 15:36:29 | 000,036,792 | ---- | M] (F-Secure Corporation) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\fses.sys -- (FSES)
DRV - [2010/12/15 06:51:02 | 000,042,664 | ---- | M] () [Kernel | Boot | Stopped] -- C:\Windows\system32\Drivers\fsbts.sys -- (fsbts)
DRV - [2010/05/20 15:27:26 | 001,961,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VX3000.sys -- (VX3000)
DRV - [2009/08/05 09:58:30 | 000,068,064 | ---- | M] (F-Secure Corporation) [Kernel | System | Stopped] -- C:\Program Files\Shaw Secure\HIPS\drivers\fshs.sys -- (F-Secure HIPS)
DRV - [2009/08/05 09:56:14 | 000,039,776 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Program Files\Shaw Secure\Anti-Virus\win2k\fsfilter.sys -- (F-Secure Filter)
DRV - [2009/08/05 09:56:14 | 000,025,184 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Program Files\Shaw Secure\Anti-Virus\win2k\fsrec.sys -- (F-Secure Recognizer)
DRV - [2009/08/05 09:56:12 | 000,012,384 | ---- | M] () [Kernel | System | Stopped] -- C:\Program Files\Shaw Secure\Anti-Virus\minifilter\fsvista.sys -- (fsvista)
DRV - [2008/08/30 06:58:16 | 003,929,600 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
DRV - [2008/07/29 04:45:00 | 000,904,192 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\athrusb.sys -- (athrusb)
DRV - [2008/02/29 17:08:08 | 000,024,840 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\swmsflt.sys -- (swmsflt)
DRV - [2007/11/29 13:30:00 | 000,149,000 | ---- | M] (Sierra Wireless Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\swmx00.sys -- (SWMX00) Sierra Wireless USB MUX Driver (#00)
DRV - [2007/11/02 14:44:04 | 000,164,480 | ---- | M] (Sierra Wireless Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\SWNC5E00.sys -- (SWNC5E00) Sierra Wireless MUX NDIS Driver (#00)
DRV - [2006/12/07 19:12:02 | 000,076,584 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Acer\Empowering Technology\eRecovery\int15.sys -- (int15)
DRV - [2006/10/29 21:22:26 | 000,008,192 | ---- | M] (ATI Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\AtiPcie.sys -- (AtiPcie) ATI PCI Express (3GIO)
DRV - [2005/05/26 10:01:18 | 000,021,344 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbbus.sys -- (usbbus)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://en.ca.acer.yahoo.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://global.acer.com [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo....=utf-8&fr=b1ie7
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.ca/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Nicola\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Nicola\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Shaw Secure\NRS\[email protected] [2011/08/22 23:48:28 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG10\Firefox4\ [2011/08/21 22:47:13 | 000,000,000 | ---D | M]
[2011/04/12 17:45:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Nicola\AppData\Roaming\mozilla\Extensions
[2009/12/02 20:04:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Nicola\AppData\Roaming\mozilla\Extensions\[email protected]
O1 HOSTS File: ([2006/09/18 15:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
O2 - BHO: (Browsing Protection Class) - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - C:\Program Files\Shaw Secure\NRS\iescript\baselitmus.dll (F-Secure Corporation)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKLM\..\Toolbar: (Browsing Protection Toolbar) - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C:\Program Files\Shaw Secure\NRS\iescript\baselitmus.dll (F-Secure Corporation)
O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\System32\eDStoolbar.dll (HiTRUST)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
O3 - HKCU\..\Toolbar\ShellBrowser: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - C:\Windows\System32\eDStoolbar.dll (HiTRUST)
O3 - HKCU\..\Toolbar\WebBrowser: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - C:\Windows\System32\eDStoolbar.dll (HiTRUST)
O4 - HKLM..\Run: [Acer Assist Launcher] C:\Program Files\Acer Assist\launcher.exe ()
O4 - HKLM..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe ()
O4 - HKLM..\Run: [Acer Product Registration] C:\Program Files\Acer Registration\ACE1.exe (Leader Technologies)
O4 - HKLM..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe (Acer Inc.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe (HiTRUST)
O4 - HKLM..\Run: [EzPrint] C:\Program Files\Lexmark 5400 Series\ezprint.exe (Lexmark International Inc.)
O4 - HKLM..\Run: [F-Secure Manager] C:\Program Files\Shaw Secure\Common\FSM32.EXE (F-Secure Corporation)
O4 - HKLM..\Run: [F-Secure TNB] C:\Program Files\Shaw Secure\FSGUI\TNBUtil.exe (F-Secure Corporation)
O4 - HKLM..\Run: [Lexmark 5400 Series Fax Server] C:\Program Files\Lexmark 5400 Series\fm3032.exe ()
O4 - HKLM..\Run: [LifeCam] C:\Program Files\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [LXCTCATS] C:\Windows\System32\spool\DRIVERS\W32X86\3\LXCTtime.DLL (Lexmark International Inc.)
O4 - HKLM..\Run: [lxctmon.exe] C:\Program Files\Lexmark 5400 Series\lxctmon.exe ()
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
O4 - HKLM..\Run: [Symantec PIF AlertEng] C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (Symantec Corporation)
O4 - HKLM..\Run: [VX3000] C:\Windows\vVX3000.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Acer Tour Reminder] File not found
O4 - HKCU..\Run: [EPSON Stylus CX4800 Series (Copy 1)] C:\Windows\System32\spool\DRIVERS\W32X86\3\E_FATIADA.EXE (SEIKO EPSON CORPORATION)
O4 - HKCU..\Run: [Messenger (Yahoo!)] File not found
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O4 - HKCU..\Run: [WeatherEye] C:\Users\Nicola\AppData\Local\TheWeatherNetwork\WeatherEye\WeatherEye.exe (Pelmorex Media Inc.)
O4 - HKCU..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - Startup: C:\Users\Nicola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Cyber-shot Viewer Media Check Tool.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe (Sony Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll (Google Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Shaw Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Shaw Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Shaw Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\Shaw Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\Shaw Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\Shaw Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files\Shaw Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O13 - gopher Prefix: missing
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} http://gfx1.hotmail....NPUplden-ca.cab (MSN Photo Upload Tool)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.ma...r/ultrashim.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll ()
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\GoToAssist: DllName - C:\Program Files\Citrix\GoToAssist\607\G2AWinLogon.dll - C:\Program Files\Citrix\GoToAssist\607\g2awinlogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
O24 - Desktop WallPaper: C:\Users\Public\Pictures\Sample Pictures\Autumn Leaves.jpg
O24 - Desktop BackupWallPaper: C:\Users\Public\Pictures\Sample Pictures\Autumn Leaves.jpg
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 15:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{815ed863-dcaf-11df-89dd-001c253f2364}\Shell - "" = AutoRun
O33 - MountPoints2\{815ed863-dcaf-11df-89dd-001c253f2364}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL K:\AppLaunch.exe AUTORUN=1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/08/24 11:09:07 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{BF013DE2-883D-4ED2-98E9-EDB74F70D30F}
[2011/08/24 10:53:04 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{629520E8-534E-49FA-8232-9E56369A39AF}
[2011/08/23 00:42:59 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{E1AA0EBB-F7DD-442C-BDD5-C8F5B305CAFA}
[2011/08/23 00:42:35 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{1524F56F-9176-4B6C-94A8-5E76EDBC49F3}
[2011/08/23 00:26:52 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{B9CCCD2E-0A93-44B8-A111-F6F46370A4C2}
[2011/08/22 21:22:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2011/08/22 17:03:14 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\ElevatedDiagnostics
[2011/08/22 16:30:26 | 000,000,000 | ---D | C] -- C:\ProgramData\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}
[2011/08/22 11:57:01 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{67EDD944-8204-46CC-B421-A465F01BF49F}
[2011/08/22 11:56:16 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{BEDD8AB3-E91C-4CCF-9CE5-061BD162877A}
[2011/08/22 10:43:59 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{F59B66E0-EA5F-4AB4-A562-FCC73EF6A69F}
[2011/08/22 09:46:40 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2011/08/22 09:46:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/08/22 09:46:36 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011/08/21 21:56:32 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\PackageAware
[2011/08/21 18:37:30 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Roaming\Sammsoft
[2011/08/21 14:47:08 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Roaming\FixCleaner
[2011/08/21 14:47:05 | 000,000,000 | ---D | C] -- C:\Program Files\FixCleaner
[2011/08/21 10:21:02 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{BE1EA161-4F17-475A-8165-BA97AAB9CE0C}
[2011/08/21 10:19:19 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{ED4465D3-6B70-4B2B-8FDA-B3CAA7FB6BA3}
[2011/08/21 09:19:25 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{F7682B4B-0AFE-4AA0-BB64-5FB781D2F9BF}
[2011/08/21 09:18:29 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{0007FEE1-7FA2-4BCD-AD9A-67E34A027C71}
[2011/08/20 20:34:18 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{9FDC1C13-BDEF-48F8-8EC9-1FC03A27F0AF}
[2011/08/20 20:32:07 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{E6851F58-A01C-430F-8739-C0AFEE568FCF}
[2011/08/19 22:50:27 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{66722044-E34D-45C5-9EDC-CD5B1AFF3DAD}
[2011/08/19 17:20:25 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Roaming\Malwarebytes
[2011/08/19 17:20:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011/08/19 17:20:14 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/08/19 06:30:54 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{851DDE2B-1EF0-4F4C-91F7-E2A68D33F84B}
[2011/08/18 19:04:48 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{FB25FB83-562D-4939-88AE-FE6166155B1B}
[2011/08/18 18:55:40 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{CEAFB50E-CC15-4BBC-BBD3-9C963D98A6AA}
[2011/08/18 18:54:47 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{3227FB09-C3FA-4837-AFF6-054B138835C3}
[2011/08/17 20:32:06 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{47162F46-F544-4C1F-9A67-72DF42E8F954}
[2011/08/17 20:31:21 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{23FA3776-C300-4A3E-BD39-6162E24FFB06}
[2011/08/17 20:06:22 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{14BD959B-96CE-48E9-9462-336D5EA7C131}
[2011/08/17 07:11:38 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{D7A08B17-6DA7-47AF-A45D-65EF37A5BA9E}
[2011/08/17 07:11:31 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{289985B5-3990-4CAA-A851-F888DF05E720}
[2011/08/15 20:00:22 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{9BFEF90C-A70C-43C6-986D-649DFF09BAE2}
[2011/08/15 19:59:54 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{A2123644-C015-45FE-8F04-A3FA02F2E27E}
[2011/08/15 06:32:11 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{80AFB641-0720-486B-B837-DCE1BB0F38B9}
[2011/08/14 14:42:34 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{0EF7412D-ED5E-43E8-B80D-10015910A3A3}
[2011/08/14 14:41:58 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{B765A44E-041C-4EF2-9DD8-4CCE24447B99}
[2011/08/14 08:26:04 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Roaming\SUPERAntiSpyware.com
[2011/08/14 08:25:40 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2011/08/14 08:25:40 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2011/08/13 22:23:09 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{FFB91516-BC85-4A82-8C1D-D8FA432A3FD7}
[2011/08/13 22:22:20 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{FEA14CFC-24E2-431D-B494-05D06B884EC2}
[2011/08/13 09:25:56 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{92B4BF79-09A3-4D21-A276-A1F131819999}
[2011/08/13 09:25:19 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{0CF75F9F-7149-4EC9-8110-2B44D6796E0C}
[2011/08/12 17:53:34 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{08B72C51-E5B8-435A-9518-369603D65706}
[2011/08/12 17:52:57 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{BF94001F-7CA9-428A-A8CB-5AA89D206D5F}
[2011/08/12 04:08:12 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{AB0E8A08-100A-4705-A40C-0FE2734D29E9}
[2011/08/12 04:08:06 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{6E815A09-A929-492F-8F90-83790C4B7165}
[2011/08/11 16:06:36 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{1CEA4970-56D6-4B6B-81BD-CC8D25B00BBB}
[2011/08/11 16:06:28 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{ABBDF2C9-1FD7-428F-ACB5-D95B836F8811}
[2011/08/08 10:11:25 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{5F8C001E-7E06-4EBE-818B-51A3B51A6873}
[2011/08/08 10:11:17 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{BCDBA5C5-9500-4300-9283-D1C608B5C773}
[2011/08/07 21:52:26 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{4941C3CB-DD9D-4C09-8F25-46153F80C4F4}
[2011/08/07 21:52:14 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{330E5398-C836-433F-8692-7A41FC3CDFB6}
[2011/08/07 09:51:31 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{5E57A55D-745D-4E5C-9D94-47F6F10CCCFC}
[2011/08/07 09:51:23 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{93EDCFF1-75E3-4918-9BD4-E20D62D0AB75}
[2011/08/06 21:51:05 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{A57FA710-8AB9-4C91-B64B-0DF2BA16163D}
[2011/08/06 21:51:03 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{0A945C0D-C67D-40BC-AF69-3F41EF92ECF5}
[2011/08/05 22:17:17 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{4576FC89-93B6-4E0C-BD17-238D26EB0052}
[2011/08/05 22:16:23 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{34CD7927-C13C-420E-9611-A97A6B7C5D25}
[2011/08/05 09:31:33 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{661975D7-B743-43D5-8C14-F5479D1AB46E}
[2011/08/05 09:31:31 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{96EC020A-7217-4E83-9E90-C61B6769C8B7}
[2011/08/04 21:19:52 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{348E6635-185F-4A0E-8B85-662F61CC3411}
[2011/08/04 21:19:50 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{00516E6C-EF81-4100-985F-48DD5F0AF234}
[2011/08/04 08:18:35 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{4AFB3CBA-AF7D-4F24-AE59-10C041EF3E3F}
[2011/08/04 08:18:32 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{29AC40B2-26C1-4701-88B1-EE0F6518E239}
[2011/08/03 11:32:03 | 000,000,000 | ---D | C] -- C:\Users\Nicola\Documents\Scotia OnLine costco american express. paid august3 2011_files
[2011/08/03 09:49:11 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{2889AE29-7A87-4AAA-95F2-71650F87856D}
[2011/08/03 09:48:57 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{F87FC55B-22F9-43F6-BA8E-211A8F909937}
[2011/08/02 14:38:52 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{12224134-067A-450A-B4D7-8A73491D3545}
[2011/08/02 14:38:31 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{A9716DD3-FC82-4E81-B3C1-7AEF5B73F498}
[2011/08/02 01:16:33 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{06FBBBEE-062F-4760-9DA8-FF24E9A51FD6}
[2011/08/02 01:16:30 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{A1BC05A6-434A-4CE8-ACE8-6F6732403025}
[2011/08/01 12:49:56 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{683370C5-D362-4725-B4DE-514A43B5E2A3}
[2011/08/01 12:49:43 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{8AC7D602-ED8F-431C-B722-447E97DC6A9C}
[2011/08/01 00:49:24 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{48480EAD-896D-4A37-8593-45503CC5212E}
[2011/08/01 00:49:20 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{CF9D4F5B-D446-460F-9A2C-4541E6E2603C}
[2011/07/31 12:49:01 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{05E799B2-F807-4BD7-8648-F8282B6CB1A9}
[2011/07/31 12:48:06 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{726483B2-94C0-46A1-AD16-BC23C0D9D0B3}
[2011/07/31 00:47:45 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{C726A2A4-3988-4C1B-93E4-489A40959CA7}
[2011/07/31 00:47:39 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{88688309-93C8-435E-9B06-298A16DB3F38}
[2011/07/30 10:17:11 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG Security Toolbar
[2011/07/30 08:55:10 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{0C01FF57-AB2E-4C75-B743-25A5ED26C23B}
[2011/07/30 08:55:08 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{E4668DB5-85E2-4CAA-9B19-CB38F9E95BEB}
[2011/07/29 20:53:43 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{099213FC-FF7D-499E-AF3D-D88FB509E0C8}
[2011/07/29 20:53:29 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{2219BBE3-2667-4C61-96A9-A25DF90F2529}
[2011/07/29 08:53:12 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{A5CF4DE4-3D8C-4EDD-A1D7-CF8A1A7FFA4E}
[2011/07/29 08:53:01 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{DD1D849B-75E7-4839-B003-206BB568D7FA}
[2011/07/29 08:44:08 | 000,000,000 | ---D | C] -- C:\Windows\en
[2011/07/29 08:21:38 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{0722C720-FC11-4325-9534-8D349F9DBEB7}
[2011/07/29 08:21:31 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{425A03DC-4E73-4B81-BB99-E7461B2703F8}
[2011/07/28 22:20:06 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{235D9894-06A6-48AA-B9DD-7E14FDC9E01D}
[2011/07/28 22:18:52 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{9DC0EF9D-F21B-4D1C-8FB8-414ABEAFC3AB}
[2011/07/28 01:20:04 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{F69EA4D8-25F1-41CF-8D57-763BD5F4B10F}
[2011/07/28 01:20:01 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{679AD883-C8C9-4FD2-B2C0-E60B23548050}
[2011/07/27 22:26:06 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{94C1A938-2FDD-4B24-B292-0EA766FCE0E1}
[2011/07/27 22:25:40 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{9C21AD40-394D-4BA2-8041-0E0243271ECE}
[2011/07/27 18:29:58 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{8F1F53FD-53CF-4A7B-9C22-6316B1CB80FE}
[2011/07/27 06:29:53 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{AE879E77-920C-40EF-8659-1DB451833DA4}
[2011/07/26 18:23:57 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{5A38009C-9513-47E7-90DC-A045850B3456}
[2011/07/26 06:23:42 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{E889382E-45D9-466C-9A4A-210662FB797A}
[2011/07/25 18:20:29 | 000,000,000 | ---D | C] -- C:\Users\Nicola\AppData\Local\{A8EB5185-4D86-4D48-A307-0A0EFE2EB006}
[2011/01/16 22:22:37 | 000,413,696 | ---- | C] ( ) -- C:\Windows\System32\lxctinpa.dll
[2011/01/16 22:22:37 | 000,323,584 | ---- | C] ( ) -- C:\Windows\System32\LXCThcp.dll
[2011/01/16 22:22:36 | 001,224,704 | ---- | C] ( ) -- C:\Windows\System32\lxctserv.dll
[2011/01/16 22:22:36 | 000,991,232 | ---- | C] ( ) -- C:\Windows\System32\lxctusb1.dll
[2011/01/16 22:22:36 | 000,397,312 | ---- | C] ( ) -- C:\Windows\System32\lxctiesc.dll
[2011/01/16 22:22:35 | 000,643,072 | ---- | C] ( ) -- C:\Windows\System32\lxctpmui.dll
[2011/01/16 22:22:35 | 000,585,728 | ---- | C] ( ) -- C:\Windows\System32\lxctlmpm.dll
[2011/01/16 22:22:35 | 000,163,840 | ---- | C] ( ) -- C:\Windows\System32\lxctprox.dll
[2011/01/16 22:22:35 | 000,094,208 | ---- | C] ( ) -- C:\Windows\System32\lxctpplc.dll
[2011/01/16 22:22:34 | 000,385,968 | ---- | C] ( ) -- C:\Windows\System32\lxctih.exe
[2011/01/16 22:22:33 | 000,696,320 | ---- | C] ( ) -- C:\Windows\System32\lxcthbn3.dll
[2011/01/16 22:22:30 | 000,537,520 | ---- | C] ( ) -- C:\Windows\System32\lxctcoms.exe
[2011/01/16 22:22:30 | 000,421,888 | ---- | C] ( ) -- C:\Windows\System32\lxctcomm.dll
[2011/01/16 22:22:29 | 000,684,032 | ---- | C] ( ) -- C:\Windows\System32\lxctcomc.dll
[2011/01/16 22:22:29 | 000,381,872 | ---- | C] ( ) -- C:\Windows\System32\lxctcfg.exe
[2009/04/27 22:24:26 | 000,016,384 | ---- | C] ( ) -- C:\Windows\System32\ClearEvent.exe
[2007/04/16 19:09:21 | 000,053,248 | ---- | C] ( ) -- C:\Windows\System32\Interop.Shell32.dll
[2 C:\Users\Nicola\Documents\*.tmp files -> C:\Users\Nicola\Documents\*.tmp -> ]
[1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/08/24 11:28:44 | 000,000,680 | ---- | M] () -- C:\Users\Nicola\AppData\Local\d3d9caps.dat
[2011/08/24 11:28:33 | 000,002,377 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2011/08/24 11:14:54 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/08/24 11:10:11 | 000,000,424 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{A4C610E3-CB7C-482C-AD71-C4533463C02E}.job
[2011/08/24 11:07:11 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/08/24 11:07:08 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/08/24 11:05:10 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/08/24 11:05:08 | 000,000,508 | ---- | M] () -- C:\Windows\tasks\Scheduled scanning task.job
[2011/08/24 10:55:58 | 129,495,093 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2011/08/23 10:59:04 | 213,695,817 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011/08/23 02:57:05 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-207723344-904031533-2934334975-1000UA.job
[2011/08/22 21:22:34 | 000,001,804 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/08/22 20:23:45 | 000,002,243 | ---- | M] () -- C:\Windows\epplauncher.mif
[2011/08/22 13:26:54 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/08/22 11:48:46 | 000,002,453 | ---- | M] () -- C:\Users\Public\Desktop\eSobi v2.lnk
[2011/08/22 09:46:40 | 000,000,934 | ---- | M] () -- C:\Users\Nicola\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk
[2011/08/22 09:46:40 | 000,000,910 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/08/17 06:34:19 | 000,000,184 | ---- | M] () -- C:\error.fstmp
[2011/08/17 06:31:08 | 000,000,000 | ---- | M] () -- C:\infect.fstmp
[2011/08/11 20:39:47 | 000,624,656 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/08/11 20:39:47 | 000,115,538 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/08/08 10:08:57 | 000,001,082 | ---- | M] () -- C:\Users\Nicola\Desktop\WeatherEye.lnk
[2011/08/06 08:21:54 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-207723344-904031533-2934334975-1000Core.job
[2011/08/05 16:58:33 | 000,833,026 | ---- | M] () -- C:\Users\Nicola\Documents\Janet telus bill 5 August 2011.mht
[2011/08/05 16:53:40 | 000,095,140 | ---- | M] () -- C:\Users\Nicola\Documents\Kailee virgin mobile bill 5 August 2011.mht
[2011/08/05 13:00:27 | 000,047,104 | ---- | M] () -- C:\Users\Nicola\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/08/04 09:16:52 | 000,000,834 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2011.lnk
[2011/08/03 11:32:03 | 000,037,232 | ---- | M] () -- C:\Users\Nicola\Documents\Scotia OnLine costco american express. paid august3 2011.htm
[2011/07/27 07:06:12 | 000,167,191 | ---- | M] () -- C:\Users\Nicola\Desktop\photo (1).php
[2011/07/26 20:45:55 | 000,367,028 | ---- | M] () -- C:\Windows\System32\drivers\AVG\iavichjg.avm
[2011/07/26 06:35:04 | 000,000,000 | ---- | M] () -- C:\Users\Nicola\AppData\Local\{4C9D2449-D111-42A4-AD5F-705AE7C0BF21}
[2 C:\Users\Nicola\Documents\*.tmp files -> C:\Users\Nicola\Documents\*.tmp -> ]
[1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/08/22 21:11:46 | 000,001,804 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/08/22 15:57:44 | 000,002,243 | ---- | C] () -- C:\Windows\epplauncher.mif
[2011/08/22 09:46:40 | 000,000,934 | ---- | C] () -- C:\Users\Nicola\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk
[2011/08/22 09:46:40 | 000,000,910 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/08/16 06:23:53 | 000,000,184 | ---- | C] () -- C:\error.fstmp
[2011/08/16 06:23:53 | 000,000,000 | ---- | C] () -- C:\infect.fstmp
[2011/08/08 10:08:57 | 000,001,082 | ---- | C] () -- C:\Users\Nicola\Desktop\WeatherEye.lnk
[2011/08/05 16:58:30 | 000,833,026 | ---- | C] () -- C:\Users\Nicola\Documents\Janet telus bill 5 August 2011.mht
[2011/08/05 16:53:38 | 000,095,140 | ---- | C] () -- C:\Users\Nicola\Documents\Kailee virgin mobile bill 5 August 2011.mht
[2011/08/03 11:32:01 | 000,037,232 | ---- | C] () -- C:\Users\Nicola\Documents\Scotia OnLine costco american express. paid august3 2011.htm
[2011/07/27 07:06:24 | 000,167,191 | ---- | C] () -- C:\Users\Nicola\Desktop\photo (1).php
[2011/07/26 06:35:04 | 000,000,000 | ---- | C] () -- C:\Users\Nicola\AppData\Local\{4C9D2449-D111-42A4-AD5F-705AE7C0BF21}
[2011/01/16 22:39:38 | 000,045,056 | ---- | C] () -- C:\Windows\System32\lxctpmon.dll
[2011/01/16 22:39:38 | 000,032,768 | ---- | C] () -- C:\Windows\System32\LXCTFXPU.DLL
[2011/01/16 22:22:37 | 000,274,432 | ---- | C] () -- C:\Windows\System32\LXCTinst.dll
[2011/01/16 22:22:32 | 000,204,800 | ---- | C] () -- C:\Windows\System32\lxctgrd.dll
[2010/10/21 11:48:28 | 000,024,206 | ---- | C] () -- C:\Users\Nicola\AppData\Roaming\UserTile.png
[2010/10/20 09:39:16 | 000,000,680 | ---- | C] () -- C:\Users\Nicola\AppData\Local\d3d9caps.dat
[2010/10/14 08:09:50 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/09/29 18:34:14 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2010/03/23 08:20:47 | 000,042,664 | ---- | C] () -- C:\Windows\System32\drivers\fsbts.sys
[2009/10/14 16:56:01 | 000,000,098 | ---- | C] () -- C:\Users\Nicola\AppData\Roaming\wklnhst.dat
[2009/09/11 19:16:47 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2009/09/11 19:16:46 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | ---- | C] () -- C:\Windows\System32\OGAEXEC.exe
[2009/05/22 03:00:53 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009/05/03 23:09:34 | 000,047,104 | ---- | C] () -- C:\Users\Nicola\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/04/27 22:25:33 | 000,000,042 | ---- | C] () -- C:\Windows\Acer(Wide).ini
[2009/04/27 22:25:32 | 000,000,044 | ---- | C] () -- C:\Windows\Acer(Normal).ini
[2009/04/27 22:24:26 | 000,016,384 | ---- | C] () -- C:\Windows\System32\LauncheRyAgentUser.exe
[2009/04/10 14:50:26 | 000,015,498 | ---- | C] () -- C:\Windows\VX3000.ini
[2008/08/14 18:40:42 | 000,176,214 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2008/03/06 00:38:44 | 000,090,112 | ---- | C] () -- C:\Windows\System32\atibrtmon.exe
[2008/02/29 17:08:08 | 000,024,840 | ---- | C] () -- C:\Windows\System32\drivers\swmsflt.sys
[2007/04/16 19:41:33 | 000,001,024 | RH-- | C] () -- C:\Windows\System32\NTIBUN4.dll
[2007/04/16 19:09:21 | 000,331,776 | ---- | C] () -- C:\Windows\System32\ScrollBarLib.dll
[2007/04/16 18:28:29 | 000,000,818 | ---- | C] () -- C:\Windows\generic.ini
[2007/04/16 18:28:29 | 000,000,125 | ---- | C] () -- C:\Windows\Alaunch.ini
[2007/04/16 18:28:26 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
[2007/04/16 18:28:26 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2007/02/07 00:58:10 | 000,204,800 | ---- | C] () -- C:\Windows\System32\NotesActnMenu.dll
[2007/02/07 00:57:58 | 000,266,240 | ---- | C] () -- C:\Windows\System32\NotesExtmngr.dll
[2007/02/07 00:57:20 | 000,086,016 | ---- | C] () -- C:\Windows\System32\MSNSpook.dll
[2007/02/07 00:56:30 | 000,028,672 | ---- | C] () -- C:\Windows\System32\BatchCrypto.dll
[2007/02/07 00:56:28 | 000,073,728 | ---- | C] () -- C:\Windows\System32\APISlice.dll
[2007/02/07 00:52:08 | 000,063,488 | ---- | C] () -- C:\Windows\System32\ShowErrMsg.dll
[2006/12/25 16:44:48 | 000,022,016 | ---- | C] () -- C:\Windows\System32\MailFormat_U.dll
[2006/11/13 06:50:06 | 000,071,680 | ---- | C] () -- C:\Windows\System32\HTCA_SelfExtract.bin
[2006/11/07 13:30:48 | 000,344,064 | ---- | C] () -- C:\Windows\System32\lxctcoin.dll
[2006/11/02 06:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 06:47:37 | 001,282,704 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 06:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 04:33:01 | 000,624,656 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 04:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 04:33:01 | 000,115,538 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 04:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 04:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 02:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 02:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 01:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 01:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006/08/14 18:17:14 | 000,065,536 | ---- | C] () -- C:\Windows\System32\lxctcaps.dll
[2006/08/08 16:58:04 | 000,692,224 | ---- | C] () -- C:\Windows\System32\lxctdrs.dll
[2006/05/03 15:31:04 | 000,061,440 | ---- | C] () -- C:\Windows\System32\lxctcnv4.dll
[2006/04/25 04:11:18 | 000,040,960 | ---- | C] () -- C:\Windows\System32\lxctvs.dll
[2001/12/26 16:12:30 | 000,065,536 | ---- | C] () -- C:\Windows\System32\multiplex_vcd.dll
[2001/09/03 23:46:38 | 000,110,592 | ---- | C] () -- C:\Windows\System32\Hmpg12.dll
[2001/07/30 16:33:56 | 000,118,784 | ---- | C] () -- C:\Windows\System32\HMPV2_ENC.dll
[2001/07/23 22:04:36 | 000,118,784 | ---- | C] () -- C:\Windows\System32\HMPV2_ENC_MMX.dll
========== LOP Check ==========
[2011/01/16 22:54:21 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\5400 Series
[2009/04/27 22:37:29 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\Acer
[2010/10/31 09:05:47 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\AVG
[2010/10/31 04:07:41 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\AVG10
[2009/09/22 13:10:17 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\EPSON
[2011/05/09 16:53:23 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\F-Secure
[2011/08/21 14:47:15 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\FixCleaner
[2011/07/05 10:33:03 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\go
[2009/04/27 22:37:25 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\Leadertech
[2010/04/01 16:39:24 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\LimeWire
[2011/07/15 22:57:25 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\Research In Motion
[2011/08/21 21:58:12 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\Sammsoft
[2010/10/20 20:10:08 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\Sierra Wireless
[2009/10/14 16:56:13 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\Template
[2011/04/11 19:24:13 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\Trusteer
[2010/04/01 18:30:35 | 000,000,000 | ---D | M] -- C:\Users\Nicola\AppData\Roaming\uTorrent
[2011/08/22 14:05:55 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011/08/24 11:05:08 | 000,000,508 | ---- | M] () -- C:\Windows\Tasks\Scheduled scanning task.job
[2011/08/24 11:10:11 | 000,000,424 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{A4C610E3-CB7C-482C-AD71-C4533463C02E}.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:0B4227B4
< End of report >