OTL logfile created on: 9/27/2011 6:53:25 PM - Run 1
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Users\Claire\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy
3.75 Gb Total Physical Memory | 1.63 Gb Available Physical Memory | 43.38% Memory free
7.49 Gb Paging File | 5.04 Gb Available in Paging File | 67.23% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 283.65 Gb Total Space | 201.24 Gb Free Space | 70.95% Space Free | Partition Type: NTFS
Drive D: | 14.14 Gb Total Space | 2.34 Gb Free Space | 16.54% Space Free | Partition Type: NTFS
Drive E: | 99.34 Mb Total Space | 96.77 Mb Free Space | 97.42% Space Free | Partition Type: FAT32
Drive F: | 562.93 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: PC | User Name: Claire | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/09/27 18:53:11 | 000,582,656 | ---- | M] (OldTimer Tools) -- C:\Users\Claire\Downloads\OTL.exe
PRC - [2011/09/20 00:07:40 | 001,030,200 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2011/09/08 16:35:48 | 001,008,296 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Anti-Virus\fssm32.exe
PRC - [2011/09/08 16:35:47 | 000,512,680 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Anti-Virus\fsgk32.exe
PRC - [2011/08/23 17:03:08 | 022,140,304 | ---- | M] (magicJack L.P.) -- C:\Users\Claire\AppData\Roaming\mjusbsp\magicJack.exe
PRC - [2011/07/12 13:08:14 | 000,018,432 | ---- | M] () -- C:\Users\Claire\AppData\LocalLow\QuickTime\IE\QuickTimeUpdater.exe
PRC - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/05/28 09:46:56 | 000,273,544 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
PRC - [2011/05/23 10:56:29 | 000,061,088 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\eastlinkinternetsecurityservices\ORSP Client\fsorsp.exe
PRC - [2011/04/04 08:51:05 | 000,484,520 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Anti-Virus\fsav32.exe
PRC - [2011/03/28 17:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2011/03/21 15:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2011/02/18 11:47:12 | 000,079,192 | ---- | M] (Research In Motion Limited) -- C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
PRC - [2010/09/21 19:22:20 | 000,309,104 | ---- | M] (Pelmorex Media Inc.) -- C:\Users\Claire\AppData\Local\TheWeatherNetwork\WeatherEye\WeatherEye.exe
PRC - [2009/11/18 13:08:32 | 000,201,128 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Common\FSM32.EXE
PRC - [2009/11/18 13:08:32 | 000,188,840 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Common\FSMA32.EXE
PRC - [2009/11/18 13:08:32 | 000,090,536 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Common\FSHDLL32.EXE
PRC - [2009/11/18 13:06:20 | 000,221,608 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Anti-Virus\fsgk32st.exe
PRC - [2009/10/06 04:08:42 | 000,210,216 | ---- | M] (CyberLink) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
========== Modules (No Company Name) ==========
MOD - [2011/09/20 00:07:39 | 000,412,728 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\ppgooglenaclpluginchrome.dll
MOD - [2011/09/20 00:07:37 | 003,696,184 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\pdf.dll
MOD - [2011/09/20 00:06:11 | 000,142,568 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\avutil-51.dll
MOD - [2011/09/20 00:06:10 | 000,253,320 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\avformat-53.dll
MOD - [2011/09/20 00:06:09 | 002,403,240 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\avcodec-53.dll
MOD - [2011/09/19 21:32:41 | 006,338,720 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\gcswf32.dll
MOD - [2011/09/17 09:13:26 | 000,036,920 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\HP.ActiveSupportLibrary\2.0.0.1__01a974bc1760f423\HP.ActiveSupportLibrary.dll
MOD - [2011/08/23 17:08:48 | 000,083,352 | ---- | M] () -- C:\Users\Claire\AppData\Roaming\mjusbsp\octvqem_apiw.dll
MOD - [2011/08/16 07:22:22 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7f94f6b13f92f1e093716d3e15bf86d1\PresentationFramework.Aero.ni.dll
MOD - [2011/08/16 07:21:47 | 014,339,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\c60906a715473ceccf93f0559527e84d\PresentationFramework.ni.dll
MOD - [2011/08/16 07:21:32 | 012,234,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\5566b57732d9edea236f54d06149835a\PresentationCore.ni.dll
MOD - [2011/08/16 07:21:19 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\6124dbbfd45927c4a6226d6e6bca6253\WindowsBase.ni.dll
MOD - [2011/08/16 07:21:00 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\6e9a08576157b4aeb91a3aaa452fcb00\System.Management.ni.dll
MOD - [2011/08/16 07:19:22 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\e3e3b399b69c569ab1ed3b0ace2c8c20\System.Runtime.Remoting.ni.dll
MOD - [2011/08/16 07:19:18 | 006,611,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\b7d1c271ec6b4df64c95563fc81ffc2f\System.Data.ni.dll
MOD - [2011/08/16 07:18:32 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\16d2854bf69d59d94e64a918365705f1\System.Xml.ni.dll
MOD - [2011/08/16 07:18:27 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\36d0ed3f2a65b9d67933ed46dfcd2ccb\System.Configuration.ni.dll
MOD - [2011/08/16 07:18:26 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\3da7c6c1a0f26ae91883fd8b03ec192d\System.ni.dll
MOD - [2011/08/16 07:18:19 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\16b68fcaff063835ae0ee348a1201f2a\mscorlib.ni.dll
MOD - [2011/06/24 22:56:36 | 000,087,328 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/06/24 22:56:14 | 001,241,888 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/03/21 15:57:34 | 000,096,112 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2011/03/21 15:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
MOD - [2010/11/04 22:58:05 | 002,927,616 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2010/09/28 15:00:32 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Pillars\PCAlerts\PCAlertsPillar.dll
MOD - [2010/09/28 15:00:30 | 000,131,072 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Pillars\ECenter\ECLibrary.dll
MOD - [2010/09/28 15:00:14 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Microsoft.Practices.EnterpriseLibrary.ExceptionHandling.Logging.dll
MOD - [2010/02/22 11:19:10 | 007,745,536 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
MOD - [2010/02/22 11:19:08 | 002,121,728 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
MOD - [2010/02/22 11:19:08 | 000,135,168 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
MOD - [2009/11/18 13:08:42 | 000,001,536 | ---- | M] () -- C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPC\fspcfsm.eng
MOD - [2009/11/18 13:07:10 | 000,086,016 | ---- | M] () -- C:\Program Files (x86)\eastlinkinternetsecurityservices\FSGUI\strres.eng
MOD - [2009/11/18 13:07:02 | 000,553,384 | ---- | M] () -- C:\Program Files (x86)\eastlinkinternetsecurityservices\FSGUI\gres.dll
MOD - [2009/11/18 13:06:54 | 000,045,056 | ---- | M] () -- C:\Program Files (x86)\eastlinkinternetsecurityservices\FSGUI\fsavures.eng
MOD - [2009/11/18 13:06:52 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\eastlinkinternetsecurityservices\FSGUI\flyerres.eng
MOD - [2009/11/18 13:06:40 | 000,090,536 | ---- | M] () -- C:\Program Files (x86)\eastlinkinternetsecurityservices\FSGUI\aboutres.dll
MOD - [2009/11/18 13:06:36 | 000,442,792 | ---- | M] () -- C:\Program Files (x86)\eastlinkinternetsecurityservices\FSGUI\about.dll
MOD - [2009/10/06 04:08:38 | 000,931,112 | ---- | M] () -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
MOD - [2009/02/14 05:04:38 | 000,756,040 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSPTLS.DLL
MOD - [2008/10/26 05:42:14 | 000,065,376 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office12\ADDINS\ColleagueImport.dll
MOD - [2006/10/27 15:35:18 | 000,436,512 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office12\ADDINS\UmOutlookAddin.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2011/05/13 18:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2010/09/22 19:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2010/03/23 15:53:06 | 000,247,808 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe -- (STacSV)
SRV:64bit: - [2009/08/05 01:44:56 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009/07/13 22:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/03/02 19:42:58 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe -- (AESTFilters)
SRV - [2011/07/12 13:08:14 | 000,018,432 | ---- | M] () [Auto | Running] -- C:\Users\Claire\AppData\LocalLow\QuickTime\IE\QuickTimeUpdater.exe -- (QuickTimeUpdater)
SRV - [2011/06/21 15:57:34 | 000,085,560 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe -- (HP Support Assistant Service)
SRV - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/05/23 10:56:29 | 000,061,088 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- C:\Program Files (x86)\eastlinkinternetsecurityservices\ORSP Client\fsorsp.exe -- (FSORSPClient)
SRV - [2011/03/28 17:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2010/10/21 22:20:14 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/11/18 13:08:32 | 000,188,840 | ---- | M] (F-Secure Corporation) [Auto | Running] -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Common\FSMA32.EXE -- (FSMA)
SRV - [2009/11/18 13:07:30 | 000,846,248 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- C:\Program Files (x86)\eastlinkinternetsecurityservices\FWES\Program\fsdfwd.exe -- (FSDFWD)
SRV - [2009/11/18 13:06:20 | 000,221,608 | ---- | M] (F-Secure Corporation) [Auto | Running] -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Anti-Virus\fsgk32st.exe -- (F-Secure Gatekeeper Handler Starter)
SRV - [2009/06/10 18:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/06/05 21:07:28 | 000,250,616 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011/05/13 18:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011/05/13 18:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011/05/10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011/04/13 15:04:38 | 000,045,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\point64.sys -- (Point64)
DRV:64bit: - [2011/03/11 03:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 03:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/02/16 18:23:46 | 000,074,240 | ---- | M] (Research In Motion Limited) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys -- (RimUsb)
DRV:64bit: - [2010/12/21 17:12:04 | 000,050,384 | ---- | M] (F-Secure Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\fses.sys -- (FSES)
DRV:64bit: - [2010/11/20 10:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 08:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 06:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010/08/28 13:10:13 | 000,082,048 | ---- | M] (VSO Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pcouffin.sys -- (pcouffin)
DRV:64bit: - [2010/05/27 23:32:56 | 000,320,560 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010/03/23 15:53:06 | 000,505,344 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2010/03/02 16:45:24 | 001,594,368 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2009/11/18 13:07:30 | 000,094,024 | ---- | M] (F-Secure Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\fsdfw.sys -- (FSFW)
DRV:64bit: - [2009/08/05 02:23:00 | 006,038,016 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2009/07/24 04:49:00 | 000,119,312 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2009/07/13 22:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 22:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 22:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/13 21:10:47 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rootmdm.sys -- (ROOTMODEM)
DRV:64bit: - [2009/06/29 15:17:00 | 000,070,656 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\enecir.sys -- (enecir)
DRV:64bit: - [2009/06/10 18:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/10 18:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/10 18:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 18:01:06 | 001,146,880 | ---- | M] (LSI Corp) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2009/06/10 17:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/06/10 17:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/06/10 17:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64) Intel®
DRV:64bit: - [2009/06/10 17:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 17:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 17:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 17:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/23 03:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/05/18 14:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009/05/05 02:30:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:64bit: - [2009/04/29 13:48:32 | 000,018,432 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV:64bit: - [2009/03/09 11:49:08 | 000,036,408 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2009/01/09 17:02:08 | 000,031,744 | ---- | M] (Research in Motion Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RimSerial_AMD64.sys -- (RimVSerPort)
DRV - [2011/09/08 16:36:33 | 000,198,808 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Anti-Virus\minifilter\fsgk.sys -- (F-Secure Gatekeeper)
DRV - [2009/11/18 13:08:18 | 000,059,784 | ---- | M] (F-Secure Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\eastlinkinternetsecurityservices\HIPS\drivers\fshs.sys -- (F-Secure HIPS)
DRV - [2009/11/18 13:06:22 | 000,016,768 | ---- | M] () [Kernel | System | Running] -- C:\Program Files (x86)\eastlinkinternetsecurityservices\Anti-Virus\minifilter\fsvista.sys -- (fsvista)
DRV - [2009/07/13 22:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPCON/4
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ca.yahoo.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ca.yahoo.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPCON/4
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = https://www.facebook.com/home.php [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ca.my.msn.com/?lang=en-ca
IE - HKCU\..\URLSearchHook: {9565115d-c7d6-46d3-bd63-b67b481a4368} - No CLSID value found
IE - HKCU\..\URLSearchHook: {981e53ba-6df4-4d99-8c33-6c398f5c139e} - No CLSID value found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.647: c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.647: c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.652: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.652: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.647: c:\program files (x86)\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@rim.com/npappworld: C:\Program Files (x86)\Research In Motion Limited\BlackBerry App World Browser Plugin\npappworld.dll ()
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Claire\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Claire\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Claire\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Claire\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/03/29 19:51:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\eastlinkinternetsecurityservices\NRS\[email protected] [2011/08/22 11:15:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011/05/28 09:47:21 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/03/29 19:51:44 | 000,000,000 | ---D | M]
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\gcswf32.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java Platform SE 6 U26 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: RealNetworks RealPlayer Chrome Background Extension Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
CHR - plugin: RealPlayer HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
CHR - plugin: RealPlayer G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = c:\program files (x86)\real\realplayer\Netscape6\nprpjplug.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\14.0.835.186\pdf.dll
CHR - plugin: RIM Handheld Application Loader (Enabled) = C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: BlackBerry AppWorld (Enabled) = C:\Program Files (x86)\Research In Motion Limited\BlackBerry App World Browser Plugin\npappworld.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: RealJukebox NS Plugin (Enabled) = c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Candy = C:\Users\Claire\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiejadjmcgacmocgeegodfhligbpecdg\1.0_0\
CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Users\Claire\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.4_0\
CHR - Extension: QuickTime = C:\Users\Claire\AppData\Local\Google\Chrome\User Data\Default\Extensions\pefkpmedghceeahfjcpnoplmpjnfcmfc\7.1.9.155_0\
O1 HOSTS File: ([2009/06/10 18:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Browsing Protection Class) - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - C:\Program Files (x86)\eastlinkinternetsecurityservices\NRS\iescript\baselitmus.dll (F-Secure Corporation)
O2 - BHO: (QuickTime) - {D26AE2EA-3F14-42DF-AC75-14380C4ACFD0} - C:\Users\Claire\AppData\LocalLow\QuickTime\IE\QuickTime.dll (Apple Inc.)
O3 - HKLM\..\Toolbar: (Browsing Protection Toolbar) - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C:\Program Files (x86)\eastlinkinternetsecurityservices\NRS\iescript\baselitmus.dll (F-Secure Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {9565115D-C7D6-46D3-BD63-B67B481A4368} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {981E53BA-6DF4-4D99-8C33-6C398F5C139E} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4:64bit: - HKLM..\Run: [IntelliPoint] c:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [F-Secure Manager] C:\Program Files (x86)\eastlinkinternetsecurityservices\Common\FSM32.EXE (F-Secure Corporation)
O4 - HKLM..\Run: [F-Secure TNB] C:\Program Files (x86)\eastlinkinternetsecurityservices\FSGUI\TNBUtil.exe (F-Secure Corporation)
O4 - HKLM..\Run: [HPCam_Menu] c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [BitComet] "C:\Program Files (x86)\BitComet\BitComet.exe" /tray File not found
O4 - HKCU..\Run: [cdloader] C:\Users\Claire\AppData\Roaming\mjusbsp\cdloader2.exe (magicJack L.P.)
O4 - HKCU..\Run: [Search Protection] C:\Program Files (x86)\Yahoo!\Search Protection\SearchProtection.exe File not found
O4 - HKCU..\Run: [WeatherEye] C:\Users\Claire\AppData\Local\TheWeatherNetwork\WeatherEye\WeatherEye.exe (Pelmorex Media Inc.)
O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10v_ActiveX.exe (Adobe Systems, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000 File not found
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files (x86)\eastlinkinternetsecurityservices\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.micros...n/ieawsdc32.cab (Microsoft Office Template and Media Control)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebo...oUploader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3AF978D2-F3E2-49D4-91D2-5221585C951C}: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B3658AAE-13DF-4A5A-B1E1-B0096937F539}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/10/27 18:44:05 | 000,000,175 | R--- | M] () - F:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{033b31dd-3bc4-11df-855a-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{033b31dd-3bc4-11df-855a-806e6f6e6963}\Shell\AutoRun\command - "" = F:\setup.exe -- [2006/10/27 19:30:48 | 000,463,152 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{033b31dd-3bc4-11df-855a-806e6f6e6963}\Shell\configure\command - "" = F:\setup.exe -- [2006/10/27 19:30:48 | 000,463,152 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{033b31dd-3bc4-11df-855a-806e6f6e6963}\Shell\install\command - "" = F:\setup.exe -- [2006/10/27 19:30:48 | 000,463,152 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\autorun.exe
O33 - MountPoints2\G\Shell\phone\command - "" = G:\autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/09/27 07:07:36 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{AABDD862-67F5-4D86-9984-EDD02E98B38E}
[2011/09/27 07:07:24 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{7A58E134-5739-437D-81F3-6082B53531FA}
[2011/09/26 16:25:48 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{1B4D2D7D-4B24-4204-AD92-0090A49A4311}
[2011/09/26 16:25:37 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{8111A664-40B1-4CA1-8C59-BED5C8CC25BB}
[2011/09/25 22:44:13 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{7FCA055A-091E-4648-B4C6-E0F84C3E4722}
[2011/09/25 10:43:49 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{263F549C-8C92-4FA4-AC45-4AAF7BD495D8}
[2011/09/25 10:43:38 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{36286981-47A7-4E72-9BFD-718AA50C5010}
[2011/09/24 22:43:10 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{435C91B6-5813-4E70-A909-15C57955BF5F}
[2011/09/24 14:12:25 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Roaming\Mozilla
[2011/09/24 10:43:10 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{A527A187-7258-4D60-817A-797E83F6C673}
[2011/09/23 19:20:21 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{DCCA8689-7AB7-461E-BCDB-6A72E3F1CEBD}
[2011/09/23 19:20:11 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{D36D5B07-ADC7-4DB0-9521-7CC48366D42A}
[2011/09/23 07:19:44 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{AF88315E-BF13-4B5F-A5B5-084818025CC7}
[2011/09/23 07:19:33 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{1FD8F4D4-1726-4E71-9073-4A7B6C746856}
[2011/09/22 19:19:07 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{32FEE3AC-D478-433D-BBC8-27A58DB53D5D}
[2011/09/22 19:18:56 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{A95E7E50-AD1E-46B5-86F0-8B506A188523}
[2011/09/22 07:18:28 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{1FB046A4-98B9-490E-B794-6DEFE3E72F08}
[2011/09/22 07:18:18 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{5730540E-1565-4FFE-91F6-BB2203ECD402}
[2011/09/21 19:17:51 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{FD554B5E-9164-43F3-933F-C226D06EBA5D}
[2011/09/21 19:17:40 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{9FA2FADC-5D48-4D96-8111-07042A3F88B9}
[2011/09/21 07:17:07 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{938BF9CA-E73F-4854-B9CA-01F4C46A2D0F}
[2011/09/21 07:16:54 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{C3DE283C-2129-4609-B3A6-BF75B377F2FA}
[2011/09/20 19:16:25 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{C42DFC0B-7865-4AE5-A7C8-B4674169C2CF}
[2011/09/20 19:16:14 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{27DDB56C-A121-4C8A-8DA0-7BAA96BAD20D}
[2011/09/20 07:15:45 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{46C5C630-B059-44D5-8075-4F62BA233D67}
[2011/09/20 07:15:27 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{DCA8441A-C08A-4D44-B2DF-BF90CC90FA02}
[2011/09/19 17:18:04 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{84D46EDE-AADA-4FC8-B3E3-1A3865F9C79B}
[2011/09/19 17:17:52 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{DA382585-F95E-4A7D-AC38-D7245F18F304}
[2011/09/18 21:35:03 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{DF388CCB-9FA5-4B96-AA05-7D48964B99DA}
[2011/09/18 09:34:35 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{690BB930-37CD-46B3-AC2A-FF09448F5F09}
[2011/09/18 09:34:16 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{73909550-524B-482B-9B80-ECDAA9DF3648}
[2011/09/17 20:55:07 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{93D9352F-5C43-4BFC-8F91-35BAECF2F8BA}
[2011/09/17 20:54:48 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{D55A9ECB-921B-48B7-8C71-7EC4FDE6FB3A}
[2011/09/17 09:13:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
[2011/09/17 09:10:52 | 000,000,000 | ---D | C] -- C:\ProgramData\{D3B41B92-9BC2-43EB-916A-4FA9E8191837}
[2011/09/17 08:49:57 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{E17DBF8A-F311-44CE-A9BF-A5AE91DCC131}
[2011/09/17 08:49:46 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{2EE48191-6429-408E-956A-9CFED5E1A903}
[2011/09/16 19:33:49 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{181B7D0A-E5A8-4268-B8E4-7737F091EC9B}
[2011/09/16 19:33:38 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{821DF4BE-475A-4AF8-B1E4-70F7561E0A4E}
[2011/09/16 07:33:12 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{AA10DB81-0F91-4FAD-B39F-6FB953054B70}
[2011/09/16 07:33:01 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{358F872B-CA4C-4F13-B93A-835B11CDD4BB}
[2011/09/15 19:32:32 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{F850373C-D1CA-40B4-9B36-70BDD83553B2}
[2011/09/15 19:32:18 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{C4860BA6-936C-4F3F-8251-C8E17200B743}
[2011/09/15 07:20:15 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{CE241C0F-5938-4DCA-BD67-C0AF5B56052E}
[2011/09/15 07:20:04 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{8AC67FF9-4EF9-45EF-9725-5877B0C3DB44}
[2011/09/14 19:19:38 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{BABAFB4F-9D80-42F5-9187-7ED7BB859E99}
[2011/09/14 19:19:27 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{480E234D-A406-4B95-9660-8538378ECC2D}
[2011/09/14 07:18:52 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{312A6397-483E-4D86-B0C0-E9290ED44EF8}
[2011/09/14 07:18:12 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{81299AE9-6D80-4E51-8986-FFDFEF48D7EE}
[2011/09/13 19:10:57 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{1FE543FD-5879-463A-8EA8-2512CC83ED53}
[2011/09/13 19:10:46 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{290644F8-230E-4B10-AD3A-7A4E98760752}
[2011/09/13 07:10:15 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{415F1F1D-12A8-4C40-BCF7-793CCE2CA1AE}
[2011/09/13 07:10:01 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{696D4028-EA43-4E1F-A3F5-C34EDC2C7671}
[2011/09/12 16:25:20 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{54D8E691-FA4C-4293-AFED-9FCB9AD52FCF}
[2011/09/12 16:25:09 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{432ECF37-76D9-4053-8C2D-510049C3D6FC}
[2011/09/11 22:36:11 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{217DDB16-BAFF-409E-94C4-B671BA47ED79}
[2011/09/11 22:36:00 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{88E74774-2089-4C2C-8555-8A14237CF664}
[2011/09/11 10:35:34 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{CE70D9B2-C271-4E7F-90A7-9293F085E7AF}
[2011/09/11 10:35:20 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{6890B22F-B037-4C4B-A0D1-F47492CD7742}
[2011/09/10 19:48:27 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{0278D304-7BA7-4419-8F91-DB8889779FB8}
[2011/09/10 19:48:15 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{D189656C-4DEB-4596-972B-4B880A978710}
[2011/09/10 14:05:53 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Roaming\SecondLife
[2011/09/10 14:05:52 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\SecondLife
[2011/09/10 07:47:46 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{4D280F44-4E4E-4E04-89CB-DD40B77879E5}
[2011/09/10 07:47:31 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{A12A7972-F913-48D7-9739-1DA0B9A73D6C}
[2011/09/09 19:19:27 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{2C0EB720-F91B-420C-9709-2C1C99276701}
[2011/09/09 19:19:16 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{9AC05C45-9874-48C3-B4E2-EABAFA77CC7E}
[2011/09/09 07:18:37 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{97623935-D520-4AB5-877C-7D7135DBD5B6}
[2011/09/09 07:18:05 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{139DBC1C-1C05-486E-A017-3728AFF26E1E}
[2011/09/08 19:30:38 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{0081113F-06A9-4F44-AA7F-4AB68F58F8B9}
[2011/09/08 07:30:11 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{B3C8AEDB-7E4B-439F-A73C-D5EEA86FDD5F}
[2011/09/08 07:30:01 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{C9EE1470-32AE-4441-BAF6-643D9C538688}
[2011/09/07 19:29:34 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{9EF8B5C5-C858-43BC-A733-81ACADE12B1E}
[2011/09/07 07:29:09 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{822E2142-E12D-4CC5-B1A3-A7EB3DDCEE52}
[2011/09/07 07:28:59 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{00980FF4-90DD-4197-885E-52B742CD65EC}
[2011/09/06 19:28:32 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{F0E01027-141C-4218-9E41-BF5198845677}
[2011/09/06 19:28:22 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{C752E11A-61F2-4EE1-BE5E-E54DFCC08479}
[2011/09/06 07:27:45 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{B32AF2A1-49A4-41F7-BF41-61395ACDD3DE}
[2011/09/06 07:27:33 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{0D29AE76-7EEB-4A7E-B051-DFFA3479C3EA}
[2011/09/05 14:04:58 | 000,000,000 | ---D | C] -- C:\ProgramData\boost_interprocess
[2011/09/05 14:04:06 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Roaming\tigerplayer
[2011/09/05 14:04:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MpcStar
[2011/09/05 14:04:06 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Roaming\CometPlayer
[2011/09/05 13:53:53 | 000,000,000 | ---D | C] -- C:\Downloads
[2011/09/05 13:53:02 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Roaming\BitComet
[2011/09/05 12:52:13 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{D44B6916-3FBB-41EF-8DB0-0C0584F83D7B}
[2011/09/05 12:51:57 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{C7A82478-3927-457A-9F60-348DB6B36666}
[2011/09/03 07:53:58 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{B823F553-4951-4F1F-BA20-94A57A93B39B}
[2011/09/03 07:53:38 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{B038EF4E-07B3-4A35-BE47-78CDDF1D7631}
[2011/09/02 19:30:10 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{BD6862B9-D486-4C32-855B-3566DA1B3A45}
[2011/09/02 19:29:59 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{48D08D06-EA39-4229-8E65-36F9D614F376}
[2011/09/02 07:29:32 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{54357CE6-6C0C-47D8-8195-F19F08ED7DEB}
[2011/09/02 07:29:22 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{5409A318-9250-4719-B0DE-26EFAE8BA579}
[2011/09/01 19:28:55 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{11E26EF3-4108-4821-8C72-D18B8E76BE8C}
[2011/09/01 19:28:44 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{A884BC28-714D-402B-B8D3-B671E437876D}
[2011/09/01 07:28:16 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{925187A3-5D6C-443F-A5D5-F8C84843F234}
[2011/09/01 07:27:54 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{6BDAF674-6C9E-43CF-A947-03E5D6B962BC}
[2011/08/31 19:27:25 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{722A03EA-FC76-48BA-B4F2-94512C419A58}
[2011/08/31 19:27:15 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{2401FE0C-39B1-48E2-BDF0-A17B00E8D2E5}
[2011/08/31 07:26:46 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{3F9B1D26-4515-43AB-B8E2-B5856B86D233}
[2011/08/31 07:26:36 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{FCD9FBD1-1BA4-4741-908D-11A3C44237E5}
[2011/08/30 19:26:09 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{F8C312FF-788E-40FC-82B1-B11EF345B431}
[2011/08/30 19:25:58 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{56CEE733-E76F-4941-95D6-1959E7E7CF24}
[2011/08/30 07:25:31 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{F8F91B86-02F2-42E2-8B92-BF30BB1763E4}
[2011/08/30 07:25:19 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{186E39E0-3A66-4C73-BB6A-F5A24465F736}
[2011/08/29 11:48:53 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{477BBE58-5E7B-4039-8C02-39B94837B16D}
[2011/08/29 11:48:33 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{A10909C7-B1D1-48A8-ACDA-5C79FDC55200}
[2011/08/29 09:11:52 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{1D4AE0E0-6BB6-4D8D-9723-6C0EECFAF4B3}
[2011/08/28 21:11:25 | 000,000,000 | ---D | C] -- C:\Users\Claire\AppData\Local\{3757DF61-D76D-45FA-A280-4733E82621B0}
[2010/08/28 13:10:13 | 000,082,048 | ---- | C] (VSO Software) -- C:\Users\Claire\AppData\Roaming\pcouffin.sys
========== Files - Modified Within 30 Days ==========
[2011/09/27 18:56:01 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/09/27 18:51:39 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/09/27 18:51:39 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/09/27 18:17:04 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-947655318-3028320085-1551985064-1001UA.job
[2011/09/27 17:30:22 | 000,000,508 | ---- | M] () -- C:\Windows\tasks\Scheduled scanning task.job
[2011/09/27 16:59:29 | 000,741,488 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/09/27 16:59:29 | 000,638,492 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/09/27 16:59:29 | 000,114,700 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/09/27 16:55:59 | 000,000,988 | ---- | M] () -- C:\Users\Claire\Desktop\magicJack.lnk
[2011/09/27 16:55:09 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/09/27 16:55:03 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/09/27 16:55:00 | 3016,904,704 | -HS- | M] () -- C:\hiberfil.sys
[2011/09/25 14:17:02 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-947655318-3028320085-1551985064-1001Core.job
[2011/09/24 10:42:11 | 000,000,336 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForClaire.job
[2011/09/22 17:10:22 | 000,002,515 | ---- | M] () -- C:\Users\Claire\Application Data\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk
[2011/09/22 17:10:22 | 000,002,491 | ---- | M] () -- C:\Users\Public\Desktop\Safari.lnk
[2011/09/14 20:51:34 | 004,052,885 | ---- | M] () -- C:\Users\Claire\Documents\CALENDAR 2012.pdf
[2011/09/13 19:28:04 | 000,065,230 | ---- | M] () -- C:\Users\Claire\Documents\transcript-lamont4j-09-13-7-27PM.htm
[2011/09/10 15:38:27 | 000,411,833 | ---- | M] () -- C:\Users\Claire\Documents\Online Credit.pdf
[2011/09/10 08:05:09 | 000,083,416 | ---- | M] () -- C:\Users\Claire\Documents\teatreeminirecipebook1.pdf
========== Files Created - No Company Name ==========
[2011/09/24 14:12:11 | 000,000,912 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-947655318-3028320085-1551985064-1001UA.job
[2011/09/24 14:12:10 | 000,000,860 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-947655318-3028320085-1551985064-1001Core.job
[2011/09/23 10:23:14 | 000,000,336 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForClaire.job
[2011/09/22 17:10:22 | 000,002,491 | ---- | C] () -- C:\Users\Public\Desktop\Safari.lnk
[2011/09/14 20:51:45 | 004,052,885 | ---- | C] () -- C:\Users\Claire\Documents\CALENDAR 2012.pdf
[2011/09/13 19:28:02 | 000,065,230 | ---- | C] () -- C:\Users\Claire\Documents\transcript-lamont4j-09-13-7-27PM.htm
[2011/09/10 15:38:54 | 000,411,833 | ---- | C] () -- C:\Users\Claire\Documents\Online Credit.pdf
[2011/09/10 08:05:09 | 000,083,416 | ---- | C] () -- C:\Users\Claire\Documents\teatreeminirecipebook1.pdf
[2011/08/10 19:18:07 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{6134E6D1-EA39-4145-83BE-8257138AA6E4}
[2011/08/10 16:44:26 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{93D17051-CB5E-4953-BFAA-57408292AA4C}
[2011/08/10 16:10:06 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{EBA0CDB6-0974-4A3F-B461-0F3D7985C104}
[2011/08/10 07:03:08 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{5AB7C84E-01D2-48B5-876C-E4D297919F2B}
[2011/08/09 16:06:12 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{995FE098-B6A0-4A64-9CC0-959C7A5F75C5}
[2011/08/07 09:43:47 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{D7008B7C-48CE-49DA-8CFC-91F76DF70BAD}
[2011/08/06 08:53:52 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{C35D95A8-786E-456B-8158-FA9307763EDF}
[2011/08/05 22:10:08 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{1E0394A4-7310-4AFB-87AD-77146BD829D3}
[2011/08/05 16:07:40 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{5F29F894-2349-4B22-995D-879D4D3DD6A9}
[2011/08/04 16:12:06 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{608AD2BB-1969-4666-A38F-79527B4D49D3}
[2011/08/02 16:14:48 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{FCF3CA88-BF35-44AD-897B-2DFCF7EA2322}
[2011/07/31 10:00:57 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{3082E125-DACE-4137-9B66-1EA241F3D1F8}
[2011/07/27 07:34:26 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{6D72D0FF-FD53-411B-92F0-8C41289D5CA0}
[2011/07/25 21:30:07 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{CC5AEB42-4743-42CD-9FBD-F0EA68488298}
[2011/07/24 23:30:56 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{FEE83BF2-82CF-4128-9BB3-67FF4D07A43D}
[2011/07/24 16:13:14 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{1728480E-55B5-481C-A320-182C58B044BC}
[2011/07/22 06:57:05 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{306C73A3-3D73-4DD7-A091-1E476DAF2F90}
[2011/07/18 12:19:02 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{D43AFA9B-8532-4258-858F-31B6D8BB1024}
[2011/07/17 02:05:46 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{5998E553-56A6-4497-A7A5-0034A23E6D71}
[2011/07/15 16:14:11 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{FB25E1D3-EE27-404E-A1DB-FD0A7E84FE21}
[2011/07/14 12:16:34 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{383B096C-A26F-48E9-A110-976A76FEC56B}
[2011/07/14 07:10:49 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{20058FF8-5245-4021-AEC0-8C91CA89E36F}
[2011/07/09 09:26:35 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{AA8912F0-5974-4343-BB9E-3398B27E9881}
[2011/07/08 22:30:12 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{D0F0E09E-04B3-4C9A-B0BF-E49D8B2191E2}
[2011/07/02 08:31:49 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{3F961866-B059-4632-8C66-372C8B88CE16}
[2011/07/02 02:20:48 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{04601F3F-1255-4150-8BB9-CE5F461BAEF5}
[2011/06/29 22:45:06 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{DC7FDFDC-EF19-43AA-A69E-CB402057931D}
[2011/06/27 07:23:11 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{E71E6CC5-E6D4-4728-8FA2-042CE595A3A3}
[2011/06/26 10:46:54 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{8F846527-A8F5-4656-A212-479674C51583}
[2011/06/24 11:46:43 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{1F6493E8-0A21-47A4-9282-3E2474A4FFDA}
[2011/06/22 07:21:46 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{5DCDAFDD-8BA9-491D-867D-2442CF38C483}
[2011/06/18 08:45:52 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{F0F48369-B69A-476C-B0ED-4BE14ED726CD}
[2011/06/17 21:02:11 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{5D2F2B7E-E65C-4C76-8B0B-B6116F01E60C}
[2011/06/13 07:08:00 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{CA399B73-84E8-4A59-918C-5A2546BCCE3C}
[2011/06/11 09:51:10 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{B4CFECDE-42D4-40F5-A98E-CB2F840714C3}
[2011/06/10 20:24:02 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{6465328E-43B7-4D55-9DE4-C41A6AD09364}
[2011/06/09 14:29:06 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{A76BC069-3864-48C3-AC6C-33754A8542A1}
[2011/06/07 07:15:04 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{1F4876F6-BADD-4B21-8B56-74C6D205AD92}
[2011/06/06 17:42:54 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{47250B9C-08AB-4D5A-9E4D-A58E5A04D7D6}
[2011/06/03 16:11:17 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{DA8DC36D-3008-459F-B994-62AD9B13FB1B}
[2011/06/02 16:18:54 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{95241C84-3DF0-4239-BEB5-B173391D8C84}
[2011/06/02 07:32:42 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{B6BCDB95-1676-48CB-9D7B-208196E3F4D2}
[2011/06/01 07:27:07 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{DA882EC8-ADD6-4351-8F93-8023AB0661D0}
[2011/05/30 07:12:03 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{901AA48F-7BB9-49CF-8967-C2DC34DC6276}
[2011/05/28 09:41:25 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{EC67EA83-E8E0-45CE-AE19-8ADF99EABC32}
[2011/05/21 10:26:51 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{0F940EBF-305D-434F-9A46-F7CEFD17E96F}
[2011/05/20 16:58:36 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{6E1F5899-9631-4205-A8AD-67D2F8F8FF64}
[2011/05/19 16:29:00 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{55221B88-24A8-4000-9E06-A1D23C3E8079}
[2011/05/19 07:26:36 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{C9F0153D-2BC4-4018-BD0D-A84C11CEFC16}
[2011/05/17 07:30:54 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{8309DB98-DCE5-419F-BA58-32BEB55B4FF5}
[2011/05/17 07:09:48 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{0F327553-D0BF-4410-8261-93FC87C43823}
[2011/05/15 11:34:15 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{9FD40BE7-0BFF-4243-9C20-A368B0C7CADD}
[2011/05/14 10:20:01 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{C0809BD6-11EE-4444-AFE8-A951FDF3EB25}
[2011/05/13 23:20:21 | 000,008,769 | ---- | C] () -- C:\Users\Claire\AppData\Local\tmp208165_10150224260655996_530710995_9028927_8353809_N - COPY - COPY - COPY - COPY - COPY - COPY - COPY_CROP.JPG
[2011/05/13 23:20:21 | 000,008,651 | ---- | C] () -- C:\Users\Claire\AppData\Local\tmp208165_10150224260655996_530710995_9028927_8353809_N - COPY - COPY - COPY - COPY - COPY - COPY - COPY_CROP.0
[2011/05/13 07:38:21 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{C07B9DA3-1C79-4700-93C6-F36108A6D92E}
[2011/05/05 16:27:19 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{02E199EE-BF0F-4132-A265-D5FFE35182DB}
[2011/05/04 10:30:31 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{AF15D84F-7A67-4284-88C7-1043FE53425A}
[2011/05/02 07:24:48 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{04AF7FF4-EF9C-467A-BAB8-683E3D4D75A4}
[2011/05/01 15:58:39 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{9D732BDD-4C1A-4B1E-B652-52F1A9B1467C}
[2011/05/01 14:19:48 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{DA9A1CA7-5300-4505-B5D6-6413A978B612}
[2011/04/29 06:30:24 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{7A6FD9FA-620F-4255-A721-C4726AE60A02}
[2011/04/28 16:56:49 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{293763B3-915F-44A5-AB55-8BAB22294586}
[2011/04/26 07:15:46 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{9852B0E5-2823-46CF-A65F-12CCEDF40391}
[2011/04/25 10:41:57 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{70CF5FEF-46E5-4E96-9C4B-FDD19638FB24}
[2011/04/21 16:29:04 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{BE9BFE47-5B70-491E-9196-306C52B8C197}
[2011/04/19 13:23:36 | 000,000,000 | ---- | C] () -- C:\Users\Claire\AppData\Local\{CB118393-2B30-495E-A6CA-40F06FD92E29}
[2011/03/11 17:25:11 | 000,001,854 | ---- | C] () -- C:\Users\Claire\AppData\Roaming\GhostObjGAFix.xml
[2010/11/17 22:12:22 | 000,013,824 | ---- | C] () -- C:\Users\Claire\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/10/25 19:17:43 | 000,110,080 | ---- | C] () -- C:\Windows\SysWow64\advd.dll
[2010/10/25 19:17:43 | 000,023,040 | ---- | C] () -- C:\Windows\SysWow64\auth.dll
[2010/10/25 19:17:40 | 000,237,568 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2010/09/28 15:00:12 | 000,012,800 | ---- | C] () -- C:\Windows\LPRES.DLL
[2010/09/22 13:47:09 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2010/08/28 13:16:54 | 000,819,200 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2010/08/28 13:16:53 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2010/08/28 13:10:13 | 000,093,696 | ---- | C] () -- C:\Users\Claire\AppData\Roaming\ezpinst.exe
[2010/08/28 13:10:13 | 000,007,176 | ---- | C] () -- C:\Users\Claire\AppData\Roaming\pcouffin.cat
[2010/08/28 13:10:13 | 000,001,167 | ---- | C] () -- C:\Users\Claire\AppData\Roaming\pcouffin.inf
[2010/05/24 22:20:08 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/03/29 20:14:27 | 000,042,672 | ---- | C] () -- C:\Windows\SysWow64\drivers\fsbts.sys
[2010/03/29 20:14:03 | 000,746,398 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/03/29 19:51:25 | 000,023,115 | ---- | C] () -- C:\Windows\hpqins15.dat
[2010/01/12 06:44:09 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/01/12 06:37:57 | 000,000,283 | ---- | C] () -- C:\Windows\SysWow64\RStoneLog2.ini
[2010/01/12 06:37:57 | 000,000,224 | ---- | C] () -- C:\Windows\SysWow64\RStoneLog.ini
[2009/07/14 02:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/13 23:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/13 23:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/13 21:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 20:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 18:59:36 | 001,498,564 | ---- | C] () -- C:\Windows\SysWow64\igkrng400.bin
[2009/07/13 18:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 18:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009/06/07 08:27:20 | 000,073,728 | ---- | C] () -- C:\Windows\SysWow64\vbzlib1.dll
========== LOP Check ==========
[2011/09/15 23:05:26 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\BitComet
[2011/05/01 15:10:43 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\Blackberry Desktop
[2011/09/05 14:04:25 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\CometPlayer
[2010/10/25 23:30:10 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\concept design
[2011/08/10 17:00:00 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\F-Secure
[2011/06/25 01:22:16 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\FrostWire
[2010/10/25 20:20:18 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\Marine Aquarium 3
[2011/09/27 16:56:02 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\mjusbsp
[2011/05/01 14:22:56 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\Research In Motion
[2011/09/10 14:06:43 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\SecondLife
[2011/09/05 14:05:30 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\tigerplayer
[2010/11/13 14:05:57 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\Uniblue
[2010/08/28 13:12:35 | 000,000,000 | ---D | M] -- C:\Users\Claire\AppData\Roaming\Vso
[2011/08/22 10:08:45 | 000,032,566 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011/09/27 17:30:22 | 000,000,508 | ---- | M] () -- C:\Windows\Tasks\Scheduled scanning task.job
========== Purity Check ==========
< End of report >