My computer is suddenly refusing to load programs and will not copy/move files to other locations, and pretty much anything more memory intensive than browsing the internet will not run either. Programs begin to start and then freeze before they can fully load. When I try to copy/move files, the progress bar freezes seemingly at random. Trying to download files freezes Firefox. I have difficulty shutting down or booting up my PC. When I attempt to shut down, either it works like normal or it freezes at the splash screen. Same for when I boot up. Either it does or it freezes at the Windows logo.
A full system scan with Avast! has returned clean, and everything I download is automatically scanned. I have uninstalled various programs I can do without. My system automatically defrags itself every week, so that's not an issue. I have run ATF Cleaner. Nothing I have done has made even the slightest difference so far.
I have 2 hard drives separated into 3 partitions. C:\ and D:\ are my 320gb drive, with Windows installed on C:\. E:\ is my 2tb hard drive. To be honest right now I just want to be able to transfer the files I wish to keep from my 320gb drive to my 2tb drive and reformat the 320gb so I can put a clean Windows 7 installation on it. I do not want to touch the 2tb drive if I can help it.
OLT Log below
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
OTL logfile created on: 10/27/11 2:10:27 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = E:\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00001009 | Country: Canada | Language: ENC | Date Format: M/dd/yy
4.00 Gb Total Physical Memory | 1.94 Gb Available Physical Memory | 48.45% Memory free
8.00 Gb Paging File | 5.81 Gb Available in Paging File | 72.68% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 144.29 Gb Total Space | 71.65 Gb Free Space | 49.65% Space Free | Partition Type: NTFS
Drive D: | 144.04 Gb Total Space | 35.24 Gb Free Space | 24.47% Space Free | Partition Type: NTFS
Drive E: | 1863.01 Gb Total Space | 1726.55 Gb Free Space | 92.67% Space Free | Partition Type: NTFS
Drive F: | 3.00 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Computer Name: CHARLENE | User Name: Raven | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - E:\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe (Logitech Inc.)
PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
PRC - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe (Egis Incorporated)
PRC - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSMSNLoader32.exe (Egis inc.)
PRC - C:\Program Files (x86)\XNeat Windows Manager\XNeatWM.exe ()
PRC - C:\Program Files (x86)\XNeat Windows Manager\xnViewer.exe ()
========== Modules (No Company Name) ==========
MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
MOD - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll ()
MOD - \\?\C:\ProgramData\Microsoft\PlayReady\Cache\S-1-5-21-462593155-248269818-3965569099-1000\MSPRindiv01.key ()
MOD - C:\Program Files (x86)\XNeat Windows Manager\dlls\xnSaveAsDlg.dll ()
MOD - C:\Program Files (x86)\XNeat Windows Manager\dlls\xnTransparency.dll ()
MOD - C:\Program Files (x86)\XNeat Windows Manager\XNeatDrv.dll ()
MOD - C:\Program Files (x86)\XNeat Windows Manager\XNeatWM.exe ()
MOD - C:\Program Files (x86)\XNeat Windows Manager\xnViewer.exe ()
MOD - C:\Program Files (x86)\XNeat Windows Manager\dlls\xnMenuBuilder.dll ()
========== Win32 Services (SafeList) ==========
SRV:64bit: - (LBTServ) -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV:64bit: - (avast! Web Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV:64bit: - (avast! Mail Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV:64bit: - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (UMVPFSrv) -- C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe (Logitech Inc.)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (nvUpdatusService) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (NVIDIA Corporation)
SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (eDataSecurity Service) -- C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe (Egis Incorporated)
SRV - (eSettingsService) -- C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe ()
SRV - (AcerMemUsageCheckService) -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe ()
SRV - (eRecoveryService) -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe (Acer Inc.)
SRV - (NBService) -- D:\Program Files\Nero 7\Nero BackItUp\NBService.exe (Nero AG)
========== Driver Services (SafeList) ==========
DRV:64bit: - (LVUVC64) Logitech Webcam Pro 9000(UVC) -- C:\Windows\SysNative\drivers\lvuvc64.sys (Logitech Inc.)
DRV:64bit: - (LVRS64) -- C:\Windows\SysNative\drivers\lvrs64.sys (Logitech Inc.)
DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
DRV:64bit: - (LMouKE) -- C:\Windows\SysNative\drivers\LMouKE.Sys (Logitech, Inc.)
DRV:64bit: - (LUsbFilt) -- C:\Windows\SysNative\drivers\LUsbFilt.sys (Logitech, Inc.)
DRV:64bit: - (LHidFilt) -- C:\Windows\SysNative\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV:64bit: - (LMouFilt) -- C:\Windows\SysNative\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV:64bit: - (L8042mou) -- C:\Windows\SysNative\drivers\L8042mou.Sys (Logitech, Inc.)
DRV:64bit: - (L8042Kbd) -- C:\Windows\SysNative\drivers\L8042Kbd.sys (Logitech, Inc.)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (aswTdi) -- C:\Windows\SysNative\drivers\aswTdi.sys (AVAST Software)
DRV:64bit: - (aswSP) -- C:\Windows\SysNative\drivers\aswSP.sys (AVAST Software)
DRV:64bit: - (aswRdr) -- C:\Windows\SysNative\drivers\aswRdr.sys (AVAST Software)
DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (AVAST Software)
DRV:64bit: - (aswFsBlk) -- C:\Windows\SysNative\drivers\aswFsBlk.sys (AVAST Software)
DRV:64bit: - (LVPr2Mon) -- C:\Windows\SysNative\drivers\LVPr2M64.sys ()
DRV:64bit: - (LVPr2M64) -- C:\Windows\SysNative\drivers\LVPr2M64.sys ()
DRV:64bit: - (msvad_simple) -- C:\Windows\SysNative\drivers\povrtdev.sys (MediaMall Technologies, Inc.)
DRV:64bit: - (AnyDVD) -- C:\Windows\SysNative\drivers\AnyDVD.sys (SlySoft, Inc.)
DRV:64bit: - (ElbyCDIO) -- C:\Windows\SysNative\drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (NVENETFD) -- C:\Windows\SysNative\drivers\nvm62x64.sys (NVIDIA Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys (Duplex Secure Ltd.)
DRV:64bit: - (SafDskNT) -- C:\Windows\SysNative\drivers\SAFDSKNT.SYS (PC Dynamics, Inc.)
DRV:64bit: - (mcdbus) -- C:\Windows\SysNative\drivers\mcdbus.sys (MagicISO, Inc.)
DRV:64bit: - (psdvdisk) -- C:\Windows\SysNative\drivers\PSDVdisk.sys (Egis Incorporated)
DRV:64bit: - (PSDNServ) -- C:\Windows\SysNative\drivers\PSDNServ.sys (Egis Incorporated)
DRV:64bit: - (PSDFilter) -- C:\Windows\SysNative\drivers\psdfilter.sys (Egis Incorporated)
DRV:64bit: - (Alpham1) -- C:\Windows\SysNative\drivers\Alpham164.sys (Ideazon Corporation)
DRV:64bit: - (Alpham2) -- C:\Windows\SysNative\drivers\Alpham264.sys (Ideazon Corporation)
DRV - (AnyDVD) -- C:\Windows\SysWOW64\drivers\AnyDVD.sys (SlySoft, Inc.)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
DRV - (int15) -- C:\Acer\Empowering Technology\eRecovery\int15.sys ()
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://global.acer.com [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.youtube.com/watch?v=kHo7VBbusnM&NR=1 [binary data]IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://planetfallout...pital-Wasteland
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.wowhead.com/"
FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.7.2
FF - prefs.js..extensions.enabledItems: [email protected]:1.20.0.66
FF - prefs.js..extensions.enabledItems: [email protected]:1.6.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.12.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.1
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@gamersfirst.com/LiveLauncher: C:\Program Files (x86)\GamersFirst\LIVE!\nplivelauncher.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.647: c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.647: c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.652: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.652: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.647: c:\program files (x86)\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Raven\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Raven\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011/06/01 17:37:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/10/09 20:32:55 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/10/27 09:59:46 | 000,000,000 | ---D | M]
[2009/12/16 18:55:10 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Raven\AppData\Roaming\Mozilla\Extensions
[2011/08/20 04:14:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Raven\AppData\Roaming\Mozilla\Firefox\Profiles\nwmjbv0q.default\extensions
[2010/10/15 12:00:52 | 000,000,000 | ---D | M] (Winamp Toolbar) -- C:\Users\Raven\AppData\Roaming\Mozilla\Firefox\Profiles\nwmjbv0q.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2010/05/11 08:36:33 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Raven\AppData\Roaming\Mozilla\Firefox\Profiles\nwmjbv0q.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/08/20 04:14:58 | 000,000,000 | ---D | M] (Разпознаване на устройство Logitech) -- C:\Users\Raven\AppData\Roaming\Mozilla\Firefox\Profiles\nwmjbv0q.default\extensions\[email protected]
[2011/09/20 02:13:25 | 000,000,935 | ---- | M] () -- C:\Users\Raven\AppData\Roaming\Mozilla\Firefox\Profiles\nwmjbv0q.default\searchplugins\merriam-webster-dictionary.xml
[2010/10/15 12:03:52 | 000,001,196 | ---- | M] () -- C:\Users\Raven\AppData\Roaming\Mozilla\Firefox\Profiles\nwmjbv0q.default\searchplugins\winamp-search.xml
[2008/11/20 15:23:04 | 000,001,546 | ---- | M] () -- C:\Users\Raven\AppData\Roaming\Mozilla\Firefox\Profiles\nwmjbv0q.default\searchplugins\wowhead.xml
[2011/08/05 10:31:06 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/05/11 08:36:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/09/29 04:09:44 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/11/16 22:03:13 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/01/26 10:59:17 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011/05/16 06:32:26 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/08/05 10:31:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
() (No name found) -- C:\USERS\RAVEN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NWMJBV0Q.DEFAULT\EXTENSIONS\{D4DD63FA-01E4-46A7-B6B1-EDAB7D6AD389}.XPI
() (No name found) -- C:\USERS\RAVEN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NWMJBV0Q.DEFAULT\EXTENSIONS\[email protected]
[2011/10/09 20:32:55 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011/05/04 04:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2011/03/22 22:23:05 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Raven\AppData\Local\Google\Chrome\Application\14.0.835.202\pdf.dll
CHR - plugin: Google Gears 0.5.33.0 (Enabled) = C:\Users\Raven\AppData\Local\Google\Chrome\Application\14.0.835.202\gears.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Raven\AppData\Local\Google\Chrome\Application\14.0.835.202\gcswf32.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.220.4 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java Platform SE 6 U22 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: RealPlayer G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nppl3260.dll
CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.5 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: RealJukebox NS Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nprjplug.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nprpjplug.dll
CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll
CHR - plugin: RealPlayer HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.50917.0\npctrl.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Users\Raven\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.4_0\
CHR - Extension: AT_DJTiesto = C:\Users\Raven\AppData\Local\Google\Chrome\User Data\Default\Extensions\okmcbgkkeagngnijeiighgblfljbekip\2_0\
O1 HOSTS File: ([2006/09/18 15:37:24 | 000,000,761 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (ShowBarObj Class) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x64\ActiveToolBand.dll (Egis)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O3:64bit: - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x64\eDStoolbar.dll (Egis Incorporated.)
O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.)
O3:64bit: - HKCU\..\Toolbar\ShellBrowser: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x64\eDStoolbar.dll (Egis Incorporated.)
O3 - HKCU\..\Toolbar\ShellBrowser: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.)
O4:64bit: - HKLM..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe ()
O4:64bit: - HKLM..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x64\eDSLoader.exe (Egis Incorporated)
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [NVRaidService] C:\Windows\SysNative\nvraidservice.exe (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Windows\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [Acer Product Registration] C:\Program Files (x86)\Acer Registration\ACE1.exe (Leader Technologies)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [eRecoveryService] File not found
O4 - HKCU..\Run: [Steam] D:\Games\Steam\steam.exe (Valve Corporation)
O4 - HKCU..\Run: [XNeat Windows Manager] C:\Program Files (x86)\XNeat Windows Manager\xnViewer.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} http://www.nvidia.co...iaSmartScan.cab (NVIDIA Smart Scan)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zon...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0387CC52-77EF-478D-801E-673037019A6E}: DhcpNameServer = 192.168.1.254
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/07/14 03:29:38 | 000,000,122 | R--- | M] () - F:\autorun.inf -- [ UDF ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/10/26 21:10:41 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2011/10/26 08:24:40 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{BF812041-E3E8-4D3B-B481-43E9AD43A9DF}
[2011/10/26 08:24:24 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{9D3C8AA9-809E-40B9-8196-750F692A5762}
[2011/10/24 22:26:58 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{F2A31124-9965-415D-B56E-D090E1ACAC80}
[2011/10/24 22:26:33 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{CD7C701A-D484-4B67-8406-8D8CC3A5339E}
[2011/10/22 11:13:45 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{8D753A4C-33CE-48F0-92AB-1DC60784B964}
[2011/10/22 11:13:23 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{AFF202BC-267E-4D58-84F9-938698D5E9BD}
[2011/10/18 04:15:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
[2011/10/17 23:50:22 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{AD6E5EEC-3DDF-4BFE-AAE3-5ADCF911F886}
[2011/10/17 23:50:04 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{B017F0D6-F76C-4BD9-9569-2F89330B2DFB}
[2011/10/16 02:21:44 | 000,000,000 | ---D | C] -- C:\Users\Raven\Documents\Video Mask Projects
[2011/10/16 00:45:15 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\Logitech® Webcam Software
[2011/10/16 00:28:03 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{F622B191-0F6C-41DF-BE88-67DB1C580010}
[2011/10/16 00:27:41 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{399815AD-22ED-4840-87A8-30BBCA763D6F}
[2011/10/13 18:49:34 | 000,000,000 | -HSD | C] -- C:\ProgramData\SecuROM
[2011/10/13 16:44:43 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{86F5E49B-6006-4BB4-9935-726C2BFD94D6}
[2011/10/13 16:44:25 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{1CFE0AA9-9D24-45FE-947A-6156E258733F}
[2011/10/11 13:58:43 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{FBB6365A-06C5-4567-B94C-2BFD97A6D1FD}
[2011/10/11 13:58:24 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{2B94A881-1B63-4DF2-9A7F-47DF1C3EB583}
[2011/10/06 10:13:23 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{2DE8DE22-13E0-45C4-A531-7D41CA65D31D}
[2011/10/06 10:13:03 | 000,000,000 | ---D | C] -- C:\Users\Raven\AppData\Local\{B4DF5DE3-BD1C-47C8-8C65-9352A4A33D36}
[2008/10/22 23:44:06 | 000,016,384 | ---- | C] ( ) -- C:\Windows\SysWow64\ClearEvent.exe
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/10/27 13:21:00 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-462593155-248269818-3965569099-1000UA.job
[2011/10/27 13:21:00 | 000,000,896 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/10/27 12:05:35 | 000,834,580 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/10/27 12:05:35 | 000,702,496 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/10/27 12:05:35 | 000,140,854 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/10/27 07:12:00 | 000,009,728 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/10/27 07:12:00 | 000,009,728 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/10/27 07:05:35 | 000,000,892 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/10/27 07:04:40 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/10/27 07:04:38 | 3220,619,264 | -HS- | M] () -- C:\hiberfil.sys
[2011/10/27 07:03:09 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\lvuvc.hs
[2011/10/26 04:21:00 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-462593155-248269818-3965569099-1000Core.job
[2011/10/25 06:20:18 | 000,000,058 | ---- | M] () -- C:\Windows\SysWow64\trace.bin
[2011/10/16 00:41:19 | 000,001,588 | ---- | M] () -- C:\Users\Public\Desktop\Logitech Webcam Software .lnk
[2011/10/15 01:34:34 | 000,000,356 | ---- | M] () -- C:\Windows\tasks\McDefragTask.job
[2011/10/13 03:29:20 | 000,362,696 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/10/09 20:33:12 | 000,002,056 | ---- | M] () -- C:\Users\Raven\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/10/06 10:06:38 | 000,002,401 | ---- | M] () -- C:\Users\Raven\Desktop\Google Chrome.lnk
[2011/10/01 01:29:25 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\McQcTask.job
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/08/19 09:26:20 | 010,898,456 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2011/08/19 09:26:20 | 000,336,408 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2011/08/19 09:26:20 | 000,104,472 | ---- | C] () -- C:\Windows\SysWow64\LogiDPPApp.exe
[2011/08/05 16:32:59 | 000,281,656 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011/08/05 16:32:53 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011/08/03 03:31:54 | 000,311,912 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe
[2011/06/16 07:52:02 | 000,377,173 | ---- | C] () -- C:\Users\Raven\AppData\Roaming\Fallen Earth_2.51.1.0_2011-06-16-13-52.dmp
[2011/06/14 09:10:25 | 000,327,459 | ---- | C] () -- C:\Users\Raven\AppData\Roaming\Fallen Earth_2.51.1.0_2011-06-14-15-10.dmp
[2011/06/02 01:42:05 | 000,000,017 | ---- | C] () -- C:\Users\Raven\AppData\Local\resmon.resmoncfg
[2011/04/09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/02/26 07:53:55 | 000,820,048 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/09/10 17:34:11 | 000,705,434 | ---- | C] () -- C:\Users\Raven\AppData\Roaming\Fallen Earth_2.49.3.0_2010-09-10-23-34.dmp
[2010/08/03 17:30:06 | 000,000,058 | ---- | C] () -- C:\Windows\SysWow64\trace.bin
[2010/08/01 19:49:09 | 000,098,977 | ---- | C] () -- C:\Users\Raven\AppData\Roaming\icarus-dxdiag.xml
[2010/04/21 22:42:50 | 000,000,040 | ---- | C] () -- C:\ProgramData\ra3.ini
[2010/03/18 15:47:53 | 000,000,025 | ---- | C] () -- C:\Windows\cdplayer.ini
[2010/02/23 20:26:25 | 000,000,262 | ---- | C] () -- C:\Windows\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_WiseFW.ini
[2010/02/14 00:05:04 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010/01/06 19:46:41 | 000,000,043 | -HS- | C] () -- C:\ProgramData\.zreglib
[2009/11/30 08:24:23 | 000,000,063 | ---- | C] () -- C:\Windows\wininit.ini
[2009/10/20 15:41:48 | 000,117,248 | ---- | C] () -- C:\Windows\SysWow64\EhStorAuthn.dll
[2009/08/20 01:36:23 | 000,000,760 | ---- | C] () -- C:\Users\Raven\AppData\Roaming\setup_ldm.iss
[2009/07/27 17:28:33 | 000,484,352 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2009/07/13 23:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/13 20:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/13 20:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/13 18:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 17:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 15:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 15:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009/05/22 17:48:05 | 000,000,209 | ---- | C] () -- C:\Windows\ODBCINST.INI
[2009/05/11 01:40:16 | 000,000,569 | ---- | C] () -- C:\Windows\SIERRA.INI
[2009/01/30 00:49:59 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2008/11/09 21:33:59 | 000,000,014 | ---- | C] () -- C:\Windows\SysWow64\systeminfo.dll
[2008/11/02 13:55:26 | 000,000,564 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2008/11/02 11:51:50 | 000,000,000 | ---- | C] () -- C:\Users\Raven\AppData\Roaming\wklnhst.dat
[2008/10/22 23:47:44 | 000,000,044 | ---- | C] () -- C:\Windows\Acer(Normal).ini
[2008/10/22 23:47:44 | 000,000,042 | ---- | C] () -- C:\Windows\Acer(Wide).ini
[2008/10/22 23:44:17 | 000,000,069 | ---- | C] () -- C:\Windows\eAPLauncher.ini
[2008/10/22 23:44:06 | 000,016,384 | ---- | C] () -- C:\Windows\SysWow64\LauncheRyAgentUser.exe
[2008/03/16 17:51:01 | 000,001,024 | RH-- | C] () -- C:\Windows\SysWow64\NTIBUN4.dll
[2008/03/16 17:01:09 | 000,015,656 | ---- | C] () -- C:\Windows\SysWow64\drivers\int15_64.sys
[2008/03/16 15:44:43 | 000,001,108 | ---- | C] () -- C:\Windows\generic.ini
[2008/03/16 15:44:43 | 000,000,132 | ---- | C] () -- C:\Windows\Alaunch.ini
[2004/12/19 07:29:40 | 000,106,496 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2004/12/19 07:17:10 | 000,614,400 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2002/10/06 12:42:56 | 000,237,568 | ---- | C] () -- C:\Windows\SysWow64\OggDS.dll
[2002/10/04 17:04:24 | 000,921,600 | ---- | C] () -- C:\Windows\SysWow64\VorbisEnc.dll
[2002/10/04 17:04:24 | 000,188,416 | ---- | C] () -- C:\Windows\SysWow64\vorbis.dll
[2002/10/04 17:04:16 | 000,045,056 | ---- | C] () -- C:\Windows\SysWow64\ogg.dll
[2002/05/15 17:38:40 | 000,091,136 | ---- | C] () -- C:\Windows\SysWow64\mp4fil32.dll
[2001/12/26 16:12:30 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\multiplex_vcd.dll
[2001/09/03 23:46:38 | 000,110,592 | ---- | C] () -- C:\Windows\SysWow64\Hmpg12.dll
[2001/07/30 16:33:56 | 000,118,784 | ---- | C] () -- C:\Windows\SysWow64\HMPV2_ENC.dll
[2001/07/23 22:04:36 | 000,118,784 | ---- | C] () -- C:\Windows\SysWow64\HMPV2_ENC_MMX.dll
========== LOP Check ==========
[2009/12/16 18:54:15 | 000,000,000 | -HSD | M] -- C:\Users\Raven\AppData\Roaming\.#
[2009/12/16 18:54:15 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Acer
[2009/12/16 18:54:15 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Acer GameZone Console
[2009/12/16 18:54:17 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Azureus
[2011/03/22 02:07:56 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Crayon Physics Deluxe
[2009/12/16 18:54:17 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Cyber-D's Wallpaper Shifter 7
[2009/12/16 18:54:17 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\DAEMON Tools Lite
[2011/10/26 08:22:52 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Dropbox
[2009/08/31 18:12:54 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\eSobi
[2011/07/22 10:06:01 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\GetRightToGo
[2011/08/22 10:19:52 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\gtk-2.0
[2011/09/13 19:25:25 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Ideazon
[2011/08/06 13:50:34 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Launchy
[2009/12/16 18:54:17 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Leadertech
[2009/12/16 18:55:10 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\MobMapUpdater
[2011/07/17 10:36:15 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Notepad++
[2011/09/15 11:04:55 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\OpenCandy
[2009/12/16 18:55:12 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\OpenOffice.org
[2010/02/08 22:22:51 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Power Sound Editor Free
[2010/04/21 22:23:32 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Red Alert 3
[2010/07/18 10:43:55 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\ScripterRon
[2011/08/05 15:56:30 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Slacker
[2009/12/16 18:55:12 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\SystemRequirementsLab
[2009/12/16 18:55:12 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Template
[2011/10/27 09:52:23 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\TeraCopy
[2011/08/05 15:32:14 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\Titanium
[2011/10/18 05:25:45 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\uTorrent
[2010/08/25 11:04:12 | 000,000,000 | -HSD | M] -- C:\Users\Raven\AppData\Roaming\wyUpdate AU
[2011/10/27 13:44:37 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\XYplorer
[2010/01/14 21:39:13 | 000,000,000 | ---D | M] -- C:\Users\Raven\AppData\Roaming\yess
[2011/10/15 01:34:34 | 000,000,356 | ---- | M] () -- C:\Windows\Tasks\McDefragTask.job
[2011/10/01 01:29:25 | 000,000,348 | ---- | M] () -- C:\Windows\Tasks\McQcTask.job
[2011/02/27 08:36:19 | 000,032,564 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 24 bytes -> C:\Windows:8D5581F0AB04DFC1
< End of report >