Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

boot.ini file missing and PC getting restarted all the time


  • Please log in to reply

#1
Damith Perera

Damith Perera

    New Member

  • Member
  • Pip
  • 1 posts
hi, as the title says my boot.ini file has been deleted due t some reason and lately my PC keeps on restarting whenever i play a game. this happens sometimes when im watching something using the vlc media player also. i downloaded OTL and did the scan as advised. i hope you will be able to give a solution for this. thank you


OTL logfile created on: 11/10/2011 1:00:32 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Damith\My Documents\Downloads
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1013.11 Mb Total Physical Memory | 435.81 Mb Available Physical Memory | 43.02% Memory free
2.38 Gb Paging File | 1.94 Gb Available in Paging File | 81.50% Paging File free
Paging file location(s): C:\pagefile.sys 1519 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 78.13 Gb Total Space | 10.87 Gb Free Space | 13.91% Space Free | Partition Type: NTFS
Drive D: | 117.19 Gb Total Space | 9.09 Gb Free Space | 7.76% Space Free | Partition Type: NTFS
Drive E: | 102.76 Gb Total Space | 8.69 Gb Free Space | 8.45% Space Free | Partition Type: NTFS

Computer Name: HOOOOOOO-PALA | User Name: Damith | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/11/10 13:00:01 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Damith\My Documents\Downloads\OTL.exe
PRC - [2011/10/26 14:10:47 | 001,036,344 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2011/10/18 15:26:43 | 000,140,952 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Update\1.3.21.79\GoogleCrashHandler.exe
PRC - [2008/02/20 11:08:46 | 000,472,320 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
PRC - [2008/02/20 11:06:58 | 001,443,072 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
PRC - [2007/05/28 22:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe
PRC - [2004/08/04 04:56:50 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2011/10/26 14:10:46 | 000,420,920 | ---- | M] () -- C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\ppgooglenaclpluginchrome.dll
MOD - [2011/10/26 14:10:45 | 003,702,840 | ---- | M] () -- C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\pdf.dll
MOD - [2011/10/26 14:09:09 | 000,122,952 | ---- | M] () -- C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\avutil-51.dll
MOD - [2011/10/26 14:09:07 | 000,222,280 | ---- | M] () -- C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\avformat-53.dll
MOD - [2011/10/26 14:09:06 | 001,745,992 | ---- | M] () -- C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\avcodec-53.dll
MOD - [2011/10/26 11:14:43 | 008,587,936 | ---- | M] () -- C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\gcswf32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - [2011/06/08 13:02:00 | 000,633,856 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2008/02/20 11:14:52 | 000,019,200 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv)
SRV - [2008/02/20 11:08:46 | 000,472,320 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn)
SRV - [2007/05/28 22:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2001/08/23 17:00:00 | 000,003,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\windows\System32\regedt32.exe -- (NOD32FiXTemDono)


========== Driver Services (SafeList) ==========

DRV - [2011/05/18 10:12:38 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2011/05/18 10:12:36 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011/05/18 10:12:32 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2011/05/18 10:12:28 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2009/10/17 17:10:04 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2009/09/21 09:33:06 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009/03/04 15:58:34 | 005,045,760 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2009/01/22 14:25:26 | 000,120,064 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2008/08/26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008/08/05 18:10:12 | 001,684,736 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2008/02/20 11:11:16 | 000,033,800 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir)
DRV - [2008/02/20 11:02:22 | 000,029,704 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\easdrv.sys -- (easdrv)
DRV - [2008/02/20 11:01:30 | 000,039,944 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2008/02/01 17:24:04 | 000,041,456 | ---- | M] (Cyberlink Corp.) [Kernel | Auto | Running] -- C:\Program Files\CyberLink\PowerDVD8\000.fcl -- ({FE4C91E7-22C2-4D0C-9F6B-82F1B7742054})
DRV - [2006/01/04 13:41:48 | 001,389,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2001/08/17 19:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.daemonsearch.com/intl/
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.google.co.uk/webhp?hl=en\r"
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: [email protected]:9.0.0.463
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0
FF - prefs.js..extensions.enabledItems: {7b13ec3e-999a-4b70-b9cb-2617b8323822}:2.7.1.3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [email protected]:1.0.0.732
FF - prefs.js..extensions.enabledItems: [email protected]:1.0.1.0
FF - prefs.js..extensions.enabledItems: {F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}:9.5.0.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: [email protected]:3.11.3.15590


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.669: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.669: c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.669: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.669: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.669: c:\program files\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\[email protected]: C:\Program Files\SearchPredict\PRFireFox
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{0329E7D6-6F54-462D-93F6-F5C3118BADF2}: C:\Program Files\SpeedBit Video Downloader\SPFireFox
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011/10/29 09:18:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/10/29 09:18:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/10/29 09:18:28 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}: C:\Program Files\DAP\DAPFireFox
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\[email protected]: C:\Documents and Settings\Damith\Application Data\IDM\idmmzcc3 [2011/01/09 19:14:38 | 000,000,000 | ---D | M]

[2009/10/17 17:12:57 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Damith\Application Data\Mozilla\Extensions
[2011/11/08 19:38:50 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Damith\Application Data\Mozilla\Firefox\Profiles\el313fka.default\extensions
[2011/11/08 19:38:50 | 000,000,000 | ---D | M] (Zynga Community Toolbar) -- C:\Documents and Settings\Damith\Application Data\Mozilla\Firefox\Profiles\el313fka.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}
[2011/11/08 16:23:30 | 000,000,000 | ---D | M] ("PandoraTV Toolbar") -- C:\Documents and Settings\Damith\Application Data\Mozilla\Firefox\Profiles\el313fka.default\extensions\[email protected]
[2011/10/25 10:01:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/09/18 13:48:43 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/12/27 08:59:26 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011/02/18 11:15:20 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/06/17 08:31:58 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2011/10/25 10:01:33 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
[2009/10/17 17:07:38 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files\Mozilla Firefox\extensions\[email protected]
[2011/10/29 09:18:13 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
[2010/04/01 15:19:54 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/09/30 21:57:31 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/10/03 05:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/09/30 21:57:29 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java™ Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
CHR - plugin: RealPlayer™ G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
CHR - plugin: RealNetworks™ RealPlayer Chrome Background Extension Plug-In (32-bit) (Enabled) = C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
CHR - plugin: RealPlayer™ HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\pdf.dll
CHR - plugin: Chrome DAP extension (Enabled) = C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ffdcfjdljhbehggjdkdioajnknjcpbjb\2.0.6_0\lib/npdapchrome.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
CHR - plugin: RealJukebox NS Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Documents and Settings\Damith\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0\

O1 HOSTS File: ([2001/08/23 17:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (SBCONVERT Class) - {A1056498-D09A-41E4-864B-505EDD640D9E} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll File not found
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{422130A4-9519-448A-98D7-82F9E020E0BE}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\ic32pp {BBCA9F81-8F4F-11D2-90FF-0080C83D3571} - C:\WINDOWS\wc98pp.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Damith\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Damith\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{00701ac5-191b-11df-8750-002268762706}\Shell - "" = AutoRun
O33 - MountPoints2\{00701ac5-191b-11df-8750-002268762706}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{00701ac5-191b-11df-8750-002268762706}\Shell\AutoRun\command - "" = I:\LaunchU3.exe -a
O33 - MountPoints2\{0c7add06-c2dd-11df-8a30-b2e4ac51bbab}\Shell - "" = AutoRun
O33 - MountPoints2\{0c7add06-c2dd-11df-8a30-b2e4ac51bbab}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{0c7add06-c2dd-11df-8a30-b2e4ac51bbab}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\{0c7add09-c2dd-11df-8a30-b2e4ac51bbab}\Shell - "" = AutoRun
O33 - MountPoints2\{0c7add09-c2dd-11df-8a30-b2e4ac51bbab}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{0c7add09-c2dd-11df-8a30-b2e4ac51bbab}\Shell\AutoRun\command - "" = I:\AutoRun.exe
O33 - MountPoints2\{157ee192-70d7-11e0-8cf5-002268762706}\Shell - "" = AutoRun
O33 - MountPoints2\{157ee192-70d7-11e0-8cf5-002268762706}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{157ee192-70d7-11e0-8cf5-002268762706}\Shell\AutoRun\command - "" = J:\LaunchU3.exe -a
O33 - MountPoints2\{23fc9dbe-eb07-11de-868a-002268762706}\Shell - "" = AutoRun
O33 - MountPoints2\{23fc9dbe-eb07-11de-868a-002268762706}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{23fc9dbe-eb07-11de-868a-002268762706}\Shell\AutoRun\command - "" = I:\LaunchU3.exe -a
O33 - MountPoints2\{4a5dbe18-e8a3-11df-8adb-be8146c88173}\Shell - "" = AutoRun
O33 - MountPoints2\{4a5dbe18-e8a3-11df-8adb-be8146c88173}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{4a5dbe18-e8a3-11df-8adb-be8146c88173}\Shell\AutoRun\command - "" = I:\AutoRun.exe
O33 - MountPoints2\{4a5dbe1b-e8a3-11df-8adb-be8146c88173}\Shell - "" = AutoRun
O33 - MountPoints2\{4a5dbe1b-e8a3-11df-8adb-be8146c88173}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{4a5dbe1b-e8a3-11df-8adb-be8146c88173}\Shell\AutoRun\command - "" = I:\AutoRun.exe
O33 - MountPoints2\J\Shell - "" = AutoRun
O33 - MountPoints2\J\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\J\Shell\AutoRun\command - "" = J:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/11/06 18:26:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Damith\My Documents\Updater
[2011/11/06 16:40:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Google Earth
[2011/11/06 16:35:42 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2011/10/29 09:18:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\xing shared
[2011/10/25 10:02:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[3 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
[3 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/11/10 12:55:26 | 000,000,280 | ---- | M] () -- C:\windows\tasks\RealUpgradeLogonTaskS-1-5-21-1757981266-1972579041-682003330-1003.job
[2011/11/10 12:55:24 | 000,000,288 | ---- | M] () -- C:\windows\tasks\RealUpgradeScheduledTaskS-1-5-21-1757981266-1972579041-682003330-1003.job
[2011/11/10 12:55:06 | 000,000,886 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/11/10 12:55:05 | 000,000,284 | ---- | M] () -- C:\windows\tasks\RealUpgradeLogonTaskS-1-5-21-1757981266-1972579041-682003330-1004.job
[2011/11/10 12:55:01 | 000,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2011/11/10 12:50:00 | 000,000,990 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1757981266-1972579041-682003330-1004UA.job
[2011/11/10 12:40:00 | 000,000,890 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/11/10 12:32:51 | 000,183,808 | ---- | M] () -- C:\Documents and Settings\Damith\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/10 12:31:00 | 000,000,982 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1757981266-1972579041-682003330-1003UA.job
[2011/11/09 22:34:32 | 000,000,292 | ---- | M] () -- C:\windows\tasks\RealUpgradeScheduledTaskS-1-5-21-1757981266-1972579041-682003330-1004.job
[2011/11/09 21:50:00 | 000,000,938 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1757981266-1972579041-682003330-1004Core.job
[2011/11/09 21:49:53 | 000,002,206 | ---- | M] () -- C:\windows\System32\wpa.dbl
[2011/11/08 17:47:54 | 000,000,116 | ---- | M] () -- C:\windows\NeroDigital.ini
[2011/11/06 15:31:00 | 000,000,930 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-1757981266-1972579041-682003330-1003Core.job
[2011/10/29 09:18:23 | 000,000,747 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\RealPlayer.lnk
[2011/10/29 09:17:52 | 000,272,896 | ---- | M] (Progressive Networks) -- C:\windows\System32\pncrt.dll
[2011/10/23 20:12:52 | 000,001,073 | -HS- | M] () -- C:\Documents and Settings\Damith\Desktop\DTKConfig.ini
[3 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
[3 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/11/06 16:35:50 | 000,000,890 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/11/06 16:35:50 | 000,000,886 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/10/29 09:18:23 | 000,000,747 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\RealPlayer.lnk
[2011/10/25 17:05:53 | 000,071,949 | ---- | C] () -- C:\Documents and Settings\Damith\Desktop\pztrain.exe
[2011/09/03 12:04:59 | 000,099,082 | ---- | C] () -- C:\windows\War3Unin.dat
[2011/07/18 16:20:47 | 000,025,600 | ---- | C] () -- C:\windows\System32\AVSredirect.dll
[2011/07/18 16:15:16 | 000,000,034 | -H-- | C] () -- C:\windows\System32\MP3ToAMRConverter_sysquict.dat
[2011/06/01 20:32:17 | 000,045,202 | ---- | C] () -- C:\Documents and Settings\Damith\Application Data\room_v3.dat
[2011/05/01 16:31:08 | 000,000,090 | ---- | C] () -- C:\windows\QBChanUtil_Trigger.ini
[2011/05/01 16:29:44 | 000,383,488 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011/03/22 19:55:29 | 000,046,658 | ---- | C] () -- C:\Documents and Settings\Damith\Application Data\room.dat
[2011/03/13 09:44:51 | 000,000,371 | ---- | C] () -- C:\windows\bookmarkflash.INI
[2011/01/22 20:42:50 | 000,110,592 | ---- | C] () -- C:\windows\System32\FsUsbExDevice.Dll
[2011/01/22 20:42:50 | 000,036,608 | ---- | C] () -- C:\windows\System32\FsUsbExDisk.Sys
[2011/01/22 20:42:46 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Damith\Application Data\$_hpcst$.hpc
[2010/09/12 15:41:13 | 000,007,763 | R--- | C] () -- C:\windows\AmvPlayer.ini
[2010/09/12 15:41:12 | 000,008,802 | R--- | C] () -- C:\windows\AmvTransform.ini
[2010/09/12 15:41:12 | 000,007,207 | R--- | C] () -- C:\windows\Disktool.INI
[2010/09/12 15:41:12 | 000,006,565 | R--- | C] () -- C:\windows\fwupgrade.ini
[2010/09/12 15:41:12 | 000,003,677 | R--- | C] () -- C:\windows\SoundCon.INI
[2010/06/20 14:08:56 | 000,363,520 | ---- | C] () -- C:\windows\System32\psisdecd.dll
[2010/06/19 21:19:09 | 000,001,536 | ---- | C] () -- C:\windows\System32\hidec.exe
[2010/04/29 18:45:19 | 000,000,604 | ---- | C] () -- C:\windows\Sof2.INI
[2010/03/10 09:18:47 | 000,000,020 | ---- | C] () -- C:\windows\crackpdf.INI
[2010/01/14 15:18:52 | 000,000,068 | ---- | C] () -- C:\windows\GECKOS.INI
[2010/01/07 19:52:58 | 000,051,712 | ---- | C] () -- C:\windows\wc98pp.dll
[2010/01/03 19:49:00 | 000,000,116 | ---- | C] () -- C:\windows\chess.ini
[2009/12/24 13:29:30 | 000,111,928 | ---- | C] () -- C:\windows\System32\PnkBstrB.exe
[2009/12/24 13:29:15 | 000,075,064 | ---- | C] () -- C:\windows\System32\PnkBstrA.exe
[2009/12/24 13:29:14 | 002,373,712 | ---- | C] () -- C:\windows\System32\pbsvc.exe
[2009/11/16 14:21:55 | 000,000,274 | ---- | C] () -- C:\windows\cdplayer.ini
[2009/10/30 20:25:56 | 000,147,456 | R--- | C] () -- C:\windows\System32\igfxCoIn_v5016.dll
[2009/10/27 20:38:49 | 000,000,056 | -H-- | C] () -- C:\windows\System32\ezsidmv.dat
[2009/10/24 17:09:35 | 000,015,360 | ---- | C] () -- C:\windows\System32\BASSMOD.dll
[2009/10/18 11:19:34 | 000,000,151 | ---- | C] () -- C:\windows\PhotoSnapViewer.INI
[2009/10/17 22:06:22 | 000,004,161 | ---- | C] () -- C:\windows\ODBCINST.INI
[2009/10/17 22:03:32 | 000,279,744 | ---- | C] () -- C:\windows\System32\FNTCACHE.DAT
[2009/10/17 19:48:44 | 000,000,116 | ---- | C] () -- C:\windows\NeroDigital.ini
[2009/10/17 19:48:43 | 000,183,808 | ---- | C] () -- C:\Documents and Settings\Damith\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/10/17 17:12:53 | 000,000,000 | ---- | C] () -- C:\windows\nsreg.dat
[2009/10/17 16:31:24 | 000,002,048 | --S- | C] () -- C:\windows\bootstat.dat
[2009/10/17 16:26:51 | 000,021,640 | ---- | C] () -- C:\windows\System32\emptyregdb.dat
[2009/10/17 16:25:39 | 000,000,000 | ---- | C] () -- C:\windows\System32\hypertrm.dll
[2009/08/21 16:58:40 | 000,122,880 | ---- | C] () -- C:\windows\System32\AitVirtualComInstall.exe
[2009/07/20 20:10:48 | 000,307,200 | ---- | C] () -- C:\windows\System32\InstallVCOM.exe
[2008/02/20 11:11:16 | 000,033,800 | ---- | C] () -- C:\windows\System32\drivers\epfwtdir.sys
[2007/10/25 17:26:10 | 000,005,632 | ---- | C] () -- C:\windows\System32\drivers\StarOpen.sys
[2005/08/15 19:15:19 | 000,036,864 | ---- | C] () -- C:\windows\System32\frapsvid.dll
[2004/08/04 05:07:22 | 000,001,788 | ---- | C] () -- C:\windows\System32\Dcache.bin
[2004/08/04 04:56:44 | 000,081,920 | ---- | C] () -- C:\windows\System32\ieencode.dll
[2004/08/02 18:20:40 | 000,004,569 | ---- | C] () -- C:\windows\System32\secupd.dat
[2001/08/23 17:00:00 | 013,107,200 | ---- | C] () -- C:\windows\System32\oembios.bin
[2001/08/23 17:00:00 | 000,673,088 | ---- | C] () -- C:\windows\System32\mlang.dat
[2001/08/23 17:00:00 | 000,435,590 | ---- | C] () -- C:\windows\System32\perfh009.dat
[2001/08/23 17:00:00 | 000,272,128 | ---- | C] () -- C:\windows\System32\perfi009.dat
[2001/08/23 17:00:00 | 000,218,003 | ---- | C] () -- C:\windows\System32\dssec.dat
[2001/08/23 17:00:00 | 000,068,360 | ---- | C] () -- C:\windows\System32\perfc009.dat
[2001/08/23 17:00:00 | 000,046,258 | ---- | C] () -- C:\windows\System32\mib.bin
[2001/08/23 17:00:00 | 000,028,626 | ---- | C] () -- C:\windows\System32\perfd009.dat
[2001/08/23 17:00:00 | 000,004,463 | ---- | C] () -- C:\windows\System32\oembios.dat
[2001/08/23 17:00:00 | 000,000,741 | ---- | C] () -- C:\windows\System32\noise.dat

========== LOP Check ==========

[2010/03/08 20:23:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Age of Empires 3
[2011/03/09 20:12:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AutoHideIP
[2010/09/16 19:50:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Bluetooth
[2011/05/01 16:31:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\COMMON FILES
[2011/06/20 16:18:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Easybits GO
[2009/11/16 09:50:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010/05/09 12:13:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Harley-Davidson_ Race to the Rally Saves
[2011/09/14 12:51:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Installations
[2010/08/29 09:31:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2011/06/21 21:34:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SpeedBit
[2011/05/01 16:47:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SQL Anywhere 11
[2011/11/10 12:38:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/03/21 08:06:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/03/13 10:58:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\aignes
[2011/03/09 20:12:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\AutoHideIP
[2009/11/17 19:27:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\DMCache
[2011/06/04 21:50:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\go
[2010/01/30 13:15:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\id Software
[2011/01/09 19:14:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\IDM
[2010/10/02 20:00:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\Nokia
[2011/01/05 10:35:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\PC Suite
[2010/01/24 18:57:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\Red Alert 3
[2011/01/22 20:42:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\Samsung
[2010/03/06 15:30:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\SystemRequirementsLab
[2011/01/23 17:55:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\Toolbar4
[2011/11/10 12:55:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\uTorrent
[2010/01/14 16:39:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Damith\Application Data\Xilisoft Corporation

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 948 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6B6F397B
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A9662AE0
@Alternate Data Stream - 112 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2B11E0DF

< End of report >
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP