I want to thank everyone in advance. I've used this forum in the past and everyone has always been helpful. I'm usually extremely careful with what I download and run, but every once in a while I make a mistake. I'm not sure exactly when it happened, but some time in the past week Firefox started opening on its own and opening numerous random tabs. It makes Firefox and eventually my hard drive freeze. Also, the hard drive seems to be continuously working, but it's difficult to say if that is because of the virus/spyware/malware or not. My main PC died about 2 weeks ago. It suddenly turned off and back on, but never finished starting up. I took it for diagnostics, but they couldn't tell me anything since they couldn't get anything on the monitor. They said it smelled burnt, so the motherboard probably had a short and it wasn't worth fixing. Fortunately, the hard drive was not harmed, so I was able to swap it with the hard drive in my test computer. That is where it is now, with the Firefox issue. The test computer is much older and slower, so the continuously running hard drive might just be it working harder. Anyway, I bought a new laptop and have not scrapped the PC yet, just to make sure I have everything I need. I want to make sure it is clean before I transfer any more files. Here is the OTL log:
OTL logfile created on: 11/11/2011 9:05:10 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Matthew\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
511.00 Mb Total Physical Memory | 191.48 Mb Available Physical Memory | 37.47% Memory free
2.47 Gb Paging File | 2.04 Gb Available in Paging File | 82.82% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149.05 Gb Total Space | 18.35 Gb Free Space | 12.31% Space Free | Partition Type: NTFS
Drive X: | 33.86 Gb Total Space | 0.68 Gb Free Space | 2.00% Space Free | Partition Type: NTFS
Drive Y: | 33.86 Gb Total Space | 0.68 Gb Free Space | 2.00% Space Free | Partition Type: NTFS
Computer Name: MATTHEW-SONY | User Name: Matthew | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - File not found -- C:\WINDOWS\385049707:2493189353.exe
PRC - [2011/11/11 21:04:30 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Matthew\Desktop\OTL.exe
PRC - [2011/10/01 08:07:02 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/09/14 14:10:34 | 013,128,704 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Matthew\Local Settings\Application Data\Programs\Google\MusicManager\MusicManager.exe
PRC - [2011/08/10 14:35:20 | 000,227,184 | ---- | M] () -- C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe
PRC - [2011/08/08 17:11:06 | 000,681,840 | ---- | M] () -- C:\Program Files\Motorola\MotoHelper\MotoHelperAgent.exe
PRC - [2011/06/16 21:40:58 | 000,087,368 | ---- | M] (Nero AG) -- C:\Program Files\Motorola Media Link\Lite\NServiceEntry.exe
PRC - [2011/04/22 07:21:10 | 000,092,592 | ---- | M] (TomTom) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
PRC - [2011/03/21 10:17:56 | 000,068,928 | ---- | M] (Nalpeiron Ltd.) -- C:\WINDOWS\system32\NLSSRV32.EXE
PRC - [2008/04/13 19:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/02/28 17:07:58 | 001,828,136 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
PRC - [2002/08/20 13:29:26 | 000,040,960 | ---- | M] (Easy Systems Japan Ltd.) -- C:\WINDOWS\system32\ezSP_Px.exe
========== Modules (No Company Name) ==========
MOD - [2011/10/13 14:56:19 | 008,522,400 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
MOD - [2011/10/01 08:07:02 | 001,833,944 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011/09/22 09:30:34 | 000,421,888 | ---- | M] () -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}\platform\WINNT\components\FoxyTunes.7.dll
MOD - [2011/09/19 02:59:14 | 000,465,632 | ---- | M] () -- C:\Program Files\Motorola Media Link\Lite\sqlite3.dll
MOD - [2011/09/14 14:01:12 | 000,344,064 | ---- | M] () -- C:\Documents and Settings\Matthew\Local Settings\Application Data\Programs\Google\MusicManager\libaudioenc.dll
MOD - [2011/09/14 14:01:00 | 000,346,624 | ---- | M] () -- C:\Documents and Settings\Matthew\Local Settings\Application Data\Programs\Google\MusicManager\libmpgdec.dll
MOD - [2011/09/14 14:00:22 | 000,363,520 | ---- | M] () -- C:\Documents and Settings\Matthew\Local Settings\Application Data\Programs\Google\MusicManager\libid3tag.dll
MOD - [2011/09/14 14:00:20 | 000,198,656 | ---- | M] () -- C:\Documents and Settings\Matthew\Local Settings\Application Data\Programs\Google\MusicManager\libaacdec.dll
MOD - [2011/08/10 14:35:20 | 000,227,184 | ---- | M] () -- C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe
MOD - [2011/08/08 17:11:06 | 000,681,840 | ---- | M] () -- C:\Program Files\Motorola\MotoHelper\MotoHelperAgent.exe
MOD - [2011/06/24 21:56:36 | 000,087,328 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/06/24 21:56:14 | 001,241,888 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/06/16 21:40:38 | 000,034,128 | ---- | M] () -- C:\Program Files\Motorola Media Link\Lite\NFileCacheDBAccess.dll
MOD - [2011/06/16 21:40:30 | 000,045,368 | ---- | M] () -- C:\Program Files\Motorola Media Link\Lite\NAdvLog.dll
MOD - [2011/06/16 21:40:14 | 000,128,336 | ---- | M] () -- C:\Program Files\Motorola Media Link\Lite\LiveupdateTactics.dll
MOD - [2011/06/16 21:39:52 | 000,023,872 | ---- | M] () -- C:\Program Files\Motorola Media Link\Lite\DbAccess.dll
MOD - [2008/06/20 11:02:47 | 000,245,248 | ---- | M] () -- \\?\globalroot\systemroot\system32\mswsock.dll
MOD - [2003/07/29 09:27:40 | 000,078,336 | ---- | M] () -- C:\WINDOWS\system32\spool\prtprocs\w32x86\DLBCPP5C.DLL
========== Win32 Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/08/10 14:35:20 | 000,227,184 | ---- | M] () [Auto | Running] -- C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe -- (MotoHelper)
SRV - [2011/06/16 21:40:58 | 000,087,368 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Motorola Media Link\Lite\NServiceEntry.exe -- (DeviceMonitorService)
SRV - [2011/04/22 07:21:10 | 000,092,592 | ---- | M] (TomTom) [Auto | Running] -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe -- (TomTomHOMEService)
SRV - [2011/03/21 10:17:56 | 000,068,928 | ---- | M] (Nalpeiron Ltd.) [Auto | Running] -- C:\WINDOWS\system32\NLSSRV32.EXE -- (nlsX86cc)
SRV - [2009/10/20 13:19:48 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
========== Driver Services (SafeList) ==========
DRV - [2011/04/04 13:55:38 | 000,020,480 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motccgp.sys -- (motccgp)
DRV - [2011/03/31 13:53:22 | 000,024,064 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motmodem.sys -- (motmodem)
DRV - [2010/04/01 13:31:50 | 000,023,424 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Motousbnet.sys -- (Motousbnet)
DRV - [2009/10/20 13:19:44 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF)
DRV - [2009/07/10 12:01:06 | 000,025,856 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motoandroid.sys -- (motandroidusb)
DRV - [2009/01/29 16:18:00 | 000,008,320 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motccgpfl.sys -- (motccgpfl)
DRV - [2009/01/29 16:11:20 | 000,006,016 | ---- | M] (Motorola Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motfilt.sys -- (BTCFilterService)
DRV - [2007/11/02 14:51:30 | 000,006,400 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motswch.sys -- (MotoSwitchService)
DRV - [2007/08/06 19:15:07 | 000,033,052 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2004/07/22 14:50:16 | 001,268,234 | ---- | M] (Agere Systems) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2004/03/22 20:59:52 | 000,701,440 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2003/10/30 14:20:54 | 000,766,848 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smrt.sys -- (smrt)
DRV - [2003/09/22 10:43:06 | 001,330,048 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\P16X.sys -- (P16X) Creative SB Live! Series (WDM)
DRV - [2003/09/22 06:48:06 | 000,130,192 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2003/09/22 06:47:38 | 000,178,672 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2001/08/17 12:28:00 | 000,871,388 | ---- | M] (BCM) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BCMDM.sys -- (BCMModem)
DRV - [2001/08/17 07:11:06 | 000,066,591 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\el90xbc5.sys -- (EL90XBC)
DRV - [2000/12/05 19:18:02 | 000,003,952 | R--- | M] (Sony Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\DMICall.sys -- (DMICall)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=14597
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 192.168.*.*;*.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "ZoneAlarm Security Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.condui...={searchTerms}"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "www.comcast.net"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [email protected]:3.0.0
FF - prefs.js..extensions.enabledItems: [email protected]:1.0.3
FF - prefs.js..extensions.enabledItems: unplug1@compunach:1.6.07
FF - prefs.js..extensions.enabledItems: {4BBDD651-70CF-4821-84F8-2B918CF89CA3}:6.3.3.2
FF - prefs.js..extensions.enabledItems: {6e84150a-d526-41f1-a480-a67d3fed910d}:1.4.5.1
FF - prefs.js..extensions.enabledItems: {73a6fe31-595d-460b-a920-fcc0f8843232}:2.1.0.3
FF - prefs.js..extensions.enabledItems: {a7c6cf7f-112c-4500-a7ea-39801a327e5f}:1.0.10
FF - prefs.js..extensions.enabledItems: {AA6F0803-145A-4200-8E5E-68898D02B5B3}:1.1.5
FF - prefs.js..extensions.enabledItems: {B17C1C5A-04B1-11DB-9804-B622A1EF5492}:1.2.1
FF - prefs.js..extensions.enabledItems: {DDC359D1-844A-42a7-9AA1-88A850A938A8}:2.0.2
FF - prefs.js..extensions.enabledItems: {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1
FF - prefs.js..extensions.enabledItems: 6
FF - prefs.js..extensions.enabledItems: 2
FF - prefs.js..extensions.enabledItems: 48
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: {2832ABCD-4444-1012-2D45-132D5447C445}:1.0.0
FF - prefs.js..extensions.enabledItems: {ada4b710-8346-4b82-8199-5de2b400a6ae}:1.9.9.3.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1319
FF - prefs.js..keyword.URL: "http://www.google.co...ient&gfns=1&q="
FF - prefs.js..network.proxy.socks_remote_dns: true
FF - prefs.js..network.proxy.socks_version: 0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/10/29 07:05:49 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/10/29 08:30:43 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2011/11/02 22:14:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins
[2011/02/07 08:40:52 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Extensions
[2011/02/07 08:40:52 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Extensions\[email protected]
[2011/11/11 21:03:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions
[2011/01/23 10:14:54 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/10/03 14:10:20 | 000,000,000 | ---D | M] (FoxyTunes) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}
[2011/09/07 19:47:25 | 000,000,000 | ---D | M] (FEBE) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{4BBDD651-70CF-4821-84F8-2B918CF89CA3}
[2011/01/23 09:48:44 | 000,000,000 | ---D | M] (IE View) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{6e84150a-d526-41f1-a480-a67d3fed910d}
[2011/01/23 09:48:45 | 000,000,000 | ---D | M] (Right-Click-Link) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{AA6F0803-145A-4200-8E5E-68898D02B5B3}
[2011/10/10 19:38:55 | 000,000,000 | ---D | M] (ReminderFox) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae}
[2011/01/23 09:48:45 | 000,000,000 | ---D | M] (Password Exporter) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}
[2011/01/23 09:48:46 | 000,000,000 | ---D | M] (Adobe DLM (powered by getPlus®)) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}
[2011/01/23 09:48:41 | 000,000,000 | ---D | M] (Linky) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\[email protected]
[2011/11/11 21:03:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\extensions\staged
[2011/09/11 20:28:43 | 000,002,117 | ---- | M] () -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\searchplugins\beemp3.xml
[2009/05/12 18:57:20 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\Matthew\Application Data\Mozilla\Firefox\Profiles\wypnxbag.default\searchplugins\shareminercom.xml
[2011/10/29 08:31:00 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/08/02 12:57:56 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2011/10/29 08:31:01 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
() (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTHEW\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WYPNXBAG.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTHEW\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WYPNXBAG.DEFAULT\EXTENSIONS\{7EE8902C-75BE-4286-A6CE-0C483607A322}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTHEW\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WYPNXBAG.DEFAULT\EXTENSIONS\{A7C6CF7F-112C-4500-A7EA-39801A327E5F}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTHEW\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WYPNXBAG.DEFAULT\EXTENSIONS\{DDC359D1-844A-42A7-9AA1-88A850A938A8}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTHEW\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WYPNXBAG.DEFAULT\EXTENSIONS\[email protected]
() (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTHEW\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WYPNXBAG.DEFAULT\EXTENSIONS\[email protected]
() (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTHEW\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WYPNXBAG.DEFAULT\EXTENSIONS\[email protected]
() (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTHEW\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\WYPNXBAG.DEFAULT\EXTENSIONS\[email protected]
[2011/01/23 18:21:10 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/10/01 08:07:02 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/10/03 04:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/09/11 20:15:07 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Chrome\Application\15.0.874.106\pdf.dll
CHR - plugin: AVG Internet Security (Enabled) = C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Music Beta = C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg\1.0_0\
CHR - Extension: Music Beta = C:\Documents and Settings\Matthew\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg\2.0_0\
O1 HOSTS File: ([2011/03/24 18:56:36 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [ATIModeChange] C:\WINDOWS\System32\Ati2mdxx.exe (ATI Technologies, Inc.)
O4 - HKLM..\Run: [ezShieldProtector for Px] C:\WINDOWS\system32\ezSP_Px.exe (Easy Systems Japan Ltd.)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [VAIO Recovery] C:\WINDOWS\SONYSYS\VAIO Recovery\PartSeal.exe (Sony Electronics Inc)
O4 - HKCU..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe (Nero AG)
O4 - HKCU..\Run: [MusicManager] C:\Documents and Settings\Matthew\Local Settings\Application Data\Programs\Google\MusicManager\MusicManager.exe (Google Inc.)
O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\dlbcserv.lnk = C:\Program Files\Dell Photo Printer 720\dlbcserv.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.micros...b?1295664741281 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{38F8FEEF-E7C6-42CD-9E8E-A15D86593349}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8CB53D7B-8B08-4E75-8CC4-9B4BA21DD06F}: DhcpNameServer = 192.168.0.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKCU Winlogon: Shell - (C:\Documents and Settings\Matthew\Local Settings\Application Data\6b64f316\X) -C:\Documents and Settings\Matthew\Local Settings\Application Data\6b64f316\X ()
O20 - Winlogon\Notify\igfxcui: DllName - (igfxsrvc.dll) - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/09/21 17:20:37 | 000,027,856 | ---- | M] () - C:\Auto Repairs.xlsx -- [ NTFS ]
O32 - AutoRun File - [2003/12/01 20:36:01 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
File not found -- C:\WINDOWS\System32\
[2011/11/11 21:04:21 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Matthew\Desktop\OTL.exe
[2011/11/07 05:10:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Sun
[2011/11/05 20:20:01 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Matthew\Recent
[2011/11/03 21:16:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Matthew\Local Settings\Application Data\TechHit
[2011/11/03 21:15:49 | 000,000,000 | ---D | C] -- C:\Program Files\TechHit.com
[2011/11/03 21:15:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Matthew\Start Menu\Programs\MessageSave
[2011/11/02 22:31:49 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/11/02 22:16:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Macromedia
[2011/11/02 22:16:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2011/11/02 22:14:38 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Thunderbird
[2011/11/02 22:02:25 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Matthew\Local Settings\Application Data\6b64f316
[2011/11/02 21:19:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Matthew\Local Settings\Application Data\Thunderbird
[2011/11/02 21:19:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Matthew\Application Data\Thunderbird
[2011/10/29 08:54:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/10/29 07:04:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\QuickTime
[2011/10/28 20:42:23 | 000,871,388 | ---- | C] (BCM) -- C:\WINDOWS\System32\drivers\BCMDM.sys
[2011/10/28 20:42:23 | 000,871,388 | ---- | C] (BCM) -- C:\WINDOWS\System32\dllcache\bcmdm.sys
[2011/10/25 21:18:47 | 000,000,000 | ---D | C] -- C:\Mom & Dad's Computer
[2011/10/22 20:39:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Matthew\Application Data\Guitar Pro 6
[2011/10/22 20:39:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Guitar Pro 6
[2011/10/22 20:38:07 | 000,000,000 | ---D | C] -- C:\Program Files\Guitar Pro 6
[2011/10/15 08:21:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
[2011/10/15 08:20:33 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/10/15 08:20:27 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/10/15 08:16:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Apple Computer
[2011/10/15 08:15:55 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2011/10/12 22:15:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Matthew\Application Data\Torrent Episode Downloader
[2011/01/23 18:32:17 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Matthew\Application Data\pcouffin.sys
[2003/12/01 19:28:41 | 000,065,536 | ---- | C] ( ) -- C:\WINDOWS\System32\A3d.dll
========== Files - Modified Within 30 Days ==========
File not found -- C:\WINDOWS\System32\
[2011/11/11 21:04:30 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Matthew\Desktop\OTL.exe
[2011/11/11 20:53:07 | 000,484,538 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/11/11 20:53:07 | 000,080,552 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/11/11 20:52:54 | 000,012,598 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/11/11 20:52:53 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/11/11 20:52:53 | 000,000,000 | ---- | M] () -- C:\WINDOWS\385049707
[2011/11/11 20:52:52 | 535,896,064 | -HS- | M] () -- C:\hiberfil.sys
[2011/11/10 22:13:40 | 000,000,986 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-3966106147-3845353513-3885494602-1005UA.job
[2011/11/10 19:37:50 | 000,000,384 | ---- | M] () -- C:\WINDOWS\dellstat.ini
[2011/11/10 05:12:20 | 000,000,934 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-3966106147-3845353513-3885494602-1005Core.job
[2011/11/09 20:16:15 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011/11/08 13:32:34 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/11/05 21:23:15 | 000,015,364 | -H-- | M] () -- C:\.DS_Store
[2011/11/05 20:19:18 | 000,000,722 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2011/11/04 22:28:11 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/11/02 22:15:15 | 000,001,726 | ---- | M] () -- C:\Documents and Settings\Matthew\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk
[2011/11/02 22:15:14 | 000,001,708 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Thunderbird.lnk
[2011/10/31 13:16:15 | 000,002,340 | ---- | M] () -- C:\Documents and Settings\Matthew\Desktop\Google Chrome.lnk
[2011/10/31 13:16:15 | 000,002,318 | ---- | M] () -- C:\Documents and Settings\Matthew\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/10/29 11:08:26 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2011/10/28 21:50:33 | 267,386,880 | ---- | M] () -- C:\Documents and Settings\Matthew\Desktop\The.Nightmare.Before.Christmas.1993.720p.BRRip.x264.-.Kickassddl.part2.rar
[2011/10/28 21:04:11 | 093,216,011 | ---- | M] () -- C:\Documents and Settings\Matthew\Desktop\The.Nightmare.Before.Christmas.1993.720p.BRRip.x264.-.Kickassddl.part3.rar
[2011/10/28 20:44:21 | 000,012,598 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2011/10/28 20:44:18 | 000,005,208 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF
[2011/10/28 20:07:33 | 000,000,668 | ---- | M] () -- C:\Documents and Settings\Matthew\Application Data\vso_ts_preview.xml
[2011/10/28 20:07:12 | 000,023,729 | ---- | M] () -- C:\Documents and Settings\Matthew\Desktop\MV5BMTY2MDE3NTU2Ml5BMl5BanBnXkFtZTYwNjk1NTQ5 Cropped 4x3 .jpg
[2011/10/28 20:05:58 | 000,019,027 | ---- | M] () -- C:\Documents and Settings\Matthew\Desktop\MV5BMTY2MDE3NTU2Ml5BMl5BanBnXkFtZTYwNjk1NTQ5._V1._SY317_.jpg
[2011/10/28 19:57:03 | 267,386,880 | ---- | M] () -- C:\Documents and Settings\Matthew\Desktop\The.Nightmare.Before.Christmas.1993.720p.BRRip.x264.-.Kickassddl.part1.rar
[2011/10/20 19:09:07 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011/10/20 19:08:22 | 000,122,880 | ---- | M] () -- C:\Documents and Settings\Matthew\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/10/15 08:21:40 | 000,001,582 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2011/10/13 14:53:41 | 000,228,800 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
========== Files Created - No Company Name ==========
[2011/11/02 22:43:32 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/11/02 22:15:14 | 000,001,726 | ---- | C] () -- C:\Documents and Settings\Matthew\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk
[2011/11/02 22:15:14 | 000,001,708 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Thunderbird.lnk
[2011/11/02 22:15:12 | 000,001,714 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Thunderbird.lnk
[2011/11/02 22:07:26 | 000,138,256 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011/11/02 22:02:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\385049707
[2011/11/02 20:50:56 | 000,015,364 | -H-- | C] () -- C:\.DS_Store
[2011/11/01 21:37:20 | 000,002,088 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Migration Assistant.lnk
[2011/10/30 17:09:21 | 535,896,064 | -HS- | C] () -- C:\hiberfil.sys
[2011/10/28 21:32:29 | 267,386,880 | ---- | C] () -- C:\Documents and Settings\Matthew\Desktop\The.Nightmare.Before.Christmas.1993.720p.BRRip.x264.-.Kickassddl.part2.rar
[2011/10/28 20:55:51 | 093,216,011 | ---- | C] () -- C:\Documents and Settings\Matthew\Desktop\The.Nightmare.Before.Christmas.1993.720p.BRRip.x264.-.Kickassddl.part3.rar
[2011/10/28 20:44:22 | 000,012,598 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2011/10/28 20:44:18 | 000,005,208 | ---- | C] () -- C:\WINDOWS\System32\pid.PNF
[2011/10/28 20:07:12 | 000,023,729 | ---- | C] () -- C:\Documents and Settings\Matthew\Desktop\MV5BMTY2MDE3NTU2Ml5BMl5BanBnXkFtZTYwNjk1NTQ5 Cropped 4x3 .jpg
[2011/10/28 20:05:57 | 000,019,027 | ---- | C] () -- C:\Documents and Settings\Matthew\Desktop\MV5BMTY2MDE3NTU2Ml5BMl5BanBnXkFtZTYwNjk1NTQ5._V1._SY317_.jpg
[2011/10/28 19:39:01 | 267,386,880 | ---- | C] () -- C:\Documents and Settings\Matthew\Desktop\The.Nightmare.Before.Christmas.1993.720p.BRRip.x264.-.Kickassddl.part1.rar
[2011/10/15 08:21:40 | 000,001,582 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2011/08/15 20:38:26 | 000,000,034 | -H-- | C] () -- C:\WINDOWS\System32\DVDRipper_sysquict.dat
[2011/07/11 19:02:06 | 000,005,358 | ---- | C] () -- C:\WINDOWS\System32\drivers\M5633.bin
[2011/07/02 08:54:02 | 000,232,194 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
[2011/06/14 18:41:57 | 000,000,668 | ---- | C] () -- C:\Documents and Settings\Matthew\Application Data\vso_ts_preview.xml
[2011/06/07 18:37:43 | 000,047,888 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2011/04/02 10:14:51 | 000,020,992 | ---- | C] () -- C:\WINDOWS\jestertb.dll
[2011/03/27 09:20:57 | 000,004,212 | -H-- | C] () -- C:\WINDOWS\System32\zllictbl.dat
[2011/03/24 06:28:27 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011/03/24 06:28:27 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011/03/24 06:28:27 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011/03/24 06:28:27 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011/03/24 06:28:27 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011/03/22 19:08:08 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2011/02/02 20:16:54 | 000,122,880 | ---- | C] () -- C:\Documents and Settings\Matthew\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/01/23 18:32:17 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Matthew\Application Data\pcouffin.cat
[2011/01/23 18:32:17 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Matthew\Application Data\pcouffin.inf
[2011/01/23 09:48:04 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2011/01/21 22:48:18 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2011/01/21 22:12:00 | 000,000,384 | ---- | C] () -- C:\WINDOWS\dellstat.ini
[2011/01/21 21:29:57 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009/10/20 13:19:30 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2009/09/16 17:27:58 | 000,508,224 | ---- | C] () -- C:\WINDOWS\System32\ICCProfiles.dll
[2007/03/15 15:38:28 | 000,450,560 | ---- | C] () -- C:\WINDOWS\System32\mcs_cor1.dll
[2007/03/15 15:37:24 | 000,172,032 | ---- | C] () -- C:\WINDOWS\System32\mcs_cor2.dll
[2004/02/10 15:08:00 | 000,000,373 | ---- | C] () -- C:\WINDOWS\System32\dlbccoin.ini
[2003/12/02 15:44:25 | 000,000,890 | ---- | C] () -- C:\WINDOWS\QUICKEN.INI
[2003/12/02 15:40:09 | 000,262,416 | ---- | C] () -- C:\WINDOWS\System32\ASFV2.DLL
[2003/12/02 15:37:24 | 000,009,192 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2003/12/02 15:03:45 | 000,526,184 | ---- | C] () -- C:\WINDOWS\q329692.exe
[2003/12/02 15:01:48 | 000,236,392 | ---- | C] () -- C:\WINDOWS\q329112.exe
[2003/12/02 15:01:22 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2003/12/02 14:49:49 | 000,000,031 | ---- | C] () -- C:\WINDOWS\System32\elcric.dat
[2003/12/01 20:53:24 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2003/12/01 20:39:54 | 000,000,800 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2003/12/01 20:37:17 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2003/12/01 20:34:43 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2003/12/01 19:28:56 | 000,397,312 | ---- | C] () -- C:\WINDOWS\System32\ati2evxx.exe
[2003/12/01 19:28:56 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\ati2evxx.dll
[2003/12/01 19:28:51 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\e1000msg.dll
[2003/12/01 19:28:51 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\e100bmsg.dll
[2003/12/01 19:28:41 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\cbldrm.dll
[2003/12/01 19:28:40 | 000,000,730 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2003/12/01 19:28:21 | 000,484,538 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2003/12/01 19:28:21 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2003/12/01 19:28:21 | 000,080,552 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2003/12/01 19:28:21 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2003/12/01 19:28:20 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2003/12/01 19:28:20 | 000,004,530 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2003/12/01 19:28:19 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2003/12/01 19:28:18 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2003/12/01 19:28:18 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2003/12/01 19:28:13 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2003/12/01 19:28:07 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2003/12/01 12:32:15 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2003/12/01 12:31:42 | 000,228,800 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2003/07/08 12:41:48 | 000,047,616 | ---- | C] () -- C:\WINDOWS\System32\P16X.dll
[2002/11/13 15:40:22 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\dlbcvs.dll
[2002/04/02 20:08:34 | 000,311,108 | ---- | C] () -- C:\WINDOWS\ml-cleanup.exe
========== LOP Check ==========
[2011/03/27 18:40:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2011/09/25 19:07:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011/11/02 22:34:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG2012
[2011/03/27 19:34:12 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011/10/22 20:45:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Guitar Pro 6
[2011/11/02 22:36:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/06/30 20:35:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Motorola
[2011/08/14 20:53:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Motorola Media Link
[2011/08/28 21:32:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nitro PDF
[2011/02/07 08:41:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TomTom
[2011/01/23 10:19:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/08/16 21:02:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\avidemux
[2011/03/27 09:21:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\CheckPoint
[2011/08/15 20:31:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\Digiarty
[2011/08/27 20:14:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\Downloaded Installations
[2011/08/16 21:15:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\DVDVideoSoft
[2011/08/16 21:09:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\DVDVideoSoftIEHelpers
[2011/06/28 19:31:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\FixerLabs
[2011/10/22 20:45:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\Guitar Pro 6
[2011/06/30 20:35:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\motorola
[2011/08/28 21:32:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\Nitro PDF
[2011/03/21 20:39:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\Notepad++
[2011/11/02 22:15:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\Thunderbird
[2011/02/07 08:40:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\TomTom
[2011/10/28 20:07:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matthew\Application Data\Vso
[2011/11/09 20:16:15 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
[2011/01/21 00:19:09 | 000,000,258 | ---- | M] () -- C:\WINDOWS\Tasks\Registration reminder 1.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 816 bytes -> C:\WINDOWS\385049707:2493189353.exe
@Alternate Data Stream - 60 bytes -> C:\.DS_Store:AFP_AfpInfo
< End of report >
Thank you again,
Matthew