Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

PC Gets frozen at Log In after pressing Ctrl+Alt+Delete


  • Please log in to reply

#1
SJ Danny

SJ Danny

    Member

  • Member
  • PipPip
  • 86 posts
So this has happened to me on 3 different occasions, I've reset my PC (which i tend to leave on for long durations) and before logging in, i have the Ctrl+Alt+Delete prompt. Well as soon as i do press Ctrl+Alt+Delete the prompt disappears and thats it. It seems to freeze but i can still move my mouse around.

The only way i can fix it is to go into safe mode and do a system restore.

--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------

OTL logfile created on: 12/10/2011 6:23:54 PM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\SSSJDanny\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

8.00 Gb Total Physical Memory | 5.54 Gb Available Physical Memory | 69.27% Memory free
16.00 Gb Paging File | 13.19 Gb Available in Paging File | 82.44% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465.76 Gb Total Space | 75.97 Gb Free Space | 16.31% Space Free | Partition Type: NTFS
Drive D: | 372.61 Gb Total Space | 39.31 Gb Free Space | 10.55% Space Free | Partition Type: NTFS
Drive E: | 931.51 Gb Total Space | 112.95 Gb Free Space | 12.13% Space Free | Partition Type: NTFS
Drive F: | 1862.89 Gb Total Space | 141.32 Gb Free Space | 7.59% Space Free | Partition Type: NTFS

Computer Name: SSSJDANNY | User Name: SSSJDanny | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - File not found --
PRC - [2011/12/10 18:23:06 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\SSSJDanny\Desktop\OTL.exe
PRC - [2011/12/06 16:16:45 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2011/11/10 16:45:36 | 000,851,968 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-8.12.071\Applets\x86\LCDYT.exe
PRC - [2011/11/10 16:45:36 | 000,516,096 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsMono-8.12.072\Applets\x86\LCDMedia.exe
PRC - [2011/11/10 16:45:35 | 000,850,504 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-8.12.071\Applets\x86\LCDMovieViewer.exe
PRC - [2011/11/10 16:45:35 | 000,498,248 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech Gaming Software\plugins\LCDAppletsColor-8.12.071\Applets\x86\LCDWebCam.exe
PRC - [2011/11/08 20:29:17 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011/11/03 10:25:08 | 008,094,080 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer.exe
PRC - [2011/11/03 10:25:08 | 002,358,656 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
PRC - [2011/08/31 17:00:48 | 000,449,608 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2011/08/31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011/07/02 20:03:03 | 000,639,352 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
PRC - [2010/11/14 16:30:50 | 000,222,496 | ---- | M] (Acresso Corporation) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
PRC - [2010/07/23 11:24:48 | 000,296,808 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe
PRC - [2010/05/04 11:07:22 | 000,503,080 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2010/03/18 18:17:48 | 000,019,456 | ---- | M] (Creative Technology Ltd) -- C:\Windows\SysWOW64\CtHelper.exe
PRC - [2009/12/01 23:45:56 | 000,468,480 | ---- | M] (Entru Inc.) -- C:\Program Files (x86)\Auto Shutdown\AutoShutdown.exe


========== Modules (No Company Name) ==========

MOD - [2011/11/08 20:29:17 | 001,989,592 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2011/10/01 21:54:39 | 006,277,280 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2010/01/21 00:34:10 | 008,793,952 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll
MOD - [2010/01/09 19:18:18 | 004,254,560 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/09/08 09:29:56 | 000,204,288 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010/11/11 14:36:38 | 000,282,616 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2010/11/11 14:36:38 | 000,012,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2010/09/22 17:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/12/16 15:44:44 | 003,750,400 | ---- | M] (SafeNet Inc.) [Auto | Running] -- C:\Windows\SysNative\hasplms.exe -- (hasplms)
SRV:64bit: - [2009/07/13 17:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 17:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011/12/06 16:16:45 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011/11/03 10:25:08 | 002,358,656 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2011/08/31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/07/26 14:50:26 | 000,411,432 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2010/07/23 11:24:48 | 000,296,808 | ---- | M] (Nuance Communications, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe -- (DragonSvc)
SRV - [2010/05/04 11:07:22 | 000,503,080 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/06/10 13:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011/09/08 10:27:22 | 010,203,648 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2011/09/08 10:27:22 | 010,203,648 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2011/09/08 08:52:40 | 000,310,784 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011/08/31 17:00:50 | 000,025,416 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2011/06/06 14:07:00 | 000,231,440 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2011/03/10 22:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/10 22:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/03/01 11:12:48 | 000,087,456 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\LMIRfsClientNP.dll -- (LMIRfsClientNP)
DRV:64bit: - [2010/11/20 05:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 03:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 03:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010/10/24 21:25:38 | 000,072,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2010/10/10 17:56:46 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2010/09/29 16:14:00 | 000,030,208 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motmodem.sys -- (motmodem)
DRV:64bit: - [2010/09/22 23:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2010/09/17 14:40:06 | 000,072,216 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\LMIRfsDriver.sys -- (LMIRfsDriver)
DRV:64bit: - [2010/09/17 14:39:58 | 000,011,552 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lmimirr.sys -- (lmimirr)
DRV:64bit: - [2010/05/06 01:21:46 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010/04/27 15:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmVirHid.sys -- (WmVirHid)
DRV:64bit: - [2010/04/27 15:57:14 | 000,036,936 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmHidLo.sys -- (WmHidLo)
DRV:64bit: - [2010/04/27 15:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmBEnum.sys -- (WmBEnum)
DRV:64bit: - [2010/04/27 13:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmXlCore.sys -- (WmXlCore)
DRV:64bit: - [2010/04/27 13:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmFilter.sys -- (WmFilter)
DRV:64bit: - [2010/03/18 19:52:18 | 000,295,000 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\haP17v2k.sys -- (hap17v2k)
DRV:64bit: - [2010/03/18 19:52:10 | 000,259,672 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\haP16v2k.sys -- (hap16v2k)
DRV:64bit: - [2010/03/18 19:52:02 | 001,360,984 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ha10kx2k.sys -- (ha10kx2k)
DRV:64bit: - [2010/03/18 19:51:50 | 000,147,544 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\emupia2k.sys -- (emupia)
DRV:64bit: - [2010/03/18 19:51:34 | 000,290,392 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV:64bit: - [2010/03/18 19:51:26 | 000,016,984 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ctprxy2k.sys -- (ctprxy2k)
DRV:64bit: - [2010/03/18 19:51:18 | 000,221,272 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ctoss2k.sys -- (ossrv)
DRV:64bit: - [2010/03/18 19:50:52 | 000,866,264 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM)
DRV:64bit: - [2010/03/18 19:50:42 | 000,580,696 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ctac32k.sys -- (ctac32k)
DRV:64bit: - [2010/03/18 19:40:10 | 000,141,912 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CTERFXFX.sys -- (CTERFXFX)
DRV:64bit: - [2010/03/18 19:40:02 | 000,681,048 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CTSBLFX.sys -- (CTSBLFX)
DRV:64bit: - [2010/03/18 19:39:54 | 000,706,648 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CTAUDFX.sys -- (CTAUDFX)
DRV:64bit: - [2010/03/18 19:39:44 | 000,158,808 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\COMMONFX.sys -- (COMMONFX)
DRV:64bit: - [2009/11/23 16:38:00 | 000,016,008 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGVirHid.sys -- (LGVirHid)
DRV:64bit: - [2009/11/23 16:37:50 | 000,022,408 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGBusEnum.sys -- (LGBusEnum)
DRV:64bit: - [2009/09/28 08:22:00 | 000,395,264 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/09/21 07:07:26 | 000,071,040 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aksdf.sys -- (aksdf)
DRV:64bit: - [2009/09/03 15:30:20 | 000,128,512 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tiehdusb.sys -- (TIEHDUSB)
DRV:64bit: - [2009/08/20 06:02:06 | 000,130,816 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aksfridge.sys -- (aksfridge)
DRV:64bit: - [2009/08/13 21:10:18 | 000,073,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:64bit: - [2009/07/13 17:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 17:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 17:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/10 11:06:50 | 000,031,744 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motoandroid.sys -- (motandroidusb)
DRV:64bit: - [2009/07/09 02:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009/07/01 10:54:54 | 000,030,728 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGPBTDD.sys -- (LGPBTDD)
DRV:64bit: - [2009/06/10 12:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 12:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 12:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 12:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/03/13 09:55:38 | 000,318,464 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hardlock.sys -- (hardlock)
DRV:64bit: - [2007/10/03 21:51:00 | 000,022,056 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SiWinAcc.sys -- (SiFilter)
DRV:64bit: - [2007/10/03 21:50:52 | 000,017,448 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SiRemFil.sys -- (SiRemFil)
DRV:64bit: - [2007/10/03 21:50:26 | 000,090,664 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SI3132.sys -- (SI3132)
DRV:64bit: - [2007/04/12 07:10:28 | 000,151,296 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\COMMONFX.DLL -- (COMMONFX.DLL)
DRV:64bit: - [2007/04/10 03:17:22 | 000,123,688 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\CTHWIUT.DLL -- (CTHWIUT.DLL)
DRV:64bit: - [2007/04/10 03:17:00 | 000,252,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\CT20XUT.DLL -- (CT20XUT.DLL)
DRV:64bit: - [2007/04/10 03:16:20 | 001,571,112 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\CTEXFIFX.DLL -- (CTEXFIFX.DLL)
DRV:64bit: - [2007/04/10 03:15:44 | 000,363,304 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\CTEDSPSY.DLL -- (CTEDSPSY.DLL)
DRV:64bit: - [2007/04/10 03:15:10 | 000,190,248 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\CTEDSPIO.DLL -- (CTEDSPIO.DLL)
DRV:64bit: - [2007/04/10 03:14:28 | 000,142,120 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\CTERFXFX.DLL -- (CTERFXFX.DLL)
DRV:64bit: - [2007/04/10 03:13:38 | 000,321,832 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\CTEDSPFX.DLL -- (CTEDSPFX.DLL)
DRV:64bit: - [2007/04/10 03:13:08 | 000,219,432 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\CTEAPSFX.DLL -- (CTEAPSFX.DLL)
DRV:64bit: - [2007/04/10 03:12:22 | 000,681,256 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\CTSBLFX.DLL -- (CTSBLFX.DLL)
DRV:64bit: - [2007/04/10 03:11:46 | 000,700,200 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\CTAUDFX.DLL -- (CTAUDFX.DLL)
DRV:64bit: - [2005/03/29 00:30:38 | 000,008,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV - [2009/07/13 17:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = E3 78 B2 F3 DE A0 CC 01 [binary data]
IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No CLSID value found
IE - HKCU\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - No CLSID value found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.param.yahoo-fr: "chrf-ytbm"
FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "chrf-ytbm"
FF - prefs.js..browser.search.param.yahoo-type: "${8}"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..extensions.enabledItems: {FBF6D7FB-F305-4445-BB3D-FEF66579A033}:5.0.1
FF - prefs.js..extensions.enabledItems: {DDC359D1-844A-42a7-9AA1-88A850A938A8}:2.0.7
FF - prefs.js..extensions.enabledItems: {01A8CA0A-4C96-465b-A49B-65C46FAD54F9}:6.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}:5.5
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {bee6eb20-01e0-ebd1-da83-080329fb9a3a}:0.32
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..extensions.enabledItems: [email protected]:3.3.3.2
FF - prefs.js..extensions.enabledItems: [email protected]:1.0.53.2
FF - prefs.js..extensions.enabledItems: [email protected]:5.0.7.0
FF - prefs.js..extensions.enabledItems: [email protected]:1.1
FF - prefs.js..extensions.enabledItems: {4c7097f7-08f2-4ef2-9b9f-f95fa4cbb064}:1.0
FF - prefs.js..keyword.URL: "http://www.google.co...lient&hl=en&q="


FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.0: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll File not found
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.102.0: C:\Program Files (x86)\Battlelog Web Plugins\1.102.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.96.0: C:\Program Files (x86)\Battlelog Web Plugins\1.96.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.1.11: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\SSSJDanny\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\SSSJDanny\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}: C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} [2010/08/06 21:00:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/11/08 20:29:18 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/10/07 21:10:34 | 000,000,000 | ---D | M]

[2010/08/05 00:43:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Extensions
[2011/11/16 15:24:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\extensions
[2011/10/07 20:58:17 | 000,000,000 | ---D | M] (Multirow Bookmarks Toolbar Plus) -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\extensions\{4c7097f7-08f2-4ef2-9b9f-f95fa4cbb064}
[2011/08/18 00:10:31 | 000,000,000 | ---D | M] (Flash and Video Download) -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}
[2011/09/25 17:36:24 | 000,000,000 | ---D | M] (20-20 3D Viewer - IKEA) -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\extensions\[email protected]
[2011/07/21 12:56:28 | 000,000,000 | ---D | M] (Battlefield Play4Free) -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\extensions\[email protected]
[2011/07/02 20:03:25 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\extensions\[email protected]
[2011/10/07 20:58:17 | 000,000,000 | ---D | M] (TinEye Reverse Image Search) -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\extensions\[email protected]
[2011/02/27 18:43:53 | 000,012,703 | ---- | M] () -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\searchplugins\imdb.xml
[2011/04/10 16:22:38 | 000,002,057 | ---- | M] () -- C:\Users\SSSJDanny\AppData\Roaming\Mozilla\Firefox\Profiles\w1kqdzbq.default\searchplugins\youtube-video-search.xml
[2011/11/09 15:53:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/10/20 12:00:15 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
() (No name found) -- C:\USERS\SSSJDANNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\W1KQDZBQ.DEFAULT\EXTENSIONS\{C0C9A2C7-2E5C-4447-BC53-97718BC91E1B}.XPI
() (No name found) -- C:\USERS\SSSJDANNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\W1KQDZBQ.DEFAULT\EXTENSIONS\{DDC359D1-844A-42A7-9AA1-88A850A938A8}.XPI
() (No name found) -- C:\USERS\SSSJDANNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\W1KQDZBQ.DEFAULT\EXTENSIONS\[email protected]
[2011/11/08 20:29:18 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2010/03/27 17:06:04 | 000,067,032 | ---- | M] (Adobe Systems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npContribute.dll
[2011/10/03 04:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2011/09/22 17:16:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2011/11/08 20:29:18 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========


O1 HOSTS File: ([2011/11/20 19:57:56 | 000,001,020 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 serial.alcohol-soft.com
O1 - Hosts: 127.0.0.1 www.alcohol-soft.com
O1 - Hosts: 127.0.0.1 images.alcohol-soft.com
O1 - Hosts: 127.0.0.1 trial.alcohol-soft.com
O1 - Hosts: 127.0.0.1 alcohol-soft.com
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL File not found
O4:64bit: - HKLM..\Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc.)
O4:64bit: - HKLM..\Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe" File not found
O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Logitech Inc.)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AsioThk32Reg] C:\Windows\SysWow64\ctasio.dll (Creative Technology Ltd)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [CTHelper] C:\Windows\SysWow64\CtHelper.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [CTxfiHlp] C:\Windows\SysWow64\Ctxfihlp.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [DNS7reminder] C:\Program Files (x86)\Nuance\NaturallySpeaking11\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKCU..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun File not found
O4 - HKCU..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation)
O4 - HKCU..\Run: [RGSC] C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent File not found
O4 - HKCU..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - Startup: C:\Users\SSSJDanny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Auto Shutdown.lnk = C:\Program Files (x86)\Auto Shutdown\AutoShutdown.exe (Entru Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowLegacyWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowUnhashedWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {AEA3991E-3109-4C98-989E-33994FEB1A91} http://content.syste...64_4.4.21.0.cab (SysInfo Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = sanchezelectric.local
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9E724471-A211-4228-990E-A1955BDECFC8}: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F98A60C7-9647-41E8-947B-04A5589466B2}: NameServer = 8.8.8.8,8.8.4.4
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - AppInit_DLLs: (acaptuser64.dll) - C:\Windows\SysNative\acaptuser64.dll (Adobe Systems, Inc.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:64bit: - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Program Files (x86)\Stardock\Fences\FencesMenu64.dll (Stardock)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/08/29 19:30:15 | 000,000,095 | ---- | M] () - D:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{45f24ac5-a115-11df-bbcb-001d60dd9267}\Shell - "" = AutoRun
O33 - MountPoints2\{45f24ac5-a115-11df-bbcb-001d60dd9267}\Shell\AutoRun\command - "" = H:\INSTALL.EXE
O33 - MountPoints2\{51dae20d-6327-11e0-a5bd-001d60dda7dd}\Shell - "" = AutoRun
O33 - MountPoints2\{51dae20d-6327-11e0-a5bd-001d60dda7dd}\Shell\AutoRun\command - "" = I:\setup.exe -a
O33 - MountPoints2\{51dae2b0-6327-11e0-a5bd-001d60dda7dd}\Shell - "" = AutoRun
O33 - MountPoints2\{51dae2b0-6327-11e0-a5bd-001d60dda7dd}\Shell\AutoRun\command - "" = I:\setup.exe -a
O33 - MountPoints2\{6e27c36c-97c2-11e0-b129-001d60dd9267}\Shell - "" = AutoRun
O33 - MountPoints2\{6e27c36c-97c2-11e0-b129-001d60dd9267}\Shell\AutoRun\command - "" = I:\PcOptions.exe
O33 - MountPoints2\{810ca5bd-343e-11e0-b456-001d60dda7dd}\Shell - "" = AutoRun
O33 - MountPoints2\{810ca5bd-343e-11e0-b456-001d60dda7dd}\Shell\AutoRun\command - "" = H:\setup.exe -a
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/12/10 18:23:00 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\SSSJDanny\Desktop\OTL.exe
[2011/12/10 17:55:02 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011/12/10 17:55:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2011/12/05 22:20:07 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\Desktop\New folder
[2011/11/23 00:24:01 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\AppData\Local\{03769FCB-3618-4F93-859F-E9683B5DBEDA}
[2011/11/23 00:23:50 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\AppData\Local\{6B6D4ABA-FC20-40E5-8D5A-1E461886632C}
[2011/11/22 23:37:05 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\Desktop\David
[2011/11/20 20:07:16 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\AppData\Local\Skyrim
[2011/11/20 19:58:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\The Elder Scrolls V Skyrim
[2011/11/19 12:50:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2011/11/17 13:10:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ
[2011/11/17 12:47:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\THQ
[2011/11/17 11:41:11 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Music Manager
[2011/11/17 11:41:03 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\AppData\Local\Programs
[2011/11/16 18:59:44 | 000,000,000 | ---D | C] -- C:\ProgramData\MediaMonkey
[2011/11/16 18:59:42 | 000,000,000 | ---D | C] -- C:\Users\SSSJDanny\AppData\Roaming\MediaMonkey
[2010/03/18 18:18:32 | 000,010,752 | ---- | C] ( ) -- C:\Windows\SysWow64\a3d.dll
[2010/03/18 17:59:50 | 000,010,240 | ---- | C] ( ) -- C:\Windows\SysWow64\killapps.exe
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/12/10 18:23:06 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\SSSJDanny\Desktop\OTL.exe
[2011/12/10 17:58:27 | 000,014,224 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/12/10 17:58:27 | 000,014,224 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/12/10 17:55:02 | 000,002,995 | ---- | M] () -- C:\Users\SSSJDanny\Desktop\HiJackThis.lnk
[2011/12/10 17:53:22 | 001,402,880 | ---- | M] () -- C:\Users\SSSJDanny\Desktop\HijackThis.msi
[2011/12/10 17:50:41 | 000,000,244 | ---- | M] () -- C:\Windows\tasks\AutoKMS.job
[2011/12/10 17:50:36 | 000,000,244 | ---- | M] () -- C:\Windows\tasks\AutoKMSDaily.job
[2011/12/10 17:50:35 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/12/10 17:50:26 | 000,151,552 | ---- | M] () -- C:\Windows\KMSEmulator.exe
[2011/12/10 17:49:56 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/12/10 17:49:53 | 2146,787,327 | -HS- | M] () -- C:\hiberfil.sys
[2011/12/10 17:13:53 | 000,070,615 | ---- | M] () -- C:\Users\SSSJDanny\Desktop\mail.jpg
[2011/12/10 17:13:49 | 000,032,373 | ---- | M] () -- C:\Users\SSSJDanny\Desktop\mail3.jpg
[2011/12/10 17:13:46 | 000,057,598 | ---- | M] () -- C:\Users\SSSJDanny\Desktop\mail5.jpg
[2011/12/07 16:48:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/12/06 23:37:30 | 000,782,638 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/12/06 23:37:30 | 000,662,380 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/12/06 23:37:30 | 000,122,208 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/12/06 23:22:14 | 004,931,577 | ---- | M] () -- C:\Windows\{00000006-00000000-00000002-00001102-00000004-20021102}.CDF
[2011/12/06 23:22:14 | 004,931,577 | ---- | M] () -- C:\Windows\{00000006-00000000-00000002-00001102-00000004-20021102}.BAK
[2011/12/06 22:29:54 | 000,384,280 | ---- | M] () -- C:\Users\SSSJDanny\Desktop\Shane.jpg
[2011/12/06 16:49:41 | 000,280,904 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2011/12/06 16:49:41 | 000,280,904 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011/12/06 16:44:11 | 000,034,784 | ---- | M] () -- C:\Windows\SysNative\BMXStateBkp-{00000006-00000000-00000002-00001102-00000004-20021102}.rfx
[2011/12/06 16:44:11 | 000,034,784 | ---- | M] () -- C:\Windows\SysNative\BMXState-{00000006-00000000-00000002-00001102-00000004-20021102}.rfx
[2011/12/06 16:44:11 | 000,031,812 | ---- | M] () -- C:\Windows\SysNative\BMXCtrlState-{00000006-00000000-00000002-00001102-00000004-20021102}.rfx
[2011/12/06 16:44:11 | 000,031,812 | ---- | M] () -- C:\Windows\SysNative\BMXBkpCtrlState-{00000006-00000000-00000002-00001102-00000004-20021102}.rfx
[2011/12/06 16:44:11 | 000,011,564 | ---- | M] () -- C:\Windows\SysNative\DVCState-{00000006-00000000-00000002-00001102-00000004-20021102}.rfx
[2011/12/06 16:42:50 | 000,280,904 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2011/12/06 16:17:12 | 000,001,174 | ---- | M] () -- C:\Users\Public\Desktop\Battlefield 3.lnk
[2011/12/06 16:16:45 | 000,075,136 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011/12/04 15:15:03 | 196,230,086 | ---- | M] () -- C:\Users\SSSJDanny\Desktop\RB3 Expert Pro Guitar - And Justice For All 5 Stars.mp4
[2011/11/27 11:55:10 | 000,001,441 | ---- | M] () -- C:\Users\SSSJDanny\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/11/24 15:46:47 | 000,072,822 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2011/11/24 15:46:44 | 000,072,822 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2011/11/21 12:29:47 | 001,385,634 | ---- | M] () -- C:\Users\SSSJDanny\Desktop\Spring2012.pdf
[2011/11/20 19:57:56 | 000,001,020 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011/11/18 06:45:00 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3985243245-1151673994-1219316914-1001UA.job
[2011/11/17 13:10:55 | 000,002,130 | ---- | M] () -- C:\Users\Public\Desktop\Saints Row The Third.lnk
[2011/11/17 11:45:00 | 000,000,872 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3985243245-1151673994-1219316914-1001Core.job
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/12/10 17:55:02 | 000,002,995 | ---- | C] () -- C:\Users\SSSJDanny\Desktop\HiJackThis.lnk
[2011/12/10 17:52:51 | 001,402,880 | ---- | C] () -- C:\Users\SSSJDanny\Desktop\HijackThis.msi
[2011/12/10 17:13:53 | 000,070,615 | ---- | C] () -- C:\Users\SSSJDanny\Desktop\mail.jpg
[2011/12/10 17:13:49 | 000,032,373 | ---- | C] () -- C:\Users\SSSJDanny\Desktop\mail3.jpg
[2011/12/10 17:13:45 | 000,057,598 | ---- | C] () -- C:\Users\SSSJDanny\Desktop\mail5.jpg
[2011/12/06 22:29:52 | 000,384,280 | ---- | C] () -- C:\Users\SSSJDanny\Desktop\Shane.jpg
[2011/12/04 15:09:33 | 196,230,086 | ---- | C] () -- C:\Users\SSSJDanny\Desktop\RB3 Expert Pro Guitar - And Justice For All 5 Stars.mp4
[2011/11/24 15:46:47 | 000,072,822 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2011/11/24 15:46:44 | 000,072,822 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2011/11/21 18:07:56 | 000,000,244 | ---- | C] () -- C:\Windows\tasks\AutoKMS.job
[2011/11/21 18:07:55 | 000,000,244 | ---- | C] () -- C:\Windows\tasks\AutoKMSDaily.job
[2011/11/21 12:29:47 | 001,385,634 | ---- | C] () -- C:\Users\SSSJDanny\Desktop\Spring2012.pdf
[2011/11/17 13:10:55 | 000,002,130 | ---- | C] () -- C:\Users\Public\Desktop\Saints Row The Third.lnk
[2011/11/17 11:40:46 | 000,000,924 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3985243245-1151673994-1219316914-1001UA.job
[2011/11/17 11:40:46 | 000,000,872 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3985243245-1151673994-1219316914-1001Core.job
[2011/09/14 10:47:40 | 000,053,760 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll
[2011/09/11 17:34:17 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat
[2011/09/11 17:05:43 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2011/08/30 12:30:36 | 000,000,000 | ---- | C] () -- C:\Users\SSSJDanny\AppData\Local\{3ED1F135-3EEA-4A02-A33D-F219EBE1D30D}
[2011/08/23 22:35:35 | 000,000,022 | -HS- | C] () -- C:\Windows\SysWow64\Userdata.ini
[2011/08/10 21:36:20 | 000,000,419 | ---- | C] () -- C:\Windows\BRWMARK.INI
[2011/08/10 21:36:20 | 000,000,027 | ---- | C] () -- C:\Windows\BRPP2KA.INI
[2011/08/08 13:09:25 | 000,280,904 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011/08/08 13:09:24 | 002,434,856 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_bc2.exe
[2011/08/08 13:09:24 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011/07/13 22:36:38 | 000,000,132 | ---- | C] () -- C:\Users\SSSJDanny\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011/05/12 14:28:25 | 000,004,096 | -H-- | C] () -- C:\Users\SSSJDanny\AppData\Local\keyfile3.drm
[2011/05/03 00:42:38 | 000,001,835 | ---- | C] () -- C:\Users\SSSJDanny\AppData\Roaming\SAS7_000.DAT
[2011/04/30 23:08:08 | 000,151,552 | ---- | C] () -- C:\Windows\KMSEmulator.exe
[2011/03/27 12:28:12 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
[2011/03/17 16:51:46 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/01/02 23:16:31 | 000,000,033 | ---- | C] () -- C:\Windows\popcinfo.dat
[2010/11/07 16:28:35 | 000,193,196 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2010/09/19 16:02:33 | 000,111,104 | ---- | C] () -- C:\Users\SSSJDanny\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/09/10 11:03:03 | 000,000,600 | ---- | C] () -- C:\Users\SSSJDanny\AppData\Roaming\winscp.rnd
[2010/08/23 23:15:15 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010/08/22 17:51:50 | 000,000,482 | ---- | C] () -- C:\Windows\eReg.dat
[2010/08/17 22:57:45 | 000,036,892 | ---- | C] () -- C:\Windows\SysWow64\bassmod.dll
[2010/08/05 21:48:37 | 000,000,021 | ---- | C] () -- C:\Windows\SurCode.INI
[2010/08/05 19:54:18 | 000,002,412 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2010/08/05 06:05:23 | 000,007,628 | ---- | C] () -- C:\Users\SSSJDanny\AppData\Local\Resmon.ResmonCfg
[2010/08/05 00:43:11 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010/08/05 00:35:05 | 000,776,362 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/08/05 00:32:24 | 000,921,665 | ---- | C] () -- C:\Windows\SysWow64\msvcrt-ruby18.dll
[2010/08/05 00:32:24 | 000,271,264 | ---- | C] () -- C:\Windows\SysWow64\vbrun100.dll
[2010/08/05 00:32:24 | 000,210,944 | ---- | C] () -- C:\Windows\SysWow64\msvcrt10.dll
[2010/08/05 00:32:24 | 000,027,136 | ---- | C] () -- C:\Windows\SysWow64\pythonw.exe
[2010/08/05 00:32:24 | 000,026,624 | ---- | C] () -- C:\Windows\SysWow64\python.exe
[2010/08/05 00:32:24 | 000,020,537 | ---- | C] () -- C:\Windows\SysWow64\rubyw.exe
[2010/08/05 00:32:24 | 000,020,536 | ---- | C] () -- C:\Windows\SysWow64\ruby.exe
[2010/08/05 00:25:44 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/03/18 18:59:54 | 000,050,439 | ---- | C] () -- C:\Windows\SysWow64\instwdm.ini
[2010/03/18 18:19:58 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\CTBurst.dll
[2010/03/18 18:17:50 | 000,037,888 | ---- | C] () -- C:\Windows\SysWow64\psconv.exe
[2010/03/18 18:07:54 | 000,386,852 | ---- | C] () -- C:\Windows\SysWow64\ctdnlstr.dat
[2010/03/18 18:07:54 | 000,051,787 | ---- | C] () -- C:\Windows\SysWow64\ctdlang.dat
[2010/03/18 17:59:56 | 000,313,207 | ---- | C] () -- C:\Windows\SysWow64\ctstatic.dat
[2010/03/18 17:59:56 | 000,053,932 | ---- | C] () -- C:\Windows\SysWow64\ctdaught.dat
[2010/03/18 17:59:54 | 000,005,120 | ---- | C] () -- C:\Windows\SysWow64\enlocstr.exe
[2009/08/26 23:04:14 | 000,207,400 | R--- | C] () -- C:\Windows\GSetup.exe
[2009/07/13 21:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/13 18:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/13 18:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/13 16:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 15:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 13:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 13:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2008/10/22 04:29:06 | 000,173,550 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2007/08/13 19:45:02 | 000,077,824 | ---- | C] () -- C:\Windows\SysWow64\ctmmactl.dll
[2007/04/12 07:10:28 | 000,105,728 | ---- | C] () -- C:\Windows\SysWow64\APOMgrH.dll
[2007/04/09 11:55:14 | 000,000,054 | ---- | C] () -- C:\Windows\SysWow64\ctzapxx.ini
[2006/10/02 08:25:18 | 000,000,307 | ---- | C] () -- C:\Windows\SysWow64\kill.ini

========== LOP Check ==========

[2011/08/01 12:05:27 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\AnyPic Image Converter
[2011/01/10 19:26:29 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\BOXEE
[2010/10/10 20:53:46 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\DAEMON Tools Lite
[2011/05/15 13:42:51 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\DiskSpaceFanPro
[2011/03/04 19:52:47 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\EleFun Games
[2011/09/06 13:04:13 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Elluminate
[2011/04/20 08:11:48 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Gmote
[2011/03/01 23:16:24 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Guitar Pro 6
[2011/04/14 19:22:34 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\ImgBurn
[2010/10/30 21:15:44 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\IObit
[2011/12/05 22:47:26 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\MediaMonkey
[2011/05/03 00:38:24 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Nuance
[2011/10/18 21:02:46 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Origin
[2010/08/05 21:48:37 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\PACE Anti-Piracy
[2011/10/31 12:38:55 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Process Hacker 2
[2010/08/05 21:53:11 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2010/08/05 20:13:45 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Stardock
[2011/06/16 14:26:01 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\SystemRequirementsLab
[2011/03/28 18:19:30 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\The Creative Assembly
[2011/08/14 12:57:29 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\TS3Client
[2011/09/19 20:09:29 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Tunngle
[2011/09/28 08:53:36 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Ubisoft
[2011/12/10 18:26:54 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\uTorrent
[2010/10/25 16:10:47 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Windows Live Writer
[2011/12/10 17:48:47 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\XBMC
[2011/04/18 15:25:24 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Xilisoft
[2010/08/07 09:30:10 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\YoudaGames
[2011/09/11 17:12:00 | 000,000,000 | ---D | M] -- C:\Users\SSSJDanny\AppData\Roaming\Zen of Sudoku
[2011/12/10 17:50:41 | 000,000,244 | ---- | M] () -- C:\Windows\Tasks\AutoKMS.job
[2011/12/10 17:50:36 | 000,000,244 | ---- | M] () -- C:\Windows\Tasks\AutoKMSDaily.job
[2011/10/11 16:30:59 | 000,032,642 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 368 bytes -> C:\Users\SSSJDanny\AppData\Local\desktop.ini:722b2b1c349a06abf0e866180e5a7e63
@Alternate Data Stream - 1382 bytes -> C:\ProgramData\Microsoft:lesLkqj8QGMuQ4GxbN7JkSC3Ry
@Alternate Data Stream - 1275 bytes -> C:\ProgramData\Microsoft:YPVBy5Ft432HwpjqN4
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:0FF263E8
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:517B507A

< End of report >
  • 0

Advertisements


#2
phillpower2

phillpower2

    Mechanised Mod

  • Global Moderator
  • 24,780 posts
Original topic http://www.geekstogo...ozen-at-log-in/
  • 0

#3
SJ Danny

SJ Danny

    Member

  • Topic Starter
  • Member
  • PipPip
  • 86 posts
Wait im confused do you want me to post the OTL back on the original topic or here?
  • 0

#4
phillpower2

phillpower2

    Mechanised Mod

  • Global Moderator
  • 24,780 posts

Wait im confused do you want me to post the OTL back on the original topic or here?

No the link is for the Malware Tech to check your original OP :thumbsup:
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP