I had run ad-aware and found a Trojan which was removed. I've ran it again and it's been clean.
I've used CCleaner to clean everything up, but that doesn't seem to help.
Honestly, I've had nothing but trouble with this computer since I got it..but we're in no position to buy a new one.
Here is the thread I was using for some help in the Vista forum
http://www.geekstogo...00#entry2093400
OTL Log:
OTL logfile created on: 11/12/2011 11:26:35 AM - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Home\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00001009 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy
1.87 Gb Total Physical Memory | 0.89 Gb Available Physical Memory | 47.37% Memory free
3.99 Gb Paging File | 2.95 Gb Available in Paging File | 74.03% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 289.21 Gb Total Space | 132.20 Gb Free Space | 45.71% Space Free | Partition Type: NTFS
Drive D: | 8.88 Gb Total Space | 1.20 Gb Free Space | 13.51% Space Free | Partition Type: NTFS
Computer Name: HOMEPC | User Name: Home | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/12/11 11:25:33 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Home\Downloads\OTL.exe
PRC - [2011/11/28 11:01:24 | 003,744,552 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2011/11/28 11:01:23 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2011/11/17 06:58:04 | 003,303,000 | ---- | M] (Akamai Technologies, Inc) -- C:\Users\Home\AppData\Local\Akamai\netsession_win.exe
PRC - [2011/11/09 11:45:04 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010/05/20 15:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
PRC - [2009/04/10 23:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/11/09 13:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
========== Modules (No Company Name) ==========
MOD - [2011/11/17 12:06:29 | 008,527,008 | ---- | M] () -- C:\WINDOWS\System32\Macromed\Flash\NPSWF32.dll
MOD - [2011/11/09 11:45:00 | 001,989,592 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
========== Win32 Services (SafeList) ==========
SRV - [2011/11/28 11:01:23 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011/11/20 21:25:27 | 003,313,752 | ---- | M] () [Auto | Running] -- c:\program files\common files\akamai/netsession_win_d768ebc.dll -- (Akamai)
SRV - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/06/01 16:06:40 | 000,014,088 | ---- | M] (Memeo) [On_Demand | Stopped] -- C:\Program Files\Seagate\Seagate Dashboard\SeagateDashboardService.exe -- (SeagateDashboardService)
SRV - [2010/05/20 15:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
SRV - [2009/07/24 07:33:10 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\12.0\SharedCOM\RoxMediaDB12.exe -- (RoxMediaDB12)
SRV - [2008/11/09 13:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
SRV - [2008/01/19 00:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
========== Driver Services (SafeList) ==========
DRV - [2011/11/28 10:53:53 | 000,435,032 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011/11/28 10:53:35 | 000,314,456 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011/11/28 10:52:19 | 000,034,392 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011/11/28 10:52:16 | 000,052,952 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011/11/28 10:52:07 | 000,055,128 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2011/11/28 10:51:50 | 000,020,568 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2010/09/22 12:19:02 | 000,032,768 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\taphss.sys -- (taphss)
DRV - [2010/05/20 15:27:26 | 001,961,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\VX1000.sys -- (VX1000)
DRV - [2010/02/04 23:20:22 | 000,012,672 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\HP8107.sys -- (HP8107Fltr)
DRV - [2008/08/01 19:51:14 | 001,052,704 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\nvmfdx32.sys -- (NVENETFD)
DRV - [2008/05/22 14:49:00 | 007,465,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2008/05/08 05:05:18 | 000,266,752 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\HSXHWBS2.sys -- (HSXHWBS2)
DRV - [2008/05/08 05:03:18 | 000,980,992 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\HSX_DP.sys -- (HSF_DP)
DRV - [2007/10/26 18:51:24 | 000,110,624 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\nvstor32.sys -- (nvstor32)
DRV - [2007/10/18 07:36:54 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2005/12/12 10:27:00 | 000,019,072 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\PS2.sys -- (Ps2)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.h...lion&pf=desktop
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.h...lion&pf=desktop
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.mydidsbury.ca/"
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.1.20091029021655
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6778
FF - prefs.js..extensions.enabledItems: [email protected]:1.0.0.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {000F1EA4-5E08-4564-A29B-29076F63A37A}:1.0.3.148
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {195A3098-0BD5-4e90-AE22-BA1C540AFD1E}:2.9.3
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/RhapsodyPlayerEngine,version=1.0: C:\Program Files\Real\RhapsodyPlayerEngine\nprhapengine.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@nsroblox.roblox.com/launcher: C:\Users\Home\AppData\Local\Roblox\Versions\version-844560f43f354d3f\\NPRobloxProxy.dll ()
FF - HKCU\Software\MozillaPlugins\@soe.sony.com/installer,version=1.0.3: C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\4zt929kw.default\extensions\{000F1EA4-5E08-4564-A29B-29076F63A37A}\plugins\npsoe.dll ()
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Home\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Home\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Home\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Home\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Home\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/11/15 17:56:08 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/11/28 22:33:20 | 000,000,000 | ---D | M]
[2010/11/12 20:38:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Home\AppData\Roaming\Mozilla\Extensions
[2010/11/12 20:37:45 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Home\AppData\Roaming\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011/10/25 16:24:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\4zt929kw.default\extensions
[2011/02/27 15:53:12 | 000,000,000 | ---D | M] () -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\4zt929kw.default\extensions\{000F1EA4-5E08-4564-A29B-29076F63A37A}
[2011/08/25 15:58:18 | 000,000,000 | ---D | M] (Garmin Communicator) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\4zt929kw.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
[2010/11/14 21:45:23 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\4zt929kw.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/10/25 16:24:11 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\4zt929kw.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2010/12/19 10:50:45 | 000,000,000 | ---D | M] (Ancestry.com Advanced Image Viewer) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\4zt929kw.default\extensions\[email protected]
[2011/11/09 11:45:12 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/11/14 17:23:39 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2011/10/28 13:18:03 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
[2011/11/09 11:45:05 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/03/18 11:32:12 | 000,091,552 | ---- | M] (Coupons, Inc.) -- C:\Program Files\mozilla firefox\plugins\npCouponPrinter.dll
[2011/10/03 04:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/03/18 11:32:14 | 000,091,552 | ---- | M] (Coupons, Inc.) -- C:\Program Files\mozilla firefox\plugins\npMozCouponPrinter.dll
[2011/10/02 16:44:01 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/11/09 11:45:05 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
O1 HOSTS File: ([2006/09/18 14:41:30 | 000,000,761 | ---- | M]) - C:\WINDOWS\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Home\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\Yinsthelper.dll (Installation Support)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_01)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3363453D-B9B3-4164-BA82-D746AF59F19B}: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\intu-tt2010 {97A0575E-2309-4e75-8509-B1F9390C4DE7} - C:\Program Files\TurboTax 2010\ic2010pp.dll (Intuit Canada, a general partnership/une société en nom collectif.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\WINDOWS\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Home\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\Home\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/09/03 12:09:59 | 000,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{d523c901-3570-11e0-8087-001d60d123f1}\Shell - "" = AutoRun
O33 - MountPoints2\{d523c901-3570-11e0-8087-001d60d123f1}\Shell\AutoRun\command - "" = K:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/12/05 22:39:57 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{487FAAA1-7D1B-41D3-94FF-D912ECD8E5E9}
[2011/12/05 22:39:42 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{6D7FA80A-4473-4129-B69D-DEF2A41AD6F3}
[2011/12/05 22:00:00 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{601CD56A-F1B4-4B48-9A36-C39206FCE630}
[2011/12/04 15:00:30 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{8DAB4A24-2DF4-49D7-9E7C-172B91A4819D}
[2011/12/04 14:59:33 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{86174AD7-B808-4632-B690-B167D547250C}
[2011/12/04 02:59:21 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{F92143F6-10CB-490E-9D7A-F355107E6C6A}
[2011/12/04 02:58:44 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{F7781457-726E-44B6-B602-C7B85390AF0B}
[2011/12/03 14:58:32 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{36F244C4-9E21-442C-AF42-82EBD68E7742}
[2011/12/03 14:58:21 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{E94406BC-9AA3-458F-ACD6-179DF1CC9148}
[2011/12/02 23:38:18 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{8B5E6C03-F0B4-4682-875F-39586F1983E3}
[2011/12/02 23:38:06 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{CC731B67-18F3-4C9A-9EC6-3B296AF46153}
[2011/12/02 11:37:54 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{06D959BE-7F7D-4309-9496-07A7D458F246}
[2011/12/02 11:37:43 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{56572B07-142F-4081-85CA-51D3C984C54D}
[2011/12/01 23:37:15 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{478EE3B1-1A9B-41EF-94AC-FA9F40C80967}
[2011/12/01 23:36:30 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{84347A3B-8113-4B3E-9709-91022119701E}
[2011/12/01 11:36:16 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{76E1E5EA-DEDA-4809-B2C4-177ABADBA1FB}
[2011/12/01 11:35:34 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{38927782-984A-44A7-AF03-32A6270F4CE4}
[2011/11/30 23:35:21 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{14241E2F-5373-4B3D-AFFE-83470DA87E8D}
[2011/11/30 23:35:06 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{1C558F9A-21C8-4588-A5E2-2FE26D18634D}
[2011/11/30 11:34:53 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{6C65F25E-0387-4E72-92C4-B5633CC7CED6}
[2011/11/30 11:34:42 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{C88953EE-2007-4CC8-B736-D4DA0E3C6E85}
[2011/11/29 23:34:16 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{50E3E953-7108-43F8-A67E-25F096E8AD59}
[2011/11/29 23:34:03 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{30BEFDD4-EDDC-4594-8B5E-1ED3850E785C}
[2011/11/29 11:33:50 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{19DE920F-7A68-45A8-BDD6-B9F4C9833F53}
[2011/11/29 11:33:38 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{FA8AFA17-E427-4471-BC8B-6C64FA743701}
[2011/11/28 23:33:12 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{61E2DEE4-25D6-4DEF-AE57-78E486D94EBD}
[2011/11/28 23:32:59 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{96BF493A-BE89-487E-A22F-7DB9514175E1}
[2011/11/28 22:32:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011/11/28 11:32:46 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{A35C8ABB-3852-4A89-BAC0-45B724216A12}
[2011/11/28 11:32:10 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{CA23B17C-2731-4F55-9923-D2050C297A47}
[2011/11/27 23:31:57 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{EF354118-0E61-42CC-B284-B85F3186CE30}
[2011/11/27 23:31:45 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{1EEEF8AE-C235-428E-A3C7-124865140D05}
[2011/11/27 18:23:48 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
[2011/11/27 18:21:54 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\Roblox
[2011/11/27 11:31:32 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{4357C263-67FF-4DA3-B06A-221E0AC81FD2}
[2011/11/27 11:31:01 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{EEFB06E1-2B66-4452-9E3D-F129AFC9A440}
[2011/11/26 22:47:26 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B3034F12-E916-4F33-B3AD-6A100FDC05FE}
[2011/11/26 22:46:51 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{99EFC82D-F824-49E8-8A75-FCD2A63F7972}
[2011/11/26 10:46:39 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{BC42D2D6-99F0-42F6-A268-F7511C37114D}
[2011/11/26 10:46:27 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{781771CA-D2FC-4600-9109-9FBEE901CF10}
[2011/11/25 22:23:05 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{20AD0FD8-947E-43F3-8B71-1CA5DFD38DAB}
[2011/11/25 22:22:53 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{43B1FCED-E046-43B6-B24A-DEDFBD3F7C01}
[2011/11/25 10:22:28 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{D40C3486-E26E-4A41-B1A3-DC3BC2289B19}
[2011/11/25 10:21:58 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{E26A47F8-83B9-430F-B8F4-D014A065E4C8}
[2011/11/24 22:21:44 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{1C3229FB-78D2-4670-B444-8E25A4D2422A}
[2011/11/24 22:21:08 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{F28CF0F7-3403-456E-B1B2-EBD9D1F7D28A}
[2011/11/24 10:20:56 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{ECD0CD73-2F8B-4E63-8D21-757FDBA7E512}
[2011/11/24 10:20:45 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{D6A09B99-EB40-4BDE-9336-610FBFAE7A3C}
[2011/11/23 22:20:20 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{C801CA8A-0588-4925-BC46-C6CEF4F2FFE9}
[2011/11/23 22:20:08 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{3FA4485E-AD3E-4B21-ABC5-EE129D66B7A5}
[2011/11/23 10:19:42 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{A3200E17-F956-4AEE-A098-E18A66239BBB}
[2011/11/23 10:19:27 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{3445F4CD-9F39-445A-807A-93F63045782F}
[2011/11/22 22:18:57 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{8193D54F-2106-4979-9B61-542A27EEBF2F}
[2011/11/22 22:18:43 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{6EC022A6-98CA-4608-B6B5-E05056B2100D}
[2011/11/22 10:18:31 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{DDA52B8E-3555-40FB-A186-483EB44115D3}
[2011/11/22 10:18:19 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{D34CB030-07DB-4A92-BB21-D798F87B0366}
[2011/11/21 22:17:53 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{7535311A-2A7F-46A6-AC83-EC58183229EE}
[2011/11/21 22:17:25 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{934E9E23-5D96-43C9-ADB0-616C070CF3E3}
[2011/11/21 10:17:12 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{049E1616-F4BA-4A62-B261-FDB76E172B5D}
[2011/11/21 10:16:50 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{455756A4-AB58-4DAC-B744-F628ADC0E4D1}
[2011/11/20 20:39:44 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{F5D31042-BF07-41F6-92C7-BCABF04769E5}
[2011/11/20 20:39:32 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{C29E1795-5E4D-4C41-9097-C0C70AF573F6}
[2011/11/20 08:39:20 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{927E3174-C20E-4EB5-A80A-7A27E960666F}
[2011/11/20 08:38:56 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{BA64CB01-0547-476D-8DCC-658C2EBB7046}
[2011/11/19 12:08:40 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{465CF9BF-1BAF-4948-A1DE-680AE2CBCB89}
[2011/11/19 12:08:29 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{8DEF8B21-4773-47BC-9EDB-C0B30DBA9ED5}
[2011/11/19 00:08:03 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{00685735-1708-44D2-B8CA-1822053C2684}
[2011/11/19 00:07:52 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{6AE0626F-D1B2-427F-A7C9-0995A86FD699}
[2011/11/18 12:07:39 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{EC56558A-FBA7-4B80-8992-C5F7ECF8E31C}
[2011/11/18 12:07:28 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{A3B7B146-D917-4395-81EF-18434E00A19A}
[2011/11/18 00:07:02 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{FAE59918-FFE1-4F6B-B041-B305F0FF336D}
[2011/11/18 00:06:32 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B835ED44-06E0-40A9-9A8C-38E7D66F7A4B}
[2011/11/17 12:06:19 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{6EA71EAC-DA59-4F85-A996-2E56730B9A54}
[2011/11/17 12:06:08 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{0E1D0EB1-4779-4250-845F-B53AE81810B0}
[2011/11/16 22:49:32 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{52F00D34-95E6-4FBF-BF42-D0733D4F3287}
[2011/11/16 22:49:17 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{2F060A44-D204-42DC-B296-7B8058A9A6C9}
[2011/11/16 20:16:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2011/11/16 10:49:04 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{747210D9-E3EC-4BBB-A5D5-4230EE86906D}
[2011/11/16 10:48:26 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{AC9D238C-AC7D-4DAD-92B5-F76BF5E57A62}
[2011/11/15 22:48:13 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B069B466-0EB9-43DA-9DE2-493ABE4F068E}
[2011/11/15 22:48:02 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{B91CABEA-CD05-4ACB-818E-E173035AA667}
[2011/11/15 17:55:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011/11/15 17:55:44 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2011/11/15 17:52:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011/11/15 17:51:18 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/11/15 17:51:15 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/11/15 10:47:49 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{077AAADD-5674-4BE2-B3BB-5C63CBF27D6C}
[2011/11/15 10:47:38 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{2A5A4F61-4F2E-4030-8D4D-ED975D7C19A8}
[2011/11/14 10:56:16 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{ADDA29E3-DF80-4657-9893-C3B99B703AB3}
[2011/11/14 10:55:44 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{140C4387-178E-4282-827A-3557C2035D5E}
[2011/11/13 22:55:31 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{08256861-88E9-4039-A433-C5314412E936}
[2011/11/13 22:54:58 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{7FF35CDC-DA1B-48C0-B7E2-66C7437F96A9}
[2011/11/13 10:54:46 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{C891DB68-2E39-4175-827D-6191488ADB94}
[2011/11/13 10:54:23 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{F8738D96-AE07-4B0D-AE0F-12017D1FBE2A}
[2011/11/12 22:50:16 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{8048BD00-49BC-484A-B2E8-6DDF9FE68EBE}
[2011/11/12 22:49:44 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{3F5C03E3-8044-4299-B274-A86B9D793A8D}
[2011/11/12 10:49:31 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{C2C4175C-50F0-4379-8422-242665465670}
[2011/11/12 10:49:16 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{D73559DC-CB47-4F8E-AC3A-72CBF695D2DF}
[2011/11/11 22:49:04 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{BAB0215A-514F-44C3-9BB3-D9C97D9BD37C}
[2011/11/11 22:48:52 | 000,000,000 | ---D | C] -- C:\Users\Home\AppData\Local\{652AA74A-27FA-4EC6-B9E4-0C4816192CE2}
========== Files - Modified Within 30 Days ==========
[2011/12/11 11:20:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1553909927-1088209007-267712942-1000UA.job
[2011/12/11 11:18:33 | 000,000,878 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/12/11 11:18:17 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/12/11 11:18:17 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/12/11 11:18:12 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/12/11 11:18:08 | 2011,717,632 | -HS- | M] () -- C:\hiberfil.sys
[2011/12/11 11:11:00 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/12/09 21:20:00 | 000,000,852 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1553909927-1088209007-267712942-1000Core.job
[2011/12/09 12:04:57 | 000,001,082 | ---- | M] () -- C:\Users\Home\Desktop\Play Roblox.lnk
[2011/12/07 00:18:42 | 000,082,905 | ---- | M] () -- C:\Users\Home\bite.jpg
[2011/12/07 00:16:19 | 000,018,451 | ---- | M] () -- C:\Users\Home\add.jpg
[2011/12/05 23:35:29 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2011/12/04 19:37:06 | 000,011,649 | ---- | M] () -- C:\Users\Home\68719714842_AGbd6uY2_c.jpg
[2011/12/03 00:15:16 | 000,031,220 | ---- | M] () -- C:\Users\Home\trooper.jpg
[2011/12/02 23:27:30 | 000,000,020 | -H-- | M] () -- C:\ProgramData\PKP_DLdu.DAT
[2011/11/29 21:56:51 | 000,000,680 | ---- | M] () -- C:\Users\Home\AppData\Local\d3d9caps.dat
[2011/11/28 23:21:09 | 000,074,092 | ---- | M] () -- C:\Users\Home\moustache.jpg
[2011/11/28 22:33:22 | 000,001,894 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011/11/28 11:01:25 | 000,041,184 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011/11/28 11:01:23 | 000,199,816 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011/11/28 10:53:53 | 000,435,032 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011/11/28 10:53:35 | 000,314,456 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011/11/28 10:52:19 | 000,034,392 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011/11/28 10:52:16 | 000,052,952 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011/11/28 10:52:07 | 000,055,128 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011/11/28 10:51:50 | 000,020,568 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2011/11/23 23:58:18 | 000,620,242 | ---- | M] () -- C:\Users\Home\santa chimney vintage image graphicsfairy4c.jpg
[2011/11/22 21:49:42 | 000,200,192 | ---- | M] () -- C:\Users\Home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/17 12:02:17 | 000,510,936 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/11/16 20:16:40 | 000,002,075 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011/11/15 17:55:56 | 000,001,728 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2011/11/15 17:52:06 | 000,001,666 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
========== Files Created - No Company Name ==========
[2011/12/07 00:18:42 | 000,082,905 | ---- | C] () -- C:\Users\Home\bite.jpg
[2011/12/07 00:16:17 | 000,018,451 | ---- | C] () -- C:\Users\Home\add.jpg
[2011/12/04 19:37:05 | 000,011,649 | ---- | C] () -- C:\Users\Home\68719714842_AGbd6uY2_c.jpg
[2011/12/03 00:15:13 | 000,031,220 | ---- | C] () -- C:\Users\Home\trooper.jpg
[2011/11/28 23:21:09 | 000,074,092 | ---- | C] () -- C:\Users\Home\moustache.jpg
[2011/11/28 22:33:22 | 000,001,894 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011/11/28 22:33:21 | 000,001,804 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2011/11/27 18:23:48 | 000,001,082 | ---- | C] () -- C:\Users\Home\Desktop\Play Roblox.lnk
[2011/11/23 23:58:05 | 000,620,242 | ---- | C] () -- C:\Users\Home\santa chimney vintage image graphicsfairy4c.jpg
[2011/11/16 20:16:40 | 000,002,075 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2011/11/15 17:55:56 | 000,001,728 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2011/11/15 17:52:06 | 000,001,666 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011/11/09 12:40:57 | 000,004,984 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2011/04/12 17:05:57 | 000,010,240 | ---- | C] () -- C:\Windows\System32\vidx16.dll
[2011/04/12 17:05:31 | 000,196,096 | ---- | C] () -- C:\Windows\System32\MACD32.DLL
[2011/04/12 17:05:31 | 000,138,752 | ---- | C] () -- C:\Windows\System32\MASE32.DLL
[2011/04/12 17:05:31 | 000,136,192 | ---- | C] () -- C:\Windows\System32\MAMC32.DLL
[2011/04/12 17:05:31 | 000,057,856 | ---- | C] () -- C:\Windows\System32\MASD32.DLL
[2011/04/12 17:05:31 | 000,027,648 | ---- | C] () -- C:\Windows\System32\MA32.DLL
[2011/04/12 17:05:14 | 000,000,528 | ---- | C] () -- C:\Windows\_delis32.ini
[2011/01/17 19:37:47 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2011/01/12 14:22:53 | 000,057,344 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2011/01/08 09:41:07 | 000,211,868 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2010/12/11 17:15:45 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Dance Kit
[2010/12/11 17:15:45 | 000,000,268 | RH-- | C] () -- C:\Users\Home\AppData\Roaming\Contextual Menu Items
[2010/12/11 17:15:45 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLdu.DAT
[2010/12/02 12:22:47 | 000,000,680 | ---- | C] () -- C:\Users\Home\AppData\Local\d3d9caps.dat
[2010/11/28 10:58:40 | 000,116,842 | ---- | C] () -- C:\Windows\hpqins00.dat
[2010/11/28 10:37:58 | 000,148,866 | ---- | C] () -- C:\Windows\hpoins19.dat
[2010/11/28 10:37:50 | 000,026,952 | ---- | C] () -- C:\Windows\hpomdl19.dat
[2010/11/14 21:22:35 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010/11/14 19:44:49 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010/11/14 19:44:49 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010/11/14 18:40:33 | 000,000,090 | ---- | C] () -- C:\Windows\QBChanUtil_Trigger.ini
[2010/11/14 17:25:08 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/11/14 12:42:19 | 000,025,602 | ---- | C] () -- C:\Windows\System32\veuntli.dll
[2010/11/12 23:46:02 | 000,000,143 | ---- | C] () -- C:\Windows\QUICKEN.INI
[2010/11/12 20:45:57 | 000,200,192 | ---- | C] () -- C:\Users\Home\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/11/12 20:13:15 | 000,000,010 | ---- | C] () -- C:\Windows\WinInit.ini
[2009/06/26 17:21:02 | 000,015,498 | ---- | C] () -- C:\Windows\VX1000.ini
[2007/09/03 12:00:47 | 000,107,026 | ---- | C] () -- C:\Windows\hpqins13.dat
[2007/09/03 11:46:49 | 000,061,440 | ---- | C] () -- C:\Windows\System32\OsdRemove.exe
[2007/09/03 11:44:21 | 000,327,680 | ---- | C] () -- C:\Windows\System32\pythoncom25.dll
[2007/09/03 11:44:21 | 000,102,400 | ---- | C] () -- C:\Windows\System32\pywintypes25.dll
[2007/07/19 08:07:52 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini
[2006/12/13 23:01:36 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll
[2006/12/13 23:01:36 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll
[2006/11/02 05:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 05:47:37 | 000,510,936 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 05:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 03:33:01 | 000,611,664 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 03:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 03:33:01 | 000,109,112 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 03:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 03:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 01:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 01:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 00:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 00:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2004/01/30 14:07:46 | 000,245,408 | ---- | C] () -- C:\Windows\System32\unicows.dll
========== LOP Check ==========
[2011/07/14 13:46:24 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Avery
[2011/07/05 20:46:38 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\BigBrotherLite
[2010/11/14 19:05:59 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Blackberry Desktop
[2011/09/26 11:55:07 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\FrostWire
[2011/04/08 13:49:08 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\GARMIN
[2011/05/16 18:39:58 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\KeyingTool
[2010/12/25 12:55:08 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Leadertech
[2010/12/11 17:30:09 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Nikon
[2010/11/14 19:01:24 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Research In Motion
[2010/12/25 13:00:12 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Seagate
[2011/11/18 10:24:04 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Smilebox
[2010/11/12 20:47:38 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Snapfish
[2010/11/12 20:37:45 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\Thunderbird
[2011/07/05 20:19:44 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010/11/27 21:39:25 | 000,000,000 | ---D | M] -- C:\Users\Home\AppData\Roaming\WinBatch
[2011/12/11 11:16:58 | 000,032,648 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report >