Pentium R Dual Core CPU [email protected] RAM 4.00 GB 64 bit
running on windows 7 premium service pack 1
In the last 2 weeks the mouse has been less responsive,ie taking clicks and not doing anything then opening 6 pages at the same time.( I bought a new mouse thinking it was too old and maybe just on its way out) but this has made no difference, I was also having problems clicking and dragging things and some funny mysterious things happening with my cursor when typing ie it jumps to somehwere else without me intending it to.
The computer is slow to open up firefox, and links to facebook from windows live mail do not work ,
The computer is still working but I am concerned something is not right somewhere.
I have Kapersky anti virus 11.010400 running al the time .
I have run c cleaner on a regular basis but perhaps i have missed and anti malware or spyware program i perhaps foolishly thought I was covered with what I have.
I am not super at understanding all the different combinations of what goes with what and what slows or works against each other?
I am keen to learn if I am missing something or if I need to correct something or if I have critters on the system somewhere.
I am sorry but this is all i can think of to explain the problem.
I have posted the otl report underneath, and would like to thank you for your time before embarking on helping me I very much appreciate the help
Also the first version of OTL didnt manage a quick scan so I tried the other version suggested in the guide. One final thing It took close to 10 hours or so to run the quick scan so was not that quick! perhaps this is normal but thought i should mention it,
Thanks again
kate
OTL logfile created on: 01/03/2012 14:06:28 - Run 1
OTL by OldTimer - Version 3.2.33.1 Folder = C:\Users\K8\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
3.97 Gb Total Physical Memory | 2.27 Gb Available Physical Memory | 57.21% Memory free
7.93 Gb Paging File | 5.64 Gb Available in Paging File | 71.18% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 218.24 Gb Total Space | 160.32 Gb Free Space | 73.46% Space Free | Partition Type: NTFS
Drive D: | 931.28 Gb Total Space | 669.89 Gb Free Space | 71.93% Space Free | Partition Type: FAT32
Computer Name: K8-PC | User Name: K8 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/03/01 14:03:12 | 000,583,168 | ---- | M] (OldTimer Tools) -- C:\Users\K8\Downloads\OTL.scr
PRC - [2012/02/18 11:56:51 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2012/01/25 10:16:28 | 001,652,536 | ---- | M] (Trusteer Ltd.) -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
PRC - [2012/01/25 10:16:28 | 000,931,640 | ---- | M] (Trusteer Ltd.) -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
PRC - [2012/01/03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/04/09 09:47:26 | 000,399,736 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
PRC - [2011/01/17 18:08:58 | 011,322,880 | ---- | M] (OpenOffice.org) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
PRC - [2011/01/17 18:08:58 | 011,314,688 | ---- | M] (OpenOffice.org) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
PRC - [2010/10/27 18:17:52 | 000,207,424 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
PRC - [2010/09/23 13:01:58 | 000,352,976 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe
PRC - [2010/04/03 09:59:47 | 003,058,304 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe
PRC - [2010/03/18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2010/01/05 01:43:36 | 001,597,440 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
PRC - [2009/11/24 21:45:36 | 000,053,888 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
PRC - [2009/11/02 22:21:26 | 000,103,720 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
PRC - [2009/09/16 18:52:14 | 000,331,776 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files (x86)\ArcSoft\TotalMedia Backup\uBBMonitor.exe
PRC - [2009/08/20 04:31:48 | 000,170,624 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
PRC - [2009/08/17 17:58:46 | 006,859,392 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
PRC - [2009/08/12 22:20:46 | 000,178,816 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe
PRC - [2009/07/31 18:38:24 | 000,305,720 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
PRC - [2009/06/24 20:30:18 | 000,272,952 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe
PRC - [2009/06/19 18:29:42 | 000,105,016 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
PRC - [2009/06/19 18:29:26 | 002,488,888 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe
PRC - [2009/06/16 01:30:42 | 000,084,536 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe
PRC - [2008/12/23 01:15:34 | 000,174,648 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe
PRC - [2008/08/14 05:00:08 | 000,113,208 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe
PRC - [2008/08/14 04:59:56 | 000,301,624 | ---- | M] () -- C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe
PRC - [2008/03/31 10:55:48 | 000,225,280 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
PRC - [2007/11/30 19:20:44 | 000,051,768 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
PRC - [2007/08/08 08:08:40 | 000,094,208 | ---- | M] () -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe
========== Modules (No Company Name) ==========
MOD - [2012/02/18 11:56:50 | 001,911,768 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2012/01/03 08:39:32 | 008,527,008 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2011/11/10 16:11:00 | 000,557,056 | ---- | M] () -- C:\Program Files (x86)\Trusteer\Rapport\bin\js32.dll
MOD - [2011/08/07 19:05:28 | 000,516,368 | ---- | M] () -- C:\ProgramData\Trusteer\Rapport\store\exts\RapportMS\28896\RapportMS.dll
MOD - [2011/05/09 13:26:40 | 000,170,496 | ---- | M] () -- C:\Program Files (x86)\OpenOffice.org 3\program\libxslt.dll
MOD - [2011/05/09 13:26:39 | 000,985,088 | ---- | M] () -- C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
MOD - [2010/01/05 01:43:36 | 001,597,440 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
MOD - [2009/11/24 21:45:36 | 000,053,888 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
MOD - [2009/11/02 22:23:36 | 000,013,096 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
MOD - [2009/11/02 22:20:10 | 000,619,816 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
MOD - [2007/11/30 19:20:44 | 000,051,768 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
MOD - [2007/06/15 18:28:36 | 000,147,456 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll
MOD - [2007/06/02 01:08:18 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2009/12/08 00:16:34 | 000,379,520 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Windows\SysNative\FBAgent.exe -- (AFBAgent)
SRV:64bit: - [2009/07/14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2007/08/08 08:08:40 | 000,094,208 | ---- | M] () [Auto | Running] -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv)
SRV - [2012/01/25 10:16:28 | 000,931,640 | ---- | M] (Trusteer Ltd.) [Auto | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe -- (RapportMgmtService)
SRV - [2012/01/03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2010/09/23 13:01:58 | 000,352,976 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe -- (AVP)
SRV - [2010/08/17 11:19:51 | 000,016,680 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\570\g2aservice.exe -- (GoToAssist)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/03/18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2009/06/16 01:30:42 | 000,084,536 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe -- (ASLDRService)
SRV - [2009/06/10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/03/31 10:55:48 | 000,225,280 | ---- | M] (ASUSTek Computer Inc.) [On_Demand | Running] -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe -- (ADSMService)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012/01/25 10:16:44 | 000,063,760 | ---- | M] (Trusteer Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RapportKE64.sys -- (RapportKE64)
DRV:64bit: - [2011/03/11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/09/23 13:01:58 | 000,556,120 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF)
DRV:64bit: - [2010/08/25 19:36:04 | 010,611,552 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2010/06/09 16:44:00 | 000,011,864 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kl2.sys -- (kl2)
DRV:64bit: - [2010/06/09 16:43:56 | 000,460,888 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\kl1.sys -- (kl1)
DRV:64bit: - [2010/04/22 18:07:36 | 000,027,736 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klim6.sys -- (KLIM6)
DRV:64bit: - [2010/04/03 09:56:39 | 000,035,384 | ---- | M] (ASUSTek Computer Inc) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\AsDsm.sys -- (AsDsm)
DRV:64bit: - [2009/11/02 19:27:10 | 000,022,544 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klmouflt.sys -- (klmouflt)
DRV:64bit: - [2009/10/15 10:23:19 | 000,117,760 | ---- | M] (ELAN Microelectronic Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD)
DRV:64bit: - [2009/10/05 02:33:59 | 001,542,656 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2009/08/23 06:08:07 | 000,056,320 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1E62x64.sys -- (L1E)
DRV:64bit: - [2009/08/21 07:48:17 | 000,044,032 | ---- | M] (Alcor Micro, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmUStor.sys -- (AmUStor)
DRV:64bit: - [2009/08/06 22:24:13 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009/07/20 10:29:39 | 000,015,416 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbfiltr.sys -- (kbfiltr)
DRV:64bit: - [2009/07/14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/14 01:00:13 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Dot4Scan.sys -- (Dot4Scan)
DRV:64bit: - [2009/07/09 09:11:31 | 001,222,144 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService)
DRV:64bit: - [2009/06/18 20:18:10 | 000,015,928 | ---- | M] (Windows ® Win 7 DDK provider) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\lullaby.sys -- (lullaby)
DRV:64bit: - [2009/06/10 21:35:57 | 000,056,832 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SiSG664.sys -- (SiSGbeLH)
DRV:64bit: - [2009/06/10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/06/05 11:15:55 | 001,806,400 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC)
DRV:64bit: - [2009/05/13 02:07:19 | 000,015,928 | ---- | M] (ASUS) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ATK64AMD.sys -- (MTsensor)
DRV:64bit: - [2008/05/24 01:27:28 | 000,154,168 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV:64bit: - [2007/07/24 19:11:32 | 000,014,904 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64)
DRV:64bit: - [2007/05/14 16:06:18 | 000,027,520 | ---- | M] (Research In Motion Limited) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys -- (RimUsb)
DRV - [2012/01/25 10:16:46 | 000,055,056 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys -- (RapportEI64)
DRV - [2012/01/25 10:16:44 | 000,061,712 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys -- (RapportPG64)
DRV - [2011/12/15 18:14:59 | 000,397,520 | ---- | M] () [Kernel | System | Running] -- C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\34302\RapportCerberus64_34302.sys -- (RapportCerberus_34302)
DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...&ctid=CT3106575
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\URLSearchHook: {5c4cae29-c754-4ca3-89e1-90b82459159a} - No CLSID value found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultthis.engineName: "PCHelpSoft Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.condui...={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "PCHelpSoft Customized Web Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "about:home"
FF - prefs.js..network.proxy.type: 0
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\K8\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/02/18 11:56:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/01/19 18:10:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\{eea12ec4-729d-4703-bc37-106ce9879ce2}: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\THBExt [2010/09/23 12:50:43 | 000,000,000 | ---D | M]
[2011/10/01 14:09:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\K8\AppData\Roaming\Mozilla\Extensions
[2012/02/22 13:35:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\K8\AppData\Roaming\Mozilla\Firefox\Profiles\i2wpgulv.default\extensions
[2012/01/03 09:22:36 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/06/17 15:45:20 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2010/09/23 12:51:38 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]
() (No name found) -- C:\USERS\K8\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\I2WPGULV.DEFAULT\EXTENSIONS\{9AA46F4F-4DC7-4C06-97AF-5035170634FE}.XPI
[2012/02/18 11:56:51 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011/10/03 04:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2012/02/18 11:56:48 | 000,001,538 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazon-en-GB.xml
[2012/02/18 11:56:48 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/02/18 11:56:48 | 000,000,947 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\chambers-en-GB.xml
[2012/02/18 11:56:48 | 000,001,180 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-en-GB.xml
[2012/02/18 11:56:48 | 000,001,135 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-en-GB.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\K8\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\17.0.963.56\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\17.0.963.56\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\17.0.963.56\pdf.dll
CHR - plugin: Skype Toolbars (Enabled) = C:\Users\K8\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.3.0.7550_0\npSkypeChromePlugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java Platform SE 6 U29 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: Picasa (Enabled) = C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll
CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll
CHR - plugin: Unity Player (Enabled) = C:\Users\K8\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Skype Extension = C:\Users\K8\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.3.0.7550_0\
O1 HOSTS File: ([2009/06/10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\ievkbd.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll (Kaspersky Lab ZAO)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:64bit: - HKLM..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (AlcorMicro Co., Ltd.)
O4:64bit: - HKLM..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
O4 - HKLM..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe (ecareme)
O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe (ASUS)
O4 - HKLM..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
O4 - HKLM..\Run: [AVP] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_Plugin.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Users\K8\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
O4 - Startup: C:\Users\K8\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ZooskMessenger.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 16
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1
O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O9:64bit: - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O9:64bit: - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7E37BB2D-FB3D-4A20-B70F-7BC05F2098DB}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\linkscanner - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\linkscanner - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - AppInit_DLLs: (avgrssta.dll) - File not found
O20 - AppInit_DLLs: (C:\PROGRA~2\KASPER~1\KASPER~1\mzvkbd3.dll) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\mzvkbd3.dll (Kaspersky Lab ZAO)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files (x86)\Citrix\GoToAssist\570\G2AWinLogon_x64.dll) - C:\Program Files (x86)\Citrix\GoToAssist\570\g2awinlogon_x64.dll (Citrix Online, a division of Citrix Systems, Inc.)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20:64bit: - Winlogon\Notify\klogon: DllName - (%SystemRoot%\System32\klogon.dll) - C:\Windows\SysNative\klogon.dll (Kaspersky Lab ZAO)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/01/26 17:15:22 | 000,000,191 | ---- | M] () - D:\autorun.inf -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012/03/01 09:36:58 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{A5733EE5-1C10-4F69-9918-C149C1B8BAAC}
[2012/03/01 09:36:23 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{F7B170F8-7474-422F-8F09-4A388EE2BE0B}
[2012/02/29 09:29:29 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{AFB6F932-CADA-45AD-B731-660BA2C82485}
[2012/02/29 09:28:57 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{376C65B8-84C8-412F-9B6A-D15F2036BA3B}
[2012/02/28 12:25:36 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{05B52EC0-E401-4CAD-866D-0DC26D219AB4}
[2012/02/28 12:25:12 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{9076989A-3E6E-4F0D-A3B1-838727281789}
[2012/02/27 21:53:19 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{6F680A32-C17D-45DE-9489-1411E73FB8CA}
[2012/02/27 21:53:02 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{6BCDC0EE-C602-40E8-8002-4FA513AAAFCD}
[2012/02/27 09:51:56 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{F0F1467F-AEC5-4E91-BAFA-936C796D30A0}
[2012/02/27 09:51:18 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{56EE7F7B-891C-4671-BE21-189B3483E659}
[2012/02/26 10:42:41 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{29FBB378-DC9D-445F-8317-8E1BE49EBF74}
[2012/02/25 14:15:02 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{E883E01E-2F01-47B3-BCAF-A0E0F22A47B0}
[2012/02/25 14:14:31 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{FA8FFF6E-2FE9-4F4A-A0E3-4E896FB03B0B}
[2012/02/25 09:45:17 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{203EF71A-031D-4E64-9EA5-93CBFF72DDE3}
[2012/02/25 02:14:37 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{C30D40DC-F854-4EE8-BE11-554019DDCFD4}
[2012/02/24 11:03:15 | 000,000,000 | ---D | C] -- C:\Users\K8\Documents\cc Registry backups
[2012/02/24 09:20:51 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{9A830147-6413-4E9B-AB6F-7C90C77CA722}
[2012/02/24 09:20:26 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{5E8A8042-B900-439C-B229-E1E4B8DA92F5}
[2012/02/23 21:20:03 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{E6C5982D-46B9-4C36-8A7A-C80E16BF73E6}
[2012/02/23 21:19:40 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{926F2B66-5881-4326-BDB4-1F2219049B99}
[2012/02/23 09:17:45 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{5EC60E84-0F03-4ADD-BFFF-90A70A00311B}
[2012/02/23 09:17:10 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{2FF3368A-5B79-4944-B692-B5AD07E224E7}
[2012/02/22 11:33:25 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{06324FC1-78C7-4AE9-8ECE-5A18416D6A92}
[2012/02/22 11:33:01 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{28C25BD2-3D0C-48B5-9D50-B98E39357E26}
[2012/02/21 23:32:05 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{2ACA339A-BFAB-4759-B413-8990ACF85025}
[2012/02/21 23:31:33 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{ADFFA814-0FFA-4419-A526-45C30506CF40}
[2012/02/21 08:42:06 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{A28E5FE9-222F-4E38-906F-2363F213E406}
[2012/02/21 08:41:37 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{5F259D83-3159-4451-BB70-1942B3A0F49E}
[2012/02/20 18:35:21 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{1201B7A6-06A4-4FCA-B484-2C6875CFB311}
[2012/02/20 18:34:58 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{2BB84090-F544-4B61-B31C-9DCF3E59A9A6}
[2012/02/20 05:33:48 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{C2EB7565-B23A-44AE-9516-0761A0607842}
[2012/02/20 05:33:35 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{F766D916-F6C2-4D3C-A83A-4017ED07F7E1}
[2012/02/19 17:33:08 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{147D87E6-243D-402C-A3F7-3FEBCC1C0185}
[2012/02/19 17:32:43 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{E06859C3-547D-4346-B1CB-A5C20FFE82EA}
[2012/02/18 16:08:51 | 000,000,000 | ---D | C] -- C:\ProgramData\HardwareHelper
[2012/02/18 16:05:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Conduit
[2012/02/18 16:04:56 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\Conduit
[2012/02/18 11:54:04 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{E6EE3545-2A32-4A5B-BBAF-8AFF4840F2E7}
[2012/02/18 11:53:43 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{C7416BB4-44F4-4C4A-A233-484A79354DF1}
[2012/02/17 20:46:13 | 000,000,000 | ---D | C] -- C:\Users\K8\Documents\manuals
[2012/02/17 13:20:35 | 000,000,000 | ---D | C] -- C:\ProgramData\ASUS WebStorage
[2012/02/17 12:36:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Hewlett-Packard
[2012/02/17 11:47:18 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{897CD385-DD5E-4218-9F33-0070B70AD869}
[2012/02/17 11:47:06 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{AAA61C7F-6D80-4A7F-B3F7-D2AB32BDE8A2}
[2012/02/16 12:38:06 | 000,000,000 | ---D | C] -- C:\ProgramData\EPSON
[2012/02/16 08:21:30 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{839E3465-706B-481D-9311-6BA59314EFF3}
[2012/02/16 08:21:09 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{4AA5F4E5-900D-415C-812D-62BEC541AF31}
[2012/02/15 20:21:08 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{07ED72F4-8EF9-4645-8C2A-AECD195C536D}
[2012/02/15 08:21:30 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{70371A6E-3172-4ADF-AFF1-8D2E3F57F173}
[2012/02/14 18:41:13 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{F355D8AC-8441-4A16-841A-6CABB23C89D4}
[2012/02/14 18:40:27 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{BBC9848C-FF59-40BF-A7B7-26B2A236424D}
[2012/02/14 01:01:36 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{1B71C0B4-2FB5-4F68-9AE7-DA0AF8024512}
[2012/02/13 08:25:39 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{7EE95B05-AAC5-4DF9-8D74-F89DFF70B4F6}
[2012/02/13 08:25:15 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{E1C60FC9-A973-442D-BDF7-C473696C767C}
[2012/02/12 11:32:34 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{78C53BFD-30AD-4702-8217-79BDE013F1FE}
[2012/02/12 11:32:13 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{D78827A7-2E81-4B80-8623-E8CAADB08BED}
[2012/02/11 23:31:57 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{F512AD78-1607-4F84-AADC-6735D83E3AF7}
[2012/02/11 23:31:35 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{A6C73014-3B92-452F-BD1E-C827CE89C752}
[2012/02/11 11:31:17 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{541D8BC6-9B4C-4497-BED7-5E6B66E8D353}
[2012/02/11 11:30:55 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{BF0639C6-1E60-49D4-877B-CF8BC368E833}
[2012/02/10 23:30:42 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{04BDA0F0-5D4E-4CCC-A4D6-2AC257CFFE0E}
[2012/02/10 23:30:20 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{BCA36104-8530-4408-9A35-6C1A44DB7FFC}
[2012/02/10 11:29:47 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{D47BBDF2-3B3D-4850-81C1-AF87961DE476}
[2012/02/10 11:29:32 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{879234A2-EB7F-404B-BDB9-8B23C8D955B9}
[2012/02/09 13:50:57 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{DF70B8D7-CAEC-40A6-AFBB-E21E96F01AF4}
[2012/02/09 13:50:34 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{DCE188B7-20AA-45F7-9ED8-EA0192585312}
[2012/02/09 01:50:49 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{F30E6A9F-A5AF-495F-AD41-1A7D6CF13B61}
[2012/02/08 17:00:21 | 000,000,000 | ---D | C] -- C:\Users\K8\Documents\next door2012
[2012/02/08 10:10:43 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{0303A059-4927-497C-AE53-443C983BDC03}
[2012/02/08 10:10:20 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{A0827F07-58DC-433D-A4DC-ED6CB38185AB}
[2012/02/07 22:09:52 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{057257BB-07D0-4477-A5A3-C6424C086B39}
[2012/02/07 22:09:31 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{8BA0079A-A000-48A7-887F-0FD8CF33311D}
[2012/02/07 08:13:08 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{8A6C47B7-C094-4EBA-9785-68C5AE0E3034}
[2012/02/07 08:12:57 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{34765074-2115-44F2-B11B-01CE8EA14BBF}
[2012/02/07 01:42:56 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{E8064AE2-FBA0-4E2D-9316-B0D174ED2797}
[2012/02/06 09:53:22 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{4E52FF24-26A8-4BB5-8783-C0807254F053}
[2012/02/06 09:53:11 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{33B5C10A-55FA-4E32-B280-5B528FE3C206}
[2012/02/05 20:04:43 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{F5D1E70C-1633-4BA7-A6D9-97BAEEDB16F9}
[2012/02/05 20:04:20 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{667C00CE-A4E0-4A97-A975-15A8BBB28400}
[2012/02/04 10:30:57 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{D4A1BA72-2E58-4DD2-9847-AD3D5207AEE4}
[2012/02/04 10:30:43 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{3299F676-0263-4428-8F3D-A83782C373CF}
[2012/02/03 21:37:07 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{5F002C0D-C9D7-4D1F-A63C-BFE2C2CD6780}
[2012/02/03 21:36:45 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{FB8AC159-F87D-42F7-9427-A2C7A13B9D2A}
[2012/02/03 09:36:20 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{BCBED2B1-5256-40C1-BF70-55AA55D975CF}
[2012/02/03 09:36:09 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{BBB93FE4-EDBA-4232-B58B-87A87C942CAE}
[2012/02/03 00:55:03 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{5F94C37B-68FF-4000-9B30-C164281DEF2F}
[2012/02/02 09:38:11 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{F309FD15-04A0-4B54-9921-79949119AE73}
[2012/02/02 09:37:58 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{50CC707C-B418-4C50-B1D1-37B6F2C16AEB}
[2012/02/01 21:32:29 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{E7594BE5-A662-4C74-B0CA-59C1E15C6502}
[2012/02/01 21:32:08 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{B0A555A5-4460-4001-866A-58C598E32C9E}
[2012/02/01 09:31:34 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{5B3CD9E0-5501-442A-AB0D-E3E61DD65010}
[2012/02/01 09:31:12 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{7AD7B093-EFDD-4552-B7C4-9B1147940B0E}
[2012/01/31 21:29:23 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{FD2E4DA6-AD6A-4C7A-AF90-9EE50BB92EBC}
[2012/01/31 21:29:01 | 000,000,000 | ---D | C] -- C:\Users\K8\AppData\Local\{5EC5A474-02BF-413E-A676-FAE9DA93F7A6}
[2009/04/08 18:31:56 | 000,106,496 | ---- | C] () -- C:\Program Files (x86)\Common Files\CPInstallAction.dll
[2008/08/12 05:45:20 | 000,155,648 | ---- | C] (ASUS) -- C:\Program Files (x86)\Common Files\MSIactionall.dll
[2008/05/22 16:35:54 | 000,051,962 | ---- | C] () -- C:\Program Files (x86)\Common Files\banner.jpg
[1 C:\Users\K8\AppData\Local\*.tmp files -> C:\Users\K8\AppData\Local\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/03/01 20:30:55 | 000,001,082 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/03/01 20:27:22 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/03/01 13:30:15 | 000,001,078 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/02/28 16:58:18 | 000,726,444 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/02/28 16:58:18 | 000,616,242 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/02/28 16:58:18 | 000,106,622 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/02/26 10:47:24 | 000,010,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/02/26 10:47:24 | 000,010,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/02/24 12:52:29 | 3193,765,888 | -HS- | M] () -- C:\hiberfil.sys
[2012/02/18 21:57:01 | 000,008,704 | ---- | M] () -- C:\Users\K8\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/02/18 14:57:25 | 000,000,824 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012/02/17 13:20:35 | 000,001,240 | ---- | M] () -- C:\Users\Public\Desktop\ASUS WebStorage.lnk
[2012/02/17 03:50:07 | 000,472,392 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/02/06 16:16:32 | 000,045,056 | ---- | M] () -- C:\Windows\SysNative\acovcnt.exe
[1 C:\Users\K8\AppData\Local\*.tmp files -> C:\Users\K8\AppData\Local\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/12/09 18:57:31 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\qttask.exe
[2011/06/19 13:42:16 | 000,007,604 | ---- | C] () -- C:\Users\K8\AppData\Local\Resmon.ResmonCfg
[2011/06/14 09:52:34 | 000,000,000 | ---- | C] () -- C:\Users\K8\AppData\Local\{F9F8B4B1-2DDA-4F07-98C9-F7E19911AE2F}
[2010/08/28 17:20:48 | 000,000,024 | ---- | C] () -- C:\Windows\ATKPF.ini
[2010/08/25 19:34:30 | 000,982,240 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2010/08/25 19:34:30 | 000,439,308 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2010/08/25 19:34:30 | 000,092,356 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2010/08/17 22:17:30 | 000,008,704 | ---- | C] () -- C:\Users\K8\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/04/03 09:57:15 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\LogonStart.dll
[2010/04/03 09:36:34 | 000,131,368 | ---- | C] () -- C:\ProgramData\FullRemove.exe
========== LOP Check ==========
[2012/02/17 11:45:11 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\ASUS WebStorage
[2011/03/12 19:36:47 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1
[2011/01/01 14:00:17 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\EeeStorageUploader
[2011/02/12 12:31:24 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\OfferBox
[2010/08/17 12:28:15 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\OpenOffice.org
[2011/01/01 14:00:53 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\temp
[2010/09/02 14:11:45 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\Trusteer
[2010/12/24 17:39:45 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\Unity
[2012/03/02 09:06:32 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\uTorrent
[2010/10/28 07:31:40 | 000,000,000 | ---D | M] -- C:\Users\K8\AppData\Roaming\Windows Live Writer
[2011/09/13 13:17:39 | 000,032,620 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 121 bytes -> C:\ProgramData\Temp:AB689DEA
< End of report >