OTL logfile created on: 09/12/2012 13:27:43 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\accounts\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1.94 Gb Total Physical Memory | 1.09 Gb Available Physical Memory | 56.41% Memory free
2.45 Gb Paging File | 1.56 Gb Available in Paging File | 63.95% Paging File free
Paging file location(s): C:\pagefile.sys 672 1344 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 45.23 Gb Total Space | 26.97 Gb Free Space | 59.63% Space Free | Partition Type: NTFS
Drive D: | 29.29 Gb Total Space | 4.29 Gb Free Space | 14.66% Space Free | Partition Type: NTFS
Drive E: | 586.62 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: ACCOUNTS | User Name: accounts | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/12/09 13:27:36 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\accounts\Desktop\OTL.exe
PRC - [2012/12/08 09:36:25 | 000,196,808 | ---- | M] () -- C:\Program Files\Ask.com\UpdateTask.exe
PRC - [2012/12/07 09:26:06 | 001,626,312 | ---- | M] (Ask) -- C:\Program Files\Ask.com\Updater\Updater.exe
PRC - [2012/08/28 17:09:56 | 000,188,760 | ---- | M] () -- C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
PRC - [2012/05/18 14:47:00 | 002,370,448 | ---- | M] (WIBU-SYSTEMS AG) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
PRC - [2012/05/16 15:44:58 | 001,146,280 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe
PRC - [2012/04/22 13:51:04 | 000,720,936 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2012/04/22 13:50:44 | 000,174,120 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2012/04/22 13:50:36 | 000,126,504 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2012/04/22 13:50:28 | 000,142,376 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
PRC - [2011/05/18 16:56:08 | 001,601,536 | ---- | M] (Nokia) -- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
PRC - [2011/03/13 21:15:14 | 000,148,520 | R--- | M] (McAfee, Inc.) -- C:\WINDOWS\system32\mfevtps.exe
PRC - [2009/09/04 15:23:56 | 008,975,680 | ---- | M] (Western Digital) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
PRC - [2009/09/04 15:22:22 | 000,098,304 | ---- | M] (WDC) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
PRC - [2009/06/16 09:58:08 | 000,020,480 | ---- | M] (Memeo) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
PRC - [2008/04/14 05:42:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/04/14 05:42:18 | 000,180,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dwwin.exe
========== Modules (No Company Name) ==========
MOD - [2012/12/08 09:36:25 | 000,196,808 | ---- | M] () -- C:\Program Files\Ask.com\UpdateTask.exe
MOD - [2012/11/16 13:51:58 | 011,817,472 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\b809681da85a58046cb39f268b6697ad\System.Web.ni.dll
MOD - [2012/11/16 12:56:27 | 000,212,992 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\31b7eef43a23e7c6e93594be583f3d08\System.ServiceProcess.ni.dll
MOD - [2012/11/16 12:56:14 | 000,998,400 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\d8ca3b9fefcda19eeecd55c239f504ba\System.Management.ni.dll
MOD - [2012/11/16 12:53:16 | 001,712,128 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\38a190d849769ca2a9b174bd7253913c\Microsoft.VisualBasic.ni.dll
MOD - [2012/11/16 12:52:15 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\41cac4885974d07de06f0b4fec9883f0\System.Configuration.ni.dll
MOD - [2012/11/15 18:17:47 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\d35b50eb6bb7b1bfb6592419d9feba47\System.Xml.ni.dll
MOD - [2012/11/15 18:17:39 | 012,433,920 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6585a5fcaaa1b49b9a1bd9ca5c5c306e\System.Windows.Forms.ni.dll
MOD - [2012/11/15 18:17:14 | 001,592,320 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\da4bcb702feb770ce40cf1371b0c4d02\System.Drawing.ni.dll
MOD - [2012/11/15 18:16:45 | 006,616,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\d309c7e5107b3aed78e097659f94543b\System.Data.ni.dll
MOD - [2012/11/15 18:14:41 | 007,977,472 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\90ad0c96693527ae685ff40019bb33b0\System.ni.dll
MOD - [2012/11/15 18:14:16 | 011,492,352 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\3add69b075f3da012fb97ce00cd795c0\mscorlib.ni.dll
MOD - [2012/11/15 18:13:23 | 002,933,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2012/11/15 18:13:14 | 000,303,104 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
MOD - [2012/08/28 17:09:56 | 000,188,760 | ---- | M] () -- C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
MOD - [2012/08/28 17:09:56 | 000,167,256 | ---- | M] () -- C:\Program Files\Web Assistant\Extension32.dll
MOD - [2012/05/16 15:45:56 | 000,276,392 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\phonon4.dll
MOD - [2012/05/16 15:45:40 | 002,652,584 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtXmlPatterns4.dll
MOD - [2012/05/16 15:45:40 | 000,363,944 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtXml4.dll
MOD - [2012/05/16 15:45:38 | 011,166,120 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtWebKit4.dll
MOD - [2012/05/16 15:45:36 | 001,346,472 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtScript4.dll
MOD - [2012/05/16 15:45:36 | 000,205,736 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtSql4.dll
MOD - [2012/05/16 15:45:34 | 001,013,672 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtNetwork4.dll
MOD - [2012/05/16 15:45:34 | 000,720,296 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtOpenGL4.dll
MOD - [2012/05/16 15:45:32 | 008,506,280 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtGui4.dll
MOD - [2012/05/16 15:45:32 | 000,520,104 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtMultimediaKit1.dll
MOD - [2012/05/16 15:45:30 | 002,480,552 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtDeclarative4.dll
MOD - [2012/05/16 15:45:30 | 002,353,576 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\QtCore4.dll
MOD - [2012/05/16 15:45:28 | 000,445,864 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\sqldrivers\qsqlite4.dll
MOD - [2012/05/16 15:45:22 | 000,206,760 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\Imageformats\qjpeg4.dll
MOD - [2012/05/16 15:45:22 | 000,035,240 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\Imageformats\qico4.dll
MOD - [2012/05/16 15:45:20 | 000,032,680 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\Imageformats\qgif4.dll
MOD - [2012/05/16 15:44:54 | 000,437,672 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\NService.dll
MOD - [2012/05/16 15:44:16 | 000,604,072 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\CommonUpdateChecker.dll
MOD - [2012/05/16 13:46:28 | 000,391,056 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\ssoengine.dll
MOD - [2012/05/16 13:46:28 | 000,059,280 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\securestorage.dll
MOD - [2012/05/16 13:45:30 | 000,110,080 | ---- | M] () -- C:\Program Files\Nokia\Nokia Suite\mediaservice\dsengine.dll
MOD - [2011/11/03 20:58:36 | 001,292,288 | ---- | M] () -- C:\WINDOWS\system32\quartz.dll
MOD - [2009/08/19 16:49:08 | 000,049,152 | ---- | M] () -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\Memeo.API.dll
MOD - [2009/07/29 16:24:14 | 000,504,293 | ---- | M] () -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\sqlite3.dll
MOD - [2008/04/14 05:41:59 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2008/04/14 05:41:51 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
========== Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- spnsrvnt.exe -- (SuperProServer)
SRV - File not found [On_Demand | Stopped] -- c:\PROGRA~1\mcafee\msc\mcawfwk.exe -- (McAWFwk)
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2012/12/07 09:28:06 | 000,246,240 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/10/09 13:14:44 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/08/28 17:09:56 | 000,188,760 | ---- | M] () [Auto | Running] -- C:\Program Files\Web Assistant\ExtensionUpdaterService.exe -- (Web Assistant Updater)
SRV - [2012/05/18 14:47:00 | 002,370,448 | ---- | M] (WIBU-SYSTEMS AG) [Auto | Running] -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe -- (CodeMeter.exe)
SRV - [2012/04/22 13:51:04 | 000,720,936 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011/03/13 21:15:14 | 000,148,520 | R--- | M] (McAfee, Inc.) [Auto | Running] -- C:\WINDOWS\system32\mfevtps.exe -- (mfevtp)
SRV - [2010/08/13 09:12:02 | 000,066,112 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper)
SRV - [2009/09/04 15:22:22 | 000,098,304 | ---- | M] (WDC) [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe -- (WDDMService)
SRV - [2009/06/16 09:58:08 | 000,020,480 | ---- | M] (Memeo) [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe -- (WDSmartWareBackgroundService)
SRV - [2008/12/01 10:59:52 | 000,033,752 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_HelperSvc.exe -- (getPlus®
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\CT_ZTEMT_U_USBSER.sys -- (ztemtusbser)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- Sentinel.sys -- (Sentinel)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\fzsvahdm.sys -- (fzsvahdm)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nhemis.sys -- (aic32p)
DRV - [2012/04/22 13:51:38 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2012/01/09 17:28:20 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2012/01/09 17:28:20 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2012/01/09 17:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2012/01/09 17:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011/05/13 03:21:06 | 000,121,064 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadbus.sys -- (ssadbus)
DRV - [2011/03/13 20:50:10 | 000,459,728 | R--- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2011/03/13 20:50:10 | 000,118,784 | R--- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfeapfk.sys -- (mfeapfk)
DRV - [2010/02/11 17:32:15 | 000,226,880 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tcpip6.sys -- (Tcpip6)
DRV - [2009/02/13 12:02:52 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM)
DRV - [2005/12/23 22:54:06 | 000,210,304 | ---- | M] (ULi Electronics Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\m5288.sys -- (m5288)
DRV - [2005/11/16 13:38:16 | 000,078,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTL8023xp)
DRV - [2005/08/11 11:19:28 | 000,393,088 | R--- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2005/06/29 16:31:58 | 001,241,088 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2004/10/27 15:21:30 | 000,145,920 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService)
DRV - [2004/08/13 16:26:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2002/10/01 09:22:32 | 000,009,856 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {c1d89ae7-449d-4929-b24b-fded04adbe06}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.c...ferrer:source?}
IE - HKLM\..\SearchScopes\{c1d89ae7-449d-4929-b24b-fded04adbe06}: "URL" = http://isearch.glary...s}&src=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.glary...com/?src=iehome
IE - HKCU\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKCU\..\SearchScopes,DefaultScope = {CFF4DB9B-135F-47c0-9269-B4C6572FD61A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.c...Box&Form=IE8SRC
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylo...search&AF=18776
IE - HKCU\..\SearchScopes\{1C00E0AD-6279-48AF-8E31-CEB381B30746}: "URL" = http://websearch.ask...92-BEE395960AC0
IE - HKCU\..\SearchScopes\{734A391F-9C4C-49F0-80C0-7492AF74FD48}: "URL" = http://search.yahoo....=utf-8&fr=b1ie7
IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT3072253
IE - HKCU\..\SearchScopes\{c1d89ae7-449d-4929-b24b-fded04adbe06}: "URL" = http://isearch.glary...s}&src=iesearch
IE - HKCU\..\SearchScopes\{C55B0589-8A58-48DD-B561-208ED9C9EE0B}: "URL" = http://in.search.yah...p={SearchTerms}
IE - HKCU\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incre...6PQKHxDKfK&i=26
IE - HKCU\..\SearchScopes\{D2C91843-34E6-4D4C-A4F6-593795039FE4}: "URL" = http://www.google.co...rchTerms}&meta=
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
FF - prefs.js..browser.search.defaultthis.engineName: "uTorrentControl2 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.condui...={searchTerms}"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://www.onlinesbm.com"
FF - prefs.js..extensions.enabledAddons: [email protected]:1.0.19000
FF - prefs.js..extensions.enabledAddons: {687578b9-7132-4a7a-80e4-30ee31099e03}:3.16.0.3
FF - prefs.js..extensions.enabledAddons: [email protected]:3.15.4.100013
FF - prefs.js..keyword.URL: "http://websearch.ask...YYYYYYYYIN&&q="
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\progra~1\mcafee\msc\npmcsn~1.dll File not found
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MVT: C:\Program Files\McAfee\Supportability\MVT\npmvtplugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nokia.com/EnablerPlugin: C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files\McAfee\SiteAdvisor
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\Program Files\Web Assistant\Firefox [2012/09/25 15:28:54 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/10/27 16:36:21 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
[2011/07/23 10:54:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\accounts\Application Data\Mozilla\Extensions
[2012/11/07 12:40:06 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\accounts\Application Data\Mozilla\Firefox\Profiles\kra64hp3.default\extensions
[2012/11/07 12:40:06 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\accounts\Application Data\Mozilla\Firefox\Profiles\kra64hp3.default\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}
[2012/07/14 12:28:18 | 000,000,000 | ---D | M] (ALOT Appbar) -- C:\Documents and Settings\accounts\Application Data\Mozilla\Firefox\Profiles\kra64hp3.default\extensions\[email protected]
[2012/06/27 10:53:28 | 000,000,000 | ---D | M] ("eSupport Toolbar") -- C:\Documents and Settings\accounts\Application Data\Mozilla\Firefox\Profiles\kra64hp3.default\extensions\[email protected]
[2012/12/08 12:08:55 | 000,002,578 | ---- | M] () -- C:\Documents and Settings\accounts\Application Data\Mozilla\Firefox\Profiles\kra64hp3.default\searchplugins\askcom.xml
[2012/06/07 21:16:04 | 000,000,935 | ---- | M] () -- C:\Documents and Settings\accounts\Application Data\Mozilla\Firefox\Profiles\kra64hp3.default\searchplugins\conduit.xml
[2012/09/25 15:28:36 | 000,002,203 | ---- | M] () -- C:\Documents and Settings\accounts\Application Data\Mozilla\Firefox\Profiles\kra64hp3.default\searchplugins\MyStart Search.xml
[2012/10/27 16:36:06 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012/10/27 16:36:21 | 000,261,600 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012/10/16 16:07:12 | 000,001,525 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml
[2012/10/16 16:07:12 | 000,002,465 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012/10/16 16:07:12 | 000,000,935 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml
[2012/10/16 16:07:12 | 000,001,166 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml
[2011/12/17 11:28:18 | 000,001,567 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\glarysearch.xml
[2012/09/12 13:38:54 | 000,002,027 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\McSiteAdvisor.xml
[2012/10/16 16:07:12 | 000,002,058 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
[2012/10/16 16:07:12 | 000,001,121 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml
========== Chrome ==========
O1 HOSTS File: ([2012/12/07 15:34:48 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (no name) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No CLSID value found.
O2 - BHO: (Web Assistant) - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\Web Assistant\Extension32.dll ()
O2 - BHO: (no name) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - No CLSID value found.
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe File not found
O4 - HKLM..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia)
O4 - HKLM..\Run: [NokiaMusic FastStart] C:\Program Files\Nokia\Nokia Music Player\NokiaMusicPlayer.exe (Nokia)
O4 - HKLM..\Run: [NSU_agent] "C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe" File not found
O4 - HKCU..\Run: [] File not found
O4 - HKCU..\Run: [cdoosoft] C:\DOCUME~1\accounts\LOCALS~1\Temp\herss.exe File not found
O4 - HKCU..\Run: [McAfee McItInfo] C:\DOCUME~1\accounts\LOCALS~1\Temp\mcitinfo_1354949223.exe /itinsfin:C:\DOCUME~1\accounts\LOCALS~1\Temp\mcininfo_1354949223.ini File not found
O4 - HKCU..\Run: [Msn Messsenger] C:\WINDOWS\system32\regsvr.exe File not found
O4 - HKCU..\Run: [NokiaSuite.exe] C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe (Nokia)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WDSmartWare.lnk = C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} Reg Error: Key error. (Reg Error: Key error.)
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} http://download.mcaf...,26/mcgdmgr.cab (Reg Error: Key error.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.ma...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{206EA6F1-5C0A-49D2-B552-B3BE534351D0}: DhcpNameServer = 192.168.1.1 192.168.1.1
O18 - Protocol\Handler\dssrequest - No CLSID value found
O18 - Protocol\Handler\sacore - No CLSID value found
O18 - Protocol\Filter\application/x-mfe-ipt - No CLSID value found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (regsvr.exe) - File not found
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\accounts\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\accounts\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/11/15 15:31:03 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2012/01/27 12:31:34 | 000,000,053 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2012/11/16 15:30:40 | 000,000,096 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2006/02/28 17:30:00 | 000,000,110 | R--- | M] () - E:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{10260087-5262-11de-8d06-00173183dde1}\Shell\AutoRun\command - "" = owvezu.exe
O33 - MountPoints2\{10260087-5262-11de-8d06-00173183dde1}\Shell\explore\Command - "" = owvezu.exe
O33 - MountPoints2\{10260087-5262-11de-8d06-00173183dde1}\Shell\open\Command - "" = owvezu.exe
O33 - MountPoints2\{10ade64e-9bee-11e0-916f-00173183dde1}\Shell - "" = AutoRun
O33 - MountPoints2\{10ade64e-9bee-11e0-916f-00173183dde1}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{10ade64e-9bee-11e0-916f-00173183dde1}\Shell\AutoRun\command - "" = "F:\WD SmartWare.exe" autoplay=true
O33 - MountPoints2\{22b60cac-12db-11de-8c9a-00173183dde1}\Shell\AutoRun\command - "" = wscript.exe NewVirusRemoval.vbs
O33 - MountPoints2\{22b60cac-12db-11de-8c9a-00173183dde1}\Shell\open\Command - "" = wscript.exe NewVirusRemoval.vbs
O33 - MountPoints2\{5013dd72-d03b-11df-8ffc-00173183dde1}\Shell\AutoRun\command - "" = F:\lcw.exe
O33 - MountPoints2\{5013dd72-d03b-11df-8ffc-00173183dde1}\Shell\open\Command - "" = F:\lcw.exe
O33 - MountPoints2\{52cba8fa-45f9-11df-8eab-00173183dde1}\Shell\AutoRun\command - "" = F:\w9.exe
O33 - MountPoints2\{52cba8fa-45f9-11df-8eab-00173183dde1}\Shell\open\Command - "" = F:\w9.exe
O33 - MountPoints2\{660ca65a-4142-11df-8e9a-00173183dde1}\Shell\AutoRun\command - "" = F:\GLEDAJU//topimse.exe
O33 - MountPoints2\{660ca65a-4142-11df-8e9a-00173183dde1}\Shell\open\command - "" = F:\GLEDAJU//topimse.exe
O33 - MountPoints2\{66a785f9-fa7d-11dd-8c73-00173183dde1}\Shell\AutoRun\command - "" = wscript.exe NewVirusRemoval.vbs
O33 - MountPoints2\{66a785f9-fa7d-11dd-8c73-00173183dde1}\Shell\open\Command - "" = wscript.exe NewVirusRemoval.vbs
O33 - MountPoints2\{7ae9dfba-cfe3-11dd-8c33-00173183dde1}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{7ae9dfba-cfe3-11dd-8c33-00173183dde1}\Shell\AutoRun\command - "" = F:\GMAIL\rockz.exe
O33 - MountPoints2\{7ae9dfba-cfe3-11dd-8c33-00173183dde1}\Shell\explore\command - "" = F:\GMAIL\\rockz.exe
O33 - MountPoints2\{7ae9dfba-cfe3-11dd-8c33-00173183dde1}\Shell\Install\command - "" = F:\GMAIL\\rockz.exe
O33 - MountPoints2\{7ae9dfba-cfe3-11dd-8c33-00173183dde1}\Shell\open\command - "" = F:\GMAIL\\rockz.exe
O33 - MountPoints2\{a83bbbb6-0ca3-11df-8e40-00173183dde1}\Shell\AutoRun\command - "" = F:\y.exe
O33 - MountPoints2\{a83bbbb6-0ca3-11df-8e40-00173183dde1}\Shell\open\Command - "" = F:\y.exe
O33 - MountPoints2\{a9ae8602-866c-11df-8f5b-00173183dde1}\Shell\AutoRun\command - "" = SzPzl0zs5yzLQXV8lE01454uFe3F54f8yhE\S-1-3-01-4639134501-7494416267-104346834-7052\k4IjUahy33u73oOtmk.exe
O33 - MountPoints2\{a9ae8602-866c-11df-8f5b-00173183dde1}\Shell\open\command - "" = SzPzl0zs5yzLQXV8lE01454uFe3F54f8yhE\S-1-3-01-4639134501-7494416267-104346834-7052\k4IjUahy33u73oOtmk.exe
O33 - MountPoints2\{b1ee0b56-c796-11df-8ff4-00173183dde1}\Shell\AutoRun\command - "" = G:\lcw.exe
O33 - MountPoints2\{b1ee0b56-c796-11df-8ff4-00173183dde1}\Shell\open\Command - "" = G:\lcw.exe
O33 - MountPoints2\{e13740b2-154e-11df-8e4a-00173183dde1}\Shell - "" = AutoRun
O33 - MountPoints2\{e13740b2-154e-11df-8e4a-00173183dde1}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{e13740b2-154e-11df-8e4a-00173183dde1}\Shell\AutoRun\command - "" = "F:\WD SmartWare.exe" autoplay=true
O33 - MountPoints2\{eebee4b2-0e2c-11de-8c92-00173183dde1}\Shell\AutoRun\command - "" = wscript.exe NewVirusRemoval.vbs
O33 - MountPoints2\{eebee4b2-0e2c-11de-8c92-00173183dde1}\Shell\open\Command - "" = wscript.exe NewVirusRemoval.vbs
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\lcw.exe
O33 - MountPoints2\H\Shell\open\Command - "" = H:\lcw.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (NativScn)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2012/12/09 13:27:33 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\accounts\Desktop\OTL.exe
[2012/12/09 13:07:03 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2012/12/09 13:07:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\HijackThis
[2012/12/09 11:37:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\accounts\Application Data\ZTEMTUI
[2012/12/08 10:48:51 | 000,118,784 | R--- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mfeapfk.sys
[2012/12/08 10:48:46 | 000,459,728 | R--- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mfehidk.sys
[2012/12/08 10:48:42 | 000,148,520 | R--- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\mfevtps.exe
[2012/12/08 10:48:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2012/12/07 10:21:55 | 000,097,280 | ---- | C] (Quick Heal Technologies (P) Ltd.) -- C:\WINDOWS\System32\ntdskapi.dll
[2012/12/07 10:21:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Native
[2012/12/03 16:09:51 | 000,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[2012/12/03 10:17:25 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2012/11/15 18:15:41 | 000,000,000 | ---D | C] -- C:\09c19c5ade6e51cdfaaf
[2012/11/15 15:22:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\accounts\Desktop\Axis mobile banking new
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[4 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/12/09 13:27:36 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\accounts\Desktop\OTL.exe
[2012/12/09 13:13:15 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012/12/09 13:07:03 | 000,001,742 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\HijackThis.lnk
[2012/12/09 13:06:00 | 000,000,240 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2012/12/09 13:02:00 | 000,000,890 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012/12/09 13:01:36 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/12/09 13:01:15 | 000,000,000 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\cm-lock
[2012/12/09 13:01:00 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012/12/09 13:00:48 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/12/09 12:45:13 | 000,000,823 | ---- | M] () -- C:\Documents and Settings\accounts\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2012/12/09 11:10:03 | 000,000,428 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{AD0B153C-9B23-4C77-ACAD-DF3DAFF4B34A}.job
[2012/12/08 18:24:13 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2012/12/08 18:24:12 | 000,000,292 | ---- | M] () -- C:\WINDOWS\ODBC.INI
[2012/12/08 15:43:25 | 000,066,368 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\1.pdf
[2012/12/08 14:03:26 | 000,002,371 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Nokia Music Player.lnk
[2012/12/08 09:43:00 | 000,429,863 | ---- | M] () -- C:\WINDOWS\System32\nvdbase.dat
[2012/12/08 09:39:36 | 000,726,808 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\CanSecure-Retail.exe
[2012/12/08 09:39:35 | 000,726,816 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\CanSecure-Corporate.exe
[2012/12/07 17:58:02 | 000,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[2012/12/07 15:34:48 | 000,000,734 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2012/12/07 09:33:58 | 000,001,042 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WDDMStatus.lnk
[2012/12/07 08:21:16 | 000,000,000 | RHS- | M] () -- C:\WINDOWS\System32\setting.ini
[2012/12/06 15:25:47 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/12/06 11:33:55 | 000,220,949 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\IDEA.pdf
[2012/12/05 10:55:36 | 000,428,592 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012/12/04 17:16:18 | 013,010,773 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\2012-11-30-675.zip
[2012/12/03 10:19:07 | 000,001,945 | ---- | M] () -- C:\WINDOWS\epplauncher.mif
[2012/11/28 17:28:49 | 000,000,096 | RHS- | M] () -- C:\WINDOWS\System32\setup.ini
[2012/11/28 12:43:19 | 000,006,263 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\SBI BANK STMT.pdf
[2012/11/26 12:14:47 | 000,074,742 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\rtgs-neft.pdf
[2012/11/15 18:15:29 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012/11/15 18:13:39 | 000,446,046 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/11/15 18:13:39 | 000,073,140 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/11/13 17:57:08 | 000,124,541 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\9.aspx
[2012/11/10 18:13:28 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\accounts\Desktop\New Bitmap Image.bmp
[2012/11/09 17:18:27 | 000,688,996 | ---- | M] () -- C:\Documents and Settings\accounts\NOKIA N8
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[4 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/12/09 13:07:03 | 000,001,742 | ---- | C] () -- C:\Documents and Settings\accounts\Desktop\HijackThis.lnk
[2012/12/09 13:01:15 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\cm-lock
[2012/12/08 15:43:25 | 000,066,368 | ---- | C] () -- C:\Documents and Settings\accounts\Desktop\1.pdf
[2012/12/08 09:31:30 | 000,429,863 | ---- | C] () -- C:\WINDOWS\System32\nvdbase.dat
[2012/12/07 10:21:55 | 000,119,296 | ---- | C] () -- C:\WINDOWS\System32\nativscn.exe
[2012/12/07 10:21:55 | 000,041,984 | ---- | C] () -- C:\WINDOWS\System32\ntsys.dll
[2012/12/07 08:20:49 | 000,000,000 | RHS- | C] () -- C:\WINDOWS\System32\setting.ini
[2012/12/06 15:25:47 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/12/06 09:54:01 | 000,000,350 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
[2012/12/04 17:17:59 | 013,010,773 | ---- | C] () -- C:\Documents and Settings\accounts\Desktop\2012-11-30-675.zip
[2012/12/04 10:51:38 | 000,000,096 | RHS- | C] () -- C:\Documents and Settings\All Users\Documents\autorun.inf
[2012/12/03 10:19:07 | 000,001,945 | ---- | C] () -- C:\WINDOWS\epplauncher.mif
[2012/11/28 17:28:49 | 000,000,096 | RHS- | C] () -- C:\WINDOWS\System32\setup.ini
[2012/11/28 12:43:19 | 000,006,263 | ---- | C] () -- C:\Documents and Settings\accounts\Desktop\SBI BANK STMT.pdf
[2012/11/26 12:14:47 | 000,074,742 | ---- | C] () -- C:\Documents and Settings\accounts\Desktop\rtgs-neft.pdf
[2012/11/13 17:57:08 | 000,124,541 | ---- | C] () -- C:\Documents and Settings\accounts\Desktop\9.aspx
[2012/11/10 18:13:28 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\accounts\Desktop\New Bitmap Image.bmp
[2012/11/09 17:18:02 | 000,688,996 | ---- | C] () -- C:\Documents and Settings\accounts\NOKIA N8
[2012/08/25 18:55:52 | 000,231,264 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2012/07/14 12:04:57 | 000,040,852 | ---- | C] () -- C:\Documents and Settings\accounts\X
[2012/06/19 13:23:18 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012/03/01 15:45:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\02A.dat
[2011/11/23 14:19:54 | 000,449,242 | ---- | C] () -- C:\Documents and Settings\accounts\TM.htm
[2011/08/25 17:30:34 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\accounts\TALLY.REW
[2011/07/23 10:54:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/04/23 13:24:49 | 000,012,800 | ---- | C] () -- C:\Documents and Settings\accounts\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ==========
[2010/02/09 13:40:45 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008/04/14 05:42:05 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009/02/09 17:40:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008/04/14 05:42:08 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2011/06/29 13:15:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\BabylonToolbar
[2011/08/01 15:46:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2012/06/25 17:58:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\EurekaLog
[2012/05/05 16:43:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\Leadertech
[2012/04/17 17:42:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\Lenovo PCC
[2012/08/25 18:06:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\Nokia
[2011/09/12 16:50:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\Nokia Ovi Suite
[2012/07/11 19:09:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\PC Suite
[2012/07/16 11:02:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\pdf_100311
[2012/07/16 11:04:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\Softland
[2010/02/09 13:47:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\Western Digital
[2012/12/09 11:38:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\ZTEEVDO
[2012/12/09 11:37:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\accounts\Application Data\ZTEMTUI
[2012/02/03 12:51:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Installations
[2012/06/29 13:41:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia
[2011/09/12 16:21:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
[2011/02/22 11:55:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NokiaMusic
[2011/02/22 12:20:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2010/02/09 14:00:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WD_SmartWareCommon
[2010/02/09 13:47:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Western Digital
========== Purity Check ==========
< End of report >
OTL Extras logfile created on: 09/12/2012 13:27:43 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\accounts\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1.94 Gb Total Physical Memory | 1.09 Gb Available Physical Memory | 56.41% Memory free
2.45 Gb Paging File | 1.56 Gb Available in Paging File | 63.95% Paging File free
Paging file location(s): C:\pagefile.sys 672 1344 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 45.23 Gb Total Space | 26.97 Gb Free Space | 59.63% Space Free | Partition Type: NTFS
Drive D: | 29.29 Gb Total Space | 4.29 Gb Free Space | 14.66% Space Free | Partition Type: NTFS
Drive E: | 586.62 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: ACCOUNTS | User Name: accounts | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Tally.ERP9\tally.exe" = C:\Tally.ERP9\tally.exe:*:Enabled:ipsec -- ()
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe" = C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server -- (WIBU-SYSTEMS AG)
"C:\Tally\tally9.exe" = C:\Tally\tally9.exe:*:Enabled:tally9 -- ()
"C:\WINDOWS\system32\HDAShCut.exe" = C:\WINDOWS\system32\HDAShCut.exe:*:Enabled:ipsec
"C:\WINDOWS\system32\regsvr.exe" = C:\WINDOWS\system32\regsvr.exe:*:Enabled:ipsec
"C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe" = C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe:*:Enabled:ipsec -- (Nokia)
"C:\WINDOWS\Explorer.exe" = C:\WINDOWS\Explorer.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Program Files\Google\Update\GoogleUpdate.exe" = C:\Program Files\Google\Update\GoogleUpdate.exe:*:Enabled:ipsec -- (Google Inc.)
"C:\Program Files\Google\Update\1.3.21.123\GoogleCrashHandler.exe" = C:\Program Files\Google\Update\1.3.21.123\GoogleCrashHandler.exe:*:Enabled:ipsec -- (Google Inc.)
"C:\WINDOWS\system32\ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Program Files\PC Connectivity Solution\NclInstaller.exe" = C:\Program Files\PC Connectivity Solution\NclInstaller.exe:*:Enabled:ipsec -- (Nokia)
"C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" = C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Program Files\Ask.com\Updater\Updater.exe" = C:\Program Files\Ask.com\Updater\Updater.exe:*:Enabled:ipsec -- (Ask)
"C:\Program Files\Microsoft Security Client\msseces.exe" = C:\Program Files\Microsoft Security Client\msseces.exe:*:Enabled:ipsec
"c:\Program Files\Microsoft Security Client\MpCmdRun.exe" = c:\Program Files\Microsoft Security Client\MpCmdRun.exe:*:Enabled:ipsec
"C:\Program Files\Analog Devices\Core\smax4pnp.exe" = C:\Program Files\Analog Devices\Core\smax4pnp.exe:*:Enabled:ipsec -- (Analog Devices, Inc.)
"C:\Program Files\Microsoft Office\Office12\msohtmed.exe" = C:\Program Files\Microsoft Office\Office12\msohtmed.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Program Files\Internet Explorer\iexplore.exe" = C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Program Files\Messenger\msmsgs.exe" = C:\Program Files\Messenger\msmsgs.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"D:\NAGESH\TDS Challan\TDS Challan .exe" = D:\NAGESH\TDS Challan\TDS Challan .exe:*:Disabled:TDS Challan -- ()
"C:\Program Files\Ask.com\UpdateTask.exe" = C:\Program Files\Ask.com\UpdateTask.exe:*:Enabled:ipsec -- ()
"C:\WINDOWS\system32\wscntfy.exe" = C:\WINDOWS\system32\wscntfy.exe:*:Enabled:ipsec -- (Microsoft Corporation)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0BEDBD4E-2D34-47B5-9973-57E62B29307C}" = ATI Control Panel
"{14DC0059-00F1-4F62-BD1A-AB23CD51A95E}" = Adobe AIR
"{17E2F183-BAC4-4D01-BD7A-59F781E17EFA}" = REALTEK PCIE NIC Driver
"{25F61E72-AAA4-4607-95D2-1E5139C98FFB}" = Nokia_Multimedia_Common_Components_2_5
"{26B914C5-5565-4C96-A40C-8E0228D6C457}" = WD SmartWare
"{336D0C35-8A85-403a-B9D2-65C292C39087}_is1" = Web Assistant 2.0.0.100
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{41313863-5170-4D7E-AD60-3CDF4DEBA81F}" = Nokia PC Suite
"{4FCB1267-7380-4EBA-9A6C-69809C6E8227}" = Nokia Music Player
"{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth
"{5DBDD3A9-EAF1-4938-B234-227FCB1D5CE0}" = Tally 9
"{5E4D6466-1917-4F6A-91FC-0A3EE4F31180}" = CanSecure-Corporate
"{5E4D6466-1917-4F6A-91FC-0A3EE4F31181}" = CanSecure-Retail
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7964AE02-9127-42C0-A917-2CE4CD4EFE3B}" = Nokia Suite
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = eSupport Toolbar
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B08C1FE-041F-45C5-A74A-DEFCD31C2820}" = Tally.ERP 9
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A57025CC-5F2E-4D01-B387-06DB10500D43}" = Nokia Connectivity Cable Driver
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9
"{AD13BFB0-FDD2-4AFA-A8AF-9F4A950D56B7}" = ArcSoft Camera Suite 1.3
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C96AA90C-9DE0-4C37-92F2-49CC3FE8C330}" = Nokia Software Updater
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}" = getPlus® for Adobe
"{DA5B2BDC-F654-4A88-A669-4D34BC7846A1}" = PC Connectivity Solution
"{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{FDC53DC6-137A-4541-BFA2-A9BAE4A7FE99}" = ULi Sata Driver
"504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"72A50F48CC5601190B9C4E74D81161693133E7F7" = Windows Driver Package - Nokia Modem (02/25/2011 7.01.0.9)
"7-Zip" = 7-Zip 9.20
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"All ATI Software" = ATI - Software Uninstall Utility
"ATI Display Driver" = ATI Display Driver
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"doPDF 7 printer_is1" = doPDF 7.2 printer
"E0AC723A3DE3A04256288CADBBB011B112AED454" = Windows Driver Package - Nokia Modem (02/25/2011 4.7)
"ENTERPRISE" = Microsoft Office Enterprise 2007
"HijackThis" = HijackThis 2.0.2
"ie8" = Windows Internet Explorer 8
"McAfee Virtual Technician" = McAfee Virtual Technician
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 16.0.2 (x86 en-GB)" = Mozilla Firefox 16.0.2 (x86 en-GB)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Nokia PC Suite" = Nokia PC Suite
"Nokia Suite" = Nokia Suite
"Nudi 4.0" = Nudi 4.0
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"WIC" = Windows Imaging Component
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01009" = Microsoft User-Mode Driver Framework Feature Pack 1.9
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{79A765E1-C399-405B-85AF-466F52E918B0}" = eSupport Toolbar Updater
"PixFix" = PixFix
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 09/12/2012 02:16:00 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application updatetask.exe, version 0.0.0.0, faulting module
updatetask.exe, version 0.0.0.0, fault address 0x00027124.
Error - 09/12/2012 02:51:00 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application updatetask.exe, version 0.0.0.0, faulting module
updatetask.exe, version 0.0.0.0, fault address 0x00027124.
Error - 09/12/2012 02:56:00 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application updatetask.exe, version 0.0.0.0, faulting module
updatetask.exe, version 0.0.0.0, fault address 0x00027124.
Error - 09/12/2012 03:07:47 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application acrord32info.exe, version 9.0.0.332, faulting
module acrord32info.exe, version 9.0.0.332, fault address 0x00007124.
Error - 09/12/2012 03:08:18 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application acrord32info.exe, version 9.0.0.332, faulting
module acrord32info.exe, version 9.0.0.332, fault address 0x00007124.
Error - 09/12/2012 03:08:50 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application acrord32info.exe, version 9.0.0.332, faulting
module acrord32info.exe, version 9.0.0.332, fault address 0x00007124.
Error - 09/12/2012 03:11:00 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application updatetask.exe, version 0.0.0.0, faulting module
updatetask.exe, version 0.0.0.0, fault address 0x00027124.
Error - 09/12/2012 03:16:00 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application updatetask.exe, version 0.0.0.0, faulting module
updatetask.exe, version 0.0.0.0, fault address 0x00027124.
Error - 09/12/2012 03:31:05 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application updatetask.exe, version 0.0.0.0, faulting module
, version 0.0.0.0, fault address 0x00000000.
Error - 09/12/2012 03:36:00 | Computer Name = ACCOUNTS | Source = Application Error | ID = 1000
Description = Faulting application updatetask.exe, version 0.0.0.0, faulting module
updatetask.exe, version 0.0.0.0, fault address 0x00027124.
[ System Events ]
Error - 08/12/2012 02:47:08 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 02:47:39 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 02:48:12 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 02:53:48 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 02:55:48 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 02:58:10 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 06:14:05 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 09:08:41 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 09:09:11 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
Error - 08/12/2012 09:09:41 | Computer Name = ACCOUNTS | Source = DCOM | ID = 10010
Description = The server {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C} did not register
with DCOM within the required timeout.
< End of report >
Edited by piy107, 09 December 2012 - 02:14 AM.