OTL logfile created on: 06/04/2013 16:58:54 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Don\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1.96 Gb Total Physical Memory | 0.61 Gb Available Physical Memory | 31.20% Memory free
3.92 Gb Paging File | 1.83 Gb Available in Paging File | 46.56% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 283.40 Gb Total Space | 204.30 Gb Free Space | 72.09% Space Free | Partition Type: NTFS
Computer Name: DON-PC | User Name: Don | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013/04/06 16:57:41 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Don\Downloads\OTL.exe
PRC - [2013/03/21 23:50:35 | 001,312,720 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013/02/10 20:12:06 | 001,124,016 | ---- | M] () -- C:\Program Files (x86)\AVG Secure Search\vprot.exe
PRC - [2013/02/10 20:12:05 | 000,965,296 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.1.7\ToolbarUpdater.exe
PRC - [2013/01/12 21:05:52 | 000,042,504 | ---- | M] (COMPANYVERS_NAME) -- C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39barsvc.exe
PRC - [2013/01/12 21:05:52 | 000,030,096 | ---- | M] (VER_COMPANY_NAME) -- C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39brmon.exe
PRC - [2012/11/13 14:08:12 | 003,487,240 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
PRC - [2012/11/13 14:08:08 | 003,825,176 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
PRC - [2012/11/13 14:07:24 | 000,168,384 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
PRC - [2012/11/13 14:07:20 | 001,369,624 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
PRC - [2012/11/13 14:07:16 | 001,103,392 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
PRC - [2012/11/12 14:31:09 | 002,869,824 | ---- | M] (Sophos Limited) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe
PRC - [2012/11/12 14:30:42 | 000,216,640 | ---- | M] (Sophos Limited) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
PRC - [2012/10/18 13:33:59 | 001,898,936 | ---- | M] (Bandoo Media, inc) -- C:\Program Files (x86)\Searchqu Toolbar\Datamngr\datamngrUI.exe
PRC - [2012/10/14 13:35:40 | 000,132,056 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton PC Checkup 3.0\SymcPCCULaunchSvc.exe
PRC - [2012/09/19 15:50:47 | 000,233,472 | ---- | M] () -- C:\ProgramData\Premium\OptimizerPro\OptimizerPro.exe
PRC - [2012/07/06 19:15:56 | 000,232,512 | ---- | M] (Sophos Limited) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
PRC - [2012/06/15 11:59:16 | 000,139,840 | ---- | M] (Sophos Limited) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
PRC - [2012/03/06 08:36:54 | 000,686,592 | ---- | M] () -- C:\Program Files (x86)\PCHealthDocPDFReader\PCDocPDFUpdt.exe
PRC - [2011/12/16 07:51:54 | 001,778,176 | ---- | M] () -- C:\Program Files (x86)\FreeWordHelper\FreeWordHelperUpdt.exe
PRC - [2011/10/19 05:28:54 | 000,150,552 | ---- | M] (Sophos Limited) -- C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe
PRC - [2011/10/19 05:28:54 | 000,089,112 | ---- | M] (Sophos Limited) -- C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFService.exe
PRC - [2011/09/29 22:36:32 | 000,126,392 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.15.91\ccSvcHst.exe
PRC - [2010/07/04 20:51:26 | 000,017,408 | ---- | M] () -- C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe
PRC - [2009/11/13 22:15:00 | 001,807,600 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
PRC - [2009/10/15 09:10:28 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2009/06/25 02:19:50 | 000,140,520 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
PRC - [2009/06/24 22:21:38 | 000,409,744 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
PRC - [2009/06/09 15:11:14 | 000,155,648 | ---- | M] (Stardock Corporation) -- C:\Program Files\Dell\DellDock\DockLogin.exe
PRC - [2009/06/05 01:03:32 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2009/06/05 01:03:06 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2009/05/21 14:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe
PRC - [2009/05/21 14:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe
========== Modules (No Company Name) ==========
MOD - [2013/03/21 23:50:33 | 000,390,096 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.43\ppgooglenaclpluginchrome.dll
MOD - [2013/03/21 23:50:32 | 012,662,224 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.43\PepperFlash\pepflashplayer.dll
MOD - [2013/03/21 23:50:31 | 004,050,896 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.43\pdf.dll
MOD - [2013/03/21 23:49:41 | 000,598,480 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.43\libglesv2.dll
MOD - [2013/03/21 23:49:40 | 000,124,368 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.43\libegl.dll
MOD - [2013/03/21 23:49:38 | 001,606,096 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.43\ffmpegsumo.dll
MOD - [2013/02/16 00:06:35 | 001,840,640 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\1b3ba2d88855715f6bb0bed9548f0811\System.Web.Services.ni.dll
MOD - [2013/02/16 00:05:54 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\cbad1de80eeb6d8ba1bf35806ca1c76a\System.Windows.Forms.ni.dll
MOD - [2013/02/10 20:12:09 | 000,156,848 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\14.1.7\SiteSafety.dll
MOD - [2013/02/10 20:12:06 | 001,124,016 | ---- | M] () -- C:\Program Files (x86)\AVG Secure Search\vprot.exe
MOD - [2012/11/28 15:13:52 | 000,087,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2012/11/28 15:13:30 | 001,242,512 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2012/11/14 21:01:14 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\66694f9192bd0dddc2eaf90fbcbcd555\System.Management.ni.dll
MOD - [2012/11/14 20:10:11 | 001,591,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\4e80768a2d88c7a333e43cbb7a6c0705\System.Drawing.ni.dll
MOD - [2012/11/14 20:09:33 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\25e672ea505e50ab058258ac72a54f02\System.Xml.ni.dll
MOD - [2012/11/14 20:09:26 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\c64ca3678261c8ffcd9e7efd1af6ed54\System.Configuration.ni.dll
MOD - [2012/11/14 20:09:24 | 007,988,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\9dd758ac0bf7358ac6e4720610fcc63c\System.ni.dll
MOD - [2012/11/14 20:08:45 | 011,493,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\187d7c66735c533de851c76384f86912\mscorlib.ni.dll
MOD - [2012/11/13 14:06:32 | 000,158,624 | ---- | M] () -- C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
MOD - [2012/11/13 14:06:30 | 000,108,960 | ---- | M] () -- C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
MOD - [2012/11/13 14:06:28 | 000,554,400 | ---- | M] () -- C:\Program Files (x86)\Spybot - Search & Destroy 2\VirtualTreesDXE150.bpl
MOD - [2012/11/13 14:06:28 | 000,528,288 | ---- | M] () -- C:\Program Files (x86)\Spybot - Search & Destroy 2\JSDialogPack150.bpl
MOD - [2012/11/13 14:06:28 | 000,416,160 | ---- | M] () -- C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
MOD - [2012/10/11 11:54:00 | 000,427,520 | ---- | M] () -- c:\Program Files (x86)\MocaFlix\sprotector.dll
MOD - [2010/07/04 22:32:36 | 000,004,608 | ---- | M] () -- C:\Program Files (x86)\Unlocker\UnlockerHook.dll
MOD - [2010/07/04 20:51:26 | 000,017,408 | ---- | M] () -- C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe
MOD - [2009/11/13 22:15:00 | 001,807,600 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
MOD - [2009/11/13 22:15:00 | 000,275,696 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbShared.dll
MOD - [2009/11/13 22:15:00 | 000,152,816 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbShared.XmlSerializers.dll
MOD - [2009/11/13 22:15:00 | 000,095,472 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbUI.dll
MOD - [2009/11/13 22:15:00 | 000,058,608 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\BalloonWindow.dll
MOD - [2009/11/13 22:15:00 | 000,017,648 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\CppUtils.dll
MOD - [2009/10/15 09:10:28 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
========== Services (SafeList) ==========
SRV:64bit: - [2012/07/11 19:54:58 | 000,140,672 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore64.exe -- (!SASCORE)
SRV:64bit: - [2009/07/17 02:06:22 | 000,033,280 | ---- | M] () [Auto | Running] -- C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE -- (wltrysvc)
SRV:64bit: - [2009/07/14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/06/29 05:44:38 | 000,240,128 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\stacsv64.exe -- (STacSV)
SRV:64bit: - [2009/06/09 15:11:14 | 000,155,648 | ---- | M] (Stardock Corporation) [Auto | Running] -- C:\Program Files\Dell\DellDock\DockLogin.exe -- (DockLoginService)
SRV - [2013/02/10 20:12:05 | 000,965,296 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.1.7\ToolbarUpdater.exe -- (vToolbarUpdater14.1.7)
SRV - [2013/01/12 21:05:52 | 000,042,504 | ---- | M] (COMPANYVERS_NAME) [Auto | Running] -- C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39barsvc.exe -- (MapsGalaxy_39Service)
SRV - [2012/11/12 14:31:09 | 002,869,824 | ---- | M] (Sophos Limited) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe -- (swi_service)
SRV - [2012/11/12 14:31:07 | 001,998,400 | ---- | M] (Sophos Limited) [Auto | Stopped] -- C:\ProgramData\Sophos\Web Intelligence\swi_update_64.exe -- (swi_update_64)
SRV - [2012/11/12 14:30:42 | 000,216,640 | ---- | M] (Sophos Limited) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe -- (SAVAdminService)
SRV - [2012/10/14 13:35:40 | 000,132,056 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton PC Checkup 3.0\SymcPCCULaunchSvc.exe -- (Norton PC Checkup Application Launcher)
SRV - [2012/07/13 13:28:36 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/07/06 19:15:56 | 000,232,512 | ---- | M] (Sophos Limited) [Auto | Running] -- C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe -- (Sophos AutoUpdate Service)
SRV - [2012/06/15 11:59:16 | 000,139,840 | ---- | M] (Sophos Limited) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe -- (SAVService)
SRV - [2012/03/06 08:36:54 | 000,686,592 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\PCHealthDocPDFReader\PCDocPDFUpdt.exe -- (PCDocPDFUpdt)
SRV - [2011/12/16 07:51:54 | 001,778,176 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\FreeWordHelper\FreeWordHelperUpdt.exe -- (FreeWordHelper)
SRV - [2011/10/19 05:28:54 | 000,150,552 | ---- | M] (Sophos Limited) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe -- (Sophos Client Firewall Manager)
SRV - [2011/10/19 05:28:54 | 000,089,112 | ---- | M] (Sophos Limited) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFService.exe -- (Sophos Client Firewall)
SRV - [2011/09/29 22:36:32 | 000,126,392 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.15.91\ccSvcHst.exe -- (PCCUJobMgr)
SRV - [2011/08/11 21:03:00 | 000,630,584 | ---- | M] (FixBee., (www.fixbee.com)) [Auto | Running] -- C:\Program Files (x86)\FixBee\FBDefragSrv64.exe -- (FBDiskOptimizer)
SRV - [2010/08/28 15:39:43 | 000,013,160 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\599\g2aservice.exe -- (GoToAssist)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/29 05:44:38 | 000,240,128 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe -- (STacSV)
SRV - [2009/06/10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/06/05 01:03:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)
SRV - [2009/05/21 14:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) [Auto | Running] -- C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe -- (sprtsvc_DellSupportCenter)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013/02/10 20:12:10 | 000,039,768 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:64bit: - [2012/10/30 23:51:55 | 000,021,136 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:64bit: - [2012/04/24 17:25:28 | 000,144,672 | ---- | M] (Sophos Limited) [File_System | System | Running] -- C:\Windows\SysNative\drivers\savonaccess.sys -- (SAVOnAccess)
DRV:64bit: - [2012/03/08 18:40:52 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/03/01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/08/25 04:47:36 | 000,102,688 | ---- | M] (Sophos Limited) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scfdriver.sys -- (scfdriver)
DRV:64bit: - [2011/08/25 04:47:36 | 000,055,072 | ---- | M] (Sophos Limited) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scfndis.sys -- (scfndis)
DRV:64bit: - [2011/08/25 04:47:24 | 000,025,608 | ---- | M] (Sophos Plc) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\SophosBootDriver.sys -- (SophosBootDriver)
DRV:64bit: - [2011/07/22 17:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys -- (SASDIFSV)
DRV:64bit: - [2011/07/12 22:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys -- (SASKUTIL)
DRV:64bit: - [2011/03/11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/02/18 17:36:58 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2010/11/20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 12:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/06/02 05:31:38 | 000,035,840 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BVRPMPR5a64.SYS -- (BVRPMPR5a64)
DRV:64bit: - [2009/07/17 02:06:20 | 000,022,520 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcm42rly.sys -- (BCM42RLY)
DRV:64bit: - [2009/07/17 02:06:16 | 002,769,400 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2009/07/14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/09 09:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009/06/29 05:44:38 | 000,487,424 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2009/06/25 12:26:10 | 000,273,456 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2009/06/15 19:06:42 | 000,172,704 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CtClsFlt.sys -- (CtClsFlt)
DRV:64bit: - [2009/06/10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/06/04 11:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009/06/03 04:16:56 | 007,333,472 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/05/20 04:10:00 | 000,393,728 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009/05/08 09:15:18 | 000,215,552 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV - [2010/07/04 20:51:26 | 000,004,096 | ---- | M] () [Kernel | Unavailable | Unknown] -- C:\Program Files (x86)\Unlocker\UnlockerDriver5.sys -- (UnlockerDriver5)
DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://uk.red.client...arch.yahoo.com/
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://news.yahoo.com/ [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://uk.red.client...fo/bt_side.html
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://news.yahoo.com/ [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch = http://uk.red.client...fo/bt_side.html
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{08911888-551A-4733-888A-7283A7911C25}: "URL" = http://shopping.yaho...Terms}&fr=yie7c
IE:64bit: - HKLM\..\SearchScopes\{0CB6BCB9-6716-4579-B9A5-EBC8D98935EB}: "URL" = http://news.search.y...Terms}&fr=yie7c
IE:64bit: - HKLM\..\SearchScopes\{122B5A71-435A-4064-B2A2-C296E2CA452D}: "URL" = http://search.yahoo....Terms}&fr=yie7c
IE:64bit: - HKLM\..\SearchScopes\{3ADF6F40-B12B-44AC-805D-703D36A8E160}: "URL" = http://answers.yahoo...Terms}&fr=yie7c
IE:64bit: - HKLM\..\SearchScopes\{3AE8076E-F93C-4B2B-9F48-62A94922B2F0}: "URL" = http://video.yahoo.c...Terms}&fr=yie7c
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2408}: "URL" = http://dts.search-re...q={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{A5A18C7C-27CB-4EE0-B17F-8F93B7BB53D7}: "URL" = http://local.yahoo.c...Terms}&fr=yie7c
IE:64bit: - HKLM\..\SearchScopes\{AE5915FF-F9D5-4383-9F08-2E3B3B2AF4E3}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE:64bit: - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT2319576
IE:64bit: - HKLM\..\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}: "URL" = http://us.yhs.search...p={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{D8DCC771-8554-46C7-B2B7-503C80F3770F}: "URL" = http://images.search...Terms}&fr=yie7c
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://websearch.mocaflix.com/
IE - HKLM\..\URLSearchHook: {6c3d3bd4-75f8-4283-bb97-1e22c4c090df} - C:\Program Files (x86)\Produtools_Manuals_2.1_B\prxtbProd.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {b2bf7b3f-bf0b-4c48-aec6-f92c51be63e1} - C:\Program Files (x86)\Produtools_Manuals_2.1\prxtbProd.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {ebd898f8-fcf6-4694-bc3b-eabc7271eeb1} - C:\Program Files (x86)\WiseConvert\prxtbWise.dll (Conduit Ltd.)
IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKLM\..\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0}: "URL" = http://search.mywebs...r={searchTerms}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKLM\..\SearchScopes\{6FA10014-1740-455F-86C7-0C2F6909374E}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2408}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...607068781174987
IE - HKLM\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.moc...q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://news.yahoo.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SEARCH PAGE = http://uk.red.client...arch.yahoo.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://dell.uk.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = B1 F1 D5 A2 C8 46 CB 01 [binary data]
IE - HKCU\..\URLSearchHook: {26842a09-ffa8-4e2c-ae12-0c80f01c3295} - No CLSID value found
IE - HKCU\..\URLSearchHook: {6c3d3bd4-75f8-4283-bb97-1e22c4c090df} - C:\Program Files (x86)\Produtools_Manuals_2.1_B\prxtbProd.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKCU\..\URLSearchHook: {b2bf7b3f-bf0b-4c48-aec6-f92c51be63e1} - C:\Program Files (x86)\Produtools_Manuals_2.1\prxtbProd.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {ebd898f8-fcf6-4694-bc3b-eabc7271eeb1} - C:\Program Files (x86)\WiseConvert\prxtbWise.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {fa63398e-322b-4833-9af3-15837ad12138} - C:\Program Files (x86)\searchresults\searchresultsDx.dll (Ask.com)
IE - HKCU\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2408}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylo...00070f1a1987393
IE - HKCU\..\SearchScopes\{138D7C85-7A5F-48E6-BAD5-5DE380CBBCA1}: "URL" = http://search.avg.co...e}&iy=&ychte=us
IE - HKCU\..\SearchScopes\{1D4CF8E2-04CB-4396-83EE-1775D568710A}: "URL" = http://shopping.yaho...Terms}&fr=yie7c
IE - HKCU\..\SearchScopes\{1E09EE3E-7E2C-4441-BC69-0D5703F05061}: "URL" = http://news.search.y...Terms}&fr=yie7c
IE - HKCU\..\SearchScopes\{2F2B73F7-93B6-44FD-87CF-80831A567C73}: "URL" = http://www.google.co...&rlz=1I7ADRA_en
IE - HKCU\..\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0}: "URL" = http://search.mywebs...r={searchTerms}
IE - HKCU\..\SearchScopes\{5ADDCF1E-1C44-49FF-A96A-4D83886CE41C}: "URL" = http://video.yahoo.c...Terms}&fr=yie7c
IE - HKCU\..\SearchScopes\{6FA10014-1740-455F-86C7-0C2F6909374E}: "URL" = http://www.bing.com/...ferrer:source?}
IE - HKCU\..\SearchScopes\{7C8F1499-CAC6-4211-AB27-5E80AA6492AD}: "URL" = http://search.yahoo....Terms}&fr=yie7c
IE - HKCU\..\SearchScopes\{8F62D913-66CF-4C31-8632-29F5779862DD}: "URL" = http://answers.yahoo...Terms}&fr=yie7c
IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.c...r=&d=2013-01-20 17:42:46&v=13.2.0.4&sap=dsp&q={searchTerms}
IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2408}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKCU\..\SearchScopes\{AF3ACB58-280D-4B3C-8243-16D11CAE53BB}: "URL" = http://local.yahoo.c...Terms}&fr=yie7c
IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...607068781174987
IE - HKCU\..\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}: "URL" = http://eu.ask.com/we...q={searchTerms}
IE - HKCU\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.moc...q={searchTerms}
IE - HKCU\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.Incre...NWhda0SPY7&i=38
IE - HKCU\..\SearchScopes\{DCFCA1DA-C2C0-46EF-B7AB-D05C98BCDF7A}: "URL" = http://websearch.ask...A9-870C883E197B
IE - HKCU\..\SearchScopes\{DE5FD50C-D273-4F5A-B24C-5C24ED0530E9}: "URL" = http://images.search...Terms}&fr=yie7c
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:6522
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\14.1.7\\npsitesafety.dll ()
FF - HKLM\Software\MozillaPlugins\@ei.TotalRecipeSearch_14.com/Plugin: C:\Program Files (x86)\TotalRecipeSearch_14EI\Installr\1.bin\NP14EISB.dll (TotalRecipeSearch)
FF - HKLM\Software\MozillaPlugins\@ei.UtilityChest_49.com/Plugin: File not found
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@MapsGalaxy_39.com/Plugin: C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\NP39Stub.dll (MindSpark)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@mywebsearch.com/Plugin: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@UtilityChest_49.com/Plugin: C:\Program Files (x86)\UtilityChest_49\bar\1.bin\NP49Stub.dll (MindSpark)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\49ffxtbr@UtilityChest_49.com: C:\Program Files (x86)\UtilityChest_49\bar\1.bin [2013/04/06 13:01:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\39ffxtbr@MapsGalaxy_39.com: C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin [2013/04/06 13:01:21 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\ProgramData\AVG Secure Search\FireFoxExt\14.1.0.10 [2013/02/19 17:00:54 | 000,000,000 | ---D | M]
[2010/08/27 17:26:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Don\AppData\Roaming\mozilla\Extensions
[2010/08/27 17:26:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Don\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
========== Chrome ==========
CHR - homepage: http://www.google.com
CHR - Extension: No name found = C:\Users\Don\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\8.0.1483_1\
CHR - Extension: No name found = C:\Users\Don\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\14.1.0.10_0\
O1 HOSTS File: ([2009/06/10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (DataMngr) - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64\BrowserConnection.dll (Bandoo Media, inc)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg64.dll (Google Inc.)
O2 - BHO: (Toolbar BHO) - {1e91a655-bb4b-4693-a05e-2edebc4c9d89} - C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39bar.dll (MindSpark)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.)
O2 - BHO: (Produtools Manuals 2.1 B Toolbar) - {6c3d3bd4-75f8-4283-bb97-1e22c4c090df} - C:\Program Files (x86)\Produtools_Manuals_2.1_B\prxtbProd.dll (Conduit Ltd.)
O2 - BHO: (Search Assistant BHO) - {71c1d63a-c944-428a-a5bd-ba513190e5d2} - C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39SrcAs.dll (MindSpark)
O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\14.1.0.10\AVG Secure Search_toolbar.dll ()
O2 - BHO: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\searchqudtx.dll ()
O2 - BHO: (DataMngr) - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\Program Files (x86)\Searchqu Toolbar\Datamngr\BrowserConnection.dll (Bandoo Media, inc)
O2 - BHO: (FreeWordHelp 1.0) - {A229BC5B-E7A2-447B-B015-1E7CA944978D} - C:\Program Files (x86)\FreeWordHelper\FreeWordHelper1.0.dll ()
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
O2 - BHO: (Produtools Manuals 2.1 Toolbar) - {b2bf7b3f-bf0b-4c48-aec6-f92c51be63e1} - C:\Program Files (x86)\Produtools_Manuals_2.1\prxtbProd.dll (Conduit Ltd.)
O2 - BHO: (WiseConvert Toolbar) - {ebd898f8-fcf6-4694-bc3b-eabc7271eeb1} - C:\Program Files (x86)\WiseConvert\prxtbWise.dll (Conduit Ltd.)
O2 - BHO: (Search Results Toolbar) - {fa63398e-322b-4833-9af3-15837ad12138} - C:\Program Files (x86)\searchresults\searchresultsDx.dll (Ask.com)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (MapsGalaxy) - {364ea597-e728-4ce4-bb4a-ed846ef47970} - C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39bar.dll (MindSpark)
O3 - HKLM\..\Toolbar: (Produtools Manuals 2.1 B Toolbar) - {6c3d3bd4-75f8-4283-bb97-1e22c4c090df} - C:\Program Files (x86)\Produtools_Manuals_2.1_B\prxtbProd.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\14.1.0.10\AVG Secure Search_toolbar.dll ()
O3 - HKLM\..\Toolbar: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\searchqudtx.dll ()
O3 - HKLM\..\Toolbar: (Produtools Manuals 2.1 Toolbar) - {b2bf7b3f-bf0b-4c48-aec6-f92c51be63e1} - C:\Program Files (x86)\Produtools_Manuals_2.1\prxtbProd.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKLM\..\Toolbar: (WiseConvert Toolbar) - {ebd898f8-fcf6-4694-bc3b-eabc7271eeb1} - C:\Program Files (x86)\WiseConvert\prxtbWise.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Search Results Toolbar) - {fa63398e-322b-4833-9af3-15837ad12138} - C:\Program Files (x86)\searchresults\searchresultsDx.dll (Ask.com)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (MapsGalaxy) - {364EA597-E728-4CE4-BB4A-ED846EF47970} - C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39bar.dll (MindSpark)
O3 - HKCU\..\Toolbar\WebBrowser: (Produtools Manuals 2.1 B Toolbar) - {6C3D3BD4-75F8-4283-BB97-1E22C4C090DF} - C:\Program Files (x86)\Produtools_Manuals_2.1_B\prxtbProd.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Produtools Manuals 2.1 Toolbar) - {B2BF7B3F-BF0B-4C48-AEC6-F92C51BE63E1} - C:\Program Files (x86)\Produtools_Manuals_2.1\prxtbProd.dll (Conduit Ltd.)
O4:64bit: - HKLM..\Run: [Broadcom Wireless Manager UI] C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE (Dell Inc.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [DATAMNGR] C:\Program Files (x86)\Searchqu Toolbar\Datamngr\datamngrUI.exe (Bandoo Media, inc)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe ()
O4 - HKLM..\Run: [Dell Webcam Central] C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [DellSupportCenter] C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKLM..\Run: [Desktop Disc Tool] c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [MapsGalaxy Search Scope Monitor] C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39SrchMn.exe (MindSpark)
O4 - HKLM..\Run: [MapsGalaxy_39 Browser Plugin Loader] C:\Program Files (x86)\MapsGalaxy_39\bar\2.bin\39brmon.exe (VER_COMPANY_NAME)
O4 - HKLM..\Run: [PDVDDXSrv] C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe (CyberLink Corp.)
O4 - HKLM..\Run: [SDTray] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
O4 - HKLM..\Run: [UnlockerAssistant] C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe ()
O4 - HKLM..\Run: [vProt] C:\Program Files (x86)\AVG Secure Search\vprot.exe ()
O4 - Startup: C:\Users\Don\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000019 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll (Sophos Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll (Sophos Limited)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} http://bq.bp.2020.ne...yerAX_Win32.cab (20-20 3D Viewer)
O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} http://ccfiles.creat...101/CTSUEng.cab (Creative Software AutoUpdate)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{08B7F4BC-6B85-4802-A747-1BE2C9DDCF47}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{806EB23E-BE79-4048-9CD5-DED72498E695}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\viprotocol - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\14.1.7\ViProtocol.dll ()
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SEARCH~2\Datamngr\x64\datamngr.dll C:\PROGRA~2\SEARCH~2\Datamngr\x64\IEBHO.dll) - C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64\datamngr.dll (Bandoo Media, inc)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\Sophos\SOPHOS~2\SOPHOS~2.DLL) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll (Sophos Limited)
O20 - AppInit_DLLs: (C:\PROGRA~2\SEARCH~2\Datamngr\datamngr.dll C:\PROGRA~2\SEARCH~2\Datamngr\IEBHO.dll c:\progra~2\mocaflix\sprote~1.dll) - C:\Program Files (x86)\Searchqu Toolbar\Datamngr\datamngr.dll (Bandoo Media, inc)
O20 - AppInit_DLLs: (C:\PROGRA~2\Sophos\SOPHOS~2\SOPHOS~1.DLL) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured.dll (Sophos Limited)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files (x86)\Citrix\GoToAssist\599\G2AWinLogon_x64.dll) - C:\Program Files (x86)\Citrix\GoToAssist\599\g2awinlogon_x64.dll (Citrix Online, a division of Citrix Systems, Inc.)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013/04/06 16:08:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
[2013/04/06 16:00:33 | 000,000,000 | ---D | C] -- C:\Program Files\Defraggler
[2013/04/06 14:43:01 | 000,177,680 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\mfevtps.exe.25c0.deleteme
[2013/04/06 14:22:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\stinger
[2013/04/06 14:21:30 | 000,000,000 | ---D | C] -- C:\Program Files\stinger
[2013/04/06 12:53:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2013/04/06 12:53:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
[2013/04/06 12:53:28 | 000,017,272 | ---- | C] (Safer Networking Limited) -- C:\Windows\SysNative\sdnclean64.exe
[2013/04/06 12:53:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy 2
[2013/04/06 12:17:41 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{D106A01C-3152-4881-86CD-DE52B7E7075F}
[2013/04/06 12:13:02 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\Acelogix
[2013/04/06 12:02:50 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ace Utilities
[2013/04/06 12:02:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ace Utilities
[2013/04/06 12:02:31 | 000,000,000 | ---D | C] -- C:\Program Files\Ace Utilities
[2013/04/06 11:48:56 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{0A630F0B-0989-4443-88B7-427F90372534}
[2013/04/06 10:46:12 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{0AB5F8A8-716C-4EEE-BA4F-53EBD98F61F1}
[2013/04/06 09:47:55 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{8ECBEDAE-E3F1-4915-8CA2-F37CAFF0A5E9}
[2013/04/06 08:10:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
[2013/04/06 07:38:14 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{CBCED927-1F9B-4257-BB21-5E2261A2AB14}
[2013/04/05 23:22:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Licenses
[2013/04/05 23:04:05 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{2303C5D9-1F96-4EA8-AFD6-7EFF2DCDF9B1}
[2013/04/05 21:22:23 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{2CDE78AF-B2F7-493C-8F7A-DE68BC0AA7A4}
[2013/04/05 19:36:56 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{032C79A0-C730-426B-9502-1EEF7D0C5BBD}
[2013/04/05 19:22:11 | 000,000,000 | --SD | C] -- C:\Windows\SysWow64\Microsoft
[2013/04/05 17:54:50 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{603F6236-71F4-46C0-B2CF-3F4B05C29995}
[2013/04/05 15:57:16 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{4347F267-5EA6-4ACC-B637-2E3A5EBB4179}
[2013/04/05 14:51:01 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{50E4A78B-755C-4B8C-8EC3-B6DA372071E3}
[2013/03/30 09:52:05 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
[2013/03/30 09:36:11 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{51D32997-4A64-43E4-AFA2-6B3896B7E5CC}
[2013/03/30 01:34:56 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{4E62CB1E-1D94-44E2-8D06-F62AEDA123B9}
[2013/03/29 09:16:46 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{5F385854-37F2-4300-818A-C2474A965998}
[2013/03/28 22:31:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Unlocker
[2013/03/28 22:29:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2013/03/28 22:28:47 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2013/03/28 22:26:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
[2013/03/28 22:26:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SpywareBlaster
[2013/03/28 17:55:28 | 000,000,000 | ---D | C] -- C:\Stinger_Quarantine
[2013/03/28 17:51:37 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{51973010-C63D-4848-BC17-E66631030875}
[2013/03/28 17:07:20 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Roaming\SUPERAntiSpyware.com
[2013/03/28 17:06:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2013/03/28 17:05:54 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2013/03/28 17:05:54 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2013/03/28 15:41:56 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{EE6A98C8-9A54-448F-9609-14B3AD13D253}
[2013/03/28 08:17:30 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{E0EA4873-327D-4628-8415-599CE57B464F}
[2013/03/27 22:38:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2013/03/27 22:28:28 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{CFCEDD3D-6454-4138-8605-C748629AF3D2}
[2013/03/27 21:44:32 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{66ADCACA-F41B-4D37-8175-917212454440}
[2013/03/27 18:38:40 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{5FA6A812-3C6E-4A2A-985B-AA77A6D55019}
[2013/03/27 18:33:48 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{3666586C-34DD-4C23-97F7-A9D2D8B37822}
[2013/03/26 20:05:26 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{1131FA52-A353-4842-8BBF-7BF53A5D1312}
[2013/03/26 15:53:35 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{FAC67AAD-659E-4959-9E3C-7C953AFEFE9F}
[2013/03/26 15:18:27 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{E6769F3A-0EA6-4E5F-8398-7F332669B2A5}
[2013/03/25 18:15:04 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{8F43BB4B-0D64-4F22-963C-926E31AF613B}
[2013/03/25 08:34:25 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{A119252C-EE3B-4F19-8F6B-B1373AC555F1}
[2013/03/25 06:54:17 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{BF522BA6-0E57-4397-A7D3-74E56CF9E0C2}
[2013/03/24 23:30:53 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{603C59B1-7D44-4ED9-930D-6EAB5935252E}
[2013/03/24 23:06:46 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{FE106274-CF08-4476-BC9C-FB3971068D86}
[2013/03/24 22:44:41 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{B5AAF5D7-A820-43EB-94D4-C0AA4AF6C038}
[2013/03/24 21:38:27 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{6BA06D72-2956-42F2-B8F5-EEB8674F28D9}
[2013/03/22 16:52:00 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{15BC468C-BC60-4DE5-A285-1B8EDBDF5C8B}
[2013/03/22 16:21:27 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{2ABE0206-733B-4E0B-9DBD-1BBB87F0120A}
[2013/03/22 10:15:15 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{07BF8E91-8CEF-4C2F-A9BE-54116838E33B}
[2013/03/22 00:03:27 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{AB775269-D186-4E7C-9604-55F7413C8E22}
[2013/03/21 22:10:07 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{B1B4B20D-FB78-4BBB-8EA1-E0DDD4121EFF}
[2013/03/21 19:06:03 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{99A42A36-C37F-4A22-A707-B845F518CF50}
[2013/03/21 01:17:13 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{B0DCE0FB-A76B-424D-9D0D-7BFE473BD1CA}
[2013/03/20 18:52:10 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{B375B6F7-290E-4F25-B186-A46C2E87DB67}
[2013/03/19 19:10:21 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{A5E24220-F2B0-4D23-B349-E07BD4DF6CFA}
[2013/03/19 18:35:57 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{C6FF6CAC-BDD8-4FDC-9618-2FB2E2555A1F}
[2013/03/19 11:53:01 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{A9732D2E-B397-48F2-8C20-7609242783AA}
[2013/03/19 08:49:41 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{2FBB9351-D0ED-455C-9E1C-D677AA3FBEE3}
[2013/03/18 18:23:53 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{FFCBD3B8-1958-40EB-B73C-3291A6DE429B}
[2013/03/17 17:28:34 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{FD66382A-FE89-4046-BB0A-05B4AB4A7617}
[2013/03/17 13:37:50 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{0EB01D98-89F7-4407-87B1-86C0CA5419F0}
[2013/03/17 09:36:19 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{D884953C-0863-467C-BBFE-7078CE2785FA}
[2013/03/16 10:53:33 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{6C8C1C2B-38B3-463A-89A5-7EE9B66C23B6}
[2013/03/16 10:02:15 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{65CF3E53-74A6-47F1-B2E9-F0378767D3B1}
[2013/03/15 20:49:47 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{23199742-55B9-47E0-A264-0F442E1F473A}
[2013/03/15 16:37:13 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{4856DD2D-19AB-4B41-918E-38F088426EB1}
[2013/03/14 22:38:09 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{2ECFF658-4427-46DE-A2F3-7C7795993FCC}
[2013/03/14 20:51:01 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{7FAF3BD5-6EA5-4EFE-8D05-F7FC70B43F39}
[2013/03/14 11:59:08 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{BA487684-7F14-47AB-BB69-7865A6AF0FAC}
[2013/03/13 21:20:21 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{678095C6-4FD9-4CD8-9F8E-DFCD292F400E}
[2013/03/13 19:23:29 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{43BB29DA-E026-4B0E-A913-7A364CCB66C6}
[2013/03/13 19:15:11 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{C6F68C63-694A-48F3-8468-3BF33F8987F6}
[2013/03/13 18:07:41 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{D07DB5A8-B5A7-40ED-92A5-D5FA39DE2C76}
[2013/03/13 08:46:09 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{720924FE-694F-4B4D-99EE-68C9C2DAEB03}
[2013/03/13 07:16:34 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{C67DF04C-7E28-4B6C-A9D7-8AFDB4E4A03F}
[2013/03/13 07:03:45 | 000,000,000 | ---D | C] -- C:\0af365146c5695cce61696
[2013/03/13 07:02:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2013/03/13 07:00:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2013/03/13 07:00:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2013/03/12 17:57:10 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{AD4E9D02-35ED-463B-9B52-41D19061C4F3}
[2013/03/12 07:55:50 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{24F16686-992D-4ACB-B817-A0CF6BF8A09F}
[2013/03/12 07:14:37 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{811481E5-91D3-4867-9945-AFA563102831}
[2013/03/11 23:30:53 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{31FB8C6E-F564-4EEA-BD11-B2F7E4E84DA5}
[2013/03/11 22:39:54 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{EBB190ED-4239-4A39-883D-6276A64C24E7}
[2013/03/11 19:12:40 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{D667C0D1-754E-45C8-BCE8-5DF29722E484}
[2013/03/10 23:43:31 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{19FF57BF-76F6-46DE-891E-8C9F09A33527}
[2013/03/10 20:42:38 | 000,000,000 | ---D | C] -- C:\255ce124ca4a160452abfea6c616
[2013/03/10 20:28:47 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{6A3375D3-8DB8-46FF-ABFC-6FE48612EABD}
[2013/03/09 01:11:19 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{B4344233-A1BD-46F1-9585-EFDDEAF82E53}
[2013/03/08 10:51:57 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{AF734106-24F2-493D-B09E-E6B5A270F63D}
[2013/03/07 22:41:39 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{212AF55A-85EC-43E0-8231-37C0294101EA}
[2013/03/07 20:14:29 | 000,000,000 | ---D | C] -- C:\Users\Don\AppData\Local\{2E865D75-A36B-4095-89DA-AEE25A3F3104}
[2013/02/10 21:15:17 | 001,989,952 | ---- | C] (Conduit) -- C:\Users\Don\Produtools_Manuals_2.1_B.exe
[2013/01/20 15:58:42 | 001,304,096 | ---- | C] (Bandoo Media Inc) -- C:\Users\Don\iLividSetup.exe
[2012/12/25 12:23:08 | 000,572,328 | ---- | C] (Bandoo Media Inc) -- C:\Users\Don\FixBeeV1.exe
[2012/11/10 22:14:44 | 002,166,392 | ---- | C] (Conduit) -- C:\Users\Don\WiseConvert.exe
[2007/02/16 16:28:38 | 018,040,176 | ---- | C] (Microsoft Corporation) -- C:\Users\Don\Install_Messenger_nous.exe
[2007/02/16 14:53:18 | 000,394,864 | ---- | C] (Microsoft Corporation) -- C:\Users\Don\PlusServicePack_01.exe
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013/04/06 17:05:00 | 000,000,892 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/04/06 16:08:22 | 000,001,726 | ---- | M] () -- C:\Users\Public\Desktop\Defraggler.lnk
[2013/04/06 16:08:01 | 000,000,506 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task e3b1a3c4-ba60-4529-a82e-1efc9f3f2728.job
[2013/04/06 15:56:35 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/04/06 15:56:35 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/04/06 15:49:00 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/04/06 15:48:59 | 000,000,402 | -H-- | M] () -- C:\Windows\tasks\OptimizerProUpdaterTask{04376D80-8D2A-4FC8-B8A0-9C16BA90F216}.job
[2013/04/06 15:48:52 | 000,000,142 | ---- | M] () -- C:\Windows\ODBC.INI
[2013/04/06 15:48:27 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/04/06 15:48:25 | 1579,438,080 | -HS- | M] () -- C:\hiberfil.sys
[2013/04/06 14:42:59 | 000,177,680 | ---- | M] (McAfee, Inc.) -- C:\Windows\SysNative\mfevtps.exe.25c0.deleteme
[2013/04/06 12:53:39 | 000,002,131 | ---- | M] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
[2013/04/06 12:02:52 | 000,002,053 | ---- | M] () -- C:\Users\Don\Desktop\Ace Utilities.lnk
[2013/04/06 10:17:35 | 000,726,444 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/04/06 10:17:35 | 000,628,874 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/04/06 10:17:35 | 000,111,026 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/04/06 08:10:52 | 000,002,174 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2013/04/06 02:00:01 | 000,000,506 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 47d9e794-8de6-4a23-a2f2-43dc5c17aa35.job
[2013/04/05 23:30:42 | 000,001,172 | ---- | M] () -- C:\Users\Don\Desktop\QuickStores.lnk
[2013/04/05 23:30:42 | 000,001,172 | ---- | M] () -- C:\Users\Don\Application Data\Microsoft\Internet Explorer\Quick Launch\QuickStores.lnk
[2013/04/05 23:22:18 | 000,001,037 | ---- | M] () -- C:\Users\Public\Desktop\SpywareBlaster.lnk
[2013/04/05 23:07:34 | 000,000,824 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013/04/05 15:40:13 | 000,001,810 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2013/03/30 01:39:38 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2013/03/30 01:31:48 | 000,002,237 | ---- | M] () -- C:\Users\Don\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/03/27 22:38:19 | 000,002,213 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013/04/06 16:08:22 | 000,001,726 | ---- | C] () -- C:\Users\Public\Desktop\Defraggler.lnk
[2013/04/06 12:53:39 | 000,002,143 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
[2013/04/06 12:53:39 | 000,002,131 | ---- | C] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
[2013/04/06 12:02:52 | 000,002,053 | ---- | C] () -- C:\Users\Don\Desktop\Ace Utilities.lnk
[2013/04/06 08:10:52 | 000,002,174 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2013/04/05 23:07:33 | 000,000,824 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013/04/05 15:41:03 | 000,000,506 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task e3b1a3c4-ba60-4529-a82e-1efc9f3f2728.job
[2013/04/05 15:40:59 | 000,000,506 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 47d9e794-8de6-4a23-a2f2-43dc5c17aa35.job
[2013/04/05 15:40:13 | 000,001,810 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2013/03/30 09:52:08 | 000,001,172 | ---- | C] () -- C:\Users\Don\Desktop\QuickStores.lnk
[2013/03/30 09:52:08 | 000,001,172 | ---- | C] () -- C:\Users\Don\Application Data\Microsoft\Internet Explorer\Quick Launch\QuickStores.lnk
[2013/03/28 22:26:08 | 000,001,037 | ---- | C] () -- C:\Users\Public\Desktop\SpywareBlaster.lnk
[2013/03/27 22:38:19 | 000,002,237 | ---- | C] () -- C:\Users\Don\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/03/27 22:38:18 | 000,002,213 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013/01/13 23:11:01 | 000,000,142 | ---- | C] () -- C:\Windows\ODBC.INI
[2013/01/13 20:31:36 | 006,059,528 | ---- | C] () -- C:\Users\Don\sophos_scss_10_sfx.exe
[2013/01/13 19:37:01 | 103,784,312 | ---- | C] () -- C:\Users\Don\escw_100_sa_sfx.exe
[2013/01/09 11:57:42 | 000,615,591 | ---- | C] () -- C:\Users\Don\SophosOutlookAdd-in.zip
[2012/12/06 20:36:44 | 000,007,600 | ---- | C] () -- C:\Users\Don\AppData\Local\Resmon.ResmonCfg
[2012/06/05 15:36:56 | 000,000,140 | ---- | C] () -- C:\Windows\RealFlight.INI
[2012/05/22 15:20:33 | 000,003,584 | ---- | C] () -- C:\Users\Don\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/12/31 19:30:14 | 002,083,965 | ---- | C] () -- C:\Users\Don\Futura SE - Build manual.pdf
[2011/06/17 06:55:34 | 000,000,000 | ---- | C] () -- C:\Users\Don\AppData\Local\{5BA24E11-18D7-442C-95BC-4C1E3318BC5C}
[2011/06/17 06:53:44 | 000,000,000 | ---- | C] () -- C:\Users\Don\AppData\Local\{BB7CD90E-7AE7-46F6-A112-8130E762FA04}
[2011/06/15 11:30:53 | 000,000,000 | ---- | C] () -- C:\Users\Don\AppData\Local\{766CE019-6825-4C8C-962C-3389D3C488B8}
[2011/06/12 02:30:34 | 000,000,000 | ---- | C] () -- C:\Users\Don\AppData\Local\{3124ED10-6535-4770-B146-292AF4AD1F44}
[2010/08/27 17:22:02 | 000,103,784 | ---- | C] () -- C:\Users\Don\GoToAssistDownloadHelper.exe
[2010/06/10 13:55:28 | 000,000,355 | ---- | C] () -- C:\Program Files\Homegroup - Shortcut.lnk
[2010/06/09 16:51:57 | 000,000,000 | ---- | C] () -- C:\Users\Don\AppData\Roaming\wklnhst.dat
[2007/02/13 16:56:18 | 025,591,352 | ---- | C] () -- C:\Users\Don\d navin.exe
[2006/10/12 16:20:15 | 000,000,000 | ---- | C] () -- C:\Users\Don\ignored.lst
========== ZeroAccess Check ==========
[2009/07/14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2012/03/15 00:36:07 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Ask.com
[2012/05/25 07:29:58 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Babylon
[2013/01/31 08:37:55 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\FixBee
[2010/06/09 11:51:18 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Hoyle
[2010/06/08 15:59:58 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Hoyle FaceCreator
[2012/11/19 21:25:55 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Incredibar
[2012/04/28 18:11:23 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\iWin
[2013/01/31 21:36:21 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Optimizer Pro
[2012/03/22 22:33:54 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\PC Health Doc PDF Reader
[2012/11/19 23:27:57 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\PCCUStubInstaller
[2013/01/20 17:24:29 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\PE Explorer
[2010/06/08 14:14:24 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Steganos
[2013/01/26 00:39:59 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Systweak
[2010/09/04 15:16:33 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Template
[2010/08/27 17:26:50 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Thunderbird
[2012/09/21 19:07:22 | 000,000,000 | ---D | M] -- C:\Users\Don\AppData\Roaming\Windows Live Writer
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 156 bytes -> C:\ProgramData\TEMP:0AC32449
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:E965A533
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:373E1720
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:5C321E34
< End of report >
Edited by kennyboychez14, 06 April 2013 - 11:03 AM.