OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1015.23 Mb Total Physical Memory | 557.86 Mb Available Physical Memory | 54.95% Memory free
2.39 Gb Paging File | 1.96 Gb Available in Paging File | 82.15% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.52 Gb Total Space | 69.21 Gb Free Space | 92.88% Space Free | Partition Type: NTFS
Computer Name: POORUN-E642C4D0 | User Name: Niriksha | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013/06/03 06:21:31 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Desktop\OTL.exe
PRC - [2013/05/09 12:58:30 | 004,858,968 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2013/05/09 12:58:30 | 000,046,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2007/11/10 02:24:28 | 000,212,992 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\622013215454\stacsv.exe
PRC - [2007/11/10 02:22:22 | 000,409,600 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe
PRC - [2004/08/04 16:00:00 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004/08/04 16:00:00 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\inetsrv\inetinfo.exe
PRC - [2004/08/04 04:56:58 | 000,073,796 | ---- | M] (Smart Link) -- C:\WINDOWS\system32\slserv.exe
========== Modules (No Company Name) ==========
MOD - [2013/06/02 22:50:17 | 002,087,424 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\13060201\algo.dll
========== Services (SafeList) ==========
SRV - [2013/06/02 22:52:58 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/05/09 12:58:30 | 000,046,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2007/11/10 02:24:28 | 000,212,992 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\622013215454\stacsv.exe -- (STacSV)
SRV - [2004/08/04 16:00:00 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\inetsrv\inetinfo.exe -- (W3SVC)
SRV - [2004/08/04 16:00:00 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\inetsrv\inetinfo.exe -- (SMTPSVC)
SRV - [2004/08/04 16:00:00 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\inetsrv\inetinfo.exe -- (IISADMIN)
SRV - [2004/08/04 04:56:58 | 000,073,796 | ---- | M] (Smart Link) [Auto | Running] -- C:\WINDOWS\System32\slserv.exe -- (SLService)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2013/05/09 12:59:10 | 000,765,736 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2013/05/09 12:59:10 | 000,368,944 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2013/05/09 12:59:10 | 000,174,664 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm)
DRV - [2013/05/09 12:59:10 | 000,056,080 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2013/05/09 12:59:10 | 000,049,376 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt)
DRV - [2013/05/09 12:59:09 | 000,066,336 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2013/05/09 12:59:09 | 000,049,760 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (AswRdr)
DRV - [2013/05/09 12:59:08 | 000,029,816 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2007/11/10 02:25:48 | 001,260,744 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
DRV - [2007/07/12 07:49:16 | 000,096,384 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp)
DRV - [2004/08/04 02:41:46 | 000,095,424 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\slnthal.sys -- (SlNtHal)
DRV - [2004/08/04 02:41:46 | 000,013,240 | ---- | M] (Smart Link) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\slwdmsup.sys -- (SlWdmSup)
DRV - [2004/08/04 02:41:44 | 000,404,990 | ---- | M] (Smart Link) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\slntamr.sys -- (Slntamr)
DRV - [2004/08/04 02:41:40 | 000,180,360 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ntmtlfax.sys -- (NtMtlFax)
DRV - [2004/08/04 02:41:40 | 000,126,686 | ---- | M] (Smart Link) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mtlmnt5.sys -- (Mtlmnt5)
DRV - [2004/08/04 02:41:40 | 000,013,776 | ---- | M] (Smart Link) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\RecAgent.sys -- (RecAgent)
DRV - [2004/08/04 02:41:38 | 001,309,184 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mtlstrm.sys -- (Mtlstrm)
DRV - [2004/08/04 02:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.c...ferrer:source?}
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
O1 HOSTS File: ([2004/08/04 16:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O4 - HKLM..\RunOnce: [Execute] C:\WINDOWS\System32\Tools\DelFolders.exe File not found
O4 - Startup: C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\Reboot.exe ()
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{042F2128-7061-4419-A2EF-EEFAB2C8D8BD}: DhcpNameServer = 192.168.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013/05/30 19:33:09 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2013/06/03 06:21:28 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Desktop\OTL.exe
[2013/06/03 01:11:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup
[2013/06/03 01:11:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu
[2013/06/03 01:11:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Documents
[2013/06/03 01:11:13 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users.WINDOWS\Templates
[2013/06/03 01:11:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Favorites
[2013/06/03 01:11:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Desktop
[2013/06/03 01:10:52 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft
[2013/06/03 01:10:52 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data
[2013/06/02 22:53:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Macromedia
[2013/06/02 22:53:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Adobe
[2013/06/02 22:45:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Google
[2013/06/02 22:35:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Google
[2013/06/02 22:35:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Local Settings\Application Data\Google
[2013/06/02 22:35:24 | 000,368,944 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2013/06/02 22:35:24 | 000,029,816 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2013/06/02 22:35:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\avast! Free Antivirus
[2013/06/02 22:35:23 | 000,056,080 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2013/06/02 22:35:23 | 000,049,760 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2013/06/02 22:35:22 | 000,765,736 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2013/06/02 22:35:21 | 000,066,336 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys
[2013/06/02 22:35:20 | 000,229,648 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2013/06/02 22:34:42 | 000,041,664 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2013/06/02 22:33:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\AVAST Software
[2013/06/02 22:14:09 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\IECompatCache
[2013/06/02 22:13:33 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\PrivacIE
[2013/06/02 22:13:07 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\IETldCache
[2013/06/02 22:08:45 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2013/06/02 21:55:20 | 007,921,664 | ---- | C] (IDT, Inc.) -- C:\WINDOWS\System32\idtsg.cpl
[2013/06/02 21:55:20 | 002,072,576 | ---- | C] (IDT, Inc.) -- C:\WINDOWS\System32\stlang.dll
[2013/06/02 21:55:20 | 000,409,600 | ---- | C] (IDT, Inc.) -- C:\WINDOWS\sttray.exe
[2013/06/02 21:55:20 | 000,212,992 | ---- | C] (IDT, Inc.) -- C:\WINDOWS\System32\stacsv.exe
[2013/06/02 21:54:55 | 001,260,744 | ---- | C] (IDT, Inc.) -- C:\WINDOWS\System32\drivers\sthda.sys
[2013/06/02 21:54:55 | 000,368,640 | ---- | C] (IDT, Inc.) -- C:\WINDOWS\System32\stacapi.dll
[2013/06/02 21:54:55 | 000,146,944 | ---- | C] (IDT, Inc.) -- C:\WINDOWS\System32\staco.dll
[2013/06/02 21:48:10 | 000,004,864 | R--- | C] (Windows ® Codename Longhorn DDK provider) -- C:\WINDOWS\System32\drivers\PortIo.sys
[2013/06/02 21:41:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Local Settings\Application Data\ApplicationHistory
[2013/06/02 21:33:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Identities
[2013/06/02 21:33:34 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\My Documents\My Pictures
[2013/06/02 21:33:34 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\My Documents\My Music
[2013/06/02 21:33:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Microsoft
[2013/06/02 21:33:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\SendTo
[2013/06/02 21:33:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Recent
[2013/06/02 21:33:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data
[2013/06/02 21:33:29 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Start Menu\Programs\Startup
[2013/06/02 21:33:29 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Start Menu
[2013/06/02 21:33:29 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\My Documents
[2013/06/02 21:33:29 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Favorites
[2013/06/02 21:33:29 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Start Menu\Programs\Accessories
[2013/06/02 21:33:29 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Cookies
[2013/06/02 21:33:29 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Templates
[2013/06/02 21:33:29 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\PrintHood
[2013/06/02 21:33:29 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\NetHood
[2013/06/02 21:33:29 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Local Settings
[2013/06/02 21:33:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Local Settings\Application Data\Microsoft
[2013/06/02 21:33:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Desktop
[2013/06/02 21:28:34 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2013/06/02 21:28:34 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2013/06/02 21:28:34 | 000,026,624 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll
[2013/06/02 21:27:07 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2013/06/02 21:24:56 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users.WINDOWS\DRM
[2013/06/02 21:21:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Documents\My Pictures
[2013/06/02 21:21:27 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Games
[2013/06/02 21:21:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Administrative Tools
[2013/06/02 21:21:07 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Documents\My Music
[2013/06/02 21:20:02 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Documents\My Videos
[2013/06/02 21:19:06 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Accessories
[2013/06/02 20:23:13 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2013/06/02 19:27:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2013/06/01 21:14:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2013/06/01 17:48:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2013/06/01 03:25:41 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2013/05/31 23:00:28 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2013/05/31 22:58:55 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2013/05/31 22:06:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2013/05/31 22:02:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2013/05/31 21:46:18 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2013/05/31 21:46:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2013/05/31 21:45:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2013/05/31 20:27:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\IIS Temporary Compressed Files
[2013/05/31 20:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Cache
[2013/05/31 20:26:52 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Logfiles
[2013/05/31 20:26:52 | 000,000,000 | ---D | C] -- C:\Inetpub
[2013/05/31 20:17:33 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2013/05/31 20:17:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2013/05/31 20:17:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTemp
[2013/05/31 19:22:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\setup.pss
[2013/05/30 23:12:00 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2013/05/30 23:12:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2013/05/30 23:11:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2013/05/30 23:11:50 | 000,000,000 | R--D | C] -- C:\Program Files
[2013/05/30 23:11:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2013/05/30 23:11:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2013/05/30 23:10:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2013/05/30 23:10:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2013/05/30 23:09:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2013/05/30 23:09:22 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2013/05/30 22:55:48 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2013/05/30 22:55:48 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2013/05/30 22:55:48 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2013/05/30 22:55:48 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\ehome
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2013/05/30 22:55:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2013/05/30 19:52:40 | 000,000,000 | ---D | C] -- C:\Program Files\IDT
[2013/05/30 19:52:38 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2013/05/30 19:49:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2013/05/30 19:47:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2013/05/30 19:47:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2013/05/30 19:47:46 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2013/05/30 19:47:35 | 000,000,000 | ---D | C] -- C:\Intel
[2013/05/30 19:46:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Tools
[2013/05/30 19:46:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2013/05/30 19:43:08 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2013/05/30 19:37:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2013/05/30 19:37:40 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2013/05/30 19:37:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2013/05/30 19:37:39 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2013/05/30 19:37:09 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2013/05/30 19:37:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2013/05/30 19:33:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2013/05/30 19:33:23 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2013/05/30 19:33:23 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2013/05/30 19:31:52 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2013/05/30 19:31:52 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2013/05/30 19:31:43 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2013/05/30 19:31:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2013/05/30 19:29:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2013/05/30 19:29:38 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2013/05/30 19:29:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2013/05/30 19:29:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2013/05/30 19:29:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2013/05/30 19:28:56 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2013/05/30 19:28:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2013/05/30 19:28:19 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2013/05/30 19:28:07 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2013/05/30 19:27:44 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2013/05/30 19:27:41 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2013/05/30 19:27:15 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2013/05/30 19:27:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2013/05/30 19:27:04 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2013/05/30 19:27:04 | 000,000,000 | ---D | C] -- C:\Program Files\Online Services
[2013/05/30 19:26:57 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2013/05/30 19:26:47 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2013/05/30 19:25:09 | 000,000,000 | ---D | C] -- C:\Program Files\MSN
[2013/05/30 19:25:07 | 000,281,088 | ---- | C] (Cinematronics) -- C:\WINDOWS\System32\dllcache\pinball.exe
[2013/05/30 19:25:03 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2013/05/30 19:24:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2013/05/30 19:24:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013/06/03 06:27:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2013/06/03 06:21:31 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Desktop\OTL.exe
[2013/06/03 05:46:01 | 000,000,890 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013/06/03 05:39:09 | 000,000,428 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{7F1DEDAE-A484-4484-8673-B3627ABA0795}.job
[2013/06/03 05:35:09 | 000,000,320 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2013/06/03 05:34:40 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013/06/03 05:34:34 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013/06/02 22:35:24 | 000,001,689 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\avast! Free Antivirus.lnk
[2013/06/02 22:35:21 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2013/06/02 22:13:09 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2013/06/02 21:56:18 | 000,429,066 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2013/06/02 21:56:18 | 000,069,590 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2013/06/02 21:55:29 | 000,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2013/06/02 21:33:45 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2013/06/02 21:33:28 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2013/06/02 21:30:28 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2013/06/02 21:30:12 | 000,090,296 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013/06/02 21:29:31 | 000,000,623 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2013/06/02 21:26:05 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2013/06/02 21:26:04 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2013/06/02 21:26:04 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2013/06/02 21:25:53 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2013/06/02 21:21:26 | 000,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2013/06/02 21:18:40 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2013/05/30 19:33:09 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2013/05/30 19:33:09 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2013/05/30 19:33:09 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2013/05/30 19:33:09 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2013/05/09 12:59:10 | 000,765,736 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2013/05/09 12:59:10 | 000,368,944 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2013/05/09 12:59:10 | 000,174,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013/05/09 12:59:10 | 000,056,080 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2013/05/09 12:59:10 | 000,049,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys
[2013/05/09 12:59:09 | 000,066,336 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys
[2013/05/09 12:59:09 | 000,049,760 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2013/05/09 12:59:08 | 000,029,816 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2013/05/09 12:58:37 | 000,041,664 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2013/05/09 12:58:28 | 000,229,648 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013/06/03 01:11:45 | 000,001,355 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2013/06/03 01:11:41 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2013/06/03 01:11:21 | 000,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2013/06/03 01:11:12 | 000,141,702 | ---- | C] () -- C:\WINDOWS\System32\dllcache\netfx.cat
[2013/06/03 01:11:12 | 000,110,116 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tabletpc.cat
[2013/06/03 01:11:12 | 000,031,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mediactr.cat
[2013/06/03 01:11:12 | 000,024,209 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn7.cat
[2013/06/03 01:11:12 | 000,011,651 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn9.cat
[2013/06/03 01:11:12 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2013/06/03 01:11:11 | 002,012,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5.CAT
[2013/06/03 01:11:11 | 001,042,903 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2013/06/03 01:11:11 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2013/06/03 01:11:11 | 000,502,724 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT
[2013/06/03 01:11:11 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2013/06/03 01:11:11 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2013/06/03 01:11:11 | 000,031,281 | ---- | C] () -- C:\WINDOWS\System32\dllcache\FP4.CAT
[2013/06/03 01:11:11 | 000,013,753 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IMS.CAT
[2013/06/03 01:11:11 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2013/06/03 01:11:11 | 000,009,581 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT
[2013/06/03 01:11:11 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2013/06/03 01:11:11 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2013/06/03 01:11:11 | 000,007,245 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT
[2013/06/03 01:10:17 | 000,090,296 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013/06/03 01:09:16 | 000,000,623 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2013/06/02 22:53:00 | 000,000,830 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2013/06/02 22:35:33 | 000,000,890 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013/06/02 22:35:32 | 000,000,886 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013/06/02 22:35:24 | 000,001,689 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\avast! Free Antivirus.lnk
[2013/06/02 22:35:22 | 000,174,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013/06/02 22:35:21 | 000,049,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys
[2013/06/02 22:35:21 | 000,000,320 | -H-- | C] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2013/06/02 22:14:07 | 000,000,428 | -H-- | C] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{7F1DEDAE-A484-4484-8673-B3627ABA0795}.job
[2013/06/02 21:51:40 | 000,204,800 | R--- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4847.dll
[2013/06/02 21:51:39 | 000,026,320 | R--- | C] () -- C:\WINDOWS\System32\igxpxs32.vp
[2013/06/02 21:51:39 | 000,002,096 | R--- | C] () -- C:\WINDOWS\System32\igxpxk32.vp
[2013/06/02 21:51:14 | 000,121,232 | R--- | C] () -- C:\WINDOWS\System32\IScrNBR.bmp
[2013/06/02 21:51:14 | 000,121,232 | R--- | C] () -- C:\WINDOWS\System32\IScrNB.bmp
[2013/06/02 21:49:01 | 000,409,088 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\Reboot.exe
[2013/06/02 21:36:40 | 000,021,791 | ---- | C] () -- C:\WINDOWS\System32\smtpctrs.ini
[2013/06/02 21:36:40 | 000,008,002 | ---- | C] () -- C:\WINDOWS\System32\smtpctrs.h
[2013/06/02 21:36:40 | 000,001,037 | ---- | C] () -- C:\WINDOWS\System32\ntfsdrct.ini
[2013/06/02 21:36:40 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\ntfsdrct.h
[2013/06/02 21:36:14 | 000,038,576 | ---- | C] () -- C:\WINDOWS\System32\w3ctrs.ini
[2013/06/02 21:36:14 | 000,005,379 | ---- | C] () -- C:\WINDOWS\System32\w3ctrs.h
[2013/06/02 21:36:13 | 000,010,225 | ---- | C] () -- C:\WINDOWS\System32\axperf.ini
[2013/06/02 21:36:13 | 000,002,024 | ---- | C] () -- C:\WINDOWS\System32\axctrnm.h
[2013/06/02 21:36:10 | 000,011,435 | ---- | C] () -- C:\WINDOWS\System32\infoctrs.ini
[2013/06/02 21:36:10 | 000,003,276 | ---- | C] () -- C:\WINDOWS\System32\infoctrs.h
[2013/06/02 21:33:45 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2013/06/02 21:33:39 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Start Menu\Programs\Outlook Express.lnk
[2013/06/02 21:33:37 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2013/06/02 21:33:37 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Start Menu\Programs\Internet Explorer.lnk
[2013/06/02 21:33:30 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Start Menu\Programs\Remote Assistance.lnk
[2013/06/02 21:33:30 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Start Menu\Programs\Windows Media Player.lnk
[2013/06/02 21:30:28 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2013/06/02 21:29:28 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2013/06/02 21:28:25 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2013/06/02 21:27:57 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2013/06/02 21:27:49 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2013/06/02 21:27:48 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2013/06/02 21:27:46 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2013/06/02 21:27:35 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2013/06/02 21:27:29 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2013/06/02 21:27:25 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\fpencode.dll
[2013/06/02 21:27:10 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2013/06/02 21:26:19 | 000,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2013/06/02 21:26:04 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2013/06/02 21:26:04 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2013/06/02 21:26:03 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2013/06/02 21:24:29 | 000,000,786 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Windows Movie Maker.lnk
[2013/06/02 21:24:19 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2013/06/02 21:23:11 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2013/06/02 21:23:11 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2013/06/02 21:22:50 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2013/06/02 21:22:10 | 000,376,320 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msinfo.dll
[2013/06/02 21:21:27 | 000,000,609 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Windows Messenger.lnk
[2013/06/02 21:21:26 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2013/06/02 21:21:07 | 000,001,986 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\MSN.lnk
[2013/06/02 21:20:36 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
[2013/06/02 21:20:36 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
[2013/06/02 21:20:36 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
[2013/06/02 21:20:36 | 000,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
[2013/06/02 21:20:36 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
[2013/06/02 21:20:36 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
[2013/06/02 21:20:36 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
[2013/06/02 21:20:36 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
[2013/06/02 21:20:36 | 000,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
[2013/06/02 21:20:36 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2013/06/02 21:20:35 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
[2013/06/02 21:20:32 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2013/06/02 21:20:32 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2013/06/02 21:20:31 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2013/06/02 21:20:23 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2013/05/30 23:11:56 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2013/05/30 23:11:56 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2013/05/30 23:11:54 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2013/05/30 23:11:53 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2013/05/30 23:08:10 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2013/05/30 19:33:09 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2013/05/30 19:33:09 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2013/05/30 19:33:09 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2013/05/30 19:33:09 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2013/05/30 19:29:13 | 000,004,639 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.exe
========== ZeroAccess Check ==========
[2013/06/02 21:40:04 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2009/01/07 18:20:52 | 001,497,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2004/08/04 16:00:00 | 000,472,064 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2004/08/04 16:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2013/06/02 22:34:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\AVAST Software
========== Purity Check ==========
< End of report >
OTL Extras logfile created on: 6/3/2013 6:27:43 AM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Niriksha.POORUN-E642C4D0\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1015.23 Mb Total Physical Memory | 557.86 Mb Available Physical Memory | 54.95% Memory free
2.39 Gb Paging File | 1.96 Gb Available in Paging File | 82.15% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.52 Gb Total Space | 69.21 Gb Free Space | 92.88% Space Free | Partition Type: NTFS
Computer Name: POORUN-E642C4D0 | User Name: Niriksha | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"avast" = avast! Free Antivirus
"HDMI" = Intel® Graphics Media Accelerator Driver
"ie8" = Windows Internet Explorer 8
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
========== Last 20 Event Log Errors ==========
[ System Events ]
Error - 6/2/2013 2:33:25 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842784
Description = Dependent Assembly Microsoft.VC90.CRT could not be found and Last
Error was The referenced assembly is not installed on your system.
Error - 6/2/2013 2:33:25 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly failed for Microsoft.VC90.CRT. Reference error
message: The referenced assembly is not installed on your system. .
Error - 6/2/2013 2:33:25 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842811
Description = Generate Activation Context failed for C:\Program Files\AVAST Software\Avast\ashTaskEx.dll.
Reference
error message: The operation completed successfully. .
Error - 6/2/2013 2:33:27 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842784
Description = Dependent Assembly Microsoft.VC90.CRT could not be found and Last
Error was The referenced assembly is not installed on your system.
Error - 6/2/2013 2:33:27 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly failed for Microsoft.VC90.CRT. Reference error
message: The referenced assembly is not installed on your system. .
Error - 6/2/2013 2:33:27 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842811
Description = Generate Activation Context failed for C:\Program Files\AVAST Software\Avast\aavm4h.dll.
Reference
error message: The operation completed successfully. .
Error - 6/2/2013 2:33:27 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842784
Description = Dependent Assembly Microsoft.VC90.CRT could not be found and Last
Error was The referenced assembly is not installed on your system.
Error - 6/2/2013 2:33:27 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly failed for Microsoft.VC90.CRT. Reference error
message: The referenced assembly is not installed on your system. .
Error - 6/2/2013 2:33:27 PM | Computer Name = POORUN-E642C4D0 | Source = SideBySide | ID = 16842811
Description = Generate Activation Context failed for C:\Program Files\AVAST Software\Avast\ashTaskEx.dll.
Reference
error message: The operation completed successfully. .
Error - 6/2/2013 9:34:35 PM | Computer Name = POORUN-E642C4D0 | Source = Dhcp | ID = 1002
Description = The IP address lease 192.168.1.2 for the Network Card with network
address 001E90D3516E has been denied by the DHCP server 192.168.1.1 (The DHCP Server
sent a DHCPNACK message).
< End of report >