Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by User (administrator) on LEXY on 25-03-2015 18:24:40
Running from C:\Documents and Settings\User\Desktop
Loaded Profiles: User (Available profiles: User & Administrator & Guest)
Platform: Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Creative Technology Ltd) C:\Program Files\Creative\Shared Files\CTAudSvc.exe
(Conexant Systems, Inc.) C:\WINDOWS\system32\PRISMSVR.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Creative Technology Ltd) C:\WINDOWS\system32\CTSVCCDA.EXE
(Microsoft Corporation) C:\WINDOWS\ehome\ehrecvr.exe
(Microsoft Corporation) C:\WINDOWS\ehome\ehSched.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(Conexant Systems, Inc.) C:\WINDOWS\system32\PRISMSVC.exe
() C:\WINDOWS\system32\PSIService.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Creative Technology Ltd) C:\WINDOWS\system32\CtHelper.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Memeo) C:\Program Files\Seagate\Seagate Dashboard\SeagateDashboardService.exe
(Seagate) C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe
(Microsoft Corporation) C:\WINDOWS\ehome\ehtray.exe
(Seagate) C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe
() C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
(Seagate) C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe
(Creative Technology Ltd) C:\Program Files\Creative\DVDAudio\CTDVDDET.exe
(Acronis) C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\WINDOWS\ehome\mcrdsvc.exe
() C:\Program Files\DivX\DivX Update\DivXUpdate.exe
(Creative Technology Ltd) C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
(BVRP Software) C:\Program Files\Digital Line Detect\DLG.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
(Dell Inc.) C:\Program Files\Dell Wireless\PRISMCFG.exe
(Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files\Evernote\Evernote\EvernoteClipper.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqimzone.exe
(Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Microsoft Corporation) C:\WINDOWS\ehome\ehmsas.exe
(Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-26] (AVAST Software)
HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [CTHelper] => C:\WINDOWS\system32\CTHELPER.EXE [19456 2010-03-18] (Creative Technology Ltd)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\qttask.exe [421888 2014-10-02] (Apple Inc.)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [157480 2015-02-13] (Apple Inc.)
HKLM\...\Run: [UserFaultCheck] => %systemroot%\system32\dumprep 0 -u
HKLM\...\Run: [Standby] => c:\Program Files\Common Files\Corel\Standby\Standby.exe [105632 2010-01-07] (Corel)
HKLM\...\Run: [SleekBillNot] => "C:\Program Files\Sleek Bill\Sleek Bill.exe" /n
HKLM\...\Run: [SigmatelSysTrayApp] => C:\WINDOWS\stsystra.exe [339968 2005-03-22] (SigmaTel, Inc.)
HKLM\...\Run: [Seagate Scheduler2 Service] => C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe [136472 2008-06-24] (Seagate)
HKLM\...\Run: [NeroCheck] => C:\WINDOWS\system32\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
HKLM\...\Run: [ehTray] => C:\WINDOWS\ehome\ehtray.exe [64512 2005-08-05] (Microsoft Corporation)
HKLM\...\Run: [DivXMediaServer] => C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [448856 2014-11-17] (DivX, LLC)
HKLM\...\Run: [DiscWizardMonitor.exe] => C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe [1325848 2008-06-24] (Seagate)
HKLM\...\Run: [CTxfiHlp] => C:\WINDOWS\system32\CTXFIHLP.EXE [19968 2007-04-09] (Creative Technology Ltd)
HKLM\...\Run: [CTSVolFE] => "C:\Program Files\Creative\Mixer\CTSVolFE.exe" /r
HKLM\...\Run: [CTDVDDET] => C:\Program Files\Creative\DVDAudio\CTDVDDET.EXE [45056 2003-06-18] (Creative Technology Ltd)
HKLM\...\Run: [ATIPTA] => C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [344064 2006-02-09] (ATI Technologies, Inc.)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-02-13] (Apple Inc.)
HKLM\...\Run: [AppleSyncNotifier] => C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [59240 2012-02-23] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AcronisTimounterMonitor] => C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe [904768 2008-06-24] (Acronis)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM\...\Run: [DivXUpdate] => C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
Winlogon\Notify\PRISMAPI.DLL: C:\WINDOWS\system32\PRISMAPI.DLL (Conexant Systems, Inc.)
HKU\S-1-5-21-606747145-117609710-839522115-1003\...\Run: [DellSystemDetect] => C:\Documents and Settings\User\Local Settings\Apps\2.0\GLODYH45.LZJ\9PTZC5LD.W03\dell..tion_0f612f649c4a10af_0005.0007_59de4fd2458fcaec\DellSystemDetect.exe [254976 2014-05-16] (Dell)
HKU\S-1-5-21-606747145-117609710-839522115-1003\...\Run: [BlackBerryLink.exe] => "C:\Program Files\Research In Motion\BlackBerry Link\BlackBerryLink.exe" /minimize
HKU\S-1-5-21-606747145-117609710-839522115-1003\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
HKU\S-1-5-21-606747145-117609710-839522115-1003\...\Run: [OutfoxTV] => C:\Program Files\OutfoxTV\OutfoxTV\DesktopContainer.exe
HKU\S-1-5-21-606747145-117609710-839522115-1003\...\Run: [DriverMax_RESTART] => "C:\Program Files\Innovative Solutions\DriverMax\drivermax.exe" -RESTART
HKU\S-1-5-21-606747145-117609710-839522115-1003\...\Run: [DriverMax] => "C:\Program Files\Innovative Solutions\DriverMax\drivermax.exe" -agent
HKU\S-1-5-21-606747145-117609710-839522115-1003\...\Run: [CTZDetec.exe] => C:\Program Files\Creative\Creative Media Lite\CTZDetec.exe
HKU\S-1-5-21-606747145-117609710-839522115-1003\...\Run: [Creative Detector] => C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe [102400 2004-12-02] (Creative Technology Ltd)
HKU\S-1-5-18\...\Run: [DWQueuedReporting] => c:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [437160 2007-02-26] (Microsoft Corporation)
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk
ShortcutTarget: Digital Line Detect.lnk -> C:\Program Files\Digital Line Detect\DLG.exe (BVRP Software)
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Development Company, L.P.)
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Photosmart Premier Fast Start.lnk
ShortcutTarget: HP Photosmart Premier Fast Start.lnk -> C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe (Hewlett-Packard Development Company, L.P.)
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Wireless USB 2.0 WLAN Card Utility.lnk
ShortcutTarget: Wireless USB 2.0 WLAN Card Utility.lnk -> C:\Program Files\Dell Wireless\PRISMCFG.exe (Dell Inc.)
Startup: C:\Documents and Settings\User\Start Menu\Programs\Startup\Adobe Gamma.lnk
ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Documents and Settings\User\Start Menu\Programs\Startup\EvernoteClipper.lnk
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
Startup: C:\Documents and Settings\User\Start Menu\Programs\Startup\Monitor Ink Alerts - HP ENVY 5530 series.lnk
ShortcutTarget: Monitor Ink Alerts - HP ENVY 5530 series.lnk -> C:\Program Files\HP\HP ENVY 5530 series\Bin\HPStatusBL.dll (Hewlett-Packard Development Company, LP)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft...d=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.com/spbasic.htm
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = http://securityrespo...er/fix_homepage
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.com/spbasic.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = http://securityrespo...er/fix_homepage
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKU\S-1-5-21-606747145-117609710-839522115-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKU\S-1-5-21-606747145-117609710-839522115-1003\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.optimum.net
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-18] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-06] (AVAST Software)
BHO: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22] (Microsoft Corporation)
BHO: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files\Evernote\Evernote\EvernoteIE.dll [2014-11-19] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-18] (Oracle Corporation)
DPF: {000F1EA4-5E08-4564-A29B-29076F63A37A} http://launch.soe.co...ebInstaller.cab
DPF: {04063354-A10E-4427-A1EC-F3CC81587BC6} http://www.worldwinn...mines/mines.cab
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.micr.../OGAControl.cab
DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebo...toUploader5.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab
DPF: {1A1F56AA-3401-46F9-B277-D57F3421F821} http://www.worldwinn...GamesLoader.cab
DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} http://www.pandasecu...s/as2stubie.cab
DPF: {38AB6A6C-CC4C-4F9E-A3DD-3C5681EF18A1} http://www-cdn.freer...ller.cab?v=1044
DPF: {41D1977F-4161-4720-800F-EA4903983A38} http://www.worldwinn...gsaw/jigsaw.cab
DPF: {615F158E-D5CA-422F-A8E7-F6A5EED7063B} http://www.worldwinn...d/bejeweled.cab
DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} https://webdl.symant...ex/symdlmgr.cab
DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} http://ccfiles.creat...102/CTSUEng.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.micros...b?1229566731421
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebo...oUploader55.cab
DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} http://www.worldwinn...ed/wwlaunch.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.ma...r/ultrashim.cab
DPF: {A52FBD2B-7AB3-4F6B-90E3-91C772C5D00F} http://www.worldwinn...v57/wof/wof.cab
DPF: {AC2881FD-5760-46DB-83AE-20A5C6432A7E} http://www.worldwinn...apit/swapit.cab
DPF: {B06CE1BC-5D9D-4676-BD28-1752DBF394E0} http://www.worldwinn...man/hangman.cab
DPF: {BA94245D-2AA0-4953-9D9F-B0EE4CC02C43} http://www.worldwinn...ty/tilecity.cab
DPF: {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} http://support.dell....lSystemLite.CAB
DPF: {C5326A4D-E9AA-40AD-A09A-E74304D86B47} http://www.worldwinn...h/dinerdash.cab
DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} http://www.worldwinn...paint/paint.cab
DPF: {CF969D51-F764-4FBF-9E90-475248601C8A} http://www.worldwinn.../familyfeud.cab
DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} http://ccfiles.creat...13/CTPIDPDE.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab
DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} http://ccfiles.creat...015/CTSUEng.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creat...30321/CTPID.cab
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files\Belarc\BelarcAdvisor\System\BAVoilaX.dll [2013-04-16] (Belarc, Inc.)
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll [2003-10-23] (Hewlett-Packard Company)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2000-04-19] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [115440 2013-05-07] (SuperAdBlocker.com)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\pt96kby9.default-1369614150234
FF DefaultSearchEngine: Google
FF DefaultSearchEngine.US: Google
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-23] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw_1207148.dll [2013-12-05] (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin: @divx.com/DivX Content Upload Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Content Uploader\npUpload.dll [2008-02-20] (DivX,Inc.)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files\DivX\DivX Web Player\npdivx32.dll [2014-11-21] (DivX, LLC)
FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-18] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @soe.sony.com/installer,version=1.0.3 -> C:\WINDOWS\Downloaded Program Files\CONFLICT.2\npsoe.dll [2010-09-30] ()
FF Plugin: @videolan.org/vlc,version=2.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2012-07-19] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-606747145-117609710-839522115-1003: @facebook.com/FBPlugin,version=1.0.3 -> C:\Documents and Settings\User\Application Data\Facebook\npfbplugin_1_0_3.dll [2010-06-09] ( )
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2014-05-08] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2014-10-24] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2014-10-24] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2014-10-24] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2014-10-24] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2014-10-24] (Apple Inc.)
FF Extension: Diccionario de Español/España - C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\pt96kby9.default-1369614150234\Extensions\[email protected] [2014-06-13]
FF Extension: Diccionario en Español para Venezuela - C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\pt96kby9.default-1369614150234\Extensions\[email protected] [2013-06-28]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-06]
FF HKLM\...\Firefox\Extensions: [{7BA52691-1876-45ce-9EE6-54BCB3B04BBC}] - C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-11-05]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-06]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [120088 2013-10-10] (SUPERAntiSpyware.com)
R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation)
S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-07-16] (Adobe Systems) [File not signed]
R2 Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [602112 2010-02-11] (ATI Technologies Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-06] (AVAST Software)
S4 Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2014-07-06] (Creative Labs) [File not signed]
S3 Creative Labs Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe [69632 2014-06-12] (Creative Labs) [File not signed]
R2 Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe [44032 1999-12-13] (Creative Technology Ltd) [File not signed]
R2 CTAudSvcService; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed]
R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-08-04] (Nero AG)
R2 McrdSvc; C:\WINDOWS\ehome\mcrdsvc.exe [99328 2005-08-05] (Microsoft Corporation)
S3 MHN; C:\WINDOWS\System32\mhn.dll [85504 2004-08-10] (Microsoft Corporation) [File not signed]
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
R2 PRISMSVC; C:\WINDOWS\system32\PRISMSVC.EXE [61529 2006-10-12] (Conexant Systems, Inc.) [File not signed]
R2 ProtexisLicensing; C:\WINDOWS\system32\PSIService.exe [177704 2007-06-05] ()
R2 SeagateDashboardService; C:\Program Files\Seagate\Seagate Dashboard\SeagateDashboardService.exe [14088 2011-06-01] (Memeo)
R2 SgtSch2Svc; C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe [431384 2008-06-24] (Seagate)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [20747 2006-10-26] (Meetinghouse Data Communications) [File not signed]
R1 AFS2K; C:\WINDOWS\system32\Drivers\AFS2K.sys [35840 2004-10-07] (Oak Technology Inc.)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-12-06] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-12-06] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55240 2014-12-06] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-12-06] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-12-06] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-12-06] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57928 2014-12-06] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-12-06] ()
R3 ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [3565056 2010-02-11] (ATI Technologies Inc.) [File not signed]
R1 BANTExt; C:\WINDOWS\System32\Drivers\BANTExt.sys [3840 2013-09-10] () [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S0 cercsr6; C:\WINDOWS\system32\Drivers\cercsr6.sys [39904 2004-12-13] (Adaptec, Inc.) [File not signed]
S3 COMMONFX; C:\WINDOWS\System32\drivers\COMMONFX.SYS [99416 2010-03-18] (Creative Technology Ltd)
R3 COMMONFX.SYS; C:\WINDOWS\System32\drivers\COMMONFX.SYS [99416 2010-03-18] (Creative Technology Ltd)
S3 CT20XUT.DLL; C:\WINDOWS\System32\CT20XUT.DLL [164608 2007-04-12] (Creative Technology Ltd.) [File not signed]
S3 CTAUDFX; C:\WINDOWS\System32\drivers\CTAUDFX.SYS [555096 2010-03-18] (Creative Technology Ltd)
R3 CTAUDFX.SYS; C:\WINDOWS\System32\drivers\CTAUDFX.SYS [555096 2010-03-18] (Creative Technology Ltd)
S3 ctdvda2k; C:\WINDOWS\System32\drivers\ctdvda2k.sys [347144 2010-03-18] (Creative Technology Ltd)
S3 CTEAPSFX.DLL; C:\WINDOWS\System32\CTEAPSFX.DLL [168192 2007-04-12] (Creative Technology Ltd) [File not signed]
S3 CTEDSPFX.DLL; C:\WINDOWS\System32\CTEDSPFX.DLL [280320 2007-04-12] (Creative Technology Ltd) [File not signed]
S3 CTEDSPIO.DLL; C:\WINDOWS\System32\CTEDSPIO.DLL [128768 2007-04-12] (Creative Technology Ltd) [File not signed]
S3 CTEDSPSY.DLL; C:\WINDOWS\System32\CTEDSPSY.DLL [323328 2007-04-12] (Creative Technology Ltd) [File not signed]
S3 CTERFXFX; C:\WINDOWS\System32\drivers\CTERFXFX.SYS [100952 2010-03-18] (Creative Technology Ltd)
S3 CTERFXFX.SYS; C:\WINDOWS\System32\drivers\CTERFXFX.SYS [100952 2010-03-18] (Creative Technology Ltd)
S3 CTEXFIFX.DLL; C:\WINDOWS\System32\CTEXFIFX.DLL [1317632 2007-04-12] (Creative Technology Ltd.) [File not signed]
S3 CTHWIUT.DLL; C:\WINDOWS\System32\CTHWIUT.DLL [66816 2007-04-12] (Creative Technology Ltd.) [File not signed]
S3 CTSBLFX; C:\WINDOWS\System32\drivers\CTSBLFX.SYS [566360 2010-03-18] (Creative Technology Ltd)
R3 CTSBLFX.SYS; C:\WINDOWS\System32\drivers\CTSBLFX.SYS [566360 2010-03-18] (Creative Technology Ltd)
R1 ElRawDisk; C:\WINDOWS\system32\drivers\rsdrv.sys [22312 2009-02-12] (EldoS Corporation)
R3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-13] (Microsoft Corporation)
R3 ha10kx2k; C:\WINDOWS\System32\drivers\ha10kx2k.sys [798808 2010-03-18] (Creative Technology Ltd)
R3 hap16v2k; C:\WINDOWS\System32\drivers\hap16v2k.sys [162904 2010-03-18] (Creative Technology Ltd)
S3 hap17v2k; C:\WINDOWS\System32\drivers\hap17v2k.sys [189528 2010-03-18] (Creative Technology Ltd)
S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49664 2006-04-12] (HP)
S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2006-04-12] (HP)
S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2006-04-12] (HP)
R3 IntelC51; C:\WINDOWS\System32\DRIVERS\IntelC51.sys [1339776 2005-05-06] (Intel Corporation)
R3 IntelC52; C:\WINDOWS\System32\DRIVERS\IntelC52.sys [618880 2006-03-02] (Intel Corporation)
R3 IntelC53; C:\WINDOWS\System32\DRIVERS\IntelC53.sys [47360 2005-05-06] (Intel Corporation)
S3 MHNDRV; C:\WINDOWS\System32\DRIVERS\mhndrv.sys [11008 2004-08-10] (Microsoft Corporation) [File not signed]
R3 mohfilt; C:\WINDOWS\System32\DRIVERS\mohfilt.sys [36880 2005-05-06] (Intel Corporation)
R0 MxEFUF; C:\WINDOWS\System32\DRIVERS\MxEFUF32.sys [102728 2010-11-04] (Matrox Graphics Inc.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 Netaapl; C:\WINDOWS\System32\DRIVERS\netaapl.sys [18432 2011-05-10] (Apple Inc.) [File not signed]
S3 NuidFltr; C:\WINDOWS\System32\DRIVERS\NuidFltr.sys [18856 2007-08-31] (Microsoft Corporation)
S3 qcserxp; C:\WINDOWS\System32\DRIVERS\qcserxp.sys [103424 2009-01-24] (QUALCOMM Incorporated)
S3 RimUsb; C:\WINDOWS\System32\Drivers\RimUsb.sys [68096 2013-12-02] (BlackBerry Limited)
S3 rimvndis; C:\WINDOWS\System32\Drivers\rimvndis.sys [12800 2014-06-23] (Research in Motion Limited)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SONYPVU1; C:\WINDOWS\System32\DRIVERS\SONYPVU1.SYS [7552 2001-08-17] (Sony Corporation)
S3 SQTECH905C; C:\WINDOWS\System32\Drivers\Capt905c.sys [37760 2007-05-18] (Service & Quality Technology.) [File not signed]
R3 STHDA; C:\WINDOWS\System32\drivers\sthda.sys [1047816 2005-11-16] (SigmaTel, Inc.)
R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
R0 tdrpman; C:\WINDOWS\System32\DRIVERS\tdrpman.sys [368480 2012-07-21] (Acronis)
R2 tifsfilter; C:\WINDOWS\System32\DRIVERS\tifsfilt.sys [44384 2012-07-21] (Acronis)
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: MHN -> C:\Windows\System32\mhn.dll (Microsoft Corporation)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-24 16:24 - 2015-03-24 16:24 - 00000215 _____ () C:\Documents and Settings\User\Desktop\g2g.txt
2015-03-24 16:19 - 2015-03-24 16:19 - 00001879 _____ () C:\Documents and Settings\User\Desktop\HP Digital Imaging Monitor.lnk
2015-03-23 23:24 - 2015-03-23 23:50 - 00002325 _____ () C:\Documents and Settings\User\Start Menu\Programs\Windows Install Clean Up.lnk
2015-03-23 23:24 - 2015-03-23 23:24 - 00000000 ____D () C:\Program Files\Windows Installer Clean Up
2015-03-23 23:12 - 2015-03-23 23:12 - 00359656 _____ (Microsoft Corporation) C:\Documents and Settings\User\Desktop\msicuu2.exe
2015-03-22 18:00 - 2015-03-22 18:00 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-03-18 17:21 - 2015-03-18 17:25 - 00000000 ____D () C:\Program Files\SeaTools Enterprise
2015-03-18 17:21 - 2015-03-18 17:24 - 00001714 _____ () C:\Documents and Settings\All Users\Start Menu\Programs\SeaTools Enterprise.lnk
2015-03-18 17:21 - 2015-03-18 17:21 - 00000000 _____ () C:\WINDOWS\PROTOCOL.INI
2015-03-18 17:21 - 2001-10-31 15:52 - 00000478 _____ () C:\WINDOWS\system32\Seatools.reg
2015-03-18 17:20 - 1996-11-05 17:13 - 00299008 _____ (InstallShield Corporation, Inc.) C:\WINDOWS\uninst.exe
2015-03-18 17:19 - 2015-03-18 17:19 - 00000000 ____D () C:\Documents and Settings\User\WINDOWS
2015-03-18 17:18 - 2015-03-18 17:18 - 03015948 _____ () C:\Documents and Settings\User\Desktop\seatools_enterprise_install.exe
2015-03-18 02:07 - 2015-03-18 02:07 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-03-18 02:07 - 2015-03-18 02:06 - 00146432 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2015-03-18 02:07 - 2015-03-18 02:06 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2015-03-18 02:06 - 2015-03-18 02:07 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Oracle
2015-03-18 02:06 - 2015-03-18 02:06 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Java
2015-03-18 02:02 - 2015-03-18 02:02 - 00561064 _____ (Oracle Corporation) C:\Documents and Settings\User\Desktop\jxpiinstall.exe
2015-03-17 17:49 - 2015-03-17 17:49 - 00001038 _____ () C:\Documents and Settings\All Users\Desktop\SeaTools for Windows.lnk
2015-03-17 17:48 - 2015-03-17 17:48 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Package Cache
2015-03-17 17:47 - 2015-03-17 17:47 - 26771088 _____ () C:\Documents and Settings\User\Desktop\SeaToolsforWindowsSetup.exe
2015-03-17 17:43 - 2015-03-18 22:57 - 00002967 _____ () C:\VEW.txt
2015-03-17 17:40 - 2015-03-17 17:40 - 00061440 _____ ( ) C:\Documents and Settings\User\Desktop\VEW.exe
2015-03-17 04:32 - 2015-03-17 04:32 - 00524288 _____ () C:\Documents and Settings\User\Desktop\application.evt
2015-03-17 04:32 - 2015-03-17 04:32 - 00065536 _____ () C:\Documents and Settings\User\Desktop\system.evt
2015-03-17 04:10 - 2015-03-17 04:10 - 00080528 _____ () C:\Documents and Settings\User\Desktop\Extras.Txt
2015-03-17 04:09 - 2015-03-17 04:09 - 00203276 _____ () C:\Documents and Settings\User\Desktop\OTL.Txt
2015-03-17 03:19 - 2015-03-18 02:20 - 00044616 _____ () C:\Documents and Settings\User\Desktop\Addition.txt
2015-03-17 03:17 - 2015-03-17 03:17 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\User\Desktop\OTL.exe
2015-03-17 01:09 - 2015-03-17 01:09 - 00000988 _____ () C:\Documents and Settings\User\Desktop\JRT.txt
2015-03-17 00:30 - 2015-03-17 00:45 - 00000000 ____D () C:\AdwCleaner
2015-03-17 00:29 - 2015-03-17 00:29 - 01388737 _____ (Thisisu) C:\Documents and Settings\User\Desktop\JRT.exe
2015-03-17 00:25 - 2015-03-17 00:25 - 02171392 _____ () C:\Documents and Settings\User\Desktop\AdwCleaner.exe
2015-03-16 18:46 - 2015-03-16 18:48 - 00064895 _____ () C:\Documents and Settings\User\Desktop\LEXY.txt
2015-03-10 16:19 - 2015-03-10 16:19 - 00001542 _____ () C:\Documents and Settings\All Users\Desktop\iTunes.lnk
2015-03-10 16:19 - 2015-03-10 16:19 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
2015-03-10 16:17 - 2015-03-10 16:19 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
2015-03-10 16:17 - 2015-03-10 16:17 - 00000000 ____D () C:\Program Files\iPod
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-25 18:26 - 2013-11-05 12:11 - 00000364 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2015-03-25 18:25 - 2014-05-14 00:06 - 00029632 _____ () C:\Documents and Settings\User\Desktop\FRST.txt
2015-03-25 18:25 - 2007-12-20 12:44 - 00000000 ____D () C:\Documents and Settings\User\Local Settings\Temp
2015-03-25 18:24 - 2014-05-08 10:09 - 00000000 ____D () C:\FRST
2015-03-25 18:22 - 2008-12-31 05:06 - 01373237 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-25 18:21 - 2013-12-02 23:10 - 00000000 ____D () C:\Documents and Settings\User\Local Settings\Application Data\HTC MediaHub
2015-03-25 18:21 - 2007-12-30 19:38 - 00000157 _____ () C:\WINDOWS\wiadebug.log
2015-03-25 18:21 - 2007-12-30 19:38 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2015-03-25 18:21 - 2007-12-20 12:33 - 00000000 ____D () C:\WINDOWS\Registration
2015-03-25 18:20 - 2007-12-20 12:43 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-25 18:19 - 2014-12-12 03:46 - 02900256 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2015-03-25 18:19 - 2014-07-06 02:33 - 04935328 _____ () C:\WINDOWS\{00000005-00000000-00000002-00001102-00000004-20061102}.BAK
2015-03-25 18:19 - 2014-07-06 02:32 - 04935328 _____ () C:\WINDOWS\{00000005-00000000-00000002-00001102-00000004-20061102}.CDF
2015-03-25 18:19 - 2007-12-20 12:44 - 00000278 ___SH () C:\Documents and Settings\User\ntuser.ini
2015-03-25 18:19 - 2007-12-20 12:43 - 00032372 _____ () C:\WINDOWS\SchedLgU.Txt
2015-03-25 17:55 - 2012-08-22 11:12 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-25 00:19 - 2014-05-14 00:59 - 00000000 ____D () C:\Documents and Settings\User\Desktop\Email Attachments
2015-03-24 20:00 - 2012-03-17 00:57 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\DivX
2015-03-24 20:00 - 2008-03-20 16:11 - 00000000 ____D () C:\Program Files\DivX
2015-03-24 19:59 - 2012-03-17 00:59 - 00000000 ____D () C:\Program Files\Common Files\DivX Shared
2015-03-24 19:59 - 2008-03-20 16:11 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\DivX
2015-03-24 16:22 - 2008-02-11 01:00 - 00007680 __SHC () C:\WINDOWS\Thumbs.db
2015-03-24 16:18 - 2007-12-20 07:26 - 00000325 __RSH () C:\boot.ini
2015-03-24 16:18 - 2004-08-10 07:00 - 00000859 _____ () C:\WINDOWS\win.ini
2015-03-24 16:18 - 2004-08-10 07:00 - 00000227 _____ () C:\WINDOWS\system.ini
2015-03-23 23:46 - 2012-03-17 01:20 - 00000000 ____D () C:\Documents and Settings\User\Tracing
2015-03-23 23:39 - 2009-11-30 00:47 - 00000000 ____D () C:\Program Files\MSECache
2015-03-23 23:37 - 2012-07-22 17:58 - 00778928 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-03-23 23:37 - 2012-03-15 14:47 - 00142512 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-03-23 23:36 - 2014-09-04 20:39 - 00000000 ____D () C:\Documents and Settings\User\Local Settings\Application Data\Adobe
2015-03-23 23:29 - 2012-07-22 16:52 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-03-23 22:50 - 2014-09-15 01:44 - 00000000 ____D () C:\Documents and Settings\User\My Documents\SSL Salesian Papers
2015-03-21 17:52 - 2004-08-10 07:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2015-03-18 02:05 - 2008-03-01 15:54 - 00000000 ____D () C:\Program Files\Java
2015-03-18 02:01 - 2012-03-17 00:42 - 00000000 ____D () C:\Program Files\FileHippo.com
2015-03-18 02:01 - 2007-12-29 22:57 - 00000000 ____D () C:\Program Files\Hewlett-Packard
2015-03-18 02:00 - 2008-02-18 21:00 - 00004129 ____C () C:\Documents and Settings\All Users\Application Data\hpzinstall.log
2015-03-18 01:57 - 2008-02-18 21:22 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\HP
2015-03-17 18:25 - 2008-01-08 21:50 - 00000000 ____D () C:\WINDOWS\pss
2015-03-17 17:48 - 2012-07-21 23:30 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Seagate
2015-03-17 17:48 - 2012-06-29 20:54 - 00000000 ____D () C:\Program Files\Seagate
2015-03-17 16:26 - 2014-05-14 19:36 - 00672473 _____ () C:\WINDOWS\setupapi.log
2015-03-17 00:43 - 2014-05-13 20:57 - 01135104 _____ (Farbar) C:\Documents and Settings\User\Desktop\FRST.exe
2015-03-13 01:51 - 2008-01-09 00:21 - 00374294 __SHC () C:\Documents and Settings\User\Desktop\Thumbs.db
2015-03-13 01:38 - 2007-12-26 22:39 - 03100672 ___SH () C:\Documents and Settings\User\My Documents\Thumbs.db
2015-03-11 02:38 - 2014-06-29 15:49 - 00114904 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-03-11 00:57 - 2007-12-20 12:44 - 00001599 _____ () C:\Documents and Settings\User\Start Menu\Programs\Remote Assistance.lnk
2015-03-10 23:04 - 2008-01-02 09:32 - 00001599 ____C () C:\Documents and Settings\Guest\Start Menu\Programs\Remote Assistance.lnk
2015-03-10 23:03 - 2007-12-20 12:36 - 00001599 ____C () C:\Documents and Settings\Default User\Start Menu\Programs\Remote Assistance.lnk
2015-03-10 23:03 - 2007-12-20 12:36 - 00001563 _____ () C:\Documents and Settings\All Users\Start Menu\Set Program Access and Defaults.lnk
2015-03-10 23:03 - 2007-12-20 12:36 - 00001507 _____ () C:\Documents and Settings\All Users\Start Menu\Windows Update.lnk
2015-03-10 22:44 - 2009-01-04 16:31 - 00001599 ____C () C:\Documents and Settings\Administrator\Start Menu\Programs\Remote Assistance.lnk
2015-03-10 22:22 - 2013-08-14 02:08 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-10 21:59 - 2007-12-20 15:07 - 119837696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-03-10 16:19 - 2010-09-04 16:49 - 00000000 ____D () C:\Program Files\iTunes
2015-03-10 16:17 - 2007-12-22 18:42 - 00000000 ____D () C:\Program Files\Common Files\Apple
2015-03-08 15:04 - 2007-12-20 07:28 - 00621030 ____C () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-08 15:00 - 2014-05-17 01:18 - 00000214 _____ () C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job
2015-03-02 21:00 - 2009-07-23 13:30 - 00152800 ____C () C:\Documents and Settings\User\Application Data\GDIPFONTCACHEV1.DAT
==================== Files in the root of some directories =======
2011-03-02 11:21 - 2011-03-02 11:21 - 0002528 ____C () C:\Documents and Settings\User\Application Data\$_hpcst$.hpc
2010-09-14 18:13 - 2010-12-04 01:20 - 0000965 ____C () C:\Documents and Settings\User\Application Data\BBMS_EXCEPTION.txt
2014-12-12 02:12 - 2014-12-12 02:47 - 0000077 _____ () C:\Documents and Settings\User\Application Data\Rim.Desktop.Exception.log
2014-12-12 02:10 - 2014-12-12 03:19 - 0001925 _____ () C:\Documents and Settings\User\Application Data\Rim.Desktop.HttpServerSetup.log
2014-12-12 02:12 - 2014-12-12 02:47 - 0000077 _____ () C:\Documents and Settings\User\Application Data\Rim.DesktopHelper.Exception.log
2011-08-18 13:08 - 2011-08-18 13:08 - 0206473 ____C () C:\Documents and Settings\User\Local Settings\Application Data\ars.cache
2011-08-18 13:09 - 2011-08-18 13:09 - 0223067 ____C () C:\Documents and Settings\User\Local Settings\Application Data\census.cache
2007-12-22 22:58 - 2014-12-26 23:56 - 0203776 ____C () C:\Documents and Settings\User\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2007-12-20 12:47 - 2007-12-20 12:47 - 0000127 ____C () C:\Documents and Settings\User\Local Settings\Application Data\fusioncache.dat
2011-02-01 10:46 - 2011-02-01 10:46 - 0000036 ____C () C:\Documents and Settings\User\Local Settings\Application Data\housecall.guid.cache
2007-07-13 14:36 - 2007-07-13 14:36 - 0220184 ____C ( ) C:\Documents and Settings\User\Local Settings\Application Data\Interop.Microsoft.Office.Core.dll
2014-07-14 16:59 - 2014-07-14 17:06 - 0000191 _____ () C:\Documents and Settings\User\Local Settings\Application Data\rbxcsettings.rbx
2005-12-13 17:12 - 2005-12-13 17:12 - 0016384 ____C (Microsoft Corporation) C:\Documents and Settings\User\Local Settings\Application Data\stdole.dll
Some content of TEMP:
====================
C:\Documents and Settings\User\Local Settings\Temp\comsvcs.dll
C:\Documents and Settings\User\Local Settings\Temp\DivXSetup.exe
C:\Documents and Settings\User\Local Settings\Temp\hpzmsi01.exe
C:\Documents and Settings\User\Local Settings\Temp\hpzscr01.exe
C:\Documents and Settings\User\Local Settings\Temp\Quarantine.exe
C:\Documents and Settings\User\Local Settings\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End Of Log ============================