OTListIt logfile created on: 03/05/2009 12:47:43 - Run 1 OTListIt2 by OldTimer - Version 2.0.15.3 Folder = C:\Users\Phil\AppData\Local\Opera\Opera\profile\cache4\temporary_download Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation Internet Explorer (Version = 7.0.6001.18000) Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy 2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 100.00% Memory free 4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 37.18 Gb Total Space | 2.62 Gb Free Space | 7.03% Space Free | Partition Type: NTFS D: Drive not present or media not loaded Drive E: | 35.88 Gb Total Space | 25.67 Gb Free Space | 71.56% Space Free | Partition Type: NTFS F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: RUNESCAPE_HQ Current User Name: Phil Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Output = Minimal File Age = 30 Days Company Name Whitelist: On [color=orange]========== Processes (SafeList) ==========[/color] PRC - C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) PRC - C:\Windows\system32\Ati2evxx.exe (ATI Technologies Inc.) PRC - C:\Windows\system32\Ati2evxx.exe (ATI Technologies Inc.) PRC - C:\Windows\system32\agrsmsvc.exe (Agere Systems) PRC - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe (Kaspersky Lab) PRC - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION) PRC - C:\Program Files\FileZilla Server\FileZilla Server.exe (FileZilla Project) PRC - C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation) PRC - C:\Windows\system32\TODDSrv.exe (TOSHIBA Corporation) PRC - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation) PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.) PRC - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe (GEMTEKS) PRC - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv2.exe (Cisco Linksys Corporation) PRC - C:\Windows\Explorer.EXE (Microsoft Corporation) PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) PRC - C:\Program Files\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.) PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor) PRC - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) PRC - C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation) PRC - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.) PRC - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation) PRC - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe (Kaspersky Lab) PRC - C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.) PRC - C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.) PRC - C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) PRC - C:\Windows\ehome\ehtray.exe (Microsoft Corporation) PRC - C:\Program Files\DynDNS Updater\DynUpPs.exe (Dynamic Network Services, Inc.) PRC - C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.) PRC - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) PRC - C:\Program Files\Synaptics\SynTP\SynToshiba.exe (Synaptics, Inc.) PRC - C:\Windows\ehome\ehmsas.exe (Microsoft Corporation) PRC - C:\Program Files\DynDNS Updater\DynTray.exe (Dynamic Network Services, Inc.) PRC - C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) PRC - C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE (Logitech, Inc.) PRC - C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Synaptics, Inc.) PRC - C:\Program Files\Opera\opera.exe (Opera Software) PRC - C:\Users\Phil\AppData\Local\Opera\Opera\profile\cache4\temporary_download\OTListIt2 (1).exe (OldTimer Tools) [color=orange]========== Win32 Services (SafeList) ==========[/color] SRV - (AgereModemAudio [Auto | Running]) -- C:\Windows\system32\agrsmsvc.exe (Agere Systems) SRV - (Ati External Event Utility [Auto | Running]) -- C:\Windows\system32\Ati2evxx.exe (ATI Technologies Inc.) SRV - (AVP [Auto | Running]) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe (Kaspersky Lab) SRV - (CFSvcs [Auto | Running]) -- C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION) SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) SRV - (ehRecvr [On_Demand | Stopped]) -- C:\Windows\ehome\ehRecvr.exe (Microsoft Corporation) SRV - (ehSched [On_Demand | Stopped]) -- C:\Windows\ehome\ehsched.exe (Microsoft Corporation) SRV - (ehstart [Auto | Stopped]) -- C:\Windows\ehome\ehstart.dll (Microsoft Corporation) SRV - (FileZilla Server [Auto | Running]) -- C:\Program Files\FileZilla Server\FileZilla Server.exe (FileZilla Project) SRV - (FontCache3.0.0.0 [Auto | Running]) -- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) SRV - (gusvc [Disabled | Stopped]) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google) SRV - (IDriverT [On_Demand | Stopped]) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation) SRV - (idsvc [Unknown | Stopped]) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation) SRV - (LBTServ [On_Demand | Stopped]) -- C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe (Logitech, Inc.) SRV - (lxcf_device [On_Demand | Stopped]) -- C:\Windows\system32\lxcfcoms.exe ( ) SRV - (Macromedia Licensing Service [On_Demand | Stopped]) -- C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe (Macromedia) SRV - (NetTcpPortSharing [Disabled | Stopped]) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation) SRV - (odserv [On_Demand | Stopped]) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation) SRV - (ose [On_Demand | Stopped]) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation) SRV - (TNaviSrv [Auto | Running]) -- C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation) SRV - (TODDSrv [Auto | Running]) -- C:\Windows\system32\TODDSrv.exe (TOSHIBA Corporation) SRV - (TosCoSrv [Auto | Running]) -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation) SRV - (TOSHIBA Bluetooth Service [Auto | Stopped]) -- File not found SRV - (UleadBurningHelper [Auto | Running]) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.) SRV - (WinDefend [Auto | Running]) -- C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation) SRV - (WMPNetworkSvc [Disabled | Stopped]) -- C:\Program Files\Windows Media Player\wmpnetwk.exe (Microsoft Corporation) SRV - (WUSB54Gv2SVC [Auto | Running]) -- File not found SRV - (XAMPP [Disabled | Stopped]) -- File not found [color=orange]========== Driver Services (SafeList) ==========[/color] DRV - (adp94xx [Disabled | Stopped]) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.) DRV - (adpahci [Disabled | Stopped]) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.) DRV - (adpu160m [Disabled | Stopped]) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.) DRV - (adpu320 [Disabled | Stopped]) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.) DRV - (AgereSoftModem [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\AGRSM.sys (Agere Systems) DRV - (aic78xx [Disabled | Stopped]) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.) DRV - (aliide [Disabled | Stopped]) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.) DRV - (amdide [Boot | Running]) -- C:\Windows\system32\DRIVERS\amdide.sys (Advanced Micro Devices) DRV - (arc [Disabled | Stopped]) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.) DRV - (arcsas [Disabled | Stopped]) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.) DRV - (atikmdag [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\atikmdag.sys (ATI Technologies Inc.) DRV - (AtiPcie [Boot | Running]) -- C:\Windows\system32\DRIVERS\AtiPcie.sys (ATI Technologies Inc.) DRV - (BrFiltLo [On_Demand | Stopped]) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.) DRV - (BrFiltUp [On_Demand | Stopped]) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.) DRV - (Brserid [Disabled | Stopped]) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.) DRV - (BrSerWdm [Disabled | Stopped]) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.) DRV - (BrUsbMdm [Disabled | Stopped]) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.) DRV - (BrUsbSer [On_Demand | Stopped]) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.) DRV - (cmdide [Disabled | Stopped]) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.) DRV - (E1G60 [On_Demand | Stopped]) -- C:\Windows\system32\DRIVERS\E1G60I32.sys (Intel Corporation) DRV - (elxstor [Disabled | Stopped]) -- C:\Windows\system32\drivers\elxstor.sys (Emulex) DRV - (FwLnk [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\FwLnk.sys (TOSHIBA Corporation) DRV - (hamachi [On_Demand | Stopped]) -- C:\Windows\system32\DRIVERS\hamachi.sys (LogMeIn, Inc.) DRV - (HpCISSs [Disabled | Stopped]) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company) DRV - (iaStorV [Disabled | Stopped]) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation) DRV - (iirsp [Disabled | Stopped]) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH) DRV - (IntcAzAudAddService [On_Demand | Running]) -- C:\Windows\system32\drivers\RTKVHDA.sys (Realtek Semiconductor Corp.) DRV - (iteatapi [Disabled | Stopped]) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.) DRV - (iteraid [Disabled | Stopped]) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.) DRV - (kl1 [System | Running]) -- C:\Windows\system32\DRIVERS\kl1.sys (Kaspersky Lab) DRV - (KLIF [System | Running]) -- C:\Windows\system32\DRIVERS\klif.sys (Kaspersky Lab) DRV - (KLIM6 [System | Running]) -- C:\Windows\system32\DRIVERS\klim6.sys (Kaspersky Lab) DRV - (KR10I [Disabled | Stopped]) -- C:\Windows\system32\drivers\kr10i.sys (TOSHIBA CORPORATION) DRV - (KR10N [Disabled | Stopped]) -- C:\Windows\system32\drivers\kr10n.sys (TOSHIBA CORPORATION) DRV - (LHidFilt [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\LHidFilt.Sys (Logitech, Inc.) DRV - (LMouFilt [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\LMouFilt.Sys (Logitech, Inc.) DRV - (LSI_FC [Disabled | Stopped]) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic) DRV - (LSI_SAS [Disabled | Stopped]) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic) DRV - (LSI_SCSI [Disabled | Stopped]) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic) DRV - (MDC8021X [Auto | Running]) -- C:\Windows\system32\DRIVERS\mdc8021x.sys (Meetinghouse Data Communications) DRV - (megasas [Disabled | Stopped]) -- C:\Windows\system32\drivers\megasas.sys (LSI Logic Corporation) DRV - (Mraid35x [Disabled | Stopped]) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation) DRV - (nfrd960 [Disabled | Stopped]) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation) DRV - (ntrigdigi [Disabled | Stopped]) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies) DRV - (nvraid [Disabled | Stopped]) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation) DRV - (nvstor [Disabled | Stopped]) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation) DRV - (ql2300 [Disabled | Stopped]) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation) DRV - (ql40xx [Disabled | Stopped]) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation) DRV - (rimmptsk [Auto | Running]) -- C:\Windows\system32\DRIVERS\rimmptsk.sys (REDC) DRV - (rimsptsk [Auto | Running]) -- C:\Windows\system32\DRIVERS\rimsptsk.sys (REDC) DRV - (rismxdp [Auto | Running]) -- C:\Windows\system32\DRIVERS\rixdptsk.sys (REDC) DRV - (RTL8169 [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\Rtlh86.sys (Realtek Corporation ) DRV - (RTL8187B [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\RTL8187B.sys (Realtek Semiconductor Corporation ) DRV - (secdrv [Auto | Running]) -- C:\Windows\System32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) DRV - (SiSRaid2 [Disabled | Stopped]) -- C:\Windows\system32\drivers\sisraid2.sys (Silicon Integrated Systems Corp.) DRV - (SiSRaid4 [Disabled | Stopped]) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems) DRV - (Symc8xx [Disabled | Stopped]) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic) DRV - (Sym_hi [Disabled | Stopped]) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic) DRV - (Sym_u3 [Disabled | Stopped]) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic) DRV - (SynTP [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\SynTP.sys (Synaptics, Inc.) DRV - (tdcmdpst [On_Demand | Running]) -- C:\Windows\system32\DRIVERS\tdcmdpst.sys (TOSHIBA Corporation.) DRV - (tos_sps32 [Boot | Running]) -- C:\Windows\system32\DRIVERS\tos_sps32.sys (TOSHIBA Corporation) DRV - (TVALZ [Boot | Running]) -- C:\Windows\system32\DRIVERS\TVALZ_O.SYS (TOSHIBA Corporation) DRV - (uliahci [Disabled | Stopped]) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.) DRV - (UlSata [Disabled | Stopped]) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.) DRV - (ulsata2 [Disabled | Stopped]) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.) DRV - (usbaudio [On_Demand | Stopped]) -- C:\Windows\system32\drivers\usbaudio.sys (Microsoft Corporation) DRV - (USB_RNDIS [On_Demand | Stopped]) -- C:\Windows\system32\DRIVERS\usb8023.sys (Microsoft Corporation) DRV - (viaide [Disabled | Stopped]) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.) DRV - (vsmraid [Disabled | Stopped]) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd) DRV - (WinUsb [On_Demand | Stopped]) -- C:\Windows\system32\DRIVERS\WinUSB.sys (Microsoft Corporation) [color=orange]========== Standard Registry (SafeList) ==========[/color] [color=orange]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=orange]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: firebug@software.joehewitt.com:1.3.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}:6.0.10 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13 FF - prefs.js..extensions.enabledItems: {6e764c17-863a-450f-bdd0-6772bd5aaa18}:1.0.1 FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.0 FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.0 FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0 FF - prefs.js..extensions.enabledItems: {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}:0.5.8 FF - prefs.js..extensions.enabledItems: yyginstantplay@yoyogames.com:1.1.0.18 FF - prefs.js..extensions.enabledItems: {5c8bfb7c-9a54-11dc-8314-0800200c9a66}:3.0.2 FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.7 FF - prefs.js..extensions.enabledItems: nasanightlaunch@example.com:0.6.20081231 FF - prefs.js..extensions.enabledItems: {9f08cb5a-76b1-4bcf-aff9-90e1a5d60b1e}:3.56 FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\ [2009/02/07 11:26:03 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\PROGRAM FILES\REAL\REALPLAYER\BROWSERRECORD [2009/02/15 20:18:57 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.7\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS [2009/03/13 21:19:07 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.7\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS [2009/04/29 21:35:08 | 00,000,000 | ---D | M] [2008/12/31 21:37:15 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Extensions [2008/12/31 21:37:15 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Extensions\{a463f10c-3994-11da-9945-000d60ca027b} [2008/08/09 15:11:14 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2009/05/02 21:55:20 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions [2009/01/09 17:50:36 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8} [2008/11/24 20:57:43 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66} [2008/08/31 21:40:28 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\{6e764c17-863a-450f-bdd0-6772bd5aaa18} [2009/01/09 17:50:10 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\{9f08cb5a-76b1-4bcf-aff9-90e1a5d60b1e} [2009/01/09 17:50:21 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\firebug@software.joehewitt.com [2008/08/17 16:24:56 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\Mytheme [2009/01/09 17:50:09 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\nasanightlaunch@example.com [2009/04/23 20:14:47 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\personas@christopher.beard [2008/11/15 18:24:13 | 00,000,000 | ---D | M] -- C:\Users\Phil\AppData\Roaming\mozilla\Firefox\Profiles\tgdczjse.default\extensions\yyginstantplay@yoyogames.com [2009/05/02 18:02:16 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions [2009/03/13 21:19:07 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2008/11/16 13:15:22 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA} [2009/05/02 18:02:17 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} [2009/03/13 21:18:41 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll [2009/03/13 21:18:41 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll [2009/03/13 21:18:58 | 00,001,538 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml [2009/03/13 21:18:58 | 00,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml [2009/03/13 21:18:58 | 00,000,947 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml [2009/03/13 21:18:58 | 00,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml [2009/03/13 21:18:58 | 00,000,759 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml [2009/03/13 21:18:58 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml [2009/03/13 21:18:58 | 00,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml [2009/03/13 21:18:58 | 00,000,831 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml O1 HOSTS File: (761 bytes) - C:\Windows\System32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll (Google Inc.) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll (Google Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll (Google Inc.) O4 - HKLM..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" (Adobe Systems Incorporated) O4 - HKLM..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe" (Kaspersky Lab) O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE (Logitech, Inc.) O4 - HKLM..\Run: [LXCFCATS] rundll32 C:\Windows\system32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16 () O4 - HKLM..\Run: [NDSTray.exe] NDSTray.exe File not found O4 - HKLM..\Run: [RtHDVCpl] RtHDVCpl.exe (Realtek Semiconductor) O4 - HKLM..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" (Sun Microsystems, Inc.) O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.) O4 - HKLM..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.) O4 - HKLM..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot (RealNetworks, Inc.) O4 - HKLM..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup (TOSHIBA) O4 - HKLM..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe (Toshiba) O4 - HKLM..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE (TOSHIBA Corporation) O4 - HKLM..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide (Microsoft Corporation) O4 - HKCU..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe (Microsoft Corporation) O4 - HKCU..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (Microsoft Corporation) O4 - HKCU..\Run: [TOSCDSPD] TOSCDSPD.EXE File not found O4 - HKCU..\RunOnce: [Shockwave Updater] C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~2.EXE -Update -1100458 -Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; Avant Browser; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; OfficeLiveConnector.1.3; OfficeLivePatch.0.0; .NET CLR 3.5.30729; .NET CLR 3.0.30618) (Adobe Systems, Inc.) O4 - Startup: C:\Users\Phil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) O4 - Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) O4 - Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\DynDNS Updater.lnk = C:\Program Files\DynDNS Updater\DynUpPs.exe (Dynamic Network Services, Inc.) O4 - Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17 O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm () O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 (Microsoft Corporation) O9 - Extra Button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll (Kaspersky Lab) O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: eBay.co.uk - Buy It Sell It Love It - {76577871-04EC-495E-A12B-91F7C3600AFA} - File not found O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [@%SystemRoot%\system32\nlasvc.dll,-1000] - C:\Windows\system32\NLAapi.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [@%SystemRoot%\system32\napinsp.dll,-1000] - C:\Windows\system32\napinsp.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [@%SystemRoot%\system32\pnrpnsp.dll,-1000] - C:\Windows\system32\pnrpnsp.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [@%SystemRoot%\system32\pnrpnsp.dll,-1001] - C:\Windows\system32\pnrpnsp.dll (Microsoft Corporation) O13 - gopher Prefix: missing O15 - HKCU\..Trusted Domains: yoyogames.com ([www] http in Trusted sites) O15 - HKCU\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone. O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Filter: - text/xml - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1.0\r3hook.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\r3hook.dll (Kaspersky Lab) O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\adialhk.dll (Kaspersky Lab) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\klogon: DllName - C:\Windows\system32\klogon.dll - C:\Windows\system32\klogon.dll (Kaspersky Lab) O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006/09/18 22:43:36 | 00,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck) - File not found O34 - HKLM BootExecute: (autochk) - C:\Windows\System32\autochk.exe (Microsoft Corporation) O34 - HKLM BootExecute: (*) - File not found [color=orange]========== Files/Folders - Created Within 30 Days ==========[/color] [2009/05/03 12:43:01 | 00,000,000 | ---D | C] -- C:\Rooter$ [2009/05/02 22:44:47 | 00,000,000 | ---D | C] -- C:\Program Files\ATI Technologies [2009/05/02 22:44:39 | 00,000,000 | ---D | C] -- C:\Program Files\ATI [2009/05/02 22:38:38 | 00,253,952 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\atipdlxx.dll [2009/05/02 22:38:38 | 00,229,376 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\Oemdspif.dll [2009/05/02 22:38:38 | 00,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll [2009/05/02 22:38:38 | 00,145,050 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat [2009/05/02 22:38:38 | 00,042,928 | ---- | C] () -- C:\Windows\System32\drivers\ativvpxx.vp [2009/05/02 22:38:38 | 00,042,496 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\ati2edxx.dll [2009/05/02 22:38:38 | 00,011,441 | ---- | C] () -- C:\Windows\atiogl.xml [2009/05/02 22:38:38 | 00,002,096 | ---- | C] () -- C:\Windows\System32\drivers\ativpkxx.vp [2009/05/02 22:38:38 | 00,002,096 | ---- | C] () -- C:\Windows\System32\drivers\ativokxx.vp [2009/05/02 22:38:38 | 00,002,096 | ---- | C] () -- C:\Windows\System32\drivers\ativdkxx.vp [2009/05/02 22:37:44 | 00,001,771 | ---- | C] () -- C:\Users\Phil\Desktop\Mobility Modder.NET.lnk [2009/05/02 22:37:43 | 00,000,000 | ---D | C] -- C:\Program Files\MobilityDotNET [2009/05/02 19:16:13 | 00,000,000 | ---D | C] -- C:\Users\Phil\AppData\Roaming\Malwarebytes [2009/05/02 19:16:00 | 00,000,823 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2009/05/02 19:15:59 | 00,015,504 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2009/05/02 19:15:56 | 00,038,496 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2009/05/02 19:15:53 | 00,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2009/05/02 19:15:52 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2009/05/02 17:31:59 | 00,000,000 | ---D | C] -- C:\Program Files\Windows Installer Clean Up [2009/05/02 17:29:07 | 00,000,000 | ---D | C] -- C:\Program Files\MSECACHE [2009/05/02 17:11:18 | 00,001,062 | ---- | C] () -- C:\Users\Phil\Desktop\Revo Uninstaller.lnk [2009/05/02 17:11:17 | 00,000,000 | ---D | C] -- C:\Program Files\VS Revo Group [2009/05/02 12:30:23 | 36,218,30656 | -HS- | C] () -- C:\hiberfil.sys [2009/04/29 21:33:25 | 00,000,131 | ---- | C] () -- C:\Windows\CRC.INI [2009/04/29 21:31:44 | 00,000,947 | ---- | C] () -- C:\Users\Public\Desktop\COMODO Registry Cleaner.lnk [2009/04/29 21:31:43 | 00,000,000 | ---D | C] -- C:\Program Files\COMODO [2009/04/24 09:35:37 | 00,002,946 | ---- | C] () -- C:\Users\Phil\Documents\cc_20090424_093532.reg [2009/04/22 18:31:08 | 00,000,000 | ---D | C] -- C:\Users\Phil\AppData\Roaming\PeerNetworking [2009/04/22 16:32:31 | 00,000,000 | ---D | C] -- C:\Users\Phil\AppData\Roaming\Sun [2009/04/20 19:15:46 | 00,094,208 | ---- | C] () -- C:\Windows\System32\GTW32N50.dll [2009/04/20 19:15:46 | 00,031,930 | ---- | C] () -- C:\Windows\System32\GTNDIS3.VXD [2009/04/20 19:15:46 | 00,015,872 | ---- | C] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\Windows\System32\GTNDIS5.sys [2009/04/20 19:15:44 | 00,651,264 | ---- | C] () -- C:\Windows\System32\libeay32.dll [2009/04/20 19:15:44 | 00,147,456 | ---- | C] () -- C:\Windows\System32\ssleay32.dll [2009/04/20 19:15:22 | 00,000,000 | ---D | C] -- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor [2009/04/20 19:04:50 | 00,000,000 | ---D | C] -- C:\Linksys Driver [2009/04/16 14:41:19 | 00,000,000 | ---D | C] -- C:\Program Files\SmartFTP Client 3.0 Setup Files [2009/04/13 12:02:17 | 00,000,000 | ---D | C] -- C:\Users\Phil\AppData\Roaming\PingTesterDataBas [2009/04/13 12:02:09 | 00,187,904 | ---- | C] (zzzzz) -- C:\Users\Phil\Desktop\WebPingTester.exe [2009/04/10 17:31:35 | 00,003,520 | ---- | C] () -- C:\Users\Phil\Documents\cc_20090410_173133.reg [2009/04/09 19:19:25 | 00,000,626 | ---- | C] () -- C:\Users\Phil\Desktop\WLANOptimizerNET.exe - Shortcut.lnk [2009/04/06 18:07:05 | 00,087,560 | ---- | C] (Jagex Ltd) -- C:\Users\Phil\Desktop\RuneScape.exe [2009/04/05 13:25:19 | 00,000,794 | ---- | C] () -- C:\Users\Phil\Desktop\val.exe - Shortcut.lnk [2009/04/04 19:23:45 | 00,000,000 | ---D | C] -- C:\Program Files\Trend Micro [2009/02/16 16:39:47 | 00,046,389 | ---- | C] () -- C:\Windows\php.ini [2009/02/15 20:22:19 | 00,000,025 | ---- | C] () -- C:\Windows\cdplayer.ini [2008/09/16 17:11:14 | 00,197,120 | ---- | C] () -- C:\Windows\patchw32.dll [2008/03/29 15:07:38 | 00,056,832 | ---- | C] () -- C:\Windows\System32\iyvu9_32.dll [2007/09/13 18:06:20 | 00,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI [2007/09/13 17:54:45 | 00,128,113 | ---- | C] () -- C:\Windows\System32\csellang.ini [2007/09/13 17:54:45 | 00,045,056 | ---- | C] () -- C:\Windows\System32\csellang.dll [2007/09/13 17:54:45 | 00,010,150 | ---- | C] () -- C:\Windows\System32\tosmreg.ini [2007/09/13 17:54:45 | 00,007,671 | ---- | C] () -- C:\Windows\System32\cseltbl.ini [2007/09/13 17:53:37 | 00,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll [2007/09/13 17:53:37 | 00,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll [2007/09/13 17:53:37 | 00,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll [2007/09/13 17:53:37 | 00,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll [2007/09/13 17:53:37 | 00,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll [2007/09/13 17:53:37 | 00,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll [2007/09/13 17:33:59 | 00,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll [2007/09/13 16:17:30 | 01,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [2006/12/05 13:05:04 | 00,114,688 | ---- | C] () -- C:\Windows\System32\TosBtAcc.dll [2006/11/02 13:35:32 | 00,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006/11/02 11:23:31 | 00,000,219 | ---- | C] () -- C:\Windows\system.ini [2006/11/02 11:23:31 | 00,000,144 | ---- | C] () -- C:\Windows\win.ini [2006/11/02 08:40:29 | 00,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2005/11/11 17:39:00 | 00,001,516 | ---- | C] () -- C:\Windows\System32\WLAN.INI [2005/07/25 20:31:30 | 01,183,744 | ---- | C] ( ) -- C:\Windows\System32\lxcfserv.dll [2005/07/25 20:27:22 | 00,483,328 | ---- | C] ( ) -- C:\Windows\System32\lxcflmpm.dll [2005/07/25 20:26:58 | 00,413,696 | ---- | C] ( ) -- C:\Windows\System32\lxcfcomm.dll [2005/07/25 20:25:26 | 00,114,688 | ---- | C] ( ) -- C:\Windows\System32\lxcfpplc.dll [2005/07/25 20:24:46 | 00,704,512 | ---- | C] ( ) -- C:\Windows\System32\lxcfcomc.dll [2005/07/25 20:24:14 | 00,155,648 | ---- | C] ( ) -- C:\Windows\System32\lxcfprox.dll [2005/07/25 20:19:36 | 01,134,592 | ---- | C] ( ) -- C:\Windows\System32\lxcfusb1.dll [2005/07/22 21:30:18 | 00,065,536 | ---- | C] () -- C:\Windows\System32\TosCommAPI.dll [2005/07/14 12:31:20 | 00,027,648 | RHS- | C] () -- C:\Windows\System32\AVSredirect.dll [2005/07/07 10:12:28 | 00,040,960 | ---- | C] () -- C:\Windows\System32\lxcfvs.dll [2005/06/21 22:37:42 | 00,045,568 | RHS- | C] () -- C:\Windows\System32\cygz.dll [2005/02/05 21:46:00 | 00,004,608 | ---- | C] () -- C:\Windows\fgexec.dll [color=orange]========== Files - Modified Within 30 Days ==========[/color] [1 C:\Windows\*.tmp files] [2009/05/03 12:52:08 | 60,279,8368 | -HS- | M] () -- C:\Windows\System32\drivers\fidbox.dat [2009/05/03 12:05:30 | 00,700,548 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2009/05/03 12:05:30 | 00,605,072 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2009/05/03 12:05:30 | 00,110,354 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2009/05/03 11:59:06 | 00,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2009/05/03 11:59:06 | 00,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2009/05/03 11:58:59 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2009/05/03 11:58:55 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2009/05/03 11:58:47 | 36,218,30656 | -HS- | M] () -- C:\hiberfil.sys [2009/05/02 22:56:17 | 08,074,940 | -HS- | M] () -- C:\Windows\System32\drivers\fidbox.idx [2009/05/02 22:37:44 | 00,001,771 | ---- | M] () -- C:\Users\Phil\Desktop\Mobility Modder.NET.lnk [2009/05/02 22:21:31 | 00,000,131 | ---- | M] () -- C:\Windows\CRC.INI [2009/05/02 19:50:07 | 00,000,852 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2144041196-3452670511-1662090926-1000.job [2009/05/02 19:16:00 | 00,000,823 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2009/05/02 17:11:18 | 00,001,062 | ---- | M] () -- C:\Users\Phil\Desktop\Revo Uninstaller.lnk [2009/05/02 12:31:00 | 00,303,768 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2009/04/29 21:31:44 | 00,000,947 | ---- | M] () -- C:\Users\Public\Desktop\COMODO Registry Cleaner.lnk [2009/04/25 18:09:34 | 00,002,002 | ---- | M] () -- C:\Users\Phil\Desktop\Google Chrome.lnk [2009/04/24 09:35:41 | 00,002,946 | ---- | M] () -- C:\Users\Phil\Documents\cc_20090424_093532.reg [2009/04/22 18:31:09 | 00,019,331 | ---- | M] () -- C:\Users\Phil\AppData\Roaming\UserTile.png [2009/04/20 19:15:16 | 00,001,516 | ---- | M] () -- C:\Windows\System32\WLAN.INI [2009/04/20 12:00:01 | 00,000,392 | ---- | M] () -- C:\Windows\tasks\Schedule Task Weekly.job [2009/04/13 12:02:10 | 00,187,904 | ---- | M] (zzzzz) -- C:\Users\Phil\Desktop\WebPingTester.exe [2009/04/10 17:31:37 | 00,003,520 | ---- | M] () -- C:\Users\Phil\Documents\cc_20090410_173133.reg [2009/04/09 19:19:25 | 00,000,626 | ---- | M] () -- C:\Users\Phil\Desktop\WLANOptimizerNET.exe - Shortcut.lnk [2009/04/06 18:06:46 | 00,087,560 | ---- | M] (Jagex Ltd) -- C:\Users\Phil\Desktop\RuneScape.exe [2009/04/06 15:32:54 | 00,038,496 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2009/04/06 15:32:46 | 00,015,504 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2009/04/05 13:25:20 | 00,000,794 | ---- | M] () -- C:\Users\Phil\Desktop\val.exe - Shortcut.lnk < End of report >