[code] OTS logfile created on: 8/20/2009 12:48:48 PM - Run 1 OTS by OldTimer - Version 3.0.10.3 Folder = C:\Users\Acer\Downloads Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation Internet Explorer (Version = 7.0.6001.18000) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1.99 Gb Total Physical Memory | 0.91 Gb Available Physical Memory | 45.89% Memory free 4.00 Gb Paging File | 3.02 Gb Available in Paging File | 75.50% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 111.69 Gb Total Space | 34.26 Gb Free Space | 30.67% Space Free | Partition Type: NTFS Drive D: | 107.56 Gb Total Space | 67.18 Gb Free Space | 62.46% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: JACKSON-PC Current User Name: Acer Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: Off File Age = 30 Days [Processes - Safe List] applemobiledeviceservice.exe -> C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> [2009/06/05 11:48:14 | 00,144,712 | ---- | M] (Apple Inc.) avgcsrvx.exe -> C:\Program Files\AVG\AVG8\avgcsrvx.exe -> [2009/06/25 08:59:32 | 00,692,504 | ---- | M] (AVG Technologies CZ, s.r.o.) avgemc.exe -> C:\Program Files\AVG\AVG8\avgemc.exe -> [2009/08/12 09:51:52 | 00,907,032 | ---- | M] (AVG Technologies CZ, s.r.o.) avgnsx.exe -> C:\Program Files\AVG\AVG8\avgnsx.exe -> [2009/06/09 08:42:25 | 00,594,712 | ---- | M] (AVG Technologies CZ, s.r.o.) avgrsx.exe -> C:\Program Files\AVG\AVG8\avgrsx.exe -> [2009/06/25 08:59:32 | 00,486,680 | ---- | M] (AVG Technologies CZ, s.r.o.) avgwdsvc.exe -> C:\Program Files\AVG\AVG8\avgwdsvc.exe -> [2009/06/25 08:59:27 | 00,298,776 | ---- | M] (AVG Technologies CZ, s.r.o.) capuserv.exe -> C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe -> [2007/12/10 11:23:02 | 00,024,576 | ---- | M] () elockserv.exe -> C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe -> [2007/10/01 17:42:36 | 00,024,576 | ---- | M] (Acer Inc.) enet service.exe -> C:\Acer\Empowering Technology\eNet\eNet Service.exe -> [2007/08/28 15:21:10 | 00,131,072 | ---- | M] (Acer Inc.) epowersvc.exe -> C:\Acer\Empowering Technology\ePower\ePowerSvc.exe -> [2007/10/30 19:45:48 | 00,167,936 | ---- | M] (acer) explorer.exe -> C:\Windows\explorer.exe -> [2009/03/20 16:56:01 | 02,927,104 | ---- | M] (Microsoft Corporation) iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/07/18 14:39:09 | 00,634,648 | ---- | M] (Microsoft Corporation) ots.exe -> C:\Users\Acer\Downloads\OTS.exe -> [2009/08/20 12:47:57 | 00,514,048 | ---- | M] (OldTimer Tools) unsecapp.exe -> C:\Windows\System32\wbem\unsecapp.exe -> [2008/01/19 00:33:33 | 00,037,888 | ---- | M] (Microsoft Corporation) unsecapp.exe -> C:\Windows\System32\wbem\unsecapp.exe -> [2008/01/19 00:33:33 | 00,037,888 | ---- | M] (Microsoft Corporation) wmiprvse.exe -> C:\Windows\System32\wbem\wmiprvse.exe -> [2009/03/02 19:16:04 | 00,247,296 | ---- | M] (Microsoft Corporation) wudfhost.exe -> C:\Windows\System32\WUDFHost.exe -> [2008/01/19 00:33:40 | 00,142,336 | ---- | M] (Microsoft Corporation) [Win32 Services - Safe List] (Apple Mobile Device) Apple Mobile Device [Win32_Own | Auto | Running] -> C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> [2009/06/05 11:48:14 | 00,144,712 | ---- | M] (Apple Inc.) (avg8emc) AVG Free8 E-mail Scanner [Win32_Own | Auto | Running] -> C:\Program Files\AVG\AVG8\avgemc.exe -> [2009/08/12 09:51:52 | 00,907,032 | ---- | M] (AVG Technologies CZ, s.r.o.) (avg8wd) AVG Free8 WatchDog [Win32_Own | Auto | Running] -> C:\Program Files\AVG\AVG8\avgwdsvc.exe -> [2009/06/25 08:59:27 | 00,298,776 | ---- | M] (AVG Technologies CZ, s.r.o.) (Bonjour Service) Bonjour Service [Win32_Own | Auto | Stopped] -> C:\Program Files\Bonjour\mDNSResponder.exe -> [2008/12/12 11:17:38 | 00,238,888 | ---- | M] (Apple Inc.) (clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009/03/20 16:39:50 | 00,069,632 | ---- | M] (Microsoft Corporation) (CLTNetCnService) Symantec Lic NetConnect service [Win32_Shared | Auto | Stopped] -> -> File not found (eDataSecurity Service) eDataSecurity Service [Win32_Own | Auto | Stopped] -> C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe -> [2007/04/25 17:34:30 | 00,457,512 | ---- | M] (HiTRSUT) (ehRecvr) Windows Media Center Receiver Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehRecvr.exe -> [2008/01/19 00:33:09 | 00,292,352 | ---- | M] (Microsoft Corporation) (ehSched) Windows Media Center Scheduler Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehsched.exe -> [2006/11/02 05:35:29 | 00,131,072 | ---- | M] (Microsoft Corporation) (ehstart) Windows Media Center Service Launcher [Win32_Shared | Auto | Stopped] -> C:\Windows\ehome\ehstart.dll -> [2006/11/02 05:35:29 | 00,013,312 | ---- | M] (Microsoft Corporation) (eLockService) eLock Service [Win32_Own | Auto | Running] -> C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe -> [2007/10/01 17:42:36 | 00,024,576 | ---- | M] (Acer Inc.) (eNet Service) eNet Service [Win32_Own | Auto | Running] -> C:\Acer\Empowering Technology\eNet\eNet Service.exe -> [2007/08/28 15:21:10 | 00,131,072 | ---- | M] (Acer Inc.) (eRecoveryService) eRecovery Service [Win32_Own | Auto | Stopped] -> C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe -> [2007/09/10 14:28:18 | 00,057,344 | ---- | M] (Acer Inc.) (eSettingsService) eSettings Service [Win32_Own | Auto | Running] -> C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe -> [2007/12/10 11:23:02 | 00,024,576 | ---- | M] () (Eventlog) Windows Event Log [Win32_Shared | Auto | Running] -> C:\Windows\System32\wevtsvc.dll -> [2008/01/19 00:36:53 | 01,013,760 | ---- | M] (Microsoft Corporation) (FontCache3.0.0.0) Windows Presentation Foundation Font Cache 3.0.0.0 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe -> [2008/01/05 04:21:53 | 00,036,864 | ---- | M] (Microsoft Corporation) (gusvc) Google Software Updater [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -> [2009/04/21 20:42:09 | 00,182,768 | ---- | M] (Google) (IDriverT) InstallDriver Table Manager [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe -> [2004/10/22 03:24:18 | 00,073,728 | ---- | M] (Macrovision Corporation) (idsvc) Windows CardSpace [Win32_Shared | Unknown | Stopped] -> C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -> [2008/01/05 04:21:39 | 00,864,256 | ---- | M] (Microsoft Corporation) (IJPLMSVC) Inkjet Printer/Scanner Extended Survey Program [Win32_Own | Auto | Stopped] -> C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE -> [2008/01/22 10:35:52 | 00,103,808 | ---- | M] () (iPod Service) iPod Service [Win32_Own | On_Demand | Stopped] -> C:\Program Files\iPod\bin\iPodService.exe -> [2009/07/13 14:02:50 | 00,542,496 | ---- | M] (Apple Inc.) (LightScribeService) LightScribeService Direct Disc Labeling Service [Win32_Own | Auto | Stopped] -> C:\Program Files\Common Files\LightScribe\LSSrvc.exe -> [2007/01/17 12:20:10 | 00,061,440 | ---- | M] (Hewlett-Packard Company) (MobilityService) MobilityService [Win32_Own | Auto | Stopped] -> C:\Acer\Mobility Center\MobilityService.exe -> [2006/11/24 13:57:54 | 00,107,008 | ---- | M] () (NetTcpPortSharing) Net.Tcp Port Sharing Service [Win32_Shared | Disabled | Stopped] -> C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -> [2008/01/05 04:21:39 | 00,122,880 | ---- | M] (Microsoft Corporation) (odserv) Microsoft Office Diagnostics Service [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -> [2006/10/26 20:49:34 | 00,441,136 | ---- | M] (Microsoft Corporation) (ose) Office Source Engine [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -> [2006/10/26 15:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) (RichVideo) Cyberlink RichVideo Service(CRVS) [Win32_Own | Auto | Stopped] -> C:\Program Files\CyberLink\Shared Files\RichVideo.exe -> [2007/01/23 06:48:12 | 00,266,343 | ---- | M] () (Roxio UPnP Renderer 9) Roxio UPnP Renderer 9 [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe -> [2007/12/06 23:20:56 | 00,088,560 | ---- | M] (Sonic Solutions) (Roxio Upnp Server 9) Roxio Upnp Server 9 [Win32_Own | Auto | Stopped] -> C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe -> [2007/12/06 23:20:52 | 00,362,992 | ---- | M] (Sonic Solutions) (RoxLiveShare9) LiveShare P2P Server 9 [Win32_Own | Auto | Stopped] -> C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe -> [2008/09/19 10:38:02 | 00,313,840 | ---- | M] (Sonic Solutions) (RoxMediaDB9) RoxMediaDB9 [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe -> [2008/09/19 10:37:36 | 01,108,464 | ---- | M] (Sonic Solutions) (RoxWatch9) Roxio Hard Drive Watcher 9 [Win32_Own | Auto | Stopped] -> C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe -> [2008/09/19 10:37:58 | 00,170,480 | ---- | M] (Sonic Solutions) (RS_Service) Raw Socket Service [Win32_Own | Auto | Stopped] -> C:\Program Files\Acer\Acer VCM\RS_Service.exe -> [2007/09/28 18:18:24 | 00,233,472 | ---- | M] (Acer Inc.) (SBSDWSCService) SBSD Security Center Service [Win32_Own | Auto | Stopped] -> C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe -> [2009/01/26 13:31:10 | 01,153,368 | ---- | M] (Safer Networking Ltd.) (Viewpoint Manager Service) Viewpoint Manager Service [Win32_Own | Auto | Stopped] -> C:\Program Files\Viewpoint\Common\ViewpointService.exe -> [2007/01/04 14:38:08 | 00,024,652 | ---- | M] (Viewpoint Corporation) (WinDefend) Windows Defender [Win32_Shared | Auto | Stopped] -> C:\Program Files\Windows Defender\mpsvc.dll -> [2008/01/19 00:38:24 | 00,272,952 | ---- | M] (Microsoft Corporation) (WMIService) ePower Service [Win32_Own | Auto | Running] -> C:\Acer\Empowering Technology\ePower\ePowerSvc.exe -> [2007/10/30 19:45:48 | 00,167,936 | ---- | M] (acer) (WMPNetworkSvc) Windows Media Player Network Sharing Service [Win32_Own | On_Demand | Stopped] -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/19 00:33:39 | 00,896,512 | ---- | M] (Microsoft Corporation) (XAudioService) XAudioService [Win32_Own | Auto | Stopped] -> C:\Windows\System32\DRIVERS\xaudio.exe -> [2007/12/14 01:56:00 | 00,386,560 | ---- | M] (Conexant Systems, Inc.) (YahooAUService) Yahoo! Updater [Win32_Own | Auto | Stopped] -> C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -> [2008/11/09 13:48:14 | 00,602,392 | ---- | M] (Yahoo! Inc.) [Driver Services - Safe List] (A310) AVerMedia A310 DVB-T [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\AVerA310USB.sys -> [2007/07/09 19:16:00 | 00,026,368 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) (adp94xx) adp94xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adp94xx.sys -> [2006/11/02 02:51:38 | 00,420,968 | ---- | M] (Adaptec, Inc.) (adpahci) adpahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpahci.sys -> [2006/11/02 02:51:32 | 00,297,576 | ---- | M] (Adaptec, Inc.) (adpu160m) adpu160m [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu160m.sys -> [2006/11/02 02:50:35 | 00,098,408 | ---- | M] (Adaptec, Inc.) (adpu320) adpu320 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu320.sys -> [2006/11/02 02:51:00 | 00,147,048 | ---- | M] (Adaptec, Inc.) (aic78xx) aic78xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\djsvs.sys -> [2006/11/02 02:50:11 | 00,071,272 | ---- | M] (Adaptec, Inc.) (aliide) aliide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\aliide.sys -> [2006/11/02 02:49:20 | 00,014,952 | ---- | M] (Acer Laboratories Inc.) (arc) arc [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arc.sys -> [2006/11/02 02:50:09 | 00,067,688 | ---- | M] (Adaptec, Inc.) (arcsas) arcsas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arcsas.sys -> [2006/11/02 02:50:10 | 00,067,688 | ---- | M] (Adaptec, Inc.) (AvgLdx86) AVG Free AVI Loader Driver x86 [Kernel | System | Running] -> C:\Windows\System32\Drivers\avgldx86.sys -> [2009/08/12 09:51:58 | 00,335,752 | ---- | M] (AVG Technologies CZ, s.r.o.) (AvgMfx86) AVG Free On-access Scanner Minifilter Driver x86 [File_System | System | Running] -> C:\Windows\System32\Drivers\avgmfx86.sys -> [2009/06/25 08:59:32 | 00,027,784 | ---- | M] (AVG Technologies CZ, s.r.o.) (AvgTdiX) AVG8 Network Redirector [Kernel | System | Running] -> C:\Windows\System32\Drivers\avgtdix.sys -> [2009/06/09 08:42:25 | 00,108,552 | ---- | M] (AVG Technologies CZ, s.r.o.) (b57nd60x) Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\b57nd60x.sys -> [2007/12/14 01:56:00 | 00,179,712 | ---- | M] (Broadcom Corporation) (BDASwCap) AVerMedia A310 BDA DVBT Capture Device [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\AVerA310Cap.sys -> [2007/07/09 19:16:00 | 00,042,240 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) (BrFiltLo) Brother USB Mass-Storage Lower Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltlo.sys -> [2006/11/02 01:24:45 | 00,013,568 | ---- | M] (Brother Industries, Ltd.) (BrFiltUp) Brother USB Mass-Storage Upper Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltup.sys -> [2006/11/02 01:24:46 | 00,005,248 | ---- | M] (Brother Industries, Ltd.) (Brserid) Brother MFC Serial Port Interface Driver (WDM) [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserid.sys -> [2006/11/02 01:25:24 | 00,071,808 | ---- | M] (Brother Industries Ltd.) (BrSerWdm) Brother WDM Serial driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserwdm.sys -> [2006/11/02 01:24:44 | 00,062,336 | ---- | M] (Brother Industries Ltd.) (BrUsbMdm) Brother MFC USB Fax Only Modem [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brusbmdm.sys -> [2006/11/02 01:24:44 | 00,012,160 | ---- | M] (Brother Industries Ltd.) (BrUsbSer) Brother MFC USB Serial WDM Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brusbser.sys -> [2006/11/02 01:24:47 | 00,011,904 | ---- | M] (Brother Industries Ltd.) (cmdide) cmdide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\cmdide.sys -> [2006/11/02 02:49:28 | 00,016,488 | ---- | M] (CMD Technology, Inc.) (DKbFltr) Dritek Keyboard Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\DKbFltr.sys -> [2006/11/02 06:29:38 | 00,021,264 | ---- | M] (Dritek System Inc.) (E1G60) Intel(R) PRO/1000 NDIS 6 Adapter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\E1G60I32.sys -> [2006/11/02 00:30:54 | 00,117,760 | ---- | M] (Intel Corporation) (elxstor) elxstor [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\elxstor.sys -> [2006/11/02 02:51:34 | 00,316,520 | ---- | M] (Emulex) (GEARAspiWDM) GEAR ASPI Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\GEARAspiWDM.sys -> [2009/03/19 16:32:48 | 00,023,400 | ---- | M] (GEAR Software Inc.) (HpCISSs) HpCISSs [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\hpcisss.sys -> [2006/11/02 02:50:10 | 00,037,480 | ---- | M] (Hewlett-Packard Company) (HSFHWAZL) HSFHWAZL [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\VSTAZL3.SYS -> [2006/11/02 00:41:49 | 00,200,704 | ---- | M] (Conexant Systems, Inc.) (HSF_DPV) HSF_DPV [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\HSX_DPV.sys -> [2007/12/14 01:56:00 | 00,984,064 | ---- | M] (Conexant Systems, Inc.) (HSXHWAZL) HSXHWAZL [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\HSXHWAZL.sys -> [2007/12/14 01:56:00 | 00,208,384 | ---- | M] (Conexant Systems, Inc.) (iaStor) Intel AHCI Controller [Kernel | Boot | Running] -> C:\Windows\system32\DRIVERS\iaStor.sys -> [2007/12/14 01:56:00 | 00,277,784 | ---- | M] (Intel Corporation) (iaStorV) Intel RAID Controller Vista [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iastorv.sys -> [2006/11/02 02:51:25 | 00,232,040 | ---- | M] (Intel Corporation) (igfx) igfx [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\igdkmd32.sys -> [2007/12/14 01:55:00 | 01,925,632 | ---- | M] (Intel Corporation) (iirsp) iirsp [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iirsp.sys -> [2006/11/02 02:50:17 | 00,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) (int15) int15 [Kernel | Auto | Running] -> C:\Acer\Empowering Technology\eRecovery\int15.sys -> [2007/07/03 09:05:20 | 00,015,392 | ---- | M] (Acer, Inc.) (IntcAzAudAddService) Service for Realtek HD Audio (WDM) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\RTKVHDA.sys -> [2007/12/14 01:56:00 | 01,950,552 | ---- | M] (Realtek Semiconductor Corp.) (iteatapi) ITEATAPI_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteatapi.sys -> [2006/11/02 02:50:07 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.) (iteraid) ITERAID_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteraid.sys -> [2006/11/02 02:50:09 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.) (LSI_FC) LSI_FC [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_fc.sys -> [2006/11/02 02:50:04 | 00,065,640 | ---- | M] (LSI Logic) (LSI_SAS) LSI_SAS [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_sas.sys -> [2006/11/02 02:50:05 | 00,065,640 | ---- | M] (LSI Logic) (LSI_SCSI) LSI_SCSI [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_scsi.sys -> [2006/11/02 02:50:10 | 00,065,640 | ---- | M] (LSI Logic) (mdmxsdk) mdmxsdk [Kernel | Auto | Running] -> C:\Windows\System32\DRIVERS\mdmxsdk.sys -> [2007/12/14 01:56:00 | 00,012,672 | ---- | M] (Conexant) (megasas) megasas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\megasas.sys -> [2006/11/02 02:49:53 | 00,028,776 | ---- | M] (LSI Logic Corporation) (Mraid35x) Mraid35x [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\mraid35x.sys -> [2006/11/02 02:49:59 | 00,033,384 | ---- | M] (LSI Logic Corporation) (NETw3v32) Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\NETw3v32.sys -> [2006/11/02 00:30:54 | 01,781,760 | ---- | M] (Intel® Corporation) (NETw4v32) Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\NETw4v32.sys -> [2007/12/14 01:53:20 | 02,226,688 | ---- | M] (Intel Corporation) (nfrd960) nfrd960 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nfrd960.sys -> [2006/11/02 02:50:19 | 00,045,160 | ---- | M] (IBM Corporation) (NTIDrvr) Upper Class Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\NTIDrvr.sys -> [2007/12/18 01:47:16 | 00,006,144 | ---- | M] (NewTech Infosystems, Inc.) (ntrigdigi) N-trig HID Tablet Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ntrigdigi.sys -> [2006/11/02 00:36:50 | 00,020,608 | ---- | M] (N-trig Innovative Technologies) (nvlddmkm) nvlddmkm [Kernel | On_Demand | Stopped] -> C:\Windows\System32\DRIVERS\nvlddmkm.sys -> [2007/12/14 01:55:00 | 07,629,504 | ---- | M] (NVIDIA Corporation) (nvraid) nvraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nvraid.sys -> [2006/11/02 02:50:24 | 00,088,680 | ---- | M] (NVIDIA Corporation) (nvstor) nvstor [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nvstor.sys -> [2006/11/02 02:50:13 | 00,040,040 | ---- | M] (NVIDIA Corporation) (pcouffin) VSO Software pcouffin [Kernel | On_Demand | Running] -> C:\Windows\System32\Drivers\pcouffin.sys -> [2009/03/21 19:02:16 | 00,047,360 | ---- | M] (VSO Software) (PSDFilter) PSDFilter [File_System | Boot | Running] -> C:\Windows\system32\DRIVERS\psdfilter.sys -> [2007/04/25 17:34:38 | 00,020,776 | ---- | M] (HiTRUST) (PSDNServ) PSDNSERVER [Kernel | Boot | Running] -> C:\Windows\system32\drivers\PSDNServ.sys -> [2007/04/25 17:34:44 | 00,016,680 | ---- | M] (HiTRUST) (psdvdisk) psdvdisk [Kernel | Boot | Running] -> C:\Windows\system32\drivers\psdvdisk.sys -> [2007/04/25 17:34:40 | 00,060,712 | ---- | M] (HiTRUST) (PxHelp20) PxHelp20 [Kernel | Boot | Running] -> C:\Windows\System32\Drivers\PxHelp20.sys -> [2007/05/01 03:00:00 | 00,043,528 | ---- | M] (Sonic Solutions) (ql2300) QLogic Fibre Channel Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql2300.sys -> [2006/11/02 02:51:45 | 00,900,712 | ---- | M] (QLogic Corporation) (ql40xx) QLogic iSCSI Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql40xx.sys -> [2006/11/02 02:50:35 | 00,106,088 | ---- | M] (QLogic Corporation) (rimmptsk) rimmptsk [Kernel | Auto | Running] -> C:\Windows\System32\DRIVERS\rimmptsk.sys -> [2007/08/08 21:42:08 | 00,045,568 | ---- | M] (REDC) (rimsptsk) rimsptsk [Kernel | Auto | Running] -> C:\Windows\System32\DRIVERS\rimsptsk.sys -> [2007/07/30 11:42:58 | 00,043,008 | ---- | M] (REDC) (RimUsb) BlackBerry Smartphone [Kernel | On_Demand | Stopped] -> C:\Windows\System32\Drivers\RimUsb.sys -> [2008/05/20 19:33:50 | 00,022,784 | ---- | M] (Research In Motion Limited) (RimVSerPort) RIM Virtual Serial Port v2 [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\RimSerial.sys -> [2007/01/18 10:24:58 | 00,026,496 | ---- | M] (Research in Motion Ltd) (rismxdp) Ricoh xD-Picture Card Driver [Kernel | Auto | Running] -> C:\Windows\System32\DRIVERS\rixdptsk.sys -> [2007/07/30 12:54:02 | 00,038,400 | ---- | M] (REDC) (RMCAST) RMCAST (Pgm) Protocol Driver [Kernel | Auto | Running] -> C:\Windows\System32\DRIVERS\RMCAST.sys -> [2009/03/21 01:01:15 | 00,113,664 | ---- | M] (Microsoft Corporation) (ROOTMODEM) Microsoft Legacy Modem Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\Drivers\RootMdm.sys -> [2008/01/18 22:57:15 | 00,008,192 | ---- | M] (Microsoft Corporation) (SASENUM) SASENUM [Kernel | On_Demand | Running] -> C:\Program Files\SUPERAntiSpyware\SASENUM.SYS -> [2006/02/16 14:51:08 | 00,004,096 | R--- | M] (SuperAdBlocker, Inc.) (SASKUTIL) SASKUTIL [Kernel | System | Running] -> C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys -> [2008/02/29 14:03:46 | 00,051,440 | ---- | M] () (secdrv) Security Driver [Kernel | Auto | Running] -> C:\Windows\System32\drivers\secdrv.sys -> [2006/11/01 23:37:21 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) (SiSRaid2) SiSRaid2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid2.sys -> [2006/11/02 02:50:10 | 00,038,504 | ---- | M] (Silicon Integrated Systems Corp.) (SiSRaid4) SiSRaid4 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid4.sys -> [2006/11/02 02:50:16 | 00,071,784 | ---- | M] (Silicon Integrated Systems) (SNP2UVC) USB2.0 PC Camera (SNP2UVC) [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\snp2uvc.sys -> [2007/06/12 09:38:26 | 01,729,152 | ---- | M] () (Symc8xx) Symc8xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\symc8xx.sys -> [2006/11/02 02:50:05 | 00,035,944 | ---- | M] (LSI Logic) (Sym_hi) Sym_hi [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_hi.sys -> [2006/11/02 02:49:56 | 00,031,848 | ---- | M] (LSI Logic) (Sym_u3) Sym_u3 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_u3.sys -> [2006/11/02 02:50:03 | 00,034,920 | ---- | M] (LSI Logic) (SynTP) Synaptics TouchPad Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\SynTP.sys -> [2007/12/14 01:55:00 | 00,192,816 | ---- | M] (Synaptics, Inc.) (uliahci) uliahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\uliahci.sys -> [2006/11/02 02:51:25 | 00,235,112 | ---- | M] (ULi Electronics Inc.) (UlSata) UlSata [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata.sys -> [2006/11/02 02:50:35 | 00,098,408 | ---- | M] (Promise Technology, Inc.) (ulsata2) ulsata2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata2.sys -> [2006/11/02 02:50:45 | 00,115,816 | ---- | M] (Promise Technology, Inc.) (USBAAPL) Apple Mobile USB Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\Drivers\usbaapl.sys -> [2009/06/05 11:42:38 | 00,039,424 | ---- | M] (Apple, Inc.) (viaide) viaide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\viaide.sys -> [2006/11/02 02:49:30 | 00,017,512 | ---- | M] (VIA Technologies, Inc.) (vsmraid) vsmraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\vsmraid.sys -> [2006/11/02 02:50:41 | 00,112,232 | ---- | M] (VIA Technologies Inc.,Ltd) (winachsf) winachsf [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\HSX_CNXT.sys -> [2007/12/14 01:56:00 | 00,660,480 | ---- | M] (Conexant Systems, Inc.) (winbondcir) Winbond IR Transceiver [Kernel | On_Demand | Running] -> C:\Windows\System32\DRIVERS\winbondcir.sys -> [2007/12/14 01:56:00 | 00,043,008 | ---- | M] (Winbond Electronics Corporation) (XAudio) XAudio [Kernel | Auto | Running] -> C:\Windows\System32\DRIVERS\xaudio.sys -> [2007/12/14 01:56:00 | 00,008,704 | ---- | M] (Conexant Systems, Inc.) ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} [Kernel | Auto | Running] -> C:\Program Files\Acer Arcade Deluxe\Play Movie\000.fcl -> [2007/12/05 09:48:56 | 00,041,456 | ---- | M] (Cyberlink Corp.) (SASDIFSV) SASDIFSV [Kernel | System | Stopped] -> C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS -> [2008/02/29 14:03:48 | 00,008,944 | ---- | M] () [Registry - Safe List] < Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://en.us.acer.yahoo.com -> HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 -> HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] -> HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons -> HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> %SystemRoot%\system32\blank.htm -> HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 -> HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk -> HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://en.us.acer.yahoo.com -> < Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> -> HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> -> HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> -> < Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> -> < Internet Explorer Settings [HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\] > -> -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\: Main\\"Default_Secondary_Page_URL" -> http://global.acer.com [binary data] -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\: Main\\"Local Page" -> C:\Windows\system32\blank.htm -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\: Main\\"Start Page" -> http://my.yahoo.com/ -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\: Main\\"StartPageCache" -> 1 -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\: "ProxyEnable" -> 0 -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\: "ProxyServer" -> :0 -> < FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla < FireFox Extensions [User Folders] > -> < HOSTS File > (303130 bytes and 10490 lines) -> C:\Windows\System32\drivers\etc\Hosts -> First 25 entries... Reset Hosts 127.0.0.1 localhost ::1 localhost 127.0.0.1 007guard.com 127.0.0.1 www.007guard.com 127.0.0.1 008i.com 127.0.0.1 008k.com 127.0.0.1 www.008k.com 127.0.0.1 00hq.com 127.0.0.1 www.00hq.com 127.0.0.1 010402.com 127.0.0.1 032439.com 127.0.0.1 www.032439.com 127.0.0.1 0scan.com 127.0.0.1 www.0scan.com 127.0.0.1 1-2005-search.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-domains-registrations.com 127.0.0.1 www.1-domains-registrations.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {02478D38-C3F9-4EFB-9B51-7695ECA05670} [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll [&Yahoo! Toolbar Helper] -> [2009/03/13 15:18:14 | 00,908,528 | ---- | M] (Yahoo! Inc.) {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [Adobe PDF Reader Link Helper] -> [2006/10/22 23:08:42 | 00,062,080 | ---- | M] (Adobe Systems Incorporated) {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} [HKLM] -> C:\Program Files\AVG\AVG8\avgssie.dll [AVG Safe Search] -> [2009/08/12 09:51:55 | 01,111,320 | ---- | M] (AVG Technologies CZ, s.r.o.) {53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [Spybot-S&D IE Protection] -> [2009/01/26 13:31:02 | 01,879,896 | ---- | M] (Safer Networking Limited) {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} [HKLM] -> C:\Windows\System32\ActiveToolBand.dll [ShowBarObj Class] -> [2007/04/25 17:33:22 | 00,299,008 | ---- | M] (HiTRUST) {AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar Helper] -> [2009/08/14 17:27:31 | 00,259,696 | ---- | M] (Google Inc.) {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} [HKLM] -> C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [Google Toolbar Notifier BHO] -> [2009/04/21 20:42:11 | 00,668,656 | ---- | M] (Google Inc.) {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} [HKLM] -> C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [Google Dictionary Compression sdch] -> [2009/04/21 20:19:11 | 00,470,512 | ---- | M] (Google Inc.) {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll [SingleInstance Class] -> [2009/03/13 15:18:12 | 00,165,616 | ---- | M] (Yahoo! Inc) < Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar -> "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/08/14 17:27:31 | 00,259,696 | ---- | M] (Google Inc.) "{5CBE3B7C-1E47-477e-A7DD-396DB0476E29}" [HKLM] -> C:\Windows\System32\eDStoolbar.dll [Acer eDataSecurity Management] -> [2007/04/25 17:30:32 | 00,151,552 | ---- | M] (HiTRUST) "{EF99BD32-C1FB-11D2-892F-0090271D4F88}" [HKLM] -> C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll [Yahoo! Toolbar] -> [2009/03/13 15:18:14 | 00,908,528 | ---- | M] (Yahoo! Inc.) < Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "" -> [] -> File not found "Acer Assist Launcher" -> C:\Program Files\Acer Assist\launcher.exe [C:\Program Files\Acer Assist\launcher.exe] -> [2007/02/02 11:05:00 | 01,261,568 | ---- | M] () "Acer Tour" -> [] -> File not found "Acer Tour Reminder" -> C:\Acer\AcerTour\Reminder.exe [C:\Acer\AcerTour\Reminder.exe] -> [2007/08/01 18:30:18 | 00,151,552 | ---- | M] (Acer Inc.) "Adobe Reader Speed Launcher" -> C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe ["C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"] -> [2008/10/15 01:04:34 | 00,039,792 | ---- | M] (Adobe Systems Incorporated) "AVG8_TRAY" -> C:\Program Files\AVG\AVG8\avgtray.exe [C:\PROGRA~1\AVG\AVG8\avgtray.exe] -> [2009/06/25 08:59:29 | 01,948,440 | ---- | M] (AVG Technologies CZ, s.r.o.) "BlackBerryAutoUpdate" -> C:\Program Files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe [C:\Program Files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe /background] -> [2008/11/04 12:09:58 | 00,615,696 | ---- | M] (Research In Motion Limited) "CanonMyPrinter" -> C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon] -> [2008/03/03 18:06:00 | 01,848,648 | ---- | M] (CANON INC.) "CanonSolutionMenu" -> C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon] -> [2008/03/10 18:20:00 | 00,689,488 | ---- | M] (CANON INC.) "eAudio" -> C:\Acer\Empowering Technology\eAudio\eAudio.exe ["C:\Acer\Empowering Technology\eAudio\eAudio.exe"] -> [2007/08/31 18:38:26 | 01,286,144 | ---- | M] (CyberLink) "eDataSecurity Loader" -> C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe [C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe] -> [2007/04/25 17:33:36 | 00,457,216 | ---- | M] (HiTRUST) "eRecoveryService" -> [] -> File not found "HotKeysCmds" -> C:\Windows\System32\hkcmd.exe [C:\Windows\system32\hkcmd.exe] -> [2007/12/14 01:55:00 | 00,154,136 | ---- | M] (Intel Corporation) "IgfxTray" -> C:\Windows\System32\igfxtray.exe [C:\Windows\system32\igfxtray.exe] -> [2007/12/14 01:55:00 | 00,141,848 | ---- | M] (Intel Corporation) "iTunesHelper" -> C:\Program Files\iTunes\iTunesHelper.exe ["C:\Program Files\iTunes\iTunesHelper.exe"] -> [2009/07/13 14:03:10 | 00,292,128 | ---- | M] (Apple Inc.) "NvMediaCenter" -> C:\Windows\System32\NvMcTray.DLL [RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit] -> [2007/12/14 01:55:00 | 00,081,920 | ---- | M] (NVIDIA Corporation) "PlayMovie" -> C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe ["C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe"] -> [2007/12/05 09:32:36 | 00,200,704 | ---- | M] (CyberLink Corp.) "PLFSet" -> C:\Windows\PLFSet.DLL [rundll32.exe C:\Windows\PLFSet.dll,PLFDefSetting] -> [2007/04/25 12:47:34 | 00,045,056 | ---- | M] ( ) "QuickTime Task" -> C:\Program Files\QuickTime\QTTask.exe ["C:\Program Files\QuickTime\QTTask.exe" -atboottime] -> [2009/05/26 17:18:30 | 00,413,696 | ---- | M] (Apple Inc.) "RoxWatchTray" -> C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe ["C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"] -> [2008/09/19 10:37:50 | 00,236,016 | ---- | M] (Sonic Solutions) "RtHDVCpl" -> C:\Windows\RtHDVCpl.exe [RtHDVCpl.exe] -> [2007/12/14 01:56:00 | 04,702,208 | ---- | M] (Realtek Semiconductor) "Skytel" -> C:\Windows\SkyTel.exe [Skytel.exe] -> [2007/12/14 01:56:00 | 01,826,816 | ---- | M] (Realtek Semiconductor Corp.) "SynTPStart" -> C:\Program Files\Synaptics\SynTP\SynTPStart.exe [C:\Program Files\Synaptics\SynTP\SynTPStart.exe] -> [2007/12/14 01:55:00 | 00,102,400 | ---- | M] (Synaptics, Inc.) "Windows Defender" -> C:\Program Files\Windows Defender\MSASCui.exe [%ProgramFiles%\Windows Defender\MSASCui.exe -hide] -> [2008/01/19 00:38:38 | 01,008,184 | ---- | M] (Microsoft Corporation) "WPCUMI" -> C:\Windows\System32\WpcUmi.exe [C:\Windows\system32\WpcUmi.exe] -> [2006/11/02 05:35:35 | 00,176,128 | ---- | M] (Microsoft Corporation) "YSearchProtection" -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe ["C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"] -> [2009/02/03 06:15:18 | 00,111,856 | ---- | M] (Yahoo! Inc) < Run [HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\] > -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "Acer Tour Reminder" -> [] -> File not found "Aim6" -> [] -> File not found "ehTray.exe" -> C:\Windows\ehome\ehTray.exe [C:\Windows\ehome\ehTray.exe] -> [2008/01/19 00:33:09 | 00,125,952 | ---- | M] (Microsoft Corporation) "ISUSPM" -> C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe ["C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler] -> [2007/08/30 10:50:42 | 00,205,480 | ---- | M] (Macrovision Corporation) "Search Protection" -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe] -> [2009/02/03 06:15:18 | 00,111,856 | ---- | M] (Yahoo! Inc) "SpybotSD TeaTimer" -> C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe] -> [2009/03/05 14:07:20 | 02,260,480 | ---- | M] (Safer-Networking Ltd.) "swg" -> C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe] -> [2009/04/21 20:42:11 | 00,039,408 | ---- | M] (Google Inc.) "uTorrent" -> C:\Program Files\uTorrent\uTorrent.exe ["C:\Program Files\uTorrent\uTorrent.exe"] -> [2009/03/21 18:17:06 | 00,270,128 | ---- | M] (BitTorrent, Inc.) "YSearchProtection" -> C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe] -> [2009/02/03 06:15:18 | 00,111,856 | ---- | M] (Yahoo! Inc) < CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System \\"ConsentPromptBehaviorAdmin" -> [2] -> File not found \\"ConsentPromptBehaviorUser" -> [1] -> File not found \\"EnableInstallerDetection" -> [1] -> File not found \\"EnableLUA" -> [1] -> File not found \\"EnableSecureUIAPaths" -> [1] -> File not found \\"EnableVirtualization" -> [1] -> File not found \\"PromptOnSecureDesktop" -> [1] -> File not found \\"ValidateAdminCodeSignatures" -> [0] -> File not found \\"dontdisplaylastusername" -> [0] -> File not found \\"legalnoticecaption" -> [] -> File not found \\"legalnoticetext" -> [] -> File not found \\"scforceoption" -> [0] -> File not found \\"shutdownwithoutlogon" -> [1] -> File not found \\"undockwithoutlogon" -> [1] -> File not found \\"FilterAdministratorToken" -> [0] -> File not found \\"EnableUIADesktopToggle" -> [0] -> File not found HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats \UIPI\Clipboard\ExceptionFormats\\"CF_TEXT" -> [1] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_BITMAP" -> [2] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_OEMTEXT" -> [7] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_DIB" -> [8] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_PALETTE" -> [9] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_UNICODETEXT" -> [13] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_DIBV5" -> [17] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000] > -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"NoDriveTypeAutoRun" -> [145] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000] > -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System \\"LogonHoursAction" -> [2] -> File not found \\"DontDisplayLogonHoursWarnings" -> [1] -> File not found < Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\] > -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\Software\Microsoft\Internet Explorer\MenuExt\ -> E&xport to Microsoft Excel -> Reg Error: Value error. [Reg Error: Value error.] -> File not found < Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll [Button: Send to OneNote] -> [2006/10/26 21:32:42 | 00,604,000 | ---- | M] (Microsoft Corporation) {2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll [Menu: S&end to OneNote] -> [2006/10/26 21:32:42 | 00,604,000 | ---- | M] (Microsoft Corporation) {92780B25-18CC-41C8-B9BE-3C9C571A8263}:{FF059E31-CC5A-4E2E-BF3B-96E929D65503} [HKLM] -> C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL [Button: Research] -> [2006/10/26 21:12:22 | 00,040,424 | ---- | M] (Microsoft Corporation) {DFB852A3-47F8-48C4-A200-58CAB36FD2A2}:{53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [Menu: Spybot - Search & Destroy Configuration] -> [2009/01/26 13:31:02 | 01,879,896 | ---- | M] (Safer Networking Limited) < Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ -> PluginsPageFriendlyName -> Microsoft ActiveX Gallery -> PluginsPage -> http://activex.microsoft.com/controls/find.asp?ext=%s&mime=%s -> < Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix "" -> http:// < Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 5448 domain(s) found. -> 48 domain(s) and sub-domain(s) not assigned to a zone. < Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 36 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 5448 domain(s) found. -> 48 domain(s) and sub-domain(s) not assigned to a zone. < Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 36 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 5448 domain(s) found. -> 48 domain(s) and sub-domain(s) not assigned to a zone. < Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 36 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 5448 domain(s) found. -> 48 domain(s) and sub-domain(s) not assigned to a zone. < Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 36 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 5448 domain(s) found. -> 48 domain(s) and sub-domain(s) not assigned to a zone. < Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 36 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\] > -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1865 domain(s) found. -> 22 domain(s) and sub-domain(s) not assigned to a zone. < Trusted Sites Ranges [HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\] > -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-21-1466171669-638389705-3811094347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {E2883E8F-472F-4FB0-9522-AC9BF37916A7} [HKLM] -> http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab [Reg Error: Key error.] -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ -> DhcpNameServer -> 93.188.161.105 93.188.166.105 1.2.3.4 -> NameServer -> 85.255.112.88,85.255.112.236 -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> {59D27C0B-27C2-43D4-9E95-25F7BB09F454}\\DhcpNameServer -> 68.87.66.135 68.87.64.140 (Broadcom NetLink (TM) Gigabit Ethernet) -> {73B976B0-6E6F-4077-B6A4-35E411255651}\\DhcpNameServer -> 93.188.161.105 93.188.166.105 1.2.3.4 (Intel(R) Wireless WiFi Link 4965AGN) -> {73B976B0-6E6F-4077-B6A4-35E411255651}\\NameServer -> 85.255.112.88,85.255.112.236 (Intel(R) Wireless WiFi Link 4965AGN) -> < AppInit_DLLs [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs -> *AppInit_DLLs* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls -> avgrsstx.dll -> C:\Windows\System32\avgrsstx.dll -> [2009/06/25 08:59:32 | 00,011,952 | ---- | M] (AVG Technologies CZ, s.r.o.) *MultiFile Done* -> -> < Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> *Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> explorer.exe -> C:\Windows\explorer.exe -> [2009/03/20 16:56:01 | 02,927,104 | ---- | M] (Microsoft Corporation) *MultiFile Done* -> -> < Winlogon\Notify settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ -> igfxcui -> C:\Windows\System32\igfxdev.dll -> [2007/12/14 01:55:00 | 00,204,800 | ---- | M] (Intel Corporation) < SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot -> "AlternateShell" -> cmd.exe -> < CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom -> "AutoRun" -> 1 -> "DisplayName" -> CD-ROM Driver -> "ImagePath" -> [system32\DRIVERS\cdrom.sys] -> File not found < Drives with AutoRun files > -> -> C:\autoexec.bat [REM Dummy file for NTVDM | ] -> C:\autoexec.bat [ NTFS ] -> [2006/09/18 14:43:36 | 00,000,024 | ---- | M] () < MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 -> \{f4ec89c5-3f3b-11de-bb1b-001b24b4e75b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f4ec89c5-3f3b-11de-bb1b-001b24b4e75b}\shell\AutoRun\command \{f4ec89c5-3f3b-11de-bb1b-001b24b4e75b}\shell\AutoRun\command\\"" -> F:\setupSNK.exe [F:\setupSNK.exe] -> File not found [Registry - Additional Scans - Safe List] < EventViewer Logs - Last 10 Errors > -> Event Information -> Description Application [ Error ] 7/7/2009 12:41:02 AM Computer Name = JACKSON-PC | Source = RasClient | ID = 20227 -> Description = Application [ Error ] 7/7/2009 12:44:50 AM Computer Name = JACKSON-PC | Source = RasClient | ID = 20227 -> Description = Application [ Error ] 7/8/2009 1:11:31 AM Computer Name = JACKSON-PC | Source = Application Error | ID = 1000 -> Description = Faulting application Hallmark Card Studio 2009.exe, version 10.0.0.28, time stamp 0x48a1ed01, faulting module Hallmark Card Studio 2009.exe, version 10.0.0.28, time stamp 0x48a1ed01, exception code 0xc0000005, fault offset 0x00421e22, process id 0x13c4, application start time 0x01c9ff8a464ad1c0. Application [ Error ] 7/8/2009 1:11:48 AM Computer Name = JACKSON-PC | Source = Application Error | ID = 1000 -> Description = Faulting application Hallmark Card Studio 2009.exe, version 10.0.0.28, time stamp 0x48a1ed01, faulting module ntdll.dll, version 6.0.6001.18000, time stamp 0x4791a7a6, exception code 0xc0150010, fault offset 0x000763a2, process id 0x13c4, application start time 0x01c9ff8a464ad1c0. Application [ Error ] 7/8/2009 1:13:03 AM Computer Name = JACKSON-PC | Source = Application Error | ID = 1000 -> Description = Faulting application Hallmark Card Studio 2009.exe, version 10.0.0.28, time stamp 0x48a1ed01, faulting module Hallmark Card Studio 2009.exe, version 10.0.0.28, time stamp 0x48a1ed01, exception code 0xc0000005, fault offset 0x00421e22, process id 0x390, application start time 0x01c9ff8a9f002b80. Application [ Error ] 7/8/2009 1:13:35 AM Computer Name = JACKSON-PC | Source = Application Error | ID = 1000 -> Description = Faulting application Hallmark Card Studio 2009.exe, version 10.0.0.28, time stamp 0x48a1ed01, faulting module ntdll.dll, version 6.0.6001.18000, time stamp 0x4791a7a6, exception code 0xc0150010, fault offset 0x000763a2, process id 0x390, application start time 0x01c9ff8a9f002b80. Application [ Error ] 7/11/2009 1:35:29 AM Computer Name = JACKSON-PC | Source = Application Error | ID = 1000 -> Description = Faulting application iexplore.exe, version 7.0.6001.18248, time stamp 0x49f1c24f, faulting module Flash9e.ocx, version 9.0.115.0, time stamp 0x474375f3, exception code 0xc0000005, fault offset 0x001286e4, process id 0x1418, application start time 0x01ca01dbd17dab20. Application [ Error ] 7/12/2009 4:17:22 AM Computer Name = JACKSON-PC | Source = Application Hang | ID = 1002 -> Description = The program iexplore.exe version 7.0.6001.18248 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: 113c Start Time: 01ca02c7e84cd953 Termination Time: 53 Application [ Error ] 7/18/2009 6:10:13 PM Computer Name = JACKSON-PC | Source = Application Hang | ID = 1002 -> Description = The program iexplore.exe version 7.0.6001.18248 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: 169c Start Time: 01ca07f44f35fe29 Termination Time: 15 Application [ Error ] 7/18/2009 7:47:39 PM Computer Name = JACKSON-PC | Source = Windows Search Service | ID = 3013 -> Description = Media Center [ Error ] 7/9/2009 5:35:34 PM Computer Name = JACKSON-PC | Source = MCUpdate | ID = 0 -> Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. Media Center [ Error ] 7/18/2009 7:32:41 PM Computer Name = JACKSON-PC | Source = MCUpdate | ID = 0 -> Description = DownloadPackgeTask.SubTasksComplete: failed downloading package SportsSchedule. System [ Error ] 8/20/2009 10:25:36 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7034 -> Description = System [ Error ] 8/20/2009 10:25:36 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7034 -> Description = System [ Error ] 8/20/2009 10:25:37 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7034 -> Description = System [ Error ] 8/20/2009 10:25:37 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7034 -> Description = System [ Error ] 8/20/2009 10:25:39 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7034 -> Description = System [ Error ] 8/20/2009 10:25:39 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7031 -> Description = System [ Error ] 8/20/2009 10:25:39 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7031 -> Description = System [ Error ] 8/20/2009 10:25:40 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7034 -> Description = System [ Error ] 8/20/2009 10:25:40 AM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7034 -> Description = System [ Error ] 8/20/2009 12:29:50 PM Computer Name = JACKSON-PC | Source = Service Control Manager | ID = 7000 -> Description = [Files/Folders - Created Within 30 Days] {7B02EF0B-A410-4938-8480-9BA26420A627}.job -> C:\Windows\tasks\{7B02EF0B-A410-4938-8480-9BA26420A627}.job -> [2009/08/20 02:40:46 | 00,000,268 | -H-- | C] () RAR Password Unlocker -> C:\Program Files\RAR Password Unlocker -> [2009/08/20 01:52:34 | 00,000,000 | ---D | C] iPod -> C:\Program Files\iPod -> [2009/08/16 23:12:01 | 00,000,000 | ---D | C] iTunes -> C:\Program Files\iTunes -> [2009/08/16 23:11:57 | 00,000,000 | ---D | C] Config.Msi -> C:\Config.Msi -> [2009/08/16 23:09:59 | 00,000,000 | -HSD | C] lsasrv.dll -> C:\Windows\System32\lsasrv.dll -> [2009/08/16 14:28:56 | 01,256,448 | ---- | C] (Microsoft Corporation) kerberos.dll -> C:\Windows\System32\kerberos.dll -> [2009/08/16 14:28:56 | 00,499,712 | ---- | C] (Microsoft Corporation) schannel.dll -> C:\Windows\System32\schannel.dll -> [2009/08/16 14:28:56 | 00,270,848 | ---- | C] (Microsoft Corporation) msv1_0.dll -> C:\Windows\System32\msv1_0.dll -> [2009/08/16 14:28:56 | 00,213,504 | ---- | C] (Microsoft Corporation) wdigest.dll -> C:\Windows\System32\wdigest.dll -> [2009/08/16 14:28:56 | 00,175,104 | ---- | C] (Microsoft Corporation) ksecdd.sys -> C:\Windows\System32\drivers\ksecdd.sys -> [2009/08/16 14:28:55 | 00,439,896 | ---- | C] (Microsoft Corporation) secur32.dll -> C:\Windows\System32\secur32.dll -> [2009/08/16 14:28:55 | 00,072,704 | ---- | C] (Microsoft Corporation) lsass.exe -> C:\Windows\System32\lsass.exe -> [2009/08/16 14:28:55 | 00,009,728 | ---- | C] (Microsoft Corporation) DVD Shrink -> C:\ProgramData\DVD Shrink -> [2009/08/15 18:08:31 | 00,000,000 | ---D | C] DVD Shrink -> C:\Program Files\DVD Shrink -> [2009/08/15 18:08:30 | 00,000,000 | ---D | C] ntuser.pol -> C:\Users\Acer\ntuser.pol -> [2009/08/14 15:46:49 | 00,000,632 | RHS- | C] () atl.dll -> C:\Windows\System32\atl.dll -> [2009/08/13 05:23:18 | 00,071,680 | ---- | C] (Microsoft Corporation) wkssvc.dll -> C:\Windows\System32\wkssvc.dll -> [2009/08/13 05:23:16 | 00,160,256 | ---- | C] (Microsoft Corporation) mstscax.dll -> C:\Windows\System32\mstscax.dll -> [2009/08/13 05:23:14 | 02,066,432 | ---- | C] (Microsoft Corporation) avifil32.dll -> C:\Windows\System32\avifil32.dll -> [2009/08/13 05:23:12 | 00,091,136 | ---- | C] (Microsoft Corporation) wmp.dll -> C:\Windows\System32\wmp.dll -> [2009/08/13 05:23:08 | 10,626,048 | ---- | C] (Microsoft Corporation) wmpdxm.dll -> C:\Windows\System32\wmpdxm.dll -> [2009/08/13 05:23:07 | 00,313,344 | ---- | C] (Microsoft Corporation) spwmp.dll -> C:\Windows\System32\spwmp.dll -> [2009/08/13 05:23:06 | 00,007,680 | ---- | C] (Microsoft Corporation) msdxm.ocx -> C:\Windows\System32\msdxm.ocx -> [2009/08/13 05:23:01 | 00,004,096 | ---- | C] (Microsoft Corporation) dxmasf.dll -> C:\Windows\System32\dxmasf.dll -> [2009/08/13 05:23:01 | 00,004,096 | ---- | C] (Microsoft Corporation) wmploc.DLL -> C:\Windows\System32\wmploc.DLL -> [2009/08/13 05:22:56 | 08,147,456 | ---- | C] (Microsoft Corporation) msdxm.tlb -> C:\Windows\System32\msdxm.tlb -> [2009/08/13 05:22:55 | 00,043,520 | ---- | C] (Microsoft Corporation) amcompat.tlb -> C:\Windows\System32\amcompat.tlb -> [2009/08/13 05:22:55 | 00,018,432 | ---- | C] (Microsoft Corporation) ipod_video -> C:\ipod_video -> [2009/08/12 12:11:40 | 00,000,000 | ---D | C] Ultra iPod Movie Converter.lnk -> C:\Users\Public\Desktop\Ultra iPod Movie Converter.lnk -> [2009/08/12 12:06:08 | 00,000,896 | ---- | C] () GplMpgDec.ax -> C:\Windows\System32\GplMpgDec.ax -> [2009/08/12 12:06:07 | 00,258,048 | ---- | C] (Peter Wimmer, Gabest) AVERM.dll -> C:\Windows\System32\AVERM.dll -> [2009/08/12 12:06:07 | 00,129,024 | ---- | C] () AVEQT.dll -> C:\Windows\System32\AVEQT.dll -> [2009/08/12 12:06:07 | 00,028,672 | ---- | C] () Ultra iPod Movie Converter -> C:\Program Files\Ultra iPod Movie Converter -> [2009/08/12 12:06:06 | 00,000,000 | ---D | C] Red Kawa -> C:\Program Files\Red Kawa -> [2009/07/30 16:35:19 | 00,000,000 | ---D | C] net_save.dna -> C:\net_save.dna -> [2009/07/30 15:46:17 | 00,000,972 | ---- | C] () SupportSoft -> C:\Users\Acer\AppData\Local\SupportSoft -> [2009/07/30 15:45:58 | 00,000,000 | ---D | C] SupportSoft -> C:\Program Files\Common Files\SupportSoft -> [2009/07/30 15:45:24 | 00,000,000 | ---D | C] mshtml.dll -> C:\Windows\System32\mshtml.dll -> [2009/07/29 05:46:34 | 03,583,488 | ---- | C] (Microsoft Corporation) occache.dll -> C:\Windows\System32\occache.dll -> [2009/07/29 05:46:33 | 00,146,432 | ---- | C] (Microsoft Corporation) ieframe.dll -> C:\Windows\System32\ieframe.dll -> [2009/07/29 05:46:32 | 06,069,248 | ---- | C] (Microsoft Corporation) urlmon.dll -> C:\Windows\System32\urlmon.dll -> [2009/07/29 05:46:31 | 01,166,336 | ---- | C] (Microsoft Corporation) wininet.dll -> C:\Windows\System32\wininet.dll -> [2009/07/29 05:46:30 | 00,827,904 | ---- | C] (Microsoft Corporation) iertutil.dll -> C:\Windows\System32\iertutil.dll -> [2009/07/29 05:46:28 | 00,270,848 | ---- | C] (Microsoft Corporation) msfeeds.dll -> C:\Windows\System32\msfeeds.dll -> [2009/07/29 05:46:26 | 00,458,240 | ---- | C] (Microsoft Corporation) iedkcs32.dll -> C:\Windows\System32\iedkcs32.dll -> [2009/07/29 05:46:26 | 00,389,120 | ---- | C] (Microsoft Corporation) ieaksie.dll -> C:\Windows\System32\ieaksie.dll -> [2009/07/29 05:46:24 | 00,230,400 | ---- | C] (Microsoft Corporation) html.iec -> C:\Windows\System32\html.iec -> [2009/07/29 05:46:23 | 00,389,632 | ---- | C] (Microsoft Corporation) ieUnatt.exe -> C:\Windows\System32\ieUnatt.exe -> [2009/07/29 05:46:23 | 00,026,624 | ---- | C] (Microsoft Corporation) mstime.dll -> C:\Windows\System32\mstime.dll -> [2009/07/29 05:46:22 | 00,671,232 | ---- | C] (Microsoft Corporation) ieencode.dll -> C:\Windows\System32\ieencode.dll -> [2009/07/29 05:46:21 | 00,078,336 | ---- | C] (Microsoft Corporation) mshtml.tlb -> C:\Windows\System32\mshtml.tlb -> [2009/07/29 05:46:20 | 01,383,424 | ---- | C] (Microsoft Corporation) jsproxy.dll -> C:\Windows\System32\jsproxy.dll -> [2009/07/29 05:46:20 | 00,028,160 | ---- | C] (Microsoft Corporation) psp users guide.PDF -> C:\Users\Acer\Documents\psp users guide.PDF -> [2009/07/24 18:20:07 | 02,680,440 | ---- | C] () Roxio -> C:\Users\Acer\AppData\Roaming\Roxio -> [2009/07/22 19:48:16 | 00,000,000 | ---D | C] InstallShield -> C:\ProgramData\InstallShield -> [2009/07/22 19:41:14 | 00,000,000 | ---D | C] Sonic -> C:\ProgramData\Sonic -> [2009/07/22 19:41:10 | 00,000,000 | ---D | C] PX Storage Engine -> C:\Program Files\Common Files\PX Storage Engine -> [2009/07/22 19:39:28 | 00,000,000 | ---D | C] Sonic Shared -> C:\Program Files\Common Files\Sonic Shared -> [2009/07/22 19:38:42 | 00,000,000 | ---D | C] Roxio -> C:\ProgramData\Roxio -> [2009/07/22 19:38:42 | 00,000,000 | ---D | C] Roxio -> C:\Program Files\Roxio -> [2009/07/22 19:38:42 | 00,000,000 | ---D | C] Roxio Shared -> C:\Program Files\Common Files\Roxio Shared -> [2009/07/22 19:38:38 | 00,000,000 | ---D | C] RimSerial.sys -> C:\Windows\System32\drivers\RimSerial.sys -> [2009/07/22 19:36:53 | 00,026,496 | ---- | C] (Research in Motion Ltd) Research In Motion -> C:\Program Files\Research In Motion -> [2009/07/22 19:36:03 | 00,000,000 | ---D | C] RtDefLvl.ini -> C:\Windows\RtDefLvl.ini -> [2008/11/03 19:31:41 | 00,001,132 | ---- | C] () SetPanel.ini -> C:\Windows\SetPanel.ini -> [2008/11/03 19:26:26 | 00,000,030 | ---- | C] () CLEANUP.INI -> C:\Windows\CLEANUP.INI -> [2008/11/03 19:26:11 | 00,000,092 | ---- | C] () PLFSet.dll -> C:\Windows\PLFSet.dll -> [2008/11/03 16:56:20 | 00,045,056 | ---- | C] ( ) snp2uvc.sys -> C:\Windows\System32\drivers\snp2uvc.sys -> [2008/11/03 16:56:19 | 01,729,152 | ---- | C] () rsnp2uvc.dll -> C:\Windows\System32\rsnp2uvc.dll -> [2008/11/03 16:56:19 | 00,172,032 | ---- | C] ( ) csnp2uvc.dll -> C:\Windows\System32\csnp2uvc.dll -> [2008/11/03 16:56:19 | 00,053,248 | ---- | C] ( ) SETUP.INI -> C:\Windows\SETUP.INI -> [2008/11/03 16:45:09 | 00,000,000 | ---- | C] () NTIBUN4.dll -> C:\Windows\System32\NTIBUN4.dll -> [2007/12/18 02:28:41 | 00,001,024 | RH-- | C] () int15_64.sys -> C:\Windows\System32\drivers\int15_64.sys -> [2007/12/18 02:07:12 | 00,015,656 | ---- | C] () NATTraversal.dll -> C:\Windows\System32\NATTraversal.dll -> [2007/12/18 02:06:31 | 00,065,536 | ---- | C] () Interop.Shell32.dll -> C:\Windows\System32\Interop.Shell32.dll -> [2007/12/18 01:59:44 | 00,053,248 | ---- | C] ( ) ScrollBarLib.dll -> C:\Windows\System32\ScrollBarLib.dll -> [2007/12/18 01:59:39 | 00,331,776 | ---- | C] () Alaunch.ini -> C:\Windows\Alaunch.ini -> [2007/12/17 23:11:14 | 00,000,128 | ---- | C] () igmedkrn.dll -> C:\Windows\System32\igmedkrn.dll -> [2007/12/17 23:10:59 | 01,238,832 | ---- | C] () igfxTMM.dll -> C:\Windows\System32\igfxTMM.dll -> [2007/12/17 23:10:59 | 00,249,856 | ---- | C] () igfxCoIn_v1329.dll -> C:\Windows\System32\igfxCoIn_v1329.dll -> [2007/12/17 23:10:59 | 00,147,456 | ---- | C] () igmedcompkrn.dll -> C:\Windows\System32\igmedcompkrn.dll -> [2007/12/17 23:10:59 | 00,104,636 | ---- | C] () WdfCoInstaller01000.dll -> C:\Windows\System32\WdfCoInstaller01000.dll -> [2007/12/17 23:08:02 | 01,060,424 | ---- | C] () NotesExtmngr.dll -> C:\Windows\System32\NotesExtmngr.dll -> [2007/04/25 17:33:22 | 00,266,240 | ---- | C] () NotesActnMenu.dll -> C:\Windows\System32\NotesActnMenu.dll -> [2007/04/25 17:32:50 | 00,204,800 | ---- | C] () MSNSpook.dll -> C:\Windows\System32\MSNSpook.dll -> [2007/04/25 17:32:46 | 00,086,016 | ---- | C] () BatchCrypto.dll -> C:\Windows\System32\BatchCrypto.dll -> [2007/04/25 17:31:00 | 00,028,672 | ---- | C] () APISlice.dll -> C:\Windows\System32\APISlice.dll -> [2007/04/25 17:30:52 | 00,073,728 | ---- | C] () ShowErrMsg.dll -> C:\Windows\System32\ShowErrMsg.dll -> [2007/04/25 17:30:44 | 00,063,488 | ---- | C] () MailFormat_U.dll -> C:\Windows\System32\MailFormat_U.dll -> [2006/12/25 16:44:48 | 00,022,016 | ---- | C] () sysprepMCE.dll -> C:\Windows\System32\sysprepMCE.dll -> [2006/11/02 05:35:32 | 00,005,632 | ---- | C] () system.ini -> C:\Windows\system.ini -> [2006/11/02 03:23:31 | 00,000,219 | ---- | C] () win.ini -> C:\Windows\win.ini -> [2006/11/02 03:23:31 | 00,000,144 | ---- | C] () pacerprf.ini -> C:\Windows\System32\pacerprf.ini -> [2006/11/02 00:40:29 | 00,013,750 | ---- | C] () multiplex_vcd.dll -> C:\Windows\System32\multiplex_vcd.dll -> [2001/12/26 17:12:30 | 00,065,536 | ---- | C] () Hmpg12.dll -> C:\Windows\System32\Hmpg12.dll -> [2001/09/04 00:46:38 | 00,110,592 | ---- | C] () HMPV2_ENC.dll -> C:\Windows\System32\HMPV2_ENC.dll -> [2001/07/30 17:33:56 | 00,118,784 | ---- | C] () HMPV2_ENC_MMX.dll -> C:\Windows\System32\HMPV2_ENC_MMX.dll -> [2001/07/23 23:04:36 | 00,118,784 | ---- | C] () [Files/Folders - Modified Within 30 Days] 3 C:\Users\Acer\AppData\Local\Temp\*.tmp files -> C:\Users\Acer\AppData\Local\Temp\*.tmp -> ntuser.dat -> C:\Users\Acer\ntuser.dat -> [2009/08/20 12:48:07 | 05,767,168 | -HS- | M] () 7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> [2009/08/20 12:43:54 | 00,003,168 | -H-- | M] () 7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> [2009/08/20 12:43:54 | 00,003,168 | -H-- | M] () PerfStringBackup.INI -> C:\Windows\System32\PerfStringBackup.INI -> [2009/08/20 12:42:03 | 00,690,960 | ---- | M] () perfh009.dat -> C:\Windows\System32\perfh009.dat -> [2009/08/20 12:42:03 | 00,595,684 | ---- | M] () perfc009.dat -> C:\Windows\System32\perfc009.dat -> [2009/08/20 12:42:03 | 00,101,350 | ---- | M] () {7B02EF0B-A410-4938-8480-9BA26420A627}.job -> C:\Windows\tasks\{7B02EF0B-A410-4938-8480-9BA26420A627}.job -> [2009/08/20 12:00:01 | 00,000,268 | -H-- | M] () microavi.avg -> C:\Windows\System32\drivers\Avg\microavi.avg -> [2009/08/20 04:03:32 | 00,067,836 | ---- | M] () incavi.avm -> C:\Windows\System32\drivers\Avg\incavi.avm -> [2009/08/20 04:03:31 | 40,014,703 | ---- | M] () qmgr1.dat -> C:\ProgramData\Microsoft\Network\Downloader\qmgr1.dat -> [2009/08/20 03:36:39 | 04,194,304 | ---- | M] () qmgr0.dat -> C:\ProgramData\Microsoft\Network\Downloader\qmgr0.dat -> [2009/08/20 03:36:39 | 04,194,304 | ---- | M] () SA.DAT -> C:\Windows\tasks\SA.DAT -> [2009/08/20 03:31:45 | 00,000,006 | -H-- | M] () bootstat.dat -> C:\Windows\bootstat.dat -> [2009/08/20 03:31:42 | 00,067,584 | --S- | M] () hiberfil.sys -> C:\hiberfil.sys -> [2009/08/20 03:31:34 | 21,353,84064 | -HS- | M] () NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms -> C:\Users\Acer\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms -> [2009/08/20 03:30:21 | 00,524,288 | -HS- | M] () NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf -> C:\Users\Acer\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf -> [2009/08/20 03:30:21 | 00,065,536 | -HS- | M] () IconCache.db -> C:\Users\Acer\AppData\Local\IconCache.db -> [2009/08/20 03:23:58 | 02,798,797 | -H-- | M] () DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> C:\Users\Acer\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> [2009/08/20 02:34:06 | 00,123,392 | ---- | M] () PublishedRacMonSWITable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonSWITable.DAT -> [2009/08/20 00:26:47 | 00,160,460 | ---- | M] () PublishedRacMonAFLTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonAFLTable.DAT -> [2009/08/20 00:26:47 | 00,009,936 | ---- | M] () PublishedRacMonIndex.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonIndex.DAT -> [2009/08/20 00:26:47 | 00,006,744 | ---- | M] () PublishedRacMonOSFTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonOSFTable.DAT -> [2009/08/20 00:26:47 | 00,003,588 | ---- | M] () PublishedRacMonHFLTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonHFLTable.DAT -> [2009/08/20 00:26:47 | 00,000,000 | ---- | M] () PublishedRacMonCLKTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonCLKTable.DAT -> [2009/08/20 00:26:47 | 00,000,000 | ---- | M] () opa12.dat -> C:\ProgramData\Microsoft\OFFICE\DATA\opa12.dat -> [2009/08/17 22:06:19 | 00,008,306 | ---- | M] () cody.dat -> C:\ProgramData\Microsoft\User Account Pictures\cody.dat -> [2009/08/14 16:43:11 | 00,000,000 | ---- | M] () ntuser.pol -> C:\Users\Acer\ntuser.pol -> [2009/08/14 15:47:22 | 00,000,632 | RHS- | M] () Ultra iPod Movie Converter.lnk -> C:\Users\Public\Desktop\Ultra iPod Movie Converter.lnk -> [2009/08/12 12:06:08 | 00,000,896 | ---- | M] () vso_ts_preview.xml -> C:\Users\Acer\AppData\Roaming\vso_ts_preview.xml -> [2009/08/12 11:06:37 | 00,000,671 | ---- | M] () avgldx86.sys -> C:\Windows\System32\drivers\avgldx86.sys -> [2009/08/12 09:51:58 | 00,335,752 | ---- | M] (AVG Technologies CZ, s.r.o.) net_save.dna -> C:\net_save.dna -> [2009/07/30 15:46:17 | 00,000,972 | ---- | M] () mrt.exe -> C:\Windows\System32\mrt.exe -> [2009/07/29 17:49:14 | 24,281,536 | ---- | M] (Microsoft Corporation) wklnhst.dat -> C:\Users\Acer\AppData\Roaming\wklnhst.dat -> [2009/07/25 20:46:55 | 00,002,876 | ---- | M] () psp users guide.PDF -> C:\Users\Acer\Documents\psp users guide.PDF -> [2009/07/24 18:20:18 | 02,680,440 | ---- | M] () GDIPFONTCACHEV1.DAT -> C:\Users\Acer\AppData\Local\GDIPFONTCACHEV1.DAT -> [2009/07/22 19:44:46 | 00,141,360 | ---- | M] () FNTCACHE.DAT -> C:\Windows\System32\FNTCACHE.DAT -> [2009/07/22 19:43:57 | 00,448,848 | ---- | M] () wklntsk1.dat -> C:\ProgramData\Microsoft\Works\wklntsk1.dat -> [2009/03/20 16:34:09 | 00,155,262 | ---- | M] () wkcalcat.dat -> C:\ProgramData\Microsoft\Works\wkcalcat.dat -> [2009/03/20 16:33:56 | 00,016,384 | ---- | M] () Acer.dat -> C:\ProgramData\Microsoft\User Account Pictures\Acer.dat -> [2008/11/03 16:40:11 | 00,000,000 | ---- | M] () SSUPDATE.EXE -> C:\Users\Acer\AppData\Local\Temp\SSUPDATE.EXE -> [2008/02/29 14:03:44 | 00,146,672 | ---- | M] (SUPERAntiSpyware.com) [File - Lop Check] Roaming -> C:\Users\Acer\AppData\Roaming -> [2009/07/25 20:46:55 | 00,000,000 | ---D | M] acccore -> C:\Users\Acer\AppData\Roaming\acccore -> [2009/06/21 20:41:25 | 00,000,000 | ---D | M] Acer -> C:\Users\Acer\AppData\Roaming\Acer -> [2009/03/20 16:20:11 | 00,000,000 | ---D | M] Canon -> C:\Users\Acer\AppData\Roaming\Canon -> [2009/06/13 14:56:02 | 00,000,000 | ---D | M] CyberLink -> C:\Users\Acer\AppData\Roaming\CyberLink -> [2009/03/17 13:17:52 | 00,000,000 | ---D | M] dvdcss -> C:\Users\Acer\AppData\Roaming\dvdcss -> [2009/07/25 08:39:04 | 00,000,000 | ---D | M] Leadertech -> C:\Users\Acer\AppData\Roaming\Leadertech -> [2008/11/03 17:03:46 | 00,000,000 | ---D | M] Media Center Programs -> C:\Users\Acer\AppData\Roaming\Media Center Programs -> [2006/11/02 05:37:34 | 00,000,000 | ---D | M] Research In Motion -> C:\Users\Acer\AppData\Roaming\Research In Motion -> [2009/06/17 23:40:30 | 00,000,000 | ---D | M] Roxio -> C:\Users\Acer\AppData\Roaming\Roxio -> [2009/07/22 20:18:20 | 00,000,000 | ---D | M] Template -> C:\Users\Acer\AppData\Roaming\Template -> [2009/03/21 17:10:53 | 00,000,000 | ---D | M] uTorrent -> C:\Users\Acer\AppData\Roaming\uTorrent -> [2009/08/20 03:32:31 | 00,000,000 | ---D | M] Vso -> C:\Users\Acer\AppData\Roaming\Vso -> [2009/08/12 11:06:37 | 00,000,000 | ---D | M] Roaming -> C:\Users\cody\AppData\Roaming -> [2009/08/14 17:27:29 | 00,000,000 | ---D | M] Acer -> C:\Users\cody\AppData\Roaming\Acer -> [2009/08/14 16:43:42 | 00,000,000 | ---D | M] Leadertech -> C:\Users\cody\AppData\Roaming\Leadertech -> [2009/08/14 16:43:40 | 00,000,000 | ---D | M] Media Center Programs -> C:\Users\cody\AppData\Roaming\Media Center Programs -> [2006/11/02 05:37:34 | 00,000,000 | ---D | M] Research In Motion -> C:\Users\cody\AppData\Roaming\Research In Motion -> [2009/08/14 16:43:41 | 00,000,000 | ---D | M] Roaming -> C:\Users\Default\AppData\Roaming -> [2006/11/02 05:37:34 | 00,000,000 | ---D | M] Media Center Programs -> C:\Users\Default\AppData\Roaming\Media Center Programs -> [2006/11/02 05:37:34 | 00,000,000 | ---D | M] Roaming -> C:\Users\Default User\AppData\Roaming -> [2006/11/02 05:37:34 | 00,000,000 | ---D | M] Media Center Programs -> C:\Users\Default User\AppData\Roaming\Media Center Programs -> [2006/11/02 05:37:34 | 00,000,000 | ---D | M] C:\Windows\Tasks\ -> C:\Windows\Tasks -> [2009/08/20 03:32:01 | 00,000,000 | ---D | M] SA.DAT -> C:\Windows\Tasks\SA.DAT -> [2009/08/20 03:31:45 | 00,000,006 | -H-- | M] () SCHEDLGU.TXT -> C:\Windows\Tasks\SCHEDLGU.TXT -> [2009/08/20 03:30:22 | 00,032,632 | ---- | M] () {7B02EF0B-A410-4938-8480-9BA26420A627}.job -> C:\Windows\Tasks\{7B02EF0B-A410-4938-8480-9BA26420A627}.job -> [2009/08/20 12:00:01 | 00,000,268 | -H-- | M] () [File - Purity Scan] [Alternate Data Streams] @Alternate Data Stream - 76 bytes -> C:\Users\Acer\Documents\Blackberry users guide 8100.pdf:Roxio EMC Stream @Alternate Data Stream - 76 bytes -> C:\Users\Acer\Documents\Blackberry Zen 8100.pdf:Roxio EMC Stream @Alternate Data Stream - 76 bytes -> C:\Users\Acer\Documents\Blackberry8100 SmartPhone Tips.pdf:Roxio EMC Stream @Alternate Data Stream - 76 bytes -> C:\Users\Acer\Documents\Ebay comcast account info.txt:Roxio EMC Stream @Alternate Data Stream - 76 bytes -> C:\Users\Acer\Documents\LDS_org - Liahona Article - The Healing Power of Forgiveness.txt:Roxio EMC Stream @Alternate Data Stream - 76 bytes -> C:\Users\Acer\Documents\psp users guide.PDF:Roxio EMC Stream @Alternate Data Stream - 76 bytes -> C:\Users\Acer\Documents\Sony Voice Recorder.pdf:Roxio EMC Stream < End of report > [/code]