OTL logfile created on: 18/06/2012 18:58:35 - Run 1 OTL by OldTimer - Version 3.2.49.0 Folder = C:\ Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.2180) Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy 1.99 Gb Total Physical Memory | 1.73 Gb Available Physical Memory | 87.04% Memory free 3.33 Gb Paging File | 3.23 Gb Available in Paging File | 96.95% Paging File free Paging file location(s): C:\pagefile.sys 1524 3048 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 20.02 Gb Total Space | 14.60 Gb Free Space | 72.92% Space Free | Partition Type: NTFS Drive D: | 35.87 Gb Total Space | 4.45 Gb Free Space | 12.40% Space Free | Partition Type: NTFS Computer Name: KURSAD-AF7F8EC8 | User Name: Administrator | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012/06/16 22:46:48 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\OTL.exe PRC - [2008/03/14 19:05:30 | 000,086,016 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe PRC - [2008/03/14 19:04:48 | 000,118,784 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe PRC - [2008/03/14 19:04:28 | 000,188,416 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe PRC - [2008/03/14 18:57:34 | 000,425,984 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe PRC - [2008/03/14 18:53:46 | 000,126,976 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe PRC - [2004/08/04 01:56:50 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2008/03/14 18:52:22 | 000,028,672 | ---- | M] () -- C:\Program Files\ThinkPad\ConnectUtilities\Res\US\SvcHlprRes.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2008/03/14 19:05:30 | 000,086,016 | ---- | M] (Lenovo ) [Auto | Running] -- C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe -- (AcPrfMgrSvc) SRV - [2008/03/14 19:04:28 | 000,188,416 | ---- | M] (Lenovo ) [Auto | Running] -- C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe -- (AcSvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2008/01/21 20:34:30 | 000,004,224 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\IBMBLDID.sys -- (IBMTPCHK) DRV - [2008/01/21 20:34:28 | 000,011,520 | ---- | M] (IBM Corp.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ANC.sys -- (ANC) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm O1 HOSTS File: ([2001/08/18 15:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O4 - HKLM..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe (Lenovo ) O4 - HKLM..\Run: [ACWLIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe (Lenovo ) O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\ACNotify: DllName - (ACNotify.dll) - C:\Program Files\ThinkPad\ConnectUtilities\ACNotify.dll (Lenovo ) O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008/07/06 15:42:22 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009/11/19 21:24:41 | 000,000,090 | ---- | M] () - C:\AUTORUN.INF -- [ NTFS ] O32 - AutoRun File - [2008/07/07 01:24:36 | 000,000,090 | ---- | M] () - D:\AUTORUN.INF -- [ NTFS ] O33 - MountPoints2\{04cd4f43-4b6f-11dd-a2e8-806d6172696f}\Shell\AutoRun\command - "" = D:\setupSNK.exe -- [2004/08/04 00:56:58 | 000,028,672 | ---- | M] (Microsoft Corporation) O33 - MountPoints2\{04cd4f45-4b6f-11dd-a2e8-806d6172696f}\Shell\AutoRun\command - "" = C:\setupSNK.exe -- [2004/08/04 01:56:58 | 000,028,672 | ---- | M] (Microsoft Corporation) O33 - MountPoints2\C\Shell\AutoRun\command - "" = C:\setupSNK.exe -- [2004/08/04 01:56:58 | 000,028,672 | ---- | M] (Microsoft Corporation) O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\setupSNK.exe -- [2004/08/04 00:56:58 | 000,028,672 | ---- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012/06/18 23:55:41 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\OTL.exe [2012/06/18 14:49:42 | 000,000,000 | ---D | C] -- C:\cabs [2012/06/18 14:42:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Access Connections [2012/06/17 22:57:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Identities [2012/06/17 22:57:12 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Music [2012/06/17 22:57:11 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Pictures [2012/06/17 11:54:32 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Administrator\Application Data\Microsoft [2012/06/17 11:54:32 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Administrator\Cookies [2012/06/17 11:54:32 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\SendTo [2012/06/17 11:54:32 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Recent [2012/06/17 11:54:32 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Application Data [2012/06/17 11:54:32 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Startup [2012/06/17 11:54:32 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Start Menu [2012/06/17 11:54:32 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents [2012/06/17 11:54:32 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Favorites [2012/06/17 11:54:32 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Accessories [2012/06/17 11:54:32 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\Templates [2012/06/17 11:54:32 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\PrintHood [2012/06/17 11:54:32 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\NetHood [2012/06/17 11:54:32 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\Local Settings [2012/06/17 11:54:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft [2012/06/17 11:54:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop [2012/05/25 05:40:22 | 000,000,000 | ---D | C] -- C:\FRST [2012/05/24 05:39:42 | 000,000,000 | ---D | C] -- C:\_OTL [2012/05/20 01:14:26 | 004,101,392 | ---- | C] (PC Cleaners) -- C:\WINDOWS\uninst.exe [2012/05/19 23:40:53 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2012/05/19 19:51:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012/06/18 18:57:56 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012/06/18 15:09:00 | 000,000,256 | ---- | M] () -- C:\WINDOWS\tasks\Check Updates for Windows Live Toolbar.job [2012/06/18 14:42:18 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\AccConnAdvanced.html [2012/06/17 22:58:33 | 000,393,740 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012/06/17 22:58:33 | 000,059,516 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012/06/17 22:57:26 | 000,000,779 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [2012/06/17 22:57:25 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf [2012/06/17 22:57:10 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD [2012/06/17 22:55:32 | 000,000,320 | -HS- | M] () -- C:\boot.ini [2012/06/17 11:54:29 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012/06/17 11:54:04 | 000,090,296 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012/06/16 22:46:48 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\OTL.exe [2012/05/26 20:28:41 | 000,000,512 | ---- | M] () -- C:\mbr.zip [2012/05/25 14:32:45 | 000,000,512 | ---- | M] () -- C:\mbr.bin [2012/05/20 15:26:21 | 000,000,443 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics [2012/05/20 01:14:15 | 004,101,392 | ---- | M] (PC Cleaners) -- C:\WINDOWS\uninst.exe [2012/05/19 20:48:59 | 000,000,268 | -H-- | M] () -- C:\sqmdata01.sqm [2012/05/19 20:48:59 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt01.sqm [2012/05/19 20:21:23 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2012/05/19 20:07:54 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2012/05/19 20:00:49 | 000,000,268 | -H-- | M] () -- C:\sqmdata00.sqm [2012/05/19 20:00:49 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt00.sqm [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012/06/18 14:42:25 | 000,004,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\IBMBLDID.sys [2012/06/18 14:42:18 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\AccConnAdvanced.html [2012/06/17 22:57:25 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf [2012/06/17 22:57:15 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Administrator\Start Menu\Programs\Outlook Express.lnk [2012/06/17 22:57:13 | 000,000,779 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [2012/06/17 22:57:13 | 000,000,767 | ---- | C] () -- C:\Documents and Settings\Administrator\Start Menu\Programs\Internet Explorer.lnk [2012/06/17 11:54:32 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\Administrator\Start Menu\Programs\Remote Assistance.lnk [2012/06/17 11:54:32 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\Administrator\Start Menu\Programs\Windows Media Player.lnk [2012/05/26 20:28:41 | 000,000,512 | ---- | C] () -- C:\mbr.zip [2012/05/25 14:32:45 | 000,000,512 | ---- | C] () -- C:\mbr.bin [2012/05/19 20:48:59 | 000,000,268 | -H-- | C] () -- C:\sqmdata01.sqm [2012/05/19 20:48:59 | 000,000,244 | -H-- | C] () -- C:\sqmnoopt01.sqm [2012/05/19 20:00:49 | 000,000,268 | -H-- | C] () -- C:\sqmdata00.sqm [2012/05/19 20:00:49 | 000,000,244 | -H-- | C] () -- C:\sqmnoopt00.sqm [2011/09/06 13:12:23 | 000,163,896 | ---- | C] () -- C:\WINDOWS\sequencer.exe [color=#E56717]========== LOP Check ==========[/color] [2008/07/06 20:29:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters [2012/06/18 15:09:00 | 000,000,256 | ---- | M] () -- C:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job [color=#E56717]========== Purity Check ==========[/color] < End of report >