OK goodnight!
Here's the second OTL log:
OTL logfile created on: 9/3/2009 6:57:54 PM - Run 2
OTL by OldTimer - Version 3.0.10.7 Folder = C:\Documents and Settings\MaryAnn\Desktop\HURR
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
510.00 Mb Total Physical Memory | 314.67 Mb Available Physical Memory | 61.70% Memory free
1.47 Gb Paging File | 1.24 Gb Available in Paging File | 84.45% Paging File free
Paging file location(s): C:\pagefile.sys 1024 1024 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.21 Gb Total Space | 9.41 Gb Free Space | 25.27% Space Free | Partition Type: NTFS
Drive D: | 676.46 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OFFICE
Current User Name: MaryAnn
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
PRC - C:\Program Files\Common Files\AOL\ACS\acsd.exe (America Online, Inc.)
PRC - C:\WINDOWS\System32\HPZipm12.exe (HP)
PRC - C:\WINDOWS\Explorer.EXE (Microsoft Corporation)
PRC - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
PRC - C:\Documents and Settings\MaryAnn\Desktop\HURR\OTL.exe (OldTimer Tools)
========== Win32 Services (SafeList) ========== SRV - (AOL ACS [Auto | Running]) -- C:\Program Files\Common Files\AOL\ACS\acsd.exe (America Online, Inc.)
SRV - (aspnet_state [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (aswUpdSv [Auto | Running]) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
SRV - (avast! Antivirus [Auto | Running]) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
SRV - (avast! Mail Scanner [On_Demand | Running]) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
SRV - (avast! Web Scanner [On_Demand | Running]) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (FontCache3.0.0.0 [On_Demand | Stopped]) -- c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (helpsvc [Auto | Running]) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation)
SRV - (idsvc [Unknown | Stopped]) -- c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation)
SRV - (NetTcpPortSharing [Disabled | Stopped]) -- c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (Pml Driver HPZ12 [Unknown | Running]) -- C:\WINDOWS\System32\HPZipm12.exe (HP)
SRV - (WMPNetworkSvc [On_Demand | Stopped]) -- C:\Program Files\Windows Media Player\WMPNetwk.exe (Microsoft Corporation)
========== Driver Services (SafeList) ========== DRV - (Aavmker4 [System | Running]) -- C:\WINDOWS\System32\drivers\aavmker4.sys (ALWIL Software)
DRV - (aeaudio [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\aeaudio.sys (Andrea Electronics Corporation)
DRV - (AliIde [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (amdagp [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)
DRV - (asc [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\asc.sys (Advanced System Products, Inc.)
DRV - (asc3550 [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)
DRV - (aswFsBlk [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\aswFsBlk.sys (ALWIL Software)
DRV - (aswMon2 [Auto | Running]) -- C:\WINDOWS\System32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswRdr [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswSP [System | Running]) -- C:\WINDOWS\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswTdi [System | Running]) -- C:\WINDOWS\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (bcm4sbxp [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\bcm4sbxp.sys (Broadcom Corporation)
DRV - (CmdIde [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (dac2w2k [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\dac2w2k.sys (Mylex Corporation)
DRV - (EL90XBC [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\el90xbc5.sys (3Com Corporation)
DRV - (GEARAspiWDM [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (hamachi [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\hamachi.sys (LogMeIn, Inc.)
DRV - (i81x [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\i81xnt5.sys (Intel® Corporation)
DRV - (iAimFP0 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wADV01nt.sys (Intel® Corporation)
DRV - (iAimFP1 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wADV02NT.sys (Intel® Corporation)
DRV - (iAimFP2 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wADV05NT.sys (Intel® Corporation)
DRV - (iAimFP3 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wSiINTxx.sys (Intel® Corporation)
DRV - (iAimFP4 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wVchNTxx.sys (Intel® Corporation)
DRV - (iAimTV0 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wATV01nt.sys (Intel® Corporation)
DRV - (iAimTV1 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wATV02NT.sys (Intel® Corporation)
DRV - (iAimTV3 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wATV04nt.sys (Intel® Corporation)
DRV - (iAimTV4 [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\wCh7xxNT.sys (Intel® Corporation)
DRV - (ialm [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\ialmnt5.sys (Intel Corporation)
DRV - (IntelC51 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\IntelC51.sys (Intel Corporation)
DRV - (IntelC52 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\IntelC52.sys (Intel Corporation)
DRV - (IntelC53 [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\IntelC53.sys (Intel Corporation)
DRV - (MODEMCSA [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\MODEMCSA.sys (Microsoft Corporation)
DRV - (mohfilt [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\mohfilt.sys (Intel Corporation)
DRV - (mraid35x [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\mraid35x.sys (American Megatrends Inc.)
DRV - (MxlW2k [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\MxlW2k.sys (MusicMatch, Inc.)
DRV - (nv [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\nv4_mini.sys (NVIDIA Corporation)
DRV - (NwlnkIpx [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\nwlnkipx.sys (Microsoft Corporation)
DRV - (NwlnkNb [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\nwlnknb.sys (Microsoft Corporation)
DRV - (NwlnkSpx [Auto | Running]) -- C:\WINDOWS\System32\DRIVERS\nwlnkspx.sys (Microsoft Corporation)
DRV - (omci [System | Running]) -- C:\WINDOWS\System32\DRIVERS\omci.sys (Dell Computer Corporation)
DRV - (Ptilink [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.)
DRV - (PxHelp20 [Boot | Running]) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (ql1080 [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\ql1080.sys (QLogic Corporation)
DRV - (ql12160 [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\ql12160.sys (QLogic Corporation)
DRV - (ql1280 [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\ql1280.sys (QLogic Corporation)
DRV - (Secdrv [On_Demand | Stopped]) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (sisagp [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)
DRV - (smwdm [On_Demand | Running]) -- C:\WINDOWS\System32\drivers\smwdm.sys (Analog Devices, Inc.)
DRV - (Sparrow [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\sparrow.sys (Adaptec, Inc.)
DRV - (symc810 [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\symc810.sys (Symbios Logic Inc.)
DRV - (symc8xx [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\symc8xx.sys (LSI Logic)
DRV - (sym_hi [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\sym_hi.sys (LSI Logic)
DRV - (sym_u3 [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\sym_u3.sys (LSI Logic)
DRV - (ultra [Disabled | Stopped]) -- C:\WINDOWS\System32\DRIVERS\ultra.sys (Promise Technology, Inc.)
DRV - (wanatw [On_Demand | Running]) -- C:\WINDOWS\System32\DRIVERS\wanatw4.sys (America Online, Inc.)
DRV - ({6080A529-897E-4629-A488-ABA0C29B635E} [On_Demand | Stopped]) -- C:\WINDOWS\System32\drivers\ialmsbw.sys (Intel Corporation)
DRV - ({D31A0762-0CEB-444e-ACFF-B049A1F6FE91} [On_Demand | Stopped]) -- C:\WINDOWS\System32\drivers\ialmkchw.sys (Intel Corporation)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://ie.search.msn...st/srchcust.htmIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn...st/srchasst.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell4me.com/mywayIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft...amp;ar=iesearchIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages =
http://www.aol.com/puccini/start [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.theprizeday.com/today.phpIE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.defaulturl: "
http://search.yahoo....r=ytff-divx&p="FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "
http://www.theprizeday.com/today.php|http://en-US.start2.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:en-US:official\n"FF - prefs.js..extensions.enabledItems: {9AA46F4F-4DC7-4c06-97AF-5035170633FE}:0.4.5.14
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.1
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20090123.1
FF - prefs.js..extensions.enabledItems: {81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}:6.2.4.0
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:0.0.0
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0
FF - prefs.js..extensions.enabledItems: {3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}:0.8.17
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.2
FF - prefs.js..extensions.enabledItems: {de5809e0-2b07-11dd-bd0b-0800200c9a66}:1.0.9
FF - prefs.js..extensions.enabledItems:
[email protected]:0.6.20090630
FF - prefs.js..keyword.URL: "
http://search.yahoo....r=ytff-divx&p=" FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/08/28 12:13:45 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Program Files\Real\RealPlayer\browserrecord\firefox\ext [2009/08/31 19:07:28 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/08/31 19:07:18 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/09/02 15:32:50 | 00,000,000 | ---D | M]
[2008/06/20 17:19:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Extensions
[2008/06/20 17:19:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/09/03 18:18:26 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Firefox\Profiles\bdra0wcb.default\extensions
[2009/04/12 22:53:34 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Firefox\Profiles\bdra0wcb.default\extensions\{3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}
[2009/08/05 20:23:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Firefox\Profiles\bdra0wcb.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2009/08/05 20:23:21 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Firefox\Profiles\bdra0wcb.default\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170633FE}
[2009/08/13 12:45:06 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Firefox\Profiles\bdra0wcb.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2009/08/27 14:55:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Firefox\Profiles\bdra0wcb.default\extensions\{de5809e0-2b07-11dd-bd0b-0800200c9a66}
[2009/08/28 19:31:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Firefox\Profiles\bdra0wcb.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2009/08/27 14:52:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\mozilla\Firefox\Profiles\bdra0wcb.default\extensions\
[email protected][2009/04/15 22:56:01 | 00,002,042 | ---- | M] () -- C:\Documents and Settings\MaryAnn\Application Data\Mozilla\FireFox\Profiles\bdra0wcb.default\searchplugins\facebook.xml
[2009/09/03 18:28:27 | 00,004,868 | ---- | M] () -- C:\Documents and Settings\MaryAnn\Application Data\Mozilla\FireFox\Profiles\bdra0wcb.default\searchplugins\isohunt---bt-search.xml
[2009/09/02 15:45:06 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/08/27 14:49:58 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/08/27 14:49:41 | 00,023,544 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/08/27 14:49:41 | 00,137,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009/02/24 15:34:32 | 01,044,480 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) -- C:\Program Files\mozilla firefox\plugins\libdivx.dll
[2009/02/24 15:34:14 | 01,337,648 | ---- | M] (DivX,Inc.) -- C:\Program Files\mozilla firefox\plugins\npdivx32.dll
[2009/02/24 15:34:22 | 00,098,304 | ---- | M] (DivX, Inc) -- C:\Program Files\mozilla firefox\plugins\npDivxPlayerPlugin.dll
[2008/06/27 17:03:12 | 01,446,440 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll
[2009/08/27 14:49:48 | 00,065,016 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll
[2009/02/27 12:13:42 | 00,103,792 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll
[2009/08/31 19:07:18 | 00,140,864 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nppl3260.dll
[2009/02/20 14:34:15 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll
[2009/02/20 14:34:15 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll
[2009/02/20 14:34:15 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll
[2009/02/20 14:34:15 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll
[2009/02/20 14:34:15 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll
[2009/02/20 14:34:15 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll
[2009/02/20 14:34:15 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll
[2009/08/31 19:07:34 | 00,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nprjplug.dll
[2009/08/31 19:07:15 | 00,094,208 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nprpjplug.dll
[2009/02/24 15:34:32 | 00,200,704 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) -- C:\Program Files\mozilla firefox\plugins\ssldivx.dll
[2009/08/27 14:49:50 | 00,001,394 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom.xml
[2009/08/27 14:49:50 | 00,002,193 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\answers.xml
[2009/08/27 14:49:50 | 00,001,534 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons.xml
[2009/08/27 14:49:50 | 00,002,344 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay.xml
[2009/08/27 14:49:50 | 00,002,371 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2009/08/27 14:49:50 | 00,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia.xml
[2009/08/27 14:49:50 | 00,000,792 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo.xml
O1 HOSTS File: (734 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
O9 - Extra Button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - File not found
O9 - Extra Button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - File not found
O9 - Extra Button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - File not found
O9 - Extra Button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe (America Online, Inc.)
O9 - Extra Button: Fiddler2 - {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - C:\Program Files\Fiddler2\Fiddler.exe (Eric Lawrence)
O9 - Extra 'Tools' menuitem : Fiddler2 - {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - C:\Program Files\Fiddler2\Fiddler.exe (Eric Lawrence)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKCU\..Trusted Domains: ([]msn in My Computer)
O15 - HKCU\..Trusted Domains: adecco.com ([.xpert] https in Trusted sites)
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKCU\..Trusted Domains: 2 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.4.2)
O16 - DPF: {CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.4.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://download.macr...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2002/09/03 10:59:58 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [1999/01/19 07:37:14 | 02,119,160 | R--- | M] () - D:\AUTOPLAY.WAV -- [ CDFS ]
O32 - AutoRun File - [1999/07/16 11:54:52 | 00,532,480 | R--- | M] () - D:\AUTORUN.EXE -- [ CDFS ]
O32 - AutoRun File - [1999/06/07 14:03:14 | 00,000,133 | R--- | M] () - D:\AUTORUN.INF -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
========== Files/Folders - Created Within 30 Days ========== [2009/09/02 18:59:24 | 00,003,584 | ---- | C] () -- C:\Documents and Settings\MaryAnn\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/09/02 15:52:23 | 00,081,920 | ---- | C] () -- C:\WINDOWS\System32\Startup.cpl
[2009/09/02 15:34:57 | 00,000,000 | ---D | C] -- C:\_OTL
[2009/09/01 00:31:01 | 06,291,456 | -H-- | C] () -- C:\Documents and Settings\MaryAnn\Local Settings\Application Data\IconCache.db
[2009/08/31 19:08:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google
[2009/08/31 19:08:07 | 00,000,000 | ---D | C] -- C:\Documents and Settings\MaryAnn\Local Settings\Application Data\Real
[2009/08/31 19:07:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Real
[2009/08/31 19:07:18 | 00,185,920 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\rmoc3260.dll
[2009/08/31 19:07:11 | 00,006,656 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5016.dll
[2009/08/31 19:07:11 | 00,005,632 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5032.dll
[2009/08/31 19:07:09 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\xing shared
[2009/08/31 19:06:45 | 00,000,000 | ---D | C] -- C:\Program Files\Real
[2009/08/31 19:04:04 | 00,000,000 | ---D | C] -- C:\Program Files\Google
[2009/08/28 11:53:43 | 01,089,593 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntprint.cat
[2009/08/27 18:46:59 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2009/08/27 18:46:53 | 00,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2009/08/27 18:46:40 | 00,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2009/08/27 17:03:40 | 00,023,152 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2009/08/27 17:03:39 | 00,051,376 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2009/08/27 17:03:38 | 00,026,944 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2009/08/27 17:03:36 | 00,097,480 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\AvastSS.scr
[2009/08/27 17:03:36 | 00,020,560 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2009/08/27 17:03:35 | 00,114,768 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2009/08/27 17:03:35 | 00,094,160 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2009/08/27 17:03:35 | 00,093,392 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2009/08/27 17:03:18 | 01,279,456 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe
[2009/08/27 17:03:18 | 00,380,928 | ---- | C] () -- C:\WINDOWS\System32\actskin4.ocx
[2009/08/27 17:03:15 | 00,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2009/08/27 16:32:30 | 00,000,000 | ---D | C] -- C:\Documents and Settings\MaryAnn\Application Data\Malwarebytes
[2009/08/27 16:32:25 | 00,038,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/08/27 16:32:24 | 00,019,096 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/08/27 16:32:24 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/08/27 16:32:24 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2009/08/27 16:30:46 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2009/08/27 16:30:14 | 00,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2009/08/27 15:27:13 | 00,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2009/08/21 13:39:31 | 00,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prntvpt.dll
[2009/08/21 13:39:31 | 00,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll
[2009/08/21 13:39:30 | 01,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpssvcs.dll
[2009/08/21 13:39:30 | 01,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll
[2009/08/21 13:39:30 | 00,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe
[2009/08/21 13:39:30 | 00,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpsshhdr.dll
[2009/08/21 13:39:30 | 00,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll
[2009/08/21 13:39:30 | 00,000,000 | ---D | C] -- C:\5ebc344fcf9d2289a15da4a0e2f27b
[2009/08/21 13:19:32 | 00,000,000 | ---D | C] -- C:\3ed901e8d4ad741e8056109bd976ed
[2009/08/20 15:48:11 | 53,484,3392 | -HS- | C] () -- C:\hiberfil.sys
[2009/08/20 14:30:17 | 00,000,000 | ---D | C] -- C:\WINDOWS\pss
[2009/08/20 11:25:30 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\N360_BACKUP
[2009/08/20 08:22:40 | 00,000,000 | ---D | C] -- C:\Documents and Settings\MaryAnn\Local Settings\Application Data\Symantec
[2009/08/20 00:47:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\MaryAnn\My Documents\Symantec
[2009/08/20 00:42:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{7B6BA59A-FB0E-4499-8536-A7420338BF3B}
[2009/08/20 00:42:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\MaryAnn\Local Settings\Application Data\Downloaded Installations
[2009/08/19 21:45:59 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
[2009/08/19 21:30:03 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Norton
[2009/08/19 21:29:57 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
[2009/08/17 20:35:11 | 00,033,456 | ---- | C] () -- C:\Documents and Settings\MaryAnn\My Documents\meninblack.jpg
[2009/08/13 13:27:48 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2009/08/13 13:27:48 | 00,000,000 | ---D | C] -- C:\Program Files\Adobe
[2009/08/13 13:26:07 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2009/08/13 13:24:41 | 00,000,000 | ---D | C] -- C:\Program Files\NOS
[2009/08/13 13:24:41 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NOS
[2009/08/13 01:37:18 | 00,128,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dhtmled.ocx
[2009/08/13 01:37:13 | 01,315,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoe.dll
[2009/08/05 05:01:48 | 00,204,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mswebdvd.dll
[2008/06/23 14:01:48 | 00,000,025 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2008/06/22 20:06:14 | 00,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2006/05/16 02:25:43 | 00,077,824 | ---- | C] () -- C:\WINDOWS\System32\hpzids01.dll
[2004/03/29 15:01:30 | 00,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2004/03/29 15:01:27 | 00,000,000 | ---- | C] () -- C:\WINDOWS\NSREX.INI
[2004/03/29 10:54:54 | 00,017,920 | ---- | C] () -- C:\WINDOWS\System32\IMPLODE.DLL
[2004/03/22 15:14:57 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2004/03/22 15:03:38 | 00,000,258 | ---- | C] () -- C:\WINDOWS\System32\BDEMERGE.INI
[2004/03/22 14:56:46 | 00,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2004/03/22 14:40:38 | 00,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004/03/22 14:28:10 | 00,000,550 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2002/09/03 10:59:58 | 00,000,692 | ---- | C] () -- C:\WINDOWS\WIN.INI
[2002/09/03 10:50:58 | 00,000,227 | ---- | C] () -- C:\WINDOWS\SYSTEM.INI
[1999/01/22 14:46:58 | 00,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
========== Files - Modified Within 30 Days ========== [2009/09/03 18:49:02 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/09/03 18:48:56 | 00,002,048 | --S- | M] () -- C:\WINDOWS\BOOTSTAT.DAT
[2009/09/03 18:48:55 | 53,484,3392 | -HS- | M] () -- C:\hiberfil.sys
[2009/09/03 14:32:55 | 06,291,456 | -H-- | M] () -- C:\Documents and Settings\MaryAnn\Local Settings\Application Data\IconCache.db
[2009/09/02 18:59:24 | 00,003,584 | ---- | M] () -- C:\Documents and Settings\MaryAnn\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/08/31 19:07:18 | 00,185,920 | ---- | M] (RealNetworks, Inc.) -- C:\WINDOWS\System32\rmoc3260.dll
[2009/08/31 19:07:11 | 00,006,656 | ---- | M] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5016.dll
[2009/08/31 19:07:11 | 00,005,632 | ---- | M] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5032.dll
[2009/08/31 19:06:44 | 00,278,528 | ---- | M] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2009/08/27 19:57:13 | 00,020,992 | ---- | M] () -- C:\Documents and Settings\MaryAnn\My Documents\William Webster-Resume.doc
[2009/08/27 19:01:13 | 00,045,224 | ---- | M] () -- C:\Documents and Settings\MaryAnn\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2009/08/27 18:59:05 | 00,189,792 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/08/27 18:54:35 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009/08/27 18:52:18 | 00,543,382 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/08/27 18:52:18 | 00,470,760 | ---- | M] () -- C:\WINDOWS\System32\PERFH009.DAT
[2009/08/27 18:52:18 | 00,082,928 | ---- | M] () -- C:\WINDOWS\System32\PERFC009.DAT
[2009/08/27 18:40:09 | 00,001,170 | ---- | M] () -- C:\WINDOWS\System32\WPA.DBL
[2009/08/27 17:03:35 | 00,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2009/08/20 15:47:08 | 00,000,692 | ---- | M] () -- C:\WINDOWS\WIN.INI
[2009/08/20 15:47:08 | 00,000,227 | ---- | M] () -- C:\WINDOWS\SYSTEM.INI
[2009/08/20 15:47:08 | 00,000,211 | RHS- | M] () -- C:\BOOT.INI
[2009/08/17 20:35:12 | 00,033,456 | ---- | M] () -- C:\Documents and Settings\MaryAnn\My Documents\meninblack.jpg
[2009/08/17 12:10:20 | 01,279,456 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe
[2009/08/17 12:06:54 | 00,093,392 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2009/08/17 12:06:43 | 00,094,160 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2009/08/17 12:05:52 | 00,114,768 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2009/08/17 12:05:37 | 00,020,560 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2009/08/17 12:04:40 | 00,051,376 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2009/08/17 12:04:29 | 00,023,152 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2009/08/17 12:03:21 | 00,026,944 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2009/08/17 12:02:50 | 00,097,480 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\AvastSS.scr
[2009/08/05 05:01:48 | 00,204,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mswebdvd.dll
[2009/08/05 05:01:48 | 00,204,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mswebdvd.dll
========== LOP Check ========== [2009/08/31 19:08:51 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\All Users\Application Data
[2009/03/16 15:33:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[2009/08/20 16:41:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{7B6BA59A-FB0E-4499-8536-A7420338BF3B}
[2009/05/25 14:50:13 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2008/07/21 08:35:17 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\acccore
[2004/03/22 15:06:38 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Dell
[2009/08/19 21:45:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
[2004/04/07 14:09:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MSN6
[2009/08/20 16:41:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Norton
[2009/09/02 15:25:42 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
[2004/03/22 14:57:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SBSI
[2008/06/20 17:10:25 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Support.com
[2009/09/02 15:32:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2009/09/02 15:26:41 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\MaryAnn\Application Data
[2008/07/21 08:35:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\acccore
[2008/07/21 08:39:16 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\Aim
[2008/07/23 21:46:19 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\Command & Conquer 3 Kane's Wrath
[2004/10/26 13:44:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\COREL
[2009/09/02 15:44:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\Dropbox
[2009/05/30 15:00:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\Hamachi
[2008/06/20 16:32:12 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\MSN6
[2009/09/02 13:05:20 | 00,000,000 | ---D | M] -- C:\Documents and Settings\MaryAnn\Application Data\uTorrent
[2002/08/29 07:00:00 | 00,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\DESKTOP.INI
[2009/09/03 18:49:02 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT
========== Purity Check ========== ========== Custom Scans ========== < %SYSTEMDRIVE%\*. >[2009/08/31 17:08:21 | 00,000,000 | ---D | M] -- C:
[2009/09/02 15:34:57 | 00,000,000 | ---D | M] -- C:\_OTL
[2009/08/21 13:19:34 | 00,000,000 | ---D | M] -- C:\3ed901e8d4ad741e8056109bd976ed
[2009/08/21 13:39:49 | 00,000,000 | ---D | M] -- C:\5ebc344fcf9d2289a15da4a0e2f27b
[2009/08/28 12:14:00 | 00,000,000 | -H-D | M] -- C:\Config.Msi
[2004/03/29 10:47:14 | 00,000,000 | ---D | M] -- C:\DELL
[2009/08/20 14:41:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings
[2004/03/22 14:26:26 | 00,000,000 | ---D | M] -- C:\DRIVERS
[2008/12/09 21:28:32 | 00,000,000 | ---D | M] -- C:\DVDVideoSoft
[2008/03/11 15:12:04 | 00,000,000 | ---D | M] -- C:\GALAXY
[2009/08/20 15:58:01 | 00,000,000 | ---D | M] -- C:\install
[2004/03/22 15:02:08 | 00,000,000 | ---D | M] -- C:\My Music
[2009/09/03 14:33:40 | 00,000,000 | R--D | M] -- C:\Program Files
[2004/03/29 16:33:03 | 00,000,000 | -HSD | M] -- C:\RECYCLER
[2009/08/21 09:46:09 | 00,000,000 | -HSD | M] -- C:\System Volume Information
[2008/07/23 21:23:38 | 00,000,000 | ---D | M] -- C:\TEMP
[2006/09/24 20:07:38 | 00,000,000 | ---D | M] -- C:\UPS
[2008/07/24 00:14:48 | 00,000,000 | ---D | M] -- C:\UT2004
[2009/03/12 16:23:00 | 00,000,000 | ---D | M] -- C:\Westwood
[2009/09/02 16:11:30 | 00,000,000 | ---D | M] -- C:\WINDOWS
[2004/05/26 17:44:07 | 00,000,000 | ---D | M] -- C:\WUTemp
< %PROGRAMFILES%\*. >[2009/09/03 14:33:40 | 00,000,000 | R--D | M] -- C:\Program Files
[2009/08/13 13:29:18 | 00,000,000 | ---D | M] -- C:\Program Files\Adobe
[2008/07/21 08:39:12 | 00,000,000 | ---D | M] -- C:\Program Files\AIM
[2009/08/27 17:03:15 | 00,000,000 | ---D | M] -- C:\Program Files\Alwil Software
[2008/07/21 08:38:44 | 00,000,000 | ---D | M] -- C:\Program Files\AOD
[2009/08/19 21:33:02 | 00,000,000 | ---D | M] -- C:\Program Files\AOL
[2009/06/01 19:53:28 | 00,000,000 | ---D | M] -- C:\Program Files\Audiosurf
[2009/09/02 15:26:45 | 00,000,000 | ---D | M] -- C:\Program Files\Common Files
[2004/03/22 14:26:34 | 00,000,000 | ---D | M] -- C:\Program Files\ComPlus Applications
[2004/03/22 15:08:08 | 00,000,000 | ---D | M] -- C:\Program Files\Dell
[2004/03/22 15:09:19 | 00,000,000 | ---D | M] -- C:\Program Files\Dell Computer
[2009/06/01 19:15:21 | 00,000,000 | ---D | M] -- C:\Program Files\DivX
[2008/06/30 16:31:06 | 00,000,000 | ---D | M] -- C:\Program Files\DVDVideoSoft
[2008/08/01 15:40:41 | 00,000,000 | ---D | M] -- C:\Program Files\EA Games
[2004/03/22 15:04:02 | 00,000,000 | ---D | M] -- C:\Program Files\EarthLink Setup
[2008/08/01 16:57:20 | 00,000,000 | ---D | M] -- C:\Program Files\Electronic Arts
[2004/12/22 10:44:01 | 00,000,000 | ---D | M] -- C:\Program Files\Electronic Innovations
[2009/08/27 16:30:21 | 00,000,000 | ---D | M] -- C:\Program Files\ERUNT
[2009/06/01 19:09:17 | 00,000,000 | ---D | M] -- C:\Program Files\Fiddler2
[2009/08/31 19:08:51 | 00,000,000 | ---D | M] -- C:\Program Files\Google
[2004/05/27 11:44:44 | 00,000,000 | ---D | M] -- C:\Program Files\HighMAT CD Writing Wizard
[2008/08/26 12:41:36 | 00,000,000 | ---D | M] -- C:\Program Files\HP
[2008/08/01 15:40:41 | 00,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2004/03/22 15:00:00 | 00,000,000 | ---D | M] -- C:\Program Files\Intel
[2009/08/27 18:43:35 | 00,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2004/03/22 15:09:57 | 00,000,000 | ---D | M] -- C:\Program Files\Jasc Software Inc
[2004/03/22 14:49:11 | 00,000,000 | ---D | M] -- C:\Program Files\Java
[2009/08/27 16:32:29 | 00,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2008/08/14 02:50:22 | 00,000,000 | ---D | M] -- C:\Program Files\Messenger
[2004/03/22 15:04:09 | 00,000,000 | ---D | M] -- C:\Program Files\Microsoft Encarta
[2004/03/29 14:54:48 | 00,000,000 | ---D | M] -- C:\Program Files\microsoft frontpage
[2004/03/22 15:05:07 | 00,000,000 | ---D | M] -- C:\Program Files\Microsoft Money
[2004/03/29 14:55:00 | 00,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2009/08/20 08:15:44 | 00,000,000 | ---D | M] -- C:\Program Files\Microsoft Silverlight
[2004/03/29 15:00:11 | 00,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio
[2004/03/22 14:59:54 | 00,000,000 | ---D | M] -- C:\Program Files\Modem Helper
[2004/03/22 15:00:07 | 00,000,000 | ---D | M] -- C:\Program Files\Modem On Hold
[2008/06/22 22:58:08 | 00,000,000 | ---D | M] -- C:\Program Files\Movie Maker
[2009/03/03 14:42:17 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla ActiveX Control v1.7.12
[2009/09/03 18:53:38 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox
[2009/08/27 18:46:53 | 00,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2004/03/22 14:26:30 | 00,000,000 | ---D | M] -- C:\Program Files\MSN
[2004/03/22 14:26:32 | 00,000,000 | ---D | M] -- C:\Program Files\MSN Gaming Zone
[2008/06/26 00:38:20 | 00,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0
[2004/03/22 15:07:38 | 00,000,000 | ---D | M] -- C:\Program Files\MUSICMATCH
[2008/06/22 22:53:42 | 00,000,000 | ---D | M] -- C:\Program Files\NetMeeting
[2004/03/29 14:32:22 | 00,000,000 | ---D | M] -- C:\Program Files\New Folder
[2009/08/13 18:46:15 | 00,000,000 | ---D | M] -- C:\Program Files\NOS
[2004/03/22 14:26:34 | 00,000,000 | ---D | M] -- C:\Program Files\Online Services
[2009/08/13 02:10:25 | 00,000,000 | ---D | M] -- C:\Program Files\Outlook Express
[2009/02/20 14:34:15 | 00,000,000 | ---D | M] -- C:\Program Files\QuickTime
[2009/08/31 19:06:45 | 00,000,000 | ---D | M] -- C:\Program Files\Real
[2009/08/27 18:46:40 | 00,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies
[2004/03/29 14:58:09 | 00,000,000 | ---D | M] -- C:\Program Files\Snapshot Viewer
[2009/09/02 15:44:22 | 00,000,000 | ---D | M] -- C:\Program Files\Steam
[2008/06/20 17:13:06 | 00,000,000 | ---D | M] -- C:\Program Files\support.com
[2009/08/27 15:27:13 | 00,000,000 | ---D | M] -- C:\Program Files\Trend Micro
[2008/06/20 16:17:13 | 00,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2008/06/22 19:55:02 | 00,000,000 | ---D | M] -- C:\Program Files\uTorrent
[2009/03/03 14:41:40 | 00,000,000 | ---D | M] -- C:\Program Files\VideoLAN
[2009/09/02 15:32:47 | 00,000,000 | ---D | M] -- C:\Program Files\Viewpoint
[2004/05/27 11:49:52 | 00,000,000 | ---D | M] -- C:\Program Files\Windows Journal Viewer
[2008/06/23 01:54:37 | 00,000,000 | ---D | M] -- C:\Program Files\Windows Media Connect 2
[2008/06/23 01:54:34 | 00,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2008/06/22 22:53:17 | 00,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2008/06/22 16:54:25 | 00,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate
[2008/07/23 21:43:10 | 00,000,000 | ---D | M] -- C:\Program Files\WinRAR
[2004/03/22 15:03:31 | 00,000,000 | ---D | M] -- C:\Program Files\WordPerfect Office 11
[2004/03/22 14:26:34 | 00,000,000 | ---D | M] -- C:\Program Files\XEROX
[2004/03/22 15:13:27 | 00,000,000 | ---D | M] -- C:\Program Files\Your Company Name
< End of report >