And here's the OTL log. Looking forward to getting the green light!
OTL logfile created on: 10/01/2010 19:22:31 - Run 2
OTL by OldTimer - Version 3.1.20.1 Folder = C:\Users\Asma\Desktop
Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6000.16764)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
1,021.00 Mb Total Physical Memory | 133.00 Mb Available Physical Memory | 13.00% Memory free
2.00 Gb Paging File | 1.00 Gb Available in Paging File | 53.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 106.53 Gb Total Space | 27.07 Gb Free Space | 25.41% Space Free | Partition Type: NTFS
Drive D: | 5.26 Gb Total Space | 1.14 Gb Free Space | 21.59% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ASMA-LAPTOP
Current User Name: Asma
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Processes (SafeList) ========== PRC - [2010/01/06 19:35:39 | 02,002,160 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
PRC - [2010/01/01 02:51:02 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\Users\Asma\Desktop\OTL.exe
PRC - [2009/11/24 23:51:40 | 00,081,000 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe
PRC - [2009/11/24 23:51:35 | 00,138,680 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe
PRC - [2009/11/24 23:43:56 | 00,018,752 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
PRC - [2009/10/16 20:13:04 | 00,908,280 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2008/12/04 02:42:00 | 00,203,296 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe
PRC - [2008/10/29 06:20:29 | 02,923,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/03/28 02:06:00 | 00,095,528 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
PRC - [2008/03/28 02:05:00 | 01,045,800 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PRC - [2008/02/18 11:16:30 | 00,110,592 | ---- | M] (Apple, Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2007/08/07 19:30:21 | 01,006,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe
PRC - [2007/07/24 15:17:08 | 00,229,376 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe
PRC - [2007/04/26 11:01:46 | 00,537,520 | ---- | M] ( ) -- C:\Windows\System32\lxbkcoms.exe
PRC - [2006/11/24 23:34:20 | 00,118,877 | ---- | M] () -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
PRC - [2006/11/24 23:34:16 | 00,270,431 | ---- | M] () -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
PRC - [2006/11/03 16:55:50 | 00,703,280 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2006/11/03 16:55:48 | 01,583,920 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
PRC - [2006/10/19 21:52:24 | 00,061,440 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2006/06/27 16:21:14 | 01,449,984 | ---- | M] (Time Information Services Ltd.) -- C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
PRC - [2006/06/09 10:37:18 | 00,471,552 | ---- | M] (Nokia Corporation) -- C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
PRC - [2006/06/05 13:59:18 | 00,174,080 | ---- | M] (Nokia.) -- C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
PRC - [2006/05/02 22:41:28 | 00,135,168 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
========== Modules (SafeList) ========== MOD - [2010/01/01 02:51:02 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\Users\Asma\Desktop\OTL.exe
MOD - [2006/11/03 16:46:24 | 00,126,976 | ---- | M] () -- C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
MOD - [2006/11/02 09:38:57 | 01,648,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll
========== Win32 Services (SafeList) ========== SRV - [2009/11/24 23:51:35 | 00,138,680 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast4\ashServ.exe -- (avast! Antivirus)
SRV - [2009/11/24 23:51:21 | 00,254,040 | ---- | M] (ALWIL Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe -- (avast! Mail Scanner)
SRV - [2009/11/24 23:48:48 | 00,352,920 | ---- | M] (ALWIL Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe -- (avast! Web Scanner)
SRV - [2009/11/24 23:43:56 | 00,018,752 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv)
SRV - [2008/12/04 02:42:00 | 00,203,296 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Windows\System32\nvvsvc.exe -- (nvsvc)
SRV - [2008/02/19 13:10:24 | 00,504,104 | ---- | M] (Apple Inc.) [On_Demand | Stopped] -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service)
SRV - [2008/02/18 11:16:30 | 00,110,592 | ---- | M] (Apple, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2007/08/07 19:30:20 | 00,265,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/07/24 15:17:08 | 00,229,376 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service)
SRV - [2007/04/26 11:01:46 | 00,537,520 | ---- | M] ( ) [Auto | Running] -- C:\Windows\System32\lxbkcoms.exe -- (lxbk_device)
SRV - [2006/11/28 22:10:12 | 00,063,080 | ---- | M] (Hewlett-Packard) [Disabled | Stopped] -- C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe -- (HP Health Check Service)
SRV - [2006/11/24 23:34:20 | 00,118,877 | ---- | M] () [Auto | Running] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe -- (CLSched) CyberLink Task Scheduler (CTS)
SRV - [2006/11/24 23:34:16 | 00,270,431 | ---- | M] () [Auto | Running] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe -- (CLCapSvc) CyberLink Background Capture Service (CBCS)
SRV - [2006/11/06 21:31:14 | 00,887,544 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe -- (RoxMediaDB9)
SRV - [2006/11/02 12:35:29 | 00,013,312 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\ehome\ehstart.dll -- (ehstart)
SRV - [2006/11/01 19:17:32 | 00,073,728 | R--- | M] (MicroVision Development, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\SureThing Shared\stllssvr.exe -- (stllssvr)
SRV - [2006/10/19 21:52:24 | 00,061,440 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService)
SRV - [2006/08/04 17:39:20 | 00,386,560 | ---- | M] (Conexant Systems, Inc.) [Auto | Stopped] -- C:\Windows\System32\drivers\XAudio.exe -- (XAudioService)
SRV - [2006/06/26 17:50:08 | 00,126,976 | ---- | M] (Hewlett-Packard Development Company, L.P.) [On_Demand | Stopped] -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe -- (AddFiltr)
SRV - [2006/06/05 13:59:18 | 00,174,080 | ---- | M] (Nokia.) [On_Demand | Running] -- C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe -- (ServiceLayer)
SRV - [2006/05/02 22:41:28 | 00,135,168 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe -- (hpqwmiex)
SRV - [2004/10/22 11:24:18 | 00,073,728 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe -- (IDriverT)
SRV - [2003/07/28 11:28:22 | 00,089,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.h...a...n&pf=laptop IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.co.uk
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.startup.homepage: "
http://www.google.co...en-US:official"FF - prefs.js..keyword.URL: "
http://www.google.co...eling Lucky&q=" FF - HKLM\software\mozilla\Mozilla Firefox 3.5.4\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/11/06 22:48:16 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.4\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/11/02 21:03:11 | 00,000,000 | ---D | M]
[2008/10/27 11:29:52 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Mozilla\Extensions
[2007/07/25 00:01:00 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Mozilla\Firefox\Profiles\u0j7g3rn.default\extensions
[2009/12/27 13:56:27 | 00,002,443 | ---- | M] () -- C:\Users\Asma\AppData\Roaming\Mozilla\Firefox\Profiles\u0j7g3rn.default\searchplugins\youtube---videos.xml
[2010/01/09 20:00:44 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2007/09/02 10:45:55 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}
[2009/11/02 21:02:01 | 00,075,208 | ---- | M] (Foxit Software Company) -- C:\Program Files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll
[2009/10/16 18:18:41 | 00,001,538 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2009/10/16 18:18:41 | 00,000,947 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2009/10/16 18:18:41 | 00,000,769 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2009/10/16 18:18:41 | 00,000,831 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: (806 bytes) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O4 - HKCU..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKCU..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
O4 - HKLM..\RunOnce: [Launcher] C:\Windows\SMINST\Launcher.exe (soft thinks)
O4 - Startup: C:\Users\Asma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SynTPEnh - Shortcut.lnk = C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe ()
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499}
http://download.bitd...can8/oscan8.cab (BDSCANONLINE Control)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5}
http://download.eset...lineScanner.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 21:43:36 | 00,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*
========== Files/Folders - Created Within 14 Days ========== [2010/01/10 19:11:39 | 00,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2010/01/10 19:11:33 | 00,000,000 | ---D | C] -- C:\Windows\temp
[2010/01/10 18:59:36 | 00,000,000 | ---D | C] -- C:\32788R22FWJFW
[2010/01/09 10:26:21 | 00,000,000 | ---D | C] -- C:\Users\Asma\DoctorWeb
[2010/01/07 23:47:13 | 00,137,480 | ---- | C] (Kaspersky Lab) -- C:\Users\Asma\Desktop\TDSSKiller.exe
[2010/01/07 22:31:12 | 00,000,000 | ---D | C] -- C:\_OTM
[2010/01/07 22:24:54 | 00,452,096 | ---- | C] (OldTimer Tools) -- C:\Users\Asma\Desktop\OTM.exe
[2010/01/06 19:12:42 | 00,410,624 | ---- | C] (OldTimer Tools) -- C:\Users\Asma\Desktop\TFC.exe
[2010/01/04 19:10:29 | 00,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2010/01/04 19:10:29 | 00,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2010/01/04 19:10:29 | 00,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2010/01/04 19:10:29 | 00,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2010/01/04 19:10:13 | 00,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010/01/04 19:09:38 | 00,000,000 | ---D | C] -- C:\Qoobox
[2010/01/03 22:21:53 | 00,000,000 | ---D | C] -- C:\_OTL
[2010/01/01 02:51:00 | 00,513,536 | ---- | C] (OldTimer Tools) -- C:\Users\Asma\Desktop\OTL.exe
[2009/12/31 23:25:50 | 00,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2009/12/31 23:24:23 | 00,000,000 | ---D | C] -- C:\Users\Asma\AppData\Roaming\SUPERAntiSpyware.com
[2009/12/31 23:24:23 | 00,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2009/12/31 23:23:09 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2009/12/31 21:32:11 | 00,023,120 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2009/12/31 21:32:10 | 00,048,560 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2009/12/31 21:32:08 | 00,097,480 | ---- | C] (ALWIL Software) -- C:\Windows\System32\AvastSS.scr
[2009/12/31 21:32:07 | 00,114,768 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswSP.sys
[2009/12/31 21:32:07 | 00,020,560 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2009/12/31 21:31:44 | 01,280,480 | ---- | C] (ALWIL Software) -- C:\Windows\System32\aswBoot.exe
[2009/12/31 21:31:44 | 00,053,328 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2009/12/31 21:31:37 | 00,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2009/12/31 20:06:40 | 00,000,000 | ---D | C] -- C:\Users\Asma\AppData\Roaming\Malwarebytes
[2009/12/31 20:06:34 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2009/12/31 20:06:32 | 00,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2009/12/31 20:06:31 | 00,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2009/12/31 20:06:31 | 00,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/12/31 20:03:58 | 00,000,000 | ---D | C] -- C:\Users\Asma\Desktop\Virus Cleaning
[2009/12/31 17:11:29 | 00,000,000 | ---D | C] -- C:\Program Files\MediaInfo
[2007/08/26 18:46:05 | 00,413,696 | ---- | C] ( ) -- C:\Windows\System32\lxbkinpa.dll
[2007/08/26 18:46:05 | 00,397,312 | ---- | C] ( ) -- C:\Windows\System32\lxbkiesc.dll
[2007/08/26 18:46:05 | 00,323,584 | ---- | C] ( ) -- C:\Windows\System32\LXBKhcp.dll
[2007/08/26 18:46:04 | 00,991,232 | ---- | C] ( ) -- C:\Windows\System32\lxbkusb1.dll
[2007/08/26 18:46:03 | 01,224,704 | ---- | C] ( ) -- C:\Windows\System32\lxbkserv.dll
[2007/08/26 18:46:03 | 00,643,072 | ---- | C] ( ) -- C:\Windows\System32\lxbkpmui.dll
[2007/08/26 18:46:03 | 00,163,840 | ---- | C] ( ) -- C:\Windows\System32\lxbkprox.dll
[2007/08/26 18:46:03 | 00,094,208 | ---- | C] ( ) -- C:\Windows\System32\lxbkpplc.dll
[2007/08/26 18:46:02 | 00,585,728 | ---- | C] ( ) -- C:\Windows\System32\lxbklmpm.dll
[2007/08/26 18:46:01 | 00,696,320 | ---- | C] ( ) -- C:\Windows\System32\lxbkhbn3.dll
[2007/08/26 18:46:00 | 00,684,032 | ---- | C] ( ) -- C:\Windows\System32\lxbkcomc.dll
[2007/08/26 18:46:00 | 00,421,888 | ---- | C] ( ) -- C:\Windows\System32\lxbkcomm.dll
[2007/07/04 20:28:52 | 00,176,128 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll
========== Files - Modified Within 14 Days ========== [2010/01/10 19:25:09 | 03,407,872 | -HS- | M] () -- C:\Users\Asma\NTUSER.DAT
[2010/01/10 19:09:08 | 00,000,215 | ---- | M] () -- C:\Windows\system.ini
[2010/01/10 18:51:12 | 03,819,182 | R--- | M] () -- C:\Users\Asma\Desktop\ComboFix.exe
[2010/01/10 18:42:28 | 00,003,200 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/01/10 18:42:28 | 00,003,200 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/01/10 17:43:30 | 00,061,652 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2010/01/10 17:43:30 | 00,061,652 | ---- | M] () -- C:\ProgramData\nvModes.001
[2010/01/10 17:42:34 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/01/10 17:42:23 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/01/10 17:42:18 | 10,717,02016 | -HS- | M] () -- C:\hiberfil.sys
[2010/01/10 17:41:21 | 00,001,660 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2010/01/10 17:40:39 | 02,005,421 | -H-- | M] () -- C:\Users\Asma\AppData\Local\IconCache.db
[2010/01/10 16:52:34 | 00,000,416 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{0E800DBF-F860-49BE-9326-697C915EC59E}.job
[2010/01/09 11:33:49 | 00,000,806 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2010/01/09 10:14:36 | 27,115,424 | ---- | M] () -- C:\Users\Asma\Desktop\drweb-cureit.exe
[2010/01/08 23:01:03 | 00,049,152 | ---- | M] () -- C:\Windows\ocsetup_install_NetFx3.etl
[2010/01/08 23:01:02 | 00,016,384 | ---- | M] () -- C:\Windows\ocsetup_cbs_install_NetFx3.perf
[2010/01/08 23:01:02 | 00,016,384 | ---- | M] () -- C:\Windows\ocsetup_cbs_install_NetFx3.dpx
[2010/01/07 23:51:34 | 00,021,560 | ---- | M] () -- C:\Windows\System32\drivers\atapi.sys
[2010/01/07 23:48:22 | 00,021,560 | ---- | M] () -- C:\Windows\System32\drivers\atapi.tsk
[2010/01/07 23:46:39 | 00,120,283 | ---- | M] () -- C:\Users\Asma\Desktop\tdsskiller.zip
[2010/01/07 23:04:31 | 00,720,952 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/01/07 23:04:31 | 00,626,246 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/01/07 23:04:31 | 00,109,370 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/01/07 22:25:13 | 00,452,096 | ---- | M] (OldTimer Tools) -- C:\Users\Asma\Desktop\OTM.exe
[2010/01/07 16:07:14 | 00,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/01/07 16:07:04 | 00,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/01/06 23:58:00 | 00,000,578 | ---- | M] () -- C:\Users\Asma\AppData\Roaming\wklnhst.dat
[2010/01/06 11:43:01 | 00,005,632 | ---- | M] () -- C:\Users\Asma\Desktop\home stuff.wps
[2010/01/04 10:56:58 | 00,000,549 | ---- | M] () -- C:\Windows\Lexstat.ini
[2010/01/01 02:51:02 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\Users\Asma\Desktop\OTL.exe
[2009/12/31 23:26:12 | 00,000,949 | ---- | M] () -- C:\Users\Asma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SynTPEnh - Shortcut.lnk
[2009/12/31 23:24:36 | 00,000,902 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2009/12/31 21:32:11 | 00,001,849 | ---- | M] () -- C:\Users\Public\Desktop\avast! Antivirus.lnk
[2009/12/31 21:32:06 | 00,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2009/12/31 20:06:36 | 00,000,818 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/12/31 20:00:22 | 00,000,913 | ---- | M] () -- C:\Users\Asma\Desktop\SynTPEnh - Shortcut.lnk
[2009/12/31 19:51:56 | 00,410,624 | ---- | M] (OldTimer Tools) -- C:\Users\Asma\Desktop\TFC.exe
[2009/12/27 20:17:40 | 00,091,648 | ---- | M] () -- C:\Users\Asma\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== Files Created - No Company Name ========== [2010/01/10 18:51:04 | 03,819,182 | R--- | C] () -- C:\Users\Asma\Desktop\ComboFix.exe
[2010/01/09 10:01:35 | 27,115,424 | ---- | C] () -- C:\Users\Asma\Desktop\drweb-cureit.exe
[2010/01/07 23:48:22 | 00,021,560 | ---- | C] () -- C:\Windows\System32\drivers\atapi.tsk
[2010/01/07 23:46:35 | 00,120,283 | ---- | C] () -- C:\Users\Asma\Desktop\tdsskiller.zip
[2010/01/07 23:33:32 | 10,717,02016 | -HS- | C] () -- C:\hiberfil.sys
[2010/01/06 11:43:01 | 00,005,632 | ---- | C] () -- C:\Users\Asma\Desktop\home stuff.wps
[2010/01/04 19:10:29 | 00,261,632 | ---- | C] () -- C:\Windows\PEV.exe
[2010/01/04 19:10:29 | 00,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2010/01/04 19:10:29 | 00,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2010/01/04 19:10:29 | 00,077,312 | ---- | C] () -- C:\Windows\MBR.exe
[2010/01/04 19:10:29 | 00,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2009/12/31 23:26:12 | 00,000,949 | ---- | C] () -- C:\Users\Asma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SynTPEnh - Shortcut.lnk
[2009/12/31 23:24:36 | 00,000,902 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2009/12/31 21:32:11 | 00,001,849 | ---- | C] () -- C:\Users\Public\Desktop\avast! Antivirus.lnk
[2009/12/31 21:31:44 | 00,380,928 | ---- | C] () -- C:\Windows\System32\actskin4.ocx
[2009/12/31 20:06:36 | 00,000,818 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2009/12/31 20:00:22 | 00,000,913 | ---- | C] () -- C:\Users\Asma\Desktop\SynTPEnh - Shortcut.lnk
[2009/11/02 23:24:25 | 00,061,652 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2009/11/02 23:24:25 | 00,061,652 | ---- | C] () -- C:\ProgramData\nvModes.001
[2009/06/09 16:16:42 | 03,482,240 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys
[2009/02/11 16:45:02 | 00,027,264 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys
[2009/01/05 15:44:10 | 00,000,453 | ---- | C] () -- C:\Windows\bdoscandellang.ini
[2008/07/17 02:10:40 | 00,021,560 | ---- | C] () -- C:\Windows\System32\drivers\atapi.sys
[2008/04/10 21:49:28 | 00,213,632 | ---- | C] () -- C:\Users\Asma\AppData\Roaming\NMM-MetaData.db
[2007/12/09 02:38:41 | 00,000,124 | ---- | C] () -- C:\Windows\wininit.ini
[2007/11/23 19:47:31 | 00,000,680 | ---- | C] () -- C:\Users\Asma\AppData\Local\d3d9caps.dat
[2007/10/01 22:21:37 | 00,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2007/09/22 22:52:12 | 00,000,000 | ---- | C] () -- C:\ProgramData\LauncherAccess.dt
[2007/08/26 18:52:00 | 00,000,549 | ---- | C] () -- C:\Windows\Lexstat.ini
[2007/08/26 18:46:05 | 00,274,432 | ---- | C] () -- C:\Windows\System32\LXBKinst.dll
[2007/08/26 18:46:04 | 00,413,696 | ---- | C] () -- C:\Windows\System32\lxbkutil.dll
[2007/08/06 22:18:57 | 00,000,578 | ---- | C] () -- C:\Users\Asma\AppData\Roaming\wklnhst.dat
[2007/07/25 23:46:13 | 00,091,648 | ---- | C] () -- C:\Users\Asma\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/07/25 00:06:15 | 00,031,966 | ---- | C] () -- C:\Users\Asma\AppData\Roaming\nvModes.001
[2007/07/25 00:06:14 | 00,031,966 | ---- | C] () -- C:\Users\Asma\AppData\Roaming\nvModes.dat
[2007/07/24 21:54:36 | 00,000,000 | ---- | C] () -- C:\Users\Asma\AppData\Local\QSwitch.txt
[2007/07/24 21:54:36 | 00,000,000 | ---- | C] () -- C:\Users\Asma\AppData\Local\DSwitch.txt
[2007/07/24 21:54:36 | 00,000,000 | ---- | C] () -- C:\Users\Asma\AppData\Local\AtStart.txt
[2007/02/07 17:57:50 | 00,039,899 | ---- | C] () -- C:\Windows\System32\rtsicis.ini
[2007/01/22 08:49:34 | 00,344,064 | ---- | C] () -- C:\Windows\System32\lxbkcoin.dll
[2006/11/29 07:32:42 | 00,000,000 | ---- | C] () -- C:\Windows\System32\px.ini
[2006/11/03 16:25:56 | 00,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll
[2006/11/02 12:35:32 | 00,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 10:25:21 | 00,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2006/11/02 07:40:29 | 00,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/09/19 07:02:40 | 00,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll
[2006/09/19 07:02:40 | 00,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll
[2006/05/19 14:39:58 | 00,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini
[2006/03/09 23:58:00 | 01,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2005/12/07 12:31:00 | 00,202,752 | R--- | C] () -- C:\Windows\System32\CddbCdda.dll
[2005/10/05 12:19:32 | 00,040,960 | ---- | C] () -- C:\Windows\System32\lxbkvs.dll
[2005/09/13 16:27:10 | 00,061,440 | ---- | C] () -- C:\Windows\System32\lxbkcnv5.dll
[2005/09/13 16:27:10 | 00,061,440 | ---- | C] () -- C:\Windows\System32\lxbkcnv4.dll
[2005/05/08 04:06:00 | 00,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2003/01/07 14:05:08 | 00,002,695 | ---- | C] () -- C:\Windows\System32\OUTLPERF.INI
[2001/11/14 11:56:00 | 01,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll
========== LOP Check ========== [2008/06/24 21:40:15 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Datalayer
[2009/11/02 21:03:12 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Foxit
[2009/12/02 21:51:57 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Foxit Software
[2008/05/26 11:22:16 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\FrostWire
[2009/11/02 21:43:09 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\HouseCall 6.6
[2009/10/24 13:10:28 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\IObit
[2008/07/04 22:24:24 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Nokia
[2008/06/24 21:44:13 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Nokia Multimedia Player
[2008/03/23 16:11:40 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\PC Suite
[2007/09/22 22:54:21 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Samsung
[2009/04/28 11:54:27 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Sony
[2007/08/06 22:19:38 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\Template
[2010/01/10 03:07:37 | 00,000,000 | ---D | M] -- C:\Users\Asma\AppData\Roaming\uTorrent
[2010/01/10 17:41:15 | 00,032,558 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2010/01/10 16:52:34 | 00,000,416 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{0E800DBF-F860-49BE-9326-697C915EC59E}.job
========== Purity Check ========== < End of report >