Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

System instability


  • Please log in to reply

#1
Kristina

Kristina

    Member

  • Member
  • PipPipPip
  • 319 posts
Hi!

I have recently had to completely reinstall windows. The computer wouldn't boot, as registry keys were missing. I couldn't run any safe mode or last safe configuration. Also, I couldn't reinstall on the same drive, but on my large one, where I currently have all my things. On the old one I kept the windows folder intact, thought it's inactive now. Don't know if it could still hold malware on it or the use of those files now.

I can't figure what has caused the registry corruption. Is this malware or a disk problem? Upon reinstalling I scanned for viruses, but couldn't find anything. However, Panda Virus scan found something called MS10-015 vulnerability.

Just today, I got signed out of my yahoo messenger twice consecutively, saying I've been logged in somewhere else. I managed to change the password and for now nothing happened again. Don't know to what this can be connected to.

I'd be really grateful to know what's causing this liabilities and keep my computer safe. Thanks a lot in advance for any suggestion!

Here are the logs (it took a lot of time to scan, since it also went through all files in my large partition)

OTL Log:

OTL logfile created on: 10.03.2010 23:38:42 - Run 1
OTL by OldTimer - Version 3.1.36.0 Folder = D:\Documents and Settings\AdinaC\My Documents\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000418 | Country: Romania | Language: ROM | Date Format: dd.MM.yyyy

1,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 44,00% Memory free
3,00 Gb Paging File | 2,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): D:\pagefile.sys 1872 3744 [binary data]

%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files
Drive C: | 9,77 Gb Total Space | 4,60 Gb Free Space | 47,05% Space Free | Partition Type: NTFS
Drive D: | 232,88 Gb Total Space | 30,50 Gb Free Space | 13,10% Space Free | Partition Type: NTFS
Drive E: | 13,67 Gb Total Space | 10,36 Gb Free Space | 75,76% Space Free | Partition Type: NTFS
Drive F: | 13,66 Gb Total Space | 8,51 Gb Free Space | 62,28% Space Free | Partition Type: FAT32
Drive G: | 1,17 Gb Total Space | 0,37 Gb Free Space | 31,77% Space Free | Partition Type: FAT32
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: NAMCO-008BC6E8A
Current User Name: AdinaC
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan

========== Processes (SafeList) ==========

PRC - [2010.03.10 23:38:12 | 000,554,496 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\AdinaC\My Documents\Downloads\OTL.exe
PRC - [2010.03.06 02:16:51 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\Java\jre6\bin\java.exe
PRC - [2010.02.25 12:02:02 | 000,716,616 | ---- | M] (TuneUp Software) -- D:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
PRC - [2010.02.25 11:59:54 | 001,047,880 | ---- | M] (TuneUp Software) -- D:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
PRC - [2010.02.17 02:30:48 | 005,244,216 | ---- | M] (Yahoo! Inc.) -- D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
PRC - [2010.01.16 05:09:37 | 000,910,296 | ---- | M] (Mozilla Corporation) -- D:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010.01.14 00:45:58 | 001,552,736 | ---- | M] (Nullsoft, Inc.) -- D:\Program Files\Winamp\winamp.exe
PRC - [2009.12.15 11:24:48 | 000,293,376 | ---- | M] () -- D:\Documents and Settings\AdinaC\Local Settings\Temp\Rar$EX00.000\gmer.exe
PRC - [2009.12.08 14:25:28 | 000,093,320 | ---- | M] (McAfee, Inc.) -- d:\Program Files\McAfee\SiteAdvisor\McSACore.exe
PRC - [2009.07.21 13:34:33 | 000,185,089 | ---- | M] (Avira GmbH) -- D:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2009.05.26 22:57:08 | 000,411,108 | ---- | M] (Old McDonald's Farm) -- D:\Program Files\Autorun Eater\billy.exe
PRC - [2009.05.26 22:54:10 | 000,549,400 | ---- | M] (Old McDonald's Farm) -- D:\Program Files\Autorun Eater\oldmcdonald.exe
PRC - [2009.05.13 15:48:22 | 000,108,289 | ---- | M] (Avira GmbH) -- D:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2009.03.02 12:08:47 | 000,209,153 | ---- | M] (Avira GmbH) -- D:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2008.11.09 22:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- D:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
PRC - [2008.04.14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe


========== Modules (SafeList) ==========

MOD - [2010.03.10 23:38:12 | 000,554,496 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\AdinaC\My Documents\Downloads\OTL.exe


========== Win32 Services (SafeList) ==========

SRV - [2010.03.06 03:04:17 | 000,435,016 | ---- | M] (TuneUp Software) [On_Demand | Stopped] -- D:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe -- (TuneUp.Defrag)
SRV - [2010.02.25 11:59:54 | 001,047,880 | ---- | M] (TuneUp Software) [Auto | Running] -- D:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc)
SRV - [2010.02.25 11:56:02 | 000,030,024 | ---- | M] (TuneUp Software) [Auto | Running] -- D:\WINDOWS\system32\uxtuneup.dll -- (UxTuneUp)
SRV - [2009.12.08 14:25:28 | 000,093,320 | ---- | M] (McAfee, Inc.) [Auto | Running] -- d:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2009.10.27 09:26:36 | 000,657,408 | ---- | M] (Nokia) [On_Demand | Stopped] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009.07.21 13:34:33 | 000,185,089 | ---- | M] (Avira GmbH) [Auto | Running] -- D:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2009.05.13 15:48:22 | 000,108,289 | ---- | M] (Avira GmbH) [Auto | Running] -- D:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2008.11.09 22:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- D:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ro/
IE - HKCU\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.param.yahoo-fr: "chrf-ytbm"
FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "chrf-ytbm"
FF - prefs.js..browser.search.param.yahoo-type: "${8}"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.0
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:1.5.4.20081105
FF - prefs.js..extensions.enabledItems: {e001c731-5e37-4538-a5cb-8168736a2360}:0.9.9.9


FF - HKLM\software\mozilla\Firefox\extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: D:\Program Files\McAfee\SiteAdvisor [2010.03.06 02:30:33 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2010.03.06 03:14:32 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2010.03.07 17:19:48 | 000,000,000 | ---D | M]

[2010.03.06 00:09:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\Mozilla\Extensions
[2010.03.10 23:20:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\Mozilla\Firefox\Profiles\kk7hwbvm.default\extensions
[2010.03.06 03:03:15 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- D:\Documents and Settings\AdinaC\Application Data\Mozilla\Firefox\Profiles\kk7hwbvm.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2010.03.06 01:26:59 | 000,000,000 | ---D | M] (Adblock Plus) -- D:\Documents and Settings\AdinaC\Application Data\Mozilla\Firefox\Profiles\kk7hwbvm.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010.03.10 23:20:48 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\AdinaC\Application Data\Mozilla\Firefox\Profiles\kk7hwbvm.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}
[2010.03.10 23:20:51 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox\extensions

O1 HOSTS File: ([2001.08.23 14:00:00 | 000,000,734 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O4 - HKLM..\Run: [Autorun Eater] D:\Program Files\Autorun Eater\oldmcdonald.exe (Old McDonald's Farm)
O4 - HKLM..\Run: [avgnt] D:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKCU..\Run: [Messenger (Yahoo!)] D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_18)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - d:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - D:\Program Files\SUPERAntiSpyware\SASWINLO.dll - D:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O24 - Desktop WallPaper: D:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: D:\WINDOWS\Web\Wallpaper\Bliss.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - D:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.09.20 17:38:58 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010.01.19 20:55:34 | 000,000,000 | R--D | M] - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010.01.19 20:55:34 | 000,000,000 | R--D | M] - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010.01.19 20:55:34 | 000,000,000 | R--D | M] - E:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010.01.19 20:55:36 | 000,000,000 | R--D | M] - F:\autorun.inf -- [ FAT32 ]
O32 - AutoRun File - [2010.01.19 20:55:36 | 000,000,000 | R--D | M] - G:\autorun.inf -- [ FAT32 ]
O32 - AutoRun File - [2004.02.08 11:17:00 | 000,229,287 | ---- | M] () - G:\autoclose.exe -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - D:\WINDOWS\system32\ias [2010.03.05 23:37:55 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: UxTuneUp - D:\WINDOWS\system32\uxtuneup.dll (TuneUp Software)
NetSvcs: WmdmPmSp - File not found

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (56016913389584384)

========== Files/Folders - Created Within 14 Days ==========

[2010.03.10 23:32:02 | 000,000,000 | ---D | C] -- D:\backup
[2010.03.10 23:31:10 | 000,000,000 | ---D | C] -- D:\Program Files\ERUNT
[2010.03.10 23:20:52 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\QuickScan
[2010.03.10 23:14:09 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\AdinaC\Recent
[2010.03.09 23:21:42 | 000,000,000 | ---D | C] -- D:\WINDOWS\Sun
[2010.03.07 17:08:23 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft.NET
[2010.03.07 17:08:16 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft ActiveSync
[2010.03.07 17:08:12 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\DESIGNER
[2010.03.07 17:07:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\SHELLNEW
[2010.03.07 17:07:44 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Office
[2010.03.07 17:06:03 | 000,000,000 | RH-D | C] -- D:\MSOCache
[2010.03.07 14:26:22 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2010.03.07 14:26:14 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\SUPERAntiSpyware.com
[2010.03.07 14:26:01 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Wise Installation Wizard
[2010.03.07 03:24:55 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Uniblue
[2010.03.07 03:24:55 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\DriverScanner
[2010.03.07 03:24:17 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\All Users\Application Data\{66E2F539-12B6-4870-A500-7689CDE75C5E}
[2010.03.07 03:03:18 | 000,000,000 | ---D | C] -- D:\Program Files\S3
[2010.03.07 03:03:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\WINDOWS
[2010.03.07 02:54:48 | 000,000,000 | ---D | C] -- D:\Program Files\Realtek AC97
[2010.03.07 02:52:19 | 000,000,000 | -H-D | C] -- D:\Program Files\InstallShield Installation Information
[2010.03.07 02:51:55 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ReinstallBackups
[2010.03.07 02:51:29 | 000,000,000 | ---D | C] -- D:\Program Files\VIA
[2010.03.07 02:51:20 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\InstallShield
[2010.03.07 02:29:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\CrystalIdea Software
[2010.03.07 02:16:18 | 000,000,000 | -HSD | C] -- D:\Documents and Settings\AdinaC\IECompatCache
[2010.03.07 02:15:50 | 000,000,000 | -HSD | C] -- D:\Documents and Settings\AdinaC\PrivacIE
[2010.03.06 13:22:37 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Malwarebytes
[2010.03.06 13:22:31 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010.03.06 13:22:22 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys
[2010.03.06 13:22:22 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010.03.06 13:21:00 | 000,028,552 | ---- | C] (Panda Security, S.L.) -- D:\WINDOWS\System32\drivers\pavboot.sys
[2010.03.06 13:20:29 | 000,000,000 | ---D | C] -- D:\Program Files\Panda Security
[2010.03.06 03:42:34 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2010.03.06 03:12:52 | 000,000,000 | ---D | C] -- D:\Program Files\MP3Gain
[2010.03.06 03:09:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Autorun Eater
[2010.03.06 03:09:18 | 000,000,000 | ---D | C] -- D:\Program Files\Autorun Eater
[2010.03.06 03:04:19 | 000,030,024 | ---- | C] (TuneUp Software) -- D:\WINDOWS\System32\uxtuneup.dll
[2010.03.06 03:00:07 | 000,030,536 | ---- | C] (TuneUp Software) -- D:\WINDOWS\System32\TURegOpt.exe
[2010.03.06 02:58:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\TuneUp Software
[2010.03.06 02:57:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\TuneUp Software
[2010.03.06 02:55:19 | 000,000,000 | -HSD | C] -- D:\Documents and Settings\All Users\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010.03.06 02:54:01 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Auslogics
[2010.03.06 02:46:57 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Desktop\Unused Desktop Shortcuts
[2010.03.06 02:32:48 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\ABBYY
[2010.03.06 02:32:48 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\ABBYY
[2010.03.06 02:30:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Mp3tag
[2010.03.06 02:25:13 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\McAfee
[2010.03.06 02:23:57 | 000,000,000 | ---D | C] -- D:\Program Files\McAfee
[2010.03.06 02:23:56 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\McAfee
[2010.03.06 02:21:56 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\ACD Systems
[2010.03.06 02:18:39 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Sun
[2010.03.06 02:18:36 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java
[2010.03.06 02:12:43 | 000,000,000 | ---D | C] -- D:\WINDOWS\Logs
[2010.03.06 02:11:33 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\PCSuite
[2010.03.06 02:10:17 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Nokia
[2010.03.06 02:10:12 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Sun
[2010.03.06 02:07:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Winamp
[2010.03.06 02:06:49 | 000,018,816 | ---- | C] (Nokia) -- D:\WINDOWS\System32\drivers\pccsmcfd.sys
[2010.03.06 02:06:24 | 000,000,000 | ---D | C] -- D:\Program Files\PC Connectivity Solution
[2010.03.06 01:56:42 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Nokia
[2010.03.06 01:56:35 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\PC Suite
[2010.03.06 01:56:34 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\PC Suite
[2010.03.06 01:54:58 | 000,000,000 | ---D | C] -- D:\Program Files\DIFX
[2010.03.06 01:54:08 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\DRVSTORE
[2010.03.06 01:54:05 | 000,091,136 | ---- | C] (Nokia) -- D:\WINDOWS\System32\nmwcdcls.dll
[2010.03.06 01:51:14 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Installations
[2010.03.06 01:38:11 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\WinRAR
[2010.03.06 01:34:46 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\My Documents\Updater5
[2010.03.06 01:34:46 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\Adobe
[2010.03.06 01:33:57 | 000,000,000 | ---D | C] -- D:\WINDOWS\Downloaded Installations
[2010.03.06 01:32:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Adobe
[2010.03.06 01:31:51 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Adobe
[2010.03.06 01:25:55 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\Yahoo
[2010.03.06 01:24:44 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Yahoo!
[2010.03.06 01:24:18 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Yahoo!
[2010.03.06 01:23:22 | 000,000,000 | -HSD | C] -- D:\WINDOWS\Installer
[2010.03.06 01:23:21 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\ODBC
[2010.03.06 01:23:18 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\SpeechEngines
[2010.03.06 01:23:17 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Microsoft Shared
[2010.03.06 01:23:17 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files
[2010.03.06 01:22:41 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Start Menu
[2010.03.06 01:22:41 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Documents
[2010.03.06 01:22:41 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\All Users\Templates
[2010.03.06 01:22:41 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Favorites
[2010.03.06 01:22:41 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Desktop
[2010.03.06 01:22:26 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\CatRoot2
[2010.03.06 01:22:26 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\CatRoot
[2010.03.06 01:22:20 | 000,000,000 | --SD | C] -- D:\Documents and Settings\All Users\Application Data\Microsoft
[2010.03.06 01:22:20 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\All Users\Application Data
[2010.03.06 01:21:49 | 000,000,000 | ---D | C] -- D:\Documents and Settings
[2010.03.06 01:15:36 | 000,000,000 | R-SD | C] -- D:\WINDOWS\Fonts
[2010.03.06 01:15:36 | 000,000,000 | RHSD | C] -- D:\WINDOWS\System32\dllcache
[2010.03.06 01:15:36 | 000,000,000 | R--D | C] -- D:\WINDOWS\Web
[2010.03.06 01:15:36 | 000,000,000 | -H-D | C] -- D:\WINDOWS\inf
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\WinSxS
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\wins
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\wbem
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\usmt
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\twain_32
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Temp
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\system32
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\system
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\spool
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ShellExt
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Setup
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\security
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\scripting
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Resources
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\repair
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ras
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Provisioning
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\PeerNet
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\pchealth
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\oobe
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\npp
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Network Diagnostic
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\mui
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\mui
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\msapps
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\msagent
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Media
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\L2Schemas
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\java
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\inetsrv
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\IME
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\ime
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\icsxml
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ias
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Help
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\export
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers\etc
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\ehome
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Driver Cache
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers\disdn
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\dhcp
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Debug
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Cursors
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Connection Wizard
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\config
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\Config
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\AppPatch
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\addins
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\3com_dmi
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\3076
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\2052
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1054
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1042
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1041
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1037
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1033
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1031
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1028
[2010.03.06 01:15:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1025
[2010.03.06 01:14:48 | 000,000,000 | ---D | C] -- D:\Program Files\Xvid
[2010.03.06 01:13:07 | 000,000,000 | ---D | C] -- D:\WINDOWS\RegisteredPackages
[2010.03.06 01:00:12 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Media Player Classic
[2010.03.06 00:57:47 | 000,839,680 | ---- | C] (http://www.mp3dev.org/) -- D:\WINDOWS\System32\lameACM.acm
[2010.03.06 00:57:47 | 000,217,088 | ---- | C] (www.helixcommunity.org) -- D:\WINDOWS\System32\yv12vfw.dll
[2010.03.06 00:57:47 | 000,151,552 | ---- | C] (fccHandler) -- D:\WINDOWS\System32\ac3acm.acm
[2010.03.06 00:40:42 | 000,000,000 | ---D | C] -- D:\Program Files\CoreAVC Video Decoder
[2010.03.06 00:39:44 | 000,000,000 | ---D | C] -- D:\Program Files\AC3Filter
[2010.03.06 00:24:06 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\BSplayer Pro
[2010.03.06 00:24:04 | 000,000,000 | ---D | C] -- D:\Program Files\Webteh
[2010.03.06 00:20:57 | 000,000,000 | -HSD | C] -- D:\Documents and Settings\AdinaC\IETldCache
[2010.03.06 00:17:17 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\My Documents\Downloads
[2010.03.06 00:16:24 | 000,000,000 | ---D | C] -- D:\WINDOWS\ie8updates
[2010.03.06 00:15:54 | 000,000,000 | ---D | C] -- D:\WINDOWS\WBEM
[2010.03.06 00:14:29 | 000,000,000 | -H-D | C] -- D:\WINDOWS\ie8
[2010.03.06 00:12:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Adobe
[2010.03.06 00:08:56 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\Mozilla
[2010.03.06 00:08:56 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Mozilla
[2010.03.06 00:03:59 | 000,096,104 | ---- | C] (Avira GmbH) -- D:\WINDOWS\System32\drivers\avipbb.sys
[2010.03.06 00:03:59 | 000,045,416 | ---- | C] (Avira GmbH) -- D:\WINDOWS\System32\drivers\avgntdd.sys
[2010.03.06 00:03:59 | 000,022,360 | ---- | C] (Avira GmbH) -- D:\WINDOWS\System32\drivers\avgntmgr.sys
[2010.03.06 00:03:58 | 000,028,520 | ---- | C] (Avira GmbH) -- D:\WINDOWS\System32\drivers\ssmdrv.sys
[2010.03.06 00:03:51 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Avira
[2010.03.05 23:59:38 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Macromedia
[2010.03.05 23:57:57 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\appmgmt
[2010.03.05 23:54:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\ACD Systems
[2010.03.05 23:48:44 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\PreInstall
[2010.03.05 23:48:42 | 000,000,000 | -H-D | C] -- D:\WINDOWS\$hf_mig$
[2010.03.05 23:47:38 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Application Data\Identities
[2010.03.05 23:47:36 | 000,000,000 | -H-D | C] -- D:\Program Files\Uninstall Information
[2010.03.05 23:47:34 | 000,000,000 | R--D | C] -- D:\Documents and Settings\AdinaC\My Documents\My Pictures
[2010.03.05 23:47:34 | 000,000,000 | R--D | C] -- D:\Documents and Settings\AdinaC\My Documents\My Music
[2010.03.05 23:47:29 | 000,000,000 | --SD | C] -- D:\Documents and Settings\AdinaC\Application Data\Microsoft
[2010.03.05 23:47:29 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\AdinaC\SendTo
[2010.03.05 23:47:29 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\AdinaC\Application Data
[2010.03.05 23:47:29 | 000,000,000 | R--D | C] -- D:\Documents and Settings\AdinaC\Start Menu
[2010.03.05 23:47:29 | 000,000,000 | R--D | C] -- D:\Documents and Settings\AdinaC\My Documents
[2010.03.05 23:47:29 | 000,000,000 | R--D | C] -- D:\Documents and Settings\AdinaC\Favorites
[2010.03.05 23:47:29 | 000,000,000 | -HSD | C] -- D:\Documents and Settings\AdinaC\Cookies
[2010.03.05 23:47:29 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\AdinaC\Templates
[2010.03.05 23:47:29 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\AdinaC\PrintHood
[2010.03.05 23:47:29 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\AdinaC\NetHood
[2010.03.05 23:47:29 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\AdinaC\Local Settings
[2010.03.05 23:47:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\Microsoft
[2010.03.05 23:47:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\AdinaC\Desktop
[2010.03.05 23:44:44 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\SoftwareDistribution
[2010.03.05 23:43:52 | 000,000,000 | ---D | C] -- D:\WINDOWS\SoftwareDistribution
[2010.03.05 23:43:44 | 000,000,000 | ---D | C] -- D:\WINDOWS\Prefetch
[2010.03.05 23:43:42 | 000,000,000 | --SD | C] -- D:\WINDOWS\System32\Microsoft
[2010.03.05 23:43:41 | 000,000,000 | --SD | M] -- D:\Documents and Settings\LocalService\Application Data\Microsoft
[2010.03.05 23:43:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2010.03.05 23:43:21 | 000,000,000 | --SD | M] -- D:\Documents and Settings\NetworkService\Application Data\Microsoft
[2010.03.05 23:43:20 | 000,000,000 | ---D | M] -- D:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2010.03.05 23:41:05 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rwia330.dll
[2010.03.05 23:41:05 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rwia001.dll
[2010.03.05 23:41:04 | 000,029,184 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rw330ext.dll
[2010.03.05 23:39:51 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- D:\WINDOWS\System32\dllcache\esunid.dll
[2010.03.05 23:39:50 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- D:\WINDOWS\System32\dllcache\esuimgd.dll
[2010.03.05 23:39:50 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- D:\WINDOWS\System32\dllcache\esucmd.dll
[2010.03.05 23:39:36 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- D:\WINDOWS\System32\dllcache\cap7146.sys
[2010.03.05 23:38:58 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xircom
[2010.03.05 23:38:58 | 000,000,000 | ---D | C] -- D:\Program Files\xerox
[2010.03.05 23:38:58 | 000,000,000 | ---D | C] -- D:\Program Files\microsoft frontpage
[2010.03.05 23:37:18 | 000,000,000 | -HSD | C] -- D:\Documents and Settings\All Users\DRM
[2010.03.05 23:37:05 | 000,000,000 | --SD | C] -- D:\WINDOWS\Downloaded Program Files
[2010.03.05 23:37:05 | 000,000,000 | R--D | C] -- D:\WINDOWS\Offline Web Pages
[2010.03.05 23:36:51 | 000,000,000 | -H-D | C] -- D:\Program Files\WindowsUpdate
[2010.03.05 23:36:24 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\DirectX
[2010.03.05 23:36:00 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Services
[2010.03.05 23:35:57 | 000,000,000 | --SD | C] -- D:\WINDOWS\Tasks
[2010.03.05 23:35:55 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\MSSoap
[2010.03.05 23:35:51 | 000,000,000 | ---D | C] -- D:\WINDOWS\srchasst
[2010.03.05 23:35:50 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Macromed
[2010.03.05 23:35:41 | 000,000,000 | ---D | C] -- D:\Program Files\Movie Maker
[2010.03.05 23:35:11 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Restore
[2010.03.05 23:35:05 | 000,000,000 | ---D | C] -- D:\Program Files\NetMeeting
[2010.03.05 23:35:02 | 000,000,000 | ---D | C] -- D:\Program Files\Outlook Express
[2010.03.05 23:34:54 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\System
[2010.03.05 23:34:51 | 000,000,000 | ---D | C] -- D:\Program Files\Internet Explorer
[2010.03.05 23:34:50 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Documents\My Pictures
[2010.03.05 23:34:08 | 000,000,000 | ---D | C] -- D:\Program Files\ComPlus Applications
[2010.03.05 23:33:58 | 000,000,000 | ---D | C] -- D:\WINDOWS\Registration
[2010.03.05 23:33:49 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Documents\My Music
[2010.03.05 23:33:49 | 000,000,000 | ---D | C] -- D:\Program Files\Online Services
[2010.03.05 23:33:48 | 000,000,000 | ---D | C] -- D:\Program Files\Windows Media Player
[2010.03.05 23:33:34 | 000,000,000 | ---D | C] -- D:\Program Files\MSN Gaming Zone
[2010.03.05 23:32:51 | 000,000,000 | ---D | C] -- D:\Program Files\MSN
[2010.03.05 23:32:50 | 000,281,088 | ---- | C] (Cinematronics) -- D:\WINDOWS\System32\dllcache\pinball.exe
[2010.03.05 23:32:49 | 000,000,000 | ---D | C] -- D:\Program Files\Windows NT
[2010.03.05 23:32:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en-US
[2010.03.05 23:32:44 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\MsDtc
[2010.03.05 23:32:42 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Com
[2010.03.05 23:32:28 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Documents\My Videos
[2010.03.04 21:17:19 | 000,000,000 | ---D | C] -- D:\Program Files\K-Lite Codec Pack
[2010.03.04 14:54:31 | 000,000,000 | ---D | C] -- D:\Program Files\Gabest
[2010.03.04 00:13:23 | 000,000,000 | ---D | C] -- D:\Program Files\MPC HomeCinema
[3 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 14 Days ==========

[2010.03.10 23:31:11 | 000,000,621 | ---- | M] () -- D:\Documents and Settings\AdinaC\Desktop\NTREGOPT.lnk
[2010.03.10 23:31:11 | 000,000,602 | ---- | M] () -- D:\Documents and Settings\AdinaC\Desktop\ERUNT.lnk
[2010.03.10 23:12:27 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT
[2010.03.10 23:12:24 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat
[2010.03.10 23:11:45 | 002,621,440 | -H-- | M] () -- D:\Documents and Settings\AdinaC\NTUSER.DAT
[2010.03.10 23:11:45 | 000,000,178 | -HS- | M] () -- D:\Documents and Settings\AdinaC\ntuser.ini
[2010.03.10 01:03:43 | 002,238,648 | -H-- | M] () -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\IconCache.db
[2010.03.09 01:00:11 | 001,327,619 | ---- | M] () -- D:\Documents and Settings\AdinaC\My Documents\miercuri.JPG
[2010.03.09 01:00:00 | 001,367,424 | ---- | M] () -- D:\Documents and Settings\AdinaC\My Documents\marti.JPG
[2010.03.09 00:59:51 | 001,380,449 | ---- | M] () -- D:\Documents and Settings\AdinaC\My Documents\luni.JPG
[2010.03.09 00:59:42 | 001,281,779 | ---- | M] () -- D:\Documents and Settings\AdinaC\My Documents\joi.JPG
[2010.03.08 16:21:08 | 000,019,320 | ---- | M] () -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010.03.08 06:46:37 | 000,115,768 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2010.03.07 17:32:22 | 000,000,635 | ---- | M] () -- D:\Documents and Settings\AdinaC\Desktop\MP3Gain.lnk
[2010.03.07 17:19:55 | 000,000,573 | ---- | M] () -- D:\WINDOWS\win.ini
[2010.03.07 17:09:15 | 000,000,376 | ---- | M] () -- D:\WINDOWS\ODBC.INI
[2010.03.07 14:26:17 | 000,000,790 | ---- | M] () -- D:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010.03.07 03:36:53 | 000,356,120 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI
[2010.03.07 03:36:53 | 000,311,604 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat
[2010.03.07 03:36:53 | 000,039,992 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat
[2010.03.07 02:58:32 | 000,000,664 | ---- | M] () -- D:\WINDOWS\System32\d3d9caps.dat
[2010.03.07 01:24:25 | 000,000,350 | ---- | M] () -- D:\Documents and Settings\AdinaC\Desktop\My Documents.lnk
[2010.03.07 00:07:11 | 000,056,816 | ---- | M] (Avira GmbH) -- D:\WINDOWS\System32\drivers\avgntflt.sys
[2010.03.06 18:45:48 | 000,000,660 | ---- | M] () -- D:\Documents and Settings\All Users\Desktop\AutoCorect.lnk
[2010.03.06 17:55:11 | 001,714,038 | ---- | M] () -- D:\Documents and Settings\AdinaC\My Documents\site vizualizare.bmp
[2010.03.06 17:54:48 | 000,074,022 | ---- | M] () -- D:\Documents and Settings\AdinaC\My Documents\sigla.bmp
[2010.03.06 03:44:32 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010.03.06 03:44:32 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\WindowsShell.Manifest
[2010.03.06 03:44:32 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\sapi.cpl.manifest
[2010.03.06 03:44:32 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\nwc.cpl.manifest
[2010.03.06 03:44:32 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\ncpa.cpl.manifest
[2010.03.06 03:44:32 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\cdplayer.exe.manifest
[2010.03.06 03:42:43 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl
[2010.03.06 03:04:15 | 000,001,741 | ---- | M] () -- D:\Documents and Settings\All Users\Desktop\TuneUp 1-Click Maintenance.lnk
[2010.03.06 03:04:15 | 000,001,739 | ---- | M] () -- D:\Documents and Settings\All Users\Desktop\TuneUp Utilities.lnk
[2010.03.06 03:03:09 | 000,001,558 | ---- | M] () -- D:\Documents and Settings\AdinaC\Desktop\CCleaner.lnk
[2010.03.06 02:53:58 | 000,000,811 | ---- | M] () -- D:\Documents and Settings\AdinaC\Desktop\Auslogics Disk Defrag.lnk
[2010.03.06 02:40:06 | 000,056,832 | ---- | M] () -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.03.06 02:31:00 | 000,000,664 | ---- | M] () -- D:\Documents and Settings\All Users\Desktop\Mp3tag.lnk
[2010.03.06 02:22:18 | 000,001,992 | ---- | M] () -- D:\Documents and Settings\AdinaC\Desktop\FotoCanvas.lnk
[2010.03.06 02:11:50 | 000,316,640 | ---- | M] () -- D:\WINDOWS\WMSysPr9.prx
[2010.03.06 02:11:39 | 000,001,773 | ---- | M] () -- D:\Documents and Settings\All Users\Desktop\Nokia PC Suite.lnk
[2010.03.06 01:57:53 | 000,000,000 | -H-- | M] () -- D:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
[2010.03.06 01:57:50 | 000,000,000 | -H-- | M] () -- D:\WINDOWS\System32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
[2010.03.06 01:34:19 | 000,002,077 | ---- | M] () -- D:\Documents and Settings\All Users\Desktop\Adobe Photoshop Album Starter Edition 3.2.lnk
[2010.03.06 01:27:30 | 000,004,444 | ---- | M] () -- D:\WINDOWS\System32\pid.PNF
[2010.03.06 01:25:00 | 000,000,716 | ---- | M] () -- D:\Documents and Settings\AdinaC\Desktop\PhotoScape.lnk
[2010.03.06 01:23:16 | 000,000,231 | ---- | M] () -- D:\WINDOWS\system.ini
[2010.03.06 00:09:00 | 000,000,000 | ---- | M] () -- D:\WINDOWS\nsreg.dat
[2010.03.05 23:43:23 | 000,008,192 | ---- | M] () -- D:\WINDOWS\REGLOCS.OLD
[2010.03.05 23:41:58 | 000,000,261 | ---- | M] () -- D:\WINDOWS\System32\$winnt$.inf
[2010.03.05 23:38:35 | 000,002,577 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT
[2010.03.05 23:38:35 | 000,000,000 | ---- | M] () -- D:\WINDOWS\control.ini
[2010.03.05 23:38:24 | 000,023,392 | ---- | M] () -- D:\WINDOWS\System32\nscompat.tlb
[2010.03.05 23:38:24 | 000,016,832 | ---- | M] () -- D:\WINDOWS\System32\amcompat.tlb
[2010.03.05 23:38:11 | 000,004,161 | ---- | M] () -- D:\WINDOWS\ODBCINST.INI
[2010.03.05 23:37:04 | 000,000,488 | RH-- | M] () -- D:\WINDOWS\System32\WindowsLogon.manifest
[2010.03.05 23:37:04 | 000,000,488 | RH-- | M] () -- D:\WINDOWS\System32\logonui.exe.manifest
[2010.03.05 23:34:21 | 000,021,640 | ---- | M] () -- D:\WINDOWS\System32\emptyregdb.dat
[2010.03.05 23:34:05 | 000,000,037 | ---- | M] () -- D:\WINDOWS\vbaddin.ini
[2010.03.05 23:34:05 | 000,000,036 | ---- | M] () -- D:\WINDOWS\vb.ini
[2010.02.25 12:03:02 | 000,030,536 | ---- | M] (TuneUp Software) -- D:\WINDOWS\System32\TURegOpt.exe
[2010.02.25 11:56:02 | 000,030,024 | ---- | M] (TuneUp Software) -- D:\WINDOWS\System32\uxtuneup.dll
[3 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010.03.10 23:31:11 | 000,000,621 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\NTREGOPT.lnk
[2010.03.10 23:31:11 | 000,000,602 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\ERUNT.lnk
[2010.03.09 01:25:49 | 000,000,477 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\StrongDC.lnk
[2010.03.09 01:00:00 | 001,327,619 | ---- | C] () -- D:\Documents and Settings\AdinaC\My Documents\miercuri.JPG
[2010.03.09 00:59:52 | 001,367,424 | ---- | C] () -- D:\Documents and Settings\AdinaC\My Documents\marti.JPG
[2010.03.09 00:59:43 | 001,380,449 | ---- | C] () -- D:\Documents and Settings\AdinaC\My Documents\luni.JPG
[2010.03.09 00:59:32 | 001,281,779 | ---- | C] () -- D:\Documents and Settings\AdinaC\My Documents\joi.JPG
[2010.03.07 17:32:22 | 000,000,635 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\MP3Gain.lnk
[2010.03.07 14:26:17 | 000,000,790 | ---- | C] () -- D:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2010.03.07 02:55:37 | 000,049,152 | ---- | C] () -- D:\WINDOWS\System32\ChCfg.exe
[2010.03.07 02:54:48 | 000,141,016 | ---- | C] () -- D:\WINDOWS\System32\alsndmgr.wav
[2010.03.07 02:54:47 | 000,147,456 | ---- | C] () -- D:\WINDOWS\System32\RtlCPAPI.dll
[2010.03.07 01:24:13 | 000,000,350 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\My Documents.lnk
[2010.03.06 18:45:48 | 000,000,660 | ---- | C] () -- D:\Documents and Settings\All Users\Desktop\AutoCorect.lnk
[2010.03.06 17:54:48 | 001,714,038 | ---- | C] () -- D:\Documents and Settings\AdinaC\My Documents\site vizualizare.bmp
[2010.03.06 17:54:46 | 000,074,022 | ---- | C] () -- D:\Documents and Settings\AdinaC\My Documents\sigla.bmp
[2010.03.06 03:28:47 | 000,000,376 | ---- | C] () -- D:\WINDOWS\ODBC.INI
[2010.03.06 03:03:09 | 000,001,558 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\CCleaner.lnk
[2010.03.06 03:00:03 | 000,001,741 | ---- | C] () -- D:\Documents and Settings\All Users\Desktop\TuneUp 1-Click Maintenance.lnk
[2010.03.06 03:00:03 | 000,001,739 | ---- | C] () -- D:\Documents and Settings\All Users\Desktop\TuneUp Utilities.lnk
[2010.03.06 02:53:58 | 000,000,811 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\Auslogics Disk Defrag.lnk
[2010.03.06 02:30:03 | 000,000,664 | ---- | C] () -- D:\Documents and Settings\All Users\Desktop\Mp3tag.lnk
[2010.03.06 02:22:18 | 000,001,992 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\FotoCanvas.lnk
[2010.03.06 02:11:39 | 000,001,773 | ---- | C] () -- D:\Documents and Settings\All Users\Desktop\Nokia PC Suite.lnk
[2010.03.06 01:57:53 | 000,000,000 | -H-- | C] () -- D:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
[2010.03.06 01:57:50 | 000,000,000 | -H-- | C] () -- D:\WINDOWS\System32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
[2010.03.06 01:34:19 | 000,002,077 | ---- | C] () -- D:\Documents and Settings\All Users\Desktop\Adobe Photoshop Album Starter Edition 3.2.lnk
[2010.03.06 01:27:30 | 000,004,444 | ---- | C] () -- D:\WINDOWS\System32\pid.PNF
[2010.03.06 01:26:08 | 000,000,664 | ---- | C] () -- D:\WINDOWS\System32\d3d9caps.dat
[2010.03.06 01:25:00 | 000,000,716 | ---- | C] () -- D:\Documents and Settings\AdinaC\Desktop\PhotoScape.lnk
[2010.03.06 01:23:19 | 001,685,606 | ---- | C] () -- D:\WINDOWS\System32\dllcache\sam.spd
[2010.03.06 01:23:19 | 000,605,050 | ---- | C] () -- D:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010.03.06 01:23:19 | 000,000,888 | ---- | C] () -- D:\WINDOWS\System32\dllcache\sam.sdf
[2010.03.06 01:23:18 | 000,643,717 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010.03.06 01:23:15 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28603.nls
[2010.03.06 01:23:15 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_28603.nls
[2010.03.06 01:23:12 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_857.nls
[2010.03.06 01:23:12 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_857.nls
[2010.03.06 01:23:12 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28599.nls
[2010.03.06 01:23:12 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_28599.nls
[2010.03.06 01:23:12 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10081.nls
[2010.03.06 01:23:12 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10081.nls
[2010.03.06 01:23:08 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28595.nls
[2010.03.06 01:23:08 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28595.NLS
[2010.03.06 01:23:07 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10017.nls
[2010.03.06 01:23:07 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10017.nls
[2010.03.06 01:23:07 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10007.nls
[2010.03.06 01:23:07 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10007.nls
[2010.03.06 01:23:05 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_869.nls
[2010.03.06 01:23:05 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_869.nls
[2010.03.06 01:23:05 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_737.nls
[2010.03.06 01:23:05 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_737.nls
[2010.03.06 01:23:05 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_875.nls
[2010.03.06 01:23:05 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_875.nls
[2010.03.06 01:23:05 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28597.nls
[2010.03.06 01:23:05 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28597.NLS
[2010.03.06 01:23:05 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10006.nls
[2010.03.06 01:23:05 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10006.nls
[2010.03.06 01:23:03 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28594.nls
[2010.03.06 01:23:03 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28594.NLS
[2010.03.06 01:23:02 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_866.nls
[2010.03.06 01:23:02 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_866.nls
[2010.03.06 01:23:02 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_855.nls
[2010.03.06 01:23:02 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_855.nls
[2010.03.06 01:23:00 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_852.nls
[2010.03.06 01:23:00 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_852.nls
[2010.03.06 01:23:00 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10082.nls
[2010.03.06 01:23:00 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10082.nls
[2010.03.06 01:23:00 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10029.nls
[2010.03.06 01:23:00 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10029.nls
[2010.03.06 01:23:00 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10010.nls
[2010.03.06 01:23:00 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10010.nls
[2010.03.06 01:22:58 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20127.nls
[2010.03.06 01:22:58 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_20127.nls
[2010.03.06 01:22:53 | 000,001,688 | ---- | C] () -- D:\WINDOWS\System32\AUTOEXEC.NT
[2010.03.06 01:22:40 | 000,144,484 | ---- | C] () -- D:\WINDOWS\System32\dllcache\netfx.cat
[2010.03.06 01:22:40 | 000,112,918 | ---- | C] () -- D:\WINDOWS\System32\dllcache\tabletpc.cat
[2010.03.06 01:22:40 | 000,034,747 | ---- | C] () -- D:\WINDOWS\System32\dllcache\mediactr.cat
[2010.03.06 01:22:40 | 000,026,991 | ---- | C] () -- D:\WINDOWS\System32\dllcache\msn7.cat
[2010.03.06 01:22:40 | 000,014,433 | ---- | C] () -- D:\WINDOWS\System32\dllcache\msn9.cat
[2010.03.06 01:22:40 | 000,010,027 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MSTSWEB.CAT
[2010.03.06 01:22:40 | 000,007,382 | ---- | C] () -- D:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010.03.06 01:22:39 | 001,296,669 | ---- | C] () -- D:\WINDOWS\System32\dllcache\SP3.CAT
[2010.03.06 01:22:39 | 000,797,189 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010.03.06 01:22:39 | 000,399,645 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010.03.06 01:22:39 | 000,037,484 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MW770.CAT
[2010.03.06 01:22:39 | 000,034,063 | ---- | C] () -- D:\WINDOWS\System32\dllcache\FP4.CAT
[2010.03.06 01:22:39 | 000,016,535 | ---- | C] () -- D:\WINDOWS\System32\dllcache\IMS.CAT
[2010.03.06 01:22:39 | 000,013,472 | ---- | C] () -- D:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010.03.06 01:22:39 | 000,012,363 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MSMSGS.CAT
[2010.03.06 01:22:39 | 000,008,574 | ---- | C] () -- D:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010.03.06 01:22:39 | 000,007,334 | ---- | C] () -- D:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010.03.06 01:22:38 | 002,144,487 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5.CAT
[2010.03.06 01:22:38 | 000,522,220 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5INF.CAT
[2010.03.06 01:21:48 | 000,115,768 | ---- | C] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2010.03.06 01:20:17 | 000,000,261 | ---- | C] () -- D:\WINDOWS\System32\$winnt$.inf
[2010.03.06 01:14:48 | 000,077,824 | ---- | C] () -- D:\WINDOWS\System32\xvid.ax
[2010.03.06 01:00:49 | 000,056,832 | ---- | C] () -- D:\Documents and Settings\AdinaC\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.03.06 00:57:49 | 000,178,176 | ---- | C] () -- D:\WINDOWS\System32\unrar.dll
[2010.03.06 00:57:49 | 000,000,038 | ---- | C] () -- D:\WINDOWS\avisplitter.ini
[2010.03.06 00:57:48 | 000,000,414 | ---- | C] () -- D:\WINDOWS\System32\lame_acm.xml
[2010.03.06 00:57:47 | 000,815,104 | ---- | C] () -- D:\WINDOWS\System32\xvidcore.dll
[2010.03.06 00:57:47 | 000,180,224 | ---- | C] () -- D:\WINDOWS\System32\xvidvfw.dll
[2010.03.06 00:57:45 | 000,000,547 | ---- | C] () -- D:\WINDOWS\System32\ff_vfw.dll.manifest
[2010.03.06 00:57:44 | 000,085,504 | ---- | C] () -- D:\WINDOWS\System32\ff_vfw.dll
[2010.03.06 00:09:00 | 000,000,000 | ---- | C] () -- D:\WINDOWS\nsreg.dat
[2010.03.05 23:47:30 | 000,000,178 | -HS- | C] () -- D:\Documents and Settings\AdinaC\ntuser.ini
[2010.03.05 23:47:28 | 002,621,440 | -H-- | C] () -- D:\Documents and Settings\AdinaC\NTUSER.DAT
[2010.03.05 23:43:23 | 000,008,192 | ---- | C] () -- D:\WINDOWS\REGLOCS.OLD
[2010.03.05 23:41:58 | 000,002,048 | --S- | C] () -- D:\WINDOWS\bootstat.dat
[2010.03.05 23:41:43 | 000,028,288 | ---- | C] () -- D:\WINDOWS\System32\dllcache\xjis.nls
[2010.03.05 23:40:59 | 000,083,748 | ---- | C] () -- D:\WINDOWS\System32\dllcache\prcp.nls
[2010.03.05 23:40:58 | 000,083,748 | ---- | C] () -- D:\WINDOWS\System32\dllcache\prc.nls
[2010.03.05 23:40:52 | 000,175,104 | ---- | C] () -- D:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010.03.05 23:40:30 | 001,158,818 | ---- | C] () -- D:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010.03.05 23:40:30 | 000,047,066 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ksc.nls
[2010.03.05 23:40:19 | 000,059,392 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imscinst.exe
[2010.03.05 23:40:17 | 000,196,665 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imjpinst.exe
[2010.03.05 23:40:14 | 000,134,339 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imekr.lex
[2010.03.05 23:40:04 | 013,463,552 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010.03.05 23:39:59 | 000,108,827 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hanja.lex
[2010.03.05 23:39:54 | 000,094,208 | ---- | C] () -- D:\WINDOWS\System32\dllcache\fpencode.dll
[2010.03.05 23:39:39 | 000,173,568 | ---- | C] () -- D:\WINDOWS\System32\dllcache\chtskf.dll
[2010.03.05 23:39:35 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_864.nls
[2010.03.05 23:39:35 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_862.nls
[2010.03.05 23:39:35 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_858.nls
[2010.03.05 23:39:35 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_870.nls
[2010.03.05 23:39:34 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_720.nls
[2010.03.05 23:39:34 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_708.nls
[2010.03.05 23:39:34 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28596.nls
[2010.03.05 23:39:34 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_21027.nls
[2010.03.05 23:39:34 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_21025.nls
[2010.03.05 23:39:33 | 000,180,770 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20932.nls
[2010.03.05 23:39:33 | 000,177,698 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20949.nls
[2010.03.05 23:39:33 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20936.nls
[2010.03.05 23:39:33 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20924.nls
[2010.03.05 23:39:33 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20880.nls
[2010.03.05 23:39:33 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20871.nls
[2010.03.05 23:39:33 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20838.nls
[2010.03.05 23:39:32 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20833.nls
[2010.03.05 23:39:32 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20424.nls
[2010.03.05 23:39:32 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20423.nls
[2010.03.05 23:39:32 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20420.nls
[2010.03.05 23:39:32 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20297.nls
[2010.03.05 23:39:32 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20290.nls
[2010.03.05 23:39:32 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20285.nls
[2010.03.05 23:39:31 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20284.nls
[2010.03.05 23:39:31 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20280.nls
[2010.03.05 23:39:31 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20278.nls
[2010.03.05 23:39:31 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20277.nls
[2010.03.05 23:39:31 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20273.nls
[2010.03.05 23:39:31 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20269.nls
[2010.03.05 23:39:31 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20108.nls
[2010.03.05 23:39:30 | 000,187,938 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20005.nls
[2010.03.05 23:39:30 | 000,185,378 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20003.nls
[2010.03.05 23:39:30 | 000,180,258 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20004.nls
[2010.03.05 23:39:30 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20002.nls
[2010.03.05 23:39:30 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20107.nls
[2010.03.05 23:39:30 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20106.nls
[2010.03.05 23:39:30 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20105.nls
[2010.03.05 23:39:29 | 000,189,986 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1361.nls
[2010.03.05 23:39:29 | 000,186,402 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20001.nls
[2010.03.05 23:39:29 | 000,180,258 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20000.nls
[2010.03.05 23:39:29 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1149.nls
[2010.03.05 23:39:28 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1148.nls
[2010.03.05 23:39:28 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1147.nls
[2010.03.05 23:39:28 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1146.nls
[2010.03.05 23:39:28 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1145.nls
[2010.03.05 23:39:28 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1144.nls
[2010.03.05 23:39:28 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1143.nls
[2010.03.05 23:39:28 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1142.nls
[2010.03.05 23:39:28 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1141.nls
[2010.03.05 23:39:27 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10008.nls
[2010.03.05 23:39:27 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1140.nls
[2010.03.05 23:39:27 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1047.nls
[2010.03.05 23:39:27 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10021.nls
[2010.03.05 23:39:27 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10005.nls
[2010.03.05 23:39:27 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10004.nls
[2010.03.05 23:39:26 | 000,195,618 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10002.nls
[2010.03.05 23:39:26 | 000,177,698 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10003.nls
[2010.03.05 23:39:26 | 000,162,850 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10001.nls
[2010.03.05 23:39:25 | 000,082,172 | ---- | C] () -- D:\WINDOWS\System32\dllcache\bopomofo.nls
[2010.03.05 23:39:25 | 000,066,728 | ---- | C] () -- D:\WINDOWS\System32\dllcache\big5.nls
[2010.03.05 23:38:35 | 000,002,577 | ---- | C] () -- D:\WINDOWS\System32\CONFIG.NT
[2010.03.05 23:38:24 | 000,023,392 | ---- | C] () -- D:\WINDOWS\System32\nscompat.tlb
[2010.03.05 23:38:24 | 000,016,832 | ---- | C] () -- D:\WINDOWS\System32\amcompat.tlb
[2010.03.05 23:38:23 | 000,316,640 | ---- | C] () -- D:\WINDOWS\WMSysPr9.prx
[2010.03.05 23:37:04 | 000,000,488 | RH-- | C] () -- D:\WINDOWS\System32\WindowsLogon.manifest
[2010.03.05 23:37:04 | 000,000,488 | RH-- | C] () -- D:\WINDOWS\System32\logonui.exe.manifest
[2010.03.05 23:36:57 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010.03.05 23:36:57 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\WindowsShell.Manifest
[2010.03.05 23:36:57 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\sapi.cpl.manifest
[2010.03.05 23:36:57 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\nwc.cpl.manifest
[2010.03.05 23:36:57 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\ncpa.cpl.manifest
[2010.03.05 23:36:57 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\cdplayer.exe.manifest
[2010.03.05 23:36:35 | 004,399,505 | ---- | C] () -- D:\WINDOWS\System32\dllcache\nls302en.lex
[2010.03.05 23:36:13 | 000,048,680 | -HS- | C] () -- D:\WINDOWS\winnt256.bmp
[2010.03.05 23:36:13 | 000,048,680 | -HS- | C] () -- D:\WINDOWS\winnt.bmp
[2010.03.05 23:36:03 | 000,000,984 | ---- | C] () -- D:\WINDOWS\System32\dllcache\srframe.mmf
[2010.03.05 23:35:13 | 000,376,832 | ---- | C] () -- D:\WINDOWS\System32\dllcache\msinfo.dll
[2010.03.05 23:34:21 | 000,021,640 | ---- | C] () -- D:\WINDOWS\System32\emptyregdb.dat
[2010.03.05 23:33:14 | 000,065,832 | ---- | C] () -- D:\WINDOWS\Santa Fe Stucco.bmp
[2010.03.05 23:33:14 | 000,026,680 | ---- | C] () -- D:\WINDOWS\River Sumida.bmp
[2010.03.05 23:33:14 | 000,017,362 | ---- | C] () -- D:\WINDOWS\Rhododendron.bmp
[2010.03.05 23:33:14 | 000,009,522 | ---- | C] () -- D:\WINDOWS\Zapotec.bmp
[2010.03.05 23:33:13 | 000,065,978 | ---- | C] () -- D:\WINDOWS\Soap Bubbles.bmp
[2010.03.05 23:33:13 | 000,065,954 | ---- | C] () -- D:\WINDOWS\Prairie Wind.bmp
[2010.03.05 23:33:13 | 000,026,582 | ---- | C] () -- D:\WINDOWS\Greenstone.bmp
[2010.03.05 23:33:13 | 000,017,336 | ---- | C] () -- D:\WINDOWS\Gone Fishing.bmp
[2010.03.05 23:33:13 | 000,017,062 | ---- | C] () -- D:\WINDOWS\Coffee Bean.bmp
[2010.03.05 23:33:13 | 000,016,730 | ---- | C] () -- D:\WINDOWS\FeatherTexture.bmp
[2010.03.05 23:33:13 | 000,001,272 | ---- | C] () -- D:\WINDOWS\Blue Lace 16.bmp
[2010.03.05 23:33:12 | 000,093,702 | ---- | C] () -- D:\WINDOWS\System32\subrange.uce
[2010.03.05 23:33:12 | 000,060,458 | ---- | C] () -- D:\WINDOWS\System32\ideograf.uce
[2010.03.05 23:33:12 | 000,016,740 | ---- | C] () -- D:\WINDOWS\System32\shiftjis.uce
[2010.03.05 23:33:12 | 000,012,876 | ---- | C] () -- D:\WINDOWS\System32\korean.uce
[2010.03.05 23:33:12 | 000,008,484 | ---- | C] () -- D:\WINDOWS\System32\kanji_2.uce
[2010.03.05 23:33:12 | 000,006,948 | ---- | C] () -- D:\WINDOWS\System32\kanji_1.uce
[2010.03.05 23:33:11 | 000,024,006 | ---- | C] () -- D:\WINDOWS\System32\gb2312.uce
[2010.03.05 23:33:11 | 000,022,984 | ---- | C] () -- D:\WINDOWS\System32\bopomofo.uce
[2010.03.05 23:33:08 | 000,003,286 | ---- | C] () -- D:\WINDOWS\System32\tslabels.h
[2010.03.05 23:33:08 | 000,001,161 | ---- | C] () -- D:\WINDOWS\System32\usrlogon.cmd
[2010.03.05 23:33:07 | 000,000,768 | ---- | C] () -- D:\WINDOWS\System32\msdtcprf.h
[2010.03.05 23:32:59 | 000,063,488 | ---- | C] () -- D:\WINDOWS\System32\wmimgmt.msc
[2009.12.31 13:46:06 | 000,005,632 | ---- | C] () -- D:\Program Files\Thumbs.db
[2009.09.01 05:31:56 | 000,022,723 | ---- | C] () -- D:\WINDOWS\System32\ssp2ml3.dll
[2004.09.17 17:37:42 | 000,061,440 | ---- | C] () -- D:\WINDOWS\System32\vuins32.dll
[2003.01.07 15:05:08 | 000,002,695 | ---- | C] () -- D:\WINDOWS\System32\OUTLPERF.INI
[2001.09.21 06:00:38 | 000,040,960 | ---- | C] () -- D:\WINDOWS\System32\InTouchViewer.dll
[2001.09.21 05:59:38 | 000,094,208 | ---- | C] () -- D:\WINDOWS\System32\InTouchCOMClient.dll
[2001.09.17 09:49:22 | 000,421,888 | R--- | C] () -- D:\WINDOWS\System32\XMLParser.dll
[2001.09.17 09:49:22 | 000,073,728 | R--- | C] () -- D:\WINDOWS\System32\UNACEV2.DLL
[2001.09.17 09:49:20 | 000,573,440 | R--- | C] () -- D:\WINDOWS\System32\dbsock.dll
[2001.09.17 09:49:20 | 000,118,784 | R--- | C] () -- D:\WINDOWS\System32\Transport.dll
[2001.09.17 09:48:54 | 000,503,808 | R--- | C] () -- D:\WINDOWS\System32\lt_xtrans.dll
[2001.09.17 09:48:54 | 000,286,720 | R--- | C] () -- D:\WINDOWS\System32\MrSIDD.dll
[2001.09.17 09:48:54 | 000,163,840 | R--- | C] () -- D:\WINDOWS\System32\lt_common.dll
[2001.09.17 09:48:54 | 000,126,976 | R--- | C] () -- D:\WINDOWS\System32\lt_trans.dll
[2001.09.17 09:48:54 | 000,069,632 | R--- | C] () -- D:\WINDOWS\System32\lt_meta.dll
[2001.09.17 09:48:54 | 000,053,248 | R--- | C] () -- D:\WINDOWS\System32\lt_encrypt.dll
[2001.09.17 09:48:54 | 000,020,480 | R--- | C] () -- D:\WINDOWS\System32\lt_messagetext.dll
[2001.09.17 09:48:52 | 000,006,688 | R--- | C] () -- D:\WINDOWS\System32\Digita.sys
[2001.09.17 09:48:48 | 000,049,152 | R--- | C] () -- D:\WINDOWS\System32\TransportUSB.dll
[2001.09.17 09:48:48 | 000,049,152 | R--- | C] () -- D:\WINDOWS\System32\TransportSerial.dll
[2001.09.17 09:48:48 | 000,049,152 | R--- | C] () -- D:\WINDOWS\System32\TransportIrDA.dll
[2001.09.17 09:48:48 | 000,049,152 | R--- | C] () -- D:\WINDOWS\System32\TransportIrCOMM.dll

========== LOP Check ==========

[2010.03.05 23:54:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\ACD Systems
[2010.03.06 02:54:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\Auslogics
[2010.03.06 00:24:06 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\BSplayer Pro
[2010.03.06 02:30:48 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\Mp3tag
[2010.03.06 01:58:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\Nokia
[2010.03.06 01:58:14 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\PC Suite
[2010.03.10 23:23:04 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\QuickScan
[2010.03.06 02:58:32 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\TuneUp Software
[2010.03.07 03:24:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\AdinaC\Application Data\Uniblue
[2010.03.06 02:21:56 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\ACD Systems
[2010.03.06 03:09:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Autorun Eater
[2010.03.07 02:29:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\CrystalIdea Software
[2010.03.07 03:25:52 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\DriverScanner
[2010.03.06 02:02:32 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Installations
[2010.03.06 01:56:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\PC Suite
[2010.03.06 02:59:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\TuneUp Software
[2010.03.07 03:24:59 | 000,000,000 | -H-D | M] -- D:\Documents and Settings\All Users\Application Data\{66E2F539-12B6-4870-A500-7689CDE75C5E}
[2010.03.06 02:55:19 | 000,000,000 | -HSD | M] -- D:\Documents and Settings\All Users\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.exe >


< MD5 for: AGP440.SYS >
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys

< MD5 for: ATAPI.SYS >
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- D:\WINDOWS\system32\drivers\atapi.sys

< MD5 for: EVENTLOG.DLL >
[2008.04.14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- D:\WINDOWS\system32\dllcache\eventlog.dll
[2008.04.14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- D:\WINDOWS\system32\eventlog.dll

< MD5 for: NETLOGON.DLL >
[2008.04.14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- D:\WINDOWS\system32\dllcache\netlogon.dll
[2008.04.14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- D:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2008.04.14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- D:\WINDOWS\system32\dllcache\scecli.dll
[2008.04.14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- D:\WINDOWS\system32\scecli.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2009.03.08 04:31:44 | 000,348,160 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- D:\WINDOWS\system32\dxtmsft.dll
[2009.03.08 04:31:38 | 000,216,064 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- D:\WINDOWS\system32\dxtrans.dll
[2009.12.21 21:14:03 | 000,184,320 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- D:\WINDOWS\system32\iepeers.dll
[1 D:\WINDOWS\system32\*.tmp files -> D:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2010.03.06 01:20:20 | 000,094,208 | ---- | M] () -- D:\WINDOWS\system32\config\default.sav
[2010.03.06 01:20:20 | 001,089,536 | ---- | M] () -- D:\WINDOWS\system32\config\software.sav
[2010.03.06 01:20:20 | 000,897,024 | ---- | M] () -- D:\WINDOWS\system32\config\system.sav
< End of report >

OTL Extras logfile created on: 10.03.2010 23:38:42 - Run 1
OTL by OldTimer - Version 3.1.36.0 Folder = D:\Documents and Settings\AdinaC\My Documents\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000418 | Country: Romania | Language: ROM | Date Format: dd.MM.yyyy

1,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 44,00% Memory free
3,00 Gb Paging File | 2,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): D:\pagefile.sys 1872 3744 [binary data]

%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files
Drive C: | 9,77 Gb Total Space | 4,60 Gb Free Space | 47,05% Space Free | Partition Type: NTFS
Drive D: | 232,88 Gb Total Space | 30,50 Gb Free Space | 13,10% Space Free | Partition Type: NTFS
Drive E: | 13,67 Gb Total Space | 10,36 Gb Free Space | 75,76% Space Free | Partition Type: NTFS
Drive F: | 13,66 Gb Total Space | 8,51 Gb Free Space | 62,28% Space Free | Partition Type: FAT32
Drive G: | 1,17 Gb Total Space | 0,37 Gb Free Space | 31,77% Space Free | Partition Type: FAT32
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: NAMCO-008BC6E8A
Current User Name: AdinaC
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- D:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "D:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "D:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger -- (Yahoo! Inc.)
"E:\StrongDC++\StrongDC.exe" = E:\StrongDC++\StrongDC.exe:*:Enabled:StrongDC++ -- ()


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00300409-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Proofing Tools Disc 1
"{0F9196C6-58B4-445B-B56E-B1200FECC151}" = Microsoft Bootvis
"{19DC9559-9C20-4A46-A67D-7ECBA52A2788}" = Nokia PC Suite
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86
"{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1" = Media Player Classic - Home Cinema v. 1.3.1249.0
"{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java™ 6 Update 18
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = McAfee SiteAdvisor
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6E0352EE-6F0D-4FBC-B1B8-4FF032C78BE0}" = PC Connectivity Solution
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{92E64C51-5096-442F-9A44-61CB2941391D}" = ACDSee 4.0 PowerPack Suite
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A654A805-41D9-40C7-AA46-4AF04F044D61}" = Adobe® Photoshop® Album Starter Edition 3.2
"{AAF80000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 8.0 Professional Edition
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.1
"{C427E746-4EC9-4E3C-AACB-C6BB1F714D7F}" = Uniblue DriverScanner 2009
"{C50EF365-2898-489A-B6C7-30DAA466E9A2}" = Nokia Connectivity Cable Driver
"{C51305DD-E4F5-4F13-80C7-633A71A2A50C}_is1" = AutoCorect 3 Beta 2
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
"{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}" = TuneUp Utilities
"{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"{FE3997D3-6B56-4AC4-A99C-9DDFC45359BF}" = TuneUp Utilities Language Pack (en-US)
"05B59228C7E1C21DFBE89260F879BD95880548D8" = Windows Driver Package - Nokia Modem (10/05/2009 4.2)
"504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"8CDCFB95BB84DD9C0F88F22266A0CA86035E55BA" = Windows Driver Package - Nokia Modem (06/01/2009 7.01.0.4)
"AC3Filter_is1" = AC3Filter 1.63b
"ActiveScan 2.0" = Panda ActiveScan 2.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe® Photoshop® Album Starter Edition 3.2" = Adobe® Photoshop® Album Starter Edition 3.2
"Autorun Eater_is1" = Autorun Eater v2.4
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"CCleaner" = CCleaner
"CoreAVCDec1.6.5.0" = CoreAVC 1.6.5.0 DirectShow Video Decoder
"ERUNT_is1" = ERUNT 1.1j
"ie8" = Windows Internet Explorer 8
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform Device Manager
"KLiteCodecPack_is1" = K-Lite Codec Pack 5.7.5 (Full)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mozilla Firefox (3.6)" = Mozilla Firefox (3.6)
"Mp3tag" = Mp3tag v2.45d
"Nokia PC Suite" = Nokia PC Suite
"PhotoScape" = PhotoScape
"S3" = UniChrome IGP Driver and Utilities
"TuneUp Utilities" = TuneUp Utilities
"Uniblue DriverScanner 2009" = Uniblue DriverScanner 2009
"Uninstall Tool_is1" = Uninstall Tool
"VN_VUIns_Rhine_VIA" = VIA Rhine-Family Fast Ethernet Adapter
"VTDisplay" = S3 S3Display
"VTGamma2" = S3 S3Gamma2
"VTInfo2" = S3 S3Info2
"VTOverlay" = S3 S3Overlay
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"WinRAR archiver" = WinRAR archiver
"Xvid_is1" = Xvid 1.2.1 final uninstall
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 05.03.2010 20:11:49 | Computer Name = NAMCO-008BC6E8A | Source = MsiInstaller | ID = 11500
Description = Product: Java™ 6 Update 18 -- Error 1500.Another installation is
in progress. You must complete that installation before continuing this one.

Error - 06.03.2010 09:06:57 | Computer Name = NAMCO-008BC6E8A | Source = Application Hang | ID = 1002
Description = Hanging application WINWORD.EXE, version 11.0.8313.0, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

Error - 06.03.2010 09:07:15 | Computer Name = NAMCO-008BC6E8A | Source = Microsoft Office 11 | ID = 2001
Description = Rejected Safe Mode action : Microsoft Office Word.

Error - 06.03.2010 09:07:37 | Computer Name = NAMCO-008BC6E8A | Source = Application Hang | ID = 1001
Description = Fault bucket 1553636449.

Error - 06.03.2010 13:30:37 | Computer Name = NAMCO-008BC6E8A | Source = MsiInstaller | ID = 10005
Description = Product: Microsoft Office 2003 Proofing Tools -- Error 25090. Office
Setup encountered a problem with the Office Source Engine, system error: -2147023179.
Please open D:\Program Files\Microsoft Office\OFFICE11\1033\SETUP.CHM and look
for "Office Source Engine" for information on how to resolve this problem.

Error - 07.03.2010 08:24:52 | Computer Name = NAMCO-008BC6E8A | Source = MsiInstaller | ID = 10005
Description = Product: SUPERAntiSpyware Free Edition -- Internal Error 2753. SUPERAntiSpyware.exe

Error - 10.03.2010 17:11:15 | Computer Name = NAMCO-008BC6E8A | Source = Application Error | ID = 1000
Description = Faulting application yahoomessenger.exe, version 10.0.0.1241, faulting
module unknown, version 0.0.0.0, fault address 0x09798e25.

Error - 10.03.2010 17:11:19 | Computer Name = NAMCO-008BC6E8A | Source = Application Error | ID = 1001
Description = Fault bucket 1752232066.

[ System Events ]
Error - 05.03.2010 22:12:47 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 05.03.2010 22:12:49 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 05.03.2010 22:12:50 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 05.03.2010 22:12:52 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 05.03.2010 22:12:54 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 05.03.2010 22:12:56 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 05.03.2010 22:12:57 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 05.03.2010 22:12:59 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 05.03.2010 22:13:00 | Computer Name = NAMCO-008BC6E8A | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.

Error - 07.03.2010 10:13:46 | Computer Name = NAMCO-008BC6E8A | Source = Service Control Manager | ID = 7000
Description = The SASDIFSV service failed to start due to the following error: %%183


< End of report >
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP