The other day windows firewall popped up telling me it was blocking a incoming ip ever since that my laptop has been going slow
02/09/2010 19:48:05
mbam-log-2010-09-02 (19-48-05).txt
Scan type: Quick scan
Objects scanned: 142300
Time elapsed: 12 minute(s), 54 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
OTL logfile created on: 02/09/2010 19:33:30 - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Users\LENOVO\Desktop
Windows Vista Business Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18943)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 41.00% Memory free
4.00 Gb Paging File | 2.00 Gb Available in Paging File | 43.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 126.10 Gb Total Space | 79.05 Gb Free Space | 62.69% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive Q: | 21.49 Gb Total Space | 15.98 Gb Free Space | 74.38% Space Free | Partition Type: NTFS
Drive S: | 1.46 Gb Total Space | 0.69 Gb Free Space | 47.08% Space Free | Partition Type: NTFS
Computer Name: LENOVO-PC
Current User Name: LENOVO
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Minimal
Quick Scan
========== Processes (SafeList) ==========
PRC - C:\Users\LENOVO\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Users\LENOVO\AppData\Local\Google\Update\1.2.183.29\GoogleCrashHandler.exe (Google Inc.)
PRC - C:\Windows\System32\Adobe\Shockwave 11\SwHelper_1158612.exe (Adobe Systems, Inc.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Users\LENOVO\Desktop\New Folder\bot v2\MSN Bot Panel.exe ()
PRC - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
PRC - C:\Program Files\ManyCam 2.4\ManyCam.exe (ManyCam LLC)
PRC - C:\Program Files\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation)
PRC - C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe (Lenovo Group Limited)
PRC - C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe ()
PRC - C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe (Lenovo)
PRC - C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe (Lenovo)
PRC - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe (Lenovo)
PRC - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe (Lenovo)
PRC - C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe (Lenovo)
PRC - C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe (Lenovo)
PRC - C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe (Lenovo Group Limited)
PRC - C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe (Lenovo Group Limited)
PRC - C:\Windows\System32\ibmpmsvc.exe (Lenovo)
PRC - C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe (Lenovo Group Limited)
PRC - C:\Program Files\Lenovo\ZOOM\TpScrex.exe (Lenovo Group Limited)
PRC - C:\Program Files\Lenovo\Client Security Solution\password_manager.exe (Lenovo Group Limited)
PRC - C:\Program Files\Lenovo\Client Security Solution\cssauth.exe (Lenovo Group Limited)
PRC - C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe (Lenovo)
PRC - C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe (Lenovo Group Limited)
PRC - C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Synaptics Incorporated)
PRC - C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel® Corporation)
PRC - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation)
PRC - C:\Windows\System32\TpShocks.exe (Lenovo.)
PRC - C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe (Lenovo Group Limited)
PRC - C:\Windows\System32\TPHDEXLG.exe (Lenovo.)
PRC - C:\Program Files\ThinkVantage\PrdCtr\LPMGR.EXE (Lenovo Group Limited)
PRC - C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE (Lenovo Group Limited)
PRC - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corp.)
PRC - C:\Program Files\ShortKeys2\shortkey.exe (Insight Software Solutions)
PRC - C:\Windows\System32\DTS.exe ()
PRC - C:\Windows\System32\AtService.exe (AuthenTec, Inc.)
PRC - C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE (Lenovo Group Ltd.)
PRC - C:\Windows\System32\Macromed\Flash\FlashUtil10a.exe (Adobe Systems, Inc.)
PRC - C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe (Lenovo Group Limited)
PRC - C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe (Lenovo Group Limited)
PRC - C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe (Lenovo Group Limited)
PRC - C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe ()
PRC - C:\Windows\System32\PING.EXE (Microsoft Corporation)
PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - C:\Program Files\DDNI\SBITS\DDNIOEMService.exe (Digital Delivery Networks, Inc.)
PRC - C:\Program Files\Lenovo\Drag-to-Disc\DrgToDsc.exe (Roxio)
PRC - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (InterVideo)
PRC - C:\Program Files\Digital Line Detect\DLG.exe (Avanquest Software )
========== Modules (SafeList) ==========
MOD - C:\Users\LENOVO\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\System32\WindowsCodecs.dll (Microsoft Corporation)
MOD - C:\Windows\System32\msshsq.dll (Microsoft Corporation)
MOD - C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll (Microsoft Corporation)
MOD - C:\Windows\System32\duser.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cscapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\actxprxy.dll (Microsoft Corporation)
MOD - C:\Windows\System32\rsaenh.dll (Microsoft Corporation)
MOD - C:\Windows\System32\SLC.dll (Microsoft Corporation)
MOD - C:\Windows\System32\msscript.ocx (Microsoft Corporation)
MOD - C:\Windows\System32\networkexplorer.dll (Microsoft Corporation)
MOD - C:\Windows\System32\thumbcache.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (avast! Web Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (avast! Mail Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (fsssvc) -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe (Microsoft Corporation)
SRV - (AcSvc) -- C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe (Lenovo)
SRV - (AcPrfMgrSvc) -- C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe (Lenovo)
SRV - (Power Manager DBC Service) -- C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE (Lenovo)
SRV - (TPHKSVC) -- C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe (Lenovo Group Limited)
SRV - (LENOVO.MICMUTE) -- C:\Program Files\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited)
SRV - (IBMPMSVC) -- C:\Windows\System32\ibmpmsvc.exe (Lenovo)
SRV - (TSSCoreService) -- C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe (Lenovo)
SRV - (ThinkVantage Registry Monitor Service) -- C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe (Lenovo Group Limited)
SRV - (EvtEng) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel® Corporation)
SRV - (MyWiFiDHCPDNS) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ()
SRV - (RegSrvc) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation)
SRV - (TPHDEXLGSVC) -- C:\Windows\System32\TPHDEXLG.exe (Lenovo.)
SRV - (SeaPort) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corp.)
SRV - (dtsvc) -- C:\Windows\System32\DTS.exe ()
SRV - (ADMonitor) -- C:\Windows\System32\ADMonitor.exe ()
SRV - (ATService) -- C:\Windows\System32\AtService.exe (AuthenTec, Inc.)
SRV - (TVT_UpdateMonitor) -- C:\Program Files\Lenovo\Rescue and Recovery\UpdateMonitor.exe (Lenovo Group Limited)
SRV - (TVT Scheduler) -- C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe (Lenovo Group Limited)
SRV - (TVT Backup Service) -- C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe (Lenovo Group Limited)
SRV - (TVT Backup Protection Service) -- C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe ()
SRV - (RoxMediaDB10) -- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe (Sonic Solutions)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (DDNIOEMService) -- C:\Program Files\DDNI\SBITS\DDNIOEMService.exe (Digital Delivery Networks, Inc.)
SRV - (IviRegMgr) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (InterVideo)
========== Driver Services (SafeList) ==========
DRV - (NwlnkFwd) -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys File not found
DRV - (NwlnkFlt) -- C:\Windows\System32\DRIVERS\nwlnkflt.sys File not found
DRV - (IpInIp) -- C:\Windows\System32\DRIVERS\ipinip.sys File not found
DRV - (vmm) -- C:\Windows\System32\drivers\VMM.sys (Microsoft Corporation)
DRV - (tvtfilter) -- C:\Windows\System32\drivers\tvtfilter.sys (Lenovo)
DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.)
DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.)
DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.)
DRV - (aswTdi) -- C:\Windows\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (aswSP) -- C:\Windows\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswRdr) -- C:\Windows\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswMonFlt) -- C:\Windows\System32\drivers\aswMonFlt.sys (ALWIL Software)
DRV - (aswFsBlk) -- C:\Windows\System32\drivers\aswFsBlk.sys (ALWIL Software)
DRV - (fssfltr) -- C:\Windows\System32\drivers\fssfltr.sys (Microsoft Corporation)
DRV - (TPPWRIF) -- C:\Windows\System32\drivers\TPPWR32V.SYS (Lenovo Group Limited)
DRV - (IBMPMDRV) -- C:\Windows\System32\drivers\ibmpmdrv.sys (Lenovo.)
DRV - (SynTP) -- C:\Windows\System32\drivers\SynTP.sys (Synaptics Incorporated)
DRV - (iaStor) -- C:\Windows\system32\DRIVERS\iaStor.sys (Intel Corporation)
DRV - (MUXP) -- C:\Windows\System32\drivers\mux.sys (Intel© Corporation)
DRV - (MUXMP) -- C:\Windows\System32\drivers\mux.sys (Intel© Corporation)
DRV - (NETw5v32) Intel® -- C:\Windows\System32\drivers\NETw5v32.sys (Intel Corporation)
DRV - (CnxtHdAudService) -- C:\Windows\System32\drivers\CHDRT32.sys (Conexant Systems Inc.)
DRV - (Shockprf) -- C:\Windows\System32\DRIVERS\Apsx86.sys (Lenovo.)
DRV - (TPDIGIMN) -- C:\Windows\System32\DRIVERS\ApsHM86.sys (Lenovo.)
DRV - (ATSwpWDF) -- C:\Windows\System32\drivers\ATSwpWDF.sys (AuthenTec, Inc.)
DRV - (psadd) -- C:\Windows\System32\drivers\psadd.sys (Lenovo (United States) Inc.)
DRV - (amdkmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (amdkmdap) -- C:\Windows\System32\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV - (e1yexpress) Intel® -- C:\Windows\System32\drivers\e1y6032.sys (Intel Corporation)
DRV - (tvtumon) -- C:\Windows\System32\drivers\tvtumon.sys (Lenovo)
DRV - (intelkmd) -- C:\Windows\System32\drivers\igdkmd32.sys (Intel Corporation)
DRV - (lenovo.smi) -- C:\Windows\System32\drivers\smiif32.sys (Lenovo Group Limited)
DRV - (WimFltr) -- C:\Windows\System32\drivers\WimFltr.sys (Microsoft Corporation)
DRV - (HECI) Intel® -- C:\Windows\System32\drivers\HECI.sys (Intel Corporation)
DRV - (HSF_DPV) -- C:\Windows\System32\drivers\HSX_DPV.sys (Conexant Systems, Inc.)
DRV - (HSXHWAZL) -- C:\Windows\System32\drivers\HSXHWAZL.sys (Conexant Systems, Inc.)
DRV - (winachsf) -- C:\Windows\System32\drivers\HSX_CNXT.sys (Conexant Systems, Inc.)
DRV - (TVTI2C) -- C:\Windows\System32\drivers\tvti2c.sys (Lenovo (United States) Inc.)
DRV - (MegaSR) -- C:\Windows\system32\drivers\megasr.sys (LSI Corporation, Inc.)
DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.)
DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems)
DRV - (TPM) -- C:\Windows\System32\drivers\tpm.sys (Microsoft Corporation)
DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company)
DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Corporation)
DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.)
DRV - (e1express) Intel® -- C:\Windows\System32\drivers\e1e6032.sys (Intel Corporation)
DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.)
DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic)
DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation)
DRV - (E1G60) Intel® -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)
DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.)
DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic)
DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.)
DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation)
DRV - (HSFHWAZL) -- C:\Windows\System32\drivers\VSTAZL3.SYS (Conexant Systems, Inc.)
DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic)
DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex)
DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.)
DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.)
DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation)
DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation)
DRV - (ManyCam) -- C:\Windows\System32\drivers\ManyCam.sys (ManyCam LLC.)
DRV - (XAudio) -- C:\Windows\System32\drivers\XAudio.sys (Conexant Systems, Inc.)
DRV - (DLADResM) -- C:\Windows\System32\DLA\DLADResM.SYS (Roxio)
DRV - (DLABMFSM) -- C:\Windows\System32\DLA\DLABMFSM.SYS (Roxio)
DRV - (DLAUDFAM) -- C:\Windows\System32\DLA\DLAUDFAM.SYS (Roxio)
DRV - (DLAUDF_M) -- C:\Windows\System32\DLA\DLAUDF_M.SYS (Roxio)
DRV - (DLAOPIOM) -- C:\Windows\System32\DLA\DLAOPIOM.SYS (Roxio)
DRV - (DLABOIOM) -- C:\Windows\System32\DLA\DLABOIOM.SYS (Roxio)
DRV - (DLAPoolM) -- C:\Windows\System32\DLA\DLAPoolM.SYS (Roxio)
DRV - (DLAIFS_M) -- C:\Windows\System32\DLA\DLAIFS_M.SYS (Roxio)
DRV - (DRVMCDB) -- C:\Windows\System32\Drivers\DRVMCDB.SYS (Sonic Solutions)
DRV - (DRVNDDM) -- C:\Windows\System32\drivers\DRVNDDM.SYS (Roxio)
DRV - (DLARTL_M) -- C:\Windows\System32\drivers\DLARTL_M.SYS (Roxio)
DRV - (DLACDBHM) -- C:\Windows\System32\drivers\DLACDBHM.SYS (Roxio)
DRV - (VPCNetS2) -- C:\Windows\System32\drivers\VMNetSrv.sys (Microsoft Corporation)
DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation)
DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.)
DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation)
DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.)
DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.)
DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.)
DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic)
DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic)
DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation)
DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.)
DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.)
DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.)
DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.live.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.co.uk/0...S01?FORM=TOOLBR
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
O1 HOSTS File: ([2006/09/18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll (Microsoft Corp.)
O2 - BHO: (IePasswordManagerHelper Class) - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll (Lenovo Group Limited)
O2 - BHO: (Search-Results Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Search-Results)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Search-Results Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Search-Results)
O3 - HKCU\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (Search-Results Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Search-Results)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe (Lenovo)
O4 - HKLM..\Run: [ACWlIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe (Lenovo)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [BLOG] C:\Program Files\ThinkPad\Utilities\BTVLOGEX.DLL ()
O4 - HKLM..\Run: [CreateLMBCShortCut] C:\Program Files\Lenovo\Mobile Broadband Connect\UserShortcutCreator.exe ()
O4 - HKLM..\Run: [cssauth] C:\Program Files\Lenovo\Client Security Solution\cssauth.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [EZEJMNAP] C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE (Lenovo Group Ltd.)
O4 - HKLM..\Run: [FingerPrintSoftware] C:\Program Files\Lenovo Fingerprint Software\fpapp.exe (AuthenTec)
O4 - HKLM..\Run: [LENOVO.TPFNF6R] C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [LPMailChecker] C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE (Lenovo Group Limited)
O4 - HKLM..\Run: [LPManager] C:\Program Files\ThinkVantage\PrdCtr\LPMGR.EXE (Lenovo Group Limited)
O4 - HKLM..\Run: [Message Center Plus] C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe ()
O4 - HKLM..\Run: [PWMTRV] C:\Program Files\ThinkPad\Utilities\PWMTR32V.DLL (Lenovo Group Limited)
O4 - HKLM..\Run: [RoxioDragToDisc] C:\Program Files\Lenovo\Drag-to-Disc\DrgToDsc.exe (Roxio)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [TPFNF7] C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [TpShocks] C:\Windows\System32\TpShocks.exe (Lenovo.)
O4 - HKLM..\Run: [TVT Scheduler Proxy] C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [ManyCam] C:\Program Files\ManyCam 2.4\ManyCam.exe (ManyCam LLC)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - Startup: C:\Users\LENOVO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShortKeys 2.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll (Lenovo Group Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\Windows\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\SWTOOLS\Wallpaper\1600x1200-Thinkdots.jpg
O24 - Desktop BackupWallPaper: C:\SWTOOLS\Wallpaper\1600x1200-Thinkdots.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2008/06/10 17:32:46 | 000,000,049 | -HS- | M] () - Q:\AUTORUN.INF -- [ NTFS ]
O32 - AutoRun File - [2008/06/02 23:46:54 | 000,000,049 | -HS- | M] () - S:\AUTORUN.INF -- [ NTFS ]
O33 - MountPoints2\{4a81fea3-a096-11df-9871-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{4a81fea3-a096-11df-9871-806e6f6e6963}\Shell\AutoRun\command - "" = Q:\LenovoQDrive.exe -- [2008/07/21 17:09:40 | 000,262,144 | -HS- | M] (Lenovo Group Limited)
O33 - MountPoints2\{b876d564-a08e-11df-924e-b752416b2d89}\Shell - "" = AutoRun
O33 - MountPoints2\{b876d564-a08e-11df-924e-b752416b2d89}\Shell\AutoRun\command - "" = S:\LenovoSDrive.exe -- [2008/07/29 23:37:58 | 000,180,224 | -HS- | M] ()
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.siren - C:\Windows\System32\sirenacm.dll (Microsoft Corporation)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 90 Days ==========
[2010/09/02 19:31:31 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Users\LENOVO\Desktop\OTL.exe
[2010/09/02 15:18:08 | 000,679,936 | ---- | C] (Generated by JEDI) -- C:\Windows\System32\D3DX81ab.dll
[2010/09/02 15:18:08 | 000,000,000 | ---D | C] -- C:\Program Files\Cheat Engine
[2010/09/02 14:29:05 | 000,000,000 | ---D | C] -- C:\Windows\LastGood
[2010/09/02 14:28:29 | 000,000,000 | ---D | C] -- C:\Program Files\ManyCam 2.4
[2010/09/02 14:28:29 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\ManyCam
[2010/09/02 14:28:22 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2010/09/02 12:15:09 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Desktop\Shortkeys folder
[2010/09/02 01:58:39 | 000,065,536 | ---- | C] ( ) -- C:\Users\LENOVO\Desktop\Interop.MessengerAPI.dll
[2010/09/02 01:47:45 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Desktop\ShadowNL's Msn Freezer 1.0
[2010/09/02 01:16:51 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\Malwarebytes
[2010/09/02 01:15:28 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/09/02 01:15:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010/09/02 01:15:26 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/09/02 01:15:26 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/09/02 00:10:49 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Documents\My Chat Logs
[2010/09/02 00:05:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Messenger Plus!
[2010/09/02 00:04:50 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger Plus! Live
[2010/09/01 23:55:00 | 000,000,000 | ---D | C] -- C:\Program Files\QS
[2010/09/01 23:54:58 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\TeamViewer
[2010/09/01 23:41:29 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Desktop\New Folder
[2010/09/01 23:30:23 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Desktop\bot v2
[2010/08/30 00:41:47 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\Apple Computer
[2010/08/30 00:41:47 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Apple Computer
[2010/08/30 00:40:20 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2010/08/30 00:40:17 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2010/08/30 00:40:17 | 000,000,000 | ---D | C] -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010/08/30 00:38:31 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2010/08/30 00:38:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2010/08/30 00:37:59 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Apple
[2010/08/30 00:37:44 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2010/08/30 00:34:38 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2010/08/30 00:34:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2010/08/30 00:34:13 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2010/08/27 15:11:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works
[2010/08/27 15:11:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2010/08/27 15:10:51 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2010/08/27 15:08:32 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Microsoft Help
[2010/08/27 15:08:19 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2010/08/27 15:08:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2010/08/27 15:07:40 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2010/08/26 19:07:32 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Adobe
[2010/08/26 18:30:55 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Google
[2010/08/26 18:30:42 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Deployment
[2010/08/26 18:30:42 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Apps
[2010/08/26 14:33:54 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2010/08/26 00:25:24 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Roblox
[2010/08/25 23:14:51 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Documents\My Virtual Machines
[2010/08/25 23:14:13 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\WinRAR
[2010/08/25 22:43:29 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010/08/25 19:54:10 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Insight Software Solutions
[2010/08/25 19:54:10 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Insight Software
[2010/08/25 19:54:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Insight Software
[2010/08/25 19:54:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Insight Software Solutions
[2010/08/25 19:54:06 | 000,000,000 | ---D | C] -- C:\Program Files\ShortKeys2
[2010/08/25 19:04:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\Adobe
[2010/08/25 18:58:00 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Documents\My Received Files
[2010/08/25 18:49:39 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Virtual PC
[2010/08/25 18:34:05 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Tracing
[2010/08/25 18:32:54 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2010/08/25 18:32:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2010/08/25 18:31:51 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Documents\Insight Software
[2010/08/25 18:30:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Insight Software Solutions
[2010/08/25 18:30:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Sync Framework
[2010/08/25 18:28:22 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2010/08/25 18:26:41 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2010/08/25 18:26:27 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2010/08/25 18:26:21 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live SkyDrive
[2010/08/25 18:26:04 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2010/08/25 18:25:52 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2010/08/25 18:20:44 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Windows Live
[2010/08/25 17:07:19 | 000,017,744 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2010/08/25 17:07:18 | 000,165,456 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswSP.sys
[2010/08/25 17:07:18 | 000,046,672 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2010/08/25 17:07:18 | 000,023,376 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2010/08/25 17:07:17 | 000,050,256 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2010/08/25 17:06:46 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\Windows\avastSS.scr
[2010/08/25 17:06:45 | 000,165,032 | ---- | C] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2010/08/25 17:06:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Alwil Software
[2010/08/25 17:06:38 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2010/08/25 17:00:47 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\Macromedia
[2010/08/25 17:00:42 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\Adobe
[2010/08/08 12:31:10 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\InterVideo
[2010/08/05 22:58:00 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Roxio
[2010/08/05 22:57:55 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\ATI
[2010/08/05 22:57:55 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\ATI
[2010/08/05 22:57:55 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2010/08/05 22:57:36 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\Lenovo
[2010/08/05 22:57:26 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Searches
[2010/08/05 22:57:20 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Roaming\Identities
[2010/08/05 22:57:18 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Contacts
[2010/08/05 22:55:25 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live Toolbar
[2010/08/05 22:52:56 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\VirtualStore
[2010/08/05 22:50:51 | 000,000,000 | --SD | C] -- C:\Users\LENOVO\AppData\Roaming\Microsoft
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Videos
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Saved Games
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Pictures
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Music
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Links
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Favorites
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Downloads
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Documents
[2010/08/05 22:50:51 | 000,000,000 | R--D | C] -- C:\Users\LENOVO\Desktop
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\AppData\Local\Temporary Internet Files
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Templates
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Start Menu
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\SendTo
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Recent
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\PrintHood
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\NetHood
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Documents\My Videos
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Documents\My Pictures
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Documents\My Music
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\My Documents
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Local Settings
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\AppData\Local\History
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Cookies
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\Application Data
[2010/08/05 22:50:51 | 000,000,000 | -HSD | C] -- C:\Users\LENOVO\AppData\Local\Application Data
[2010/08/05 22:50:51 | 000,000,000 | -H-D | C] -- C:\Users\LENOVO\AppData
[2010/08/05 22:50:51 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Temp
[2010/08/05 22:50:51 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\Roaming
[2010/08/05 22:50:51 | 000,000,000 | ---D | C] -- C:\Users\LENOVO\AppData\Local\Microsoft
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\zh-TW
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\zh-HK
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\zh-CN
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\uk-UA
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\tr-TR
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\th-TH
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\sv-SE
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\sr-Latn-CS
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\sl-SI
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\sk-SK
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\ru-RU
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\ro-RO
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\pt-PT
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\pt-BR
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\pl-PL
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\nl-NL
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\nb-NO
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\lv-LV
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\lt-LT
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\ko-KR
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\ja-JP
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\it-IT
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\hu-HU
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\hr-HR
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\he-IL
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\fr-FR
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\fi-FI
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\et-EE
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\es-ES
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\el-GR
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\de-DE
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\da-DK
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\cs-CZ
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\bg-BG
[2010/08/05 15:15:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\ar-SA
[2010/08/05 15:13:41 | 000,000,000 | ---D | C] -- C:\ProgramData\DDNI
[2010/08/05 15:13:41 | 000,000,000 | ---D | C] -- C:\Program Files\DDNI
[2010/08/05 15:12:34 | 000,000,000 | ---D | C] -- C:\Program Files\Digital Line Detect
[2010/08/05 15:12:30 | 000,000,000 | ---D | C] -- C:\Program Files\NetWaiting
[2010/08/05 15:10:36 | 000,000,000 | RHSD | C] -- C:\RRbackups
[2010/08/05 15:07:54 | 000,000,000 | ---D | C] -- C:\Windows\Downloaded Installations
[2010/08/05 15:07:48 | 000,000,000 | ---D | C] -- C:\Program Files\Verizon Wireless
[2010/08/05 15:07:29 | 000,000,000 | ---D | C] -- C:\ProgramData\PC-Doctor for Windows
[2010/08/05 15:07:27 | 000,000,000 | ---D | C] -- C:\ProgramData\PCDr
[2010/08/05 15:07:15 | 000,000,000 | ---D | C] -- C:\Program Files\PCDR5
[2010/08/05 15:05:51 | 000,000,000 | ---D | C] -- C:\AuthLog
[2010/08/05 15:04:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Lenovo
[2010/08/05 15:01:12 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2010/08/05 15:01:10 | 000,051,768 | ---- | C] (Roxio) -- C:\Windows\System32\drivers\DRVNDDM.SYS
[2010/08/05 15:01:10 | 000,028,120 | ---- | C] (Roxio) -- C:\Windows\System32\drivers\DLARTL_M.SYS
[2010/08/05 15:01:10 | 000,012,856 | ---- | C] (Roxio) -- C:\Windows\System32\drivers\DLACDBHM.SYS
[2010/08/05 15:01:10 | 000,000,000 | ---D | C] -- C:\Program Files\Sonic Icons for Lenovo
[2010/08/05 15:01:09 | 000,092,920 | ---- | C] (Roxio) -- C:\Windows\DLA.EXE
[2010/08/05 15:01:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\DLA
[2010/08/05 15:01:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Uninstall
[2010/08/05 15:00:56 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallShield
[2010/08/05 15:00:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Sonic
[2010/08/05 14:59:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Roxio
[2010/08/05 14:59:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SureThing Shared
[2010/08/05 14:59:42 | 000,000,000 | ---D | C] -- C:\Program Files\Roxio
[2010/08/05 14:59:34 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Sonic Shared
[2010/08/05 14:59:34 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PX Storage Engine
[2010/08/05 14:59:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Roxio Shared
[2010/08/05 14:59:07 | 000,000,000 | ---D | C] -- C:\Icons
[2010/08/05 14:58:58 | 000,000,000 | ---D | C] -- C:\Program Files\InterVideo
[2010/08/05 14:57:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InterVideo
[2010/08/05 14:57:04 | 000,000,000 | ---D | C] -- C:\Program Files\Lenovo Registration
[2010/08/05 14:56:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Lenovo
[2010/08/05 14:56:57 | 000,000,000 | ---D | C] -- C:\Program Files\ThinkVantage
[2010/08/05 14:56:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2010/08/05 14:56:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2010/08/05 14:56:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010/08/05 14:56:33 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010/08/05 14:56:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010/08/05 14:56:00 | 001,256,116 | ---- | C] (Multidmedia Limited) -- C:\Windows\System32\Think Screensaver.scr
[2010/08/05 14:55:47 | 000,000,000 | ---D | C] -- C:\Program Files\Lenovo Group Limited
[2010/08/05 14:55:15 | 000,000,000 | ---D | C] -- C:\Program Files\Lenovo Fingerprint Software
[2010/08/05 14:49:48 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2010/08/05 14:49:47 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2010/08/05 14:49:38 | 000,258,048 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\Oemdspif.dll
[2010/08/05 14:49:37 | 000,327,680 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\atipdlxx.dll
[2010/08/05 14:49:37 | 000,043,520 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\ati2edxx.dll
[2010/08/05 14:49:08 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2010/08/05 14:48:59 | 000,206,120 | ---- | C] (Synaptics Incorporated) -- C:\Windows\System32\SynCtrl.dll
[2010/08/05 14:48:59 | 000,205,232 | ---- | C] (Synaptics Incorporated) -- C:\Windows\System32\drivers\SynTP.sys
[2010/08/05 14:48:59 | 000,169,256 | ---- | C] (Synaptics Incorporated) -- C:\Windows\System32\SynCOM.dll
[2010/08/05 14:48:59 | 000,161,064 | ---- | C] (Synaptics Incorporated) -- C:\Windows\System32\SynTPAPI.dll
[2010/08/05 14:48:59 | 000,120,104 | ---- | C] (Synaptics Incorporated) -- C:\Windows\System32\SynTPCo4.dll
[2010/08/05 14:48:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Roaming
[2010/08/05 14:47:57 | 000,073,264 | ---- | C] (Intel© Corporation) -- C:\Windows\System32\mux.dll
[2010/08/05 14:47:37 | 000,000,000 | ---D | C] -- C:\Program Files\Cisco
[2010/08/05 14:47:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
[2010/08/05 14:47:36 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel
[2010/08/05 14:47:02 | 000,000,000 | ---D | C] -- C:\Program Files\CONEXANT
[2010/08/05 14:45:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\Lang
[2010/08/05 14:45:47 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2010/08/05 14:45:47 | 000,000,000 | ---D | C] -- C:\Intel
[2010/08/05 14:45:42 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010/08/05 14:45:42 | 000,000,000 | ---D | C] -- C:\Program Files\ThinkPad
[2010/08/05 14:45:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010/08/05 14:44:35 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010/08/05 14:44:13 | 000,000,000 | ---D | C] -- C:\Program Files\Lenovo
[2010/08/05 14:43:56 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2010/08/05 14:39:46 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010/08/05 14:38:21 | 000,000,000 | ---D | C] -- C:\Windows\CSC
[2010/08/05 14:19:54 | 000,000,000 | ---D | C] -- C:\Windows\Users
[2010/08/05 14:19:13 | 000,000,000 | ---D | C] -- C:\DRIVERS
[2010/08/05 14:18:59 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010/08/05 14:13:08 | 000,000,000 | ---D | C] -- C:\SWShare
========== Files - Modified Within 90 Days ==========
[2010/09/02 19:37:30 | 001,835,008 | -HS- | M] () -- C:\Users\LENOVO\NTUSER.DAT
[2010/09/02 19:35:00 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1853308285-865056411-922338472-1000UA.job
[2010/09/02 19:31:45 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\LENOVO\Desktop\OTL.exe
[2010/09/02 19:22:06 | 000,008,472 | ---- | M] () -- C:\Users\LENOVO\Desktop\nypd master copy.xlsx
[2010/09/02 19:22:06 | 000,000,165 | -H-- | M] () -- C:\Users\LENOVO\Desktop\~$nypd master copy.xlsx
[2010/09/02 18:35:00 | 000,000,858 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1853308285-865056411-922338472-1000Core.job
[2010/09/02 18:04:31 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/09/02 18:04:31 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/09/02 17:22:43 | 000,009,371 | ---- | M] () -- C:\Users\LENOVO\Desktop\people attending meeting.xlsx
[2010/09/02 15:18:10 | 000,000,802 | ---- | M] () -- C:\Users\LENOVO\Desktop\Cheat Engine.lnk
[2010/09/02 14:30:12 | 000,001,724 | ---- | M] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\ManyCam 2.4.lnk
[2010/09/02 14:30:12 | 000,001,700 | ---- | M] () -- C:\Users\LENOVO\Desktop\ManyCam 2.4.lnk
[2010/09/02 13:45:40 | 000,008,694 | ---- | M] () -- C:\Users\LENOVO\Desktop\Nypd Mentoring Scheme.xlsx
[2010/09/02 12:04:13 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/09/02 01:15:31 | 000,000,828 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/08/31 17:02:23 | 000,001,024 | ---- | M] () -- C:\Users\LENOVO\.rnd
[2010/08/31 17:01:53 | 000,000,080 | ---- | M] () -- C:\Users\LENOVO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShortKeys 2.lnk
[2010/08/31 17:00:00 | 000,524,288 | -HS- | M] () -- C:\Users\LENOVO\NTUSER.DAT{3d4e88f1-6a70-11db-b1ba-d64300c9c793}.TMContainer00000000000000000001.regtrans-ms
[2010/08/31 17:00:00 | 000,065,536 | -HS- | M] () -- C:\Users\LENOVO\NTUSER.DAT{3d4e88f1-6a70-11db-b1ba-d64300c9c793}.TM.blf
[2010/08/31 16:59:44 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/08/31 16:59:23 | 2038,460,416 | -HS- | M] () -- C:\hiberfil.sys
[2010/08/30 07:48:15 | 003,026,707 | -H-- | M] () -- C:\Users\LENOVO\AppData\Local\IconCache.db
[2010/08/30 00:41:19 | 000,001,804 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010/08/30 00:38:46 | 000,001,736 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2010/08/29 23:37:07 | 000,008,642 | ---- | M] () -- C:\Users\LENOVO\Desktop\Image.jpg
[2010/08/29 23:15:34 | 000,001,732 | ---- | M] () -- C:\tvtpktfilter.dat
[2010/08/28 17:49:17 | 000,074,912 | ---- | M] () -- C:\Users\LENOVO\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/08/28 17:46:40 | 000,313,112 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/08/27 15:43:52 | 000,028,366 | ---- | M] () -- C:\Users\LENOVO\Desktop\Evaluation Questions.docx
[2010/08/27 12:36:19 | 000,007,728 | ---- | M] () -- C:\Users\LENOVO\AppData\Local\d3d9caps.dat
[2010/08/27 12:17:29 | 000,690,960 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/08/27 12:17:29 | 000,602,728 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/08/27 12:17:29 | 000,107,242 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/08/27 11:47:05 | 000,001,599 | ---- | M] () -- C:\Users\Public\Desktop\Browser Choice.lnk
[2010/08/26 19:55:41 | 000,003,525 | ---- | M] () -- C:\Users\Public\Documents\AcIpConfig.dat
[2010/08/26 19:55:40 | 002,786,196 | ---- | M] () -- C:\Users\Public\Documents\AccConnAdvanced.dat
[2010/08/26 19:55:40 | 000,027,482 | ---- | M] () -- C:\Users\Public\Documents\ACGinaWinlogon.dat
[2010/08/26 19:55:39 | 000,069,672 | ---- | M] () -- C:\Users\Public\Documents\AcSvc.dmp
[2010/08/26 18:31:42 | 000,002,057 | ---- | M] () -- C:\Users\LENOVO\Desktop\Google Chrome.lnk
[2010/08/26 18:31:42 | 000,002,019 | ---- | M] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/08/26 14:27:35 | 000,000,953 | ---- | M] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/08/25 23:02:10 | 000,001,610 | ---- | M] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Snipping Tool.lnk
[2010/08/25 19:54:10 | 000,000,846 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ShortKeys 2.lnk
[2010/08/25 19:31:35 | 000,002,560 | ---- | M] () -- C:\Windows\_MSRSTRT.EXE
[2010/08/25 17:07:19 | 000,001,850 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2010/08/25 17:07:17 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2010/08/08 12:30:48 | 000,000,948 | ---- | M] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2010/08/05 23:03:15 | 000,524,288 | -HS- | M] () -- C:\Users\LENOVO\NTUSER.DAT{3d4e88f1-6a70-11db-b1ba-d64300c9c793}.TMContainer00000000000000000002.regtrans-ms
[2010/08/05 23:00:13 | 000,000,959 | ---- | M] () -- C:\Users\LENOVO\Desktop\Internet Explorer.lnk
[2010/08/05 22:59:09 | 000,001,947 | ---- | M] () -- C:\Users\LENOVO\Desktop\Mobile Broadband.lnk
[2010/08/05 22:56:09 | 000,000,100 | ---- | M] () -- C:\Windows\System32\drivers\Lenovo_6475_WRB.MRK
[2010/08/05 22:56:05 | 000,000,010 | ---- | M] () -- C:\Windows\System32\firstboot.lgl
[2010/08/05 22:50:51 | 000,000,020 | -HS- | M] () -- C:\Users\LENOVO\ntuser.ini
[2010/08/05 15:53:59 | 000,038,372 | ---- | M] () -- C:\Windows\System32\license.rtf
[2010/08/05 15:20:01 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2010/08/05 15:13:38 | 000,000,992 | ---- | M] () -- C:\Users\Public\Desktop\Lenovo Welcome.lnk
[2010/08/05 15:12:34 | 000,001,756 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Digital Line Detect.lnk
[2010/08/05 15:11:01 | 000,000,000 | ---- | M] () -- C:\Users\Public\Documents\AccConnAdvanced.html
[2010/08/05 15:10:21 | 000,000,436 | ---- | M] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[2010/08/05 15:04:25 | 053,149,696 | ---- | M] () -- C:\Windows\ocsetup_install_OEMHelpCustomization.etl
[2010/08/05 15:04:19 | 000,196,608 | ---- | M] () -- C:\Windows\ocsetup_cbs_install_OEMHelpCustomization.perf
[2010/08/05 15:04:19 | 000,065,536 | ---- | M] () -- C:\Windows\ocsetup_cbs_install_OEMHelpCustomization.dpx
[2010/08/05 15:01:10 | 000,000,120 | ---- | M] () -- C:\Windows\wininit.ini
[2010/08/05 14:57:04 | 000,001,803 | ---- | M] () -- C:\Users\Public\Desktop\Lenovo Registration.lnk
[2010/08/05 14:56:58 | 000,001,791 | ---- | M] () -- C:\Users\Public\Desktop\ThinkVantage Productivity Center.lnk
[2010/08/05 14:56:53 | 000,000,884 | ---- | M] () -- C:\Users\Public\Desktop\Acrobat.com.lnk
[2010/08/05 14:56:36 | 000,001,897 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2010/08/05 14:55:20 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_ATSwpWDF_01005.Wdf
[2010/08/05 14:54:52 | 000,085,724 | ---- | M] () -- C:\Windows\System32\log.xml
[2010/08/05 14:49:12 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01007.Wdf
[2010/08/05 14:25:02 | 000,009,127 | ---- | M] () -- C:\Windows\System32\RacUR.xml
[2010/08/05 14:25:02 | 000,000,153 | ---- | M] () -- C:\Windows\System32\RacUREx.xml
[2010/08/05 14:22:37 | 011,967,524 | ---- | M] () -- C:\Windows\System32\korwbrkr.lex
[2010/08/05 14:22:37 | 000,106,605 | ---- | M] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010/08/05 14:22:37 | 000,018,904 | ---- | M] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010/08/02 11:21:36 | 000,778,240 | ---- | M] () -- C:\Users\LENOVO\Desktop\Brians Msn Premium v0.1.exe
[2010/07/26 13:47:53 | 000,065,536 | ---- | M] ( ) -- C:\Users\LENOVO\Desktop\Interop.MessengerAPI.dll
[2010/06/28 21:57:33 | 000,038,848 | ---- | M] (ALWIL Software) -- C:\Windows\avastSS.scr
[2010/06/28 21:57:12 | 000,165,032 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2010/06/28 21:37:52 | 000,046,672 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2010/06/28 21:37:30 | 000,165,456 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswSP.sys
[2010/06/28 21:33:13 | 000,023,376 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2010/06/28 21:32:56 | 000,050,256 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2010/06/28 21:32:33 | 000,017,744 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
========== Files Created - No Company Name ==========
[2010/09/02 19:22:06 | 000,000,165 | -H-- | C] () -- C:\Users\LENOVO\Desktop\~$nypd master copy.xlsx
[2010/09/02 19:22:05 | 000,008,472 | ---- | C] () -- C:\Users\LENOVO\Desktop\nypd master copy.xlsx
[2010/09/02 15:18:10 | 000,000,802 | ---- | C] () -- C:\Users\LENOVO\Desktop\Cheat Engine.lnk
[2010/09/02 15:18:08 | 001,970,176 | ---- | C] () -- C:\Windows\System32\d3dx9.dll
[2010/09/02 14:30:12 | 000,001,724 | ---- | C] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\ManyCam 2.4.lnk
[2010/09/02 14:30:12 | 000,001,700 | ---- | C] () -- C:\Users\LENOVO\Desktop\ManyCam 2.4.lnk
[2010/09/02 13:45:39 | 000,008,694 | ---- | C] () -- C:\Users\LENOVO\Desktop\Nypd Mentoring Scheme.xlsx
[2010/09/02 01:58:39 | 000,778,240 | ---- | C] () -- C:\Users\LENOVO\Desktop\Brians Msn Premium v0.1.exe
[2010/09/02 01:58:36 | 000,094,208 | ---- | C] () -- C:\Users\LENOVO\Desktop\Stub.exe
[2010/09/02 01:15:31 | 000,000,828 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/09/01 16:31:58 | 000,009,371 | ---- | C] () -- C:\Users\LENOVO\Desktop\people attending meeting.xlsx
[2010/08/30 00:41:19 | 000,001,804 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2010/08/30 00:38:46 | 000,001,736 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2010/08/29 23:37:06 | 000,008,642 | ---- | C] () -- C:\Users\LENOVO\Desktop\Image.jpg
[2010/08/29 23:15:34 | 000,001,732 | ---- | C] () -- C:\tvtpktfilter.dat
[2010/08/27 15:18:30 | 000,028,366 | ---- | C] () -- C:\Users\LENOVO\Desktop\Evaluation Questions.docx
[2010/08/27 11:47:05 | 000,001,599 | ---- | C] () -- C:\Users\Public\Desktop\Browser Choice.lnk
[2010/08/26 19:55:40 | 000,027,482 | ---- | C] () -- C:\Users\Public\Documents\ACGinaWinlogon.dat
[2010/08/26 19:55:40 | 000,003,525 | ---- | C] () -- C:\Users\Public\Documents\AcIpConfig.dat
[2010/08/26 19:55:39 | 002,786,196 | ---- | C] () -- C:\Users\Public\Documents\AccConnAdvanced.dat
[2010/08/26 19:55:33 | 000,069,672 | ---- | C] () -- C:\Users\Public\Documents\AcSvc.dmp
[2010/08/26 18:31:42 | 000,002,057 | ---- | C] () -- C:\Users\LENOVO\Desktop\Google Chrome.lnk
[2010/08/26 18:31:42 | 000,002,019 | ---- | C] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/08/26 18:30:58 | 000,000,910 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1853308285-865056411-922338472-1000UA.job
[2010/08/26 18:30:57 | 000,000,858 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1853308285-865056411-922338472-1000Core.job
[2010/08/26 14:28:28 | 000,001,024 | ---- | C] () -- C:\Users\LENOVO\.rnd
[2010/08/26 14:27:44 | 000,007,728 | ---- | C] () -- C:\Users\LENOVO\AppData\Local\d3d9caps.dat
[2010/08/25 23:02:10 | 000,001,610 | ---- | C] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Snipping Tool.lnk
[2010/08/25 21:44:21 | 000,057,667 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2010/08/25 20:05:17 | 000,000,080 | ---- | C] () -- C:\Users\LENOVO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShortKeys 2.lnk
[2010/08/25 19:54:10 | 000,000,846 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ShortKeys 2.lnk
[2010/08/25 19:31:34 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2010/08/25 17:53:21 | 002,501,921 | ---- | C] () -- C:\Windows\System32\wlan.tmf
[2010/08/25 17:07:19 | 000,001,850 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2010/08/08 12:30:48 | 000,000,948 | ---- | C] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2010/08/07 14:59:41 | 000,000,953 | ---- | C] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/08/05 23:00:13 | 000,000,959 | ---- | C] () -- C:\Users\LENOVO\Desktop\Internet Explorer.lnk
[2010/08/05 22:59:02 | 000,605,056 | ---- | C] () -- C:\Users\LENOVO\AppData\Local\wanancsp.dat
[2010/08/05 22:57:38 | 000,001,947 | ---- | C] () -- C:\Users\LENOVO\Desktop\Mobile Broadband.lnk
[2010/08/05 22:56:05 | 000,000,010 | ---- | C] () -- C:\Windows\System32\firstboot.lgl
[2010/08/05 22:50:51 | 001,835,008 | -HS- | C] () -- C:\Users\LENOVO\NTUSER.DAT
[2010/08/05 22:50:51 | 000,524,288 | -HS- | C] () -- C:\Users\LENOVO\NTUSER.DAT{3d4e88f1-6a70-11db-b1ba-d64300c9c793}.TMContainer00000000000000000002.regtrans-ms
[2010/08/05 22:50:51 | 000,524,288 | -HS- | C] () -- C:\Users\LENOVO\NTUSER.DAT{3d4e88f1-6a70-11db-b1ba-d64300c9c793}.TMContainer00000000000000000001.regtrans-ms
[2010/08/05 22:50:51 | 000,262,144 | -H-- | C] () -- C:\Users\LENOVO\ntuser.dat.LOG1
[2010/08/05 22:50:51 | 000,065,536 | -HS- | C] () -- C:\Users\LENOVO\NTUSER.DAT{3d4e88f1-6a70-11db-b1ba-d64300c9c793}.TM.blf
[2010/08/05 22:50:51 | 000,000,258 | ---- | C] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2010/08/05 22:50:51 | 000,000,240 | ---- | C] () -- C:\Users\LENOVO\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2010/08/05 22:50:51 | 000,000,020 | -HS- | C] () -- C:\Users\LENOVO\ntuser.ini
[2010/08/05 22:50:51 | 000,000,000 | -H-- | C] () -- C:\Users\LENOVO\ntuser.dat.LOG2
[2010/08/05 15:20:01 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/08/05 15:13:38 | 000,000,992 | ---- | C] () -- C:\Users\Public\Desktop\Lenovo Welcome.lnk
[2010/08/05 15:12:34 | 000,001,756 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Digital Line Detect.lnk
[2010/08/05 15:11:06 | 000,146,036 | ---- | C] () -- C:\Windows\System32\drivers\HSFProf.cty
[2010/08/05 15:11:01 | 000,000,000 | ---- | C] () -- C:\Users\Public\Documents\AccConnAdvanced.html
[2010/08/05 15:07:39 | 000,000,436 | ---- | C] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[2010/08/05 15:01:22 | 053,149,696 | ---- | C] () -- C:\Windows\ocsetup_install_OEMHelpCustomization.etl
[2010/08/05 15:01:22 | 000,196,608 | ---- | C] () -- C:\Windows\ocsetup_cbs_install_OEMHelpCustomization.perf
[2010/08/05 15:01:22 | 000,065,536 | ---- | C] () -- C:\Windows\ocsetup_cbs_install_OEMHelpCustomization.dpx
[2010/08/05 15:01:10 | 000,056,056 | ---- | C] () -- C:\Windows\System32\DLAAPI_W.DLL
[2010/08/05 15:01:09 | 000,000,120 | ---- | C] () -- C:\Windows\wininit.ini
[2010/08/05 14:59:00 | 000,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll
[2010/08/05 14:59:00 | 000,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll
[2010/08/05 14:59:00 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll
[2010/08/05 14:59:00 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll
[2010/08/05 14:59:00 | 000,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll
[2010/08/05 14:59:00 | 000,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll
[2010/08/05 14:57:04 | 000,001,803 | ---- | C] () -- C:\Users\Public\Desktop\Lenovo Registration.lnk
[2010/08/05 14:57:03 | 000,009,679 | ---- | C] () -- C:\Windows\System32\msxml4r.cat
[2010/08/05 14:57:03 | 000,003,489 | ---- | C] () -- C:\Windows\System32\msxml4.Manifest
[2010/08/05 14:57:03 | 000,000,500 | ---- | C] () -- C:\Windows\System32\msxml4r.Manifest
[2010/08/05 14:57:02 | 000,009,675 | ---- | C] () -- C:\Windows\System32\msxml4.cat
[2010/08/05 14:56:58 | 000,001,791 | ---- | C] () -- C:\Users\Public\Desktop\ThinkVantage Productivity Center.lnk
[2010/08/05 14:56:53 | 000,000,884 | ---- | C] () -- C:\Users\Public\Desktop\Acrobat.com.lnk
[2010/08/05 14:56:36 | 000,001,897 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2010/08/05 14:55:20 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_ATSwpWDF_01005.Wdf
[2010/08/05 14:54:52 | 000,085,724 | ---- | C] () -- C:\Windows\System32\log.xml
[2010/08/05 14:49:40 | 002,192,024 | ---- | C] () -- C:\Windows\System32\igkrng500.bin
[2010/08/05 14:49:40 | 000,034,512 | ---- | C] () -- C:\Windows\System32\iglhxs32.vp
[2010/08/05 14:49:40 | 000,002,096 | ---- | C] () -- C:\Windows\System32\iglhxo32.vp
[2010/08/05 14:49:40 | 000,002,096 | ---- | C] () -- C:\Windows\System32\iglhxc32.vp
[2010/08/05 14:49:38 | 000,492,496 | ---- | C] () -- C:\Windows\System32\igcompkrng500.bin
[2010/08/05 14:49:38 | 000,328,162 | ---- | C] () -- C:\Windows\System32\drivers\ativcaxx.cpa
[2010/08/05 14:49:38 | 000,147,172 | ---- | C] () -- C:\Windows\System32\igfcg550.bin
[2010/08/05 14:49:38 | 000,052,400 | ---- | C] () -- C:\Windows\System32\drivers\ativvpxx.vp
[2010/08/05 14:49:38 | 000,002,096 | ---- | C] () -- C:\Windows\System32\drivers\ativpkxx.vp
[2010/08/05 14:49:38 | 000,002,096 | ---- | C] () -- C:\Windows\System32\drivers\ativokxx.vp
[2010/08/05 14:49:38 | 000,002,096 | ---- | C] () -- C:\Windows\System32\drivers\ativdkxx.vp
[2010/08/05 14:49:38 | 000,000,929 | ---- | C] () -- C:\Windows\System32\drivers\ativcaxx.vp
[2010/08/05 14:49:37 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
[2010/08/05 14:49:37 | 000,174,820 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2010/08/05 14:49:37 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2010/08/05 14:49:37 | 000,090,112 | ---- | C] () -- C:\Windows\System32\atibrtmon.exe
[2010/08/05 14:49:37 | 000,014,138 | ---- | C] () -- C:\Windows\atiogl.xml
[2010/08/05 14:49:37 | 000,003,568 | ---- | C] () -- C:\Windows\System32\atiumdva.cap
[2010/08/05 14:49:37 | 000,000,466 | ---- | C] () -- C:\Windows\System32\atipblag.dat
[2010/08/05 14:49:12 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01007.Wdf
[2010/08/05 14:45:30 | 000,000,100 | ---- | C] () -- C:\Windows\System32\drivers\Lenovo_6475_WRB.MRK
[2010/08/05 14:42:19 | 2038,460,416 | -HS- | C] () -- C:\hiberfil.sys
[2010/08/05 14:25:02 | 000,009,127 | ---- | C] () -- C:\Windows\System32\RacUR.xml
[2010/08/05 14:25:02 | 000,000,153 | ---- | C] () -- C:\Windows\System32\RacUREx.xml
[2010/08/05 14:22:37 | 011,967,524 | ---- | C] () -- C:\Windows\System32\korwbrkr.lex
[2010/08/05 14:22:37 | 000,106,605 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010/08/05 14:22:37 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010/08/05 14:19:26 | 000,002,722 | ---- | C] () -- C:\Windows\System32\e1y6032.din
[2010/08/05 14:19:13 | 000,016,896 | ---- | C] () -- C:\Windows\Eventclr.exe
[2006/11/02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
========== LOP Check ==========
[2010/08/08 12:31:10 | 000,000,000 | ---D | M] -- C:\Users\LENOVO\AppData\Roaming\InterVideo
[2010/08/05 22:58:01 | 000,000,000 | ---D | M] -- C:\Users\LENOVO\AppData\Roaming\Lenovo
[2010/09/02 14:32:10 | 000,000,000 | ---D | M] -- C:\Users\LENOVO\AppData\Roaming\ManyCam
[2010/09/01 23:54:58 | 000,000,000 | ---D | M] -- C:\Users\LENOVO\AppData\Roaming\TeamViewer
[2010/08/05 15:10:21 | 000,000,436 | ---- | M] () -- C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
[2010/08/31 09:58:42 | 000,017,362 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2006/09/18 22:43:36 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2006/09/18 22:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
[2010/08/31 16:59:23 | 2038,460,416 | -HS- | M] () -- C:\hiberfil.sys
[2010/08/31 16:59:19 | 2352,226,304 | -HS- | M] () -- C:\pagefile.sys
[2010/08/05 14:46:34 | 000,000,086 | ---- | M] () -- C:\setup.log
[2010/08/05 15:16:39 | 000,001,072 | ---- | M] () -- C:\sysiclog.txt
[2010/08/29 23:15:34 | 000,001,732 | ---- | M] () -- C:\tvtpktfilter.dat
< %systemroot%\Fonts\*.com >
[2006/11/02 13:37:19 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006/11/02 13:37:19 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006/11/02 13:37:19 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
[2006/11/02 13:37:19 | 000,030,808 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2006/09/18 22:37:34 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2006/11/02 13:36:30 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spool\prtprocs\w32x86\jnwppr.dll
[2006/10/26 19:56:12 | 000,033,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spool\prtprocs\w32x86\msonpppr.dll
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2010/06/28 21:57:33 | 000,038,848 | ---- | M] (ALWIL Software) -- C:\Windows\avastSS.scr
[2010/04/17 00:04:40 | 000,306,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\WLXPGSS.SCR
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008/01/21 03:43:58 | 000,000,174 | -HS- | M] () -- C:\Program Files\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2008/01/21 04:20:25 | 017,223,680 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
[2008/01/21 04:20:08 | 000,106,496 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
[2008/01/21 04:20:25 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
[2006/11/02 11:34:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
[2006/11/02 11:34:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
[2007/09/19 23:41:12 | 000,004,096 | ---- | M] () -- C:\Windows\System32\Thumbs.db
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2010/08/26 14:27:35 | 000,000,352 | -HS- | M] () -- C:\Users\LENOVO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
< %USERPROFILE%\Desktop\*.exe >
[2010/08/02 11:21:36 | 000,778,240 | ---- | M] () -- C:\Users\LENOVO\Desktop\Brians Msn Premium v0.1.exe
[2010/09/02 19:31:45 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\LENOVO\Desktop\OTL.exe
[2010/05/20 17:11:10 | 000,094,208 | ---- | M] () -- C:\Users\LENOVO\Desktop\Stub.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >
< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >
< %PROGRAMFILES%\Internet Explorer\*.tmp >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %USERPROFILE%\My Documents\*.exe >
< %USERPROFILE%\*.exe >
< %systemroot%\ADDINS\*.* >
[2006/11/02 13:36:17 | 000,000,802 | ---- | M] () -- C:\Windows\addins\FXSEXT.ecf
< %systemroot%\assembly\*.bak2 >
< %systemroot%\Config\*.* >
< %systemroot%\REPAIR\*.bak2 >
< %systemroot%\SECURITY\Database\*.sdb /x >
< %systemroot%\SYSTEM\*.bak2 >
< %systemroot%\Web\*.bak2 >
< %systemroot%\Driver Cache\*.* >
< %PROGRAMFILES%\Mozilla Firefox\0*.exe >
< %ProgramFiles%\Microsoft Common\*.* >
< %ProgramFiles%\TinyProxy. >
< %USERPROFILE%\Favorites\*.url /x >
[2010/08/05 22:57:26 | 000,000,402 | -HS- | M] () -- C:\Users\LENOVO\Favorites\desktop.ini
< %systemroot%\system32\*.bk >
< %systemroot%\*.te >
< %systemroot%\system32\system32\*.* >
< %ALLUSERSPROFILE%\*.dat /x >
< %systemroot%\system32\drivers\*.rmv >
< dir /b "%systemroot%\system32\*.exe" | find /i " " /c >
< dir /b "%systemroot%\*.exe" | find /i " " /c >
< %PROGRAMFILES%\Microsoft\*.* >
< %systemroot%\System32\Wbem\proquota.exe >
< %PROGRAMFILES%\Mozilla Firefox\*.dat >
< %USERPROFILE%\Cookies\*.txt /x >
< %SystemRoot%\system32\fonts\*.* >
< %systemroot%\system32\winlog\*.* >
< %systemroot%\system32\Language\*.* >
< %systemroot%\system32\Settings\*.* >
< %systemroot%\system32\*.quo >
< %SYSTEMROOT%\AppPatch\*.exe >
< %SYSTEMROOT%\inf\*.exe >
< %SYSTEMROOT%\Installer\*.exe >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-09-01 14:14:07
< End of report >
OTL Extras logfile created on: 02/09/2010 19:33:30 - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Users\LENOVO\Desktop
Windows Vista Business Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18943)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 41.00% Memory free
4.00 Gb Paging File | 2.00 Gb Available in Paging File | 43.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 126.10 Gb Total Space | 79.05 Gb Free Space | 62.69% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive Q: | 21.49 Gb Total Space | 15.98 Gb Free Space | 74.38% Space Free | Partition Type: NTFS
Drive S: | 1.46 Gb Total Space | 0.69 Gb Free Space | 47.08% Space Free | Partition Type: NTFS
Computer Name: LENOVO-PC
Current User Name: LENOVO
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Minimal
Quick Scan
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MI1933~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{96871178-11DA-4D99-BED8-5B8908D7E0B0}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{BDF0DFDC-FB14-4B76-9BC9-11479FD3491D}" = lport=2869 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{27117410-1363-4612-A06C-757EB5D178AE}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe |
"{2A77DFFA-B23B-4E4F-8933-105BC90D5CF3}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{2C62E312-1007-43E1-9A5B-4D7F64CDCFFC}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{343FB819-FC15-4E93-8913-71A6A61E5401}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe |
"{61FAC299-C882-4C2C-958E-B68C0B641AA2}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{77552DD5-8E79-4653-95F7-9E26A27A50BA}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{86DD0301-BC92-469D-891D-6E88E219442E}" = protocol=17 | dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{9A8E0563-416F-4A65-8D37-CD399D8CBE90}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{BDE10E61-1428-4596-89A5-CB9D0013435A}" = protocol=6 | dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{E7A69F0A-86BC-406E-B399-8798CA1DBB07}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe |
"{F73950FE-E876-44F3-BBF1-19B06098C83E}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"TCP Query User{F26B82D2-F736-4A06-A803-563D789CF147}C:\users\lenovo\desktop\mess-mania v8.0\mess-mania v8.0.exe" = protocol=6 | dir=in | app=c:\users\lenovo\desktop\mess-mania v8.0\mess-mania v8.0.exe |
"UDP Query User{F157B8A8-6B39-447F-A253-EDECE4F0E195}C:\users\lenovo\desktop\mess-mania v8.0\mess-mania v8.0.exe" = protocol=17 | dir=in | app=c:\users\lenovo\desktop\mess-mania v8.0\mess-mania v8.0.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{022CBB38-CEF0-42BA-906A-A49BEFAE0BEE}" = RICOH R5U230 Media Driver ver.2.02.02.01
"{052E244C-3674-8907-D9C3-092C89521B94}" = Catalyst Control Center Localization Korean
"{08E81ABD-79F7-49C2-881F-FD6CB0975693}" = Roxio Central Data
"{09A84D86-C709-4825-9548-ACF4838D478D}" = Intel® PROSet/Wireless WiFi Software
"{0C7DE40E-7C89-4AFB-B744-846F1B582B71}" = SBITS
"{0CB9668D-F979-4F31-B8B8-67FE90F929F8}" = Bonjour
"{10F90FAD-6627-7113-86AE-C243C74F0DEF}" = CCC Help German
"{1297C681-92D7-40EF-93BF-03F66EC5105C}" = ThinkPad EasyEject Utility
"{1433371A-F983-9562-3947-92420A72849D}" = Catalyst Control Center Graphics Previews Vista
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{17CBC505-D1AE-459D-B445-3D2000A85842}" = ThinkPad UltraNav Utility
"{1BD07DF4-FB06-41BA-B896-B2DA59000C96}" = Windows Live Toolbar
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}" = Roxio Central Tools
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22266E88-29AF-8D27-F85F-DD75D76E4AE2}" = Catalyst Control Center Localization German
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{23146B80-2B64-023D-0696-A753E5C45FB4}" = Catalyst Control Center Graphics Full Existing
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java 6 Update 13
"{2BD2FA21-B51D-4F01-94A7-AC16737B2163}" = Adobe Flash Player 10 ActiveX
"{2F4C24E6-CBD4-4AAC-B56F-C9FD44DE5668}" = Drag-to-Disc
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{3752F72E-A481-41C7-256B-C20D7BFBE3BC}" = CCC Help English
"{3D8994A3-02A8-45B5-B955-53E608BC69ED}" = Lenovo Fingerprint Software
"{3D9892BB-A751-4E48-ADC8-E4289956CE1D}" = QuickTime
"{3F963A06-7C18-4039-9789-9644B3266AE7}" = Verizon Wireless BroadbandAccess Self Activation
"{433894BE-54BF-CC72-2147-14EA837ADC87}" = CCC Help Portuguese
"{44E9D4C2-946C-4378-9354-558803C47A68}" = Client Security - Password Manager
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{46A84694-59EC-48F0-964C-7E76E9F8A2ED}" = ThinkVantage Active Protection System
"{474F25F5-BDC9-40E5-B1B6-F6BF23FC106F}" = Windows Live Essentials
"{4AB5764A-3894-49A2-BAA8-C4665F74CD4C}" = Registry patch to improve USB device detection on resume from sleep for Windows Vista
"{4BD295B9-0190-4C54-B08E-33A6ECA922DF}" = ThinkVantage Access Connections
"{52F58309-1687-0C82-699A-27D9029B9429}" = CCC Help Spanish
"{537BF16E-7412-448C-95D8-846E85A1D817}" = Roxio Creator Business Edition
"{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.54.02
"{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
"{65706020-7B6F-41F2-8047-FC69579E386A}" = Presentation Director
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{69333A04-5134-40A5-A055-9166A7AA1EC8}" =
"{6ADC5DFC-24AA-D4E1-478A-5CD6337F8051}" = Catalyst Control Center Localization Italian
"{6B00B854-F04B-5C6A-63C5-21B9EF8CE3CF}" = CCC Help French
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}" = Roxio Central Audio
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{771C80E2-7A02-D773-96C3-155F217CD02A}" = CCC Help Japanese
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7B647582-EE62-8275-9D76-15692741C585}" = Catalyst Control Center Localization Chinese Traditional
"{7E4C16B8-8F76-4940-8505-98E93C00BF19}" = Rescue and Recovery
"{821456F8-EB18-41A8-DED5-695096B7D9D6}" = Catalyst Control Center Localization Chinese Standard
"{8220C00D-CBA1-AB41-1A66-7B99FAEF65F9}" = ATI Catalyst Install Manager
"{85991ED2-010C-4930-96FA-52F43C2CE98A}" = Apple Mobile Device Support
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8A7CAA24-7B23-410B-A7C3-F994B0944160}" = Microsoft Virtual PC 2007
"{8ACB5112-A58B-7283-B771-6271A0D9471D}" = Catalyst Control Center Core Implementation
"{8D337F77-BE7F-41A2-A7CB-D5A63FD7049B}" = Sonic CinePlayer Decoder Pack
"{8E5233E1-7495-44FB-8DEB-4BE906D59619}" = Junk Mail filter update
"{8EBBED54-C2D0-928A-7CA9-D28FAD39C4B6}" = CCC Help Korean
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90FABD40-E741-446F-839D-CEAE905D63BE}" = ThinkPad Mobility Center Customization
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}" = InterVideo WinDVD
"{91F7F3F3-CE80-48C3-8327-7D24A0A5716A}" = iTunes
"{94B1AD86-8764-8853-F4BB-7F92D5E94AA3}" = Catalyst Control Center Graphics Full New
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{986F64DC-FF15-449D-998F-EE3BCEC6666A}" = Help Center
"{9B14495A-E66F-3D68-3B03-D40A6862D6D7}" = ccc-utility
"{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}" = Microsoft Search Enhancement Pack
"{9F479685-180E-4C05-9400-D59292A1B29C}" = Windows Live Movie Maker
"{9FCE66F0-EE03-43BD-916E-66EDF0DBC18C}" = Catalyst Control Center - Branding
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A7EE37A9-367B-651F-9F4A-0BDE35D7417F}" = CCC Help Chinese Standard
"{ABC6E084-55EA-5860-4654-B21FFE886B1B}" = PX Profile Update
"{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9
"{AE2832A3-8108-F2BF-7086-BE66D29106E7}" = Catalyst Control Center Graphics Light
"{B05B22B8-72AE-4DC3-8D6F-FBC2233CAF41}" = Roxio Creator Business Edition
"{B10914FD-8812-47A4-85A1-50FCDE7F1F33}" = Windows Live Sync
"{B2D328BE-45AD-4D92-96F9-2151490A203E}" = Apple Application Support
"{B334D9AE-1393-423E-97C0-3BDC3360E692}" = Sonic Icons for Lenovo
"{B57EAFF2-D6EE-4C6C-9175-ED9F17BFC1BC}" = Windows Live Messenger
"{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}" = Roxio Central Copy
"{BA0B7C1F-5315-50C4-1EE9-FFA688A28C74}" = Catalyst Control Center Localization Spanish
"{BAAC402D-86A7-3918-4A24-7C8E83AE1756}" = CCC Help Swedish
"{BBDD2E21-F74F-FE49-956D-13FB1999DC28}" = CCC Help Italian
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{BF1ECD50-5A11-B18B-4AA0-20E41E7C20F7}" = Catalyst Control Center Localization Japanese
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C6FA39A7-26B1-480A-BC74-6D17531AC222}" = Access Help
"{C710E77E-6AC2-608B-214C-CEF6B9CDBA6E}" = Catalyst Control Center InstallProxy
"{C7EE261A-06E9-402D-B504-9967F8FC6F0C}" = Mobile Broadband Connect
"{C945C17F-2E78-4511-ABB6-EF637D2EE8FB}" = Skins
"{CCCF9048-DAFD-F1F5-B860-9B5C32FBD2D6}" = Catalyst Control Center Localization Portuguese
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CF5737AF-8550-4546-A69B-0EA9EF5A9B55}" = ThinkVantage Productivity Center
"{D22E6706-136E-4810-AF2E-359AE30A7323}" = ThinkVantage Status Gadget
"{D728E945-256D-4477-B377-6BBA693714AC}" = Productivity Center Supplement for ThinkPad
"{D92FF8EB-BD77-40AE-B68B-A6BFC6F8661D}" = Windows Live Family Safety
"{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}" = ThinkPad Power Manager
"{DB71210F-8314-4AE3-B7A7-EBAF85BD30E9}" = Wallpapers
"{E2ACDD92-7A9F-FCE8-2452-8A660792038E}" = CCC Help Chinese Traditional
"{E4CB66D5-C29E-9612-5E32-6807E91A82CD}" = Catalyst Control Center Localization Swedish
"{E6158D07-2637-4ECF-B576-37C489669174}" = Windows Live Call
"{E7E836B8-4BDD-454F-82E6-5FEA17C83AD4}" = Message Center
"{EA5AB32C-970E-D7C4-C896-1C927FB3E384}" = Catalyst Control Center Localization Dutch
"{EC877639-07AB-495C-BFD1-D63AF9140810}" = Roxio Activation Module
"{ECA1A3B6-898F-4DCE-9F04-714CF3BA126B}" = Adobe Flash Player 10 Plugin
"{ED439A64-F018-4DD4-8BA5-328D85AB09AB}" = Roxio Central Core
"{EE39FFBD-544E-49E4-A999-6819828EAE91}" = Windows Live Photo Gallery
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F18DB86D-BC16-4E01-BCCE-63F62B931D82}" = InterVideo Register Manager
"{F9230D65-8EED-B6DD-F9FB-8AEFDE06579C}" = Catalyst Control Center Localization French
"{FA62B4C2-6CFD-462F-9B59-68A730001AB3}" = Product Recovery Disc Burning Utility
"{FAA034EC-DB6A-A753-5DCE-DD7D75EDEA8E}" = ccc-core-static
"{FD331A3B-F7A5-4C31-B8D4-DF413C85AF7A}" = Message Center Plus
"{FF878914-1DDC-44E2-92F6-69DE291DDCA7}" = CCC Help Dutch
"0A7603E3091C168CDE422A2B3481A2F7D17D0954" = Windows Driver Package - Intel hdc (02/20/2008 6.9.1.1001)
"25A4FC9EFE7A8860FCF6F86FFABDD9334A2619E3" = Windows Driver Package - Intel (e1yexpress) Net (08/22/2008 9.52.10.1001)
"3EB6CB625B5778835F0A66A7529E69050E0EE033" = Windows Driver Package - Lenovo 1.53 (03/19/2009 1.53)
"432D918ED17EA51B73E8491A0369730C0076A292" = Windows Driver Package - Intel System (02/20/2008 8.6.1.1002)
"464CE3922A214073AAEE00DEB23EA5C750AF8CE8" = Windows Driver Package - Intel USB (02/05/2007 8.3.0.1011)
"513C7D1BF4530B30EC84716327E4D7E76810DCC5" = Windows Driver Package - Intel System (02/20/2008 8.7.0.1007)
"5A4D4FF375E24E41AE5D2D907E67E0884BE2CAF4" = Windows Driver Package - Intel System (01/30/2008 8.6.1.1001)
"A4680BD43717441189C52EBF2C4FD6B182EE1101" = Windows Driver Package - AuthenTec Inc. (ATSwpWDF) Biometric (10/02/2008 8.1.2.37)
"Adobe AIR" = Adobe AIR
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"ATI Uninstaller" = ATI Uninstaller
"avast5" = avast! Free Antivirus
"Cheat Engine 5.6.1_is1" = Cheat Engine 5.6.1
"CNXT_AUDIO_HDA" = Conexant HD Audio
"CNXT_MODEM_HDA_HSF" = ThinkPad Modem Adapter
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"Dipmon" = Registry Patch of Enabling Device Initiated Power Management(DIPM) on SATA for Windows Vista
"E6CEFD9A59425A2A27E92572AB367B28C371D3D8" = Windows Driver Package - Intel System (09/15/2006 7.0.0.1011)
"EC1E678D1EFB79A1D02C312390944027C715CD5C" = Windows Driver Package - Intel (iaStor) hdc (02/11/2009 8.8.0.1009)
"FPIRPOn" = Registry patch of Changing Timing of IDLE IRP by Finger Print Driver for Windows Vista
"HECI" = Intel® Management Engine Interface
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"Lenovo Registration" = Lenovo Registration
"Lenovo Welcome_is1" = Lenovo Welcome
"LENOVO.SMIIF" = Lenovo System Interface Driver
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"ManyCam" = ManyCam 2.4 (remove only)
"Messenger Plus! Live" = Messenger Plus! Live
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"OnScreenDisplay" = On Screen Display
"PC-Doctor for Windows" = Lenovo System Toolbox
"Power Management Driver" = ThinkPad Power Management Driver
"ProInst" = Intel PROSet Wireless
"ShortKeys 2" = ShortKeys 2
"SynTPDeinstKey" = ThinkPad UltraNav Driver
"ThinkPad FullScreen Magnifier" = ThinkPad FullScreen Magnifier
"USBPMon" = Registry patch for Windows Vista USB S3 PM Enablement
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiver
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{373B1718-8CC5-4567-8EE2-9033AD08A680}" = Roblox for LENOVO
"Google Chrome" = Google Chrome
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 02/09/2010 07:04:45 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 33644533
Error - 02/09/2010 07:04:47 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 02/09/2010 07:04:47 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 33645578
Error - 02/09/2010 07:04:47 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 33645578
Error - 02/09/2010 07:04:48 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 02/09/2010 07:04:48 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 33646732
Error - 02/09/2010 07:04:48 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 33646732
Error - 02/09/2010 07:04:49 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 02/09/2010 07:04:49 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 33647762
Error - 02/09/2010 07:04:49 | Computer Name = LENOVO-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 33647762
[ System Events ]
Error - 01/09/2010 10:00:29 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
Error - 01/09/2010 10:01:13 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7010
Description =
Error - 01/09/2010 21:44:35 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
Error - 02/09/2010 07:03:45 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
Error - 02/09/2010 07:04:42 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
Error - 02/09/2010 07:05:21 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
Error - 02/09/2010 07:05:53 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
Error - 02/09/2010 07:06:23 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
Error - 02/09/2010 07:06:53 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
Error - 02/09/2010 07:07:23 | Computer Name = LENOVO-PC | Source = Service Control Manager | ID = 7011
Description =
< End of report >