Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Automatic PC Shutdown when i click Anti-Malware software


  • Please log in to reply

#1
Xinader

Xinader

    New Member

  • Member
  • Pip
  • 5 posts
I am a newbie here... and i'm not good in removing viruses in pc. Thanks who will respond. When The PC is automatically shutting down. A message appear NT SYSTEM AUTHORITY SHUTDOWN. And when i clicked Anti Malware Bytes software, it is automatically shutting down. I need your help. Thanks

OTL logfile created on: 4/9/2011 9:50:36 AM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Sedano\My Documents
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

479.00 Mb Total Physical Memory | 65.00 Mb Available Physical Memory | 14.00% Memory free
1.00 Gb Paging File | 0.00 Gb Available in Paging File | 44.00% Paging File free
Paging file location(s): C:\pagefile.sys 718 718E:\pagefile.sys 718 718 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.19 Gb Total Space | 23.13 Gb Free Space | 62.20% Space Free | Partition Type: FAT32
Drive E: | 37.27 Gb Total Space | 36.34 Gb Free Space | 97.52% Space Free | Partition Type: NTFS
Drive F: | 22.20 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: SEDANO-5D7B9056 | User Name: Sedano | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/04/09 09:42:30 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Sedano\My Documents\OTL.com
PRC - [2011/04/09 09:15:40 | 008,104,967 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\stinger10101504.exe
PRC - [2011/03/28 23:02:30 | 000,025,464 | ---- | M] (Uniblue Systems Limited) -- C:\Program Files\Uniblue\SpeedUpMyPC\spmonitor.exe
PRC - [2011/03/28 23:02:28 | 000,056,168 | ---- | M] (Uniblue Systems Limited) -- C:\Program Files\Uniblue\SpeedUpMyPC\sump.exe
PRC - [2011/03/24 01:49:22 | 001,004,088 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Sedano\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2011/03/14 11:11:28 | 000,114,688 | ---- | M] () -- C:\Program Files\Sun Broadband Wireless\Sun Broadband Wireless.exe
PRC - [2011/01/07 01:22:54 | 002,747,744 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgtray.exe
PRC - [2011/01/07 01:22:44 | 001,084,256 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgnsx.exe
PRC - [2011/01/06 15:23:20 | 000,737,872 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2011/01/06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2010/12/05 16:26:40 | 000,654,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgrsx.exe
PRC - [2010/12/05 16:26:12 | 000,650,592 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgchsvx.exe
PRC - [2010/11/12 13:20:16 | 001,100,640 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgscanx.exe
PRC - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgwdsvc.exe
PRC - [2010/10/22 04:56:58 | 000,845,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgcsrvx.exe
PRC - [2010/09/15 13:18:42 | 000,025,976 | ---- | M] (Uniblue Systems Limited) -- C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
PRC - [2008/04/14 08:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/01/29 17:38:32 | 000,583,048 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
PRC - [2007/09/12 18:27:26 | 000,554,352 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
PRC - [2004/08/31 03:48:34 | 000,069,632 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE


========== Modules (SafeList) ==========

MOD - [2011/04/09 09:42:30 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Sedano\My Documents\OTL.com
MOD - [2010/08/24 01:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- -- (LiveUpdate Notice Ex)
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - [2011/01/06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2008/01/29 17:38:32 | 000,583,048 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe -- (LiveUpdate Notice Service)
SRV - [2007/09/12 18:27:26 | 002,999,664 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_2.EXE -- (LiveUpdate)
SRV - [2007/09/12 18:27:26 | 000,554,352 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe -- (Automatic LiveUpdate Scheduler)


========== Driver Services (SafeList) ==========

DRV - [2010/12/08 04:12:38 | 000,251,728 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2010/11/12 13:19:38 | 000,299,984 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2010/09/13 15:27:24 | 000,025,680 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2010/09/07 03:48:56 | 000,034,384 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2010/09/07 03:48:50 | 000,026,064 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2010/08/03 15:23:36 | 000,026,192 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2010/08/03 15:23:34 | 000,123,472 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2010/08/03 15:23:32 | 000,030,288 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2009/06/22 19:38:18 | 000,102,528 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2009/06/22 19:24:48 | 000,100,480 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbdev.sys -- (hwusbdev)
DRV - [2008/04/14 02:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2004/08/31 07:36:24 | 000,637,713 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2004/02/25 01:08:52 | 000,400,384 | R--- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS)
DRV - [2004/01/07 15:25:50 | 000,432,384 | R--- | M] (Silicon Integrated Systems Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sisgrp.sys -- (SiS315)
DRV - [2003/12/31 12:58:46 | 000,069,504 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtlnic51.sys -- (RTL8023)
DRV - [2003/12/17 04:08:30 | 000,004,096 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nocashio.sys -- (nocashio)
DRV - [2003/10/03 09:25:48 | 000,011,264 | R--- | M] (Silicon Integrated Systems Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\srvkp.sys -- (SiSkp)
DRV - [2003/01/13 10:43:56 | 000,030,720 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\SISAGPX.sys -- (sisagp)
DRV - [2001/08/17 16:20:16 | 000,297,728 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ac97sis.sys -- (SiS7018) Service for AC'97 Sample Driver (WDM)
DRV - [2001/08/17 16:20:16 | 000,054,528 | ---- | M] (Yamaha Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\opl3sax.sys -- (wdm_opl3sax) YAMAHA OPL3-SAx Audio Driver (WDM)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.windowsxlive.net
IE - HKCU\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG10\Firefox4\ [2011/04/02 17:43:30 | 000,000,000 | ---D | M]

[2003/12/18 05:13:18 | 000,002,045 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fcmdSrch.xml

O1 HOSTS File: ([2008/04/14 08:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [Symantec PIF AlertEng] C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (Symantec Corporation)
O4 - HKCU..\Run: [SpeedUpMyPC] C:\Program Files\Uniblue\SpeedUpMyPC\launcher.exe (Uniblue Systems Limited)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Value error.)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Sedano\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Sedano\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2003/12/18 07:15:30 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O32 - AutoRun File - [2009/01/21 17:22:18 | 000,126,976 | R--- | M] (Huawei Technologies Co., Ltd.) - F:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2008/06/21 02:45:28 | 000,000,045 | R--- | M] () - F:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{1b11d462-4de0-11e0-a6c2-00c0ca31c2cb}\Shell - "" = AutoRun
O33 - MountPoints2\{1b11d462-4de0-11e0-a6c2-00c0ca31c2cb}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{5e5f2496-5915-11e0-a508-00c0ca31c2cb}\Shell - "" = AutoRun
O33 - MountPoints2\{5e5f2496-5915-11e0-a508-00c0ca31c2cb}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{5e5f2496-5915-11e0-a508-00c0ca31c2cb}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009/01/21 17:22:18 | 000,126,976 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{9527bd84-30c4-11d8-a6d4-00c0ca31c2cb}\Shell - "" = AutoRun
O33 - MountPoints2\{9527bd84-30c4-11d8-a6d4-00c0ca31c2cb}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{9527bd86-30c4-11d8-a6d4-00c0ca31c2cb}\Shell - "" = AutoRun
O33 - MountPoints2\{9527bd86-30c4-11d8-a6d4-00c0ca31c2cb}\Shell\AutoRun - "" = Auto&Play
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/04/09 09:45:34 | 000,566,272 | ---- | C] (AVAST Software) -- C:\Documents and Settings\Sedano\My Documents\aswMBR.exe
[2011/04/09 09:42:31 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Sedano\My Documents\OTL.com
[2011/04/05 22:13:36 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Sedano\My Documents\Microsoft Office
[2011/04/03 09:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\vlc
[2011/04/03 05:10:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[2011/04/03 04:54:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\QuickTime
[2011/04/03 04:33:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2011/04/03 04:26:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sun
[2011/04/03 04:26:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/04/03 04:24:47 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2011/04/03 04:13:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\Sun
[2011/04/03 03:46:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\FLV Player
[2011/04/03 03:46:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\FLV Player
[2011/04/03 03:46:38 | 000,000,000 | ---D | C] -- C:\Program Files\FLV Player
[2011/04/03 03:22:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\OpenCandy
[2011/04/03 03:21:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\OpenCandy
[2011/03/31 12:39:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Supple
[2011/03/31 12:39:22 | 000,286,720 | ---- | C] (Indigo Rose Corporation) -- C:\WINDOWS\iun506.exe
[2011/03/30 17:57:45 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Sedano\My Documents\My Games
[2011/03/30 17:57:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Start Menu\Programs\Kudos 2
[2011/03/30 17:55:55 | 000,000,000 | ---D | C] -- C:\Program Files\Kudos 2
[2011/03/29 10:40:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\DFX Audio Enhancer
[2011/03/29 10:40:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\DFX
[2011/03/29 10:40:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DFX
[2011/03/29 10:40:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DFX
[2011/03/29 10:40:17 | 000,000,000 | ---D | C] -- C:\Program Files\DFX
[2011/03/29 03:30:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\Xilisoft
[2011/03/29 01:35:38 | 000,000,000 | -H-D | C] -- C:\$AVG
[2011/03/29 01:16:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\AVG10
[2011/03/29 01:12:44 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011/03/29 01:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AVG 2011
[2011/03/29 01:08:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011/03/29 01:08:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\AVG
[2011/03/29 01:07:55 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2011/03/28 23:24:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\Malwarebytes
[2011/03/28 23:24:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/03/28 23:24:02 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/03/28 23:23:59 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/03/28 23:23:59 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/03/28 23:23:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/03/28 22:43:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\Uniblue
[2011/03/28 22:43:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Uniblue
[2011/03/28 22:43:28 | 000,000,000 | ---D | C] -- C:\Program Files\Uniblue
[2011/03/28 22:37:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/03/28 16:29:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\WMTools Downloaded Files
[2011/03/28 15:08:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011/03/27 17:04:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\DOSBox
[2011/03/27 07:47:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\TuneUp Software
[2011/03/26 17:19:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\PackageAware
[2011/03/25 16:06:49 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Sedano\My Documents\TOW RECORDS
[2011/03/24 20:45:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\rionix
[2011/03/24 20:45:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\Action Ball 2
[2011/03/24 10:20:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Fugazo
[2011/03/22 18:29:38 | 000,000,000 | ---D | C] -- C:\Program Files\SkyPaint
[2011/03/22 18:27:08 | 000,000,000 | ---D | C] -- C:\Program Files\Camera Bits
[2011/03/22 18:27:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Camera Bits
[2011/03/22 18:25:55 | 000,000,000 | ---D | C] -- C:\Program Files\Samples
[2011/03/22 18:25:54 | 000,033,792 | ---- | C] (Stirling) -- C:\Program Files\_ISREG32.DLL
[2011/03/22 18:25:48 | 000,000,000 | ---D | C] -- C:\Program Files\Plugins
[2011/03/22 18:25:48 | 000,000,000 | ---D | C] -- C:\Program Files\mlTemp
[2011/03/22 18:25:26 | 000,289,280 | ---- | C] (InstallShield Corporation, Inc.) -- C:\WINDOWS\uninst.exe
[2011/03/22 18:23:33 | 000,000,000 | ---D | C] -- C:\Program Files\Jasc Software Inc
[2011/03/22 18:20:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Start Menu\Programs\PhotoFreebies
[2011/03/22 18:20:03 | 000,000,000 | ---D | C] -- C:\Program Files\PhotoFreebies
[2011/03/22 18:16:59 | 000,086,016 | ---- | C] (MindVision Software) -- C:\WINDOWS\unvise32.exe
[2011/03/22 18:16:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\BitJazz Tools 1.0
[2011/03/22 18:16:28 | 000,000,000 | ---D | C] -- C:\Program Files\BitJazz Tools 1.0
[2011/03/22 17:50:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Macrovision
[2011/03/22 17:50:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe Systems Shared
[2011/03/21 22:05:26 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Sedano\My Documents\Notes
[2011/03/21 11:27:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\AskToolbar
[2011/03/21 11:27:21 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2011/03/21 11:27:19 | 000,000,000 | ---D | C] -- C:\Firefox
[2011/03/21 11:23:36 | 000,000,000 | ---D | C] -- C:\Program Files\Photo Pos Pro
[2011/03/21 03:10:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2011/03/20 10:30:40 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Sedano\IECompatCache
[2011/03/20 10:29:32 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Sedano\PrivacIE
[2011/03/20 10:17:27 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Sedano\IETldCache
[2011/03/20 10:08:32 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2011/03/19 15:45:21 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2011/03/19 12:21:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\TuneUp Software
[2011/03/19 12:16:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2011/03/19 12:15:31 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2011/03/19 11:25:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\ApplicationHistory
[2011/03/19 11:04:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\facemoods.com
[2011/03/19 03:39:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie7updates
[2011/03/18 14:01:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\Winstep
[2011/03/18 13:46:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Start Menu\Programs\Zuma's Revenge!
[2011/03/18 13:45:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\Zuma's Revenge!
[2011/03/18 13:45:12 | 000,000,000 | ---D | C] -- C:\Program Files\Zuma's Revenge!
[2011/03/14 12:25:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\County Fair
[2011/03/14 12:20:28 | 000,000,000 | ---D | C] -- C:\Program Files\Supple
[2011/03/14 12:14:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\FairyIsland
[2011/03/14 12:14:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\Fairy Island
[2011/03/14 12:11:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Kudos 2
[2011/03/14 12:11:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\Macromedia
[2011/03/14 12:10:55 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache
[2011/03/14 12:10:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Saved Games
[2011/03/14 12:10:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\Oberon Games
[2011/03/14 11:46:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SWF Studio
[2011/03/14 11:46:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/03/14 11:28:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\AdobeUM
[2011/03/14 11:28:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\Adobe
[2011/03/14 11:28:05 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Sedano\My Documents\My eBooks
[2011/03/14 11:28:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\Adobe
[2011/03/14 11:27:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011/03/14 11:22:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2011/03/14 11:22:22 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2011/03/14 11:21:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache
[2011/03/14 11:11:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Sun Broadband Wireless
[2011/03/14 11:11:33 | 000,112,640 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbnet.sys
[2011/03/14 11:11:33 | 000,102,528 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbmdm.sys
[2011/03/14 11:11:33 | 000,100,480 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbdev.sys
[2011/03/14 11:11:33 | 000,024,448 | ---- | C] (Huawei Tech. Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewdcsc.sys
[2011/03/14 11:11:01 | 000,000,000 | ---D | C] -- C:\Program Files\Sun Broadband Wireless
[2011/03/14 10:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SpinTop Games
[2011/03/14 10:27:20 | 000,000,000 | ---D | C] -- C:\Program Files\ReflexiveArcade
[2011/03/14 10:09:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\BigFish
[2011/03/14 10:08:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\Picto Words
[2011/03/14 05:40:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Farm Mania
[2011/03/14 01:42:50 | 000,126,976 | ---- | C] (Blizzard Entertainment) -- C:\WINDOWS\War3Unin.exe
[2011/03/14 01:42:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Start Menu\Programs\Warcraft III
[2011/03/14 01:35:11 | 000,000,000 | ---D | C] -- C:\Program Files\Warcraft III
[2011/03/14 01:29:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sandlot Games
[2011/03/14 01:26:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\Townopolis
[2011/03/13 20:06:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\Help
[2011/03/13 20:06:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Application Data\Help
[2011/03/13 19:59:30 | 000,024,576 | ---- | C] (Arihant Software) -- C:\WINDOWS\System32\CLSMEM.DLL
[2011/03/13 19:55:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Start Menu\Programs\WinRAR
[2011/03/13 19:55:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\WinRAR
[2011/03/13 19:55:28 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2011/03/13 19:53:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\WinZip
[2011/03/13 19:52:57 | 000,000,000 | ---D | C] -- C:\Program Files\WinZip
[2011/03/13 19:36:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2011/03/13 19:35:46 | 000,000,000 | -HSD | C] -- C:\FOUND.001
[2011/03/13 11:30:27 | 000,054,528 | ---- | C] (Yamaha Corp.) -- C:\WINDOWS\System32\drivers\opl3sax.sys
[2011/03/13 11:30:27 | 000,054,528 | ---- | C] (Yamaha Corp.) -- C:\WINDOWS\System32\dllcache\opl3sax.sys
[2011/03/13 10:51:05 | 000,000,000 | ---D | C] -- C:\Program Files\SiSVGA
[2011/03/13 10:50:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SiS 651
[2011/03/13 10:50:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\trayres
[2011/03/13 10:50:30 | 000,000,000 | ---D | C] -- C:\Program Files\SiS Compatible VGA V2.22
[2011/03/13 10:41:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\WINDOWS
[2011/03/13 09:42:19 | 000,000,000 | ---D | C] -- C:\Program Files\sisagp
[2011/03/13 09:41:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office
[2011/03/13 09:37:16 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works
[2011/03/13 09:36:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2011/03/13 09:35:46 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio
[2011/03/13 09:35:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2011/03/13 09:25:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\SHELLNEW
[2011/03/13 09:25:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Sedano\Local Settings\Application Data\Microsoft Help
[2011/03/13 09:24:52 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2011/03/13 09:24:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
[2011/03/13 09:23:56 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2011/03/13 09:07:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\REALTEK Gigabit and Fast Ethernet NIC Driver
[2011/03/13 09:07:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2011/03/13 09:07:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS
[2011/03/13 09:07:11 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2011/03/13 09:06:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/04/09 10:23:00 | 000,001,589 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/04/09 10:14:58 | 000,142,638 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\driverscanner.exe.crdownload
[2011/04/09 10:04:46 | 000,009,334 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\SysRestorePoint_v13.zip
[2011/04/09 10:03:56 | 000,513,320 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\erunt.zip
[2011/04/09 10:01:10 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2011/04/09 09:50:30 | 000,000,512 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\MBR.dat
[2011/04/09 09:46:02 | 000,566,272 | ---- | M] (AVAST Software) -- C:\Documents and Settings\Sedano\My Documents\aswMBR.exe
[2011/04/09 09:42:30 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Sedano\My Documents\OTL.com
[2011/04/09 09:32:56 | 000,625,664 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\dds.scr
[2011/04/09 09:15:40 | 008,104,967 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\stinger10101504.exe
[2011/04/09 08:53:42 | 000,000,266 | ---- | M] () -- C:\WINDOWS\tasks\RegistryBooster.job
[2011/04/09 08:53:36 | 000,000,258 | ---- | M] () -- C:\WINDOWS\tasks\SpeedUpMyPC.job
[2011/04/09 08:52:46 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/04/09 08:09:14 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/04/09 01:09:06 | 000,001,204 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-507921405-706699826-1644491937-1003Core.job
[2011/04/09 00:46:24 | 000,987,638 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\Bryan White - God Gave Me You.mp3
[2011/04/09 00:39:18 | 003,521,778 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\Falling Stars - David Archuleta [NEW RNB 2010].mp3
[2011/04/09 00:37:32 | 004,966,110 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\Mathew Morrison - Summer Rain.mp3
[2011/04/09 00:30:28 | 004,018,237 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\Boyce Avenue - No Air (piano acoustic).mp3
[2011/04/09 00:09:20 | 005,486,304 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\Boyce Avenue - Keep Holding On (acoustic).mp3
[2011/04/08 23:51:58 | 008,332,539 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\Bruno Mars - The Lazy Song.mp3
[2011/04/08 23:35:10 | 010,505,071 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\The Script - This is love.mp3
[2011/04/08 23:34:24 | 003,873,271 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\The Script - If You Ever Come Back.mp3
[2011/04/08 23:19:38 | 003,952,513 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\Christian Bautista - You.mp3
[2011/04/08 22:51:52 | 007,100,416 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\The Man Who Can't Be Moved.mp3
[2011/04/08 19:32:50 | 111,950,108 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/04/08 19:17:48 | 000,000,025 | ---- | M] () -- C:\WINDOWS\popcinfot.dat
[2011/04/03 05:10:12 | 000,000,630 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2011/04/03 03:46:42 | 000,001,484 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\FLV Player.lnk
[2011/04/02 17:44:06 | 000,000,601 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG 2011.lnk
[2011/03/31 12:39:28 | 000,001,423 | ---- | M] () -- C:\Documents and Settings\Sedano\Desktop\Play Supple.lnk
[2011/03/31 12:38:54 | 000,286,720 | ---- | M] (Indigo Rose Corporation) -- C:\WINDOWS\iun506.exe
[2011/03/30 17:57:12 | 000,001,434 | ---- | M] () -- C:\Documents and Settings\Sedano\Desktop\Kudos 2.lnk
[2011/03/29 11:43:46 | 000,010,752 | ---- | M] () -- C:\Documents and Settings\Sedano\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/03/28 23:48:50 | 000,000,586 | ---- | M] () -- C:\Documents and Settings\Sedano\My Documents\uTorrent.lnk
[2011/03/28 23:24:06 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/03/28 23:02:26 | 000,001,531 | ---- | M] () -- C:\Documents and Settings\Sedano\Application Data\Microsoft\Internet Explorer\Quick Launch\SpeedUpMyPC.lnk
[2011/03/28 23:02:26 | 000,001,489 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SpeedUpMyPC.lnk
[2011/03/28 22:43:34 | 000,000,671 | ---- | M] () -- C:\Documents and Settings\Sedano\Application Data\Microsoft\Internet Explorer\Quick Launch\RegistryBooster.lnk
[2011/03/28 22:43:34 | 000,000,653 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\RegistryBooster.lnk
[2011/03/28 22:35:12 | 000,003,186 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\LUUnInstall.LiveUpdate
[2011/03/28 15:09:42 | 000,000,416 | RHS- | M] () -- C:\boot.ini
[2011/03/27 17:17:50 | 000,000,091 | ---- | M] () -- C:\WINDOWS\CIV.INI
[2011/03/27 07:58:24 | 000,002,197 | ---- | M] () -- C:\Documents and Settings\Sedano\Desktop\Google Chrome.lnk
[2011/03/27 07:58:24 | 000,002,175 | ---- | M] () -- C:\Documents and Settings\Sedano\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/03/25 15:35:46 | 000,000,546 | ---- | M] () -- C:\WINDOWS\eReg.dat
[2011/03/23 18:53:38 | 000,728,576 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/03/22 18:25:58 | 000,001,990 | ---- | M] () -- C:\Program Files\DeIsL1.isu
[2011/03/22 18:14:48 | 000,044,544 | ---- | M] () -- C:\WINDOWS\AWuninstall.exe
[2011/03/22 17:50:14 | 000,001,597 | ---- | M] () -- C:\Documents and Settings\Sedano\Desktop\Adobe Photoshop CS.lnk
[2011/03/21 23:10:14 | 000,380,680 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/03/21 23:10:14 | 000,052,968 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/03/20 10:18:18 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\Sedano\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/03/19 15:42:20 | 000,000,192 | ---- | M] () -- C:\WINDOWS\winamp.ini
[2011/03/18 13:46:18 | 000,001,543 | ---- | M] () -- C:\Documents and Settings\Sedano\Desktop\Zuma's Revenge!.lnk
[2011/03/14 10:29:56 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat
[2011/03/14 01:42:56 | 000,017,947 | ---- | M] () -- C:\WINDOWS\War3Unin.dat
[2011/03/14 01:42:56 | 000,001,516 | ---- | M] () -- C:\Documents and Settings\Sedano\Desktop\Warcraft III.lnk
[2011/03/14 01:42:52 | 000,126,976 | ---- | M] (Blizzard Entertainment) -- C:\WINDOWS\War3Unin.exe
[2011/03/14 01:42:52 | 000,002,829 | ---- | M] () -- C:\WINDOWS\War3Unin.pif
[2011/03/13 10:27:34 | 000,050,417 | ---- | M] () -- C:\WINDOWS\System32\sunistlog.ini
[2011/03/13 10:27:32 | 000,034,915 | ---- | M] () -- C:\WINDOWS\System32\1_ssetup.ini
[2011/03/13 10:09:50 | 000,000,552 | ---- | M] () -- C:\WINDOWS\System32\d3d8caps.dat
[2011/03/13 10:09:38 | 000,000,052 | ---- | M] () -- C:\WINDOWS\SiSAudioRack.ini
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/04/09 10:04:45 | 000,009,334 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\SysRestorePoint_v13.zip
[2011/04/09 10:04:05 | 000,513,320 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\erunt.zip
[2011/04/09 09:50:29 | 000,000,512 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\MBR.dat
[2011/04/09 09:32:48 | 000,625,664 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\dds.scr
[2011/04/09 09:10:00 | 008,104,967 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\stinger10101504.exe
[2011/04/09 00:56:43 | 000,987,638 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\Bryan White - God Gave Me You.mp3
[2011/04/09 00:37:38 | 003,521,778 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\Falling Stars - David Archuleta [NEW RNB 2010].mp3
[2011/04/09 00:33:32 | 004,966,110 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\Mathew Morrison - Summer Rain.mp3
[2011/04/09 00:28:06 | 004,018,237 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\Boyce Avenue - No Air (piano acoustic).mp3
[2011/04/09 00:06:40 | 005,486,304 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\Boyce Avenue - Keep Holding On (acoustic).mp3
[2011/04/08 23:46:18 | 008,332,539 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\Bruno Mars - The Lazy Song.mp3
[2011/04/08 23:29:34 | 003,873,271 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\The Script - If You Ever Come Back.mp3
[2011/04/08 23:20:49 | 010,505,071 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\The Script - This is love.mp3
[2011/04/08 23:15:33 | 003,952,513 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\Christian Bautista - You.mp3
[2011/04/08 22:48:17 | 007,100,416 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\The Man Who Can't Be Moved.mp3
[2011/04/08 19:32:49 | 111,950,108 | ---- | C] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/04/03 05:10:10 | 000,000,630 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2011/04/03 03:46:40 | 000,001,484 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\FLV Player.lnk
[2011/03/31 21:46:30 | 000,001,597 | ---- | C] () -- C:\Documents and Settings\Sedano\Desktop\Adobe Photoshop CS.lnk
[2011/03/31 12:39:27 | 000,001,423 | ---- | C] () -- C:\Documents and Settings\Sedano\Desktop\Play Supple.lnk
[2011/03/30 17:57:10 | 000,001,434 | ---- | C] () -- C:\Documents and Settings\Sedano\Desktop\Kudos 2.lnk
[2011/03/29 01:11:38 | 000,000,601 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\AVG 2011.lnk
[2011/03/28 23:48:49 | 000,000,586 | ---- | C] () -- C:\Documents and Settings\Sedano\My Documents\uTorrent.lnk
[2011/03/28 23:24:04 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/03/28 23:02:44 | 000,000,258 | ---- | C] () -- C:\WINDOWS\tasks\SpeedUpMyPC.job
[2011/03/28 23:02:24 | 000,001,531 | ---- | C] () -- C:\Documents and Settings\Sedano\Application Data\Microsoft\Internet Explorer\Quick Launch\SpeedUpMyPC.lnk
[2011/03/28 23:02:24 | 000,001,489 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SpeedUpMyPC.lnk
[2011/03/28 22:43:45 | 000,000,266 | ---- | C] () -- C:\WINDOWS\tasks\RegistryBooster.job
[2011/03/28 22:43:32 | 000,000,671 | ---- | C] () -- C:\Documents and Settings\Sedano\Application Data\Microsoft\Internet Explorer\Quick Launch\RegistryBooster.lnk
[2011/03/28 22:43:32 | 000,000,653 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\RegistryBooster.lnk
[2011/03/28 22:35:11 | 000,003,186 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LUUnInstall.LiveUpdate
[2011/03/28 15:03:06 | 000,155,648 | R--- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
[2011/03/28 15:02:56 | 000,141,016 | R--- | C] () -- C:\WINDOWS\System32\ALSNDMGR.WAV
[2011/03/27 17:17:48 | 000,000,091 | ---- | C] () -- C:\WINDOWS\CIV.INI
[2011/03/25 15:35:44 | 000,000,546 | ---- | C] () -- C:\WINDOWS\eReg.dat
[2011/03/22 18:25:49 | 000,054,272 | ---- | C] () -- C:\Program Files\ml-Uninstall.Exe
[2011/03/22 18:25:49 | 000,014,715 | ---- | C] () -- C:\Program Files\standardnodes.wrl
[2011/03/22 18:25:49 | 000,000,133 | ---- | C] () -- C:\Program Files\MLCheck.cfg
[2011/03/22 18:25:48 | 001,213,440 | ---- | C] () -- C:\WINDOWS\System32\opengl.dll
[2011/03/22 18:25:48 | 000,315,904 | ---- | C] () -- C:\WINDOWS\System32\glu.dll
[2011/03/22 18:25:48 | 000,001,990 | ---- | C] () -- C:\Program Files\DeIsL1.isu
[2011/03/22 18:22:21 | 000,082,864 | ---- | C] () -- C:\WINDOWS\System32\UNWISE.EXE
[2011/03/22 18:14:47 | 000,044,544 | ---- | C] () -- C:\WINDOWS\AWuninstall.exe
[2011/03/22 17:50:12 | 000,001,604 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe ImageReady CS.lnk
[2011/03/22 17:50:12 | 000,001,597 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Photoshop CS.lnk
[2011/03/21 11:27:28 | 000,000,236 | ---- | C] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2011/03/20 10:18:16 | 000,000,707 | ---- | C] () -- C:\Documents and Settings\Sedano\Start Menu\Programs\Internet Explorer.lnk
[2011/03/18 13:46:16 | 000,001,543 | ---- | C] () -- C:\Documents and Settings\Sedano\Desktop\Zuma's Revenge!.lnk
[2011/03/14 10:29:53 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2011/03/14 01:42:55 | 000,001,516 | ---- | C] () -- C:\Documents and Settings\Sedano\Desktop\Warcraft III.lnk
[2011/03/14 01:42:52 | 000,017,947 | ---- | C] () -- C:\WINDOWS\War3Unin.dat
[2011/03/14 01:42:50 | 000,002,829 | ---- | C] () -- C:\WINDOWS\War3Unin.pif
[2011/03/13 19:50:21 | 000,000,192 | ---- | C] () -- C:\WINDOWS\winamp.ini
[2011/03/13 11:37:38 | 000,098,906 | ---- | C] () -- C:\WINDOWS\SIS7012.INF
[2011/03/13 11:37:38 | 000,047,024 | ---- | C] () -- C:\WINDOWS\sis7012.cat
[2011/03/13 10:50:17 | 000,155,648 | ---- | C] () -- C:\WINDOWS\System32\setuplib.dll
[2011/03/13 10:50:17 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\waitwnd.exe
[2011/03/13 10:33:23 | 000,010,752 | ---- | C] () -- C:\Documents and Settings\Sedano\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/03/13 10:27:31 | 000,155,648 | R--- | C] () -- C:\WINDOWS\System32\TVModeLib.dll
[2011/03/13 10:27:26 | 000,050,417 | ---- | C] () -- C:\WINDOWS\System32\sunistlog.ini
[2011/03/13 10:27:26 | 000,034,915 | ---- | C] () -- C:\WINDOWS\System32\1_ssetup.ini
[2011/03/13 10:27:08 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\sis740.bin
[2011/03/13 10:27:08 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\sis650.bin
[2011/03/13 09:09:14 | 000,000,052 | ---- | C] () -- C:\WINDOWS\SiSAudioRack.ini
[2008/04/14 08:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2008/04/14 08:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2008/04/14 08:00:00 | 000,380,680 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2008/04/14 08:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2008/04/14 08:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2008/04/14 08:00:00 | 000,052,968 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2008/04/14 08:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2008/04/14 08:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2008/04/14 08:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2008/04/14 08:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2008/04/14 08:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2008/04/14 08:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004/01/05 08:20:28 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2004/01/04 19:29:07 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2004/01/04 19:17:58 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2004/01/04 19:10:01 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2004/01/04 19:05:26 | 000,728,576 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2003/12/18 06:41:43 | 000,000,025 | ---- | C] () -- C:\WINDOWS\popcinfot.dat
[2003/12/18 04:15:13 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\moveex.exe
[2003/12/17 22:18:39 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WinInit.ini
[2003/12/17 04:08:29 | 000,004,096 | ---- | C] () -- C:\WINDOWS\System32\drivers\nocashio.sys

========== LOP Check ==========

[2011/03/14 01:29:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sandlot Games
[2011/03/14 10:38:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SpinTop Games
[2011/03/14 11:46:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2003/12/17 03:15:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayFirst
[2003/12/17 23:06:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IObit
[2003/12/18 06:38:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap Games
[2003/12/18 06:53:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Big Fish Games
[2011/03/19 12:15:32 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2011/03/19 12:16:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2011/03/24 10:20:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fugazo
[2011/03/24 20:45:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\rionix
[2011/03/28 22:37:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/03/29 01:08:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011/03/29 01:12:46 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011/03/29 10:40:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DFX
[2003/12/17 03:15:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Sedano\Application Data\PlayFirst
[2003/12/17 22:30:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Sedano\Application Data\uTorrent
[2003/12/17 22:55:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Sedano\Application Data\IObit
[2011/03/19 11:04:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Sedano\Application Data\facemoods.com
[2011/03/19 12:21:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Sedano\Application Data\TuneUp Software
[2011/03/28 22:43:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Sedano\Application Data\Uniblue
[2011/03/29 01:16:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Sedano\Application Data\AVG10
[2011/04/03 03:21:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Sedano\Application Data\OpenCandy
[2011/04/09 10:01:10 | 000,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
[2011/04/09 08:53:42 | 000,000,266 | ---- | M] () -- C:\WINDOWS\Tasks\RegistryBooster.job
[2011/04/09 08:53:36 | 000,000,258 | ---- | M] () -- C:\WINDOWS\Tasks\SpeedUpMyPC.job

========== Purity Check ==========



< End of report >
  • 0

Advertisements


#2
Xinader

Xinader

    New Member

  • Topic Starter
  • Member
  • Pip
  • 5 posts
:D
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP