Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

hotmail keeps sending emails at same time everyday


  • Please log in to reply

#1
scrivs9

scrivs9

    Member

  • Member
  • PipPip
  • 16 posts
hi
my hotmail account keeps sending emails out each day around 16:09 everyday.

OTL logfile created on: 02/05/2011 22:58:51 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\scrivs\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 43.00% Memory free
3.00 Gb Paging File | 2.00 Gb Available in Paging File | 61.00% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29.29 Gb Total Space | 1.00 Gb Free Space | 3.42% Space Free | Partition Type: NTFS
Drive F: | 23.49 Gb Total Space | 0.52 Gb Free Space | 2.21% Space Free | Partition Type: NTFS
Drive H: | 0.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: SCRIVSLAPTOP | User Name: scrivs | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/05/02 22:55:28 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\scrivs\Desktop\OTL.exe
PRC - [2011/05/01 12:14:15 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010/12/07 11:32:02 | 002,228,008 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
PRC - [2010/12/07 11:31:58 | 007,482,152 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version6\TeamViewer.exe
PRC - [2010/12/07 11:10:24 | 000,099,624 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version6\tv_w32.exe
PRC - [2010/11/17 14:27:23 | 000,142,336 | ---- | M] () -- C:\Program Files\BBC iPlayer Desktop\BBC iPlayer Desktop.exe
PRC - [2010/06/26 19:09:18 | 000,167,936 | ---- | M] (Applian Technologies, Inc.) -- F:\Program Files\Freecorder\FLVSrvc.exe
PRC - [2010/06/24 15:41:38 | 000,092,008 | ---- | M] (TomTom) -- f:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
PRC - [2010/06/24 15:41:34 | 000,247,144 | ---- | M] (TomTom) -- F:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
PRC - [2010/02/15 10:16:41 | 001,800,464 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
PRC - [2010/02/15 10:16:38 | 000,723,632 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
PRC - [2009/12/16 09:28:18 | 000,222,528 | ---- | M] (DT Soft Ltd) -- f:\Program Files\DAEMON Tools Pro\DTProShellHlp.exe
PRC - [2009/09/06 14:38:06 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
PRC - [2009/03/06 00:57:56 | 000,227,352 | ---- | M] (SonicWALL, Inc.) -- C:\Program Files\SonicWALL\SonicWALL Global VPN Client\SWGVCSvc.exe
PRC - [2009/02/23 20:43:12 | 000,576,000 | ---- | M] (MagicISO, Inc.) -- C:\Program Files\MagicDisc\MagicDisc.exe
PRC - [2008/08/18 19:17:14 | 001,616,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/08/18 17:53:48 | 000,016,712 | R--- | M] () -- C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe
PRC - [2008/04/09 09:55:26 | 000,356,352 | ---- | M] (WB Electronics) -- F:\Program Files\Infinity PasswordSafe\passwordsafe.exe
PRC - [2007/09/05 18:20:12 | 000,036,352 | ---- | M] (VisualTaskTips.com) -- C:\Program Files\Windows7\VisualTaskTips\VisualTaskTips.exe
PRC - [2007/09/02 07:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files\RocketDock\RocketDock.exe
PRC - [2007/07/24 12:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) -- C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2007/02/21 05:19:58 | 000,819,200 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\ZCfgSvc.exe
PRC - [2007/02/21 05:19:40 | 000,294,912 | ---- | M] (Intel® Corporation) -- C:\Program Files\Intel\Wireless\Bin\WLKEEPER.exe
PRC - [2007/02/21 05:17:42 | 000,970,752 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\iFrmewrk.exe
PRC - [2007/02/21 05:13:26 | 000,487,424 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
PRC - [2006/11/18 11:31:00 | 000,581,632 | ---- | M] () -- C:\Program Files\Windows7\Vienna Explorer\Vienna Explorer.exe
PRC - [2006/05/21 04:43:08 | 000,180,224 | ---- | M] () -- C:\Program Files\Windows7\UberIcon\UberIcon Manager.exe
PRC - [2005/11/05 14:10:06 | 000,480,256 | ---- | M] (Excode Software) -- C:\Program Files\Analog Clock\AnalogClock.exe


========== Modules (SafeList) ==========

MOD - [2011/05/02 22:55:28 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\scrivs\Desktop\OTL.exe
MOD - [2011/05/02 11:03:45 | 000,018,432 | ---- | M] (Applian Technologies, Inc.) -- C:\Documents and Settings\scrivs\Local Settings\Application Data\FLVService\lib\FLVSrvLib.dll
MOD - [2010/08/23 17:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2010/02/15 10:16:57 | 000,171,552 | ---- | M] (COMODO) -- C:\WINDOWS\system32\guard32.dll
MOD - [2008/07/29 09:05:08 | 000,655,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcr90.dll
MOD - [2008/04/09 09:54:58 | 000,057,344 | ---- | M] () -- F:\Program Files\Infinity PasswordSafe\procdll.dll
MOD - [2007/09/05 18:20:04 | 000,007,680 | ---- | M] () -- C:\Program Files\Windows7\VisualTaskTips\VttHooks.dll
MOD - [2007/09/02 07:57:36 | 000,069,632 | ---- | M] () -- C:\Program Files\RocketDock\RocketDock.dll
MOD - [2006/05/21 04:43:08 | 000,065,536 | ---- | M] () -- C:\Program Files\Windows7\UberIcon\UberIcon.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - [2010/12/07 11:32:02 | 002,228,008 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2010/06/24 15:41:38 | 000,092,008 | ---- | M] (TomTom) [Auto | Running] -- f:\Program Files\TomTom HOME 2\TomTomHOMEService.exe -- (TomTomHOMEService)
SRV - [2010/02/15 10:16:38 | 000,723,632 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent)
SRV - [2009/09/06 14:38:06 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU)
SRV - [2009/03/06 00:57:56 | 000,227,352 | ---- | M] (SonicWALL, Inc.) [Auto | Running] -- C:\Program Files\SonicWALL\SonicWALL Global VPN Client\SWGVCSvc.exe -- (SWGVCSvc)
SRV - [2007/07/24 12:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Running] -- C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2007/02/21 05:19:40 | 000,294,912 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\Wireless\Bin\WLKEEPER.exe -- (WLANKEEPER) Intel®


========== Driver Services (SafeList) ==========

DRV - [2010/02/15 10:16:56 | 000,087,104 | ---- | M] (COMODO) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\inspect.sys -- (Inspect)
DRV - [2010/02/15 10:16:56 | 000,025,160 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cmdhlp.sys -- (cmdHlp)
DRV - [2010/02/15 10:16:55 | 000,134,344 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmdguard.sys -- (cmdGuard)
DRV - [2010/02/11 13:02:15 | 000,226,880 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tcpip6.sys -- (Tcpip6)
DRV - [2010/01/16 22:03:45 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2009/09/28 21:57:28 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009/03/06 00:58:12 | 000,087,064 | ---- | M] (SonicWALL, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\SWIPsec.sys -- (SWIPsec)
DRV - [2009/03/04 19:03:32 | 000,021,016 | ---- | M] (SonicWALL, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SWVNIC.sys -- (SWVNIC)
DRV - [2009/02/24 19:42:14 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mcdbus.sys -- (mcdbus)
DRV - [2008/11/16 19:39:44 | 000,131,984 | ---- | M] (Deterministic Networks, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dne2000.sys -- (DNE)
DRV - [2007/06/12 11:08:44 | 000,052,944 | ---- | M] (ELTIMA Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\evserial.sys -- (evserial) Virtual Serial Ports Driver (Eltima Softwate)
DRV - [2007/06/12 11:08:38 | 000,026,448 | ---- | M] (ELTIMA Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\evsbc.sys -- (VSBC) Virtual Serial Bus Enumerator (Eltima Software)
DRV - [2007/05/29 11:38:10 | 000,014,848 | ---- | M] (Silicon Laboratories) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SiUSBXp.sys -- (INFUNLTD)
DRV - [2007/02/21 05:16:12 | 000,012,416 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans)
DRV - [2007/02/08 07:51:16 | 002,209,408 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\w29n51.sys -- (w29n51) Intel®
DRV - [2005/08/03 17:10:18 | 001,273,344 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2005/05/03 09:09:28 | 001,033,728 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_DPV.SYS -- (HSF_DPV)
DRV - [2005/05/03 09:08:50 | 000,208,384 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSFHWICH.sys -- (HSFHWICH)
DRV - [2005/05/03 09:08:44 | 000,705,408 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys -- (winachsf)
DRV - [2005/03/10 10:56:06 | 000,273,168 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\STAC97.sys -- (STAC97)
DRV - [2004/05/26 09:18:18 | 000,044,928 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys -- (bcm4sbxp)
DRV - [2004/03/24 03:12:34 | 000,017,280 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\nsndis5.sys -- (NSNDIS5)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig?hl=en
IE - HKCU\..\URLSearchHook: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - C:\Program Files\Freecorder\tbFree.dll (Conduit Ltd.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.co.uk/"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906
FF - prefs.js..extensions.enabledItems: vshare@toolbar:1.0.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [email protected]:3.2.5.2
FF - prefs.js..extensions.enabledItems: {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.2.1
FF - prefs.js..extensions.enabledItems: {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0}:3.2.5.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..keyword.URL: "chrome://browser-region/locale/region.properties"

FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/05/01 12:14:31 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/03/25 00:39:55 | 000,000,000 | ---D | M]

[2010/07/17 11:29:29 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Extensions
[2010/07/17 11:29:29 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Extensions\[email protected]
[2009/11/25 20:10:18 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Extensions\[email protected]
[2011/04/21 19:02:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\extensions
[2011/03/25 00:41:28 | 000,000,000 | ---D | M] (Freecorder Community Toolbar) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}
[2011/04/21 19:02:22 | 000,000,000 | ---D | M] (Stardoll Community Toolbar) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\extensions\{192a6019-26d2-4611-aead-07cd7733b146}
[2010/10/15 17:38:30 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009/11/16 22:19:03 | 000,000,000 | ---D | M] (BitComet Video Downloader) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
[2011/03/25 10:35:12 | 000,000,000 | ---D | M] (IncrediMail MediaBar 2 Community Toolbar) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\extensions\{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0}
[2011/04/21 19:02:19 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\extensions\[email protected]
[2010/11/10 22:04:44 | 000,000,000 | ---D | M] (vShare) -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\extensions\vshare@toolbar
[2011/02/25 12:59:35 | 000,002,030 | ---- | M] () -- C:\Documents and Settings\scrivs\Application Data\Mozilla\Firefox\Profiles\yrry5pzh.default\searchplugins\MyStart Search.xml
[2011/03/25 00:39:59 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/01/16 14:17:05 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2010/08/24 21:08:54 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/11/15 01:38:39 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010/12/24 16:16:43 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011/03/11 01:02:54 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
File not found (No name found) --
[2009/11/25 20:08:17 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/05/01 12:14:14 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll
[2009/07/17 09:40:12 | 000,704,512 | ---- | M] (BitComet) -- C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll
[2011/02/02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2009/11/20 12:25:01 | 000,075,208 | ---- | M] (Foxit Software Company) -- C:\Program Files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll
[2010/01/01 09:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\bing.xml

O1 HOSTS File: ([2004/08/04 13:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Freecorder Toolbar) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - C:\Program Files\Freecorder\tbFree.dll (Conduit Ltd.)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.3.7.16.dll (BitComet)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (IncrediMail MediaBar 2 Toolbar) - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} - C:\Program Files\IncrediMail_MediaBar_2\tbIncr.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Freecorder Toolbar) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - C:\Program Files\Freecorder\tbFree.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (IncrediMail MediaBar 2 Toolbar) - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} - C:\Program Files\IncrediMail_MediaBar_2\tbIncr.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Freecorder Toolbar) - {1392B8D2-5C05-419F-A8F6-B9F15A596612} - C:\Program Files\Freecorder\tbFree.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (IncrediMail MediaBar 2 Toolbar) - {D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0} - C:\Program Files\IncrediMail_MediaBar_2\tbIncr.dll (Conduit Ltd.)
O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation)
O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO)
O4 - HKLM..\Run: [Corel File Shell Monitor] C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe ()
O4 - HKLM..\Run: [Freecorder FLV Service] f:\Program Files\Freecorder\FLVSrvc.exe (Applian Technologies, Inc.)
O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe (Intel Corporation)
O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe (Intel Corporation)
O4 - HKLM..\Run: [PasswordSafe] f:\Program Files\Infinity PasswordSafe\passwordsafe.exe (WB Electronics)
O4 - HKLM..\Run: [Pie Dock] C:\Program Files\Windows7\Windows 7 Pie Dock\Windows 7 Pie Dock.exe ()
O4 - HKLM..\Run: [Viena Explorer] C:\Program Files\Windows7\Vienna Explorer\Vienna Explorer.exe ()
O4 - HKLM..\Run: [Visual Task Tips] C:\Program Files\Windows7\VisualTaskTips\VisualTaskTips.exe (VisualTaskTips.com)
O4 - HKCU..\Run: [AnalogClock] C:\Program Files\Analog Clock\AnalogClock.exe (Excode Software)
O4 - HKCU..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()
O4 - HKCU..\Run: [TomTomHOME.exe] f:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
O4 - HKCU..\Run: [TransBar] C:\Program Files\Windows7\TransBar\TransBar.exe (AKSoftware)
O4 - HKCU..\Run: [UberIcon] C:\Program Files\Windows7\UberIcon\UberIcon Manager.exe ()
O4 - Startup: C:\Documents and Settings\scrivs\Start Menu\Programs\Startup\BBC iPlayer Desktop.lnk = C:\Program Files\BBC iPlayer Desktop\BBC iPlayer Desktop.exe ()
O4 - Startup: C:\Documents and Settings\scrivs\Start Menu\Programs\Startup\MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRemoteRecursiveEvents = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 1
O8 - Extra context menu item: &D&ownload &with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: &D&ownload all video with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: &D&ownload all with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.3.7.16.dll (BitComet)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {2EDF75C0-5ABD-49f9-BAB6-220476A32034} http://intel-drv-cdn...reqlab_srlx.cab (System Requirements Lab Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - AppInit_DLLs: (C:\WINDOWS\system32\guard32.dll) - C:\WINDOWS\system32\guard32.dll (COMODO)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\scrivs\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\scrivs\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/11/16 09:38:57 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{bcea9c34-918d-11df-97ce-0010c6ecce66}\Shell\AutoRun\command - "" = I:\InstallTomTomHOME.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/05/02 22:55:21 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\scrivs\Desktop\OTL.exe
[2011/05/02 11:08:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2011/05/02 11:07:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood
[2011/05/01 12:14:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\KB905474
[2011/04/11 21:18:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\mBh06511jOhMj06511
[2009/11/25 22:56:06 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\scrivs\Application Data\pcouffin.sys
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/05/02 22:55:28 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\scrivs\Desktop\OTL.exe
[2011/05/02 11:08:24 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/05/02 11:07:34 | 000,435,828 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/05/02 11:07:34 | 000,068,558 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/05/02 11:05:01 | 000,000,752 | ---- | M] () -- C:\Documents and Settings\scrivs\Start Menu\Programs\Startup\BBC iPlayer Desktop.lnk
[2011/05/02 11:02:45 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\OGALogon.job
[2011/05/02 11:02:34 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/05/01 00:53:40 | 000,102,400 | ---- | M] () -- C:\WINDOWS\RegBootClean.exe
[2011/04/24 08:03:33 | 000,000,519 | ---- | M] () -- C:\Documents and Settings\scrivs\Application Data\Microsoft\Internet Explorer\Quick Launch\N.I number.lnk
[2011/04/15 22:36:24 | 000,488,296 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/04/15 17:09:33 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011/04/04 14:45:04 | 000,017,805 | ---- | M] () -- C:\Documents and Settings\scrivs\Desktop\st.chrisbig.jpg
[2011/04/03 15:46:49 | 000,004,244 | ---- | M] () -- C:\Documents and Settings\scrivs\Desktop\st.chris.jpg
[2011/04/03 15:25:22 | 000,003,140 | -HS- | M] () -- C:\Documents and Settings\All Users\Application Data\KGyGaAvL.sys
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/05/01 00:53:40 | 000,102,400 | ---- | C] () -- C:\WINDOWS\RegBootClean.exe
[2011/04/24 08:03:32 | 000,000,519 | ---- | C] () -- C:\Documents and Settings\scrivs\Application Data\Microsoft\Internet Explorer\Quick Launch\N.I number.lnk
[2011/04/04 14:45:04 | 000,017,805 | ---- | C] () -- C:\Documents and Settings\scrivs\Desktop\st.chrisbig.jpg
[2011/04/03 15:46:48 | 000,004,244 | ---- | C] () -- C:\Documents and Settings\scrivs\Desktop\st.chris.jpg
[2011/03/25 11:59:21 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/10/23 17:52:29 | 000,155,648 | ---- | C] () -- C:\WINDOWS\System32\pwlang.dll
[2010/10/11 19:36:51 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\scrivs\Local Settings\Application Data\housecall.guid.cache
[2010/09/18 21:07:05 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010/09/17 12:43:10 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\BRIDF04A.dat
[2010/09/12 09:37:22 | 000,159,615 | ---- | C] () -- C:\WINDOWS\Countup Uninstaller.exe
[2010/01/16 22:22:32 | 000,000,129 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009/12/01 14:34:25 | 000,001,041 | ---- | C] () -- C:\Documents and Settings\scrivs\Application Data\vso_ts_preview.xml
[2009/11/25 23:02:21 | 000,000,060 | ---- | C] () -- C:\Documents and Settings\scrivs\Application Data\Printer.ini
[2009/11/25 22:56:06 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\scrivs\Application Data\inst.exe
[2009/11/25 22:56:06 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\scrivs\Application Data\pcouffin.cat
[2009/11/25 22:56:06 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\scrivs\Application Data\pcouffin.inf
[2009/11/24 23:51:42 | 000,003,140 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\KGyGaAvL.sys
[2009/11/24 23:51:42 | 000,000,008 | RHS- | C] () -- C:\Documents and Settings\All Users\Application Data\01BE6A7947.sys
[2009/11/22 02:46:25 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2009/11/20 14:12:54 | 000,178,176 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2009/11/20 14:12:51 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2009/11/20 14:12:38 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009/11/20 14:12:35 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2009/11/20 14:12:31 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2009/11/20 14:12:15 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2009/11/19 02:25:37 | 000,071,680 | ---- | C] () -- C:\Documents and Settings\scrivs\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/11/18 10:31:01 | 000,000,459 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2009/11/18 10:31:01 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2009/11/18 10:31:00 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini
[2009/11/16 21:01:42 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009/11/16 16:29:42 | 000,004,317 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009/11/16 16:26:43 | 000,488,296 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/11/16 13:17:37 | 000,095,617 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2009/11/16 13:16:44 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\Stac97co.dll
[2009/11/16 09:51:15 | 000,001,100 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2009/11/16 09:45:45 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009/11/16 09:35:20 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2008/08/18 19:19:10 | 064,694,869 | ---- | C] () -- C:\WINDOWS\System32\taskman.exe
[2008/05/19 01:46:40 | 000,000,215 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2008/04/13 23:55:28 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2006/12/31 01:57:08 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2005/08/23 14:12:36 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\SDOApp.dll
[2005/08/22 13:14:12 | 000,167,936 | ---- | C] () -- C:\WINDOWS\System32\SageEventHandler.exe
[2005/08/22 13:12:08 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\SGCtrlEx.dll
[2005/08/22 13:11:58 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\SageFolderBrowser.dll
[2005/08/22 13:11:56 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\SGTBAR32.DLL
[2005/08/22 13:11:48 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\SGSTAT32.DLL
[2005/08/22 13:11:46 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\SGLOGO32.DLL
[2005/08/22 13:11:44 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\SGJPEG32.dll
[2005/08/22 13:11:38 | 000,241,664 | ---- | C] () -- C:\WINDOWS\System32\SGCDLG32.DLL
[2005/08/22 13:11:24 | 000,282,624 | ---- | C] () -- C:\WINDOWS\System32\SGLIST32.DLL
[2005/08/22 13:11:14 | 000,278,528 | ---- | C] () -- C:\WINDOWS\System32\SGTOOL32.DLL
[2005/08/22 13:11:08 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\SGINTL32.DLL
[2005/08/22 13:11:06 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\SGDT32.DLL
[2005/08/22 13:11:04 | 000,172,032 | ---- | C] () -- C:\WINDOWS\System32\SGHELP32.DLL
[2005/08/22 13:10:58 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\SGAPPBAR.DLL
[2005/08/22 13:10:48 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\SG3D32.DLL
[2005/08/22 13:10:46 | 000,245,760 | ---- | C] () -- C:\WINDOWS\System32\SGSchemeXml.dll
[2005/08/22 13:10:32 | 000,118,784 | ---- | C] () -- C:\WINDOWS\System32\SGSchemeXP.dll
[2005/08/22 13:10:26 | 000,176,128 | ---- | C] () -- C:\WINDOWS\System32\SGSchemeDefault.dll
[2005/08/22 13:10:18 | 000,221,184 | ---- | C] () -- C:\WINDOWS\System32\SGSchemeManager.dll
[2005/08/22 13:10:06 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\SGCOM32.DLL
[2005/08/22 13:08:30 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\SGWebBrowser.dll
[2005/08/22 09:32:00 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\REPDES32.EXE
[2005/08/22 09:31:58 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\SGLCH32.DLL
[2005/08/22 09:31:48 | 001,712,128 | ---- | C] () -- C:\WINDOWS\System32\SGREP32.DLL
[2004/08/04 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004/08/04 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004/08/04 13:00:00 | 000,435,828 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/08/04 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004/08/04 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004/08/04 13:00:00 | 000,068,558 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/08/04 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004/08/04 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004/08/04 13:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004/08/04 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004/07/08 09:19:56 | 000,001,187 | ---- | C] () -- C:\WINDOWS\Sageintl.ini
[2004/06/09 11:57:12 | 000,118,784 | ---- | C] () -- C:\WINDOWS\System32\Install.exe
[2002/04/16 12:27:54 | 000,000,005 | -HS- | C] () -- C:\WINDOWS\System32\CdI5T.drv
[1999/10/25 11:53:58 | 000,015,801 | ---- | C] () -- C:\WINDOWS\Sage.ini
[1998/03/26 02:12:00 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\SgHmZLib.dll

========== LOP Check ==========

[2010/06/14 22:00:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Aquarius Soft
[2009/11/22 02:48:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited
[2010/01/16 22:03:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
[2009/11/21 09:05:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DFX
[2010/01/17 14:27:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Easy CD-DA Extractor
[2009/12/14 13:26:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Iceni
[2011/02/25 13:02:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IM
[2011/02/25 13:00:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IncrediMail
[2011/04/11 21:18:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\mBh06511jOhMj06511
[2009/12/19 23:24:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
[2011/02/27 11:52:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Photo Notifier and Animation Creator
[2010/10/23 17:50:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/07/17 11:30:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TomTom
[2009/12/01 18:01:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\vsosdk
[2011/02/26 12:22:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010/01/17 21:19:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2011/02/26 00:42:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\AnvSoft
[2010/06/14 22:00:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\Aquarius Soft
[2010/04/27 22:37:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\BBCiPlayerDesktop.61DB7A798358575D6A969CCD73DDBBD723A6DA9D.1
[2011/03/01 10:16:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\BSplayer
[2009/11/26 17:13:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\BSplayer Pro
[2009/11/22 02:48:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\Canneverbe_Limited
[2010/01/16 22:17:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\DAEMON Tools Pro
[2009/11/20 12:25:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\Foxit
[2010/11/15 01:39:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\Foxit Software
[2010/11/06 01:21:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\gtk-2.0
[2009/12/14 13:26:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\Iceni
[2009/11/24 18:27:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\ImgBurn
[2010/11/14 18:24:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\LimeWire
[2009/11/16 09:51:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\OtakuSoftware
[2011/05/01 00:51:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\PriceGong
[2010/09/02 22:07:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\SmartDraw
[2009/11/26 11:31:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\SoftOrbits
[2011/01/10 15:03:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\TeamViewer
[2011/01/30 12:57:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\Thinstall
[2010/07/17 11:29:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\TomTom
[2011/03/20 22:37:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\scrivs\Application Data\Vso
[2011/05/02 11:02:45 | 000,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\OGALogon.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 197 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DDE29E40

< End of report >
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP