Thank you for your assistance.
OTL logfile created on: 6/14/2011 8:18:03 AM - Run 2
OTL by OldTimer - Version 3.2.24.0 Folder = C:\Documents and Settings\Paul\My Documents\2011\Computers\Google Redirect
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1014.37 Mb Total Physical Memory | 582.52 Mb Available Physical Memory | 57.43% Memory free
2.38 Gb Paging File | 2.07 Gb Available in Paging File | 86.94% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 143.08 Gb Total Space | 78.45 Gb Free Space | 54.83% Space Free | Partition Type: NTFS
Computer Name: PAUL-INSPIRON | User Name: Paul | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/06/13 23:13:08 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Paul\My Documents\2011\Computers\Google Redirect\OTL.exe
PRC - [2011/05/02 15:09:18 | 001,306,216 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
PRC - [2011/03/13 11:45:14 | 000,148,520 | ---- | M] (McAfee, Inc.) -- C:\WINDOWS\system32\mfevtps.exe
PRC - [2011/03/13 11:41:50 | 000,159,832 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\Mcafee\SystemCore\mfefire.exe
PRC - [2011/03/13 11:41:36 | 000,165,000 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\Mcafee\SystemCore\mcshield.exe
PRC - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
PRC - [2010/05/07 19:47:32 | 000,162,648 | ---- | M] (Logitech Inc.) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
PRC - [2008/12/08 06:40:00 | 000,115,992 | ---- | M] (EMC Corporation) -- C:\Program Files\Retrospect\Retrospect 7.6\retrorun.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/02/20 13:29:08 | 001,191,936 | ---- | M] (Dell Inc) -- C:\Program Files\Dell\QuickSet\quickset.exe
========== Modules (SafeList) ==========
MOD - [2011/06/13 23:13:08 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Paul\My Documents\2011\Computers\Google Redirect\OTL.exe
MOD - [2011/04/08 16:56:28 | 000,018,176 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee\SiteAdvisor\sahook.dll
MOD - [2010/08/23 12:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- -- (IHA_MessageCenter)
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/05/17 20:39:33 | 003,275,864 | ---- | M] () [Auto | Running] -- c:\Program Files\Common Files\Akamai\netsession_win_8832f4b.dll -- (Akamai)
SRV - [2011/05/04 17:25:13 | 000,215,552 | ---- | M] (Intel Corporation ) [Auto | Running] -- C:\WINDOWS\system32\itlpfw32.dll -- (itlperf)
SRV - [2011/03/17 16:38:42 | 000,361,712 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV - [2011/03/13 11:45:14 | 000,148,520 | ---- | M] (McAfee, Inc.) [Unknown | Running] -- C:\WINDOWS\system32\mfevtps.exe -- (mfevtp)
SRV - [2011/03/13 11:41:50 | 000,159,832 | ---- | M] () [Unknown | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV - [2011/03/13 11:41:36 | 000,165,000 | ---- | M] () [Unknown | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe -- (McShield)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McProxy)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McNASvc)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (mcmscsvc)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Unknown | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV - [2011/01/27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McAfee SiteAdvisor Service)
SRV - [2010/05/07 19:47:32 | 000,162,648 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv)
SRV - [2008/12/08 06:40:00 | 000,128,280 | ---- | M] (EMC Corporation) [Auto | Stopped] -- C:\Program Files\Retrospect\Retrospect 7.6\rthlpsvc.exe -- (Retrospect Helper)
SRV - [2008/12/08 06:40:00 | 000,115,992 | ---- | M] (EMC Corporation) [Auto | Running] -- C:\Program Files\Retrospect\Retrospect 7.6\retrorun.exe -- (RetroLauncher)
========== Driver Services (SafeList) ==========
DRV - [2011/03/13 11:20:10 | 000,459,728 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2011/03/13 11:20:10 | 000,337,912 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\WINDOWS\system32\drivers\mfefirek.sys -- (mfefirek)
DRV - [2011/03/13 11:20:10 | 000,179,248 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk)
DRV - [2011/03/13 11:20:10 | 000,118,784 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\WINDOWS\system32\drivers\mfeapfk.sys -- (mfeapfk)
DRV - [2011/03/13 11:20:10 | 000,089,368 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\WINDOWS\system32\drivers\mfetdi2k.sys -- (mfetdi2k)
DRV - [2011/03/13 11:20:10 | 000,085,984 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Stopped] -- C:\WINDOWS\system32\drivers\mferkdet.sys -- (mferkdet)
DRV - [2011/03/13 11:20:10 | 000,083,688 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfendisk.sys -- (mfendiskmp)
DRV - [2011/03/13 11:20:10 | 000,083,688 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfendisk.sys -- (mfendisk)
DRV - [2011/03/13 11:20:10 | 000,059,288 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk)
DRV - [2011/03/13 11:20:10 | 000,057,432 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\WINDOWS\system32\drivers\cfwids.sys -- (cfwids)
DRV - [2010/05/14 18:04:20 | 000,023,904 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvuvcflt.sys -- (FilterService)
DRV - [2010/05/14 18:04:02 | 006,842,592 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvuvc.sys -- (LVUVC) Logitech HD Webcam C310(UVC)
DRV - [2010/05/14 18:02:26 | 000,276,448 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvrs.sys -- (LVRS)
DRV - [2010/05/14 18:02:14 | 000,114,784 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvpopflt.sys -- (lvpopflt)
DRV - [2010/05/07 19:43:30 | 000,025,824 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LVPr2Mon.sys -- (LVPr2Mon)
DRV - [2007/05/10 10:24:34 | 001,222,840 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
DRV - [2006/11/22 18:34:36 | 000,604,928 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX)
DRV - [2006/08/25 01:23:08 | 000,044,544 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys -- (bcm4sbxp)
DRV - [2005/08/12 17:50:46 | 000,016,128 | ---- | M] (Dell Inc) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS -- (APPDRV)
DRV - [2005/07/14 17:58:14 | 000,028,544 | ---- | M] (REDC) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2005/07/14 16:28:38 | 000,307,968 | ---- | M] (REDC) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2005/07/12 18:00:30 | 000,051,328 | ---- | M] (REDC) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rimsptsk.sys -- (rimsptsk)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-447299374-3309734861-3770108698-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-21-447299374-3309734861-3770108698-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Secure Search"
FF - prefs.js..browser.search.selectedEngine: "Secure Search"
FF - prefs.js..browser.startup.homepage: "http://www.google.com"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.1
FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3.1
FF - prefs.js..extensions.enabledItems: {E0CC257A-4D42-4ED7-AFAF-0AE6422F60D0}:3.0.3.25
FF - prefs.js..extensions.enabledItems: {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1.6.2.99
FF - prefs.js..extensions.enabledItems: wecarereminder@bryan:4.0.2.0
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.4
FF - prefs.js..keyword.URL: "http://search.yahoo....h?fr=mcafee&p="
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010/11/18 16:09:22 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2011/05/31 23:54:02 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/05/12 17:08:57 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/04/29 13:19:15 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Netscape 7.2\Extensions\\Components: C:\Program Files\Netscape\Netscape\Components [2011/04/21 22:56:53 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Netscape 7.2\Extensions\\Plugins: C:\Program Files\Netscape\Netscape\Plugins [2011/04/29 13:19:16 | 000,000,000 | ---D | M]
[2010/10/22 18:22:41 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Paul\Application Data\Mozilla\Extensions
[2011/06/14 06:52:21 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Paul\Application Data\Mozilla\Firefox\Profiles\fntqj0lx.default\extensions
[2011/04/19 19:42:55 | 000,000,000 | ---D | M] (EPUBReader) -- C:\Documents and Settings\Paul\Application Data\Mozilla\Firefox\Profiles\fntqj0lx.default\extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F}
[2011/04/03 09:11:44 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Paul\Application Data\Mozilla\Firefox\Profiles\fntqj0lx.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011/03/19 00:44:09 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Paul\Application Data\Mozilla\Firefox\Profiles\fntqj0lx.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}(2)
[2011/03/05 10:19:12 | 000,000,000 | ---D | M] (Adobe DLM (powered by getPlus®)) -- C:\Documents and Settings\Paul\Application Data\Mozilla\Firefox\Profiles\fntqj0lx.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}
[2011/03/28 09:13:21 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Paul\Application Data\Mozilla\Firefox\Profiles\fntqj0lx.default\extensions\nostmp
[2011/06/14 06:52:25 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Paul\Application Data\Mozilla\Firefox\Profiles\fntqj0lx.default\extensions\staged
[2011/04/18 07:48:03 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/04/18 07:48:04 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
File not found (No name found) --
[2010/11/18 16:09:22 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
[2011/04/18 07:47:46 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/05/31 23:54:02 | 000,000,000 | ---D | M] (McAfee SiteAdvisor) -- C:\PROGRAM FILES\MCAFEE\SITEADVISOR
[2011/05/05 08:27:12 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2011/04/29 22:28:35 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll
[2011/04/18 07:47:45 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010/01/01 04:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\bing.xml
[2011/06/01 08:24:21 | 000,001,949 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\McSiteAdvisor.xml
O1 HOSTS File: ([2011/06/13 08:30:46 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\Mcafee\SystemCore\ScriptSn.20110531234708.dll (McAfee, Inc.)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (Copernic Desktop Search - Home Toolbar) - {4A1C6093-14F9-44D7-860E-5D265CFCA9D9} - C:\Program Files\Copernic Desktop Search - Home\Toolbar\ToolbarContainer101000325.dll (Copernic Inc.)
O3 - HKU\S-1-5-21-447299374-3309734861-3770108698-1006\..\Toolbar\WebBrowser: (Copernic Desktop Search - Home Toolbar) - {4A1C6093-14F9-44D7-860E-5D265CFCA9D9} - C:\Program Files\Copernic Desktop Search - Home\Toolbar\ToolbarContainer101000325.dll (Copernic Inc.)
O4 - HKLM..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\Program Files\Sigmatel\C-Major Audio\WDM\stsystra.exe (SigmaTel, Inc.)
O4 - Startup: C:\Documents and Settings\Virginia\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O4 - Startup: C:\Documents and Settings\Virginia\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-447299374-3309734861-3770108698-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O16 - DPF: vzTCPConfig http://my.verizon.co...vzTCPConfig.CAB (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\c: DllName - itlnfw32.dll - File not found
O20 - Winlogon\Notify\itlnfw32: DllName - itlnfw32.dll - File not found
O20 - Winlogon\Notify\itlntfy: DllName - itlnfw32.dll - File not found
O20 - Winlogon\Notify\kµ°“Ã: DllName - itlnfw32.dll - File not found
O20 - Winlogon\Notify\úæ¸: DllName - itlnfw32.dll - File not found
O20 - Winlogon\Notify\UM5w: DllName - itlnfw32.dll - File not found
O24 - Desktop WallPaper: C:\Documents and Settings\Paul\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Paul\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/10 14:04:08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKU\S-1-5-21-447299374-3309734861-3770108698-1006\...exe [@ = exefile] -- Reg Error: Value error. File not found
========== Files/Folders - Created Within 30 Days ==========
[2011/06/14 08:14:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\McAfee
[2011/06/13 22:52:38 | 000,000,000 | ---D | C] -- C:\_OTM
[2011/06/13 07:48:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\ERUNT
[2011/06/13 07:48:07 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2011/06/11 00:20:44 | 000,339,968 | -HS- | C] (Microsoft Corporation) -- C:\Documents and Settings\Paul\Local Settings\Application Data\qoi.exe
[2011/06/11 00:20:44 | 000,339,968 | -HS- | C] (Microsoft Corporation) -- C:\Documents and Settings\Paul\Local Settings\Application Data\kik.exe
[2011/06/11 00:20:39 | 000,339,968 | -HS- | C] (Microsoft Corporation) -- C:\Documents and Settings\Paul\Local Settings\Application Data\yxh.exe
[2011/06/11 00:20:15 | 000,180,224 | ---- | C] ( ) -- C:\Documents and Settings\Paul\Application Data\kx0378r.exe
[2011/05/31 23:47:04 | 000,009,344 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mfeclnk.sys
[2011/05/31 23:46:46 | 000,089,368 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mfetdi2k.sys
[2011/05/31 23:46:45 | 000,337,912 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mfefirek.sys
[2011/05/31 23:46:45 | 000,179,248 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mfeavfk.sys
[2011/05/31 23:46:45 | 000,085,984 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mferkdet.sys
[2011/05/31 23:46:45 | 000,083,688 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mfendisk.sys
[2011/05/31 23:46:45 | 000,059,288 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\mfebopk.sys
[2011/05/31 23:46:44 | 000,057,432 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\drivers\cfwids.sys
[2011/05/31 23:46:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Mcafee
[2011/05/31 23:46:31 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee.com
[2011/05/31 23:45:33 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee
[2011/05/31 23:22:17 | 000,148,520 | ---- | C] (McAfee, Inc.) -- C:\WINDOWS\System32\mfevtps.exe
[2011/05/30 14:39:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011/05/30 13:36:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paul\Application Data\Uniblue
[2011/05/23 21:55:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Ghostscript
[2011/05/23 21:03:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paul\My Documents\Stuffit
[2011/05/23 20:57:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paul\Local Settings\Application Data\Smith Micro
[2011/05/23 20:57:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paul\My Documents\My Archives
[2011/05/23 20:57:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Smith Micro
========== Files - Modified Within 30 Days ==========
[2011/06/14 08:15:21 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-447299374-3309734861-3770108698-1006.job
[2011/06/14 08:15:17 | 000,000,286 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-447299374-3309734861-3770108698-1008.job
[2011/06/14 08:15:17 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-447299374-3309734861-3770108698-1007.job
[2011/06/14 08:15:17 | 000,000,278 | -H-- | M] () -- C:\WINDOWS\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
[2011/06/14 08:15:17 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-447299374-3309734861-3770108698-1006.job
[2011/06/14 08:15:17 | 000,000,244 | -H-- | M] () -- C:\WINDOWS\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
[2011/06/14 08:14:58 | 000,000,308 | -HS- | M] () -- C:\WINDOWS\tasks\Thruqxdhm.job
[2011/06/14 08:14:58 | 000,000,304 | -HS- | M] () -- C:\WINDOWS\tasks\DQWZLFB.job
[2011/06/14 08:14:58 | 000,000,304 | -HS- | M] () -- C:\WINDOWS\tasks\CHMV.job
[2011/06/14 08:14:51 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/06/14 08:14:50 | 1063,714,816 | -HS- | M] () -- C:\hiberfil.sys
[2011/06/14 07:24:51 | 000,000,292 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-447299374-3309734861-3770108698-1007.job
[2011/06/13 19:35:37 | 003,633,104 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/06/13 19:06:39 | 011,272,192 | ---- | M] () -- C:\Documents and Settings\Paul\ntuser.bak
[2011/06/13 17:08:59 | 000,103,720 | ---- | M] () -- C:\Documents and Settings\Paul\GoToAssistDownloadHelper.exe
[2011/06/13 11:30:17 | 000,000,260 | ---- | M] () -- C:\WINDOWS\System32\cmdVBS.vbs
[2011/06/13 11:30:17 | 000,000,256 | ---- | M] () -- C:\WINDOWS\System32\MSIevent.bat
[2011/06/13 08:30:46 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
[2011/06/12 08:49:25 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/06/11 23:18:51 | 000,010,098 | -HS- | M] () -- C:\Documents and Settings\All Users\Application Data\ix6jxlv2hp0
[2011/06/11 23:18:50 | 000,010,098 | -HS- | M] () -- C:\Documents and Settings\Paul\Local Settings\Application Data\ix6jxlv2hp0
[2011/06/11 22:36:49 | 000,046,249 | ---- | M] () -- C:\Documents and Settings\Paul\.recently-used.xbel
[2011/06/11 00:20:44 | 000,000,106 | -H-- | M] () -- C:\Documents and Settings\Paul\Application Data\MouseDriver.bat
[2011/06/11 00:20:20 | 000,166,400 | RHS- | M] () -- C:\WINDOWS\System32\lrnxpt.dll
[2011/06/11 00:20:20 | 000,166,400 | RHS- | M] () -- C:\WINDOWS\System32\dsound3d9.dll
[2011/06/11 00:20:03 | 000,180,224 | ---- | M] ( ) -- C:\Documents and Settings\Paul\Application Data\kx0378r.exe
[2011/05/31 22:51:07 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/05/31 22:43:36 | 000,013,544 | -HS- | M] () -- C:\Documents and Settings\All Users\Application Data\6h86d7sr2domqf81n08t4n
[2011/05/31 22:43:35 | 000,013,544 | -HS- | M] () -- C:\Documents and Settings\Paul\Local Settings\Application Data\6h86d7sr2domqf81n08t4n
[2011/05/27 17:30:52 | 000,011,597 | ---- | M] () -- C:\Documents and Settings\Paul\gsview32.ini
[2011/05/25 08:04:12 | 000,140,378 | ---- | M] () -- C:\Documents and Settings\Paul\New_document_1-g2993-4294967210.png
[2011/05/23 21:53:26 | 000,000,043 | ---- | M] () -- C:\WINDOWS\gswin32.ini
[2011/05/19 21:31:56 | 000,230,987 | ---- | M] () -- C:\Documents and Settings\Paul\New document 2.2011_05_19_21_31_56.0.svg
[2011/05/18 18:50:26 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\logiflt.iad
[2011/05/18 18:26:59 | 000,000,294 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-447299374-3309734861-3770108698-1008.job
========== Files Created - No Company Name ==========
[2011/06/13 17:08:56 | 000,103,720 | ---- | C] () -- C:\Documents and Settings\Paul\GoToAssistDownloadHelper.exe
[2011/06/13 11:30:17 | 000,000,260 | ---- | C] () -- C:\WINDOWS\System32\cmdVBS.vbs
[2011/06/13 11:30:17 | 000,000,256 | ---- | C] () -- C:\WINDOWS\System32\MSIevent.bat
[2011/06/12 19:32:26 | 1063,714,816 | -HS- | C] () -- C:\hiberfil.sys
[2011/06/11 22:36:49 | 000,046,249 | ---- | C] () -- C:\Documents and Settings\Paul\.recently-used.xbel
[2011/06/11 00:21:19 | 000,010,098 | -HS- | C] () -- C:\Documents and Settings\Paul\Local Settings\Application Data\ix6jxlv2hp0
[2011/06/11 00:21:19 | 000,010,098 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\ix6jxlv2hp0
[2011/06/11 00:20:44 | 000,000,106 | -H-- | C] () -- C:\Documents and Settings\Paul\Application Data\MouseDriver.bat
[2011/06/11 00:20:22 | 000,000,308 | -HS- | C] () -- C:\WINDOWS\tasks\Thruqxdhm.job
[2011/06/11 00:20:22 | 000,000,304 | -HS- | C] () -- C:\WINDOWS\tasks\DQWZLFB.job
[2011/06/11 00:20:22 | 000,000,304 | -HS- | C] () -- C:\WINDOWS\tasks\CHMV.job
[2011/06/11 00:20:20 | 000,166,400 | RHS- | C] () -- C:\WINDOWS\System32\lrnxpt.dll
[2011/06/11 00:20:20 | 000,166,400 | RHS- | C] () -- C:\WINDOWS\System32\dsound3d9.dll
[2011/06/11 00:20:11 | 000,000,278 | -H-- | C] () -- C:\WINDOWS\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
[2011/06/11 00:20:05 | 000,000,244 | -H-- | C] () -- C:\WINDOWS\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
[2011/05/31 22:14:45 | 000,013,544 | -HS- | C] () -- C:\Documents and Settings\Paul\Local Settings\Application Data\6h86d7sr2domqf81n08t4n
[2011/05/31 22:14:45 | 000,013,544 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\6h86d7sr2domqf81n08t4n
[2011/05/30 00:41:17 | 000,000,276 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-447299374-3309734861-3770108698-1006.job
[2011/05/29 00:04:04 | 011,272,192 | ---- | C] () -- C:\Documents and Settings\Paul\ntuser.bak
[2011/05/25 08:04:11 | 000,140,378 | ---- | C] () -- C:\Documents and Settings\Paul\New_document_1-g2993-4294967210.png
[2011/05/19 21:31:56 | 000,230,987 | ---- | C] () -- C:\Documents and Settings\Paul\New document 2.2011_05_19_21_31_56.0.svg
[2011/05/16 14:48:34 | 000,002,511 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office Word Viewer 2003.lnk
[2011/05/04 13:39:28 | 000,000,120 | ---- | C] () -- C:\WINDOWS\Ebuvodej.dat
[2011/05/04 13:39:28 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Etiviqaq.bin
[2011/05/03 19:25:59 | 000,060,972 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2011/03/20 18:52:44 | 000,003,072 | ---- | C] () -- C:\Documents and Settings\Paul\Application Data\dvd.bmk
[2011/03/20 16:51:20 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\Paul\Local Settings\Application Data\fusioncache.dat
[2011/03/20 16:41:32 | 000,000,055 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2011/01/25 15:55:18 | 000,000,288 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2010/12/28 21:17:11 | 000,000,048 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010/12/26 23:49:55 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/12/15 12:43:50 | 000,000,348 | ---- | C] () -- C:\WINDOWS\ViewNX.INI
[2010/12/15 12:31:10 | 000,000,268 | RH-- | C] () -- C:\Documents and Settings\All Users\Application Data\Templates
[2010/12/15 12:31:10 | 000,000,268 | RH-- | C] () -- C:\Documents and Settings\Paul\Application Data\System Image Utility
[2010/12/15 12:31:09 | 000,000,020 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\PKP_DLdw.DAT
[2010/12/15 12:29:02 | 000,000,268 | RH-- | C] () -- C:\Documents and Settings\All Users\Application Data\Tables
[2010/12/15 12:29:02 | 000,000,268 | RH-- | C] () -- C:\Documents and Settings\Paul\Application Data\Synth Pads
[2010/12/15 12:29:02 | 000,000,020 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\PKP_DLdu.DAT
[2010/11/26 21:55:12 | 000,000,435 | ---- | C] () -- C:\WINDOWS\Graphing Calculator Viewer.INI
[2010/11/11 00:30:10 | 000,001,896 | ---- | C] () -- C:\Documents and Settings\Paul\Application Data\wklnhst.dat
[2010/11/11 00:11:30 | 000,000,031 | ---- | C] () -- C:\WINDOWS\System32\wsodsini.dll
[2010/11/11 00:09:05 | 000,000,530 | ---- | C] () -- C:\WINDOWS\System32\tx14_ic.ini
[2010/11/03 14:07:07 | 000,105,168 | ---- | C] () -- C:\WINDOWS\NSUninst.exe
[2010/11/03 14:06:24 | 000,105,168 | ---- | C] () -- C:\WINDOWS\GREUninstall.exe
[2010/11/03 14:06:21 | 000,009,771 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2010/10/04 20:42:31 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2010/10/04 13:20:20 | 000,000,043 | ---- | C] () -- C:\WINDOWS\gswin32.ini
[2010/09/23 23:30:15 | 000,007,680 | ---- | C] () -- C:\Documents and Settings\Paul\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/09/19 15:59:28 | 000,000,029 | ---- | C] () -- C:\WINDOWS\DEBUGSM.INI
[2010/09/19 15:15:37 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\sh33w32.dll
[2010/09/19 11:55:24 | 000,290,919 | ---- | C] () -- C:\WINDOWS\System32\pythoncom21.dll
[2010/09/19 11:55:24 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\PyWinTypes21.dll
[2010/09/19 11:53:48 | 000,096,768 | ---- | C] () -- C:\WINDOWS\SlantAdj.dll
[2010/09/19 11:53:48 | 000,003,136 | ---- | C] () -- C:\WINDOWS\Ade001.bin
[2010/09/19 11:53:48 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\epDPE.ini
[2010/09/19 11:52:52 | 000,065,793 | ---- | C] () -- C:\WINDOWS\System32\EsFw32.BIN
[2010/09/19 11:52:17 | 000,000,111 | ---- | C] () -- C:\WINDOWS\EPSON Perfection 3170.ini
[2010/09/14 22:27:15 | 000,000,335 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/09/14 19:12:22 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2010/09/14 19:06:39 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\preflib.dll
[2010/09/14 19:06:38 | 000,757,760 | ---- | C] () -- C:\WINDOWS\System32\bcm1xsup.dll
[2010/09/14 19:06:38 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\WLTRYSVC.EXE
[2010/09/13 21:42:04 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\DSRIRREM.EXE
[2010/09/13 21:41:53 | 000,049,152 | ---- | C] () -- C:\WINDOWS\setpwrcg.exe
[2010/09/13 21:41:47 | 000,016,480 | ---- | C] () -- C:\WINDOWS\System32\rixdicon.dll
[2010/09/13 21:39:53 | 000,001,120 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2010/05/14 17:56:06 | 010,830,680 | ---- | C] () -- C:\WINDOWS\System32\LogiDPP.dll
[2010/05/14 17:56:06 | 000,102,744 | ---- | C] () -- C:\WINDOWS\System32\LogiDPPApp.exe
[2010/05/14 17:55:58 | 000,290,648 | ---- | C] () -- C:\WINDOWS\System32\DevManagerCore.dll
[2010/05/14 17:47:00 | 000,090,071 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini
[2010/05/07 19:46:36 | 000,014,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\iKeyLFT2.dll
[2010/05/07 19:43:30 | 000,025,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVPr2Mon.sys
[2010/04/09 16:08:26 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\zmbv.dll
[2006/12/06 14:39:49 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2004/08/10 14:12:05 | 000,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2004/08/10 14:07:31 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2004/08/10 14:02:15 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2004/08/10 14:01:18 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2004/08/10 13:57:52 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2004/08/10 13:57:15 | 003,633,104 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2004/08/10 13:51:21 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/08/10 13:51:20 | 000,465,156 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/08/10 13:51:20 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004/08/10 13:51:20 | 000,081,022 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/08/10 13:51:20 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004/08/10 13:51:18 | 000,004,627 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004/08/10 13:51:17 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004/08/10 13:51:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004/08/10 13:51:12 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004/08/10 13:51:11 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004/08/10 13:51:05 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004/08/10 13:50:56 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004/07/10 18:55:38 | 000,252,416 | ---- | C] () -- C:\WINDOWS\System32\wsiShared.dll
[2000/07/15 01:00:00 | 000,030,720 | ---- | C] () -- C:\WINDOWS\REGTLIB.EXE
[1998/06/10 01:00:00 | 000,015,120 | ---- | C] () -- C:\WINDOWS\System32\REPUTIL.DLL
========== LOP Check ==========
[2010/12/15 12:29:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Applause and Laugher
[2010/12/15 12:31:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Basics
[2010/12/15 12:31:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EnterNHelp
[2010/09/15 14:40:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EPSON
[2010/12/15 12:29:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nikon
[2011/04/29 13:33:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2011/06/11 19:03:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Retrospect
[2011/05/23 20:57:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Smith Micro
[2010/09/26 21:00:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/12/15 12:31:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ultima_T15
[2010/10/03 22:51:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\W3i(2)
[2011/03/19 00:43:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WeCareReminder
[2010/12/24 01:21:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Azureus
[2011/04/29 13:47:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010/09/24 00:28:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Copernic
[2010/09/29 20:54:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\EPSON
[2011/05/13 16:17:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\gtk-2.0
[2011/05/04 14:25:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\inkscape
[2010/10/04 21:35:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Jasc
[2010/09/14 20:26:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Leadertech
[2010/10/03 22:51:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\My.Freeze.com NetAssistant
[2010/12/15 12:43:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Nikon
[2010/09/15 12:51:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\OpenOffice.org
[2011/03/19 00:43:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Orbit
[2011/03/19 00:09:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\ProgSense
[2010/10/11 22:09:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Radical Software Ltd
[2010/09/19 16:00:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Smart Panel
[2010/11/11 00:30:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Template
[2011/05/30 13:36:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\Uniblue
[2011/06/13 22:48:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\wsInspector
[2011/05/13 16:30:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\XnView
[2011/01/19 17:37:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Virginia\Application Data\OpenOffice.org
[2011/03/06 10:40:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Virginia\Application Data\wsInspector
[2011/06/14 08:14:58 | 000,000,304 | -HS- | M] () -- C:\WINDOWS\Tasks\CHMV.job
[2011/06/14 08:14:58 | 000,000,304 | -HS- | M] () -- C:\WINDOWS\Tasks\DQWZLFB.job
[2011/06/14 08:14:58 | 000,000,308 | -HS- | M] () -- C:\WINDOWS\Tasks\Thruqxdhm.job
[2011/06/14 08:15:17 | 000,000,278 | -H-- | M] () -- C:\WINDOWS\Tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
[2011/06/14 08:15:17 | 000,000,244 | -H-- | M] () -- C:\WINDOWS\Tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 130 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C895616B
< End of report >