After my cousin failed to provide any headway I approached another friend who does similar things but is only more savvy. He directed me to: IObit Malware Fighter, Uninstall Unwanted Apps (which I have yet to use), and Advanced SystemCare 4. Because, to be honest, I know very little about what's been going on with my computer... it seems that a lot has crept in through IE, which I haven't used in nearly a year. (I've been using Mozilla Firefox; always updated. I recently installed Google Chrome, having it come highly recommended.)
If anyone here can help me rid of this problem I will be eternally grateful. As a digital/traditional portrait artist, most of my work relies on my laptop and I need to learn to care for it better. I have not visited any unusual websites: Yahoo Mail/Weather, Facebook, Animation Source, Howrse, deviantART. I hardly ever use Google searches or visit foreign websites. I simply cannot figure out how this sucker got in!
Below is the OTL.txt document, as instructed to post.
__________________________________________________________________________________________________
OTL logfile created on: 6/19/2011 11:01:59 PM - Run 1
OTL by OldTimer - Version 3.2.24.1 Folder = C:\Documents and Settings\Carrie M Rule\My Documents\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.93 Gb Total Physical Memory | 0.52 Gb Available Physical Memory | 27.00% Memory free
3.78 Gb Paging File | 2.21 Gb Available in Paging File | 58.40% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 142.87 Gb Total Space | 107.41 Gb Free Space | 75.18% Space Free | Partition Type: NTFS
Computer Name: LENOVO-1ADBCD33 | User Name: Carrie M Rule | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/06/19 23:01:12 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Carrie M Rule\My Documents\Downloads\OTL.exe
PRC - [2011/06/01 14:10:00 | 000,821,080 | ---- | M] (IObit) -- C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
PRC - [2011/06/01 14:09:58 | 004,385,112 | ---- | M] (IObit) -- C:\Program Files\IObit\IObit Malware Fighter\IMF.exe
PRC - [2011/05/30 16:50:20 | 003,378,688 | ---- | M] (IObit) -- C:\Program Files\IObit\Advanced SystemCare 4\ASC.exe
PRC - [2011/05/29 09:11:28 | 000,449,584 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2011/05/29 09:11:28 | 000,366,640 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011/05/28 14:46:56 | 000,412,560 | ---- | M] (IObit) -- C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe
PRC - [2011/05/28 14:46:56 | 000,353,168 | ---- | M] (IObit) -- C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
PRC - [2011/05/25 21:50:45 | 015,900,672 | ---- | M] (Adobe Systems, Incorporated) -- C:\Program Files\Adobe\Photoshop 7.0\Photoshop.exe
PRC - [2011/05/17 13:29:46 | 000,395,144 | ---- | M] (Ask) -- C:\Program Files\Ask.com\Updater\Updater.exe
PRC - [2011/05/10 07:10:58 | 003,459,712 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2011/05/10 07:10:57 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2011/05/06 18:15:20 | 000,532,320 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
PRC - [2011/05/06 17:33:00 | 000,393,112 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Application Updater\ApplicationUpdater.exe
PRC - [2011/04/14 11:25:41 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010/12/21 06:16:36 | 001,739,848 | ---- | M] (ManyCam LLC) -- C:\Program Files\ManyCam\Bin\ManyCam.exe
PRC - [2010/06/04 08:10:36 | 000,822,384 | ---- | M] (The Weather Channel Interactive, Inc.) -- C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe
PRC - [2009/10/22 11:04:00 | 000,053,248 | ---- | M] () -- C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe
PRC - [2009/09/28 02:27:20 | 000,144,752 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\ZOOM\TpScrex.exe
PRC - [2009/08/19 19:38:30 | 000,062,752 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe
PRC - [2009/07/29 13:43:34 | 000,163,840 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
PRC - [2009/07/29 13:42:32 | 000,221,184 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
PRC - [2009/07/29 13:42:28 | 000,098,304 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
PRC - [2009/07/29 13:40:40 | 000,425,984 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe
PRC - [2009/07/29 13:35:18 | 000,172,032 | ---- | M] (Lenovo ) -- C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
PRC - [2009/07/15 11:13:06 | 003,662,632 | ---- | M] (Wacom Technology, Corp.) -- C:\Program Files\WTouch\WTouchUser.exe
PRC - [2009/07/15 11:13:04 | 000,393,512 | ---- | M] (Wacom Technology, Corp.) -- C:\WINDOWS\system32\WTablet\Pen_TabletUser.exe
PRC - [2009/07/15 11:13:04 | 000,112,936 | ---- | M] (Wacom Technology, Corp.) -- C:\Program Files\WTouch\WTouchService.exe
PRC - [2009/07/15 11:13:02 | 004,408,616 | ---- | M] (Wacom Technology, Corp.) -- C:\WINDOWS\system32\Pen_Tablet.exe
PRC - [2009/07/14 20:18:02 | 000,062,320 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
PRC - [2009/07/10 20:25:42 | 000,028,672 | ---- | M] (Lenovo Group Limited) -- c:\Program Files\Lenovo\System Update\SUService.exe
PRC - [2009/05/28 14:30:00 | 000,061,728 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe
PRC - [2009/05/28 01:09:36 | 000,049,976 | ---- | M] () -- C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
PRC - [2009/03/13 03:32:48 | 000,068,976 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
PRC - [2009/03/05 00:54:34 | 000,750,904 | ---- | M] (Lenovo Group Limited) -- c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
PRC - [2009/02/27 10:54:22 | 000,870,672 | ---- | M] (Intel® Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe
PRC - [2009/02/27 09:55:20 | 000,909,312 | ---- | M] (Intel® Corporation) -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
PRC - [2009/02/27 09:38:38 | 000,473,360 | ---- | M] (Intel® Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
PRC - [2009/02/02 04:04:10 | 000,067,432 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
PRC - [2009/01/28 13:10:00 | 000,124,248 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE
PRC - [2008/11/24 18:34:02 | 000,520,192 | ---- | M] () -- C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe
PRC - [2008/10/26 21:41:08 | 000,118,784 | ---- | M] (AuthenTec,Inc) -- C:\WINDOWS\system32\FpLogonServ.exe
PRC - [2008/10/26 21:38:40 | 000,098,304 | ---- | M] () -- C:\WINDOWS\system32\DTS.exe
PRC - [2008/10/26 21:33:22 | 001,676,536 | ---- | M] (AuthenTec, Inc.) -- C:\WINDOWS\system32\AtService.exe
PRC - [2008/04/14 07:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/01/04 22:48:52 | 000,112,152 | R--- | M] (InterVideo) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
PRC - [2003/03/19 17:43:00 | 000,065,536 | ---- | M] (Brother Industries, Ltd.) -- C:\WINDOWS\system32\Brmfrmps.exe
PRC - [2003/02/03 11:29:12 | 001,568,768 | ---- | M] (Scansoft, Inc.) -- C:\Program Files\Scansoft\PaperPort\SmartUI\SmartUI.exe
========== Modules (SafeList) ==========
MOD - [2011/06/19 23:01:12 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Carrie M Rule\My Documents\Downloads\OTL.exe
MOD - [2011/05/10 07:10:55 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\snxhk.dll
MOD - [2010/08/23 11:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - [2011/06/01 14:10:00 | 000,821,080 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe -- (IMFservice)
SRV - [2011/05/29 09:11:28 | 000,366,640 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/05/28 14:46:56 | 000,353,168 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService)
SRV - [2011/05/10 07:10:57 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011/05/06 17:33:00 | 000,393,112 | ---- | M] (Spigot, Inc.) [Auto | Running] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater)
SRV - [2009/10/22 11:04:00 | 000,053,248 | ---- | M] () [Auto | Running] -- C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe -- (Power Manager DBC Service)
SRV - [2009/07/29 13:42:32 | 000,221,184 | ---- | M] (Lenovo ) [Auto | Running] -- C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe -- (AcSvc)
SRV - [2009/07/29 13:42:28 | 000,098,304 | ---- | M] (Lenovo ) [Auto | Running] -- C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe -- (AcPrfMgrSvc)
SRV - [2009/07/15 11:13:04 | 000,112,936 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\Program Files\WTouch\WTouchService.exe -- (WTouchService)
SRV - [2009/07/15 11:13:02 | 004,408,616 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\WINDOWS\system32\Pen_Tablet.exe -- (TabletServicePen)
SRV - [2009/07/14 20:18:02 | 000,062,320 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe -- (TPHKSVC)
SRV - [2009/07/10 20:25:42 | 000,028,672 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- c:\Program Files\Lenovo\System Update\SUService.exe -- (SUService)
SRV - [2009/07/03 04:47:10 | 000,045,424 | ---- | M] (Lenovo Group Limited) [Auto | Stopped] -- C:\Program Files\Lenovo\HOTKEY\micmute.exe -- (LENOVO.MICMUTE)
SRV - [2009/03/05 00:54:34 | 000,750,904 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe -- (ThinkVantage Registry Monitor Service)
SRV - [2009/02/27 10:54:22 | 000,870,672 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng) Intel®
SRV - [2009/02/27 09:55:20 | 000,909,312 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe -- (S24EventMonitor) Intel®
SRV - [2009/02/27 09:38:38 | 000,473,360 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc) Intel®
SRV - [2008/11/24 18:34:02 | 000,520,192 | ---- | M] () [Auto | Running] -- C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe -- (TVT Backup Protection Service)
SRV - [2008/10/26 21:41:08 | 000,118,784 | ---- | M] (AuthenTec,Inc) [Auto | Running] -- C:\WINDOWS\system32\FpLogonServ.exe -- (FingerprintServer)
SRV - [2008/10/26 21:38:40 | 000,098,304 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\DTS.exe -- (dtsvc)
SRV - [2008/10/26 21:38:34 | 000,106,496 | ---- | M] () [On_Demand | Stopped] -- C:\WINDOWS\system32\ADMonitor.exe -- (ADMonitor)
SRV - [2008/10/26 21:33:22 | 001,676,536 | ---- | M] (AuthenTec, Inc.) [Auto | Running] -- C:\WINDOWS\system32\AtService.exe -- (ATService)
SRV - [2008/10/09 04:05:16 | 000,360,448 | ---- | M] (Lenovo Group Limited) [Auto | Stopped] -- C:\Program Files\Lenovo\Rescue and Recovery\UpdateMonitor.exe -- (TVT_UpdateMonitor)
SRV - [2008/04/25 11:15:24 | 001,120,752 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe -- (RoxMediaDB10)
SRV - [2007/01/04 22:48:52 | 000,112,152 | R--- | M] (InterVideo) [Auto | Running] -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
SRV - [2005/10/06 21:12:30 | 000,855,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Media Connect 2\wmccds.exe -- (WMConnectCDS)
SRV - [2003/03/19 17:43:00 | 000,065,536 | ---- | M] (Brother Industries, Ltd.) [Auto | Running] -- C:\WINDOWS\System32\Brmfrmps.exe -- (brmfrmps)
========== Driver Services (SafeList) ==========
DRV - [2011/05/29 09:11:30 | 000,039,984 | ---- | M] (Malwarebytes Corporation) [Kernel | Disabled | Running] -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2011/05/29 09:11:20 | 000,022,712 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011/05/10 07:03:54 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011/05/10 07:03:44 | 000,307,928 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011/05/10 07:02:37 | 000,049,240 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011/05/10 07:02:25 | 000,102,616 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2011/05/10 06:59:56 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011/05/10 06:59:37 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011/05/10 06:59:35 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011/04/27 19:18:34 | 000,239,472 | ---- | M] () [File_System | On_Demand | Running] -- C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys -- (FileMonitor)
DRV - [2011/03/23 01:00:08 | 000,016,080 | ---- | M] (IObit.com) [Kernel | On_Demand | Running] -- C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\UrlFilter.sys -- (UrlFilter)
DRV - [2011/03/23 01:00:06 | 000,030,368 | ---- | M] (IObit.com) [Kernel | On_Demand | Running] -- C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\RegFilter.sys -- (RegFilter)
DRV - [2009/10/22 11:04:00 | 000,004,442 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\TPPWRIF.SYS -- (TPPWRIF)
DRV - [2009/07/22 00:45:30 | 000,011,520 | ---- | M] (IBM Corp.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ANC.sys -- (ANC)
DRV - [2009/07/22 00:45:30 | 000,004,224 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\IBMBLDID.sys -- (IBMTPCHK)
DRV - [2009/05/28 14:30:00 | 000,004,608 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\TSMAPIP.SYS -- (TSMAPIP)
DRV - [2009/05/20 14:54:06 | 000,013,736 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wacomvhid.sys -- (wacomvhid)
DRV - [2009/03/04 13:31:32 | 004,202,496 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) Intel®
DRV - [2009/02/05 22:39:02 | 000,809,984 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\CHDAU32.sys -- (CnxtHdAudService)
DRV - [2009/01/28 20:58:46 | 000,117,800 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\Apsx86.sys -- (Shockprf)
DRV - [2009/01/28 20:57:12 | 000,020,520 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\ApsHM86.sys -- (TPDIGIMN)
DRV - [2008/10/26 22:37:18 | 000,482,176 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ATSwpWDF.sys -- (ATSwpWDF)
DRV - [2008/09/25 03:49:52 | 000,031,680 | R--- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\psadd.sys -- (psadd)
DRV - [2008/08/13 20:23:56 | 000,011,904 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans)
DRV - [2008/05/12 04:04:04 | 000,013,480 | ---- | M] (Lenovo Group Limited) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\smiif32.sys -- (lenovo.smi)
DRV - [2008/04/14 07:00:00 | 000,063,744 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mf.sys -- (mf)
DRV - [2008/04/09 05:16:48 | 000,985,472 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_DPV.sys -- (HSF_DPV)
DRV - [2008/04/09 05:16:48 | 000,731,264 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys -- (winachsf)
DRV - [2008/04/09 05:16:48 | 000,210,560 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSFHWAZL.sys -- (HSFHWAZL)
DRV - [2008/03/25 23:21:06 | 000,013,824 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tpm.sys -- (tpm)
DRV - [2008/03/25 23:12:56 | 000,040,832 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HECI.sys -- (HECI) Intel®
DRV - [2008/03/07 05:08:08 | 000,154,672 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2008/02/22 18:54:40 | 000,037,312 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tvti2c.sys -- (TVTI2C)
DRV - [2008/02/15 04:01:00 | 000,046,592 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2007/11/29 03:35:44 | 000,163,328 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2007/07/29 21:54:00 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007/07/29 20:42:00 | 000,043,008 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2007/06/18 19:29:56 | 000,009,400 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLADResM.SYS -- (DLADResM)
DRV - [2007/06/18 19:29:10 | 000,035,064 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLABMFSM.SYS -- (DLABMFSM)
DRV - [2007/06/18 19:29:08 | 000,093,752 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDFAM.SYS -- (DLAUDFAM)
DRV - [2007/06/18 19:29:06 | 000,098,136 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDF_M.SYS -- (DLAUDF_M)
DRV - [2007/06/18 19:29:04 | 000,026,744 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAOPIOM.SYS -- (DLAOPIOM)
DRV - [2007/06/18 19:28:58 | 000,032,472 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLABOIOM.SYS -- (DLABOIOM)
DRV - [2007/06/18 19:28:54 | 000,014,520 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAPoolM.SYS -- (DLAPoolM)
DRV - [2007/06/18 19:28:52 | 000,105,048 | ---- | M] (Roxio) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAIFS_M.SYS -- (DLAIFS_M)
DRV - [2007/05/14 22:03:24 | 000,445,696 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\rt73.sys -- (RT73)
DRV - [2007/02/16 14:12:36 | 000,011,312 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wacommousefilter.sys -- (wacommousefilter)
DRV - [2007/02/15 19:11:28 | 000,011,440 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WacomVKHid.sys -- (WacomVKHid)
DRV - [2007/02/08 23:05:30 | 000,028,120 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLARTL_M.SYS -- (DLARTL_M)
DRV - [2007/02/08 23:05:30 | 000,012,856 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS -- (DLACDBHM)
DRV - [2001/08/17 13:12:22 | 000,010,368 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BrUsbScn.sys -- (BrUsbScn)
DRV - [2001/08/17 13:12:12 | 000,002,944 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BrFilt.sys -- (brfilt)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com/welcome/thinkpad [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.iobit.com
IE - HKCU\..\URLSearchHook: {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.4\iobitToolbarIE.dll (Spigot, Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=380920"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..browser.startup.homepage: "http://www.deviantart.com/"
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906
FF - prefs.js..extensions.enabledItems: {f86e6264-e877-5fce-c3e4-8668a7d99da2}:1.9.2
FF - prefs.js..extensions.enabledItems: [email protected]:3.11.3.15590
FF - prefs.js..keyword.URL: "http://search.yahoo....type=380920&p="
FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/05/05 21:59:56 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/06/08 18:35:16 | 000,000,000 | ---D | M]
[2011/01/05 14:06:56 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Carrie M Rule\Application Data\Mozilla\Extensions
[2011/05/05 22:00:47 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Carrie M Rule\Application Data\Mozilla\Firefox\Profiles\ir6gtg6p.default\extensions
[2011/01/12 08:10:08 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Carrie M Rule\Application Data\Mozilla\Firefox\Profiles\ir6gtg6p.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/05/28 08:01:23 | 000,000,000 | ---D | M] (Ask Toolbar) -- C:\Documents and Settings\Carrie M Rule\Application Data\Mozilla\Firefox\Profiles\ir6gtg6p.default\extensions\[email protected]
[2011/06/08 19:02:07 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/06/06 18:46:44 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2011/06/08 18:14:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
File not found (No name found) --
() (No name found) -- C:\DOCUMENTS AND SETTINGS\CARRIE M RULE\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\IR6GTG6P.DEFAULT\EXTENSIONS\{F86E6264-E877-5FCE-C3E4-8668A7D99DA2}.XPI
[2011/06/08 19:02:04 | 000,000,000 | ---D | M] (Widgi Toolbar Platform) -- C:\PROGRAM FILES\COMMON FILES\SPIGOT\WTXPCOM
[2011/06/08 19:02:07 | 000,000,000 | ---D | M] (IObit Toolbar) -- C:\PROGRAM FILES\IOBIT TOOLBAR\FF
[2011/06/08 18:13:50 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/04/14 11:26:02 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll
[2010/08/24 04:31:30 | 000,773,120 | ---- | M] (BitComet) -- C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll
[2011/06/08 18:13:49 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010/01/01 03:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\bing.xml
O1 HOSTS File: ([2008/04/14 07:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (IObit Toolbar) - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.4\iobitToolbarIE.dll (Spigot, Inc.)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - Reg Error: Value error. File not found
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (IePasswordManagerHelper Class) - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll (Lenovo Group Limited)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (IObit Toolbar) - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.4\iobitToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe (Lenovo )
O4 - HKLM..\Run: [ACWLIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe (Lenovo )
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [CreateLMBCShortCut] C:\Program Files\Lenovo\Mobile Broadband Connect\UserShortcutCreator.exe ()
O4 - HKLM..\Run: [IObit Malware Fighter] C:\Program Files\IObit\IObit Malware Fighter\IMF.exe (IObit)
O4 - HKLM..\Run: [LENOVO.TPFNF6R] C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [LPMailChecker] C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE (Lenovo Group Limited)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Message Center Plus] C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe ()
O4 - HKLM..\Run: [PWRMGRTR] C:\Program Files\ThinkPad\Utilities\PWRMGRTR.DLL (Lenovo Group Limited)
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl03a\BrStDvPt.exe ()
O4 - HKLM..\Run: [TPFNF7] C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe (Lenovo Group Limited)
O4 - HKLM..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe (Lenovo Group Limited)
O4 - HKCU..\Run: [Advanced SystemCare 4] C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe (IObit)
O4 - HKCU..\Run: [DW6] C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe (The Weather Channel Interactive, Inc.)
O4 - HKCU..\Run: [ManyCam] C:\Program Files\ManyCam\Bin\ManyCam.exe (ManyCam LLC)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\SmartUI.lnk = C:\Program Files\Scansoft\PaperPort\SmartUI\SmartUI.exe (Scansoft, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll (Lenovo Group Limited)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\ACNotify: DllName - ACNotify.dll - C:\Program Files\ThinkPad\ConnectUtilities\ACNotify.dll (Lenovo )
O20 - Winlogon\Notify\ATFUS: DllName - C:\WINDOWS\system32\FpWinLogonNp.dll - C:\WINDOWS\system32\FpWinlogonNp.dll (AuthenTec,Inc)
O20 - Winlogon\Notify\tpfnf2: DllName - C:\Program Files\Lenovo\HOTKEY\notifyf2.dll - C:\Program Files\Lenovo\HOTKEY\notifyf2.dll ()
O24 - Desktop WallPaper: C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/07/21 17:02:34 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{d9b4571e-6a87-11e0-8541-002186a09936}\Shell - "" = AutoRun
O33 - MountPoints2\{d9b4571e-6a87-11e0-8541-002186a09936}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{d9b4571e-6a87-11e0-8541-002186a09936}\Shell\AutoRun\command - "" = E:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O35 - HKCU\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/06/19 21:20:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2011/06/19 21:20:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NSS
[2011/06/19 21:20:37 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Security Scan
[2011/06/19 21:20:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Norton Security Scan
[2011/06/19 21:20:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NSS\0301030.006
[2011/06/19 21:19:31 | 000,000,000 | ---D | C] -- C:\Program Files\NortonInstaller
[2011/06/19 21:19:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
[2011/06/19 19:18:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe
[2011/06/19 19:14:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Start Menu\Programs\Google Chrome
[2011/06/19 19:12:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\Google
[2011/06/11 21:08:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Desktop\Unbridled Sky
[2011/06/08 19:04:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Protected Folder
[2011/06/08 19:04:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\IObit
[2011/06/08 19:04:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Advanced SystemCare 4
[2011/06/08 19:02:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Application Data\Search Settings
[2011/06/08 19:02:03 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater
[2011/06/08 19:02:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Spigot
[2011/06/08 19:02:02 | 000,000,000 | ---D | C] -- C:\Program Files\IObit Toolbar
[2011/06/08 19:01:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\IObit Malware Fighter
[2011/06/08 19:01:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Application Data\IObit
[2011/06/08 19:01:15 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2011/06/08 18:38:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2011/06/08 18:13:44 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2011/06/08 18:05:28 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/06/08 18:02:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sun
[2011/06/08 18:02:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/06/01 21:53:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\WTablet
[2011/06/01 21:40:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Application Data\WTablet
[2011/06/01 21:40:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Application Data\WTouch
[2011/06/01 21:40:02 | 000,220,968 | ---- | C] (Wacom Technology, Corp.) -- C:\WINDOWS\System32\Touch_Tablet.dll
[2011/06/01 21:40:00 | 000,000,000 | ---D | C] -- C:\Program Files\WTouch
[2011/06/01 21:39:57 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Pen Tablet
[2011/06/01 21:39:31 | 006,124,840 | ---- | C] (Wacom Technology, Corp.) -- C:\WINDOWS\System32\PenTablet.cpl
[2011/06/01 21:39:28 | 000,011,440 | ---- | C] (Wacom Technology) -- C:\WINDOWS\System32\drivers\WacomVKHid.sys
[2011/06/01 21:35:35 | 000,011,312 | ---- | C] (Wacom Technology) -- C:\WINDOWS\System32\drivers\wacommousefilter.sys
[2011/06/01 21:35:30 | 000,013,736 | ---- | C] (Wacom Technology) -- C:\WINDOWS\System32\drivers\wacomvhid.sys
[2011/06/01 21:35:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\WTablet
[2011/06/01 21:35:22 | 000,284,672 | ---- | C] (Wacom Technology, Corp.) -- C:\WINDOWS\System32\Wintab32.dll
[2011/06/01 21:35:21 | 000,392,488 | ---- | C] (Wacom Technology, Corp.) -- C:\WINDOWS\System32\Pen_Tablet.dll
[2011/06/01 21:35:19 | 004,408,616 | ---- | C] (Wacom Technology, Corp.) -- C:\WINDOWS\System32\Pen_Tablet.exe
[2011/06/01 21:35:16 | 000,000,000 | ---D | C] -- C:\Program Files\Tablet
[2011/05/31 10:04:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Desktop\Training Notes
[2011/05/27 21:08:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\The Weather Channel
[2011/05/27 21:08:44 | 000,000,000 | ---D | C] -- C:\Program Files\The Weather Channel FW
[2011/05/27 21:08:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\The Weather Channel
[2011/05/25 21:47:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\My Documents\Photoshop
[2011/05/25 21:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Norton
[2011/05/25 21:30:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\NPE
[2011/05/24 12:40:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011/05/23 18:08:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\PCHealth
[2011/05/23 18:01:45 | 000,000,000 | ---D | C] -- C:\efeb5a91bcb9f785a91efd0f25a0f8d9
[2011/05/23 11:20:06 | 000,441,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011/05/22 17:46:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/06/19 23:01:01 | 000,000,250 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2011/06/19 22:17:00 | 000,001,010 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-3044628800-2294147157-1409703702-1005UA.job
[2011/06/19 21:20:47 | 000,000,452 | -H-- | M] () -- C:\WINDOWS\tasks\Norton Security Scan for Carrie M Rule.job
[2011/06/19 21:20:45 | 000,000,977 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Norton Security Scan.lnk
[2011/06/19 19:23:52 | 000,036,139 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\My Documents\Dr.Watson.png
[2011/06/19 19:17:00 | 000,000,958 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-3044628800-2294147157-1409703702-1005Core.job
[2011/06/19 19:14:33 | 000,002,351 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\Desktop\Google Chrome.lnk
[2011/06/19 19:14:33 | 000,002,329 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/06/19 15:51:20 | 000,000,286 | ---- | M] () -- C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
[2011/06/19 15:51:07 | 000,002,278 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/06/19 15:50:47 | 000,001,024 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\.rnd
[2011/06/19 15:50:25 | 000,000,316 | ---- | M] () -- C:\WINDOWS\tasks\PMTask.job
[2011/06/19 15:49:36 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/06/19 15:49:32 | 2072,014,848 | -HS- | M] () -- C:\hiberfil.sys
[2011/06/17 07:19:32 | 000,002,187 | ---- | M] () -- C:\WINDOWS\BRMFBIDI.INI
[2011/06/15 17:38:59 | 000,406,886 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\My Documents\Ewie.png
[2011/06/11 20:38:53 | 002,518,948 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\My Documents\DSC_1497.JPG
[2011/06/08 19:50:27 | 000,000,791 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/06/08 19:13:43 | 000,035,621 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\My Documents\QuicCare.png
[2011/06/08 19:04:24 | 000,000,882 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\Application Data\Microsoft\Internet Explorer\Quick Launch\Protected Folder.lnk
[2011/06/08 19:04:24 | 000,000,864 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Protected Folder.lnk
[2011/06/08 19:04:07 | 000,000,903 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Quick Care.lnk
[2011/06/08 19:04:07 | 000,000,899 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced SystemCare 4.lnk
[2011/06/08 19:04:07 | 000,000,881 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Advanced SystemCare 4.lnk
[2011/06/08 19:01:30 | 000,000,833 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\IObit Malware Fighter.lnk
[2011/06/08 01:40:00 | 000,000,172 | ---- | M] () -- C:\WINDOWS\System32\drivers\NSS\0301030.006\isolate.ini
[2011/06/06 21:40:35 | 000,278,869 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\My Documents\astriddraft1.PNG
[2011/06/02 01:30:22 | 000,052,224 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/06/01 21:39:20 | 000,000,439 | ---- | M] () -- C:\WINDOWS\System32\TouchTabletUserDefaults.xml
[2011/06/01 21:39:20 | 000,000,439 | ---- | M] () -- C:\WINDOWS\System32\PenTabletUserDefaults.xml
[2011/05/29 09:11:30 | 000,039,984 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/05/29 09:11:20 | 000,022,712 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/05/27 21:08:58 | 000,000,917 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\The Weather Channel Desktop .lnk
[2011/05/26 19:12:47 | 000,162,072 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\My Documents\TWTR.png
[2011/05/26 01:07:42 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/05/25 21:50:52 | 000,000,993 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
[2011/05/25 21:50:51 | 000,000,821 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\Desktop\Adobe Photoshop 7.0.lnk
[2011/05/25 21:35:56 | 000,000,211 | RHS- | M] () -- C:\boot.ini
[2011/05/25 21:02:08 | 000,322,162 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\My Documents\wedding2.PNG
[2011/05/24 20:18:17 | 000,722,554 | ---- | M] () -- C:\Documents and Settings\Carrie M Rule\My Documents\Snapshot of me 30.png
[2011/05/23 11:20:06 | 000,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/06/19 21:20:47 | 000,000,452 | -H-- | C] () -- C:\WINDOWS\tasks\Norton Security Scan for Carrie M Rule.job
[2011/06/19 21:20:45 | 000,000,977 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Norton Security Scan.lnk
[2011/06/19 21:20:37 | 000,000,172 | ---- | C] () -- C:\WINDOWS\System32\drivers\NSS\0301030.006\isolate.ini
[2011/06/19 19:23:51 | 000,036,139 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\Dr.Watson.png
[2011/06/19 19:14:33 | 000,002,351 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\Desktop\Google Chrome.lnk
[2011/06/19 19:14:33 | 000,002,329 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/06/19 19:12:58 | 000,001,010 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-3044628800-2294147157-1409703702-1005UA.job
[2011/06/19 19:12:58 | 000,000,958 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-3044628800-2294147157-1409703702-1005Core.job
[2011/06/15 17:38:56 | 000,406,886 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\Ewie.png
[2011/06/11 20:38:07 | 002,518,948 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\DSC_1497.JPG
[2011/06/08 19:13:41 | 000,035,621 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\QuicCare.png
[2011/06/08 19:04:33 | 000,000,286 | ---- | C] () -- C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
[2011/06/08 19:04:24 | 000,000,882 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\Application Data\Microsoft\Internet Explorer\Quick Launch\Protected Folder.lnk
[2011/06/08 19:04:24 | 000,000,864 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Protected Folder.lnk
[2011/06/08 19:04:07 | 000,000,903 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Quick Care.lnk
[2011/06/08 19:04:07 | 000,000,899 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced SystemCare 4.lnk
[2011/06/08 19:04:07 | 000,000,881 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Advanced SystemCare 4.lnk
[2011/06/08 19:01:30 | 000,000,833 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\IObit Malware Fighter.lnk
[2011/06/06 21:40:30 | 000,278,869 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\astriddraft1.PNG
[2011/06/01 21:39:34 | 001,593,072 | ---- | C] () -- C:\WINDOWS\System32\PenTablet.znc
[2011/06/01 21:35:16 | 000,000,439 | ---- | C] () -- C:\WINDOWS\System32\TouchTabletUserDefaults.xml
[2011/06/01 21:35:16 | 000,000,439 | ---- | C] () -- C:\WINDOWS\System32\PenTabletUserDefaults.xml
[2011/05/27 21:08:58 | 000,000,917 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\The Weather Channel Desktop .lnk
[2011/05/26 19:06:37 | 000,162,072 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\TWTR.png
[2011/05/25 21:51:25 | 000,000,821 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\Desktop\Adobe Photoshop 7.0.lnk
[2011/05/25 21:50:51 | 000,000,826 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe ImageReady 7.0.lnk
[2011/05/25 21:50:51 | 000,000,821 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Photoshop 7.0.lnk
[2011/05/25 21:02:01 | 000,322,162 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\wedding2.PNG
[2011/05/24 20:18:04 | 000,722,554 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\Snapshot of me 30.png
[2011/05/23 17:25:14 | 034,741,484 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 201.avi
[2011/05/23 17:25:09 | 065,733,980 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 200.avi
[2011/05/23 17:25:05 | 066,139,474 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 202.avi
[2011/05/23 17:24:29 | 020,104,576 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 186.avi
[2011/05/23 17:24:29 | 017,243,734 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 187.avi
[2011/05/23 17:24:23 | 078,564,636 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 185.avi
[2011/05/23 17:24:21 | 025,105,022 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 184.avi
[2011/05/23 17:24:19 | 028,183,646 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 183.avi
[2011/05/23 17:24:12 | 066,376,464 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 182.avi
[2011/05/23 17:24:10 | 019,339,514 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 181.avi
[2011/05/23 17:24:09 | 023,367,962 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 180.avi
[2011/05/23 17:24:07 | 022,157,930 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 179.avi
[2011/05/23 17:24:05 | 036,865,046 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 177.avi
[2011/05/23 17:24:02 | 032,350,418 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 198.avi
[2011/05/23 17:23:58 | 057,586,662 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 197.avi
[2011/05/23 17:23:49 | 126,758,012 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 196.avi
[2011/05/23 17:23:49 | 005,783,608 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 195.avi
[2011/05/23 17:23:46 | 039,091,442 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 194.avi
[2011/05/23 17:23:45 | 028,575,976 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 193.avi
[2011/05/23 17:23:44 | 014,603,760 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 192.avi
[2011/05/23 17:23:42 | 065,113,590 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 191.avi
[2011/05/23 17:23:41 | 038,280,660 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 190.avi
[2011/05/23 17:23:39 | 052,331,500 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 189.avi
[2011/05/23 17:23:37 | 026,735,296 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 188.avi
[2011/05/23 17:22:54 | 001,759,325 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 114.jpg
[2011/05/23 17:22:54 | 001,628,902 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\29 January 2011 097.jpg
[2011/05/22 18:32:27 | 000,075,218 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\My Documents\13kielj Indica.jpg
[2011/03/17 22:00:46 | 000,003,302 | -HS- | C] () -- C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\(+.X)+.,-V),X
[2011/03/17 22:00:46 | 000,003,302 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\(+.X)+.,-V),X
[2011/03/15 15:25:15 | 000,000,051 | ---- | C] () -- C:\WINDOWS\brmx2001.ini
[2011/03/15 14:55:06 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini
[2011/03/15 14:54:52 | 000,002,187 | ---- | C] () -- C:\WINDOWS\BRMFBIDI.INI
[2011/03/15 14:54:18 | 000,000,419 | ---- | C] () -- C:\WINDOWS\brwmark.ini
[2011/03/15 14:54:18 | 000,000,267 | ---- | C] () -- C:\WINDOWS\Brpcfx.ini
[2011/03/15 14:54:18 | 000,000,079 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2011/03/15 14:54:18 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\mf322def.dat
[2011/03/15 14:53:59 | 000,000,256 | ---- | C] () -- C:\WINDOWS\System32\brmsi06.BIN
[2011/03/15 14:43:29 | 000,000,767 | ---- | C] () -- C:\WINDOWS\maxlink.ini
[2011/02/22 18:24:16 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/01/15 16:19:32 | 000,206,192 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011/01/05 19:26:17 | 000,052,224 | ---- | C] () -- C:\Documents and Settings\Carrie M Rule\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/01/05 15:07:17 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2011/01/05 14:06:52 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2011/01/05 13:41:01 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2011/01/05 13:30:45 | 000,004,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\IBMBLDID.sys
[2011/01/05 13:29:18 | 000,150,080 | ---- | C] () -- C:\WINDOWS\desktopset.exe
[2011/01/05 13:28:51 | 000,028,672 | ---- | C] () -- C:\WINDOWS\PWMBTHLP.EXE
[2011/01/05 13:28:50 | 000,004,442 | ---- | C] () -- C:\WINDOWS\System32\drivers\TPPWRIF.SYS
[2011/01/05 13:25:12 | 000,056,056 | ---- | C] () -- C:\WINDOWS\System32\DLAAPI_W.DLL
[2011/01/05 13:25:12 | 000,000,120 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2011/01/05 13:21:43 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2011/01/05 13:21:43 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2011/01/05 13:21:43 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2011/01/05 13:21:43 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2011/01/05 13:21:43 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2011/01/05 13:21:43 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2011/01/05 13:13:47 | 000,982,196 | ---- | C] () -- C:\WINDOWS\System32\igkrng500.bin
[2011/01/05 13:13:46 | 000,417,344 | ---- | C] () -- C:\WINDOWS\System32\igcompkrng500.bin
[2011/01/05 13:09:43 | 000,000,102 | ---- | C] () -- C:\WINDOWS\System32\softkbd.exe.config
[2008/10/26 21:38:40 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\DTS.exe
[2008/10/26 21:38:34 | 000,106,496 | ---- | C] () -- C:\WINDOWS\System32\ADMonitor.exe
[2008/07/22 10:22:09 | 000,004,670 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2008/07/21 17:50:02 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2008/07/21 17:50:00 | 000,441,692 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2008/07/21 17:50:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2008/07/21 17:50:00 | 000,071,462 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2008/07/21 17:50:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2008/07/21 17:49:59 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2008/07/21 17:49:59 | 000,004,547 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2008/07/21 17:49:58 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2008/07/21 17:49:55 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2008/07/21 17:49:55 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2008/07/21 17:49:50 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2008/07/21 17:49:48 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2008/07/21 17:04:47 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2008/07/21 17:00:30 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2008/07/21 09:55:48 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008/07/21 09:55:02 | 000,197,752 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2002/08/12 08:19:42 | 000,101,376 | ---- | C] () -- C:\WINDOWS\System32\Welsof32.dll
[2002/01/08 16:57:34 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\Jpeg32.dll
========== LOP Check ==========
[2011/01/15 21:56:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\BitComet
[2011/01/05 13:17:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\CachedFiles
[2011/01/05 17:59:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1
[2011/01/05 13:25:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\Downloaded Installations
[2011/03/19 10:12:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\InterVideo
[2011/06/08 19:12:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\IObit
[2011/01/05 13:31:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\Lenovo
[2011/01/11 21:19:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\ManyCam
[2011/06/08 19:02:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\Search Settings
[2011/02/18 19:47:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\SecondLife
[2011/02/05 16:54:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\Serif
[2011/02/22 15:02:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\SYSTEMAX Software Development
[2011/06/02 19:12:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carrie M Rule\Application Data\WTouch
[2011/01/13 10:26:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2011/03/06 12:46:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ePhNfOi05200
[2011/06/08 19:04:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IObit
[2011/01/05 13:31:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Lenovo
[2011/01/06 22:53:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/01/05 13:30:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PCDr
[2011/03/15 14:52:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ScanSoft
[2011/02/22 15:02:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SYSTEMAX Software Development
[2011/01/05 13:25:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Uninstall
[2011/06/19 15:51:20 | 000,000,286 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job
[2011/02/27 14:21:09 | 000,000,436 | ---- | M] () -- C:\WINDOWS\Tasks\PCDoctorBackgroundMonitorTask.job
[2011/06/19 15:50:25 | 000,000,316 | ---- | M] () -- C:\WINDOWS\Tasks\PMTask.job
[2011/06/19 23:01:01 | 000,000,250 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
========== Purity Check ==========
< End of report >