townie
OTL logfile created on: 13/07/2011 9:29:23 PM - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Dennis\Downloads
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00001009 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy
3.37 Gb Total Physical Memory | 2.05 Gb Available Physical Memory | 60.70% Memory free
6.75 Gb Paging File | 5.38 Gb Available in Paging File | 79.67% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 868.23 Gb Total Space | 604.18 Gb Free Space | 69.59% Space Free | Partition Type: NTFS
Drive D: | 63.28 Gb Total Space | 54.47 Gb Free Space | 86.08% Space Free | Partition Type: NTFS
Computer Name: DENNIS-PC | User Name: Dennis | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/07/13 21:28:53 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Dennis\Downloads\OTL.exe
PRC - [2011/07/04 08:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2011/07/04 08:43:51 | 000,121,000 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\afwServ.exe
PRC - [2011/07/04 08:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2011/05/06 18:09:18 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/04/22 18:26:18 | 000,056,200 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) -- C:\Program Files\EASEUS\Todo Backup\bin\Agent.exe
PRC - [2011/04/08 02:14:00 | 002,218,600 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2011/04/07 22:43:20 | 000,373,864 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
PRC - [2011/04/07 22:43:04 | 000,841,832 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
PRC - [2011/03/31 04:52:36 | 000,382,784 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
PRC - [2011/03/09 11:18:06 | 001,060,864 | ---- | M] () -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe
PRC - [2011/03/09 11:16:56 | 000,484,352 | ---- | M] () -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exe
PRC - [2011/03/09 11:07:54 | 000,238,592 | ---- | M] (WDC) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
PRC - [2011/02/25 02:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010/11/27 00:17:20 | 000,274,608 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Real\RealPlayer\Update\realsched.exe
PRC - [2010/11/20 09:17:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2010/11/09 17:08:58 | 000,146,000 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
PRC - [2010/11/01 07:37:36 | 000,241,152 | ---- | M] (Pixart Imaging Inc) -- C:\Windows\System32\TiltWheelMouse.exe
PRC - [2010/10/28 20:32:48 | 001,352,272 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe
PRC - [2010/10/27 19:24:42 | 000,645,952 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
PRC - [2010/10/27 19:23:16 | 001,483,072 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
PRC - [2010/05/18 15:13:58 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
PRC - [2010/04/02 16:19:36 | 000,091,456 | ---- | M] () -- C:\Program Files\Motorola\MotoConnectService\MotoConnectService.exe
PRC - [2010/04/02 16:19:32 | 000,279,360 | ---- | M] (Motorola) -- C:\Program Files\Motorola\MotoConnectService\MotoConnect.exe
PRC - [2010/03/18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2010/01/04 18:03:52 | 000,163,840 | ---- | M] (ITSamples.com) -- C:\Users\Dennis\Downloads\Network Activity Monitor\New folder\NetworkIndicator.exe
PRC - [2009/12/18 11:25:16 | 000,189,736 | ---- | M] (Seagate Technology LLC) -- C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe
PRC - [2009/12/09 23:12:50 | 001,118,208 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtWLan.exe
PRC - [2009/12/07 14:49:24 | 000,040,960 | ---- | M] (Realtek) -- C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtlService.exe
PRC - [2009/08/19 14:26:46 | 000,594,600 | ---- | M] ( ) -- C:\Windows\System32\lxdpcoms.exe
PRC - [2009/05/08 17:14:28 | 001,493,528 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 9\InCD\InCDSrv.exe
PRC - [2009/05/08 17:14:28 | 000,109,080 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 9\InCD\NBHRegInCDSrv.exe
PRC - [2008/12/05 15:06:42 | 000,081,920 | ---- | M] (Prolific Technology Inc.) -- C:\Program Files\Nero\Nero BackItUp 4\IoctlSvc.exe
PRC - [2008/06/24 19:56:38 | 000,431,384 | ---- | M] (Seagate) -- C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe
PRC - [2007/06/05 13:20:32 | 000,177,704 | ---- | M] () -- C:\Windows\System32\PSIService.exe
PRC - [2007/04/18 12:01:34 | 000,065,536 | ---- | M] (Hewlett-Packard Company) -- C:\hp\support\hpsysdrv.exe
PRC - [2006/09/28 05:20:00 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
========== Modules (SafeList) ==========
MOD - [2011/07/13 21:28:53 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Dennis\Downloads\OTL.exe
MOD - [2011/07/04 08:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\snxhk.dll
MOD - [2010/11/20 08:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- -- (nosGetPlusHelper) getPlus®
SRV - [2011/07/04 08:43:51 | 000,121,000 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\afwServ.exe -- (avast! Firewall)
SRV - [2011/07/04 08:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011/04/22 18:26:18 | 000,056,200 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Auto | Running] -- C:\Program Files\EASEUS\Todo Backup\bin\Agent.exe -- (EASEUS Agent)
SRV - [2011/04/08 02:14:00 | 002,218,600 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService)
SRV - [2011/03/09 11:18:06 | 001,060,864 | ---- | M] () [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe -- (WDFME)
SRV - [2011/03/09 11:16:56 | 000,484,352 | ---- | M] () [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exe -- (WDSC)
SRV - [2011/03/09 11:07:54 | 000,238,592 | ---- | M] (WDC) [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe -- (WDDMService)
SRV - [2011/02/02 11:59:18 | 002,413,704 | ---- | M] (mobile concepts GmbH) [On_Demand | Stopped] -- C:\Program Files\S.A.D\CyberGhost VPN\CGVPNCliService.exe -- (CGVPNCliSrvc)
SRV - [2010/10/28 07:13:30 | 000,293,456 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2010/10/27 19:23:16 | 001,483,072 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc)
SRV - [2010/10/27 19:21:08 | 000,029,504 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Windows\System32\uxtuneup.dll -- (UxTuneUp)
SRV - [2010/05/18 15:13:58 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
SRV - [2010/04/15 18:10:03 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2010/04/02 16:19:36 | 000,091,456 | ---- | M] () [Auto | Running] -- C:\Program Files\Motorola\MotoConnectService\MotoConnectService.exe -- (MotoConnect Service)
SRV - [2010/03/18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2010/02/19 06:44:44 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\VHStoDVD\SharedCOM\RoxMediaDBVHS.exe -- (RoxMediaDBVHS)
SRV - [2009/12/18 11:25:16 | 000,189,736 | ---- | M] (Seagate Technology LLC) [Auto | Running] -- C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe -- (FreeAgentGoNext Service)
SRV - [2009/12/07 14:49:24 | 000,040,960 | ---- | M] (Realtek) [Auto | Running] -- C:\Program Files\Realtek\11n USB Wireless LAN Utility\RtlService.exe -- (Realtek11nSU)
SRV - [2009/08/19 14:26:46 | 000,594,600 | ---- | M] ( ) [Auto | Running] -- C:\Windows\System32\lxdpcoms.exe -- (lxdp_device)
SRV - [2009/08/19 14:26:40 | 000,098,984 | ---- | M] () [Auto | Stopped] -- C:\Windows\System32\spool\DRIVERS\W32X86\3\\lxdpserv.exe -- (lxdpCATSCustConnectService)
SRV - [2009/07/13 22:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/13 22:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2009/05/08 17:14:28 | 001,493,528 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Nero\Nero 9\InCD\InCDSrv.exe -- (InCDSrv)
SRV - [2009/05/08 17:14:28 | 000,109,080 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Nero\Nero 9\InCD\NBHRegInCDSrv.exe -- (NeroRegInCDSrv)
SRV - [2009/04/29 04:21:04 | 000,410,624 | ---- | M] (Conexant Systems, Inc.) [Auto | Running] -- C:\Windows\System32\XAudio32.dll -- (HsfXAudioService)
SRV - [2008/12/05 15:06:42 | 000,081,920 | ---- | M] (Prolific Technology Inc.) [Auto | Running] -- C:\Program Files\Nero\Nero BackItUp 4\IoctlSvc.exe -- (PLFlash DeviceIoControl Service)
SRV - [2008/06/24 19:56:38 | 000,431,384 | ---- | M] (Seagate) [Auto | Running] -- C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe -- (SgtSch2Svc)
SRV - [2007/06/05 13:20:32 | 000,177,704 | ---- | M] () [Auto | Running] -- C:\Windows\System32\PSIService.exe -- (ProtexisLicensing)
SRV - [2006/09/28 05:20:00 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
========== Driver Services (SafeList) ==========
DRV - [2011/07/04 08:37:33 | 000,103,384 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswFW.sys -- (aswFW)
DRV - [2011/07/04 08:36:43 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011/07/04 08:36:32 | 000,309,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011/07/04 08:36:18 | 000,194,264 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\aswNdis2.sys -- (aswNdis2)
DRV - [2011/07/04 08:35:23 | 000,043,608 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011/07/04 08:32:32 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011/07/04 08:32:20 | 000,054,104 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2011/07/04 08:32:12 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011/05/03 19:01:57 | 000,600,928 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\timntr.sys -- (timounter)
DRV - [2011/05/03 19:01:50 | 000,170,528 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\snapman.sys -- (snapman)
DRV - [2011/04/22 18:26:12 | 000,037,256 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\system32\drivers\EUBKMON.sys -- (EUBKMON)
DRV - [2011/04/22 18:26:10 | 000,021,896 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\eufs.sys -- (EUFS)
DRV - [2011/04/22 18:26:08 | 000,015,240 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | System | Running] -- C:\Windows\System32\drivers\eudskacs.sys -- (EUDSKACS)
DRV - [2011/04/22 18:26:06 | 000,031,112 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\eubakup.sys -- (EUBAKUP)
DRV - [2011/04/22 18:26:04 | 000,188,808 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\eudisk.sys -- (EUDISK)
DRV - [2011/04/22 14:14:14 | 000,218,688 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2011/04/08 02:14:00 | 010,690,024 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2011/01/13 05:21:54 | 000,012,112 | ---- | M] (ALWIL Software) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\aswNdis.sys -- (aswNdis)
DRV - [2010/11/20 07:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010/11/20 06:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/10/07 14:34:32 | 000,010,064 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv)
DRV - [2010/09/21 10:10:32 | 000,192,504 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\ArcSec.sys -- (ArcSec)
DRV - [2010/08/24 14:31:02 | 000,037,328 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2010/08/24 14:30:52 | 000,038,864 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2010/05/10 15:41:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2010/03/26 16:07:02 | 000,032,768 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\taphss.sys -- (taphss)
DRV - [2010/03/11 14:14:52 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010/02/25 17:51:02 | 000,025,216 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901)
DRV - [2010/02/17 15:25:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2010/02/03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2010/01/29 12:40:04 | 000,082,320 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive)
DRV - [2010/01/13 14:59:20 | 000,089,728 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\ArcHlp.sys -- (archlp)
DRV - [2009/10/27 12:02:14 | 000,023,936 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motmodem.sys -- (motmodem)
DRV - [2009/10/17 14:21:57 | 000,044,384 | ---- | M] (Acronis) [File_System | Auto | Running] -- C:\Windows\System32\drivers\tifsfilt.sys -- (tifsfilter)
DRV - [2009/09/01 17:59:44 | 000,087,536 | ---- | M] (CyberLink Corp.) [2010/01/27 09:23:58] [Kernel | Auto | Running] -- C:\Program Files\CyberLink\PowerDVD9\000.fcl -- ({B154377D-700F-42cc-9474-23858FBDF4BD})
DRV - [2009/07/31 01:12:54 | 000,287,392 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmf6232.sys -- (NVNET)
DRV - [2009/07/13 19:13:47 | 000,266,752 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VSTBS23.SYS -- (VSTHWBS2)
DRV - [2009/07/13 19:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD)
DRV - [2009/06/22 23:34:38 | 000,212,000 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\nvstor32.sys -- (nvstor32)
DRV - [2009/06/19 16:59:52 | 000,533,752 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\emOEM.sys -- (USB28xxOEM)
DRV - [2009/06/19 16:58:56 | 000,572,280 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\emBDA.sys -- (USB28xxBGA)
DRV - [2009/05/08 17:14:34 | 000,129,944 | ---- | M] (Nero AG) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\InCDFs.sys -- (InCDFs)
DRV - [2009/05/08 17:14:34 | 000,048,280 | ---- | M] (Nero AG) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\InCDPass.sys -- (InCDPass)
DRV - [2009/05/08 17:14:28 | 000,019,096 | ---- | M] (Nero AG) [File_System | System | Running] -- C:\Windows\System32\drivers\InCDRec.sys -- (InCDRec)
DRV - [2009/04/29 04:20:56 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio32.sys -- (XAudio)
DRV - [2009/04/16 14:45:34 | 000,020,480 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\t_mouse.sys -- (t_mouse.sys)
DRV - [2009/02/13 06:58:30 | 000,266,752 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSXHWBS2.sys -- (HSXHWBS2)
DRV - [2009/02/13 06:56:32 | 000,980,992 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_DP.sys -- (HSF_DP)
DRV - [2008/10/09 15:42:42 | 000,017,408 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\KMWDFILTER.sys -- (KMWDFILTER)
DRV - [2008/09/29 20:20:40 | 000,449,536 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WN111v2v.sys -- (WN111v2)
DRV - [2008/05/06 16:06:00 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\wdcsam.sys -- (WDC_SAM)
DRV - [2008/01/25 16:02:04 | 000,132,128 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvrd32.sys -- (nvrd32)
DRV - [2007/10/12 12:53:10 | 000,013,312 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvsmu.sys -- (nvsmu)
DRV - [2007/02/19 13:30:00 | 000,068,936 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2006/11/16 15:36:28 | 000,020,480 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\DNISP50.sys -- (DNISp50)
DRV - [2006/11/16 15:36:18 | 000,021,504 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\DNIMP50.sys -- (DNIMp50)
DRV - [2005/12/12 17:27:00 | 000,019,072 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\PS2.sys -- (Ps2)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=;ftp=;https=;
========== FireFox ==========
FF - prefs.js..network.proxy.gopher: ""
FF - prefs.js..network.proxy.gopher_port: 0
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.type: 0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.609: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.609: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.609: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.609: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Alwil Software\Avast5\WebRep\FF [2011/07/08 21:11:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/05/06 18:09:19 | 000,000,000 | ---D | M]
[2011/05/04 17:14:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dennis\AppData\Roaming\Mozilla\Extensions
[2010/01/26 12:59:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dennis\AppData\Roaming\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011/02/14 00:18:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dennis\AppData\Roaming\Mozilla\Extensions\[email protected]
[2011/07/09 11:30:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\zqv3nswm.default\extensions
[2011/06/02 21:11:41 | 000,000,000 | ---D | M] (ChatZilla) -- C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\zqv3nswm.default\extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2}
[2011/07/09 11:30:19 | 000,000,000 | ---D | M] (WOT) -- C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\zqv3nswm.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2011/06/21 21:52:24 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\zqv3nswm.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011/06/27 10:06:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/06/27 10:06:44 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
File not found (No name found) --
[2011/07/08 21:11:46 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST5\WEBREP\FF
() (No name found) -- C:\USERS\DENNIS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZQV3NSWM.DEFAULT\EXTENSIONS\{A7C6CF7F-112C-4500-A7EA-39801A327E5F}.XPI
() (No name found) -- C:\USERS\DENNIS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZQV3NSWM.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
() (No name found) -- C:\USERS\DENNIS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZQV3NSWM.DEFAULT\EXTENSIONS\[email protected]
() (No name found) -- C:\USERS\DENNIS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZQV3NSWM.DEFAULT\EXTENSIONS\[email protected]
[2011/05/06 18:09:17 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2010/01/01 05:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
O1 HOSTS File: ([2010/11/16 00:10:19 | 000,000,098 | ---- | M]) - C:\Windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKLM\..\Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No CLSID value found.
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Lexmark Toolbar) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [KBD] C:\hp\KBD\KbdStub.exe ()
O4 - HKLM..\Run: [MouseDriver] C:\Windows\System32\TiltWheelMouse.exe (Pixart Imaging Inc)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [NetworkIndicator] C:\Users\Dennis\Downloads\Network Activity Monitor\New folder\NetworkIndicator.exe (ITSamples.com)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: EnableShellExecuteHooks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class)
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} http://www.nvidia.co...iaSmartScan.cab (NVIDIA Smart Scan)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: Garmin Communicator Plug-In https://static.garmi...inAxControl.CAB (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O28 - HKLM ShellExecuteHooks: {4F07DA45-8170-4859-9B5F-037EF2970034} - Reg Error: Key error. File not found
O30 - LSA: Authentication Packages - (relog_ap) - C:\Windows\System32\relog_ap.dll (Acronis)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 18:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKCU\...com [@ = comfile] -- Reg Error: Key error. File not found
========== Files/Folders - Created Within 30 Days ==========
[2011/07/12 21:17:45 | 000,000,000 | -HSD | C] -- C:\Users\Dennis\wc
[2011/07/12 21:17:44 | 000,000,000 | -HSD | C] -- C:\Users\Dennis\AppData\Roaming\wyUpdate AU
[2011/07/12 21:17:43 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\Cyberduck
[2011/07/12 21:17:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cyberduck
[2011/07/12 21:16:41 | 000,000,000 | ---D | C] -- C:\Program Files\Cyberduck
[2011/07/10 17:15:36 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Local\NPE
[2011/07/10 10:55:16 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Local\Norman Malware Cleaner
[2011/07/08 21:37:16 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Desktop\FrostWire 4.21.8
[2011/07/06 20:12:02 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\ZPS13
[2011/07/06 20:11:08 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\Zoner
[2011/07/06 20:11:08 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Local\Zoner
[2011/07/06 20:10:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoner Photo Studio 13
[2011/07/06 20:10:50 | 000,000,000 | ---D | C] -- C:\Program Files\Zoner
[2011/07/02 00:16:48 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\FileZilla
[2011/07/02 00:16:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
[2011/07/02 00:16:42 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla FTP Client
[2011/06/26 21:36:36 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Desktop\fixed.No Doubt - Icon (2010) [FLAC]
[2011/06/24 23:09:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
[2011/06/24 23:09:10 | 000,626,688 | ---- | C] (On2.com) -- C:\Windows\System32\vp7vfw.dll
[2011/06/24 21:39:30 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Local\{7D96E81A-F103-4624-94A0-5770F4B82FFA}
[2011/06/21 23:08:57 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\My Digikits
[2011/06/19 20:57:12 | 000,000,000 | ---D | C] -- C:\Program Files\ConvertHelper
[2009/10/20 18:59:04 | 000,409,600 | ---- | C] ( ) -- C:\Windows\System32\lxdpcoin.dll
[2009/08/19 14:26:48 | 000,320,168 | ---- | C] ( ) -- C:\Windows\System32\lxdpih.exe
[2009/08/19 14:26:46 | 000,594,600 | ---- | C] ( ) -- C:\Windows\System32\lxdpcoms.exe
[2009/08/19 14:26:44 | 000,365,224 | ---- | C] ( ) -- C:\Windows\System32\lxdpcfg.exe
[2009/01/10 13:40:20 | 000,438,272 | ---- | C] ( ) -- C:\Windows\System32\LXDPhcp.dll
[2009/01/10 11:51:17 | 000,047,360 | ---- | C] (VSO Software) -- C:\Users\Dennis\AppData\Roaming\pcouffin.sys
[2007/11/19 22:13:22 | 000,647,168 | ---- | C] ( ) -- C:\Windows\System32\lxdppmui.dll
[2007/11/19 22:09:44 | 001,101,824 | ---- | C] ( ) -- C:\Windows\System32\lxdpserv.dll
[2007/11/19 22:06:32 | 000,569,344 | ---- | C] ( ) -- C:\Windows\System32\lxdplmpm.dll
[2007/11/19 22:06:32 | 000,339,968 | ---- | C] ( ) -- C:\Windows\System32\lxdpiesc.dll
[2007/11/19 22:06:18 | 000,376,832 | ---- | C] ( ) -- C:\Windows\System32\lxdpcomm.dll
[2007/11/19 22:05:08 | 000,663,552 | ---- | C] ( ) -- C:\Windows\System32\lxdphbn3.dll
[2007/11/19 22:04:50 | 000,843,776 | ---- | C] ( ) -- C:\Windows\System32\lxdpusb1.dll
[2007/11/19 22:04:28 | 000,851,968 | ---- | C] ( ) -- C:\Windows\System32\lxdpcomc.dll
[2007/11/19 22:03:22 | 000,053,248 | ---- | C] ( ) -- C:\Windows\System32\lxdpprox.dll
[2007/11/19 22:01:20 | 000,364,544 | ---- | C] ( ) -- C:\Windows\System32\lxdpinpa.dll
[1 C:\Users\Dennis\Documents\*.tmp files -> C:\Users\Dennis\Documents\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/07/13 21:29:56 | 000,018,544 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/07/13 21:29:56 | 000,018,544 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/07/13 21:27:48 | 000,628,024 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/07/13 21:27:48 | 000,110,208 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/07/13 21:22:25 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/07/13 21:22:23 | 000,065,536 | ---- | M] () -- C:\Windows\System32\Ikeext.etl
[2011/07/13 21:21:38 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/07/13 21:21:24 | 2716,721,152 | -HS- | M] () -- C:\hiberfil.sys
[2011/07/12 22:06:00 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/07/12 21:17:33 | 000,001,018 | ---- | M] () -- C:\Users\Public\Desktop\Cyberduck.lnk
[2011/07/12 00:00:19 | 000,000,372 | ---- | M] () -- C:\Windows\tasks\NeroLiveEpgUpdate-Dennis-PC_Dennis.job
[2011/07/10 20:55:27 | 000,001,057 | ---- | M] () -- C:\Users\Dennis\AppData\Roaming\vso_ts_preview.xml
[2011/07/10 02:39:28 | 000,001,150 | ---- | M] () -- C:\Users\Dennis\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk
[2011/07/08 21:16:40 | 000,001,006 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011/07/08 21:11:50 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2011/07/06 20:10:58 | 000,002,102 | ---- | M] () -- C:\Users\Dennis\Application Data\Microsoft\Internet Explorer\Quick Launch\Zoner Photo Studio 13 FREE.lnk
[2011/07/06 20:10:58 | 000,002,078 | ---- | M] () -- C:\Users\Public\Desktop\Zoner Photo Studio 13 FREE.lnk
[2011/07/05 23:07:28 | 000,002,212 | ---- | M] () -- C:\Users\Dennis\Desktop\new cyberlink photo director.lnk
[2011/07/04 08:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011/07/04 08:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2011/07/04 08:37:33 | 000,103,384 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFW.sys
[2011/07/04 08:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2011/07/04 08:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys
[2011/07/04 08:36:18 | 000,194,264 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswNdis2.sys
[2011/07/04 08:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2011/07/04 08:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2011/07/04 08:32:20 | 000,054,104 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2011/07/04 08:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2011/07/02 00:16:46 | 000,001,999 | ---- | M] () -- C:\Users\Public\Desktop\FileZilla Client.lnk
[2011/06/29 22:10:24 | 000,533,288 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/06/25 13:44:23 | 2539,651,072 | ---- | M] () -- C:\Users\Dennis\Desktop\Dennis.iso
[2011/06/25 02:38:11 | 000,000,489 | ---- | M] () -- C:\Users\Dennis\Desktop\Shortcut to Downloads on Dennis-pc.lnk
[2011/06/25 02:12:07 | 000,001,223 | ---- | M] () -- C:\Users\Dennis\Application Data\Microsoft\Internet Explorer\Quick Launch\ConvertXtoDVD 4.lnk
[2011/06/25 02:12:06 | 000,001,231 | ---- | M] () -- C:\Users\Dennis\Desktop\ConvertXtoDVD 4.lnk
[2011/06/25 00:12:22 | 000,005,852 | -HS- | M] () -- C:\Windows\System32\KGyGaAvL.sys
[2011/06/21 21:48:33 | 000,002,176 | ---- | M] () -- C:\Users\Public\Desktop\Serif CraftArtist.lnk
[1 C:\Users\Dennis\Documents\*.tmp files -> C:\Users\Dennis\Documents\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/07/12 21:17:33 | 000,001,018 | ---- | C] () -- C:\Users\Public\Desktop\Cyberduck.lnk
[2011/07/06 20:10:58 | 000,002,102 | ---- | C] () -- C:\Users\Dennis\Application Data\Microsoft\Internet Explorer\Quick Launch\Zoner Photo Studio 13 FREE.lnk
[2011/07/06 20:10:58 | 000,002,078 | ---- | C] () -- C:\Users\Public\Desktop\Zoner Photo Studio 13 FREE.lnk
[2011/07/05 23:07:28 | 000,002,212 | ---- | C] () -- C:\Users\Dennis\Desktop\new cyberlink photo director.lnk
[2011/07/02 00:16:46 | 000,001,999 | ---- | C] () -- C:\Users\Public\Desktop\FileZilla Client.lnk
[2011/06/25 13:42:42 | 2539,651,072 | ---- | C] () -- C:\Users\Dennis\Desktop\Dennis.iso
[2011/06/25 02:38:11 | 000,000,489 | ---- | C] () -- C:\Users\Dennis\Desktop\Shortcut to Downloads on Dennis-pc.lnk
[2011/06/24 23:09:16 | 000,001,231 | ---- | C] () -- C:\Users\Dennis\Desktop\ConvertXtoDVD 4.lnk
[2011/06/24 23:09:16 | 000,001,223 | ---- | C] () -- C:\Users\Dennis\Application Data\Microsoft\Internet Explorer\Quick Launch\ConvertXtoDVD 4.lnk
[2011/06/21 21:48:33 | 000,002,523 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Serif CraftArtist.lnk
[2011/06/21 21:48:33 | 000,002,176 | ---- | C] () -- C:\Users\Public\Desktop\Serif CraftArtist.lnk
[2011/05/14 15:53:29 | 000,037,256 | ---- | C] () -- C:\Windows\System32\drivers\EUBKMON.sys
[2011/04/21 21:14:59 | 000,033,329 | ---- | C] () -- C:\Windows\PhotoModelerPro5.ini
[2011/04/11 22:41:58 | 000,000,064 | ---- | C] () -- C:\Windows\GPlrLanc.dat
[2011/03/03 16:56:39 | 000,389,597 | ---- | C] () -- C:\Users\Dennis\AppData\Local\census.cache
[2011/03/03 16:56:23 | 000,217,143 | ---- | C] () -- C:\Users\Dennis\AppData\Local\ars.cache
[2011/02/17 16:50:24 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2010/12/28 23:49:02 | 000,061,678 | ---- | C] () -- C:\Users\Dennis\AppData\Roaming\PFP120JPR.{PB
[2010/12/28 23:49:02 | 000,012,358 | ---- | C] () -- C:\Users\Dennis\AppData\Roaming\PFP120JCM.{PB
[2010/12/04 18:23:42 | 000,451,072 | ---- | C] () -- C:\Windows\System32\ISSRemoveSP.exe
[2010/12/03 21:02:14 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2010/11/25 18:38:31 | 000,194,560 | ---- | C] () -- C:\Windows\System32\ShellMPD.dll
[2010/10/11 13:34:59 | 000,006,656 | ---- | C] () -- C:\Users\Dennis\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/10/10 23:55:20 | 000,165,376 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2010/10/06 18:45:18 | 000,015,360 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2010/09/21 10:10:32 | 000,192,504 | ---- | C] () -- C:\Windows\System32\drivers\ArcSec.sys
[2010/09/04 09:45:52 | 000,921,600 | ---- | C] () -- C:\Windows\System32\vorbisenc.dll
[2010/09/04 09:45:52 | 000,237,568 | ---- | C] () -- C:\Windows\System32\OggDS.dll
[2010/09/04 09:45:52 | 000,188,416 | ---- | C] () -- C:\Windows\System32\vorbis.dll
[2010/09/04 09:45:52 | 000,045,056 | ---- | C] () -- C:\Windows\System32\ogg.dll
[2010/07/10 00:16:16 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010/06/11 18:14:25 | 000,015,944 | ---- | C] () -- C:\Windows\System32\drivers\hitmanpro35.sys
[2010/04/17 11:19:22 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2010/04/02 17:40:35 | 000,000,000 | ---- | C] () -- C:\Windows\setup32.INI
[2010/03/16 14:15:00 | 000,000,016 | ---- | C] () -- C:\Windows\Wininit.ini
[2010/03/16 14:13:44 | 000,000,427 | ---- | C] () -- C:\Windows\ULEAD32.INI
[2010/02/10 23:20:10 | 000,000,036 | ---- | C] () -- C:\Users\Dennis\AppData\Local\housecall.guid.cache
[2010/01/26 00:18:04 | 000,021,316 | ---- | C] () -- C:\Windows\System32\emptyregdb.dat
[2009/10/10 19:33:17 | 000,000,004 | ---- | C] () -- C:\Windows\info147.sys
[2009/10/06 15:22:25 | 000,006,136 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2009/10/01 16:01:10 | 000,000,083 | ---- | C] () -- C:\Windows\System32\gpupdate.bin
[2009/09/12 21:31:25 | 000,000,000 | ---- | C] () -- C:\Users\Dennis\AppData\Roaming\downloads.m3u
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | ---- | C] () -- C:\Windows\System32\OGAEXEC.exe
[2009/07/14 09:02:58 | 000,208,896 | ---- | C] () -- C:\Windows\System32\lxdpgrd.dll
[2009/07/14 01:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/14 01:33:53 | 000,533,288 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009/07/13 23:05:48 | 000,628,024 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2009/07/13 23:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009/07/13 23:05:48 | 000,110,208 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2009/07/13 23:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009/07/13 23:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009/07/13 23:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009/07/13 20:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 20:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009/07/13 20:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009/06/10 18:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2009/05/27 13:10:16 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009/04/17 15:59:43 | 000,005,852 | -HS- | C] () -- C:\Windows\System32\KGyGaAvL.sys
[2009/04/17 15:59:43 | 000,000,008 | RHS- | C] () -- C:\Windows\System32\3F5F7861E5.sys
[2009/04/16 14:45:34 | 000,020,480 | ---- | C] () -- C:\Windows\System32\drivers\t_mouse.sys
[2009/04/02 09:30:14 | 000,010,296 | ---- | C] () -- C:\Windows\System32\drivers\ASUSHWIO.SYS
[2009/03/07 22:02:27 | 000,000,026 | ---- | C] () -- C:\Windows\dvdSanta.INI
[2009/03/06 14:26:16 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2009/03/03 21:16:28 | 000,000,142 | ---- | C] () -- C:\Windows\System32\09wutili.sys
[2009/02/19 15:22:52 | 000,089,728 | ---- | C] () -- C:\Windows\System32\drivers\ArcHlp.sys
[2009/01/14 00:16:16 | 000,000,121 | ---- | C] () -- C:\Users\Dennis\AppData\Roaming\default.rss
[2009/01/11 01:25:08 | 000,004,767 | ---- | C] () -- C:\Windows\Irremote.ini
[2009/01/10 13:40:32 | 000,000,044 | ---- | C] () -- C:\Windows\System32\lxdprwrd.ini
[2009/01/10 13:40:20 | 000,348,160 | ---- | C] () -- C:\Windows\System32\LXDPinst.dll
[2009/01/10 11:54:40 | 000,001,057 | ---- | C] () -- C:\Users\Dennis\AppData\Roaming\vso_ts_preview.xml
[2009/01/10 11:51:17 | 000,087,608 | ---- | C] () -- C:\Users\Dennis\AppData\Roaming\inst.exe
[2009/01/10 11:51:17 | 000,007,887 | ---- | C] () -- C:\Users\Dennis\AppData\Roaming\pcouffin.cat
[2009/01/10 11:51:17 | 000,001,144 | ---- | C] () -- C:\Users\Dennis\AppData\Roaming\pcouffin.inf
[2009/01/05 23:44:16 | 000,000,043 | ---- | C] () -- C:\Windows\System32\Writer.ini
[2008/08/01 13:02:37 | 000,327,680 | ---- | C] () -- C:\Windows\System32\pythoncom25.dll
[2008/08/01 13:02:37 | 000,102,400 | ---- | C] () -- C:\Windows\System32\pywintypes25.dll
[2008/03/31 19:47:44 | 000,040,960 | ---- | C] () -- C:\Windows\System32\lxdpvs.dll
[2007/10/26 16:05:04 | 000,000,022 | ---- | C] () -- C:\ProgramData\60a7806a-0eea-424c-a464-20f4730cd631
[2007/06/05 13:20:32 | 000,177,704 | ---- | C] () -- C:\Windows\System32\PSIService.exe
========== LOP Check ==========
[2011/05/03 19:20:53 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\6DCA5677-89C2-410C-A8D4-94833A514E70
[2010/01/26 00:14:19 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Acronis
[2011/02/27 21:43:17 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Ashampoo
[2011/02/27 21:41:24 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Ashampoo Photo Commander 7
[2011/07/12 21:21:18 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Cyberduck
[2011/05/02 13:36:32 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\C__Users_Dennis_Desktop_ph_ph_FIX_PlatinumHideIP.exe
[2011/07/08 21:16:55 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DAEMON Tools Pro
[2010/03/09 00:08:45 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Digiarty
[2010/08/31 17:23:12 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DMCache
[2010/04/15 18:08:12 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\ESET
[2011/07/07 20:00:38 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\FileZilla
[2010/07/13 16:18:24 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Foxit
[2010/07/13 16:18:25 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Foxit Software
[2010/09/04 21:56:22 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\GARMIN
[2010/10/05 15:28:32 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\GlobalSCAPE
[2010/01/26 00:14:21 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\GSplit
[2010/11/12 12:57:53 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Haihaisoft
[2011/05/03 14:34:55 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Haihaisoft Universal Player
[2010/02/16 15:21:44 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Hoyle FaceCreator
[2011/03/26 23:17:52 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Hoyle Puzzle and Board Games
[2010/01/27 09:59:54 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\ImgBurn
[2010/01/26 00:14:22 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\IObit
[2010/01/26 00:14:22 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\iWin
[2010/07/14 12:18:07 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Leadertech
[2010/01/26 00:14:22 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Lexmark Productivity Studio
[2010/03/01 11:41:41 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Ludia
[2010/01/26 00:14:24 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Morpheus Software
[2010/11/25 18:38:37 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\MSN Pictures Displayer
[2010/07/30 09:54:27 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Notepad++
[2010/07/10 00:27:16 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Opera
[2011/05/02 14:09:02 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\PlatinumHideIP
[2010/06/15 14:36:41 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\ProcessLasso
[2010/12/08 22:45:29 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Pump
[2011/06/21 23:08:49 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Serif
[2010/04/16 23:22:53 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\SkyDownloader
[2010/01/26 00:14:27 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Snapfish
[2010/01/26 00:14:27 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Software Informer
[2010/01/26 00:14:28 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\SystemRequirementsLab
[2011/02/13 23:12:35 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Thunderbird
[2010/11/13 20:02:44 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\TuneUp Software
[2010/07/07 22:17:41 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Ulead Systems
[2011/07/12 21:01:00 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\uTorrent
[2011/07/10 20:55:27 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Vso
[2010/01/26 00:14:29 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\WildTangent
[2010/01/26 00:14:29 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\WinBatch
[2011/04/29 17:01:18 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Windows Live Writer
[2011/07/12 21:17:44 | 000,000,000 | -HSD | M] -- C:\Users\Dennis\AppData\Roaming\wyUpdate AU
[2011/07/06 20:12:01 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Zoner
[2011/02/02 20:58:48 | 000,032,572 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:5C321E34
< End of report >