I had a nasty slutty virus and i final got the laptop up, online, but Firefox will not work....I know their are still viruses, rootkits, spyware, etc...
I used the cmd, "inetcpl.cpl" to gain access to internet via IE, however did not work for Fire Fox.....
Please help, tks!
OTL logfile created on: 03/09/2011 10:49:23 p.m. - Run 1
OTL by OldTimer - Version 3.2.27.0 Folder = C:\Users\ALPIMAS\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18943)
Locale: 0000080A | Country: Mexico | Language: ESM | Date Format: dd/MM/yyyy
3.96 Gb Total Physical Memory | 1.80 Gb Available Physical Memory | 45.38% Memory free
8.09 Gb Paging File | 6.00 Gb Available in Paging File | 74.17% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 288.01 Gb Total Space | 242.69 Gb Free Space | 84.26% Space Free | Partition Type: NTFS
Drive D: | 10.00 Gb Total Space | 2.97 Gb Free Space | 29.72% Space Free | Partition Type: NTFS
Drive E: | 7.60 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: UDF
Computer Name: ALPIMAS-PC | User Name: ALPIMAS | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/09/03 22:48:20 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\ALPIMAS\Desktop\OTL.exe
PRC - [2010/11/09 15:33:50 | 002,064,384 | ---- | M] () -- C:\Program Files (x86)\WhiteSmoke Translator\WSTrayDictMode.exe
PRC - [2010/01/19 17:48:26 | 000,020,480 | ---- | M] (AG Interactive) -- C:\Program Files (x86)\AGI\core\4.2.0.10752\AGCoreService.exe
PRC - [2010/01/15 08:49:20 | 000,255,536 | ---- | M] (McAfee, Inc.) -- C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
PRC - [2008/09/24 00:09:52 | 000,155,648 | ---- | M] (Stardock Corporation) -- C:\Program Files\Dell\DellDock\DockLogin.exe
PRC - [2008/09/05 19:16:54 | 002,340,096 | ---- | M] (Sensible Vision ) -- C:\Program Files (x86)\Sensible Vision\Fast Access\FAService.exe
PRC - [2008/04/17 16:14:00 | 000,102,712 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
========== Modules (No Company Name) ==========
MOD - [2010/11/09 15:33:50 | 002,064,384 | ---- | M] () -- C:\Program Files (x86)\WhiteSmoke Translator\WSTrayDictMode.exe
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2009/02/25 21:43:20 | 000,818,752 | ---- | M] (Trend Micro Inc.) [Auto | Running] -- C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe -- (SfCtlCom)
SRV:64bit: - [2008/11/20 06:21:12 | 000,031,744 | ---- | M] () [Auto | Running] -- C:\Windows\SysNative\WLTRYSVC.EXE -- (wltrysvc)
SRV:64bit: - [2008/10/03 13:27:54 | 000,854,280 | ---- | M] (Trend Micro Inc.) [On_Demand | Running] -- C:\Program Files\Trend Micro\Internet Security\TmProxy.exe -- (tmproxy)
SRV:64bit: - [2008/10/03 13:23:26 | 000,563,464 | ---- | M] (Trend Micro Inc.) [Auto | Running] -- C:\Program Files\Trend Micro\BM\TMBMSRV.exe -- (TMBMServer)
SRV:64bit: - [2008/09/24 00:09:52 | 000,155,648 | ---- | M] (Stardock Corporation) [Auto | Running] -- C:\Program Files\Dell\DellDock\DockLogin.exe -- (DockLoginService)
SRV:64bit: - [2008/09/22 19:15:48 | 000,585,136 | ---- | M] (Trend Micro Inc.) [On_Demand | Running] -- C:\Program Files\Trend Micro\Internet Security\TmPfw.exe -- (TmPfw)
SRV:64bit: - [2008/08/25 06:31:36 | 000,251,904 | ---- | M] () [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_a2af78c4\STacSV64.exe -- (STacSV)
SRV:64bit: - [2008/08/25 06:31:22 | 000,086,016 | ---- | M] () [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_a2af78c4\AESTSr64.exe -- (AESTFilters)
SRV:64bit: - [2008/01/20 22:50:24 | 000,027,648 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysNative\svchost.exe -- (Ias)
SRV:64bit: - [2008/01/20 22:47:32 | 000,383,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/01/19 17:48:26 | 000,020,480 | ---- | M] (AG Interactive) [Auto | Running] -- C:\Program Files (x86)\AGI\core\4.2.0.10752\AGCoreService.exe -- (AGCoreService)
SRV - [2010/01/15 08:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
SRV - [2008/09/05 19:16:54 | 002,340,096 | ---- | M] (Sensible Vision ) [Auto | Running] -- C:\Program Files (x86)\Sensible Vision\Fast Access\FAService.exe -- (FAService)
SRV - [2008/07/27 14:03:13 | 000,069,632 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/07/07 16:45:50 | 000,111,896 | ---- | M] (PCTEL) [On_Demand | Stopped] -- C:\Program Files (x86)\Sprint\Sprint SmartView\RcAppSvc.exe -- (SprintRcAppSvc)
SRV - [2008/07/07 16:45:36 | 000,124,184 | ---- | M] (PCTEL) [On_Demand | Stopped] -- C:\Program Files (x86)\Sprint\Sprint SmartView\ConAppsSvc.exe -- (CASprint)
SRV - [2008/04/17 16:14:00 | 000,102,712 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2008/01/20 22:47:00 | 000,428,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2008/01/20 22:47:00 | 000,211,968 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2010/04/16 08:33:36 | 000,050,176 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2009/05/18 15:17:08 | 000,034,152 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2008/11/20 06:20:52 | 000,022,520 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCM42RLY.sys -- (BCM42RLY)
DRV:64bit: - [2008/10/27 07:21:50 | 001,374,712 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\bcmwl664.sys -- (BCM43XX)
DRV:64bit: - [2008/10/27 02:25:30 | 000,315,840 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\OA001Vid.sys -- (OA001Vid)
DRV:64bit: - [2008/10/27 02:25:30 | 000,168,864 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\OA001Ufd.sys -- (OA001Ufd)
DRV:64bit: - [2008/10/03 13:23:46 | 000,080,400 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\tmtdi.sys -- (tmtdi)
DRV:64bit: - [2008/10/03 13:23:40 | 000,277,008 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\tmwfp.sys -- (tmwfp)
DRV:64bit: - [2008/10/03 13:23:36 | 000,192,528 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\tmlwf.sys -- (tmlwf)
DRV:64bit: - [2008/09/03 07:59:18 | 000,126,464 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcHdmi.sys -- (IntcHdmiAddService) Intel®
DRV:64bit: - [2008/09/03 07:58:16 | 008,029,792 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\igdkmd64.sys -- (igfx)
DRV:64bit: - [2008/08/25 07:26:08 | 000,199,728 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\Apfiltr.sys -- (ApfiltrService)
DRV:64bit: - [2008/08/25 06:35:36 | 000,059,392 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\itecir.sys -- (itecir)
DRV:64bit: - [2008/08/25 06:31:46 | 000,458,752 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\stwrt64.sys -- (STHDA)
DRV:64bit: - [2008/08/16 03:01:34 | 000,235,536 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\tmxpflt.sys -- (tmxpflt)
DRV:64bit: - [2008/08/16 03:01:32 | 000,042,000 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\tmpreflt.sys -- (tmpreflt)
DRV:64bit: - [2008/08/16 02:58:10 | 001,839,632 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\vsapint.sys -- (vsapint)
DRV:64bit: - [2008/08/02 18:36:16 | 000,243,840 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\facap.sys -- (FACAP)
DRV:64bit: - [2008/07/17 06:59:12 | 000,057,856 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\rixdpx64.sys -- (rismxdp)
DRV:64bit: - [2008/07/17 06:59:10 | 000,062,976 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\rimmpx64.sys -- (rimmptsk)
DRV:64bit: - [2008/07/17 06:59:08 | 000,055,296 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\rimspx64.sys -- (rimsptsk)
DRV:64bit: - [2008/07/16 07:50:42 | 000,239,104 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\k57nd60a.sys -- (k57nd60a) Broadcom NetLink ™
DRV:64bit: - [2008/07/07 16:42:52 | 000,195,584 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\SWNC5E00.sys -- (SWNC5E00) Sierra Wireless MUX NDIS Driver (#00)
DRV:64bit: - [2008/07/07 16:42:50 | 000,197,640 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\swmx00.sys -- (swmx00) Sierra Wireless USB MUX Driver (#00)
DRV:64bit: - [2008/07/07 16:41:32 | 000,043,032 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\PCTINDIS5X64.SYS -- (PCTINDIS5X64)
DRV:64bit: - [2008/01/20 22:49:47 | 000,011,264 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\RootMdm.sys -- (ROOTMODEM)
DRV:64bit: - [2008/01/20 22:47:28 | 000,046,080 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\wpdusb.sys -- (WpdUsb)
DRV:64bit: - [2008/01/20 22:46:55 | 000,317,952 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\e1e6032e.sys -- (e1express) Intel®
DRV:64bit: - [2008/01/20 22:46:55 | 000,111,104 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\sdbus.sys -- (sdbus)
DRV:64bit: - [2008/01/20 22:46:52 | 000,019,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2007/11/14 05:00:00 | 000,053,488 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\Drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2007/10/12 18:04:40 | 000,041,280 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\PCASp50a64.sys -- (PCASp50a64)
DRV:64bit: - [2007/09/06 17:30:24 | 000,198,144 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\NWADIenum.sys -- (NWADI)
DRV:64bit: - [2007/06/20 16:57:36 | 000,029,184 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\motmodem.sys -- (motmodem)
DRV:64bit: - [2007/05/31 15:39:32 | 000,027,520 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\RimUsb_AMD64.sys -- (RimUsb)
DRV:64bit: - [2007/01/18 17:10:22 | 000,030,336 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\RimSerial_AMD64.sys -- (RimVSerPort)
DRV:64bit: - [2006/11/02 03:48:50 | 002,488,320 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\atikmdag.sys -- (R300)
DRV - [2008/07/07 16:42:52 | 000,028,680 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\swmsflt.sys -- (swmsflt)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://prodigy.msn.com/
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.bing.com/ [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.bing.com/ [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://prodigy.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.bing.com/ [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.bing.com/ [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://prodigy.msn.com/
IE - HKLM\..\URLSearchHook: {e5a1e26f-0d1d-4307-868f-fbd9a374ab54} - Reg Error: Key error. File not found
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://prodigy.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.bing.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.bing.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://prodigy.msn.com/
IE - HKCU\..\URLSearchHook: {0BC6E3FA-78EF-4886-842C-5A1258C4455A} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
FF - prefs.js..network.proxy.type: 4
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.50826.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=13: C:\Program Files (x86)\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll (Google)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Program Files (x86)\Google\Update\1.2.183.27\npGoogleOneClick8.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/09/03 22:34:38 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/09/03 20:54:16 | 000,000,000 | ---D | M]
[2011/09/03 20:54:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ALPIMAS\AppData\Roaming\Mozilla\Extensions
[2009/10/07 13:03:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ALPIMAS\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org
[2011/09/03 22:34:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2009/08/08 13:10:34 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2011/06/16 00:17:34 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2010/07/17 05:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010/12/19 08:22:50 | 000,001,919 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing-zugo.xml
[2010/01/01 04:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2010/09/16 09:33:38 | 000,002,075 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\google_search.xml
O1 HOSTS File: ([2011/06/26 17:48:12 | 000,000,822 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (MSN Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - File not found
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - File not found
O3 - HKLM\..\Toolbar: (&Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll ()
O3 - HKLM\..\Toolbar: (WhiteSmoke Toolbar) - {52794457-af6c-4c50-9def-f2e24f4c8889} - C:\Program Files (x86)\whitesmoketoolbar\whitesmoketoolbarX.dll ()
O3 - HKLM\..\Toolbar: (no name) - {e5a1e26f-0d1d-4307-868f-fbd9a374ab54} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (&Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll ()
O4:64bit: - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4:64bit: - HKLM..\Run: [Broadcom Wireless Manager UI] C:\Windows\SysNative\WLTRAY.exe ()
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe ()
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe ()
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe ()
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4:64bit: - HKLM..\Run: [UfSeAgnt.exe] C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe (Trend Micro Inc.)
O4:64bit: - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] File not found
O4 - HKLM..\Run: [AppleSyncNotifier] File not found
O4 - HKLM..\Run: [ArcSoft Connection Service] File not found
O4 - HKLM..\Run: [Dell Webcam Central] File not found
O4 - HKLM..\Run: [EEventManager] File not found
O4 - HKLM..\Run: [FAStartup] File not found
O4 - HKLM..\Run: [FATrayAlert] File not found
O4 - HKLM..\Run: [fbwatch] File not found
O4 - HKLM..\Run: [GMorphCl] File not found
O4 - HKLM..\Run: [iTunesHelper] File not found
O4 - HKLM..\Run: [KiweeHook] File not found
O4 - HKLM..\Run: [LvOKfeefn0Z] File not found
O4 - HKLM..\Run: [LvOKfeefn1zAIMAS\AppData\Local\Temp\3974322659.exe] File not found
O4 - HKLM..\Run: [LvOKfeefnb] File not found
O4 - HKLM..\Run: [LvOKfeefneP] File not found
O4 - HKLM..\Run: [LvOKfeefnf] File not found
O4 - HKLM..\Run: [LvOKfeefnfQ] File not found
O4 - HKLM..\Run: [LvOKfeefnfQft.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] File not found
O4 - HKLM..\Run: [LvOKfeefngP] File not found
O4 - HKLM..\Run: [LvOKfeefnoc] File not found
O4 - HKLM..\Run: [LvOKfeefnqg] File not found
O4 - HKLM..\Run: [LvOKfeefnrc] File not found
O4 - HKLM..\Run: [LvOKfeefnsb] File not found
O4 - HKLM..\Run: [LvOKfeefnsd] File not found
O4 - HKLM..\Run: [LvOKfeefntpf] File not found
O4 - HKLM..\Run: [LvOKfeefnvc] File not found
O4 - HKLM..\Run: [LvOKfeefnvcPIMAS\AppData\Local\Temp\user.exe] File not found
O4 - HKLM..\Run: [LvOKfeefnvZ] File not found
O4 - HKLM..\Run: [LvOKfeefnwe] File not found
O4 - HKLM..\Run: [LvOKfeefnwpc] File not found
O4 - HKLM..\Run: [LvOKfeefnxb] File not found
O4 - HKLM..\Run: [LvOKfeefnY] File not found
O4 - HKLM..\Run: [MqqsK] File not found
O4 - HKLM..\Run: [Mqvagestsearche.com&p=R0lGODlhyAA8APcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/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] File not found
O4 - HKLM..\Run: [MqvrN] File not found
O4 - HKLM..\Run: [PCMService] File not found
O4 - HKLM..\Run: [QuickTime Task] File not found
O4 - HKLM..\Run: [Sprint SmartView] File not found
O4 - HKLM..\Run: [SunJavaUpdateSched] File not found
O4 - HKCU..\Run: [EPSON WorkForce 600 Series] File not found
O4 - HKCU..\Run: [ooVoo.exe] C:\program files (x86)\oovoo\oovoo.exe (ooVoo LLC)
O4 - HKCU..\Run: [SightSpeed] File not found
O4 - HKCU..\Run: [Speech Recognition] C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation)
O4 - HKCU..\Run: [WMPNSCFG] File not found
O4 - Startup: C:\Users\ALPIMAS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk = C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
O4 - Startup: C:\Users\ALPIMAS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Epson all-in-one Registration.lnk = File not found
O4 - Startup: C:\Users\ALPIMAS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LimeWire On Startup.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll ()
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - File not found
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - File not found
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000003 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000004 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000005 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000006 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000007 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000008 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000009 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000010 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000021 - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - File not found
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 66.38.1.90 66.38.0.240 66.38.1.240
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0DAF6A87-4BA2-4BED-B861-F5D019D37AB2}: DhcpNameServer = 66.38.1.90 66.38.0.240 66.38.1.240
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{304BDE19-F312-43D0-B645-C61B958C98F6}: DhcpNameServer = 192.168.254.254
O18:64bit: - Protocol\Handler\cozi {5356518D-FE9C-4E08-9C1F-1E872ECD367F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\cozi {5356518D-FE9C-4E08-9C1F-1E872ECD367F} - C:\Program Files (x86)\Cozi Express\CoziProtocolHandler.dll (Cozi Group, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll ()
O20 - Winlogon\Notify\dstfixx: DllName - dstfixx.dll - File not found
O20 - Winlogon\Notify\FastAccess: DllName - C:\Program Files (x86)\Sensible Vision\Fast Access\FALogNot.dll - C:\Program Files (x86)\Sensible Vision\Fast Access\FALogNot.dll ()
O24 - Desktop WallPaper: C:\Users\ALPIMAS\Pictures\DSCF0077.JPG
O24 - Desktop BackupWallPaper: C:\Users\ALPIMAS\Pictures\DSCF0077.JPG
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/02/01 22:53:23 | 000,000,041 | R--- | M] () - E:\Autorun.inf -- [ UDF ]
O33 - MountPoints2\{0f764d94-0e7f-11de-9d33-00a0d5ffff85}\Shell\AutoRun\command - "" = F:\MEMORY\S-v-6-2009\PeAcE.exe
O33 - MountPoints2\{0f764d94-0e7f-11de-9d33-00a0d5ffff85}\Shell\open\command - "" = F:\MEMORY\S-v-6-2009\PeAcE.exe
O33 - MountPoints2\{14df9fd1-77d0-11de-9357-002219db6fac}\Shell - "" = AutoRun
O33 - MountPoints2\{14df9fd1-77d0-11de-9357-002219db6fac}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O33 - MountPoints2\{48fef3d4-e68d-11dd-96ac-002219db6fac}\Shell\AutoRun\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
O33 - MountPoints2\{48fef3d4-e68d-11dd-96ac-002219db6fac}\Shell\open\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
O33 - MountPoints2\{7d6b2c77-d620-11dd-b982-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{7d6b2c77-d620-11dd-b982-806e6f6e6963}\Shell\AutoRun\command - "" = E:\ShelExec.exe index.html
O33 - MountPoints2\{aeac9256-638c-11df-9242-002219db6fac}\Shell\AutoRun\command - "" = C:\Program Files\BearShare Applications\BearShare\BearShare.exe
O33 - MountPoints2\{d7c2d694-591c-11de-a00b-002219db6fac}\Shell\AutoRun\command - "" = F:\NEXT\FILES\NEXT.exe
O33 - MountPoints2\{d7c2d694-591c-11de-a00b-002219db6fac}\Shell\open\command - "" = F:\NEXT\FILES\NEXT.exe
O33 - MountPoints2\{d7c2d699-591c-11de-a00b-002219db6fac}\Shell - "" = AutoRun
O33 - MountPoints2\{d7c2d699-591c-11de-a00b-002219db6fac}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O33 - MountPoints2\{d98dfbb4-a65e-11e0-9a89-fced343fed87}\Shell\AutoRun\command - "" = F:\wubi.exe --cdmenu
O33 - MountPoints2\{dc4207c7-22e4-11de-a486-002219db6fac}\Shell\AutoRun\command - "" = G:\NEXT\FILES\NEXT.exe
O33 - MountPoints2\{dc4207c7-22e4-11de-a486-002219db6fac}\Shell\open\command - "" = G:\NEXT\FILES\NEXT.exe
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/09/03 22:48:10 | 000,581,120 | ---- | C] (OldTimer Tools) -- C:\Users\ALPIMAS\Desktop\OTL.exe
[2011/09/03 22:47:00 | 000,581,120 | ---- | C] (OldTimer Tools) -- C:\Users\ALPIMAS\OTL.exe
[2011/09/03 20:35:55 | 002,524,022 | ---- | C] (Swearware) -- C:\Users\ALPIMAS\ComboFix.exe
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/09/03 22:49:41 | 000,000,822 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\tmvsthfud.bin
[2011/09/03 22:49:37 | 000,000,822 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\tmvsthfss.bin
[2011/09/03 22:49:26 | 000,000,396 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{50259614-8A82-411D-B81F-3D9A1A7D58C1}.job
[2011/09/03 22:48:20 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\ALPIMAS\Desktop\OTL.exe
[2011/09/03 22:47:01 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\ALPIMAS\OTL.exe
[2011/09/03 22:46:00 | 000,000,396 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{830A53C7-A521-4EFD-8571-D3AB6FDC631D}.job
[2011/09/03 22:34:38 | 000,000,914 | ---- | M] () -- C:\Users\ALPIMAS\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/09/03 22:34:38 | 000,000,890 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/09/03 22:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At95.job
[2011/09/03 22:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At71.job
[2011/09/03 22:17:00 | 000,000,342 | ---- | M] () -- C:\Windows\tasks\At23.job
[2011/09/03 22:10:05 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/09/03 22:00:00 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\At47.job
[2011/09/03 21:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At94.job
[2011/09/03 21:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At70.job
[2011/09/03 21:17:00 | 000,000,342 | ---- | M] () -- C:\Windows\tasks\At22.job
[2011/09/03 21:09:18 | 000,000,880 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2011/09/03 21:05:32 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/09/03 21:05:31 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/09/03 21:05:27 | 000,065,536 | ---- | M] () -- C:\Windows\SysNative\Ikeext.etl
[2011/09/03 21:05:25 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/09/03 21:05:17 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/09/03 21:04:19 | 000,001,460 | ---- | M] () -- C:\Users\ALPIMAS\AppData\Local\d3d9caps64.dat
[2011/09/03 20:49:31 | 000,283,000 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/09/03 20:36:03 | 002,524,022 | ---- | M] (Swearware) -- C:\Users\ALPIMAS\ComboFix.exe
[2011/09/03 20:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At93.job
[2011/09/03 20:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At69.job
[2011/09/03 20:17:00 | 000,000,342 | ---- | M] () -- C:\Windows\tasks\At21.job
[2011/09/02 20:00:00 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\At45.job
[2011/09/02 19:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At92.job
[2011/09/02 19:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At68.job
[2011/09/02 19:17:00 | 000,000,342 | ---- | M] () -- C:\Windows\tasks\At20.job
[2011/09/02 19:00:00 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\At44.job
[2011/09/02 18:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At91.job
[2011/09/02 18:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At67.job
[2011/09/02 18:17:00 | 000,000,342 | ---- | M] () -- C:\Windows\tasks\At19.job
[2011/09/02 18:00:00 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\At43.job
[2011/09/02 17:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At90.job
[2011/09/02 17:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At66.job
[2011/09/02 17:17:00 | 000,000,342 | ---- | M] () -- C:\Windows\tasks\At18.job
[2011/09/02 17:00:00 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\At42.job
[2011/09/02 16:31:45 | 000,703,388 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/09/02 16:31:45 | 000,604,502 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/09/02 16:31:45 | 000,104,170 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/08/26 11:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At84.job
[2011/08/26 11:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At60.job
[2011/08/26 11:17:00 | 000,000,342 | ---- | M] () -- C:\Windows\tasks\At12.job
[2011/08/26 11:00:00 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\At36.job
[2011/08/26 10:31:15 | 000,000,342 | ---- | M] () -- C:\Windows\tasks\At11.job
[2011/08/26 10:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At83.job
[2011/08/26 10:17:00 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\At59.job
[2011/08/25 23:00:00 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\At48.job
[2011/08/25 22:26:39 | 003,654,276 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC04648.JPG
[2011/08/25 22:26:32 | 003,681,259 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC04604.JPG
[2011/08/25 22:26:27 | 001,466,942 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC04595.JPG
[2011/08/25 22:26:18 | 001,468,710 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC04354.JPG
[2011/08/25 22:24:37 | 003,706,199 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC04054.JPG
[2011/08/25 22:24:31 | 001,471,513 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC04034.JPG
[2011/08/25 22:13:51 | 004,033,566 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC00596.JPG
[2011/08/25 22:13:43 | 002,297,734 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC05470.JPG
[2011/08/25 22:13:29 | 003,782,800 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC05401.JPG
[2011/08/25 22:13:22 | 003,019,984 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC05388.JPG
[2011/08/25 22:13:05 | 003,814,192 | ---- | M] () -- C:\Users\ALPIMAS\Documents\DSC05371.JPG
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/09/03 22:34:38 | 000,000,914 | ---- | C] () -- C:\Users\ALPIMAS\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/09/03 22:34:38 | 000,000,902 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011/09/03 22:34:38 | 000,000,890 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/09/03 21:08:23 | 000,000,396 | -H-- | C] () -- C:\Windows\tasks\User_Feed_Synchronization-{50259614-8A82-411D-B81F-3D9A1A7D58C1}.job
[2010/09/26 12:42:20 | 000,000,000 | ---- | C] () -- C:\Windows\EEventManager .INI
[2010/09/25 14:46:42 | 000,000,112 | ---- | C] () -- C:\ProgramData\Jy8atcgh5.dat
[2010/09/15 19:50:23 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010/08/14 18:03:45 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010/06/28 00:25:42 | 000,000,000 | ---- | C] () -- C:\Windows\EEventManager.INI
[2009/10/16 16:44:33 | 000,001,460 | ---- | C] () -- C:\Users\ALPIMAS\AppData\Local\d3d9caps64.dat
[2009/09/28 15:44:33 | 000,000,109 | ---- | C] () -- C:\Windows\TmProxy.ini
[2009/06/20 12:26:37 | 000,024,226 | ---- | C] () -- C:\Users\ALPIMAS\AppData\Roaming\UserTile.png
[2009/04/07 17:28:47 | 000,000,552 | ---- | C] () -- C:\Users\ALPIMAS\AppData\Local\d3d8caps.dat
[2009/01/21 00:00:03 | 000,005,962 | ---- | C] () -- C:\Users\ALPIMAS\AppData\Roaming\wklnhst.dat
[2009/01/20 23:35:55 | 000,027,136 | ---- | C] () -- C:\Users\ALPIMAS\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/01/20 13:12:11 | 000,006,756 | ---- | C] () -- C:\Users\ALPIMAS\AppData\Local\d3d9caps.dat
[2009/01/19 23:13:41 | 000,073,220 | ---- | C] () -- C:\Windows\SysWow64\EPPICPrinterDB.dat
[2009/01/19 23:13:41 | 000,031,053 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern131.dat
[2009/01/19 23:13:41 | 000,029,114 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern1.dat
[2009/01/19 23:13:41 | 000,027,417 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern121.dat
[2009/01/19 23:13:41 | 000,021,021 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern3.dat
[2009/01/19 23:13:41 | 000,015,670 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern5.dat
[2009/01/19 23:13:41 | 000,013,280 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern2.dat
[2009/01/19 23:13:41 | 000,010,673 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern4.dat
[2009/01/19 23:13:41 | 000,004,943 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern6.dat
[2009/01/19 23:13:41 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_PT.dat
[2009/01/19 23:13:41 | 000,001,140 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_BP.dat
[2009/01/19 23:13:41 | 000,001,137 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_ES.dat
[2009/01/19 23:13:41 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_FR.dat
[2009/01/19 23:13:41 | 000,001,130 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_CF.dat
[2009/01/19 23:13:41 | 000,001,104 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_EN.dat
[2009/01/19 23:13:41 | 000,000,097 | ---- | C] () -- C:\Windows\SysWow64\PICSDK.ini
[2009/01/19 23:10:31 | 000,000,079 | ---- | C] () -- C:\Windows\EPWF600.ini
[2008/12/30 07:09:38 | 000,106,605 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchema.bin
[2008/12/30 07:09:38 | 000,018,904 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchemaTrivial.bin
[2008/12/30 06:42:45 | 002,026,604 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2008/12/30 06:42:45 | 000,445,796 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2008/12/30 06:42:45 | 000,147,172 | ---- | C] () -- C:\Windows\SysWow64\igfcg550.bin
[2008/12/30 05:51:20 | 000,000,075 | RHS- | C] () -- C:\Windows\CT4CET.bin
[2008/09/05 19:16:36 | 000,233,216 | ---- | C] () -- C:\Windows\SysWow64\FACrashRpt.dll
[2008/09/05 19:16:36 | 000,059,136 | ---- | C] () -- C:\Windows\SysWow64\FAib.dll
[2008/09/05 19:16:20 | 000,087,296 | ---- | C] () -- C:\Windows\SysWow64\FAIEExtension.dll
[2008/07/07 16:42:52 | 000,028,680 | ---- | C] () -- C:\Windows\SysWow64\drivers\swmsflt.sys
[2008/01/20 22:50:05 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2008/01/20 22:49:49 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2006/11/02 11:37:05 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 08:37:14 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2006/11/02 08:24:17 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2006/11/02 08:18:17 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2006/11/02 05:47:54 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
========== Files - Unicode (All) ==========
[2010/09/21 18:42:59 | 000,025,470 | ---- | M] ()(C:\Users\ALPIMAS\Documents\Hmph ?.txt) -- C:\Users\ALPIMAS\Documents\Hmph ♥.txt
[2010/09/21 18:42:58 | 000,025,470 | ---- | C] ()(C:\Users\ALPIMAS\Documents\Hmph ?.txt) -- C:\Users\ALPIMAS\Documents\Hmph ♥.txt
========== Alternate Data Streams ==========
@Alternate Data Stream - 560962 bytes -> C:\Windows\Temp:temp
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:DFC5A2B2
< End of report >