Here are the results of Securty Check and OTL:
Results of screen317's Security Check version 0.99.10
Windows XP Service Pack 3
Internet Explorer 8
``````````````````````````````
Antivirus/Firewall Check:
Windows Security Center service is not running! This report may not be accurate!
AVG 2011
AVG PC Tuneup 2011
AVG 2011
ESET Online Scanner v3
```````````````````````````````
Anti-malware/Other Utilities Check:
Malwarebytes' Anti-Malware
AVG PC Tuneup 2011
Java 6 Update 24
Adobe Flash Player 9.0.289.0
Adobe Atmosphere Player for Acrobat and Adobe Reader
Adobe Reader 9
Out of date Adobe Reader installed!
Mozilla Firefox (x86 en-GB..)
````````````````````````````````
Process Check:
objlist.exe by Laurent
AVG avgwdsvc.exe
AVG avgtray.exe
AVG avgrsx.exe
AVG avgnsx.exe
AVG avgemc.exe
``````````End of Log````````````
OTL logfile created on: 4/11/2011 7:19:36 PM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Heather\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 79.00% Memory free
3.00 Gb Paging File | 3.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.47 Gb Total Space | 33.80 Gb Free Space | 45.38% Space Free | Partition Type: NTFS
Computer Name: SAM | User Name: Heather | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/04/11 18:59:07 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Heather\Desktop\OTL.exe
PRC - [2011/01/10 10:24:20 | 000,993,848 | ---- | M] (Secunia) -- C:\Program Files\Secunia\PSI\psia.exe
PRC - [2011/01/10 10:24:20 | 000,399,416 | ---- | M] (Secunia) -- C:\Program Files\Secunia\PSI\sua.exe
PRC - [2011/01/10 10:24:20 | 000,291,896 | ---- | M] (Secunia) -- C:\Program Files\Secunia\PSI\psi_tray.exe
PRC - [2011/01/07 01:22:54 | 002,747,744 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgtray.exe
PRC - [2011/01/07 01:22:44 | 001,084,256 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgnsx.exe
PRC - [2011/01/07 01:22:12 | 001,052,512 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgemcx.exe
PRC - [2011/01/06 15:23:20 | 000,737,872 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2011/01/06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2010/12/05 16:26:40 | 000,654,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgrsx.exe
PRC - [2010/12/05 16:26:12 | 000,650,592 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgchsvx.exe
PRC - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgwdsvc.exe
PRC - [2010/10/22 04:56:58 | 000,845,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgcsrvx.exe
PRC - [2010/10/22 04:56:48 | 000,745,824 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgam.exe
PRC - [2010/04/09 00:53:33 | 000,149,904 | ---- | M] (Microsoft ® Corporation) -- C:\Program Files\Microsoft Forefront UAG\Endpoint Components\3.1.0\uagqecsvc.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/09/10 15:12:44 | 000,069,632 | ---- | M] (Software 2000 Limited) -- C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\HP1006MC.EXE
PRC - [2006/07/25 02:01:00 | 000,114,688 | ---- | M] (Sonic Solutions) -- C:\Program Files\Common Files\Sonic Shared\CineTray.exe
PRC - [2003/10/14 23:55:48 | 000,026,112 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Real\RealPlayer\realplay.exe
PRC - [2001/11/27 09:10:00 | 000,106,560 | ---- | M] (WinZip Computing, Inc.) -- C:\Program Files\WinZip\WZQKPICK.EXE
========== Modules (SafeList) ==========
MOD - [2011/04/11 18:59:07 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Heather\Desktop\OTL.exe
MOD - [2010/08/23 12:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- -- (DMService)
SRV - File not found [Disabled | Stopped] -- -- (AppMgmt)
SRV - [2011/01/10 10:24:20 | 000,993,848 | ---- | M] (Secunia) [Auto | Running] -- C:\Program Files\Secunia\PSI\PSIA.exe -- (Secunia PSI Agent)
SRV - [2011/01/10 10:24:20 | 000,399,416 | ---- | M] (Secunia) [Auto | Running] -- C:\Program Files\Secunia\PSI\sua.exe -- (Secunia Update Agent)
SRV - [2011/01/06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2010/10/22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010/09/01 15:52:56 | 000,066,112 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus®
SRV - [2010/04/09 00:53:33 | 000,149,904 | ---- | M] (Microsoft ® Corporation) [Auto | Running] -- C:\Program Files\Microsoft Forefront UAG\Endpoint Components\3.1.0\uagqecsvc.exe -- (uagqecsvc)
SRV - [2008/12/01 11:59:52 | 000,033,752 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_HelperSvc.exe -- (getPlus® Helper) getPlus®
SRV - [2007/03/07 15:47:46 | 000,076,848 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\DellSupport\brkrsvc.exe -- (DSBrokerService)
SRV - [2003/03/03 14:33:40 | 000,143,360 | ---- | M] (Intel® Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\NCS\Sync\NetSvc.exe -- (NetSvc)
========== Driver Services (SafeList) ==========
DRV - [2010/12/08 04:12:38 | 000,251,728 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\avgldx86.sys -- (Avgldx86)
DRV - [2010/11/12 13:19:38 | 000,299,984 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\avgtdix.sys -- (Avgtdix)
DRV - [2010/09/13 15:27:24 | 000,025,680 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2010/09/07 03:48:56 | 000,034,384 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\avgmfx86.sys -- (Avgmfx86)
DRV - [2010/09/07 03:48:50 | 000,026,064 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2010/09/01 04:30:58 | 000,015,544 | ---- | M] (Secunia) [File_System | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\psi_mf.sys -- (PSI)
DRV - [2010/08/03 15:23:36 | 000,026,192 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2010/08/03 15:23:34 | 000,123,472 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2010/08/03 15:23:32 | 000,030,288 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2009/08/05 23:48:42 | 000,054,752 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\fssfltr_tdi.sys -- (fssfltr)
DRV - [2007/02/25 12:10:48 | 000,005,376 | --S- | M] (Gteko Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\dsunidrv.sys -- (dsunidrv)
DRV - [2006/10/05 16:07:28 | 000,004,736 | ---- | M] (Gteko Ltd.) [Kernel | On_Demand | Stopped] -- C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys -- (DSproct)
DRV - [2006/10/04 22:42:42 | 000,002,560 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\cdralw2k.sys -- (Cdralw2k)
DRV - [2006/10/04 22:42:42 | 000,002,432 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\cdr4_xp.sys -- (Cdr4_xp)
DRV - [2005/07/13 12:08:20 | 000,033,890 | ---- | M] (Service & Quality Technology.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\Capt905c.sys -- (SQTECH905C)
DRV - [2004/08/04 01:29:49 | 000,019,455 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\wvchntxx.sys -- (iAimFP4)
DRV - [2004/08/04 01:29:47 | 000,012,063 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\wsiintxx.sys -- (iAimFP3)
DRV - [2004/08/04 01:29:45 | 000,023,615 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\wch7xxnt.sys -- (iAimTV4)
DRV - [2004/08/04 01:29:43 | 000,033,599 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\watv04nt.sys -- (iAimTV3)
DRV - [2004/08/04 01:29:42 | 000,019,551 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\watv02nt.sys -- (iAimTV1)
DRV - [2004/08/04 01:29:41 | 000,029,311 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\watv01nt.sys -- (iAimTV0)
DRV - [2004/08/04 01:29:37 | 000,012,415 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\wadv01nt.sys -- (iAimFP0)
DRV - [2004/08/04 01:29:37 | 000,012,127 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\wadv02nt.sys -- (iAimFP1)
DRV - [2004/08/04 01:29:37 | 000,011,775 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\wadv05nt.sys -- (iAimFP2)
DRV - [2004/08/04 01:29:36 | 000,161,020 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\i81xnt5.sys -- (i81x)
DRV - [2004/06/28 11:08:56 | 000,042,752 | ---- | M] (Prolific Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\ser2pl.sys -- (Ser2pl)
DRV - [2003/10/26 22:49:15 | 000,233,856 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\cdudf_xp.sys -- (cdudf_XP)
DRV - [2003/10/26 22:49:15 | 000,206,080 | ---- | M] (Roxio) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys -- (UdfReadr_xp)
DRV - [2003/10/26 22:49:15 | 000,103,206 | ---- | M] (Roxio) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\Pwd_2k.sys -- (Pwd_2k)
DRV - [2003/10/26 22:49:15 | 000,024,918 | ---- | M] (Roxio) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\mmc_2k.sys -- (mmc_2K)
DRV - [2003/10/26 22:49:15 | 000,024,118 | ---- | M] (Roxio) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\dvd_2k.sys -- (dvd_2K)
DRV - [2003/10/14 23:55:51 | 000,008,552 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\asctrm.sys -- (ASCTRM)
DRV - [2002/11/08 14:45:06 | 000,017,217 | ---- | M] (Dell Computer Corporation) [Kernel | System | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\omci.sys -- (omci)
DRV - [2001/08/17 13:11:06 | 000,066,591 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SYSTEM32\DRIVERS\EL90XBC5.SYS -- (EL90XBC)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dellnet.com
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page =
http://www.dellnet.com
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.dellnet.com
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dellnet.com
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page =
http://www.dellnet.com
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.dellnet.com
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dellnet.com
IE - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.com
IE - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.ca/
IE - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Firefox\extensions\\{E03760F7-937E-4127-BF9D-45E3B9DBA4D3}: C:\Documents and Settings\Heather\Local Settings\Application Data\{E03760F7-937E-4127-BF9D-45E3B9DBA4D3}\ [2011/04/03 17:13:35 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG10\Firefox4\ [2011/04/04 17:04:53 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/04/04 21:51:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/04/04 21:51:43 | 000,000,000 | ---D | M]
[2010/09/11 08:42:39 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Heather\Application Data\Mozilla\Extensions
[2011/04/05 20:51:20 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Heather\Application Data\Mozilla\Firefox\Profiles\default.4hy\extensions
[2010/09/12 15:25:01 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Heather\Application Data\Mozilla\Firefox\Profiles\default.4hy\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2004/09/08 20:44:15 | 000,000,000 | ---D | M] (DOM Inspector) -- C:\Documents and Settings\Heather\Application Data\Mozilla\Firefox\Profiles\default.4hy\extensions\{641d8d09-7dda-4850-8228-ac0ab65e2ac9}
[2004/09/08 20:44:15 | 000,000,000 | ---D | M] (Firefox (default)) -- C:\Documents and Settings\Heather\Application Data\Mozilla\Firefox\Profiles\default.4hy\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2011/04/05 20:51:20 | 000,000,000 | ---D | M] (Canadian English Dictionary) -- C:\Documents and Settings\Heather\Application Data\Mozilla\Firefox\Profiles\default.4hy\extensions\en-CA@dictionaries.addons.mozilla.org
[2011/04/10 18:02:45 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2004/09/08 21:10:28 | 000,000,000 | ---D | M] (DOM Inspector) -- C:\Program Files\Mozilla Firefox\extensions\{641d8d09-7dda-4850-8228-ac0ab65e2ac9}
[2010/05/21 20:34:19 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/08/14 10:34:07 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/11/14 13:54:34 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/04/10 18:02:45 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2004/09/08 20:43:57 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\defaults\profile\extensions
[2004/09/08 20:43:57 | 000,000,000 | ---D | M] (DOM Inspector) -- C:\Program Files\Mozilla Firefox\defaults\profile\extensions\{641d8d09-7dda-4850-8228-ac0ab65e2ac9}
[2004/09/08 20:43:57 | 000,000,000 | ---D | M] (Firefox (default)) -- C:\Program Files\Mozilla Firefox\defaults\profile\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2011/03/18 13:57:02 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll
[2004/08/04 14:28:00 | 000,053,349 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\jar50.dll
[2004/08/04 14:29:00 | 000,061,535 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\jsd3250.dll
[2004/08/04 14:28:00 | 000,168,039 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\xpinstal.dll
[2011/04/10 18:02:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2003/11/18 13:37:32 | 000,241,664 | ---- | M] (Musicnotes, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npmusicn.dll
[2004/01/13 22:09:25 | 000,176,176 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll
[2010/01/01 04:00:00 | 000,001,538 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/01/01 04:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\bing.xml
[2010/01/01 04:00:00 | 000,000,947 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2010/01/01 04:00:00 | 000,001,180 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2004/08/04 14:28:00 | 000,001,076 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.gif
[2004/08/04 14:28:00 | 000,000,728 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.src
[2010/01/01 04:00:00 | 000,001,135 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
Hosts file not found
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe (RealNetworks, Inc.)
O4 - HKU\.DEFAULT..\RunOnce: [RunNarrator] C:\WINDOWS\System32\narrator.exe (Microsoft Corporation)
O4 - HKU\S-1-5-18..\RunOnce: [RunNarrator] C:\WINDOWS\System32\narrator.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Secunia PSI Tray.lnk = C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Sonic CinePlayer Quick Launch.lnk = C:\Program Files\Common Files\Sonic Shared\CineTray.exe (Sonic Solutions)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE (WinZip Computing, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\..Trusted Domains: ([]msn in My Computer)
O15 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\..Trusted Domains: microsoft.com ([.update] http in Trusted sites)
O15 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\..Trusted Domains: microsoft.com ([.update] https in Trusted sites)
O15 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\..Trusted Domains: microsoft.com ([update] http in Trusted sites)
O15 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\..Trusted Domains: microsoft.com ([update] https in Trusted sites)
O15 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\..Trusted Domains: microsoft.com ([windowsupdate] http in Trusted sites)
O15 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\..Trusted Domains: microsoft.com ([www.update] http in Trusted sites)
O15 - HKU\S-1-5-21-2964962961-2529405911-1854799536-1007\..Trusted Domains: windowsupdate.com ([download] http in Trusted sites)
O16 - DPF: {11111111-1111-1111-1111-114551263637} mhtml:file://C:NO_SUCH_MHT.MHT!http://www.008k.com/partner/inst/f22776.exe (Reg Error: Key error.)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5}
http://download.eset.com/special/eos/OnlineScanner.cab (OnlineScanner Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {8D9563A9-8D5F-459B-87F2-BA842255CB9A}
https://iportal.sickkids.ca/InternalSite/WhlCompMgr.cab (Forefront UAG endpoint components)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F}
http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37915.6379976852 (Reg Error: Key error.)
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429}
http://www.sibelius.com/download/software/win/ActiveXPlugin.cab (ScorchPlugin Class)
O16 - DPF: {BEA7310D-06C4-4339-A784-DC3804819809}
http://blacks.pnimedia.com/upload/activex/v3_0_0_7/PhotoCenter_ActiveX_Control.cab (Photo Upload Plugin Class)
O16 - DPF: {C49134CC-B5EF-458C-A442-E8DFE7B4645F}
http://www.yoyogames.com/plugins/activex/YoYo.cab (YYGInstantPlay Control)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147}
http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab (Windows Live Hotmail Photo Upload Tool)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Filter\text/html {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - Reg Error: Key error. File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\NavLogon: DllName - C:\WINDOWS\System32\NavLogon.dll - C:\WINDOWS\SYSTEM32\NavLogon.dll ()
O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop Components:0 () - file:///C:/DOCUME~1/Heather/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg
O24 - Desktop Components:1 (My Current Home Page) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Heather\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Heather\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2002/09/03 09:59:58 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{5d5fb156-3604-11dc-9a85-0007e9498087}\Shell - "" = AutoRun
O33 - MountPoints2\{5d5fb156-3604-11dc-9a85-0007e9498087}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{5d5fb156-3604-11dc-9a85-0007e9498087}\Shell\AutoRun\command - "" = E:\LaunchU3.exe
O33 - MountPoints2\{8d9d632a-2d21-11de-9d8c-0007e9498087}\Shell\AutoRun\command - "" = E:\9nwep.bat
O33 - MountPoints2\{8d9d632a-2d21-11de-9d8c-0007e9498087}\Shell\open\Command - "" = E:\9nwep.bat
O33 - MountPoints2\{a14040f2-ee1c-11de-9eec-0007e9498087}\Shell\AutoRun\command - "" = E:\sdvnon.com
O33 - MountPoints2\{a14040f2-ee1c-11de-9eec-0007e9498087}\Shell\open\Command - "" = E:\sdvnon.com
O33 - MountPoints2\{a63ab12d-0780-11e0-9d15-0007e9498087}\Shell - "" = AutoRun
O33 - MountPoints2\{a63ab12d-0780-11e0-9d15-0007e9498087}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{a63ab12d-0780-11e0-9d15-0007e9498087}\Shell\AutoRun\command - "" = E:\interface.exe
O33 - MountPoints2\{bbee548c-3e6e-11df-9faa-0007e9498087}\Shell\AutoRun\command - "" = E:\Autorun.exe /run
O33 - MountPoints2\{bbee548c-3e6e-11df-9faa-0007e9498087}\Shell\Shell00\Command - "" = E:\Autorun.exe /run
O33 - MountPoints2\{bbee548c-3e6e-11df-9faa-0007e9498087}\Shell\Shell01\Command - "" = E:\Autorun.exe /action
O33 - MountPoints2\{bbee548c-3e6e-11df-9faa-0007e9498087}\Shell\Shell02\Command - "" = E:\Autorun.exe /uninstall
O33 - MountPoints2\{c6016604-ec11-11dd-9d0c-0007e9498087}\Shell\AutoRun\command - "" = E:\sdvnon.com
O33 - MountPoints2\{c6016604-ec11-11dd-9d0c-0007e9498087}\Shell\open\Command - "" = E:\sdvnon.com
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - C:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/04/11 18:59:07 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Heather\Desktop\OTL.exe
[2011/04/10 19:46:43 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2011/04/10 18:02:57 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/04/10 16:19:18 | 000,446,464 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Heather\Desktop\TFC.exe
[2011/04/10 15:27:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Heather\Desktop\TDSS
[2011/04/09 07:34:18 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/04/09 07:34:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/04/09 07:34:14 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/04/09 07:30:51 | 007,734,208 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Heather\Desktop\mbam-setup-1.50.1.1100.exe
[2011/04/07 13:02:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple Computer
[2011/04/07 10:54:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Heather\Application Data\AVG
[2011/04/07 10:52:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/04/07 10:51:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AVG PC Tuneup 2011
[2011/04/07 10:42:10 | 007,592,248 | ---- | C] (AVG ) -- C:\Documents and Settings\Heather\Desktop\avg_pct_stf_all_2011_24_c4.exe
[2011/04/05 22:36:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Identities
[2011/04/05 19:41:21 | 000,000,000 | -HSD | C] -- C:\found.000
[2011/04/05 09:59:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Heather\Desktop\explorer
[2011/04/04 21:56:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2011/04/04 21:31:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Heather\Local Settings\Application Data\Secunia PSI
[2011/04/04 21:31:18 | 000,000,000 | ---D | C] -- C:\Program Files\Secunia
[2011/04/04 20:41:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Heather\Forefront UAG Remote Access Agent
[2011/04/04 17:44:19 | 000,000,000 | -H-D | C] -- C:\$AVG
[2011/04/04 17:38:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Macromedia
[2011/04/04 17:38:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2011/04/04 17:29:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Heather\Application Data\AVG10
[2011/04/04 17:10:59 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011/04/04 17:04:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AVG 2011
[2011/04/04 16:50:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011/04/04 16:50:52 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\AVG
[2011/04/04 16:49:33 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2011/04/04 16:43:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/04/03 17:38:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Adobe
[2011/04/03 17:22:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2011/04/03 17:22:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2011/04/03 17:13:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Heather\Local Settings\Application Data\{E03760F7-937E-4127-BF9D-45E3B9DBA4D3}
[2011/03/27 20:35:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Heather\Application Data\.minecraft
[2005/09/05 01:12:42 | 000,369,896 | ---- | C] (Microsoft Corporation) -- C:\Program Files\WindowsXP-KB888240-x86-ENU.exe
[2005/09/05 01:07:44 | 000,491,768 | ---- | C] (Microsoft Corporation) -- C:\Program Files\ie6setup.exe
[2005/09/05 00:20:15 | 007,936,144 | ---- | C] (Microsoft Corporation) -- C:\Program Files\DX81NTeng.exe
[2005/09/04 21:54:37 | 214,235,269 | ---- | C] (Wizet) -- C:\Program Files\MSSetup.exe
[2 C:\Documents and Settings\Heather\My Documents\*.tmp files -> C:\Documents and Settings\Heather\My Documents\*.tmp -> ]
[1 C:\Documents and Settings\Heather\Desktop\*.tmp files -> C:\Documents and Settings\Heather\Desktop\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/04/11 18:59:07 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Heather\Desktop\OTL.exe
[2011/04/11 18:58:49 | 000,879,081 | ---- | M] () -- C:\Documents and Settings\Heather\Desktop\SecurityCheck.exe
[2011/04/11 18:06:25 | 112,156,645 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/04/11 18:02:22 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2011/04/11 18:02:21 | 000,000,318 | -HS- | M] () -- C:\WINDOWS\tasks\coitmfmbq.job
[2011/04/11 18:02:21 | 000,000,312 | -HS- | M] () -- C:\WINDOWS\tasks\fkuuwczd.job
[2011/04/11 18:02:21 | 000,000,308 | -HS- | M] () -- C:\WINDOWS\tasks\JVHWPM.job
[2011/04/11 18:02:17 | 000,002,048 | --S- | M] () -- C:\WINDOWS\BOOTSTAT.DAT
[2011/04/11 18:02:16 | 2683,375,616 | -HS- | M] () -- C:\hiberfil.sys
[2011/04/10 22:16:42 | 008,388,608 | -H-- | M] () -- C:\Documents and Settings\Heather\NTUSER.DAT
[2011/04/10 22:16:42 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Heather\NTUSER.INI
[2011/04/10 17:07:51 | 000,194,366 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\iavichjg.avm
[2011/04/10 16:19:18 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Heather\Desktop\TFC.exe
[2011/04/10 15:57:42 | 000,003,165 | ---- | M] () -- C:\Documents and Settings\Heather\Desktop\Attach_2.zip
[2011/04/10 15:27:43 | 001,377,112 | ---- | M] (Kaspersky Lab ZAO) -- C:\Documents and Settings\Heather\Desktop\TDSSKiller.exe
[2011/04/10 15:26:32 | 001,263,721 | ---- | M] () -- C:\Documents and Settings\Heather\Desktop\tdsskiller.zip
[2011/04/10 14:56:49 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/04/10 13:47:46 | 000,003,112 | ---- | M] () -- C:\Documents and Settings\Heather\Desktop\Attach.zip
[2011/04/10 13:22:25 | 000,293,019 | ---- | M] () -- C:\Documents and Settings\Heather\Desktop\gmer.zip
[2011/04/10 13:21:53 | 000,050,477 | ---- | M] () -- C:\Documents and Settings\Heather\Desktop\Defogger.exe
[2011/04/10 13:21:30 | 000,625,664 | ---- | M] () -- C:\Documents and Settings\Heather\Desktop\dds.scr
[2011/04/10 11:28:18 | 000,001,170 | ---- | M] () -- C:\WINDOWS\System32\WPA.DBL
[2011/04/09 07:34:18 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/04/09 07:30:52 | 007,734,208 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Heather\Desktop\mbam-setup-1.50.1.1100.exe
[2011/04/07 10:51:57 | 000,000,830 | ---- | M] () -- C:\Documents and Settings\Heather\Desktop\AVG PC Tuneup 2011.lnk
[2011/04/07 10:42:15 | 007,592,248 | ---- | M] (AVG ) -- C:\Documents and Settings\Heather\Desktop\avg_pct_stf_all_2011_24_c4.exe
[2011/04/05 22:18:11 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\Heather\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/04/04 21:45:33 | 000,000,753 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
[2011/04/04 16:36:05 | 000,000,742 | ---- | M] () -- C:\Documents and Settings\Heather\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/04/04 16:34:21 | 000,011,696 | -HS- | M] () -- C:\Documents and Settings\Heather\Local Settings\Application Data\08a4u2o670p0ms3ur18g20l873t74n
[2011/04/04 16:34:21 | 000,011,696 | -HS- | M] () -- C:\Documents and Settings\All Users\Application Data\08a4u2o670p0ms3ur18g20l873t74n
[2011/04/03 17:13:38 | 000,000,120 | ---- | M] () -- C:\WINDOWS\Okabuyiwogilime.dat
[2011/04/03 17:13:38 | 000,000,000 | ---- | M] () -- C:\WINDOWS\Ucifu.bin
[2011/04/03 17:12:11 | 000,091,136 | RHS- | M] () -- C:\WINDOWS\System32\WOWFAXUIJ.dll
[2011/03/23 22:50:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/03/19 21:08:22 | 000,441,456 | ---- | M] () -- C:\WINDOWS\System32\PERFH009.DAT
[2011/03/19 21:08:22 | 000,071,408 | ---- | M] () -- C:\WINDOWS\System32\PERFC009.DAT
[2011/03/19 21:08:21 | 000,521,766 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2011/03/19 20:56:06 | 000,000,780 | ---- | M] () -- C:\WINDOWS\orun32.ini
[2011/03/13 23:42:28 | 000,002,048 | ---- | M] () -- C:\WINDOWS\System32\win32xm1.TXI
[2011/03/13 21:10:32 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011/03/13 21:10:19 | 000,000,206 | ---- | M] () -- C:\WINDOWS\System32\MRT.INI
[2 C:\Documents and Settings\Heather\My Documents\*.tmp files -> C:\Documents and Settings\Heather\My Documents\*.tmp -> ]
[1 C:\Documents and Settings\Heather\Desktop\*.tmp files -> C:\Documents and Settings\Heather\Desktop\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/04/11 18:58:48 | 000,879,081 | ---- | C] () -- C:\Documents and Settings\Heather\Desktop\SecurityCheck.exe
[2011/04/11 18:06:25 | 112,156,645 | ---- | C] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/04/10 17:07:51 | 000,194,366 | ---- | C] () -- C:\WINDOWS\System32\drivers\AVG\iavichjg.avm
[2011/04/10 15:57:42 | 000,003,165 | ---- | C] () -- C:\Documents and Settings\Heather\Desktop\Attach_2.zip
[2011/04/10 15:26:31 | 001,263,721 | ---- | C] () -- C:\Documents and Settings\Heather\Desktop\tdsskiller.zip
[2011/04/10 13:47:46 | 000,003,112 | ---- | C] () -- C:\Documents and Settings\Heather\Desktop\Attach.zip
[2011/04/10 13:22:24 | 000,293,019 | ---- | C] () -- C:\Documents and Settings\Heather\Desktop\gmer.zip
[2011/04/10 13:21:53 | 000,050,477 | ---- | C] () -- C:\Documents and Settings\Heather\Desktop\Defogger.exe
[2011/04/10 13:21:30 | 000,625,664 | ---- | C] () -- C:\Documents and Settings\Heather\Desktop\dds.scr
[2011/04/09 07:34:18 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/04/07 10:51:57 | 000,000,830 | ---- | C] () -- C:\Documents and Settings\Heather\Desktop\AVG PC Tuneup 2011.lnk
[2011/04/04 21:45:33 | 000,000,753 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
[2011/04/04 21:45:32 | 000,000,716 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Secunia PSI.lnk
[2011/04/04 16:36:04 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox
[2011/04/03 17:24:10 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/04/03 17:14:55 | 000,011,696 | -HS- | C] () -- C:\Documents and Settings\Heather\Local Settings\Application Data\08a4u2o670p0ms3ur18g20l873t74n
[2011/04/03 17:14:55 | 000,011,696 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\08a4u2o670p0ms3ur18g20l873t74n
[2011/04/03 17:13:38 | 000,000,120 | ---- | C] () -- C:\WINDOWS\Okabuyiwogilime.dat
[2011/04/03 17:13:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Ucifu.bin
[2011/04/03 17:12:11 | 000,091,136 | RHS- | C] () -- C:\WINDOWS\System32\WOWFAXUIJ.dll
[2011/04/03 17:12:11 | 000,000,318 | -HS- | C] () -- C:\WINDOWS\tasks\coitmfmbq.job
[2011/04/03 17:12:11 | 000,000,312 | -HS- | C] () -- C:\WINDOWS\tasks\fkuuwczd.job
[2011/04/03 17:12:11 | 000,000,308 | -HS- | C] () -- C:\WINDOWS\tasks\JVHWPM.job
[2011/03/13 22:16:28 | 000,002,048 | ---- | C] () -- C:\WINDOWS\System32\win32xm1.TXI
[2011/03/13 21:10:19 | 000,000,206 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2011/01/24 09:26:39 | 000,000,427 | ---- | C] () -- C:\Documents and Settings\Heather\Application Data\com.inm.fusion.PixtorioViewer_state.xml
[2009/12/21 07:38:40 | 000,029,756 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2009/03/08 22:32:21 | 000,000,022 | ---- | C] () -- C:\WINDOWS\iexplore.ini
[2009/01/02 20:57:39 | 000,000,059 | ---- | C] () -- C:\WINDOWS\dcmvwr.INI
[2008/11/18 21:18:07 | 000,000,134 | -H-- | C] () -- C:\Documents and Settings\Heather\Application Data\lakerda1967.sys
[2008/11/18 21:17:31 | 000,010,584 | ---- | C] () -- C:\Documents and Settings\Heather\Application Data\docXConverter (3).ini
[2008/09/07 15:16:50 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\HPPLVS.dll
[2008/02/23 22:08:15 | 000,000,335 | ---- | C] () -- C:\WINDOWS\mozregistry.dat
[2007/11/14 22:22:43 | 000,001,761 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2007/09/23 19:07:21 | 000,000,441 | ---- | C] () -- C:\WINDOWS\SIERRA.INI
[2007/07/26 12:01:50 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\hppatusg01.dll
[2007/04/06 08:13:31 | 000,001,571 | ---- | C] () -- C:\WINDOWS\Faxcpp1.ini
[2007/04/06 08:13:31 | 000,000,422 | ---- | C] () -- C:\WINDOWS\Faxcpp.ini
[2007/04/06 08:13:19 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\Twscan32.dll
[2007/04/06 08:13:18 | 000,241,664 | ---- | C] () -- C:\WINDOWS\System32\Image32.dll
[2007/04/06 08:13:18 | 000,122,880 | ---- | C] () -- C:\WINDOWS\System32\Png32.dll
[2007/04/06 08:13:18 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\Jpeg32.dll
[2007/04/06 08:13:18 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\Tga32.dll
[2007/04/06 08:13:18 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\Pcx32.dll
[2007/02/25 17:05:48 | 000,037,027 | ---- | C] () -- C:\WINDOWS\atmoUn.exe
[2006/01/27 15:52:41 | 000,046,345 | ---- | C] () -- C:\WINDOWS\NSSetDefaultBrowser.EXE
[2006/01/01 11:51:20 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ka.ini
[2005/09/05 16:12:38 | 000,000,271 | ---- | C] () -- C:\WINDOWS\ePrint@JapanCamera.INI
[2005/08/31 11:43:32 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\resourceGeneric.dll
[2005/08/30 15:43:32 | 000,000,098 | ---- | C] () -- C:\WINDOWS\7thlevel.ini
[2005/07/10 08:25:03 | 000,000,019 | ---- | C] () -- C:\WINDOWS\popcinfo.dat
[2005/01/02 22:54:03 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OpPrintServer.INI
[2005/01/02 22:42:35 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2005/01/02 22:41:27 | 000,000,021 | ---- | C] () -- C:\WINDOWS\CS_setup.ini
[2004/11/20 09:34:01 | 000,000,796 | ---- | C] () -- C:\WINDOWS\disney.ini
[2004/10/13 02:05:27 | 000,036,488 | ---- | C] () -- C:\Documents and Settings\Heather\Application Data\GDIPFONTCACHEV1.DAT
[2004/10/09 08:56:25 | 000,000,198 | ---- | C] () -- C:\WINDOWS\ACTIVITY.INI
[2004/09/24 20:46:36 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/09/08 20:44:09 | 000,110,717 | ---- | C] () -- C:\WINDOWS\UninstallFirefox.exe
[2004/04/15 19:55:21 | 000,000,494 | ---- | C] () -- C:\WINDOWS\EReg077.dat
[2004/04/15 19:54:52 | 000,000,084 | ---- | C] () -- C:\WINDOWS\TLCAPPS.INI
[2004/04/14 00:19:30 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll
[2004/04/13 14:43:17 | 000,001,228 | ---- | C] () -- C:\WINDOWS\hegames.ini
[2004/04/01 20:06:45 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SETUP32.INI
[2004/03/28 11:53:35 | 000,000,013 | ---- | C] () -- C:\WINDOWS\isncfg.dat
[2004/02/23 09:51:43 | 000,000,061 | ---- | C] () -- C:\WINDOWS\Prism3.INI
[2004/02/06 18:54:48 | 000,095,440 | ---- | C] () -- C:\WINDOWS\NSUninst.exe
[2004/02/06 18:54:16 | 000,014,045 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2004/02/04 09:06:05 | 000,000,130 | ---- | C] () -- C:\Documents and Settings\Heather\Local Settings\Application Data\fusioncache.dat
[2003/11/22 22:23:07 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat
[2003/11/22 22:15:56 | 000,149,504 | ---- | C] () -- C:\WINDOWS\UNWISE.EXE
[2003/11/06 06:54:39 | 000,008,996 | ---- | C] () -- C:\WINDOWS\cdPlayer.ini
[2003/11/02 09:45:38 | 000,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2003/10/26 22:48:37 | 000,000,422 | ---- | C] () -- C:\WINDOWS\videoimp.ini
[2003/10/23 00:14:03 | 000,000,193 | ---- | C] () -- C:\WINDOWS\brqikmon.ini
[2003/10/21 21:42:58 | 000,386,048 | ---- | C] () -- C:\WINDOWS\System32\qdvd.dll
[2003/10/21 21:42:58 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\devenum.dll
[2003/10/21 20:21:22 | 000,278,528 | ---- | C] () -- C:\WINDOWS\System32\dfxg13.dll
[2003/10/21 18:35:26 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2003/10/21 18:25:37 | 000,148,992 | ---- | C] () -- C:\Documents and Settings\Heather\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2003/10/21 18:21:08 | 000,000,410 | ---- | C] () -- C:\WINDOWS\brwmark.ini
[2003/10/21 18:11:43 | 006,393,542 | -H-- | C] () -- C:\Documents and Settings\Heather\Local Settings\Application Data\IconCache.db
[2003/10/21 18:11:43 | 000,036,488 | ---- | C] () -- C:\Documents and Settings\Heather\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2003/10/15 00:00:48 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2003/10/14 23:55:29 | 000,000,335 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2003/10/14 23:53:07 | 000,000,324 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2003/10/14 23:49:38 | 000,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2003/10/14 23:37:36 | 000,002,048 | --S- | C] () -- C:\WINDOWS\BOOTSTAT.DAT
[2003/10/14 23:35:56 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2003/10/14 23:35:34 | 000,521,766 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2003/10/14 23:35:34 | 000,441,456 | ---- | C] () -- C:\WINDOWS\System32\PERFH009.DAT
[2003/10/14 23:35:34 | 000,071,408 | ---- | C] () -- C:\WINDOWS\System32\PERFC009.DAT
[2003/10/14 23:24:14 | 000,000,550 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2003/05/30 09:00:02 | 001,291,776 | ---- | C] () -- C:\WINDOWS\System32\quartz.dll
[2002/12/12 01:14:32 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll
[2002/12/12 01:14:32 | 000,562,176 | ---- | C] () -- C:\WINDOWS\System32\qedit.dll
[2002/12/12 01:14:32 | 000,279,040 | ---- | C] () -- C:\WINDOWS\System32\qdv.dll
[2002/12/12 01:14:32 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\qcap.dll
[2002/12/12 01:14:32 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll
[2002/12/12 01:14:32 | 000,035,328 | ---- | C] () -- C:\WINDOWS\System32\mciqtz32.dll
[2002/12/12 01:14:32 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll
[2002/11/26 14:15:52 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll
[2002/11/26 14:15:50 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll
[2002/09/03 10:05:08 | 000,161,136 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2002/09/03 09:59:58 | 000,000,661 | ---- | C] () -- C:\WINDOWS\WIN.INI
[2002/09/03 09:59:58 | 000,000,000 | ---- | C] () -- C:\WINDOWS\CONTROL.INI
[2002/09/03 09:59:14 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2002/09/03 09:57:54 | 000,000,488 | ---- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2002/09/03 09:57:44 | 000,000,749 | ---- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2002/09/03 09:56:30 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2002/09/03 09:56:20 | 000,000,037 | ---- | C] () -- C:\WINDOWS\VBADDIN.INI
[2002/09/03 09:56:20 | 000,000,036 | ---- | C] () -- C:\WINDOWS\VB.INI
[2002/09/03 09:50:58 | 000,000,231 | ---- | C] () -- C:\WINDOWS\SYSTEM.INI
[2002/09/03 09:31:46 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2002/09/03 09:31:44 | 000,004,594 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2002/08/29 08:14:40 | 000,095,744 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll
[2002/08/29 06:00:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\ESENTPRF.INI
[2002/08/29 06:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\MLANG.DAT
[2002/08/29 06:00:00 | 000,498,742 | ---- | C] () -- C:\WINDOWS\System32\dxmasf.dll
[2002/08/29 06:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\PERFI009.DAT
[2002/08/29 06:00:00 | 000,252,928 | ---- | C] () -- C:\WINDOWS\System32\compatui.dll
[2002/08/29 06:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\DSSEC.DAT
[2002/08/29 06:00:00 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\IR32_32.DLL
[2002/08/29 06:00:00 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\PAQSP.DLL
[2002/08/29 06:00:00 | 000,069,886 | ---- | C] () -- C:\WINDOWS\System32\EDIT.COM
[2002/08/29 06:00:00 | 000,055,296 | ---- | C] () -- C:\WINDOWS\System32\DVDPLAY.EXE
[2002/08/29 06:00:00 | 000,053,840 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe
[2002/08/29 06:00:00 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini
[2002/08/29 06:00:00 | 000,050,620 | ---- | C] () -- C:\WINDOWS\System32\COMMAND.COM
[2002/08/29 06:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\MIB.BIN
[2002/08/29 06:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\KEY01.SYS
[2002/08/29 06:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\KEYBOARD.SYS
[2002/08/29 06:00:00 | 000,039,274 | ---- | C] () -- C:\WINDOWS\System32\MEM.EXE
[2002/08/29 06:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys
[2002/08/29 06:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys
[2002/08/29 06:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys
[2002/08/29 06:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys
[2002/08/29 06:00:00 | 000,033,840 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys
[2002/08/29 06:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\NTDOS411.SYS
[2002/08/29 06:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\NTDOS412.SYS
[2002/08/29 06:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\NTDOS804.SYS
[2002/08/29 06:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\NTDOS404.SYS
[2002/08/29 06:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\PERFD009.DAT
[2002/08/29 06:00:00 | 000,027,866 | ---- | C] () -- C:\WINDOWS\System32\NTDOS.SYS
[2002/08/29 06:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\COUNTRY.SYS
[2002/08/29 06:00:00 | 000,020,634 | ---- | C] () -- C:\WINDOWS\System32\DEBUG.EXE
[2002/08/29 06:00:00 | 000,019,694 | ---- | C] () -- C:\WINDOWS\System32\GRAPHICS.COM
[2002/08/29 06:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\TSD32.DLL
[2002/08/29 06:00:00 | 000,014,710 | ---- | C] () -- C:\WINDOWS\System32\KB16.COM
[2002/08/29 06:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\WIN87EM.DLL
[2002/08/29 06:00:00 | 000,013,223 | ---- | C] () -- C:\WINDOWS\System32\TSLABELS.INI
[2002/08/29 06:00:00 | 000,012,642 | ---- | C] () -- C:\WINDOWS\System32\EDLIN.EXE
[2002/08/29 06:00:00 | 000,012,498 | ---- | C] () -- C:\WINDOWS\System32\APPEND.EXE
[2002/08/29 06:00:00 | 000,012,082 | ---- | C] () -- C:\WINDOWS\System32\RSVP.INI
[2002/08/29 06:00:00 | 000,011,753 | ---- | C] () -- C:\WINDOWS\System32\SETVER.EXE
[2002/08/29 06:00:00 | 000,009,029 | ---- | C] () -- C:\WINDOWS\System32\ANSI.SYS
[2002/08/29 06:00:00 | 000,008,424 | ---- | C] () -- C:\WINDOWS\System32\EXE2BIN.EXE
[2002/08/29 06:00:00 | 000,007,052 | ---- | C] () -- C:\WINDOWS\System32\NLSFUNC.EXE
[2002/08/29 06:00:00 | 000,006,877 | ---- | C] () -- C:\WINDOWS\System32\PSCHDPRF.INI
[2002/08/29 06:00:00 | 000,004,768 | ---- | C] () -- C:\WINDOWS\System32\HIMEM.SYS
[2002/08/29 06:00:00 | 000,004,126 | ---- | C] () -- C:\WINDOWS\System32\msdxmlc.dll
[2002/08/29 06:00:00 | 000,003,458 | ---- | C] () -- C:\WINDOWS\System32\RASCTRS.INI
[2002/08/29 06:00:00 | 000,003,338 | ---- | C] () -- C:\WINDOWS\System32\redir.exe
[2002/08/29 06:00:00 | 000,002,891 | ---- | C] () -- C:\WINDOWS\System32\PERFCI.INI
[2002/08/29 06:00:00 | 000,002,732 | ---- | C] () -- C:\WINDOWS\System32\PERFWCI.INI
[2002/08/29 06:00:00 | 000,001,931 | ---- | C] () -- C:\WINDOWS\System32\MSDTCPRF.INI
[2002/08/29 06:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2002/08/29 06:00:00 | 000,001,405 | ---- | C] () -- C:\WINDOWS\MSDFMAP.INI
[2002/08/29 06:00:00 | 000,001,152 | ---- | C] () -- C:\WINDOWS\System32\PERFFILT.INI
[2002/08/29 06:00:00 | 000,001,131 | ---- | C] () -- C:\WINDOWS\System32\LOADFIX.COM
[2002/08/29 06:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\SHARE.EXE
[2002/08/29 06:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\FASTOPEN.EXE
[2002/08/29 06:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\MSCDEXNT.EXE
[2002/08/29 06:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\NOISE.DAT
[2002/08/29 06:00:00 | 000,000,343 | ---- | C] () -- C:\WINDOWS\System32\PRODSPEC.INI
[2002/03/19 18:30:00 | 000,216,576 | ---- | C] () -- C:\WINDOWS\System32\PowerCalc.exe
[2001/09/24 07:59:00 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\NavLogon.dll
[1980/01/01 01:00:00 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\e100bmsg.dll
========== LOP Check ==========
[2009/01/07 19:04:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\2DBoy
[2011/04/07 11:34:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011/04/04 17:10:59 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011/04/04 16:50:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2009/03/08 22:32:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MumboJumbo
[2010/03/31 18:53:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NexonUS
[2011/04/07 11:31:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2007/02/25 17:05:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2010/10/11 20:48:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\YoYoGames
[2010/10/05 18:06:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2009/12/21 06:50:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/06/21 22:19:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2011/03/27 20:36:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\.minecraft
[2011/04/07 11:19:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\AVG
[2011/04/04 17:29:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\AVG10
[2010/01/28 01:21:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011/01/11 21:16:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\com.inm.fusion.PixtorioViewer.744790F1545733D757EA034B675902690507C2E8.1
[2010/08/22 21:22:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\ElevatedDiagnostics
[2005/03/27 18:03:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\FotoWire
[2009/02/28 18:51:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\GetRightToGo
[2006/11/15 21:42:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\ievd
[2003/11/22 22:03:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\InterTrust
[2003/10/26 09:10:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\Leadertech
[2008/12/06 15:04:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\LEGO Company
[2010/09/11 08:38:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\Netscape
[2007/08/01 18:48:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\Nexon
[2009/10/19 23:23:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Heather\Application Data\Prism
[2011/04/11 18:02:21 | 000,000,318 | -HS- | M] () -- C:\WINDOWS\Tasks\coitmfmbq.job
[2011/04/11 18:02:21 | 000,000,312 | -HS- | M] () -- C:\WINDOWS\Tasks\fkuuwczd.job
[2011/04/11 18:02:21 | 000,000,308 | -HS- | M] () -- C:\WINDOWS\Tasks\JVHWPM.job
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 88 bytes -> C:\Documents and Settings\Heather\My Documents\Image_ja.nrg:SummaryInformation
@Alternate Data Stream - 146 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0B4227B4
< End of report >
OTL Extras logfile created on: 4/11/2011 7:19:36 PM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Heather\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 79.00% Memory free
3.00 Gb Paging File | 3.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.47 Gb Total Space | 33.80 Gb Free Space | 45.38% Space Free | Partition Type: NTFS
Computer Name: SAM | User Name: Heather | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = NetscapeHTML] -- Reg Error: Key error. File not found
[HKEY_USERS\S-1-5-21-2964962961-2529405911-1854799536-1007\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" %*
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 1
"FirewallOverride" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]
"DisableSR" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 4
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Wizet\MapleStory\Patcher.exe" = C:\Program Files\Wizet\MapleStory\Patcher.exe:*:Disabled:Patcher MFC ?? ???? -- ()
"C:\Program Files\Microsoft Games\Age of Mythology\aomx.exe" = C:\Program Files\Microsoft Games\Age of Mythology\aomx.exe:*:Enabled:Age of Mythology - The Titans Expansion -- (Ensemble Studios)
"C:\Program Files\Wizet\MapleStory\MapleStory.exe" = C:\Program Files\Wizet\MapleStory\MapleStory.exe:*:Disabled:MapleStory -- (Wizet)
"C:\Program Files\Real\RealPlayer\realplay.exe" = C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer -- (RealNetworks, Inc.)
"C:\Program Files\Java\jre1.6.0_05\bin\javaw.exe" = C:\Program Files\Java\jre1.6.0_05\bin\javaw.exe:*:Enabled:Java Platform SE binary
"C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\HP1006MC.EXE" = C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\HP1006MC.EXE:*:Enabled:SMLMProxy Module - HP1006MC.EXE -- (Software 2000 Limited)
"C:\Documents and Settings\All Users\Application Data\NexonUS\NGM\NGM.exe" = C:\Documents and Settings\All Users\Application Data\NexonUS\NGM\NGM.exe:*:Enabled:Nexon Game Manager -- (Nexon)
"C:\Documents and Settings\All Users\Application Data\YoYoGames\yoyo61.exe" = C:\Documents and Settings\All Users\Application Data\YoYoGames\yoyo61.exe:*:Enabled:YoYo Games Player -- (YoYo Games Ltd)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{01501EBA-EC35-4F9F-8889-3BE346E5DA13}" = MSXML4 Parser
"{02C85EC5-E864-4847-AF55-42730861004C}" = MrvlUsgTracking
"{04410044-9149-45C6-A806-F2BF9CFCE762}" = Microsoft Encarta Encyclopedia Standard 2004
"{11F1920A-56A2-4642-B6E0-3B31A12C9288}" = Dell Solution Center
"{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}" = Sonic DLA
"{139E303E-1050-497F-98B1-9AE87B15C463}" = Windows Live Family Safety
"{151C555A-A9E7-4A2E-B6D7-165D04A3C956}" = Dell Picture Studio - Dell Image Expert
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{1C1084FD-1A1B-4C54-B88A-B1D79AEF99F2}" = Black's Photo Centre - Windows XP Online Order Wizard
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java 6 Update 24
"{2A5C6AD0-F7B3-40A1-B140-23B085B1B8CE}" = UFile 2008
"{2C464EC1-2B0C-4490-9CAC-D4562DD8377A}" = Soap 3.0 Toolkit
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{43DCF766-6838-4F9A-8C91-D92DA586DFA7}" = Microsoft Windows Journal Viewer
"{451BB54C-8B23-4455-8BDC-14FC7D43E056}" = MSXML4SP2
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{50316C0A-CC2A-460A-9EA5-F486E54AC17D}_is1" = AVG PC Tuneup 2011
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3
"{585D96E5-1A6A-410C-8F5F-F606CA1CCE1C}" = UFile 2010
"{5BF5F9C5-E95B-4AFA-94BE-F2A9CA73B61D}" = Apple Mobile Device Support
"{64116298-93C5-401D-B06C-39D8E3338508}" = DAO
"{68D60342-7686-45C9-B8EB-40EF843D0460}" = Dell Networking Guide
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{7297B0DF-8B81-41A1-B7B9-4C423609EEDE}" = WBC Digital Player
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7902E313-FF0F-4493-ACB1-A8147B78DCD0}" = HPSSupply
"{7C5B4583-7CBF-4289-B195-03B553959DEA}" = VoiceOver Kit
"{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}" = DellSupport
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{83d96ed0-98aa-4515-8ddc-816f3efdd104}" = MyDSC2
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{868291A4-229E-4795-B0B0-E60E87AF53CD}" = Sibelius Scorch (ActiveX Only)
"{8851E12C-0EF9-11D4-A788-009027ABA5D0}" = Easy CD Creator 5 Platinum
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8EA79DBF-D637-448A-89D6-410A087A4493}" = Samsung_MonSetup
"{90280409-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional with FrontPage
"{90D55A3F-1D99-4C94-A77E-46DC14F0BF08}" = Help and Support Customization
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B79DCB0-AAD7-456B-8D07-433C936FA24B}" = DS21Patch
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A29EA741-24F7-4C07-9B2C-06CB6491BE4A}" = Camera Window
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A71D5E81-B967-43DB-93D7-FD31BFB95748}" = MobileMe Control Panel
"{A790BEB1-BCCF-4EC6-807B-5708B36E8A79}" = Intel® PROSet
"{A859FA27-05AF-4295-BF2C-A9D3A5A707EE}" = UFile Updater 2010
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{AAD47011-8518-4608-9656-951DA35B587B}" = iTunes
"{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9
"{AD708DF0-9F04-4CB3-821A-85804A833B4D}" = ArcSoft Camera Suite
"{AFF7E080-1974-45BF-9310-10DE1A1F5ED0}" = Adobe AIR
"{B37C842A-B624-46B8-A727-654E72F1C91A}" = Calculator Powertoy for Windows XP
"{B3AEF776-7FFF-4C50-A402-9119E3849EE0}" = AVG 2011
"{B6797F11-4A7D-45F5-8A20-72E9CCD83538}" = UFile Updater 2009
"{BEAD39CD-901D-4267-8B8B-EAA83CB4B70D}" = Pivot Stickfigure Animator
"{BEF56F2D-56ED-4176-BF72-7B68D4A3B98D}" = Canon PhotoRecord
"{C05E2D43-A05F-4835-A15C-CD0AD1576506}" = PhotoStitch
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C1D76D7A-F3BB-47EA-A746-5B1E2FFC1DF2}" = Canon Utilities ZoomBrowser EX
"{C9967B5A-6E08-4E79-BFBD-BBB07DB0CA04}" = UFile Updater 2008
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{cce405d3-1e1e-4902-a3e2-1ddc405d3b1d}" = NetLibrary Download Manager
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}" = getPlus® for Adobe
"{D36F4DCA-B6D5-403A-B69D-2439D59FC9A7}" = UFile 2009
"{D4576E0D-2295-4B8E-B663-B68086B00EE5}" = Sonic CinePlayer DVD Pack
"{D4936AAF-FFD0-44A1-A7EA-A2DB41CEB5BC}" = iPod for Windows 2005-09-23
"{D4E53304-1F6C-4111-9872-1BCD2CF5B642}" = AVG 2011
"{D521C206-C457-4AE3-A0E0-072D37E2A580}" = OneTouch Software
"{D6C75F0B-3BC1-4FC9-B8C5-3F7E8ED059CA}" = Windows Live Photo Gallery
"{D78653C3-A8FF-415F-92E6-D774E634FF2D}" = Dell ResourceCD
"{DEC511B1-59CB-4F15-AD75-0543034572A5}" = MapleStory
"{E08EC542-BC5F-4F26-BBB9-E426BA007A31}" = OneTouch USB Driver
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F0FC315A-7D1D-444F-BB96-A59B28179626}" = RemoteCapture Task 1.0.1
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"{FAF0DAD8-1EA7-4FEF-80E5-8D8D6EBD5A23}" = RAW Image Task
"{FC4ED75D-916C-4A8C-BB67-3C6F6E06D62B}" = Banctec Service Agreement
"{FE736CA3-5100-7CB2-2FB3-399865F522AC}" = Pixtorio Viewer
"{FF1C31AE-0CDC-40CE-AB85-406F8B70D643}" = Bonjour
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe Acrobat 5.0" = Adobe Acrobat 5.0
"Adobe AIR" = Adobe AIR
"Adobe Atmosphere Player" = Adobe Atmosphere Player for Acrobat and Adobe Reader
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player Plugin
"Adobe Photoshop 7.0" = Adobe Photoshop 7.0
"Adobe Shockwave Player" = Adobe Shockwave Player 11
"Age of Mythology Expansion Pack 1.0" = Age of Mythology Gold
"AVG" = AVG 2011
"BellCanada.MCCInstall" = Sympatico NetAssistant
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"com.inm.fusion.PixtorioViewer.744790F1545733D757EA034B675902690507C2E8.1" = Pixtorio Viewer
"Dell Digital Jukebox Driver" = Dell Digital Jukebox Driver
"DFX for MUSICMATCH" = DFX for MUSICMATCH
"docXConverter3_is1" = docXConverter 3.1.2
"ESET Online Scanner" = ESET Online Scanner v3
"GraphPad Prism 3" = GraphPad Prism 3
"HP LaserJet P1500 series" = HP LaserJet P1500 series
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"iefeatsl" = iefeatsl
"InstallShield_{A29EA741-24F7-4C07-9B2C-06CB6491BE4A}" = Canon Camera Window for ZoomBrowser EX
"InstallShield_{C05E2D43-A05F-4835-A15C-CD0AD1576506}" = Canon Utilities PhotoStitch 3.1
"InstallShield_{D4936AAF-FFD0-44A1-A7EA-A2DB41CEB5BC}" = iPod for Windows 2005-09-23
"InstallShield_{F0FC315A-7D1D-444F-BB96-A59B28179626}" = Canon RemoteCapture Task for ZoomBrowser EX
"InstallShield_{FAF0DAD8-1EA7-4FEF-80E5-8D8D6EBD5A23}" = Canon RAW Image Task for ZoomBrowser EX
"J-Prints Japan Camera Online Photos" = J-Prints Japan Camera Online Photos
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft Forefront UAG endpoint components 3.1.0" = Microsoft Forefront UAG endpoint components v4.0.0
"Mozilla Firefox 4.0 (x86 en-GB)" = Mozilla Firefox 4.0 (x86 en-GB)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA" = NVIDIA Windows 2000/XP Display Drivers
"Picasa 3" = Picasa 3
"PROSet" = Intel® PRO Network Adapters and Drivers
"RealPlayer 6.0" = RealPlayer Basic
"Secunia PSI" = Secunia PSI (2.0.0.3001)
"Shockwave" = Shockwave
"WIC" = Windows Imaging Component
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinZip" = WinZip
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 4/5/2011 10:28:32 PM | Computer Name = SAM | Source = Application Hang | ID = 1002
Description = Hanging application firefox.exe, version 2.0.0.4094, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.
Error - 4/5/2011 10:35:45 PM | Computer Name = SAM | Source = Application Error | ID = 1000
Description = Faulting application svchost.exe, version 5.1.2600.5512, faulting
module icucnv36.dll, version 3.6.0.0, fault address 0x000013df.
Error - 4/6/2011 8:33:57 PM | Computer Name = SAM | Source = Application Error | ID = 1000
Description = Faulting application svchost.exe, version 5.1.2600.5512, faulting
module icucnv36.dll, version 3.6.0.0, fault address 0x000013df.
Error - 4/6/2011 8:39:01 PM | Computer Name = SAM | Source = uagqecsvc | ID = 62
Description = The Microsoft Forefront UAG Quarantine Enforcement Client component
cannot retrieve a list of registered clients from the Network Access Protection
(NAP) Agent. HRESULT value: 0x80070005.
Error - 4/6/2011 8:39:01 PM | Computer Name = SAM | Source = uagqecsvc | ID = 40
Description = The Microsoft Forefront UAG Quarantine Enforcement Client component
cannot detect registration. HRESULT value: 0x80070005.
Error - 4/7/2011 1:05:00 PM | Computer Name = SAM | Source = Bonjour Service | ID = 100
Description = 448: ERROR: read_msg errno 10054 (An existing connection was forcibly
closed by the remote host.)
Error - 4/7/2011 9:06:46 PM | Computer Name = SAM | Source = Application Error | ID = 1000
Description = Faulting application svchost.exe, version 5.1.2600.5512, faulting
module shlwapi.dll, version 6.0.2900.5912, fault address 0x0002c4d1.
Error - 4/7/2011 10:04:57 PM | Computer Name = SAM | Source = Application Error | ID = 1000
Description = Faulting application svchost.exe, version 5.1.2600.5512, faulting
module shlwapi.dll, version 6.0.2900.5912, fault address 0x0002c4d1.
Error - 4/7/2011 10:05:15 PM | Computer Name = SAM | Source = uagqecsvc | ID = 62
Description = The Microsoft Forefront UAG Quarantine Enforcement Client component
cannot retrieve a list of registered clients from the Network Access Protection
(NAP) Agent. HRESULT value: 0x80070005.
Error - 4/7/2011 10:05:15 PM | Computer Name = SAM | Source = uagqecsvc | ID = 40
Description = The Microsoft Forefront UAG Quarantine Enforcement Client component
cannot detect registration. HRESULT value: 0x80070005.
[ System Events ]
Error - 4/10/2011 11:32:56 AM | Computer Name = SAM | Source = Windows Update Agent | ID = 16
Description = Unable to Connect: Windows is unable to connect to the automatic updates
service and therefore cannot download and install updates according to the set
schedule. Windows will continue to try to establish a connection.
Error - 4/10/2011 2:08:58 PM | Computer Name = SAM | Source = atapi | ID = 262153
Description = The device, \Device\Ide\IdePort0, did not respond within the timeout
period.
Error - 4/10/2011 4:19:50 PM | Computer Name = SAM | Source = Service Control Manager | ID = 7031
Description = The Apple Mobile Device service terminated unexpectedly. It has done
this 1 time(s). The following corrective action will be taken in 60000 milliseconds:
Restart the service.
Error - 4/10/2011 4:19:50 PM | Computer Name = SAM | Source = Service Control Manager | ID = 7034
Description = The NVIDIA Driver Helper Service service terminated unexpectedly.
It has done this 1 time(s).
Error - 4/10/2011 4:19:50 PM | Computer Name = SAM | Source = Service Control Manager | ID = 7034
Description = The Bonjour Service service terminated unexpectedly. It has done
this 1 time(s).
Error - 4/10/2011 4:19:51 PM | Computer Name = SAM | Source = Service Control Manager | ID = 7034
Description = The Microsoft Forefront UAG Quarantine Enforcement Client service
terminated unexpectedly. It has done this 1 time(s).
Error - 4/10/2011 4:19:51 PM | Computer Name = SAM | Source = Service Control Manager | ID = 7034
Description = The Secunia PSI Agent service terminated unexpectedly. It has done
this 1 time(s).
Error - 4/10/2011 4:19:51 PM | Computer Name = SAM | Source = Service Control Manager | ID = 7034
Description = The Java Quick Starter service terminated unexpectedly. It has done
this 1 time(s).
Error - 4/10/2011 4:19:51 PM | Computer Name = SAM | Source = Service Control Manager | ID = 7034
Description = The iPod Service service terminated unexpectedly. It has done this
1 time(s).
Error - 4/10/2011 4:19:51 PM | Computer Name = SAM | Source = Service Control Manager | ID = 7034
Description = The Secunia Update Agent service terminated unexpectedly. It has
done this 1 time(s).
< End of report >