These two processes have popped up, I have no idea what they are, so I did a HJT and came here... At the time of writing I have OTL running and scanning.
Here's the HJT log:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:40:39 PM, on 6/8/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Allure\Allure.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\PROGRA~1\DESKTO~1\TLDL.EXE
C:\Program Files\Steam\steam.exe
C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Documents and Settings\-----\Desktop\folders\Lee-Soft Vista-like shtuff\TrueTransparency\TrueTransparency.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ViStart\ViStart.exe
C:\Program Files\ViGlance\ViGlance.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
C:\Program Files\Hotspot Shield\bin\hsswd.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\Documents and Settings\-----\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\-----\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\-----\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\-----\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\Ogahya.exe
C:\Documents and Settings\-----\Desktop\Anti-virus helper\OTL.exe
C:\DOCUME~1\-----\LOCALS~1\Temp\Odl.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Documents and Settings\-----\Desktop\Anti-virus helper\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 217.8.175.41:80
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local>
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files\Hotspot Shield\HssIE\HssIE.dll
O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\Styler\TB\StylerTB.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [DrvIcon] C:\Program Files\Vista Drive Icon\DrvIcon.exe
O4 - HKLM\..\Run: [Allure] "C:\Program Files\Allure\Allure.exe" -H
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\PROGRA~1\Stardock\WINCUS~1\BootSkin\BootSkin.exe" /StartupJobs
O4 - HKLM\..\Run: [Desktop Lock] C:\PROGRA~1\DESKTO~1\TLDL.EXE /Boot
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Michael\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Vidalia] "C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [TrueTransparency] "C:\Documents and Settings\Michael\Desktop\folders\Lee-Soft Vista-like shtuff\TrueTransparency\TrueTransparency.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ViStart] C:\Program Files\ViStart\ViStart.exe
O4 - HKCU\..\Run: [ViGlance] C:\Program Files\ViGlance\ViGlance.exe
O4 - HKCU\..\Run: [YDZ1QVAGOJ] C:\DOCUME~1\Michael\LOCALS~1\Temp\Odl.exe
O4 - HKLM\..\Policies\Explorer\Run: [YNOKZITCHO] C:\WINDOWS\system32\ntmsoprq1.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Save Flash In This Page by Flash Saver - C:\PROGRA~1\FLASHS~1\save.htm
O9 - Extra button: Flash Saver - {09EA1F80-F40A-11D1-B792-444553540001} - C:\PROGRA~1\FLASHS~1\save.htm
O9 - Extra 'Tools' menuitem: Flash Saver - {09EA1F80-F40A-11D1-B792-444553540001} - C:\PROGRA~1\FLASHS~1\save.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Desura Install Service - Desura Pty Ltd - C:\Program Files\Common Files\Desura\desura_service.exe
O23 - Service: FileZilla Server FTP server (FileZilla Server) - FileZilla Project - C:\Program Files\FileZilla Server\FileZilla Server.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Hotspot Shield Monitoring Service (HssWd) - Unknown owner - C:\Program Files\Hotspot Shield\bin\hsswd.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 8928 bytes
Edit: OTL finished...
OTL logfile created on: 6/8/2011 3:29:43 PM - Run 1
OTL by OldTimer - Version 3.2.23.0 Folder = C:\Documents and Settings\-----\Desktop\Anti-virus helper
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1.50 Gb Total Physical Memory | 0.82 Gb Available Physical Memory | 54.41% Memory free
3.35 Gb Paging File | 2.48 Gb Available in Paging File | 73.94% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 186.31 Gb Total Space | 75.11 Gb Free Space | 40.31% Space Free | Partition Type: NTFS
Drive D: | 74.53 Gb Total Space | 55.73 Gb Free Space | 74.77% Space Free | Partition Type: NTFS
Computer Name: EMACHINE | User Name: ----- | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/06/08 15:28:59 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\-----\Desktop\Anti-virus helper\OTL.exe
PRC - [2011/06/08 12:59:44 | 000,169,984 | ---- | M] (Simon Tatham) -- C:\WINDOWS\Ogahya.exe
PRC - [2011/06/05 18:38:39 | 001,010,232 | ---- | M] (Google Inc.) -- C:\Documents and Settings\-----\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2011/05/29 12:07:01 | 001,779,792 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
PRC - [2011/05/28 19:25:35 | 000,606,738 | R--- | M] (Swearware) -- C:\Documents and Settings\-----\Desktop\Anti-virus helper\dds.exe
PRC - [2011/05/25 17:29:54 | 001,951,112 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
PRC - [2011/05/25 17:29:48 | 001,336,712 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
PRC - [2011/04/20 11:31:28 | 000,200,704 | ---- | M] (TopLang Software) -- C:\Program Files\Desktop Lock\TLDL.EXE
PRC - [2011/03/02 19:44:12 | 001,242,448 | ---- | M] (Valve Corporation) -- C:\Program Files\Steam\Steam.exe
PRC - [2011/01/20 04:20:12 | 001,305,408 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2010/12/08 14:11:38 | 000,136,584 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\ramaint.exe
PRC - [2010/12/08 14:11:32 | 000,374,152 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe
PRC - [2010/11/25 22:48:46 | 000,619,288 | ---- | M] (http://tortoisesvn.net) -- C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
PRC - [2010/11/19 13:15:06 | 005,636,136 | ---- | M] () -- C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe
PRC - [2010/11/08 13:04:20 | 000,390,528 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LogMeIn.exe
PRC - [2010/10/15 13:42:14 | 000,326,704 | ---- | M] () -- C:\Program Files\Hotspot Shield\bin\hsswd.exe
PRC - [2010/10/06 14:21:00 | 000,786,432 | ---- | M] (Lee-Soft.com) -- C:\Program Files\ViStart\ViStart.exe
PRC - [2010/09/07 07:45:18 | 000,446,464 | ---- | M] (Lee-Soft.com, Lee Matthew Chantrey) -- C:\Program Files\ViGlance\ViGlance.exe
PRC - [2010/03/28 11:54:18 | 000,374,272 | ---- | M] () -- C:\Documents and Settings\-----\Desktop\folders\Lee-Soft Vista-like shtuff\TrueTransparency\TrueTransparency.exe
PRC - [2009/06/30 23:51:07 | 000,010,752 | ---- | M] () -- C:\Program Files\Allure\Allure.exe
PRC - [2008/04/13 19:12:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/04/13 19:12:14 | 000,389,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\cmd.exe
PRC - [2007/04/16 16:28:22 | 000,577,536 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe
PRC - [2004/12/01 22:44:00 | 000,036,864 | ---- | M] () -- C:\WINDOWS\system32\acs.exe
========== Modules (SafeList) ==========
MOD - [2011/06/08 15:28:59 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\-----\Desktop\Anti-virus helper\OTL.exe
MOD - [2011/05/15 12:34:23 | 000,284,744 | ---- | M] (COMODO) -- C:\WINDOWS\system32\guard32.dll
MOD - [2010/08/23 11:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2010/03/28 11:35:00 | 000,009,216 | ---- | M] () -- C:\Documents and Settings\Michael\Desktop\folders\Lee-Soft Vista-like shtuff\TrueTransparency\TrueTransparencyHook.dll
MOD - [2009/06/30 23:51:03 | 000,006,144 | ---- | M] () -- C:\Program Files\Allure\AllureHook.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011/05/29 12:07:01 | 001,779,792 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent)
SRV - [2011/05/25 17:29:48 | 001,336,712 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2011/05/21 22:26:41 | 000,129,856 | ---- | M] (Desura Pty Ltd) [On_Demand | Stopped] -- C:\Program Files\Common Files\Desura\desura_service.exe -- (Desura Install Service)
SRV - [2010/12/08 14:11:38 | 000,136,584 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\RaMaint.exe -- (LMIMaint)
SRV - [2010/12/08 14:11:32 | 000,374,152 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe -- (LMIGuardianSvc)
SRV - [2010/11/08 13:04:20 | 000,390,528 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\LogMeIn.exe -- (LogMeIn)
SRV - [2010/10/17 14:38:42 | 000,742,912 | ---- | M] (FileZilla Project) [On_Demand | Stopped] -- C:\Program Files\FileZilla Server\FileZilla Server.exe -- (FileZilla Server)
SRV - [2010/10/15 13:42:14 | 000,326,704 | ---- | M] () [Auto | Running] -- C:\Program Files\Hotspot Shield\bin\hsswd.exe -- (HssWd)
SRV - [2004/12/01 22:44:00 | 000,036,864 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\acs.exe -- (ACS)
========== Driver Services (SafeList) ==========
DRV - [2011/06/07 17:19:39 | 000,163,712 | ---- | M] () [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\drivers\vidstub.sys -- (BootScreen)
DRV - [2011/05/15 12:34:23 | 000,097,504 | ---- | M] (COMODO) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\inspect.sys -- (Inspect)
DRV - [2011/05/15 12:34:22 | 000,029,400 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cmdhlp.sys -- (cmdHlp)
DRV - [2011/05/15 12:34:22 | 000,017,416 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmderd.sys -- (cmderd)
DRV - [2011/05/15 12:34:21 | 000,242,472 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard)
DRV - [2011/04/26 15:10:34 | 000,122,224 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VBoxNetFlt.sys -- (VBoxNetFlt)
DRV - [2011/04/26 15:10:34 | 000,111,280 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV - [2011/04/26 15:10:34 | 000,044,784 | ---- | M] (Oracle Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VBoxUSBMon.sys -- (VBoxUSBMon)
DRV - [2011/04/26 15:10:32 | 000,162,544 | ---- | M] (Oracle Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VBoxDrv.sys -- (VBoxDrv)
DRV - [2011/03/30 06:05:55 | 000,025,088 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\teamviewervpn.sys -- (teamviewervpn)
DRV - [2011/03/22 18:27:53 | 000,218,688 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2011/02/28 20:49:32 | 000,015,781 | ---- | M] (Meetinghouse Data Communications) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\mdc8021x.sys -- (MDC8021X) AEGIS Protocol (IEEE 802.1x)
DRV - [2010/12/08 14:12:02 | 000,083,360 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\WINDOWS\System32\LMIRfsClientNP.dll -- (LMIRfsClientNP)
DRV - [2010/09/22 14:19:02 | 000,037,376 | ---- | M] (AnchorFree Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HssDrv.sys -- (HssDrv)
DRV - [2010/09/17 16:40:06 | 000,047,640 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\LMIRfsDriver.sys -- (LMIRfsDriver)
DRV - [2010/09/17 16:40:06 | 000,012,856 | ---- | M] (LogMeIn, Inc.) [Kernel | Auto | Running] -- C:\Program Files\LogMeIn\x86\rainfo.sys -- (LMIInfo)
DRV - [2009/03/18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2008/09/24 11:40:22 | 004,122,368 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2008/02/27 13:49:00 | 000,003,840 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\BANTExt.sys -- (BANTExt)
DRV - [2004/12/14 18:47:18 | 000,400,096 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WG311T13.sys -- (AR5211)
DRV - [2001/08/17 08:49:32 | 000,019,968 | ---- | M] (Macronix International Co., Ltd. ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mxnic.sys -- (mxnic)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;<local>
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 217.8.175.41:80
========== FireFox ==========
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {e0204bd5-9d31-402b-a99d-a6aa8ffebdca}:1.2.5
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.1.94
FF - prefs.js..extensions.enabledItems: {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.1.94
FF - prefs.js..network.proxy.http: "127.0.0.1"
FF - prefs.js..network.proxy.http_port: 8118
FF - prefs.js..network.proxy.no_proxies_on: "127.0.0.1"
FF - prefs.js..network.proxy.socks: "127.0.0.1"
FF - prefs.js..network.proxy.socks_port: 9050
FF - prefs.js..network.proxy.socks_remote_dns: true
FF - prefs.js..network.proxy.ssl: "127.0.0.1"
FF - prefs.js..network.proxy.ssl_port: 8118
FF - prefs.js..network.proxy.type: 1
FF - HKLM\software\mozilla\Firefox\extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2011/04/14 17:46:58 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2011/04/14 17:47:08 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/04/11 16:44:13 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/05/18 15:55:43 | 000,000,000 | ---D | M]
[2011/03/07 07:00:02 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Michael\Application Data\Mozilla\Extensions
[2011/05/20 18:16:33 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Michael\Application Data\Mozilla\Firefox\Profiles\u0z51v5z.default\extensions
[2011/03/12 20:47:55 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Michael\Application Data\Mozilla\Firefox\Profiles\u0z51v5z.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/03/30 21:26:48 | 000,000,000 | ---D | M] (Torbutton) -- C:\Documents and Settings\Michael\Application Data\Mozilla\Firefox\Profiles\u0z51v5z.default\extensions\{e0204bd5-9d31-402b-a99d-a6aa8ffebdca}
[2011/05/20 18:16:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/04/14 17:46:58 | 000,000,000 | ---D | M] (DivX Plus Web Player HTML5 <video>) -- C:\PROGRAM FILES\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\HTML5VIDEO
[2011/04/14 17:47:08 | 000,000,000 | ---D | M] (DivX HiQ) -- C:\PROGRAM FILES\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\WPA
[2011/03/01 00:17:18 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
Hosts file not found
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Hotspot Shield Class) - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files\Hotspot Shield\HssIE\HssIE.dll (AnchorFree Inc.)
O3 - HKLM\..\Toolbar: (StylerToolBar) - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\Styler\TB\StylerTB.dll (StyleFantasist)
O4 - HKLM..\Run: [Allure] C:\Program Files\Allure\Allure.exe ()
O4 - HKLM..\Run: [BootSkin Startup Jobs] C:\Program Files\Stardock\WinCustomize\BootSkin\BootSkin.exe ()
O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO)
O4 - HKLM..\Run: [Desktop Lock] C:\Program Files\Desktop Lock\TLDL.EXE (TopLang Software)
O4 - HKLM..\Run: [DrvIcon] File not found
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Steam] C:\Program Files\Steam\steam.exe (Valve Corporation)
O4 - HKCU..\Run: [TrueTransparency] C:\Documents and Settings\Michael\Desktop\folders\Lee-Soft Vista-like shtuff\TrueTransparency\TrueTransparency.exe ()
O4 - HKCU..\Run: [Vidalia] C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe ()
O4 - HKCU..\Run: [ViGlance] C:\Program Files\ViGlance\ViGlance.exe (Lee-Soft.com, Lee Matthew Chantrey)
O4 - HKCU..\Run: [ViStart] C:\Program Files\ViStart\ViStart.exe (Lee-Soft.com)
O4 - HKCU..\Run: [YDZ1QVAGOJ] C:\Documents and Settings\Michael\Local Settings\Temp\Odl.exe (Simon Tatham)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: YNOKZITCHO = C:\WINDOWS\system32\ntmsoprq1.exe ()
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: &Save Flash In This Page by Flash Saver - C:\Program Files\Flash Saver\save.htm ()
O9 - Extra Button: Flash Saver - {09EA1F80-F40A-11D1-B792-444553540001} - C:\Program Files\Flash Saver\save.htm ()
O9 - Extra 'Tools' menuitem : Flash Saver - {09EA1F80-F40A-11D1-B792-444553540001} - C:\Program Files\Flash Saver\save.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - File not found
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O20 - AppInit_DLLs: (C:\WINDOWS\system32\guard32.dll) - C:\WINDOWS\system32\guard32.dll (COMODO)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\LMIinit: DllName - LMIinit.dll - C:\WINDOWS\System32\LMIinit.dll (LogMeIn, Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\Michael\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Michael\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/26 13:04:39 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKCU\...com [@ = comfile] -- Reg Error: Key error. File not found
O37 - HKCU\...exe [@ = exefile] -- Reg Error: Key error. File not found
========== Files/Folders - Created Within 30 Days ==========
[2011/06/08 15:24:16 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\Administrative Tools
[2011/06/08 13:00:03 | 000,169,984 | ---- | C] (Simon Tatham) -- C:\WINDOWS\Ogahya.exe
[2011/06/08 12:49:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Desktop\Clearlock
[2011/06/08 12:49:36 | 000,136,192 | ---- | C] (TopLang Software) -- C:\Documents and Settings\Michael\Desktop\DTLEP.exe
[2011/06/07 23:28:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\TopLang
[2011/06/07 23:28:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Desktop Lock
[2011/06/07 23:28:46 | 000,000,000 | ---D | C] -- C:\Program Files\Desktop Lock
[2011/06/07 23:28:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Application Data\TopLang
[2011/06/07 23:28:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TopLang
[2011/06/07 22:56:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Application Data\uTorrent
[2011/06/07 22:10:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\André Claaßen
[2011/06/07 18:10:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Local Settings\Application Data\Stardock
[2011/06/07 18:10:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\Thoosje Windows Sevenbar
[2011/06/07 18:09:49 | 000,000,000 | ---D | C] -- C:\Program Files\Thoosje
[2011/06/07 17:08:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\WinCustomize
[2011/06/07 17:08:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Stardock
[2011/06/07 17:08:23 | 000,000,000 | ---D | C] -- C:\Program Files\Stardock
[2011/06/06 11:36:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\Shrapnel Games
[2011/06/06 11:35:32 | 000,000,000 | ---D | C] -- C:\Program Files\Shrapnel Games
[2011/06/06 00:02:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\My Documents\Space Empires IV Gold
[2011/06/05 20:33:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Application Data\FreeOrion
[2011/06/05 20:05:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\FreeOrion
[2011/06/05 20:03:03 | 000,000,000 | ---D | C] -- C:\Program Files\FreeOrion
[2011/06/05 19:01:38 | 000,000,000 | ---D | C] -- C:\Program Files\Birth of the Empires
[2011/06/05 18:20:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Kali
[2011/06/05 18:20:40 | 000,000,000 | ---D | C] -- C:\Program Files\Kali95
[2011/06/05 14:15:01 | 000,000,000 | ---D | C] -- C:\Program Files\Safari
[2011/06/05 02:19:22 | 000,128,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\COMDLG32.OCX
[2011/06/05 02:19:22 | 000,000,000 | ---D | C] -- C:\Program Files\MeltPot
[2011/06/05 02:18:28 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\ST5UNST.EXE
[2011/06/05 02:18:28 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\VB5StKit.dll
[2011/06/04 19:16:56 | 000,000,000 | ---D | C] -- C:\DOS
[2011/06/04 18:27:42 | 000,000,000 | ---D | C] -- C:\Program Files\VDMSound
[2011/05/30 11:32:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\LogMeIn Hamachi
[2011/05/29 15:09:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Application Data\Bitcoin
[2011/05/29 15:08:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\Bitcoin
[2011/05/29 15:08:52 | 000,000,000 | ---D | C] -- C:\Program Files\Bitcoin
[2011/05/29 14:34:30 | 000,000,000 | ---D | C] -- C:\Program Files\ViGlance
[2011/05/29 14:34:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Application Data\ViGlance
[2011/05/29 14:11:41 | 000,000,000 | ---D | C] -- C:\Program Files\ViStart
[2011/05/29 10:42:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\VITrans
[2011/05/29 10:42:07 | 000,000,000 | ---D | C] -- C:\VTPFiles
[2011/05/29 10:41:58 | 000,094,208 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\WINDOWS\System32\pskill.exe
[2011/05/29 00:43:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Application Data\.minecraft
[2011/05/28 21:48:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Desktop\Anti-virus helper
[2011/05/28 19:31:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\My Documents\Pioneer
[2011/05/28 19:31:34 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Michael\Recent
[2011/05/28 13:17:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Local Settings\Application Data\Arparso
[2011/05/28 10:46:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Nexus Skirmisher
[2011/05/28 10:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\Nexus - The Jupiter Incident
[2011/05/28 09:01:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Nexus - The Jupiter Incident
[2011/05/28 08:45:09 | 000,000,000 | ---D | C] -- C:\Program Files\Nexus - The Jupiter Incident
[2011/05/27 23:44:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\My Documents\Nexus.The.Jupiter.Incident
[2011/05/24 17:22:25 | 000,000,000 | ---D | C] -- C:\Program Files\FileASSASSIN
[2011/05/24 17:22:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\FileASSASSIN
[2011/05/22 23:14:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\Local Settings\Application Data\MediaGet2
[2011/05/22 19:42:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\Application Data\Kalypso Media
[2011/05/22 19:10:56 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_7.dll
[2011/05/22 19:10:56 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_5.dll
[2011/05/22 19:10:54 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_7.dll
[2011/05/22 19:10:51 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_43.dll
[2011/05/22 19:10:48 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dcsx_43.dll
[2011/05/22 19:10:46 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx11_43.dll
[2011/05/22 19:10:43 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_43.dll
[2011/05/22 19:10:40 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_43.dll
[2011/05/22 18:56:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Trymedia
[2011/05/22 18:21:36 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/05/22 00:13:12 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Michael\My Documents\FrostWire
[2011/05/22 00:12:43 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Michael\Application Data\FrostWire
[2011/05/22 00:11:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TorrentEasy
[2011/05/21 22:59:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\Steam
[2011/05/21 22:28:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Local Settings\Application Data\Desura
[2011/05/21 22:26:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Desura
[2011/05/21 22:21:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Desura
[2011/05/21 22:21:22 | 000,000,000 | ---D | C] -- C:\Program Files\Desura
[2011/05/21 22:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Desura
[2011/05/20 17:36:39 | 000,000,000 | -H-D | C] -- C:\Program Files\FrostWire
[2011/05/19 17:58:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Lionhead Studios
[2011/05/19 17:57:27 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Application Data\DSS
[2011/05/19 17:55:06 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Michael\Application Data\Lionhead Studios
[2011/05/18 15:55:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2011/05/15 01:16:04 | 000,000,000 | ---D | C] -- C:\Program Files\Allure
[2011/05/15 01:16:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\Allure
[2011/05/15 01:13:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Local Settings\Application Data\SpaceTime 3D
[2011/05/15 01:13:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Michael\Start Menu\Programs\SpaceTime 3D
[2011/05/15 01:13:01 | 000,000,000 | ---D | C] -- C:\Program Files\SpaceTime 3D
[2011/05/14 20:48:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\Local Settings\Application Data\Roblox
[2011/05/14 20:48:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\Start Menu\Programs\Roblox
[2011/05/14 20:47:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\Local Settings\Application Data\RobloxVersions
[2011/05/14 20:47:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\Local Settings\Application Data\RobloxDownloads
[2011/05/14 18:26:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\VirtualBox VMs
[2011/05/14 18:25:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\.VirtualBox
[2011/05/14 18:22:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Oracle VM VirtualBox
[2011/05/14 18:22:30 | 000,162,544 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys
[2011/05/14 18:22:24 | 000,044,784 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys
[2011/05/14 18:22:14 | 000,000,000 | ---D | C] -- C:\Program Files\Oracle
[2011/05/12 21:28:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\microsoft
[2011/05/12 21:10:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xlive
[2011/05/12 21:10:13 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games for Windows - LIVE
[2011/05/11 23:16:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Starfarer
[2011/05/11 23:15:15 | 000,000,000 | ---D | C] -- C:\Program Files\Fractal Softworks
[2011/05/11 17:37:39 | 000,000,000 | ---D | C] -- C:\tmp
[2011/05/11 17:34:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\.thumbnails
[2011/05/11 17:33:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Blender Foundation
[2011/05/11 17:33:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\Application Data\Blender Foundation
[2011/05/11 17:33:19 | 000,000,000 | ---D | C] -- C:\Program Files\Blender Foundation
[2011/05/11 15:59:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\-----\world
[2011/05/09 20:59:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SWF Studio
[2011/03/30 22:22:47 | 000,121,344 | ---- | C] ( ) -- C:\WINDOWS\System32\lagarith.dll
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/06/08 15:46:03 | 000,000,986 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-3305667324-1960924308-708895227-1006UA.job
[2011/06/08 15:39:35 | 000,000,290 | -H-- | M] () -- C:\WINDOWS\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
[2011/06/08 15:34:20 | 001,474,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\sfi.dat
[2011/06/08 15:27:30 | 000,000,250 | -H-- | M] () -- C:\WINDOWS\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
[2011/06/08 12:59:44 | 000,169,984 | ---- | M] (Simon Tatham) -- C:\WINDOWS\Ogahya.exe
[2011/06/08 12:59:44 | 000,130,560 | RHS- | M] () -- C:\WINDOWS\System32\ntmsoprq1.exe
[2011/06/08 12:33:30 | 000,002,048 | -HS- | M] () -- C:\WINDOWS\System32\c_97653.nl_
[2011/06/08 12:33:02 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/06/08 12:32:59 | 1609,027,584 | -HS- | M] () -- C:\hiberfil.sys
[2011/06/07 23:28:48 | 000,000,686 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Virtual Screen.lnk
[2011/06/07 23:28:47 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Desktop Lock.lnk
[2011/06/07 21:46:00 | 000,016,444 | -H-- | M] () -- C:\WINDOWS\System32\mlfcache.dat
[2011/06/07 17:19:39 | 000,163,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\vidstub.sys
[2011/06/07 07:56:40 | 000,000,259 | ---- | M] () -- C:\Documents and Settings\Michael\Desktop\russian-serbianFBname.rtf
[2011/06/07 05:46:01 | 000,000,934 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-3305667324-1960924308-708895227-1006Core.job
[2011/06/06 11:29:55 | 000,107,008 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/06/05 23:47:53 | 000,002,300 | ---- | M] () -- C:\Documents and Settings\Michael\Desktop\Google Chrome.lnk
[2011/06/05 22:40:38 | 000,006,307 | ---- | M] () -- C:\Documents and Settings\Michael\My Documents\ea093k.jpg
[2011/06/05 18:26:29 | 000,001,753 | ---- | M] () -- C:\WINDOWS\System32\autoexec.nt
[2011/06/05 15:36:32 | 000,000,568 | ---- | M] () -- C:\WINDOWS\96Crypt.ini
[2011/06/05 14:15:19 | 000,001,854 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Safari.lnk
[2011/06/05 02:21:00 | 000,000,322 | ---- | M] () -- C:\WINDOWS\MOO2MPOT.INI
[2011/06/03 00:12:17 | 000,009,341 | ---- | M] () -- C:\Th_raptorjesus.jpg
[2011/06/02 18:27:14 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/06/02 12:21:08 | 000,001,170 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/05/29 14:40:32 | 000,000,669 | ---- | M] () -- C:\Documents and Settings\Michael\Application Data\Microsoft\Internet Explorer\Quick Launch\Gyazo.lnk
[2011/05/29 10:50:28 | 006,912,054 | ---- | M] () -- C:\WINDOWS\clwcp.bmp
[2011/05/28 19:00:58 | 000,000,211 | RHS- | M] () -- C:\boot.ini
[2011/05/28 16:28:20 | 000,000,016 | ---- | M] () -- C:\WINDOWS\Preregister.sig
[2011/05/24 17:22:26 | 000,000,730 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\FileASSASSIN.lnk
[2011/05/21 22:21:23 | 000,001,522 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Desura.lnk
[2011/05/18 15:55:44 | 000,001,757 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
[2011/05/18 15:55:44 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 7.0.lnk
[2011/05/17 17:00:55 | 000,000,008 | ---- | M] () -- C:\Documents and Settings\-----\Application Data\RSBuddy Login.ini
[2011/05/15 12:34:23 | 000,284,744 | ---- | M] (COMODO) -- C:\WINDOWS\System32\guard32.dll
[2011/05/15 12:34:23 | 000,097,504 | ---- | M] (COMODO) -- C:\WINDOWS\System32\drivers\inspect.sys
[2011/05/15 12:34:22 | 000,029,400 | ---- | M] (COMODO) -- C:\WINDOWS\System32\drivers\cmdhlp.sys
[2011/05/15 12:34:22 | 000,017,416 | ---- | M] (COMODO) -- C:\WINDOWS\System32\drivers\cmderd.sys
[2011/05/15 12:34:21 | 000,242,472 | ---- | M] (COMODO) -- C:\WINDOWS\System32\drivers\cmdGuard.sys
[2011/05/15 01:13:09 | 000,000,868 | ---- | M] () -- C:\Documents and Settings\Michael\Desktop\SpaceTime 3D.lnk
[2011/05/14 18:22:32 | 000,000,801 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Oracle VM VirtualBox.lnk
[2011/05/11 15:59:21 | 000,000,263 | ---- | M] () -- C:\Documents and Settings\Michael\server.properties
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/06/08 13:00:02 | 000,000,290 | -H-- | C] () -- C:\WINDOWS\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
[2011/06/08 12:59:51 | 000,000,250 | -H-- | C] () -- C:\WINDOWS\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
[2011/06/08 12:59:44 | 000,130,560 | RHS- | C] () -- C:\WINDOWS\System32\ntmsoprq1.exe
[2011/06/07 23:28:48 | 000,000,686 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Virtual Screen.lnk
[2011/06/07 23:28:47 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Desktop Lock.lnk
[2011/06/07 22:22:46 | 239,657,576 | ---- | C] () -- C:\Documents and Settings\-----\Desktop\SC112.dmg
[2011/06/07 17:08:24 | 000,163,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\vidstub.sys
[2011/06/07 07:56:40 | 000,000,259 | ---- | C] () -- C:\Documents and Settings\-----\Desktop\russian-serbianFBname.rtf
[2011/06/05 22:38:01 | 000,006,307 | ---- | C] () -- C:\Documents and Settings\-----\My Documents\ea093k.jpg
[2011/06/05 14:15:19 | 000,001,854 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Safari.lnk
[2011/06/05 14:15:19 | 000,001,854 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Safari.lnk
[2011/06/05 02:19:49 | 000,000,688 | ---- | C] () -- C:\Documents and Settings\-----\Start Menu\Programs\MeltPot.LNK
[2011/06/05 02:19:46 | 000,000,322 | ---- | C] () -- C:\WINDOWS\MOO2MPOT.INI
[2011/06/03 00:11:52 | 000,009,341 | ---- | C] () -- C:\Th_raptorjesus.jpg
[2011/05/29 14:40:32 | 000,000,669 | ---- | C] () -- C:\Documents and Settings\Michael\Application Data\Microsoft\Internet Explorer\Quick Launch\Gyazo.lnk
[2011/05/29 10:50:28 | 006,912,054 | ---- | C] () -- C:\WINDOWS\clwcp.bmp
[2011/05/29 10:42:07 | 000,111,104 | ---- | C] () -- C:\WINDOWS\System32\Uharc.exe
[2011/05/29 10:41:58 | 000,517,120 | ---- | C] () -- C:\WINDOWS\System32\CLWCP.exe
[2011/05/29 10:41:58 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\moveex.exe
[2011/05/29 10:41:58 | 000,008,636 | ---- | C] () -- C:\WINDOWS\System32\modifype.exe
[2011/05/28 21:24:39 | 000,002,048 | -HS- | C] () -- C:\WINDOWS\System32\c_97653.nl_
[2011/05/28 19:44:20 | 000,375,667 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-3305667324-1960924308-708895227-1006-0.dat
[2011/05/28 19:44:17 | 000,095,502 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
[2011/05/24 17:22:26 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\FileASSASSIN.lnk
[2011/05/21 22:21:23 | 000,001,522 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Desura.lnk
[2011/05/18 15:55:44 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 7.0.lnk
[2011/05/18 15:55:43 | 000,001,810 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader 7.0.lnk
[2011/05/18 15:55:43 | 000,001,757 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
[2011/05/15 01:13:09 | 000,000,868 | ---- | C] () -- C:\Documents and Settings\Michael\Desktop\SpaceTime 3D.lnk
[2011/05/14 18:22:32 | 000,000,801 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Oracle VM VirtualBox.lnk
[2011/05/11 15:59:20 | 000,000,263 | ---- | C] () -- C:\Documents and Settings\Michael\server.properties
[2011/05/04 16:01:12 | 000,633,871 | ---- | C] () -- C:\WINDOWS\System32\user32new.dll
[2011/05/04 16:01:12 | 000,134,671 | ---- | C] () -- C:\WINDOWS\System32\winstanew.dll
[2011/05/04 16:01:11 | 001,584,149 | ---- | C] () -- C:\WINDOWS\System32\setupapinew.dll
[2011/05/04 16:01:11 | 000,789,525 | ---- | C] () -- C:\WINDOWS\System32\rpcrt4new.dll
[2011/05/04 16:01:11 | 000,096,783 | ---- | C] () -- C:\WINDOWS\System32\powrprofnew.dll
[2011/05/04 16:01:11 | 000,087,558 | ---- | C] () -- C:\WINDOWS\System32\ntdsapinew.dll
[2011/05/04 16:01:11 | 000,072,707 | ---- | C] () -- C:\WINDOWS\System32\secur32new.dll
[2011/05/04 16:01:10 | 000,376,832 | ---- | C] () -- C:\WINDOWS\System32\M2000Twn.dll
[2011/05/04 16:01:06 | 000,974,354 | ---- | C] () -- C:\WINDOWS\System32\crypt32new.dll
[2011/05/04 16:01:06 | 000,770,069 | ---- | C] () -- C:\WINDOWS\System32\advapi32new.dll
[2011/05/04 16:01:06 | 000,171,023 | ---- | C] () -- C:\WINDOWS\System32\apphelpnew.dll
[2011/05/03 20:37:17 | 000,039,948 | ---- | C] () -- C:\WINDOWS\System32\dwmapi.dll
[2011/05/03 20:37:17 | 000,000,236 | -H-- | C] () -- C:\Program Files\Common Files\dx.reg
[2011/05/03 20:37:12 | 000,874,502 | ---- | C] () -- C:\WINDOWS\System32\kernel32new.dll
[2011/05/03 20:37:12 | 000,681,478 | ---- | C] () -- C:\WINDOWS\System32\msvcrtnew.dll
[2011/05/03 20:37:12 | 000,187,398 | ---- | C] () -- C:\WINDOWS\System32\d3d10core.dll
[2011/05/03 20:37:11 | 000,716,153 | ---- | C] () -- C:\WINDOWS\System32\unins000.exe
[2011/05/03 20:37:11 | 000,002,919 | ---- | C] () -- C:\WINDOWS\System32\unins000.dat
[2011/05/03 20:13:12 | 000,025,037 | ---- | C] () -- C:\WINDOWS\System32\Nucleus.dll
[2011/05/03 20:13:11 | 000,167,948 | ---- | C] () -- C:\WINDOWS\System32\dxgi.dll
[2011/05/03 20:13:09 | 000,519,912 | ---- | C] () -- C:\WINDOWS\System32\d3dx10d_33.dll
[2011/05/03 20:13:09 | 000,519,912 | ---- | C] () -- C:\WINDOWS\System32\d3dx10d.dll
[2011/05/03 20:13:06 | 001,029,126 | ---- | C] () -- C:\WINDOWS\System32\d3d10.dll
[2011/05/01 09:42:33 | 000,000,008 | ---- | C] () -- C:\Documents and Settings\-----\Application Data\RSBuddy Login.ini
[2011/05/01 08:22:01 | 000,000,456 | ---- | C] () -- C:\Documents and Settings\-----\Application Data\RSBuddy_cubby989.ini
[2011/04/23 13:13:57 | 000,003,840 | ---- | C] () -- C:\WINDOWS\System32\drivers\BANTExt.sys
[2011/04/18 21:48:33 | 000,000,568 | ---- | C] () -- C:\WINDOWS\96Crypt.ini
[2011/04/11 17:37:44 | 000,016,444 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2011/04/09 23:46:36 | 000,559,408 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011/04/08 06:28:58 | 000,041,872 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll
[2011/04/04 21:19:49 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\AVSredirect.dll
[2011/03/30 22:22:53 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2011/03/30 22:22:50 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2011/03/30 22:22:47 | 000,810,496 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2011/03/30 22:22:47 | 000,183,808 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2011/03/30 22:22:46 | 000,080,896 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2011/03/26 18:52:42 | 000,246,784 | ---- | C] () -- C:\WINDOWS\System32\sqlite3.dll
[2011/03/18 21:22:23 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2011/03/09 00:01:42 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2011/03/08 21:45:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WB.ini
[2011/03/07 06:59:59 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2011/02/28 22:29:47 | 001,474,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\sfi.dat
[2011/02/28 21:06:45 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2011/02/28 21:06:12 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
[2011/02/28 20:57:47 | 000,252,080 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2011/02/28 20:57:43 | 000,252,080 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2011/02/28 20:57:43 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2011/02/28 20:57:24 | 002,292,678 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2011/02/28 20:34:46 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2011/02/27 23:58:20 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/02/27 23:38:51 | 000,000,117 | ---- | C] () -- C:\WINDOWS\civ.ini
[2011/02/27 23:36:45 | 000,000,309 | ---- | C] () -- C:\WINDOWS\smsafari.ini
[2011/02/27 23:33:51 | 000,002,554 | ---- | C] () -- C:\WINDOWS\WAVEMIX.INI
[2011/02/27 23:33:42 | 000,000,165 | ---- | C] () -- C:\WINDOWS\SimTower.ini
[2011/02/27 23:26:31 | 000,136,448 | ---- | C] () -- C:\WINDOWS\RMTOOLS.DLL
[2011/02/27 20:17:25 | 000,000,060 | ---- | C] () -- C:\WINDOWS\System32\SYSDRV.DAT
[2011/02/27 20:12:42 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2011/02/27 20:12:28 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2011/02/27 20:12:28 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2011/02/27 20:12:23 | 000,005,151 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2011/02/27 20:12:18 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2011/02/27 20:12:11 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2011/02/27 20:11:43 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2011/02/27 20:11:42 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2011/02/27 20:10:31 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2011/02/27 20:10:02 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2011/01/13 21:05:38 | 002,014,958 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\CleanupFiles.exe
[2010/04/02 17:17:34 | 000,179,091 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2005/09/29 19:36:33 | 000,192,695 | -H-- | C] () -- C:\Documents and Settings\Michael\Application Data\Michaellog.dat
[2004/12/01 22:44:00 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\acs.exe
[2004/11/04 11:48:12 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\AegisI5.exe
[2004/08/27 05:50:59 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2004/08/27 04:54:47 | 000,516,096 | ---- | C] () -- C:\WINDOWS\System32\HotlineClient.exe
[2004/08/26 13:07:50 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2004/08/26 13:01:37 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2004/08/26 11:12:43 | 000,000,465 | ---- | C] () -- C:\WINDOWS\System32\emver.ini
[2004/08/26 11:12:43 | 000,000,416 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2004/08/26 11:12:10 | 000,492,944 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/08/26 11:12:10 | 000,083,466 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/08/26 05:54:56 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2004/08/26 05:54:01 | 000,107,008 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2002/03/19 17:30:00 | 000,141,824 | ---- | C] () -- C:\WINDOWS\System32\msvdm.dll
< End of report >
This post has been edited by cubby989: 08 June 2011 - 04:56 PM

Help
This topic is locked

Back to top
button.
textbox.









