Hi Gringo,
Thank you very much for the help. I know you are doing this pro bono and I appreciate it!
I ran unhide, which unhid all the files except items in the Start menu. I could not bring up task manager to kill any remaining antivirus program which might have been blocking that from being fixed.
I rebooted, and on reboot all files were hidden again. I had downloaded the programs you requested onto a USB drive, so I was still able to access that and run OTL. Log is below. Nothing else, other than that the "System Restore" is still popping up, plus a fake dialog box indicating that "Files indexation process failed" and about two dozen recurring error boxes indicating "Windows - Delayed Write Failed."
OTL logfile created on: 11/6/2011 3:46:33 PM - Run 2
OTL by OldTimer - Version 3.2.31.0 Folder = H:\
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.54 Gb Available Physical Memory | 76.99% Memory free
3.85 Gb Paging File | 3.55 Gb Available in Paging File | 92.20% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48.83 Gb Total Space | 26.47 Gb Free Space | 54.20% Space Free | Partition Type: NTFS
Drive D: | 25.70 Gb Total Space | 17.52 Gb Free Space | 68.16% Space Free | Partition Type: NTFS
Drive H: | 7.44 Gb Total Space | 7.44 Gb Free Space | 99.94% Space Free | Partition Type: FAT32
Computer Name: UMHOEFER | User Name: jumhoefer | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - H:\OTL.exe (OldTimer Tools)
PRC - C:\Documents and Settings\All Users\Application Data\6DSS92c31Apgjk.exe ()
PRC - C:\Documents and Settings\All Users\Application Data\MgKPyEORiQUvGj.exe ()
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files\SUPERAntiSpyware\SASCore.exe (SUPERAntiSpyware.com)
PRC - C:\Program Files\HP\HP UT\bin\hppusg.exe (Hewlett-Packard Company)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\attrib.exe (Microsoft Corporation)
========== Modules (No Company Name) ==========
MOD - C:\Documents and Settings\All Users\Application Data\6DSS92c31Apgjk.exe ()
MOD - C:\Documents and Settings\All Users\Application Data\MgKPyEORiQUvGj.exe ()
MOD - C:\Program Files\Alwil Software\Avast5\defs\11110102\algo.dll ()
MOD - C:\Program Files\Alwil Software\Avast5\defs\11110102\aswRep.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\24331b719aa25ac2b21099e32232840c\Microsoft.VisualBasic.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\81096bfe85eb0da5f05e8a127ffa43b2\System.Runtime.Serialization.Formatters.Soap.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\36bf3d5f05a40c9e3cadca5789c8a469\System.Runtime.Remoting.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\bce0720436dc6cb76006377f295ea365\System.Configuration.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\70cacc44f0b4257f6037eda7a59a0aeb\System.Xml.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\71a2ae9ad561a62181cbd9fb11e9de7a\System.Windows.Forms.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\c10bea3c4bb7ef654651141bf9419090\System.Drawing.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\af39f6e644af02873b9bae319f2bfb13\System.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\ca87ba84221991839abbe7d4bc9c6721\mscorlib.ni.dll ()
MOD - C:\WINDOWS\system32\quartz.dll ()
MOD - C:\WINDOWS\system32\qedit.dll ()
MOD - C:\WINDOWS\system32\msdmo.dll ()
MOD - C:\WINDOWS\system32\devenum.dll ()
MOD - C:\WINDOWS\system32\cpwmon2k.dll ()
MOD - C:\WINDOWS\system32\HPBHEALR.DLL ()
========== Win32 Services (SafeList) ==========
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (Lavasoft Ad-Aware Service) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
SRV - (!SASCORE) -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE (SUPERAntiSpyware.com)
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (CoordinatorServiceHost) -- C:\Program Files\SolidWorks\swScheduler\DTSCoordinatorService.exe (Dassault Systèmes SolidWorks Corp.)
SRV - (SolidWorks Licensing Service) -- C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe (SolidWorks)
SRV - (NMSAccessU) -- C:\Program Files\CDBurnerXP\NMSAccessU.exe ()
SRV - (msvsmon80) -- C:\Program Files\Microsoft Visual Studio 8\Common7\IDE\Remote Debugger\x86\msvsmon.exe (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV - (aswSnx) -- C:\WINDOWS\System32\drivers\aswSnx.sys (AVAST Software)
DRV - (aswSP) -- C:\WINDOWS\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswRdr) -- C:\WINDOWS\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (aswTdi) -- C:\WINDOWS\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswMon2) -- C:\WINDOWS\System32\drivers\aswmon2.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (Aavmker4) -- C:\WINDOWS\System32\drivers\aavmker4.sys (AVAST Software)
DRV - (SASDIFSV) -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (Lbd) -- C:\WINDOWS\system32\DRIVERS\Lbd.sys (Lavasoft AB)
DRV - (Lavasoft Kernexplorer) -- C:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys ()
DRV - (seehcri) -- C:\WINDOWS\system32\drivers\seehcri.sys (Sony Ericsson Mobile Communications)
DRV - (SIUSBXP) -- C:\WINDOWS\system32\drivers\SiUSBXp.sys (Silicon Laboratories)
DRV - (sptd) -- C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (C751Mdm) -- C:\WINDOWS\system32\drivers\C751Mdm.sys (DEVGURU Co., LTD.(www.devguru.co.kr))
DRV - (C751BUS) -- C:\WINDOWS\system32\drivers\C751BUS.sys (DEVGURU Co., LTD.)
DRV - (C751Vsp) -- C:\WINDOWS\system32\drivers\C751Vsp.sys (DEVGURU Co., LTD.(www.devguru.co.kr))
DRV - (StarOpen) -- C:\WINDOWS\System32\drivers\StarOpen.sys ()
DRV - (BCM43XX) -- C:\WINDOWS\system32\drivers\BCMWL5.SYS (Broadcom Corporation)
DRV - (BANTExt) -- C:\WINDOWS\System32\Drivers\BANTExt.sys ()
DRV - (sxuptp) -- C:\WINDOWS\system32\drivers\sxuptp.sys (silex technology, Inc.)
DRV - (STHDA) -- C:\WINDOWS\system32\drivers\sthda.sys (SigmaTel, Inc.)
DRV - (rimmptsk) -- C:\WINDOWS\system32\drivers\rimmptsk.sys (REDC)
DRV - (rimsptsk) -- C:\WINDOWS\system32\drivers\rimsptsk.sys (REDC)
DRV - (rismxdp) -- C:\WINDOWS\system32\drivers\rixdptsk.sys (REDC)
DRV - (USBCCID) -- C:\WINDOWS\system32\drivers\usbccid.sys (Microsoft Corporation)
DRV - (tosporte) -- C:\WINDOWS\system32\drivers\tosporte.sys (TOSHIBA Corporation)
DRV - (Tosrfbd) -- C:\WINDOWS\system32\drivers\TosRfbd.sys (TOSHIBA CORPORATION)
DRV - (Tosrfusb) -- C:\WINDOWS\system32\drivers\tosrfusb.sys (TOSHIBA CORPORATION)
DRV - (Tosrfhid) -- C:\WINDOWS\system32\drivers\TosRfhid.sys (TOSHIBA Corporation.)
DRV - (Tosrfbnp) -- C:\WINDOWS\system32\drivers\tosrfbnp.sys (TOSHIBA Corporation)
DRV - (TosRfSnd) Bluetooth Audio Device (WDM) -- C:\WINDOWS\system32\drivers\TosRfSnd.sys (TOSHIBA Corporation)
DRV - (b57w2k) -- C:\WINDOWS\system32\drivers\b57xp32.sys (Broadcom Corporation)
DRV - (BCOREUSB) -- C:\WINDOWS\system32\drivers\BCOREUSB.sys (CSR)
DRV - (Tosrfcom) -- C:\WINDOWS\system32\drivers\tosrfcom.sys (TOSHIBA Corporation)
DRV - (HSF_DPV) -- C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)
DRV - (HSFHWAZL) -- C:\WINDOWS\system32\drivers\HSFHWAZL.sys (Conexant Systems, Inc.)
DRV - (winachsf) -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (toshidpt) -- C:\WINDOWS\system32\drivers\toshidpt.sys (TOSHIBA Corporation.)
DRV - (tosrfnds) -- C:\WINDOWS\system32\drivers\tosrfnds.sys (TOSHIBA Corporation.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1659004503-764733703-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\S-1-5-21-1659004503-764733703-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..extensions.enabledItems: {d40f5e7b-d2cf-4856-b441-cc613eeffbe3}:1.67
FF - prefs.js..extensions.enabledItems: firefox@ghostery.com:2.5.3
FF - prefs.js..extensions.enabledItems: john@velvetcache.org:1.3.6
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/10/07 17:43:57 | 000,000,000 | -H-D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/08/23 16:44:27 | 000,000,000 | -H-D | M]
[2010/01/12 15:30:53 | 000,000,000 | -H-D | M] (No name found) -- C:\Documents and Settings\jumhoefer\Application Data\Mozilla\Extensions
[2011/09/07 12:44:14 | 000,000,000 | -H-D | M] (No name found) -- C:\Documents and Settings\jumhoefer\Application Data\Mozilla\Firefox\Profiles\4nj270fc.default\extensions
[2010/04/28 08:36:48 | 000,000,000 | -H-D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\jumhoefer\Application Data\Mozilla\Firefox\Profiles\4nj270fc.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/08/22 09:44:39 | 000,000,000 | -H-D | M] ("BetterPrivacy") -- C:\Documents and Settings\jumhoefer\Application Data\Mozilla\Firefox\Profiles\4nj270fc.default\extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}
[2011/09/06 09:21:53 | 000,000,000 | -H-D | M] (Ghostery) -- C:\Documents and Settings\jumhoefer\Application Data\Mozilla\Firefox\Profiles\4nj270fc.default\extensions\firefox@ghostery.com
[2011/08/23 16:44:30 | 000,000,000 | -H-D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
() (No name found) -- C:\DOCUMENTS AND SETTINGS\JUMHOEFER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\4NJ270FC.DEFAULT\EXTENSIONS\JOHN@VELVETCACHE.ORG.XPI
[2011/10/07 17:43:57 | 000,134,104 | -H-- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2009/10/14 16:21:24 | 000,155,648 | -H-- | M] (Dassault Systèmes SolidWorks Corp.) -- C:\Program Files\mozilla firefox\plugins\npEModelPlugin.dll
[2010/07/24 09:48:10 | 000,075,208 | -H-- | M] (Foxit Software Company) -- C:\Program Files\mozilla firefox\plugins\npFoxitReaderPlugin.dll
[2011/08/11 19:16:35 | 000,002,252 | -H-- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
O1 HOSTS File: ([2011/11/01 14:50:55 | 000,000,027 | -H-- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Foxit Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O3 - HKLM\..\Toolbar: (Foxit Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation)
O4 - HKLM..\Run: [HPUsageTracking] C:\Program Files\HP\HP UT\bin\hppusg.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [iiovsVgraP.exe] C:\Documents and Settings\All Users\Application Data\iiovsVgraP.exe File not found
O4 - HKLM..\Run: [MgKPyEORiQUvGj.exe] C:\Documents and Settings\All Users\Application Data\MgKPyEORiQUvGj.exe ()
O4 - HKLM..\Run: [NVHotkey] C:\WINDOWS\System32\nvhotkey.dll (NVIDIA Corporation)
O4 - HKU\S-1-5-21-1659004503-764733703-839522115-1003..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Recovery present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Recovery present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Recovery present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Recovery present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1659004503-764733703-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1659004503-764733703-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Recovery present
O7 - HKU\S-1-5-21-1659004503-764733703-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 327
O7 - HKU\S-1-5-21-1659004503-764733703-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 01 00 00 00 [binary data]
O7 - HKU\S-1-5-21-1659004503-764733703-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1659004503-764733703-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1659004503-764733703-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 1
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1263263650749 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1263326333875 (MUWebControl Class)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F}
https://vpn.stellartec.com/dana-cached/sc/JuniperSetupClient.cab (JuniperSetupClientControl Class)
O18 - Protocol\Handler\belarc {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/01/11 16:37:58 | 000,000,000 | -H-- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011/11/02 17:28:34 | 000,000,000 | ---D | M] - H:\autorun.inf -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/11/06 15:52:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\jumhoefer\Recent
[2011/11/02 14:19:43 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Start Menu\Programs\System Restore
[2011/11/02 09:56:20 | 009,852,544 | -H-- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\jumhoefer\Desktop\mbam-setup-1.51.2.1300.exe
[2011/11/01 17:31:31 | 001,564,464 | -H-- | C] (Kaspersky Lab ZAO) -- C:\Documents and Settings\jumhoefer\Desktop\bkfffk.com
[2011/11/01 15:12:49 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011/11/01 15:08:11 | 000,000,000 | -H-D | C] -- C:\WINDOWS\temp
[2011/11/01 14:08:29 | 000,000,000 | -H-D | C] -- C:\13456
[2011/11/01 14:01:32 | 004,280,887 | RH-- | C] (Swearware) -- C:\Documents and Settings\jumhoefer\Desktop\13456.exe
[2011/11/01 13:55:34 | 001,564,464 | -H-- | C] (Kaspersky Lab ZAO) -- C:\Documents and Settings\jumhoefer\Desktop\random.exe
[2011/11/01 11:20:19 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Application Data\SUPERAntiSpyware.com
[2011/11/01 11:19:11 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SUPERAntiSpyware
[2011/11/01 11:19:08 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2011/11/01 11:19:08 | 000,000,000 | -H-D | C] -- C:\Program Files\SUPERAntiSpyware
[2011/11/01 09:52:42 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Desktop\PhoneCrap
[2011/10/31 16:06:29 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/10/31 15:43:41 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011/10/31 15:34:48 | 000,518,144 | -H-- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2011/10/31 15:34:48 | 000,406,528 | -H-- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2011/10/31 15:34:48 | 000,212,480 | -H-- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2011/10/31 15:34:48 | 000,060,416 | -H-- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2011/10/31 15:33:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ERDNT
[2011/10/31 15:31:17 | 000,000,000 | -H-D | C] -- C:\Qoobox
[2011/10/31 14:26:58 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Application Data\Malwarebytes
[2011/10/31 14:26:32 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/10/31 14:26:23 | 000,022,216 | -H-- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/10/31 14:26:21 | 000,000,000 | -H-D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/10/26 11:32:09 | 000,027,632 | -H-- | C] (Sony Ericsson Mobile Communications) -- C:\WINDOWS\System32\drivers\seehcri.sys
[2011/10/26 11:22:09 | 000,000,000 | -H-D | C] -- C:\Program Files\Compiled Driver Disc (Full)
[2011/10/26 11:04:49 | 000,000,000 | -H-D | C] -- D:\My Documents\MOBILedit!
[2011/10/26 11:04:49 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Application Data\MOBILedit
[2011/10/26 11:04:34 | 000,000,000 | -H-D | C] -- C:\Program Files\COMPELSON Labs
[2011/10/26 11:04:22 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Phone Applications
[2011/10/26 11:04:21 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Documents\MobilEdit!
[2011/10/26 11:03:42 | 000,000,000 | -H-D | C] -- C:\Program Files\MOBILedit!
[2011/10/21 17:37:02 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\InstallShield
[2011/10/21 17:36:57 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Start Menu\Programs\Phone Applications
[2011/10/21 17:36:54 | 000,000,000 | -H-D | C] -- C:\CHMC
[2011/10/20 14:27:29 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Desktop\New Folder
[2011/10/14 14:56:42 | 000,000,000 | -H-D | C] -- D:\My Documents\bitpim
[2011/10/14 14:56:18 | 000,000,000 | -H-D | C] -- C:\Program Files\BitPim
[2011/10/13 18:25:12 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Local Settings\Application Data\Help
[2011/10/13 18:25:12 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Application Data\Help
[2011/10/13 18:23:13 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Desktop\QPST download
[2011/10/13 18:08:20 | 000,000,000 | -H-D | C] -- C:\Program Files\Qualcomm
[2011/10/13 11:52:42 | 000,161,112 | -H-- | C] (DEVGURU Co., LTD.(www.devguru.co.kr)) -- C:\WINDOWS\System32\drivers\C751Vsp.sys
[2011/10/13 11:52:41 | 000,161,112 | -H-- | C] (DEVGURU Co., LTD.(www.devguru.co.kr)) -- C:\WINDOWS\System32\drivers\C751Mdm.sys
[2011/10/13 11:52:40 | 000,056,280 | -H-- | C] (DEVGURU Co., LTD.) -- C:\WINDOWS\System32\drivers\C751BUS.sys
[2011/10/13 11:52:07 | 000,319,456 | -H-- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\DIFxAPI.dll
[2011/10/13 11:52:06 | 000,000,000 | -H-D | C] -- C:\Program Files\Common Files\VerizonWireless
[2011/10/08 06:48:26 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Application Data\ImgBurn
[2011/10/08 06:43:11 | 000,000,000 | -H-D | C] -- C:\Program Files\ImgBurn
[2011/10/07 18:26:41 | 000,000,000 | RH-D | C] -- D:\My Documents\My Videos
[2011/10/07 18:17:59 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Application Data\DVDVideoSoft
[2011/10/07 18:17:54 | 000,000,000 | -H-D | C] -- D:\My Documents\DVDVideoSoft
[2011/10/07 18:17:54 | 000,000,000 | -H-D | C] -- C:\Program Files\Common Files\DVDVideoSoft
[2011/10/07 18:16:29 | 000,017,272 | -H-- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2011/10/07 18:15:30 | 000,000,000 | -H-D | C] -- C:\Program Files\Windows Media Connect 2
[2011/10/07 18:12:12 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\drivers\UMDF
[2011/10/07 18:12:12 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\LogFiles
[2011/10/07 18:01:19 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\jumhoefer\Desktop\Mark
========== Files - Modified Within 30 Days ==========
[2011/11/06 15:44:37 | 000,007,680 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/06 15:43:05 | 000,000,064 | -H-- | M] () -- C:\WINDOWS\System32\rp_stats.dat
[2011/11/06 15:43:05 | 000,000,044 | -H-- | M] () -- C:\WINDOWS\System32\rp_rules.dat
[2011/11/06 15:42:54 | 000,000,296 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\~6DSS92c31Apgjk
[2011/11/06 15:41:43 | 000,000,486 | -H-- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011/11/06 15:41:41 | 000,002,206 | -H-- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/11/06 15:41:08 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/11/06 15:41:03 | 2145,533,952 | -HS- | M] () -- C:\hiberfil.sys
[2011/11/02 14:21:28 | 000,000,448 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\6DSS92c31Apgjk
[2011/11/02 14:19:44 | 000,000,200 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\~6DSS92c31Apgjkr
[2011/11/02 14:19:43 | 000,000,867 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Application Data\Microsoft\Internet Explorer\Quick Launch\System Restore.lnk
[2011/11/02 14:19:43 | 000,000,849 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Desktop\System Restore.lnk
[2011/11/02 14:19:34 | 000,312,816 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\6DSS92c31Apgjk.exe
[2011/11/02 14:19:13 | 000,400,368 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\MgKPyEORiQUvGj.exe
[2011/11/02 14:19:04 | 000,000,664 | -H-- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/11/02 12:23:28 | 000,302,592 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Desktop\lngtu4gv.exe
[2011/11/02 09:56:35 | 009,852,544 | -H-- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\jumhoefer\Desktop\mbam-setup-1.51.2.1300.exe
[2011/11/02 09:52:56 | 000,380,805 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Desktop\MiniToolBox.exe
[2011/11/02 09:42:34 | 000,869,194 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Desktop\SecurityCheck.exe
[2011/11/01 17:31:32 | 001,564,464 | -H-- | M] (Kaspersky Lab ZAO) -- C:\Documents and Settings\jumhoefer\Desktop\bkfffk.com
[2011/11/01 15:33:26 | 000,436,590 | -H-- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/11/01 15:33:26 | 000,069,128 | -H-- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/11/01 14:50:55 | 000,000,027 | -H-- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011/11/01 14:01:30 | 004,280,887 | RH-- | M] (Swearware) -- C:\Documents and Settings\jumhoefer\Desktop\13456.exe
[2011/11/01 13:55:33 | 001,564,464 | -H-- | M] (Kaspersky Lab ZAO) -- C:\Documents and Settings\jumhoefer\Desktop\random.exe
[2011/11/01 09:52:38 | 000,068,847 | -H-- | M] () -- C:\WINDOWS\System32\nvModes.001
[2011/10/31 15:43:58 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2011/10/31 15:05:49 | 000,187,235 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Local Settings\Application Data\census.cache
[2011/10/31 15:04:39 | 000,152,246 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Local Settings\Application Data\ars.cache
[2011/10/31 09:43:07 | 000,013,106 | -H-- | M] () -- D:\My Documents\opera6.adr
[2011/10/28 13:23:14 | 001,424,152 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Desktop\oetiker_194_stepless.pdf
[2011/10/28 11:24:05 | 001,789,612 | -H-- | M] () -- C:\Documents and Settings\jumhoefer\Desktop\oetiker_168_stepless.pdf
[2011/10/26 11:53:57 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf
[2011/10/24 17:24:44 | 000,757,159 | -H-- | M] () -- D:\My Documents\1023111348.jpg
[2011/10/14 11:48:42 | 595,534,848 | -H-- | M] () -- D:\My Documents\outlook1.ost
[2011/10/13 10:50:37 | 000,273,376 | -H-- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/10/12 13:23:18 | 000,001,393 | -H-- | M] () -- C:\WINDOWS\imsins.BAK
[2011/10/12 09:19:03 | 000,414,368 | -H-- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/10/09 20:45:36 | 000,049,463 | -H-- | M] () -- D:\My Documents\IMG952011100995114553.jpg
[2011/10/07 18:16:11 | 000,023,392 | -H-- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/10/07 18:16:11 | 000,016,832 | -H-- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/10/07 18:12:15 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
========== Files Created - No Company Name ==========
[2011/11/06 14:38:40 | 000,001,562 | -H-- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\CDBurnerXP.lnk
[2011/11/06 14:38:40 | 000,001,540 | -H-- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\ImgBurn.lnk
[2011/11/06 14:38:40 | 000,001,498 | -H-- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Opera.lnk
[2011/11/06 14:38:40 | 000,001,469 | -H-- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\PowerToy Calculator.lnk
[2011/11/06 14:38:40 | 000,000,895 | -H-- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Foxit Reader.lnk
[2011/11/06 14:38:40 | 000,000,745 | -H-- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\PhotoFiltre.lnk
[2011/11/06 14:38:40 | 000,000,730 | -H-- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnk
[2011/11/06 14:38:40 | 000,000,647 | -H-- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\IrfanView 4.25.lnk
[2011/11/02 17:56:37 | 000,000,867 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Application Data\Microsoft\Internet Explorer\Quick Launch\System Restore.lnk
[2011/11/02 17:54:33 | 2145,533,952 | -HS- | C] () -- C:\hiberfil.sys
[2011/11/02 14:19:44 | 000,000,296 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\~6DSS92c31Apgjk
[2011/11/02 14:19:44 | 000,000,200 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\~6DSS92c31Apgjkr
[2011/11/02 14:19:43 | 000,000,849 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Desktop\System Restore.lnk
[2011/11/02 14:19:39 | 000,000,448 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\6DSS92c31Apgjk
[2011/11/02 14:19:34 | 000,312,816 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\6DSS92c31Apgjk.exe
[2011/11/02 14:19:14 | 000,400,368 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\MgKPyEORiQUvGj.exe
[2011/11/02 14:19:04 | 000,000,664 | -H-- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/11/02 12:23:29 | 000,302,592 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Desktop\lngtu4gv.exe
[2011/11/02 09:52:57 | 000,380,805 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Desktop\MiniToolBox.exe
[2011/11/02 09:42:33 | 000,869,194 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Desktop\SecurityCheck.exe
[2011/10/31 15:43:56 | 000,000,211 | -H-- | C] () -- C:\Boot.bak
[2011/10/31 15:43:44 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2011/10/31 15:34:48 | 000,256,000 | -H-- | C] () -- C:\WINDOWS\PEV.exe
[2011/10/31 15:34:48 | 000,208,896 | -H-- | C] () -- C:\WINDOWS\MBR.exe
[2011/10/31 15:34:48 | 000,098,816 | -H-- | C] () -- C:\WINDOWS\sed.exe
[2011/10/31 15:34:48 | 000,080,412 | -H-- | C] () -- C:\WINDOWS\grep.exe
[2011/10/31 15:34:48 | 000,068,096 | -H-- | C] () -- C:\WINDOWS\zip.exe
[2011/10/31 15:05:49 | 000,187,235 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Local Settings\Application Data\census.cache
[2011/10/31 15:04:39 | 000,152,246 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Local Settings\Application Data\ars.cache
[2011/10/31 09:43:04 | 000,013,106 | -H-- | C] () -- D:\My Documents\opera6.adr
[2011/10/28 13:25:27 | 001,424,152 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Desktop\oetiker_194_stepless.pdf
[2011/10/28 11:24:39 | 001,789,612 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Desktop\oetiker_168_stepless.pdf
[2011/10/26 11:53:57 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf
[2011/10/24 17:24:44 | 000,757,159 | -H-- | C] () -- D:\My Documents\1023111348.jpg
[2011/10/09 20:45:36 | 000,049,463 | -H-- | C] () -- D:\My Documents\IMG952011100995114553.jpg
[2011/10/07 18:15:55 | 000,000,788 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Start Menu\Programs\Windows Media Player.lnk
[2011/10/07 18:12:15 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
[2011/07/05 14:08:30 | 000,000,608 | -HS- | C] () -- C:\WINDOWS\System32\winzvprt5.sys
[2011/07/05 14:00:33 | 000,000,665 | -H-- | C] () -- C:\WINDOWS\System32\hppapr12.dat
[2011/07/05 13:59:40 | 000,000,171 | -H-- | C] () -- C:\WINDOWS\System32\AddPort.ini
[2011/07/05 13:58:58 | 000,000,779 | -H-- | C] () -- C:\WINDOWS\hpntwksetup.ini
[2011/07/05 13:47:04 | 000,177,426 | -H-- | C] () -- C:\WINDOWS\hppins12.dat
[2011/07/05 13:47:01 | 000,007,855 | -H-- | C] () -- C:\WINDOWS\hppmdl12.dat
[2011/07/05 13:35:00 | 000,131,072 | -H-- | C] () -- C:\WINDOWS\System32\hpsfs.dll
[2011/06/23 12:51:05 | 000,000,064 | -H-- | C] () -- C:\WINDOWS\System32\rp_stats.dat
[2011/06/23 12:51:05 | 000,000,044 | -H-- | C] () -- C:\WINDOWS\System32\rp_rules.dat
[2011/03/07 18:56:39 | 000,038,480 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Application Data\Comma Separated Values (Windows).ADR
[2011/03/07 18:55:17 | 000,038,471 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Application Data\Microsoft Excel 97-2003.ADR
[2011/03/07 18:54:14 | 000,009,361 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Application Data\Microsoft Excel 97-2003.EML
[2011/03/07 18:53:41 | 000,000,028 | -H-- | C] () -- C:\WINDOWS\ODBC.INI
[2010/08/06 17:34:38 | 000,389,552 | -H-- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2010/04/15 16:55:07 | 000,003,840 | -H-- | C] () -- C:\WINDOWS\System32\drivers\BANTExt.sys
[2010/04/14 13:37:33 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\eDrawingOfficeAutomator.INI
[2010/04/14 12:39:25 | 000,008,704 | -H-- | C] () -- C:\WINDOWS\System32\ibfs32.dll
[2010/02/27 10:31:18 | 000,000,192 | -H-- | C] () -- C:\WINDOWS\wininit.ini
[2010/02/27 10:06:30 | 000,000,437 | -H-- | C] () -- C:\WINDOWS\SIERRA.INI
[2010/02/05 17:28:34 | 000,007,680 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/01/26 10:49:18 | 000,000,036 | -H-- | C] () -- C:\Documents and Settings\jumhoefer\Local Settings\Application Data\housecall.guid.cache
[2010/01/19 15:54:17 | 000,007,168 | -H-- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2010/01/14 18:16:07 | 000,000,272 | -H-- | C] () -- C:\WINDOWS\ReadIris.ini
[2010/01/14 18:13:01 | 000,087,552 | -H-- | C] () -- C:\WINDOWS\System32\cpwmon2k.dll
[2010/01/14 18:11:45 | 000,000,331 | -H-- | C] () -- C:\WINDOWS\FMTMSAM.INI
[2010/01/14 18:11:34 | 000,000,177 | -H-- | C] () -- C:\WINDOWS\hpbafd.ini
[2010/01/14 18:11:13 | 000,023,040 | -H-- | C] () -- C:\WINDOWS\System32\irisco32.dll
[2010/01/14 18:11:09 | 000,116,736 | -H-- | C] () -- C:\WINDOWS\System32\lfkodak.dll
[2010/01/14 18:11:09 | 000,000,033 | -H-- | C] () -- C:\WINDOWS\hppLangChoice.ini
[2010/01/14 18:11:08 | 000,343,040 | -H-- | C] () -- C:\WINDOWS\System32\lffpx7.dll
[2010/01/14 18:10:54 | 000,049,152 | -H-- | C] () -- C:\WINDOWS\System32\usbinst32.dll
[2010/01/14 18:07:46 | 000,094,274 | -H-- | C] () -- C:\WINDOWS\System32\HPBHEALR.DLL
[2010/01/12 15:30:50 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\nsreg.dat
[2010/01/11 18:22:10 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\tosOBEX.INI
[2010/01/11 18:18:35 | 000,143,360 | -H-- | C] () -- C:\WINDOWS\System32\preflib.dll
[2010/01/11 18:18:34 | 000,757,760 | -H-- | C] () -- C:\WINDOWS\System32\bcm1xsup.dll
[2010/01/11 18:18:34 | 000,025,088 | -H-- | C] () -- C:\WINDOWS\System32\WLTRYSVC.EXE
[2010/01/11 18:16:03 | 000,016,480 | -H-- | C] () -- C:\WINDOWS\System32\rixdicon.dll
[2010/01/11 18:00:26 | 000,068,847 | -H-- | C] () -- C:\WINDOWS\System32\nvModes.dat
[2010/01/11 17:59:12 | 001,703,936 | -H-- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2010/01/11 17:59:12 | 001,626,112 | -H-- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2010/01/11 17:59:12 | 001,019,904 | -H-- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2010/01/11 17:59:11 | 000,466,944 | -H-- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2010/01/11 17:59:10 | 001,474,560 | -H-- | C] () -- C:\WINDOWS\System32\nview.dll
[2010/01/11 17:59:10 | 001,339,392 | -H-- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2010/01/11 17:59:08 | 000,442,368 | -H-- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2010/01/11 17:59:07 | 000,425,984 | -H-- | C] () -- C:\WINDOWS\System32\keystone.exe
[2010/01/11 16:41:09 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010/01/11 16:34:48 | 000,021,640 | -H-- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010/01/11 08:24:39 | 000,004,161 | -H-- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010/01/11 08:23:18 | 000,273,376 | -H-- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/08/03 15:07:42 | 000,403,816 | -H-- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | -H-- | C] () -- C:\WINDOWS\System32\OGAEXEC.exe
[2008/04/09 16:00:30 | 000,053,478 | -H-- | C] () -- C:\WINDOWS\mvtcpui.ini
[2008/02/07 09:05:18 | 000,163,840 | -H-- | C] () -- C:\WINDOWS\System32\hppatusg01.dll
[2007/08/21 19:46:34 | 000,059,160 | -H-- | C] () -- C:\WINDOWS\System32\zlib.dll
[2007/03/16 16:00:00 | 000,003,403 | -H-- | C] () -- C:\WINDOWS\System32\hptcpmon.ini
[2005/03/21 15:48:05 | 013,107,200 | -H-- | C] () -- C:\WINDOWS\System32\oembios.bin
[2005/03/21 15:48:05 | 000,004,627 | -H-- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004/08/04 02:00:00 | 000,673,088 | -H-- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004/08/04 02:00:00 | 000,436,590 | -H-- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/08/04 02:00:00 | 000,272,128 | -H-- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004/08/04 02:00:00 | 000,218,003 | -H-- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004/08/04 02:00:00 | 000,069,128 | -H-- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/08/04 02:00:00 | 000,046,258 | -H-- | C] () -- C:\WINDOWS\System32\mib.bin
[2004/08/04 02:00:00 | 000,028,626 | -H-- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004/08/04 02:00:00 | 000,004,569 | -H-- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/08/04 02:00:00 | 000,001,804 | -H-- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004/08/04 02:00:00 | 000,000,741 | -H-- | C] () -- C:\WINDOWS\System32\noise.dat
[2002/03/19 17:30:00 | 000,216,576 | -H-- | C] () -- C:\WINDOWS\System32\PowerCalc.exe
========== Custom Scans ==========
< %TEMP%\smtmp\*.* /s >
[2010/01/19 15:54:17 | 000,001,562 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\CDBurnerXP.lnk
[2010/01/12 17:20:48 | 000,000,895 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Foxit Reader.lnk
[2011/10/08 06:43:13 | 000,001,540 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\ImgBurn.lnk
[2010/01/13 17:52:40 | 000,000,647 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\IrfanView 4.25.lnk
[2011/08/23 16:44:34 | 000,000,730 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Mozilla Firefox.lnk
[2011/02/08 10:51:02 | 000,001,498 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Opera.lnk
[2010/10/04 10:45:52 | 000,000,745 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\PhotoFiltre.lnk
[2010/01/14 10:40:35 | 000,001,469 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\PowerToy Calculator.lnk
[2010/01/11 16:34:49 | 000,001,498 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Calculator.lnk
[2010/01/11 16:38:01 | 000,001,555 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Command Prompt.lnk
[2010/05/17 17:25:13 | 000,001,519 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Notepad.lnk
[2010/01/11 16:34:49 | 000,001,515 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Paint.lnk
[2011/08/25 16:27:24 | 000,000,710 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Scanner and Camera Wizard.lnk
[2010/01/11 16:36:53 | 000,001,487 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Windows Explorer.lnk
[2010/01/11 16:34:49 | 000,000,879 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\WordPad.lnk
[2010/01/11 16:34:49 | 000,001,520 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Accessibility\Accessibility Wizard.lnk
[2010/01/14 10:21:13 | 000,001,517 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Communications\Bluetooth File Transfer Wizard.lnk
[2010/01/11 16:34:49 | 000,000,786 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Communications\HyperTerminal.lnk
[2010/01/11 16:32:37 | 000,001,757 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Communications\Network Connections.lnk
[2010/01/11 16:36:50 | 000,001,640 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Communications\Network Setup Wizard.lnk
[2010/01/11 16:32:37 | 000,001,646 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Communications\New Connection Wizard.lnk
[2010/01/11 19:10:46 | 000,001,656 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Communications\Wireless Network Setup Wizard.lnk
[2010/01/11 16:34:49 | 000,001,528 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Entertainment\Sound Recorder.lnk
[2010/01/11 16:34:49 | 000,001,528 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Entertainment\Volume Control.lnk
[2010/01/11 16:38:01 | 000,001,532 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\Backup.lnk
[2010/01/11 16:34:49 | 000,001,521 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\Character Map.lnk
[2010/06/21 16:45:56 | 000,001,532 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\Disk Cleanup.lnk
[2010/01/11 16:36:51 | 000,001,572 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\Disk Defragmenter.lnk
[2010/01/11 16:38:01 | 000,001,591 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\Files and Settings Transfer Wizard.lnk
[2010/01/12 11:04:57 | 000,000,833 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
[2010/01/11 16:36:53 | 000,001,753 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\Scheduled Tasks.lnk
[2010/01/11 16:36:51 | 000,001,070 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\System Information.lnk
[2010/01/11 16:36:53 | 000,001,616 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools\System Restore.lnk
[2010/01/11 16:34:37 | 000,001,582 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools\Component Services.lnk
[2010/01/11 16:38:01 | 000,001,602 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools\Computer Management.lnk
[2010/01/11 16:38:01 | 000,001,596 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools\Data Sources (ODBC).lnk
[2010/01/11 16:38:01 | 000,001,592 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools\Event Viewer.lnk
[2010/01/11 16:38:01 | 000,001,590 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools\Local Security Policy.lnk
[2010/09/07 14:13:07 | 000,001,214 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools\Microsoft .NET Framework 2.0 Configuration.lnk
[2010/01/11 16:38:01 | 000,001,591 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools\Performance.lnk
[2010/01/11 16:38:01 | 000,001,602 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools\Services.lnk
[2010/01/11 16:34:49 | 000,001,522 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Freecell.lnk
[2010/01/11 16:34:49 | 000,001,520 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Hearts.lnk
[2010/01/13 18:18:31 | 000,000,913 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Internet Backgammon.lnk
[2010/01/13 18:18:31 | 000,000,913 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Internet Checkers.lnk
[2010/01/13 18:18:31 | 000,000,913 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Internet Hearts.lnk
[2010/01/13 18:18:31 | 000,000,913 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Internet Reversi.lnk
[2010/01/13 18:18:31 | 000,000,913 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Internet Spades.lnk
[2010/01/11 16:34:49 | 000,001,515 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Minesweeper.lnk
[2010/01/11 16:34:49 | 000,000,885 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Pinball.lnk
[2010/01/11 16:34:49 | 000,001,491 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Solitaire.lnk
[2010/01/11 16:34:49 | 000,001,502 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Games\Spider Solitaire.lnk
[2011/11/02 09:57:04 | 000,000,806 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Malwarebytes' Anti-Malware\Malwarebytes' Anti-Malware Help.lnk
[2011/11/02 09:57:04 | 000,000,806 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Malwarebytes' Anti-Malware\Malwarebytes' Anti-Malware.lnk
[2011/11/02 09:57:04 | 000,000,830 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Malwarebytes' Anti-Malware\Uninstall Malwarebytes' Anti-Malware.lnk
[2011/10/14 15:50:15 | 000,002,485 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Excel 2007.lnk
[2010/01/20 17:35:56 | 000,002,599 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Outlook 2007.lnk
[2010/01/20 17:35:56 | 000,002,551 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office PowerPoint 2007.lnk
[2010/01/12 11:49:06 | 000,002,517 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Publisher 2007.lnk
[2011/10/20 14:25:27 | 000,002,527 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Word 2007.lnk
[2010/01/20 17:35:56 | 000,002,553 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Tools\Digital Certificate for VBA Projects.lnk
[2010/01/20 17:35:56 | 000,002,533 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Clip Organizer.lnk
[2010/01/20 17:35:56 | 000,002,433 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office 2007 Language Settings.lnk
[2010/01/20 17:35:56 | 000,002,531 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office Diagnostics.lnk
[2010/01/20 17:35:56 | 000,002,691 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office Document Imaging.lnk
[2010/01/20 17:35:56 | 000,002,693 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office Document Scanning.lnk
[2010/01/20 17:35:56 | 000,002,511 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office Picture Manager.lnk
[2010/10/22 13:39:55 | 000,001,630 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\MS Project\GanttProject\GanttProject.lnk
[2010/10/22 13:39:55 | 000,001,665 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\MS Project\GanttProject\HouseBuildingSample.lnk
[2010/10/22 13:39:55 | 000,001,603 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\MS Project\GanttProject\Uninstall.lnk
[2010/10/21 14:44:52 | 000,001,690 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\MS Project\KaDonk\LiveProject Online.lnk
[2010/10/21 14:44:52 | 000,000,835 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\MS Project\KaDonk\LiveProject.lnk
[2010/10/21 14:44:52 | 000,001,712 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\MS Project\KaDonk\Online Help.lnk
[2010/10/21 14:44:52 | 000,001,695 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\MS Project\KaDonk\Online Support.lnk
[2011/08/19 13:18:18 | 000,000,933 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\MS Project\OpenProj\OpenProj.lnk
[2011/10/26 11:04:23 | 000,000,668 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Phone Applications\MOBILedit!\MOBILedit!.lnk
[2011/10/26 11:04:25 | 000,000,730 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Phone Applications\MOBILedit!\Uninstall MOBILedit!.lnk
[2010/01/14 17:34:49 | 000,001,012 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\Belkin Network USB Hub Control Center.lnk
[2010/01/19 15:31:52 | 000,001,711 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\MP Navigator 3.0.lnk
[2011/07/05 14:05:30 | 000,000,863 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\HP Color LaserJet CM2320 MFP Series\HP Fax Setup Wizard.lnk
[2011/07/05 14:06:08 | 000,000,798 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\HP Color LaserJet CM2320 MFP Series\Scan.lnk
[2011/07/05 14:08:03 | 000,001,884 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\HP Color LaserJet CM2320 MFP Series\Send Fax.lnk
[2011/07/05 14:07:17 | 000,001,139 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\HP Color LaserJet CM2320 MFP Series\Uninstall.lnk
[2011/07/05 14:07:17 | 000,001,156 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\HP Color LaserJet CM2320 MFP Series\User Guide.lnk
[2010/01/14 18:11:53 | 000,000,786 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\hp LaserJet Copier.lnk
[2010/01/14 18:11:53 | 000,000,787 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\hp LaserJet Device Configuration.lnk
[2010/01/14 18:11:53 | 000,000,808 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\hp LaserJet Director.lnk
[2010/01/14 18:11:53 | 000,000,808 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\hp LaserJet Document Manager.lnk
[2010/01/14 18:11:54 | 000,000,823 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\hp LaserJet Photo Center.lnk
[2010/01/14 18:11:54 | 000,000,786 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\hp LaserJet Scan Control Viewer.lnk
[2010/01/14 18:11:54 | 000,000,922 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\Software Configuration Page.lnk
[2010/01/14 18:11:54 | 000,000,883 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\Readiris OCR\I.R.I.S. OCR Registration.lnk
[2010/01/14 18:11:54 | 000,000,890 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\Readiris OCR\Readiris Help.lnk
[2010/01/14 18:11:54 | 000,000,890 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\Readiris OCR\Readiris User's Guide.lnk
[2010/01/14 18:11:54 | 000,000,890 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Print & Scan\hp LaserJet 3330\Readiris OCR\Readiris.lnk
[2010/09/07 14:33:31 | 000,002,679 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\DWGeditor 2010.lnk
[2011/06/07 22:02:09 | 000,002,299 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks 2010.lnk
[2010/09/07 14:40:20 | 000,001,831 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks eDrawings 2010.lnk
[2010/09/07 14:40:20 | 000,002,569 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks Explorer 2010.lnk
[2010/09/07 15:07:13 | 000,002,487 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks Tools\Copy Settings Wizard.lnk
[2010/09/07 15:07:13 | 000,002,687 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks Tools\Property Tab Builder.lnk
[2010/09/07 15:07:13 | 000,002,503 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks Tools\SolidNetWork License Manager.lnk
[2010/09/07 15:07:13 | 000,002,687 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks Tools\SolidWorks Network Monitor.lnk
[2010/09/07 15:07:13 | 000,002,473 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks Tools\SolidWorks Rx.lnk
[2010/09/07 15:07:13 | 000,002,481 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks Tools\SolidWorks Task Scheduler.lnk
[2010/09/07 15:07:13 | 000,002,703 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SolidWorks 2010\SolidWorks Tools\Toolbox Settings.lnk
[2011/11/01 11:19:11 | 000,001,644 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SUPERAntiSpyware\BootSafe.lnk
[2011/11/01 11:19:11 | 000,001,628 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SUPERAntiSpyware\SUPERAntiSpyware Alternate Start.lnk
[2011/11/01 11:19:11 | 000,001,700 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SUPERAntiSpyware\SUPERAntiSpyware Free Edition.lnk
[2011/11/01 11:19:11 | 000,000,802 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SUPERAntiSpyware\SUPERAntiSpyware Help.lnk
[2011/11/01 11:19:11 | 000,001,722 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\SUPERAntiSpyware\SUPERAntiSpyware Registration-Activation.lnk
[2010/01/13 17:52:05 | 000,000,645 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Utilities\7-Zip File Manager.lnk
[2010/04/14 10:54:43 | 000,000,885 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Utilities\Ad-Aware.lnk
[2010/10/21 11:25:12 | 000,001,712 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Utilities\avast! Free Antivirus.lnk
[2010/04/15 16:55:09 | 000,001,754 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Utilities\Belarc Advisor.lnk
[2010/01/12 14:36:11 | 000,000,751 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Utilities\Command Prompt.lnk
[2010/01/14 11:08:02 | 000,000,745 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Utilities\DAEMON Tools Lite.lnk
[2010/04/29 14:00:46 | 000,001,542 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Utilities\Eraser.lnk
[2010/01/14 10:40:13 | 000,000,501 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Utilities\Tweak UI.lnk
[2011/02/23 14:56:09 | 000,001,589 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Video\DVD Flick.lnk
[2010/01/14 11:07:23 | 000,000,943 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Video\Media Player Classic.lnk
[2010/01/15 16:38:55 | 000,000,731 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Video\VLC media player.lnk
[2010/01/14 10:49:13 | 000,000,666 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Video\Winamp.lnk
[2010/01/12 10:37:45 | 000,000,804 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Video\Windows Media Player.lnk
[2010/01/11 16:36:55 | 000,000,786 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\1\Programs\Video\Windows Movie Maker.lnk
[2011/11/02 14:19:43 | 000,000,867 | -H-- | M] () -- C:\DOCUME~1\JUMHOE~1\LOCALS~1\Temp\smtmp\2\System Restore.lnk
< End of report >