Ran MBAM yesterday, found and removed 3 threats. Mom was on today and her Windows explorer window was inexplicably closed on her twice today... so I'm running MBAM again. I'm also going to download OTL and run it as soon as MBAM is done. I'll post the log once it's done.
*edit*
Okay, finished the OTL quickscan. Here are the logs.
------------------------------------------------------------------
OTL logfile created on: 7/30/2010 11:23:56 AM - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = E:\Documents and Settings\Daniel Bright\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,023.00 Mb Total Physical Memory | 539.00 Mb Available Physical Memory | 53.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): E:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files
C: Drive not present or media not loaded
D: Drive not present or media not loaded
Drive E: | 149.04 Gb Total Space | 125.45 Gb Free Space | 84.17% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: DANIEL-70DB0853
Current User Name: Daniel Bright
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Standard
Quick Scan
========== Processes (SafeList) ========== PRC - [2010/07/30 11:20:36 | 000,574,976 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Daniel Bright\Desktop\OTL.exe
PRC - [2010/07/27 18:39:23 | 000,921,952 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\Program Files\AVG\AVG9\avgemc.exe
PRC - [2010/07/17 08:05:15 | 002,065,760 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\Program Files\AVG\AVG9\avgtray.exe
PRC - [2010/07/17 08:05:09 | 000,620,896 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\Program Files\AVG\AVG9\avgnsx.exe
PRC - [2010/07/17 08:05:09 | 000,515,424 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\Program Files\AVG\AVG9\avgrsx.exe
PRC - [2010/07/17 08:05:04 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\Program Files\AVG\AVG9\avgwdsvc.exe
PRC - [2010/07/17 08:04:04 | 000,723,296 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\Program Files\AVG\AVG9\avgcsrvx.exe
PRC - [2010/07/17 08:04:01 | 001,101,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\Program Files\AVG\AVG9\avgchsvx.exe
PRC - [2009/07/20 12:30:50 | 000,813,584 | ---- | M] (Logitech, Inc.) -- E:\Program Files\Logitech\SetPoint\SetPoint.exe
PRC - [2009/07/10 12:42:32 | 000,055,824 | ---- | M] (Logitech, Inc.) -- E:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
PRC - [2008/11/09 16:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- E:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\explorer.exe
PRC - [2008/03/09 11:20:26 | 000,071,096 | ---- | M] () -- E:\Program Files\CDBurnerXP\NMSAccessU.exe
PRC - [2007/01/04 17:38:08 | 000,024,652 | ---- | M] (Viewpoint Corporation) -- E:\Program Files\Viewpoint\Common\ViewpointService.exe
PRC - [2003/08/15 03:34:50 | 000,057,344 | ---- | M] (Realtek Semiconductor Corp.) -- E:\WINDOWS\SOUNDMAN.EXE
PRC - [2003/04/10 04:36:52 | 000,028,672 | ---- | M] (Creative Technology Ltd) -- E:\WINDOWS\system32\CTHELPER.EXE
PRC - [2002/10/29 09:18:24 | 000,049,152 | ---- | M] (Creative Technology Ltd) -- E:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
PRC - [2002/09/30 01:00:00 | 000,045,056 | ---- | M] (Creative Technology Ltd) -- E:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDET.exe
========== Modules (SafeList) ========== MOD - [2010/07/30 11:20:36 | 000,574,976 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Daniel Bright\Desktop\OTL.exe
MOD - [2009/07/20 12:29:06 | 000,045,584 | ---- | M] (Logitech, Inc.) -- E:\Program Files\Logitech\SetPoint\lgscroll.dll
MOD - [2009/07/20 12:25:46 | 000,017,424 | ---- | M] (Logitech, Inc.) -- E:\Program Files\Logitech\SetPoint\IMHook.dll
MOD - [2009/07/12 02:12:06 | 000,632,656 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll
MOD - [2008/04/13 20:10:20 | 000,110,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msscript.ocx
MOD - [2003/03/25 08:39:22 | 000,057,344 | ---- | M] (Creative Technology Ltd) -- E:\WINDOWS\system32\CTAGENT.DLL
========== Win32 Services (SafeList) ========== SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\wuauserv.dll -- (wuauserv)
SRV - [2010/07/27 18:39:23 | 000,921,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- E:\Program Files\AVG\AVG9\avgemc.exe -- (avg9emc)
SRV - [2010/07/17 08:05:04 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- E:\Program Files\AVG\AVG9\avgwdsvc.exe -- (avg9wd)
SRV - [2009/07/20 12:28:10 | 000,121,360 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- E:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2008/11/09 16:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- E:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
SRV - [2008/03/09 11:20:26 | 000,071,096 | ---- | M] () [Auto | Running] -- E:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU)
SRV - [2007/02/05 10:11:18 | 000,075,320 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- E:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe -- (SSScsiSV)
SRV - [2007/02/05 10:11:16 | 000,112,184 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- E:\Program Files\Common Files\Sony Shared\AVLib\SsBeSvc.exe -- (SonicStage Back-End Service)
SRV - [2007/01/04 17:38:08 | 000,024,652 | ---- | M] (Viewpoint Corporation) [Auto | Running] -- E:\Program Files\Viewpoint\Common\ViewpointService.exe -- (Viewpoint Manager Service)
SRV - [2006/12/14 02:21:20 | 000,045,056 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- E:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe -- (MSCSPTISRV)
SRV - [2006/12/14 02:02:08 | 000,069,632 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- E:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe -- (SPTISRV)
SRV - [2006/12/14 01:46:16 | 000,057,344 | ---- | M] () [On_Demand | Stopped] -- E:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe -- (PACSPTISVR)
SRV - [2005/11/14 01:06:04 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- E:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT)
SRV - [2004/06/08 08:40:50 | 000,782,336 | ---- | M] (Sony Corporation) [Auto | Stopped] -- E:\Program Files\Sony\MD Simple Burner\NetMDSB.exe -- (NetMDSB)
========== Driver Services (SafeList) ========== DRV - File not found [Kernel | On_Demand | Stopped] -- E:\DOCUME~1\DANIEL~1\LOCALS~1\Temp\catchme.sys -- (catchme)
DRV - [2010/07/27 18:39:34 | 000,243,024 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- E:\WINDOWS\System32\Drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2010/07/17 08:04:04 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- E:\WINDOWS\System32\Drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2010/06/03 08:19:53 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- E:\WINDOWS\System32\Drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2009/06/17 12:56:16 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2009/06/17 12:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2009/06/17 12:55:34 | 000,010,384 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- E:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
DRV - [2008/04/13 14:46:22 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\mpe.sys -- (MPE)
DRV - [2008/04/13 14:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2008/04/13 13:45:12 | 000,060,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2008/03/18 06:10:48 | 000,031,264 | ---- | M] (Exent Technologies Ltd.) [Kernel | Auto | Running] -- E:\Program Files\GameTap\bin\Release\X4HSX32.sys -- (X4HSX32)
DRV - [2008/01/22 17:38:03 | 002,845,696 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2007/12/27 21:05:40 | 000,715,248 | ---- | M] (Duplex Secure Ltd.) [Kernel | Disabled | Stopped] -- E:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2007/11/06 23:40:20 | 000,169,856 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\atinavt2.sys -- (ATIAVAIW)
DRV - [2007/06/18 20:18:26 | 000,023,680 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\motmodem.sys -- (motmodem)
DRV - [2007/04/09 10:56:22 | 000,021,248 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\lgusbdiag.sys -- (UsbDiag)
DRV - [2007/04/09 10:55:08 | 000,022,912 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\lgusbmodem.sys -- (USBModem)
DRV - [2007/04/09 10:53:24 | 000,012,672 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\lgusbbus.sys -- (usbbus)
DRV - [2003/08/15 03:53:12 | 000,462,684 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2003/08/14 11:16:38 | 000,404,736 | ---- | M] (Sensaura Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS)
DRV - [2003/08/04 08:14:34 | 000,065,152 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\Rtlnic51.sys -- (RTL8023)
DRV - [2003/05/30 04:05:30 | 000,089,610 | R--- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\SI3112r.sys -- (SI3112r)
DRV - [2003/05/12 12:59:24 | 000,013,312 | ---- | M] (ATI Technologies Inc.) [Kernel | Auto | Stopped] -- E:\WINDOWS\system32\drivers\atinpdxx.sys -- (PCDCODEC)
DRV - [2003/05/12 12:59:10 | 000,013,824 | ---- | M] (ATI Technologies Inc.) [Kernel | Auto | Stopped] -- E:\WINDOWS\system32\drivers\atinmdxx.sys -- (MVDCODEC)
DRV - [2003/05/12 12:58:55 | 000,102,912 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\atinrvxx.sys -- (atinrvxx)
DRV - [2003/05/12 12:58:02 | 000,062,464 | ---- | M] (ATI Technologies Inc.) [Kernel | Auto | Stopped] -- E:\WINDOWS\system32\drivers\atinxsxx.sys -- (ATIXSAudio)
DRV - [2003/05/12 12:57:17 | 000,051,200 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\atinraxx.sys -- (ativraxx)
DRV - [2003/05/12 12:54:15 | 000,038,400 | ---- | M] (ATI Technologies Inc.) [Kernel | Auto | Stopped] -- E:\WINDOWS\system32\drivers\atintuxx.sys -- (ATITUNEP)
DRV - [2003/04/21 02:18:00 | 000,052,608 | R--- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\nvatabus.sys -- (nvatabus)
DRV - [2003/04/11 01:32:36 | 000,502,160 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM)
DRV - [2003/04/02 22:59:46 | 000,850,880 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k)
DRV - [2003/04/01 08:07:58 | 000,142,752 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\haP16v2k.sys -- (hap16v2k)
DRV - [2003/03/27 00:58:56 | 000,287,920 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ctdvda2k.sys -- (ctdvda2k)
DRV - [2003/03/25 08:13:30 | 000,144,736 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\emupia2k.sys -- (emupia)
DRV - [2003/03/25 08:13:20 | 000,135,696 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2003/03/25 08:13:02 | 000,006,144 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctprxy2k.sys -- (ctprxy2k)
DRV - [2003/03/25 08:12:54 | 000,190,176 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2003/03/25 08:11:24 | 000,134,656 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctac32k.sys -- (ctac32k)
DRV - [2003/03/19 03:51:00 | 000,018,688 | R--- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\nv_agp.sys -- (nv_agp)
DRV - [2003/03/05 12:19:28 | 000,015,840 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- E:\WINDOWS\system32\pfmodnt.sys -- (PfModNT)
DRV - [2003/02/20 04:08:54 | 000,021,851 | R--- | M] (Integrated Technology Express, Inc.) [Kernel | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\iteraid.sys -- (iteraid)
DRV - [2003/02/12 00:37:48 | 000,009,600 | R--- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\SiWinAcc.sys -- (SiFilter)
DRV - [2002/08/08 15:51:32 | 000,038,951 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\NETMDUSB.sys -- (NETMDUSB)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch =
http://us.rd.yahoo.com/customize/ie/defaul...rch/search.htmlIE - HKLM\..\URLSearchHook: {03402f96-3dc7-4285-bc50-9e81fefafe43} - E:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - E:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - E:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/IE - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..\URLSearchHook: *{03402F96-3DC7-4285-BC50-9E81FEFAFE43} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..\URLSearchHook: *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..\URLSearchHook: *{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - E:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
IE - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:5643
========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search"
FF - prefs.js..browser.search.defaulturl: "http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2706&invocationType=tb50fftrie7&query="
FF - prefs.js..browser.search.order.1: "Crawler Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.com"
FF - prefs.js..extensions.enabledItems: {4DC70064-89E2-4a55-8FC6-E8CDEAE3612C}:0.6.7
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.845
FF - prefs.js..extensions.enabledItems: avg@igeared:4.504.019.002
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: moveplayer@movenetworks.com:7
FF - prefs.js..extensions.enabledItems: DeviceDetection@logitech.com:1.0.176.0
FF - prefs.js..keyword.URL: "http://us.yhs.search.yahoo.com/avg/search?fr=yhs-avgb&type=yahoo_avg_hs2-tb-web_us&p="
FF - prefs.js..network.proxy.type: 4
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: E:\Program Files\AVG\AVG9\Firefox [2010/07/27 20:06:14 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\avg@igeared: E:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared [2010/05/23 13:40:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\m3ffxtbr@mywebsearch.com: E:\Program Files\MyWebSearch\bar\1.bin File not found
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: E:\Program Files\Mozilla Firefox\components [2010/07/21 01:00:53 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: E:\Program Files\Mozilla Firefox\plugins [2010/07/10 13:14:40 | 000,000,000 | ---D | M]
[2008/06/17 17:15:25 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Mozilla\Extensions
[2010/07/28 20:48:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Mozilla\Firefox\Profiles\9pykbd9d.default\extensions
[2010/04/28 10:30:04 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- E:\Documents and Settings\Daniel Bright\Application Data\Mozilla\Firefox\Profiles\9pykbd9d.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/02/14 14:28:50 | 000,000,000 | ---D | M] (Ad blocker) -- E:\Documents and Settings\Daniel Bright\Application Data\Mozilla\Firefox\Profiles\9pykbd9d.default\extensions\{4DC70064-89E2-4a55-8FC6-E8CDEAE3612C}
[2010/06/20 00:12:28 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Mozilla\Firefox\Profiles\9pykbd9d.default\extensions\DeviceDetection@logitech.com
[2009/07/01 04:36:34 | 000,004,207 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Application Data\Mozilla\Firefox\Profiles\9pykbd9d.default\searchplugins\aim-search.xml
[2009/11/08 11:59:51 | 000,002,168 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Application Data\Mozilla\Firefox\Profiles\9pykbd9d.default\searchplugins\inbox-search.xml
[2010/02/28 12:38:12 | 000,009,985 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Application Data\Mozilla\Firefox\Profiles\9pykbd9d.default\searchplugins\mywebsearch.xml
[2010/07/28 20:48:31 | 000,000,000 | ---D | M] -- E:\Program Files\Mozilla Firefox\extensions
[2007/12/27 21:10:37 | 000,000,000 | ---D | M] (AdVantage) -- E:\Program Files\Mozilla Firefox\extensions\{A89AED22-9133-424c-88E7-C8235C5FF302}
[2007/04/16 13:07:12 | 000,180,293 | ---- | M] () -- E:\Program Files\Mozilla Firefox\plugins\npViewpoint.dll
O1 HOSTS File: ([2010/06/10 17:49:05 | 000,000,027 | ---- | M]) - E:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - E:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - E:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - E:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll (Google Inc.)
O2 - BHO: (AIM Toolbar Loader) - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - E:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
O3 - HKLM\..\Toolbar: (AIM Toolbar) - {61539ecd-cc67-4437-a03c-9aaccbd14326} - E:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - E:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - E:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..\Toolbar\WebBrowser: (no name) - {2787EA8E-8D87-48AF-88AD-B30246C917AB} - No CLSID value found.
O3 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
O3 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..\Toolbar\WebBrowser: (AIM Toolbar) - {61539ECD-CC67-4437-A03C-9AACCBD14326} - E:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
O3 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - E:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
O4 - HKLM..\Run: [AppleSyncNotifier] E:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (Apple Inc.)
O4 - HKLM..\Run: [AsioReg] E:\WINDOWS\System32\CTASIO.DLL (Creative Technology Ltd)
O4 - HKLM..\Run: [CTDVDDet] E:\Program Files\Creative\SBAudigy2\DVDAudio\CTDVDDET.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [CTHelper] E:\WINDOWS\System32\CTHELPER.EXE (Creative Technology Ltd)
O4 - HKLM..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] E:\WINDOWS\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [SBDrvDet] E:\Program Files\Creative\SB Drive Det\SBDrvDet.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [SoundMan] E:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [StartCCC] E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe ()
O4 - HKLM..\Run: [UpdReg] E:\WINDOWS\Updreg.EXE (Creative Technology Ltd.)
O4 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003..\Run: [Messenger (Yahoo!)] E:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
O4 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003..\Run: [swg] E:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003..\Run: [updateMgr] E:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe (Adobe Systems Incorporated)
O4 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003..\Run: [Yneyalegacu] E:\WINDOWS\MUICTDE.DLL File not found
O4 - Startup: E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk = E:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
O4 - Startup: E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk = E:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
O4 - Startup: E:\Documents and Settings\All Users\Start Menu\Programs\Startup\ymetray.lnk = E:\Program Files\Yahoo!\Yahoo! Music Jukebox\ymetray.exe (Yahoo! Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: &AIM Toolbar Search - E:\Documents and Settings\All Users\Application Data\AIM Toolbar\ieToolbar\resources\en-US\local\search.html ()
O9 - Extra Button: AIM Toolbar - {0b83c99c-1efa-4259-858f-bcb33e007a5b} - E:\Program Files\AIM Toolbar\aimtb.dll (AOL LLC.)
O9 - Extra Button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - E:\Program Files\PokerStars\PokerStarsUpdate.exe (PokerStars)
O9 - Extra Button: TestPokerStars.com - {809132AF-89D2-4d52-AA03-AB4E35BBDC5B} - E:\Program Files\PokerStars.TEST\PokerStarsUpdate.exe (PokerStars)
O9 - Extra Button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - E:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKU\S-1-5-21-1547161642-1500820517-725345543-1003\..Trusted Domains: aol.com ([free] http in Trusted sites)
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83}
http://upload.facebook.com/controls/2008.1...toUploader5.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C}
http://www.facebook.com/controls/contactx.dll (ContactExtractor Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flash...t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A}
http://lads.myspace.com/upload/MySpaceUploader2.cab (MySpace Uploader Control)
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592}
http://cdn2.zone.msn.com/binFramework/v10/...k.cab102118.cab (MSN Games - Installer)
O16 - DPF: {CAC181B0-4D70-402D-B571-C596A47D0CE0}
http://zone.msn.com/bingame/zpagames/zpa_pool.cab56649.cab (CBankshotZoneCtrl Class)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 76.85.229.110 76.85.229.111
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - E:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - E:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - E:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - E:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\LBTWlgn: DllName - e:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - e:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O24 - Desktop WallPaper: E:\Documents and Settings\Daniel Bright\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: E:\Documents and Settings\Daniel Bright\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 90 Days ========== [2010/07/30 11:20:36 | 000,574,976 | ---- | C] (OldTimer Tools) -- E:\Documents and Settings\Daniel Bright\Desktop\OTL.exe
[2010/07/27 21:16:30 | 000,000,000 | ---D | C] -- E:\_OTL
[2010/07/23 23:17:55 | 000,000,000 | ---D | C] -- E:\Program Files\PokerStars.NET
[2010/07/17 08:05:09 | 000,012,536 | ---- | C] (AVG Technologies CZ, s.r.o.) -- E:\WINDOWS\System32\avgrsstx.dll
[2010/07/10 12:27:05 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Daniel Bright\Desktop\Hirens
[2010/06/20 00:18:24 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Daniel Bright\Application Data\Logitech
[2010/06/20 00:18:03 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\LogiShrd
[2010/06/20 00:17:53 | 000,010,384 | ---- | C] (Logitech, Inc.) -- E:\WINDOWS\System32\drivers\LBeepKE.sys
[2010/06/20 00:17:00 | 000,170,512 | ---- | C] (Logitech, Inc.) -- E:\WINDOWS\System32\kemutb.dll
[2010/06/20 00:17:00 | 000,145,936 | ---- | C] (Logitech, Inc.) -- E:\WINDOWS\System32\KemUtil.dll
[2010/06/20 00:17:00 | 000,117,264 | ---- | C] (Logitech, Inc.) -- E:\WINDOWS\System32\KemWnd.dll
[2010/06/20 00:17:00 | 000,084,496 | ---- | C] (Logitech, Inc.) -- E:\WINDOWS\System32\KemXML.dll
[2010/06/20 00:16:47 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Logitech
[2010/06/20 00:16:43 | 000,000,000 | -HSD | C] -- E:\Config.Msi
[2010/06/20 00:16:40 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Logishrd
[2010/06/20 00:16:35 | 000,000,000 | ---D | C] -- E:\Program Files\Logitech
[2010/06/11 13:59:17 | 000,000,000 | -HSD | C] -- E:\RECYCLER
[2010/06/10 17:43:16 | 000,000,000 | RHSD | C] -- E:\cmdcons
[2010/06/10 17:36:24 | 000,000,000 | ---D | C] -- E:\WINDOWS\ERDNT
[2010/06/04 22:26:04 | 000,000,000 | ---D | C] -- E:\Documents and Settings\NetworkService\Application Data\Macromedia
[2010/06/04 22:26:03 | 000,000,000 | ---D | C] -- E:\Documents and Settings\NetworkService\Application Data\Adobe
[2010/06/04 21:41:04 | 000,000,000 | ---D | C] -- E:\Program Files\$NtUninstallWTF1012$
[2010/05/20 11:12:14 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\SonicStage
[2010/05/20 11:05:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Daniel Bright\Desktop\SBurner
[2010/05/20 10:52:45 | 000,770,048 | ---- | C] (Gracenote) -- E:\WINDOWS\System32\CDDBUISony.dll
[2010/05/20 10:52:45 | 000,655,360 | ---- | C] (Gracenote, Inc.) -- E:\WINDOWS\System32\CDDBControlSony.dll
[2010/05/20 10:52:45 | 000,589,824 | ---- | C] (Gracenote) -- E:\WINDOWS\System32\CddbMusicIDSony.dll
[2010/05/20 10:52:45 | 000,073,728 | ---- | C] (Gracenote) -- E:\WINDOWS\System32\CddbLinkSony.dll
[2010/05/20 10:51:10 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Daniel Bright\Application Data\Sony Corporation
[2010/05/20 10:51:09 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Sony Shared
[2010/05/19 07:09:50 | 000,000,000 | ---D | C] -- E:\Program Files\Sony
[2010/05/19 07:09:23 | 001,767,968 | ---- | C] (Sony Corporation ) -- E:\Program Files\PA_DRIVER.EXE
[2010/05/19 07:06:39 | 002,289,828 | ---- | C] (Sony Corporation ) -- E:\Program Files\UPDATE_MDSB2001U.EXE
[2007/10/27 11:40:46 | 000,065,536 | ---- | C] ( ) -- E:\WINDOWS\System32\a3d.dll
========== Files - Modified Within 90 Days ========== [2010/07/30 11:20:36 | 000,574,976 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Daniel Bright\Desktop\OTL.exe
[2010/07/30 11:12:01 | 000,001,010 | ---- | M] () -- E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1500820517-725345543-1003UA.job
[2010/07/30 10:59:11 | 000,000,868 | ---- | M] () -- E:\WINDOWS\tasks\Google Software Updater.job
[2010/07/30 10:08:00 | 004,990,228 | ---- | M] () -- E:\WINDOWS\{00000001-00000000-0000000A-00001102-00000004-10071102}.CDF
[2010/07/30 10:07:59 | 000,013,694 | ---- | M] () -- E:\WINDOWS\System32\wpa.dbl
[2010/07/30 10:07:22 | 006,291,456 | -H-- | M] () -- E:\Documents and Settings\Daniel Bright\NTUSER.DAT
[2010/07/30 10:07:21 | 000,000,006 | -H-- | M] () -- E:\WINDOWS\tasks\SA.DAT
[2010/07/30 10:07:17 | 000,002,048 | --S- | M] () -- E:\WINDOWS\bootstat.dat
[2010/07/30 08:14:48 | 062,757,562 | ---- | M] () -- E:\WINDOWS\System32\drivers\Avg\incavi.avm
[2010/07/29 21:22:37 | 000,000,438 | -H-- | M] () -- E:\WINDOWS\tasks\User_Feed_Synchronization-{DA8277CF-BDF2-4FB2-AE41-259844296522}.job
[2010/07/29 16:12:00 | 000,000,958 | ---- | M] () -- E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1500820517-725345543-1003Core.job
[2010/07/29 00:49:21 | 000,000,000 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Local Settings\Application Data\prvlcl.dat
[2010/07/28 14:14:02 | 000,000,284 | ---- | M] () -- E:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/07/28 00:15:05 | 000,002,358 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Desktop\Google Chrome.lnk
[2010/07/28 00:15:05 | 000,002,336 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2010/07/27 20:04:49 | 000,030,168 | ---- | M] () -- E:\WINDOWS\System32\BMXCtrlState-{00000001-00000000-0000000A-00001102-00000004-10071102}.rfx
[2010/07/27 20:04:49 | 000,030,168 | ---- | M] () -- E:\WINDOWS\System32\BMXBkpCtrlState-{00000001-00000000-0000000A-00001102-00000004-10071102}.rfx
[2010/07/27 20:04:49 | 000,030,132 | ---- | M] () -- E:\WINDOWS\System32\BMXStateBkp-{00000001-00000000-0000000A-00001102-00000004-10071102}.rfx
[2010/07/27 20:04:49 | 000,030,132 | ---- | M] () -- E:\WINDOWS\System32\BMXState-{00000001-00000000-0000000A-00001102-00000004-10071102}.rfx
[2010/07/27 20:04:49 | 000,002,064 | ---- | M] () -- E:\WINDOWS\System32\settingsbkup.sfm
[2010/07/27 20:04:49 | 000,002,064 | ---- | M] () -- E:\WINDOWS\System32\settings.sfm
[2010/07/27 20:04:49 | 000,000,292 | ---- | M] () -- E:\WINDOWS\System32\DVCStateBkp-{00000001-00000000-0000000A-00001102-00000004-10071102}.dat
[2010/07/27 20:04:49 | 000,000,292 | ---- | M] () -- E:\WINDOWS\System32\DVCState-{00000001-00000000-0000000A-00001102-00000004-10071102}.dat
[2010/07/27 20:04:26 | 000,000,178 | -HS- | M] () -- E:\Documents and Settings\Daniel Bright\ntuser.ini
[2010/07/27 18:39:34 | 000,243,024 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\WINDOWS\System32\drivers\avgtdix.sys
[2010/07/17 08:05:09 | 000,012,536 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\WINDOWS\System32\avgrsstx.dll
[2010/07/17 08:04:04 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\WINDOWS\System32\drivers\avgldx86.sys
[2010/07/10 12:12:55 | 283,100,236 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Desktop\Hirens.BootCD.10.6.zip
[2010/07/03 19:12:37 | 000,043,520 | ---- | M] () -- E:\WINDOWS\System32\CmdLineExt03.dll
[2010/06/20 00:17:42 | 000,000,000 | -H-- | M] () -- E:\WINDOWS\System32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
[2010/06/20 00:17:42 | 000,000,000 | -H-- | M] () -- E:\WINDOWS\System32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
[2010/06/20 00:17:05 | 000,001,701 | ---- | M] () -- E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk
[2010/06/20 00:17:05 | 000,001,695 | ---- | M] () -- E:\Documents and Settings\All Users\Desktop\Logitech Mouse and Keyboard Settings.lnk
[2010/06/16 13:23:06 | 000,617,561 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Desktop\f5d7230-4_us_8.01.21.bin
[2010/06/10 17:49:16 | 000,000,227 | ---- | M] () -- E:\WINDOWS\system.ini
[2010/06/10 17:49:05 | 000,000,027 | ---- | M] () -- E:\WINDOWS\System32\drivers\etc\hosts
[2010/06/10 17:43:20 | 000,000,281 | RHS- | M] () -- E:\boot.ini
[2010/06/03 08:19:53 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) -- E:\WINDOWS\System32\drivers\avgmfx86.sys
[2010/05/27 19:42:24 | 000,149,932 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Desktop\BatmanAsGreenLantern.jpg
[2010/05/21 18:57:49 | 000,014,012 | -H-- | M] () -- E:\WINDOWS\System32\mlfcache.dat
[2010/05/21 18:57:32 | 000,002,187 | ---- | M] () -- E:\Documents and Settings\All Users\Desktop\Safari.lnk
[2010/05/21 00:38:54 | 000,090,389 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Desktop\Fringe.jpg
[2010/05/20 11:06:17 | 000,001,652 | ---- | M] () -- E:\Documents and Settings\All Users\Desktop\MD Simple Burner.lnk
[2010/05/20 10:52:47 | 000,001,612 | ---- | M] () -- E:\Documents and Settings\All Users\Desktop\SonicStage.lnk
[2010/05/17 22:38:13 | 000,207,360 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/05/12 03:00:46 | 000,001,374 | ---- | M] () -- E:\WINDOWS\imsins.BAK
[2010/05/12 00:20:58 | 001,013,293 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Desktop\129167583988157915.gif
[2010/05/12 00:20:53 | 000,985,844 | ---- | M] () -- E:\Documents and Settings\Daniel Bright\Desktop\dramaticcatu.gif
========== Files Created - No Company Name ========== [2010/07/10 12:09:20 | 283,100,236 | ---- | C] () -- E:\Documents and Settings\Daniel Bright\Desktop\Hirens.BootCD.10.6.zip
[2010/06/20 00:17:42 | 000,000,000 | -H-- | C] () -- E:\WINDOWS\System32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
[2010/06/20 00:17:42 | 000,000,000 | -H-- | C] () -- E:\WINDOWS\System32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
[2010/06/20 00:17:05 | 000,001,701 | ---- | C] () -- E:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk
[2010/06/20 00:17:05 | 000,001,695 | ---- | C] () -- E:\Documents and Settings\All Users\Desktop\Logitech Mouse and Keyboard Settings.lnk
[2010/06/16 13:23:04 | 000,617,561 | ---- | C] () -- E:\Documents and Settings\Daniel Bright\Desktop\f5d7230-4_us_8.01.21.bin
[2010/06/14 19:23:30 | 000,000,000 | ---- | C] () -- E:\Documents and Settings\Daniel Bright\Local Settings\Application Data\prvlcl.dat
[2010/06/10 17:43:20 | 000,000,210 | ---- | C] () -- E:\Boot.bak
[2010/06/10 17:43:17 | 000,260,272 | ---- | C] () -- E:\cmldr
[2010/05/27 19:42:24 | 000,149,932 | ---- | C] () -- E:\Documents and Settings\Daniel Bright\Desktop\BatmanAsGreenLantern.jpg
[2010/05/21 18:57:49 | 000,014,012 | -H-- | C] () -- E:\WINDOWS\System32\mlfcache.dat
[2010/05/21 00:38:54 | 000,090,389 | ---- | C] () -- E:\Documents and Settings\Daniel Bright\Desktop\Fringe.jpg
[2010/05/20 11:06:16 | 000,001,652 | ---- | C] () -- E:\Documents and Settings\All Users\Desktop\MD Simple Burner.lnk
[2010/05/20 10:52:47 | 000,001,612 | ---- | C] () -- E:\Documents and Settings\All Users\Desktop\SonicStage.lnk
[2010/05/20 10:52:45 | 000,532,480 | ---- | C] () -- E:\WINDOWS\System32\CddbPlaylist2Sony.dll
[2010/05/12 00:20:58 | 001,013,293 | ---- | C] () -- E:\Documents and Settings\Daniel Bright\Desktop\129167583988157915.gif
[2010/05/12 00:20:53 | 000,985,844 | ---- | C] () -- E:\Documents and Settings\Daniel Bright\Desktop\dramaticcatu.gif
[2010/04/29 15:23:31 | 000,027,475 | ---- | C] () -- E:\WINDOWS\CSTBox.INI
[2010/04/03 13:37:57 | 000,000,262 | ---- | C] () -- E:\WINDOWS\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
[2009/06/26 14:51:21 | 000,000,512 | ---- | C] () -- E:\WINDOWS\SIERRA.INI
[2009/02/21 14:06:57 | 000,043,520 | ---- | C] () -- E:\WINDOWS\System32\CmdLineExt03.dll
[2008/12/17 13:45:16 | 000,000,021 | ---- | C] () -- E:\WINDOWS\atid.ini
[2008/12/02 19:09:24 | 000,000,406 | ---- | C] () -- E:\WINDOWS\cdplayer.ini
[2008/10/16 14:10:27 | 000,000,754 | ---- | C] () -- E:\WINDOWS\WORDPAD.INI
[2008/02/18 01:09:08 | 000,000,010 | ---- | C] () -- E:\WINDOWS\WININIT.INI
[2007/12/27 14:03:29 | 000,000,352 | ---- | C] () -- E:\WINDOWS\LEXSTAT.INI
[2007/10/28 12:48:16 | 000,000,231 | ---- | C] () -- E:\WINDOWS\AC3API.INI
[2007/10/28 12:47:40 | 000,068,908 | ---- | C] () -- E:\WINDOWS\System32\Emu10kx.ini
[2007/10/28 12:47:40 | 000,000,029 | ---- | C] () -- E:\WINDOWS\System32\ctzapxx.ini
[2007/10/28 12:47:35 | 000,005,515 | ---- | C] () -- E:\WINDOWS\System32\ENSDEF.INI
[2007/10/28 12:47:35 | 000,000,194 | ---- | C] () -- E:\WINDOWS\System32\KILL.INI
[2007/10/28 12:45:33 | 000,000,136 | ---- | C] () -- E:\WINDOWS\SBWIN.INI
[2007/10/28 10:21:55 | 000,000,000 | ---- | C] () -- E:\WINDOWS\ATIMMC.INI
[2007/10/27 19:03:15 | 000,363,520 | ---- | C] () -- E:\WINDOWS\System32\psisdecd.dll
[2007/10/27 12:59:58 | 000,000,169 | ---- | C] () -- E:\WINDOWS\RtlRack.ini
[2007/10/27 11:40:47 | 000,000,164 | ---- | C] () -- E:\WINDOWS\avrack.ini
[2007/10/27 11:26:43 | 000,032,768 | R--- | C] () -- E:\WINDOWS\System32\idecoi.dll
========== LOP Check ========== [2008/12/17 13:35:42 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\acccore
[2009/06/29 21:06:50 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\AIM Toolbar
[2009/06/22 11:48:20 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\AVG Security Toolbar
[2010/02/11 13:21:40 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\avg9
[2010/03/10 22:18:06 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Driver Whiz
[2008/03/30 13:18:42 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\GameTap
[2007/11/10 12:28:26 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Grisoft
[2009/10/13 19:28:23 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Sony Online Entertainment
[2009/04/01 20:45:19 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\TEMP
[2009/06/29 21:06:40 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\Viewpoint
[2008/01/01 17:00:57 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\YAHOO
[2009/12/29 20:00:32 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009/04/15 20:57:34 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2007/12/10 18:39:39 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\.BitTornado
[2007/11/21 06:40:23 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\acccore
[2007/11/21 06:27:22 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Aim
[2009/04/27 22:12:27 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Amazon
[2009/02/21 14:07:28 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Atari
[2010/04/29 15:48:40 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Canon
[2008/04/19 11:36:02 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\CDBurnerXP_Soft
[2007/12/27 21:19:35 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\DAEMON Tools
[2008/04/01 19:30:44 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\gtk-2.0
[2009/02/21 14:06:11 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Leadertech
[2009/11/08 12:26:02 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\LimeWire
[2007/10/27 12:17:14 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Netscape
[2007/12/01 16:42:58 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Daniel Bright\Application Data\Viewpoint
[2010/07/29 21:22:37 | 000,000,438 | -H-- | M] () -- E:\WINDOWS\Tasks\User_Feed_Synchronization-{DA8277CF-BDF2-4FB2-AE41-259844296522}.job
========== Purity Check ========== < End of report >
OTL Extras logfile created on: 7/30/2010 11:23:56 AM - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = E:\Documents and Settings\Daniel Bright\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,023.00 Mb Total Physical Memory | 539.00 Mb Available Physical Memory | 53.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): E:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files
C: Drive not present or media not loaded
D: Drive not present or media not loaded
Drive E: | 149.04 Gb Total Space | 125.45 Gb Free Space | 84.17% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: DANIEL-70DB0853
Current User Name: Daniel Bright
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Standard
Quick Scan
========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
[HKEY_USERS\S-1-5-21-1547161642-1500820517-725345543-1003\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- E:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 1
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"E:\Program Files\Common Files\AOL\Loader\aolload.exe" = E:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader -- (AOL LLC)
"E:\Program Files\Yahoo!\Yahoo! Music Jukebox\YahooMusicEngine.exe" = E:\Program Files\Yahoo!\Yahoo! Music Jukebox\YahooMusicEngine.exe:*:Enabled:Yahoo! Music Jukebox -- (Yahoo! Inc.)
"E:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = E:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger -- (Yahoo! Inc.)
"E:\Program Files\AIM6\aim6.exe" = E:\Program Files\AIM6\aim6.exe:*:Enabled:AIM -- (AOL LLC)
"E:\Program Files\AVG\AVG9\avgemc.exe" = E:\Program Files\AVG\AVG9\avgemc.exe:*:Enabled:avgemc.exe -- (AVG Technologies CZ, s.r.o.)
"E:\Program Files\AVG\AVG9\avgupd.exe" = E:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe -- (AVG Technologies CZ, s.r.o.)
"E:\Program Files\AVG\AVG9\avgnsx.exe" = E:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe -- (AVG Technologies CZ, s.r.o.)
"E:\Program Files\iTunes\iTunes.exe" = E:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"E:\Program Files\Ventrilo\Ventrilo.exe" = E:\Program Files\Ventrilo\Ventrilo.exe:*:Enabled:Ventrilo.exe -- (Flagship Industries, Inc.)
========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"$NtUninstallMTF1011$" = Street-Ads Browser Enhancer
"$NtUninstallWTF1012$" = Sky-Banners browser enhancer
"{02B05067-A6BD-443F-BC52-B0084122F4CD}" = musicshakeENG
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}" = HiJackThis
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{1319A9A7-C690-285F-FB22-FC6172DF3DB9}" = ccc-core-static
"{143FB15C-0C48-41E3-9C30-F56FB69BF3D7}" = Canon CanoScan Toolbox 4.5
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{16105864-23F0-6242-A1D7-06DCB32244B6}" = Catalyst Control Center Graphics Full New
"{190772CB-88C3-BC16-D9F4-29ED96EA070F}" = Catalyst Control Center Graphics Previews Common
"{22944268-4375-294B-219A-08A9288142FC}" = CCC Help English
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java 6 Update 13
"{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper
"{3248F0A8-6813-11D6-A77B-00B0D0160030}" = Java 6 Update 3
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java 6 Update 5
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{394BE3D9-7F57-4638-A8D1-1D88671913B7}" = Microsoft AppLocale
"{3AC54383-31D1-4907-961B-B12CBB1D0AE8}" = MobileMe Control Panel
"{42095863-98D1-4A49-BDF8-638DE8A5F316}" = Sound Blaster Audigy 2
"{47E09785-B2FB-11D5-B8EE-00B0D0D26B88}" = MD Simple Burner 2.0.04
"{4C9DC3EF-B9BA-B15E-5670-D6FA8762AEA8}" = Catalyst Control Center Graphics Full Existing
"{56F3E1FF-54FE-4384-A153-6CCABA097814}" = Creative MediaSource
"{67E158AF-8856-4337-B483-EA21930786AF}" = GameTap
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6E3CEC6E-D5CD-32E7-110E-F34EB5004D26}" = Skins
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7501D933-23C3-400F-92C7-0FAD97819B48}" = Catalyst Control Center Core Implementation
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789289CA-F73A-4A16-A331-54D498CE069F}" = Ventrilo Client
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{81063354-9060-42B2-A000-1EBE96778AA9}" = iTunes
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{907B4640-266B-4A21-92FB-CD1A86CD0F63}" = RollerCoaster Tycoon 3 Platinum
"{97C0EA4A-1A0B-4C53-ACEB-49984DA79C90}" = Google Earth
"{A0EB195B-5876-48E6-879D-33D4B2102610}" = SonicStage 4.3
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A498D9EB-927B-459B-85D6-DD6EF8C2C564}" = erLT
"{A67BB21E-D419-45BB-AB86-7D87D14BBCE2}" = Safari
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AC76BA86-7AD7-1033-7B44-A71000000002}" = Adobe Reader 7.1.0
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C3ABE126-2BB2-4246-BFE1-6797679B3579}" = LG USB Modem driver
"{C4124E95-5061-4776-8D5D-E3D931C778E1}" = Microsoft VC9 runtime libraries
"{CB0D4901-BF3B-4599-6148-642E17D748CF}" = ccc-utility
"{CCD663AE-610D-4BDF-AAB0-E914B044527D}" = OpenMG Secure Module 4.7.00
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D563054D-307E-45B6-D349-1F5BFE0380A0}" = ccc-core-preinstall
"{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb" = Microsoft Windows Application Compatibility Database
"{E1B2DF7C-A176-4A1D-9D32-3CEC5037A524}" = Apple Application Support
"{E343CA30-9714-FA47-1D4F-D874B82D2404}" = Catalyst Control Center Graphics Light
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{EC3B8CA2-49B8-4D38-BE9C-ABD0F6029168}" = Yahoo! Music Jukebox
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AIM Toolbar" = AIM Toolbar
"AIM_6" = AIM 6
"All ATI Software" = ATI - Software Uninstall Utility
"Amazon MP3 Downloader" = Amazon MP3 Downloader 1.0.3
"ATI Display Driver" = ATI Display Driver
"AVG9Uninstall" = AVG Free 9.0
"Caesar 3" = Caesar 3
"CCleaner" = CCleaner
"Chicken Invaders" = Chicken Invaders (remove only)
"Enable S3 for USB Device" = Enable S3 for USB Device
"Google Updater" = Google Updater
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}" = OpenMG Secure Module 4.7.00
"JEOPARDY!" = JEOPARDY! (remove only)
"Lexmark Z600 Series" = Lexmark Z600 Series
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.6)" = Mozilla Firefox (3.6.6)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"nLite_is1" = nLite 1.4.1
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA nForce Drivers" = NVIDIA nForce Drivers
"oggcodecs" = oggcodecs 0.71.0946
"OpenMG HotFix4.7-07-13-22-01" = OpenMG Limited Patch 4.7-07-14-05-01
"PokerStars" = PokerStars
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"TestPokerStars.com" = TestPokerStars.com
"V CAST Music with Rhapsody" = V CAST Music with Rhapsody
"ViewpointMediaPlayer" = Viewpoint Media Player
"VLC media player" = VideoLAN VLC media player 0.8.6c
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"WIC" = Windows Imaging Component
"Windows Media Encoder 9" = Windows Media Encoder 9 Series
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR archiver
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"Yahoo! Companion" = Yahoo! Toolbar
"Yahoo! Mail" = Yahoo! Internet Mail
"Yahoo! Messenger" = Yahoo! Messenger
"Yahoo! Software Update" = Yahoo! Software Update
"YInstHelper" = Yahoo! Install Manager
========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-1547161642-1500820517-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"Move Media Player" = Move Media Player
========== Last 10 Event Log Errors ========== [ Application Events ]
Error - 6/25/2010 3:15:58 PM | Computer Name = DANIEL-70DB0853 | Source = Application Error | ID = 1000
Description = Faulting application iexplore.exe, version 8.0.6001.18702, faulting
module mshtml.dll, version 8.0.6001.18904, fault address 0x00331b8a.
Error - 7/20/2010 6:42:57 AM | Computer Name = DANIEL-70DB0853 | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The connection with the server was terminated abnormally
Error - 7/20/2010 6:42:57 AM | Computer Name = DANIEL-70DB0853 | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: This network connection does not exist.
Error - 7/27/2010 6:21:11 PM | Computer Name = DANIEL-70DB0853 | Source = EventSystem | ID = 4609
Description = The COM+ Event System detected a bad return code during its internal
processing. HRESULT was 8007041F from line 44 of d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.
Please contact Microsoft Product Support Services to report this erro
Error - 7/27/2010 11:42:23 PM | Computer Name = DANIEL-70DB0853 | Source = crypt32 | ID = 131083
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file.
Error - 7/27/2010 11:42:23 PM | Computer Name = DANIEL-70DB0853 | Source = crypt32 | ID = 131083
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file.
Error - 7/27/2010 11:42:38 PM | Computer Name = DANIEL-70DB0853 | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: This operation returned because the timeout period expired.
Error - 7/27/2010 11:42:38 PM | Computer Name = DANIEL-70DB0853 | Source = crypt32 | ID = 131083
Description = Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
with error: A required certificate is not within its validity period when verifying
against the current system clock or the timestamp in the signed file.
Error - 7/27/2010 11:42:38 PM | Computer Name = DANIEL-70DB0853 | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The specified server cannot perform the requested operation.
Error - 7/30/2010 10:01:04 AM | Computer Name = DANIEL-70DB0853 | Source = Application Error | ID = 1000
Description = Faulting application explorer.exe, version 6.0.2900.5512, faulting
module , version 0.0.0.0, fault address 0x00000000.
[ System Events ]
Error - 7/30/2010 10:07:44 AM | Computer Name = DANIEL-70DB0853 | Source = Service Control Manager | ID = 7000
Description = The MCSTRM service failed to start due to the following error: %%2
Error - 7/30/2010 10:07:44 AM | Computer Name = DANIEL-70DB0853 | Source = Service Control Manager | ID = 7000
Description = The ATI WDM Specialized MVD Codec service failed to start due to the
following error: %%1058
Error - 7/30/2010 10:07:44 AM | Computer Name = DANIEL-70DB0853 | Source = Service Control Manager | ID = 7000
Description = The ATI WDM Specialized PCD Codec service failed to start due to the
following error: %%1058
Error - 7/30/2010 10:07:44 AM | Computer Name = DANIEL-70DB0853 | Source = Service Control Manager | ID = 7023
Description = The Automatic Updates service terminated with the following error:
%%126
Error - 7/30/2010 10:07:46 AM | Computer Name = DANIEL-70DB0853 | Source = ati2mtag | ID = 45062
Description = CRT invalid display type
Error - 7/30/2010 10:07:56 AM | Computer Name = DANIEL-70DB0853 | Source = DCOM | ID = 10005
Description = DCOM got error "%1055" attempting to start the service netman with
arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}
Error - 7/30/2010 10:07:56 AM | Computer Name = DANIEL-70DB0853 | Source = DCOM | ID = 10005
Description = DCOM got error "%1055" attempting to start the service winmgmt with
arguments "" in order to run the server: {8BC3F05E-D86B-11D0-A075-00C04FB68820}
Error - 7/30/2010 10:07:56 AM | Computer Name = DANIEL-70DB0853 | Source = DCOM | ID = 10005
Description = DCOM got error "%1055" attempting to start the service iPod Service
with arguments "" in order to run the server: {063D34A4-BF84-4B8D-B699-E8CA06504DDE}
Error - 7/30/2010 10:08:05 AM | Computer Name = DANIEL-70DB0853 | Source = ati2mtag | ID = 45062
Description = CRT invalid display type
Error - 7/30/2010 10:58:36 AM | Computer Name = DANIEL-70DB0853 | Source = Service Control Manager | ID = 7034
Description = The MD Simple Burner Service service terminated unexpectedly. It
has done this 1 time(s).
< End of report >
Edited by CheckersMcGavern, 30 July 2010 - 10:28 AM.