Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

BSOD random reboots (ugh)I'm attaching OTL file


  • This topic is locked This topic is locked
4 replies to this topic

#1 ddaniels

ddaniels

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:02:24 PM

Posted 12 August 2010 - 01:05 PM

Hi guys!

I've been so frustrated lately with my computer randomly rebooting. I've updated all drivers, chkdsk, memtest, everything seems fine, but nothing I do eliminates the BSOD's. The standard dump shows a Bugcheck 9c {0,ba33c050,b2000000,1040080f} Windows debugging most often states ntoskrnel as the fault, but today it showed ntkrnlpa.

I feel like I've tried everything there is to try, including a complete re-install of the OS about three weeks ago. That was no help, so I imagine I either have a hardware situation, or a driver issue. The reboots happen whether I'm doing intensive graphics, gaming, surfing the net, etc. I ran verifier.exe, but I couldn't figure out any results. Then, I came here to this site and ran OTL. Wow! What an incredible program! As I read through the results (following your instructions from a different post), I see a few things that seem VERRRRRRRY suspicious!! But I haven't run the fix yet. I did notice a bit of info regarding the UPS. I have an Ativa UPS, but it does not connect to the PC via USB or anything. There are no drivers, and it simply kicks in whenever there's an outage. But I noticed that Windows reports it as being configured incorrectly. Don't know if that matters.

I appreciate ANY thoughts or suggestions!!!! THANK YOU for having a site like this!!



Below are the OTL results copied and pasted for your review (They're extremely long files...sorry about that!):

OTL File

OTL logfile created on: 8/12/2010 10:22:54 AM - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = L:\Downloads\Programs\System\SYSTEM DIAGNOSTICS\OldTimerGeekstogo
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 75.00% Memory free
5.00 Gb Paging File | 4.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): C:\pagefile.sys 2048 2048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232.88 Gb Total Space | 195.19 Gb Free Space | 83.82% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 143.30 Gb Total Space | 48.53 Gb Free Space | 33.87% Space Free | Partition Type: NTFS
Drive F: | 5.69 Gb Total Space | 1.75 Gb Free Space | 30.85% Space Free | Partition Type: FAT32
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive K: | 465.75 Gb Total Space | 295.79 Gb Free Space | 63.51% Space Free | Partition Type: NTFS
Drive L: | 298.09 Gb Total Space | 142.65 Gb Free Space | 47.85% Space Free | Partition Type: NTFS

Computer Name: FTYMAIN
Current User Name: David Daniels
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Standard
Quick Scan

========== Processes (SafeList) ==========

PRC - [2010/08/12 10:21:22 | 000,574,976 | ---- | M] (OldTimer Tools) -- L:\Downloads\Programs\System\SYSTEM DIAGNOSTICS\OldTimerGeekstogo\OTL.exe
PRC - [2010/07/14 10:22:07 | 001,101,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgchsvx.exe
PRC - [2010/07/14 10:22:07 | 000,620,896 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgnsx.exe
PRC - [2010/07/14 10:22:05 | 000,515,424 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgrsx.exe
PRC - [2010/07/14 10:22:02 | 000,723,296 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgcsrvx.exe
PRC - [2010/07/14 10:21:13 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgwdsvc.exe
PRC - [2010/06/29 22:52:48 | 003,769,752 | ---- | M] (Maxthon International ltd.) -- C:\Program Files\Maxthon2\Maxthon.exe
PRC - [2010/06/25 17:15:32 | 001,311,312 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe
PRC - [2010/06/22 12:09:20 | 000,112,208 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
PRC - [2010/05/20 10:46:28 | 000,055,016 | ---- | M] (Xobni Corporation) -- C:\Program Files\Xobni\XobniService.exe
PRC - [2010/04/19 10:25:38 | 000,430,152 | ---- | M] () -- C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe
PRC - [2010/01/31 08:01:28 | 000,045,056 | ---- | M] (Intuit) -- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
PRC - [2008/04/14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/01/16 10:10:04 | 000,316,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\DebugDiag\DbgSvc.exe
PRC - [2006/12/12 10:43:58 | 000,842,240 | ---- | M] (Creative Technology Ltd) -- C:\WINDOWS\system32\CTxfispi.exe
PRC - [2005/10/29 04:31:07 | 000,018,944 | ---- | M] (Creative Technology Ltd) -- C:\WINDOWS\system32\Ctxfihlp.exe
PRC - [2005/04/27 14:59:24 | 000,241,725 | ---- | M] (Microsoft Corporation) -- C:\Program Files\UPHClean\uphclean.exe


========== Modules (SafeList) ==========

MOD - [2010/08/12 10:21:22 | 000,574,976 | ---- | M] (OldTimer Tools) -- L:\Downloads\Programs\System\SYSTEM DIAGNOSTICS\OldTimerGeekstogo\OTL.exe
MOD - [2008/04/14 05:40:22 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx


========== Win32 Services (SafeList) ==========

SRV - [2010/07/14 10:21:13 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG9\avgwdsvc.exe -- (avg9wd)
SRV - [2010/07/14 05:54:56 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service)
SRV - [2010/05/20 10:46:28 | 000,055,016 | ---- | M] (Xobni Corporation) [Auto | Running] -- C:\Program Files\Xobni\XobniService.exe -- (XobniService)
SRV - [2010/05/14 11:00:26 | 000,249,136 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2010/05/06 02:29:12 | 000,293,456 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2010/04/19 10:25:38 | 000,430,152 | ---- | M] () [Auto | Running] -- C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe -- (AVG Security Toolbar Service)
SRV - [2010/03/18 16:47:22 | 000,035,160 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe -- (aspnet_state)
SRV - [2010/03/18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/01/31 08:01:28 | 000,045,056 | ---- | M] (Intuit) [Auto | Running] -- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe -- (QBCFMonitorService)
SRV - [2009/08/18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
SRV - [2009/06/26 09:26:20 | 000,085,504 | ---- | M] (PC Pitstop LLC) [Disabled | Stopped] -- C:\Program Files\PCPitstop\PCPitstopScheduleService.exe -- (PCPitstop Scheduling)
SRV - [2008/08/08 21:10:46 | 000,061,440 | ---- | M] (Intuit Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe -- (QBFCService)
SRV - [2007/01/16 10:10:04 | 000,316,256 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\DebugDiag\DbgSvc.exe -- (DbgSvc)
SRV - [2005/04/27 14:59:24 | 000,241,725 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\UPHClean\uphclean.exe -- (UPHClean)


========== Driver Services (SafeList) ==========

DRV - [2010/07/14 10:22:59 | 000,243,024 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2010/07/14 10:22:56 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2010/07/14 10:22:55 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2010/03/18 02:02:08 | 000,037,328 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2010/03/18 02:01:52 | 000,038,864 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2010/03/18 02:01:12 | 000,010,448 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
DRV - [2010/02/11 00:38:10 | 003,565,056 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2009/12/18 10:58:52 | 000,011,336 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\SystemRequirementsLab\cpudrv.sys -- (cpudrv)
DRV - [2009/06/04 02:46:56 | 001,324,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\CTEXFIFX.SYS -- (CTEXFIFX.SYS)
DRV - [2009/06/04 02:46:56 | 001,324,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CTEXFIFX.sys -- (CTEXFIFX)
DRV - [2009/06/04 02:46:42 | 000,072,728 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\CTHWIUT.SYS -- (CTHWIUT.SYS)
DRV - [2009/06/04 02:46:42 | 000,072,728 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CTHWIUT.sys -- (CTHWIUT)
DRV - [2009/06/04 02:46:34 | 000,171,032 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\CT20XUT.SYS -- (CT20XUT.SYS)
DRV - [2009/06/04 02:46:34 | 000,171,032 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CT20XUT.sys -- (CT20XUT)
DRV - [2008/04/09 09:48:14 | 000,010,240 | ---- | M] (Nicomsoft Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\ddcdrv.sys -- (WinI2C-DDC)
DRV - [2007/06/18 03:01:28 | 000,514,560 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM)
DRV - [2007/02/06 13:27:04 | 000,185,728 | ---- | M] (Hauppauge Computer Works, Inc.) [23|25|26]xxx) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hcwPP2.sys -- (hcwPP2)
DRV - [2006/12/19 08:36:54 | 001,160,504 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ha20x2k.sys -- (ha20x2k)
DRV - [2006/12/19 08:36:46 | 000,090,936 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emupia2k.sys -- (emupia)
DRV - [2006/12/19 08:36:42 | 000,156,984 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2006/12/19 08:36:36 | 000,014,648 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctprxy2k.sys -- (ctprxy2k)
DRV - [2006/12/19 08:36:32 | 000,128,312 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2006/12/19 08:35:40 | 000,511,288 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctac32k.sys -- (ctac32k)
DRV - [2006/09/24 06:28:46 | 000,005,248 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | Boot | Running] -- C:\WINDOWS\system32\speedfan.sys -- (speedfan)
DRV - [2006/01/19 03:17:38 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BrUsbSer.sys -- (BrUsbSer)
DRV - [2006/01/18 22:44:46 | 000,053,248 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BrSerIf.sys -- (BrSerIf)
DRV - [2005/07/13 02:18:49 | 000,340,704 | R--- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctdvda2k.sys -- (ctdvda2k)
DRV - [2004/10/15 12:50:20 | 000,015,295 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BrScnUsb.sys -- (BrScnUsb)
DRV - [1996/04/03 12:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\giveio.sys -- (giveio)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1214440339-573735546-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search"
FF - prefs.js..browser.search.defaulturl: "http://www.bing.com/search?FORM=BABTDF&PC=BBLN&q="
FF - prefs.js..browser.search.order.1: "Crawler Search"
FF - prefs.js..browser.search.selectedEngine: "Yahoo! Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://google.com/"
FF - prefs.js..extensions.enabledItems: {181bd459-8615-d6c3-b20b-255f15b9a368}:1.1
FF - prefs.js..extensions.enabledItems: {317B5128-0B0B-49b2-B2DB-1E7560E16C74}:2.5.9
FF - prefs.js..extensions.enabledItems: seoquake-plugin-seolinx@seoquake.com:1.0.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.845
FF - prefs.js..extensions.enabledItems: avg@igeared:4.504.019.002
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.8.0.12304
FF - prefs.js..extensions.enabledItems: {22119944-ED35-4ab1-910B-E619EA06A115}:6.10.0
FF - prefs.js..extensions.enabledItems: msntoolbar@msn.com:4.0
FF - prefs.js..extensions.enabledItems: {27182e60-b5f3-411c-b545-b44205977502}:1.0
FF - prefs.js..keyword.URL: "http://us.yhs.search.yahoo.com/avg/search?fr=yhs-avg&type=yahoo_avg_hs2-tb-web_us&p="

FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG9\Firefox [2010/07/20 09:40:05 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\avg@igeared: C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared [2010/07/14 10:22:49 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{22119944-ED35-4ab1-910B-E619EA06A115}: C:\Program Files\Siber Systems\AI RoboForm\Firefox [2010/07/14 02:54:00 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\msntoolbar@msn.com: C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\Firefox [2010/08/02 13:43:13 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2010/08/02 22:58:47 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/07/23 18:49:34 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/07/23 18:49:35 | 000,000,000 | ---D | M]

[2010/07/22 17:19:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Extensions
[2010/07/22 17:19:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Extensions\mozswing@mozswing.org
[2010/08/11 01:52:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Firefox\Profiles\qtzmjyek.default\extensions
[2010/07/14 05:42:39 | 000,000,000 | ---D | M] (SEO Stats - Backlinks, indexed pages, pagerank, ...) -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Firefox\Profiles\qtzmjyek.default\extensions\{181bd459-8615-d6c3-b20b-255f15b9a368}
[2010/07/22 09:07:12 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Firefox\Profiles\qtzmjyek.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/07/14 05:44:45 | 000,000,000 | ---D | M] (SeoQuake) -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Firefox\Profiles\qtzmjyek.default\extensions\{317B5128-0B0B-49b2-B2DB-1E7560E16C74}
[2010/07/14 05:45:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Firefox\Profiles\qtzmjyek.default\extensions\seoquake-plugin-seolinx@seoquake.com
[2010/08/02 10:51:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Firefox\Profiles\qtzmjyek.default\extensions\toolbar@ask.com
[2010/08/03 12:24:39 | 000,001,832 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Mozilla\Firefox\Profiles\qtzmjyek.default\searchplugins\bing.xml
[2010/08/11 01:52:39 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/07/14 09:05:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010/07/17 19:12:01 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/06/22 04:36:30 | 000,423,656 | ---- | M] (Oracle) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2009/09/21 12:24:16 | 000,001,329 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\crawlersrch.xml

O1 HOSTS File: ([2010/07/14 03:06:28 | 000,411,890 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 14235 more lines...
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O2 - BHO: (MSN Toolbar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll (Microsoft Corporation)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (no name) - AutorunsDisabled - No CLSID value found.
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKLM\..\Toolbar: (MSN Toolbar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKU\S-1-5-21-1214440339-573735546-725345543-1003\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKU\S-1-5-21-1214440339-573735546-725345543-1003\..\Toolbar\WebBrowser: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O3 - HKU\S-1-5-21-1214440339-573735546-725345543-1003\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
O3 - HKU\S-1-5-21-1214440339-573735546-725345543-1003\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [CTxfiHlp] C:\WINDOWS\System32\Ctxfihlp.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl04g\BrStDvPt.exe (Brother Industories, Ltd.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1214440339-573735546-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Customize Menu - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: Fill Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupdate/...b?1279099311437 (WUWebControl Class)
O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} http://ccfiles.creative.com/Web/softwareup...101/CTSUEng.cab (Creative Software AutoUpdate)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftu...b?1279099718156 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.systemrequirementslab.com.s...el_4.1.66.0.cab (SysInfo Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/flas...ent/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creative.com/Web/softwareup...15112/CTPID.cab (Creative Software AutoUpdate Support Package)
O16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} http://utilities.pcpitstop.com/da2/PCPitStop2.cab (PCPitstop Exam)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 68.238.64.12
O18 - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll ()
O18 - Protocol\Handler\intu-help-qb2 {84D77A00-41B5-4b8b-8ADF-86486D72E749} - C:\Program Files\Intuit\QuickBooks 2009\HelpAsyncPluggableProtocol.dll (Intuit, Inc.)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\AutorunsDisabled: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\David Daniels\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\David Daniels\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/07/13 12:23:53 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

MsConfig - State: "system.ini" - 0
MsConfig - State: "win.ini" - 0
MsConfig - State: "bootini" - 2
MsConfig - State: "services" - 0
MsConfig - State: "startup" - 0

Drivers32: midi - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midimapper - C:\WINDOWS\System32\midimap.dll (Microsoft Corporation)
Drivers32: mixer - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.imaadpcm - C:\WINDOWS\System32\imaadp32.acm (Microsoft Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.msadpcm - C:\WINDOWS\System32\msadp32.acm (Microsoft Corporation)
Drivers32: msacm.msaudio1 - C:\WINDOWS\System32\msaud32.acm (Microsoft Corporation)
Drivers32: msacm.msg711 - C:\WINDOWS\System32\msg711.acm (Microsoft Corporation)
Drivers32: msacm.msg723 - C:\WINDOWS\System32\msg723.acm (Microsoft Corporation)
Drivers32: msacm.msgsm610 - C:\WINDOWS\System32\msgsm32.acm (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.I420 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.IYUV - C:\WINDOWS\System32\iyuv_32.dll (Microsoft Corporation)
Drivers32: vidc.M261 - C:\WINDOWS\System32\msh261.drv (Microsoft Corporation)
Drivers32: vidc.M263 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.mrle - C:\WINDOWS\System32\msrle32.dll (Microsoft Corporation)
Drivers32: vidc.msvc - C:\WINDOWS\System32\msvidc32.dll (Microsoft Corporation)
Drivers32: VIDC.UYVY - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YUY2 - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YVU9 - C:\WINDOWS\System32\tsbyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YVYU - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: wave - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wavemapper - C:\WINDOWS\System32\msacm32.drv (Microsoft Corporation)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (16902109354000384)

========== Files/Folders - Created Within 90 Days ==========

[2010/08/11 07:34:01 | 000,000,000 | ---D | C] -- C:\Program Files\MSECache
[2010/08/11 00:45:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\FreeStone Group
[2010/08/11 00:45:35 | 000,000,000 | ---D | C] -- C:\Program Files\Video Card Stability Test
[2010/08/08 03:29:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\Logishrd
[2010/08/08 03:28:50 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech
[2010/08/08 01:21:53 | 000,010,240 | ---- | C] (Nicomsoft Ltd.) -- C:\WINDOWS\System32\drivers\ddcdrv.sys
[2010/08/08 01:21:52 | 000,000,000 | ---D | C] -- C:\Program Files\Display Tuner
[2010/08/08 01:13:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\My Documents\QuickMonitorProfile
[2010/08/08 00:52:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ATI
[2010/08/08 00:46:56 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2010/08/07 07:41:36 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2010/08/07 07:22:42 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
[2010/08/07 06:53:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\ApplicationHistory
[2010/08/06 18:46:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTEMP
[2010/08/05 16:14:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\FileZilla
[2010/08/05 16:14:46 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla FTP Client
[2010/08/05 16:04:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Dynamic
[2010/08/05 16:04:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Sites
[2010/08/05 16:04:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\SiteClasses
[2010/08/05 16:04:50 | 000,000,000 | ---D | C] -- C:\Program Files\CA VMN Anti-Spyware
[2010/08/05 16:04:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\EmailNotifier
[2010/08/05 16:04:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\EmailNotifier
[2010/08/05 16:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\vmntoolbar
[2010/08/05 16:04:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\vmntoolbar
[2010/08/05 16:04:42 | 000,000,000 | ---D | C] -- C:\Program Files\Visicom Media
[2010/08/05 11:03:25 | 000,000,000 | ---D | C] -- C:\Program Files\Axon Data
[2010/08/02 22:42:29 | 000,000,000 | ---D | C] -- C:\Program Files\PCPitstop
[2010/08/02 22:42:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PCPitstop
[2010/08/02 14:02:46 | 000,000,000 | ---D | C] -- C:\Program Files\SystemRequirementsLab
[2010/08/02 13:43:12 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Toolbar
[2010/08/02 13:43:05 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2010/08/02 13:42:26 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Toolbar Installer
[2010/08/02 13:42:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2010/07/30 18:05:18 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Windows Performance Toolkit
[2010/07/30 18:05:01 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Help Viewer
[2010/07/30 18:03:43 | 000,000,000 | ---D | C] -- C:\Program Files\Debugging Tools for Windows (x86)
[2010/07/30 18:03:25 | 000,000,000 | ---D | C] -- C:\Program Files\Application Verifier
[2010/07/30 18:02:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\symbols
[2010/07/30 18:02:02 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 10.0
[2010/07/30 11:26:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\WinBatch
[2010/07/30 10:20:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\AskToolbar
[2010/07/30 09:40:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\CutePDF Writer
[2010/07/30 09:11:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\Logishrd
[2010/07/30 01:01:28 | 000,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[2010/07/30 00:05:12 | 000,000,000 | ---D | C] -- C:\Program Files\GPLGS
[2010/07/30 00:04:43 | 000,000,000 | ---D | C] -- C:\Program Files\Acro Software
[2010/07/30 00:04:35 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2010/07/29 06:29:46 | 000,116,224 | ---- | C] (Xerox) -- C:\WINDOWS\System32\dllcache\xrxwiadr.dll
[2010/07/29 06:29:45 | 000,023,040 | ---- | C] (Xerox Corporation) -- C:\WINDOWS\System32\dllcache\xrxwbtmp.dll
[2010/07/29 06:29:36 | 000,099,865 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\xlog.exe
[2010/07/29 06:29:35 | 000,016,970 | ---- | C] (US Robotics MCD (Megahertz)) -- C:\WINDOWS\System32\dllcache\xem336n5.sys
[2010/07/29 06:29:18 | 000,154,624 | ---- | C] (Lucent Technologies) -- C:\WINDOWS\System32\dllcache\wlluc48.sys
[2010/07/29 06:29:18 | 000,034,890 | ---- | C] (Raytheon Corp.) -- C:\WINDOWS\System32\dllcache\wlandrv2.sys
[2010/07/29 06:29:13 | 000,771,581 | ---- | C] (Rockwell) -- C:\WINDOWS\System32\dllcache\winacisa.sys
[2010/07/29 06:29:08 | 000,035,871 | ---- | C] (Winbond Electronics Corp.) -- C:\WINDOWS\System32\dllcache\wbfirdma.sys
[2010/07/29 06:29:01 | 000,019,016 | ---- | C] (Winbond Electronics Corporation) -- C:\WINDOWS\System32\dllcache\w926nd.sys
[2010/07/29 06:29:01 | 000,016,925 | ---- | C] (Winbond Electronics Corporation) -- C:\WINDOWS\System32\dllcache\w940nd.sys
[2010/07/29 06:29:00 | 000,019,528 | ---- | C] (Winbond Electronics Corporation) -- C:\WINDOWS\System32\dllcache\w840nd.sys
[2010/07/29 06:28:58 | 000,064,605 | ---- | C] (PCtel, Inc.) -- C:\WINDOWS\System32\dllcache\vvoice.sys
[2010/07/29 06:28:57 | 000,397,502 | ---- | C] (PCtel, Inc.) -- C:\WINDOWS\System32\dllcache\vpctcom.sys
[2010/07/29 06:28:56 | 000,604,253 | ---- | C] (PCTEL, INC.) -- C:\WINDOWS\System32\dllcache\vmodem.sys
[2010/07/29 06:28:56 | 000,249,402 | ---- | C] (Xircom) -- C:\WINDOWS\System32\dllcache\vinwm.sys
[2010/07/29 06:28:51 | 000,765,884 | ---- | C] (U.S. Robotics, Inc.) -- C:\WINDOWS\System32\dllcache\usrti.sys
[2010/07/29 06:28:49 | 000,794,654 | ---- | C] (U.S. Robotics, Inc.) -- C:\WINDOWS\System32\dllcache\usr1801.sys
[2010/07/29 06:28:49 | 000,794,399 | ---- | C] (U.S. Robotics, Inc.) -- C:\WINDOWS\System32\dllcache\usr1806v.sys
[2010/07/29 06:28:49 | 000,793,598 | ---- | C] (U.S. Robotics, Inc.) -- C:\WINDOWS\System32\dllcache\usr1806.sys
[2010/07/29 06:28:43 | 000,032,384 | ---- | C] (KLSI USA, Inc.) -- C:\WINDOWS\System32\dllcache\usb101et.sys
[2010/07/29 06:28:40 | 000,050,688 | ---- | C] (UMAX DATA SYSTEMS INC.) -- C:\WINDOWS\System32\dllcache\umaxscan.dll
[2010/07/29 06:28:38 | 000,216,064 | ---- | C] (UMAX Data Systems Inc.) -- C:\WINDOWS\System32\dllcache\um34scan.dll
[2010/07/29 06:28:38 | 000,211,968 | ---- | C] (UMAX Data Systems Inc.) -- C:\WINDOWS\System32\dllcache\um54scan.dll
[2010/07/29 06:28:34 | 000,525,568 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\tridxp.dll
[2010/07/29 06:28:34 | 000,166,784 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\tridxpm.sys
[2010/07/29 06:28:33 | 000,440,576 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\tridkb.dll
[2010/07/29 06:28:33 | 000,222,336 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\trid3dm.sys
[2010/07/29 06:28:33 | 000,159,232 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\tridkbm.sys
[2010/07/29 06:28:32 | 000,315,520 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\trid3d.dll
[2010/07/29 06:28:26 | 000,123,995 | ---- | C] (Tiger Jet Network) -- C:\WINDOWS\System32\dllcache\tjisdn.sys
[2010/07/29 06:28:25 | 000,138,528 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\tgiulnt5.sys
[2010/07/29 06:28:24 | 000,081,408 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\tgiul50.dll
[2010/07/29 06:28:23 | 000,149,376 | ---- | C] (M-Systems) -- C:\WINDOWS\System32\dllcache\tffsport.sys
[2010/07/29 06:28:22 | 000,037,961 | ---- | C] (TDK Corporation) -- C:\WINDOWS\System32\dllcache\tdk100b.sys
[2010/07/29 06:28:22 | 000,017,129 | ---- | C] (TDK Corporation) -- C:\WINDOWS\System32\dllcache\tdkcd31.sys
[2010/07/29 06:28:18 | 000,172,768 | ---- | C] (Number Nine Visual Technology) -- C:\WINDOWS\System32\dllcache\t2r4disp.dll
[2010/07/29 06:28:18 | 000,036,640 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\t2r4mini.sys
[2010/07/29 06:28:11 | 000,155,648 | ---- | C] (Stallion Technologies) -- C:\WINDOWS\System32\dllcache\stlnprop.dll
[2010/07/29 06:28:11 | 000,053,248 | ---- | C] (Stallion Technologies) -- C:\WINDOWS\System32\dllcache\stlncoin.dll
[2010/07/29 06:28:10 | 000,285,760 | ---- | C] (Stallion Technologies) -- C:\WINDOWS\System32\dllcache\stlnata.sys
[2010/07/29 06:28:09 | 000,016,896 | ---- | C] (SCM Microsystems, Inc.) -- C:\WINDOWS\System32\dllcache\stcusb.sys
[2010/07/29 06:28:07 | 000,048,736 | ---- | C] (3Com) -- C:\WINDOWS\System32\dllcache\srwlnd5.sys
[2010/07/29 06:28:02 | 000,019,072 | ---- | C] (Adaptec, Inc.) -- C:\WINDOWS\System32\dllcache\sparrow.sys
[2010/07/29 06:27:54 | 000,058,368 | ---- | C] (Silicon Motion Inc.) -- C:\WINDOWS\System32\dllcache\smiminib.sys
[2010/07/29 06:27:53 | 000,147,200 | ---- | C] (Silicon Motion Inc.) -- C:\WINDOWS\System32\dllcache\smidispb.dll
[2010/07/29 06:27:53 | 000,025,034 | ---- | C] (SMC Networks, Inc.) -- C:\WINDOWS\System32\dllcache\smcpwr2n.sys
[2010/07/29 06:27:52 | 000,035,913 | ---- | C] (SMC) -- C:\WINDOWS\System32\dllcache\smcirda.sys
[2010/07/29 06:27:52 | 000,024,576 | ---- | C] (SMC Networks, Inc.) -- C:\WINDOWS\System32\dllcache\smc8000n.sys
[2010/07/29 06:27:43 | 000,091,294 | ---- | C] (SysKonnect, a business unit of Schneider & Koch & Co. Datensysteme GmbH.) -- C:\WINDOWS\System32\dllcache\skfpwin.sys
[2010/07/29 06:27:43 | 000,063,547 | ---- | C] (Symbol Technologies) -- C:\WINDOWS\System32\dllcache\sla30nd5.sys
[2010/07/29 06:27:42 | 000,094,698 | ---- | C] (SysKonnect GmbH.) -- C:\WINDOWS\System32\dllcache\sk98xwin.sys
[2010/07/29 06:27:41 | 000,032,768 | ---- | C] (SiS Corporation) -- C:\WINDOWS\System32\dllcache\sisnic.sys
[2010/07/29 06:27:34 | 000,161,568 | ---- | C] (Micro Systemation) -- C:\WINDOWS\System32\dllcache\sgsmusb.sys
[2010/07/29 06:27:33 | 000,386,560 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\sgiul50.dll
[2010/07/29 06:27:33 | 000,098,080 | ---- | C] (Trident Microsystems Inc.) -- C:\WINDOWS\System32\dllcache\sgiulnt5.sys
[2010/07/29 06:27:33 | 000,018,400 | ---- | C] (Micro Systemation) -- C:\WINDOWS\System32\dllcache\sgsmld.sys
[2010/07/29 06:27:27 | 000,017,280 | ---- | C] (SCM Microsystems) -- C:\WINDOWS\System32\dllcache\scr111.sys
[2010/07/29 06:27:26 | 000,023,936 | ---- | C] (OMNIKEY AG) -- C:\WINDOWS\System32\dllcache\sccmusbm.sys
[2010/07/29 06:27:25 | 000,023,936 | ---- | C] (OMNIKEY AG) -- C:\WINDOWS\System32\dllcache\sccmn50m.sys
[2010/07/29 06:27:22 | 000,077,824 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3sav4m.sys
[2010/07/29 06:27:21 | 000,198,400 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3sav4.dll
[2010/07/29 06:27:21 | 000,179,264 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3sav3d.dll
[2010/07/29 06:27:21 | 000,061,504 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3sav3dm.sys
[2010/07/29 06:27:20 | 000,210,496 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3mvirge.dll
[2010/07/29 06:27:20 | 000,062,496 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3mtrio.dll
[2010/07/29 06:27:20 | 000,041,216 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3mt3d.sys
[2010/07/29 06:27:19 | 000,182,272 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3mt3d.dll
[2010/07/29 06:27:19 | 000,166,720 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3m.sys
[2010/07/29 06:27:18 | 000,082,432 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia450.dll
[2010/07/29 06:27:18 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia430.dll
[2010/07/29 06:27:16 | 000,029,696 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw450ext.dll
[2010/07/29 06:27:15 | 000,027,648 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw430ext.dll
[2010/07/29 06:27:13 | 000,020,992 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\System32\dllcache\rtl8139.sys
[2010/07/29 06:27:12 | 000,019,017 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\System32\dllcache\rtl8029.sys
[2010/07/29 06:27:11 | 000,009,216 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\rsmgrstr.dll
[2010/07/29 06:27:08 | 000,079,104 | ---- | C] (Comtrol Corporation) -- C:\WINDOWS\System32\dllcache\rocket.sys
[2010/07/29 06:27:07 | 000,037,563 | ---- | C] (RadioLAN) -- C:\WINDOWS\System32\dllcache\rlnet5.sys
[2010/07/29 06:27:06 | 000,086,097 | ---- | C] (Xircom) -- C:\WINDOWS\System32\dllcache\reslog32.dll
[2010/07/29 06:27:00 | 000,714,762 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\r2mdmkxx.sys
[2010/07/29 06:26:59 | 000,899,146 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\r2mdkxga.sys
[2010/07/29 06:26:53 | 000,130,942 | ---- | C] (PCTEL, INC.) -- C:\WINDOWS\System32\dllcache\ptserlv.sys
[2010/07/29 06:26:52 | 000,128,286 | ---- | C] (PCTEL, INC.) -- C:\WINDOWS\System32\dllcache\ptserli.sys
[2010/07/29 06:26:52 | 000,112,574 | ---- | C] (PCTEL, INC.) -- C:\WINDOWS\System32\dllcache\ptserlp.sys
[2010/07/29 06:26:48 | 000,016,128 | ---- | C] (SCM Microsystems, Inc.) -- C:\WINDOWS\System32\dllcache\pscr.sys
[2010/07/29 06:26:33 | 000,169,984 | ---- | C] (Cisco Systems) -- C:\WINDOWS\System32\dllcache\pcx500.sys
[2010/07/29 06:26:33 | 000,086,016 | ---- | C] (PCtel, Inc.) -- C:\WINDOWS\System32\dllcache\pctspk.exe
[2010/07/29 06:26:32 | 000,026,153 | ---- | C] (Linksys) -- C:\WINDOWS\System32\dllcache\pcmlm56.sys
[2010/07/29 06:26:31 | 000,030,495 | ---- | C] (Linksys) -- C:\WINDOWS\System32\dllcache\pc100nds.sys
[2010/07/29 06:26:31 | 000,029,502 | ---- | C] (Marconi Communications, Inc.) -- C:\WINDOWS\System32\dllcache\pca200e.sys
[2010/07/29 06:26:24 | 000,054,186 | ---- | C] (Ositech Communications, Inc.) -- C:\WINDOWS\System32\dllcache\otcsercb.sys
[2010/07/29 06:26:23 | 000,054,528 | ---- | C] (Yamaha Corp.) -- C:\WINDOWS\System32\dllcache\opl3sax.sys
[2010/07/29 06:26:23 | 000,043,689 | ---- | C] (Ositech Communications, Inc.) -- C:\WINDOWS\System32\dllcache\otceth5.sys
[2010/07/29 06:26:23 | 000,027,209 | ---- | C] (Ositech Communications, Inc.) -- C:\WINDOWS\System32\dllcache\otc06x5.sys
[2010/07/29 06:26:15 | 000,051,552 | ---- | C] (Kensington Technology Group) -- C:\WINDOWS\System32\dllcache\ntgrip.sys
[2010/07/29 06:26:10 | 000,126,080 | ---- | C] (NeoMagic Corporation) -- C:\WINDOWS\System32\dllcache\nm5a2wdm.sys
[2010/07/29 06:26:10 | 000,087,040 | ---- | C] (NeoMagic Corporation) -- C:\WINDOWS\System32\dllcache\nm6wdm.sys
[2010/07/29 06:26:09 | 000,032,840 | ---- | C] (NETGEAR Corporation.) -- C:\WINDOWS\System32\dllcache\ngrpci.sys
[2010/07/29 06:26:07 | 000,132,695 | ---- | C] (802.11b) -- C:\WINDOWS\System32\dllcache\netwlan5.sys
[2010/07/29 06:26:05 | 000,039,264 | ---- | C] (NeoMagic Corporation) -- C:\WINDOWS\System32\dllcache\neo20xx.sys
[2010/07/29 06:26:04 | 000,060,480 | ---- | C] (NeoMagic Corporation) -- C:\WINDOWS\System32\dllcache\neo20xx.dll
[2010/07/29 06:26:02 | 000,091,488 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i3disp.dll
[2010/07/29 06:26:02 | 000,027,936 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i3d.sys
[2010/07/29 06:26:01 | 000,059,104 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i128v2.dll
[2010/07/29 06:26:01 | 000,033,088 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i128v2.sys
[2010/07/29 06:26:01 | 000,013,664 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i128.sys
[2010/07/29 06:26:00 | 000,035,392 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i128.dll
[2010/07/29 06:25:59 | 000,075,520 | ---- | C] (Moxa Technologies Co., Ltd.) -- C:\WINDOWS\System32\dllcache\mxport.sys
[2010/07/29 06:25:59 | 000,007,168 | ---- | C] (Moxa Technologies Co., Ltd) -- C:\WINDOWS\System32\dllcache\mxport.dll
[2010/07/29 06:25:58 | 000,021,888 | ---- | C] (Moxa Technologies Co., Ltd.) -- C:\WINDOWS\System32\dllcache\mxcard.sys
[2010/07/29 06:25:58 | 000,019,968 | ---- | C] (Moxa Technologies Co., Ltd) -- C:\WINDOWS\System32\dllcache\mxicfg.dll
[2010/07/29 06:25:58 | 000,019,968 | ---- | C] (Macronix International Co., Ltd. ) -- C:\WINDOWS\System32\dllcache\mxnic.sys
[2010/07/29 06:25:57 | 000,103,296 | ---- | C] (Matrox Graphics Inc) -- C:\WINDOWS\System32\dllcache\mtxvideo.sys
[2010/07/29 06:25:34 | 000,017,280 | ---- | C] (American Megatrends Inc.) -- C:\WINDOWS\System32\dllcache\mraid35x.sys
[2010/07/29 06:25:21 | 000,164,586 | ---- | C] (Madge Networks Ltd) -- C:\WINDOWS\System32\dllcache\mdgndis5.sys
[2010/07/29 06:25:16 | 000,802,683 | ---- | C] (Lucent Technologies) -- C:\WINDOWS\System32\dllcache\ltsm.sys
[2010/07/29 06:25:16 | 000,797,500 | ---- | C] (LT) -- C:\WINDOWS\System32\dllcache\ltsmt.sys
[2010/07/29 06:25:14 | 000,606,684 | ---- | C] (LT) -- C:\WINDOWS\System32\dllcache\ltmdmnt.sys
[2010/07/29 06:25:14 | 000,576,746 | ---- | C] (LT) -- C:\WINDOWS\System32\dllcache\ltmdmntl.sys
[2010/07/29 06:25:14 | 000,420,992 | ---- | C] (LT) -- C:\WINDOWS\System32\dllcache\ltmdmntt.sys
[2010/07/29 06:25:13 | 000,727,786 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\ltck000c.sys
[2010/07/29 06:25:10 | 000,070,730 | ---- | C] (Linksys Group, Inc.) -- C:\WINDOWS\System32\dllcache\lne100tx.sys
[2010/07/29 06:25:10 | 000,020,573 | ---- | C] (The Linksts Group ) -- C:\WINDOWS\System32\dllcache\lne100.sys
[2010/07/29 06:25:09 | 000,025,065 | ---- | C] (D-Link) -- C:\WINDOWS\System32\dllcache\lmndis3.sys
[2010/07/29 06:25:08 | 000,015,744 | ---- | C] (Litronic Industries) -- C:\WINDOWS\System32\dllcache\lit220p.sys
[2010/07/29 06:25:05 | 000,026,442 | ---- | C] (SMSC) -- C:\WINDOWS\System32\dllcache\lanepic5.sys
[2010/07/29 06:25:04 | 000,019,016 | ---- | C] (Kingston Technology Company ) -- C:\WINDOWS\System32\dllcache\ktc111.sys
[2010/07/29 06:24:36 | 000,023,552 | ---- | C] (MKNet Corporation) -- C:\WINDOWS\System32\dllcache\irmk7.sys
[2010/07/29 06:24:32 | 000,045,632 | ---- | C] (Interphase ® Corporation a Windows ® 2000 DDK Driver Provider) -- C:\WINDOWS\System32\dllcache\ip5515.sys
[2010/07/29 06:24:12 | 000,372,824 | ---- | C] (Xircom) -- C:\WINDOWS\System32\dllcache\iconf32.dll
[2010/07/29 06:23:46 | 000,068,608 | ---- | C] (Avisioin) -- C:\WINDOWS\System32\dllcache\hpgt53tk.dll
[2010/07/29 06:23:45 | 000,126,976 | ---- | C] (Hewlett Packard) -- C:\WINDOWS\System32\dllcache\hpgt34tk.dll
[2010/07/29 06:23:37 | 000,028,288 | ---- | C] (Gemplus) -- C:\WINDOWS\System32\dllcache\grserial.sys
[2010/07/29 06:23:36 | 000,082,304 | ---- | C] (Gemplus) -- C:\WINDOWS\System32\dllcache\grclass.sys
[2010/07/29 06:23:36 | 000,017,408 | ---- | C] (Gemplus) -- C:\WINDOWS\System32\dllcache\gpr400.sys
[2010/07/29 06:23:31 | 000,454,912 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fxusbase.sys
[2010/07/29 06:23:25 | 000,455,680 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fus2base.sys
[2010/07/29 06:23:25 | 000,455,296 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fusbbase.sys
[2010/07/29 06:23:22 | 000,442,240 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fpnpbase.sys
[2010/07/29 06:23:22 | 000,441,728 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fpcmbase.sys
[2010/07/29 06:23:21 | 000,444,416 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fpcibase.sys
[2010/07/29 06:23:20 | 000,034,173 | ---- | C] (Marconi Communications, Inc.) -- C:\WINDOWS\System32\dllcache\forehe.sys
[2010/07/29 06:23:15 | 000,024,618 | ---- | C] (NETGEAR) -- C:\WINDOWS\System32\dllcache\fa410nd5.sys
[2010/07/29 06:23:14 | 000,012,362 | ---- | C] (FUJITSU LIMITED) -- C:\WINDOWS\System32\dllcache\f3ab18xi.sys
[2010/07/29 06:23:14 | 000,011,850 | ---- | C] (FUJITSU LIMITED) -- C:\WINDOWS\System32\dllcache\f3ab18xj.sys
[2010/07/29 06:23:06 | 000,072,192 | ---- | C] (ESS Technology Inc.) -- C:\WINDOWS\System32\dllcache\es1969.sys
[2010/07/29 06:22:49 | 000,334,208 | ---- | C] (Yamaha Corp.) -- C:\WINDOWS\System32\dllcache\ds1wdm.sys
[2010/07/29 06:22:45 | 000,028,062 | ---- | C] (National Semiconductor Coproration) -- C:\WINDOWS\System32\dllcache\dp83820.sys
[2010/07/29 06:22:40 | 000,029,696 | ---- | C] (CNet Technology, Inc. ) -- C:\WINDOWS\System32\dllcache\dm9pci5.sys
[2010/07/29 06:22:39 | 000,952,007 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\diwan.sys
[2010/07/29 06:22:39 | 000,026,698 | ---- | C] (D-Link Corporation) -- C:\WINDOWS\System32\dllcache\dlh5xnd5.sys
[2010/07/29 06:22:38 | 000,236,060 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\ditrace.exe
[2010/07/29 06:22:37 | 000,038,985 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\disrvsu.dll
[2010/07/29 06:22:37 | 000,031,305 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\disrvpp.dll
[2010/07/29 06:22:37 | 000,006,729 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\disrvci.dll
[2010/07/29 06:22:35 | 000,091,305 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\dimaint.sys
[2010/07/29 06:22:29 | 000,024,649 | ---- | C] (D-Link) -- C:\WINDOWS\System32\dllcache\dfe650d.sys
[2010/07/29 06:22:28 | 000,024,648 | ---- | C] (D-Link) -- C:\WINDOWS\System32\dllcache\dfe650.sys
[2010/07/29 06:22:27 | 000,020,928 | ---- | C] (Digital Networks, LLC) -- C:\WINDOWS\System32\dllcache\defpa.sys
[2010/07/29 06:22:18 | 000,111,872 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwcspud.sys
[2010/07/29 06:22:18 | 000,093,952 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwcwdm.sys
[2010/07/29 06:22:18 | 000,048,640 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwrwdm.sys
[2010/07/29 06:22:17 | 000,072,832 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwbwdm.sys
[2010/07/29 06:22:17 | 000,003,584 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwcosnt5.sys
[2010/07/29 06:22:17 | 000,003,072 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwbmidi.sys
[2010/07/29 06:22:16 | 000,003,072 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwbase.sys
[2010/07/29 06:22:15 | 000,249,856 | ---- | C] (Comtrol® Corporation) -- C:\WINDOWS\System32\dllcache\ctmasetp.dll
[2010/07/29 06:22:12 | 000,216,064 | ---- | C] (COMPAQ Inc.) -- C:\WINDOWS\System32\dllcache\cpscan.dll
[2010/07/29 06:22:11 | 000,060,970 | ---- | C] (Compaq Computer Corp.) -- C:\WINDOWS\System32\dllcache\cpqtrnd5.sys
[2010/07/29 06:22:04 | 000,020,736 | ---- | C] (OMNIKEY AG) -- C:\WINDOWS\System32\dllcache\cmbp0wdm.sys
[2010/07/29 06:21:59 | 000,980,034 | ---- | C] (Xircom) -- C:\WINDOWS\System32\dllcache\cicap.sys
[2010/07/29 06:21:52 | 000,049,182 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cem56n5.sys
[2010/07/29 06:21:52 | 000,022,044 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cem33n5.sys
[2010/07/29 06:21:51 | 000,027,164 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\ce3n5.sys
[2010/07/29 06:21:51 | 000,022,044 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cem28n5.sys
[2010/07/29 06:21:51 | 000,021,530 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\ce2n5.sys
[2010/07/29 06:21:49 | 000,714,698 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cbmdmkxx.sys
[2010/07/29 06:21:49 | 000,046,108 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cben5.sys
[2010/07/29 06:21:48 | 000,039,680 | ---- | C] (Silicom Ltd.) -- C:\WINDOWS\System32\dllcache\cb325.sys
[2010/07/29 06:21:48 | 000,037,916 | ---- | C] (Fast Ethernet Controller Provider) -- C:\WINDOWS\System32\dllcache\cb102.sys
[2010/07/29 06:21:47 | 000,164,923 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\diapi2.sys
[2010/07/29 06:21:47 | 000,032,256 | ---- | C] (Eicon Technology Corporation) -- C:\WINDOWS\System32\dllcache\diapi2NT.dll
[2010/07/29 06:21:21 | 000,031,529 | ---- | C] (BreezeCOM) -- C:\WINDOWS\System32\dllcache\brzwlan.sys
[2010/07/29 06:21:20 | 000,011,008 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brusbmdm.sys
[2010/07/29 06:21:20 | 000,010,368 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brusbscn.sys
[2010/07/29 06:21:19 | 000,060,416 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brserwdm.sys
[2010/07/29 06:21:19 | 000,009,728 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brserif.dll
[2010/07/29 06:21:19 | 000,005,120 | ---- | C] (Brother Industries,Ltd.) -- C:\WINDOWS\System32\dllcache\brscnrsm.dll
[2010/07/29 06:21:18 | 000,039,552 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brparwdm.sys
[2010/07/29 06:21:18 | 000,003,168 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brparimg.sys
[2010/07/29 06:21:17 | 000,041,472 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brmfusb.dll
[2010/07/29 06:21:16 | 000,032,256 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brmfrsmg.exe
[2010/07/29 06:21:16 | 000,029,696 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brmflpt.dll
[2010/07/29 06:21:15 | 000,015,360 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brmfbidi.dll
[2010/07/29 06:21:15 | 000,003,968 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brfiltup.sys
[2010/07/29 06:21:14 | 000,012,800 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brevif.dll
[2010/07/29 06:21:14 | 000,012,160 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brfiltlo.sys
[2010/07/29 06:21:14 | 000,002,944 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brfilt.sys
[2010/07/29 06:21:13 | 000,019,456 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brbidiif.dll
[2010/07/29 06:21:13 | 000,009,728 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brcoinst.dll
[2010/07/29 06:21:10 | 000,871,388 | ---- | C] (BCM) -- C:\WINDOWS\System32\dllcache\bcmdm.sys
[2010/07/29 06:21:07 | 000,036,128 | ---- | C] (3Dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\banshee.sys
[2010/07/29 06:21:06 | 000,342,336 | ---- | C] (3Dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\banshee.dll
[2010/07/29 06:21:06 | 000,089,952 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\b1cbase.sys
[2010/07/29 06:21:05 | 000,036,992 | ---- | C] (Aztech Systems Ltd) -- C:\WINDOWS\System32\dllcache\aztw2320.sys
[2010/07/29 06:21:04 | 000,144,384 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\avmenum.dll
[2010/07/29 06:21:04 | 000,087,552 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\avmcoxp.dll
[2010/07/29 06:21:04 | 000,037,568 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\avmwan.sys
[2010/07/29 06:20:43 | 000,077,568 | ---- | C] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\dllcache\ati.sys
[2010/07/29 06:20:40 | 000,097,354 | ---- | C] (Bay Networks, Inc.) -- C:\WINDOWS\System32\dllcache\aspndis3.sys
[2010/07/29 06:20:35 | 000,016,969 | ---- | C] (AmbiCom, Inc.) -- C:\WINDOWS\System32\dllcache\amb8002.sys
[2010/07/29 06:19:24 | 000,046,112 | ---- | C] (Adaptec, Inc ) -- C:\WINDOWS\System32\dllcache\adptsf50.sys
[2010/07/29 06:19:23 | 000,010,880 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\admjoy.sys
[2010/07/29 06:19:22 | 000,747,392 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8830.sys
[2010/07/29 06:19:22 | 000,553,984 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8820.sys
[2010/07/29 06:19:21 | 000,584,448 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8810.sys
[2010/07/29 06:19:21 | 000,020,160 | ---- | C] (ADMtek Incorporated) -- C:\WINDOWS\System32\dllcache\adm8511.sys
[2010/07/29 06:19:20 | 000,061,440 | ---- | C] (Color Flatbed Scanner) -- C:\WINDOWS\System32\dllcache\acerscad.dll
[2010/07/29 06:19:19 | 000,297,728 | ---- | C] (Silicon Integrated Systems Corp.) -- C:\WINDOWS\System32\dllcache\ac97sis.sys
[2010/07/29 06:19:17 | 000,462,848 | ---- | C] (Aureal Inc.) -- C:\WINDOWS\System32\dllcache\a3dapi.dll
[2010/07/29 06:19:13 | 000,762,780 | ---- | C] (3Com, Inc.) -- C:\WINDOWS\System32\dllcache\3cwmcru.sys
[2010/07/29 06:19:13 | 000,689,216 | ---- | C] (3dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\3dfxvs.dll
[2010/07/29 06:19:13 | 000,148,352 | ---- | C] (3dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\3dfxvsm.sys
[2010/07/28 17:32:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Blue Cat Audio
[2010/07/28 17:32:45 | 000,000,000 | ---D | C] -- C:\Program Files\Steinberg
[2010/07/28 17:16:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\My Documents\Native Instruments
[2010/07/28 17:13:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\My Documents\Cakewalk
[2010/07/28 17:13:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Cakewalk
[2010/07/28 17:12:55 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{97E08DC0-965D-4C12-A6C3-4FD1BA922ABC}
[2010/07/28 17:12:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Digidesign
[2010/07/28 17:12:43 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{4CE04D88-061C-4755-BC63-CF32D41615A4}
[2010/07/28 17:12:40 | 000,000,000 | ---D | C] -- C:\Program Files\Native Instruments
[2010/07/28 17:12:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Native Instruments
[2010/07/28 17:08:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Identities
[2010/07/28 17:00:32 | 000,233,472 | ---- | C] (Propellerhead Software AB) -- C:\WINDOWS\System32\REX Shared Library.dll
[2010/07/28 17:00:30 | 000,368,640 | ---- | C] (Propellerhead Software AB) -- C:\WINDOWS\System32\ReWire.dll
[2010/07/28 16:57:22 | 000,000,000 | ---D | C] -- C:\Cakewalk Projects
[2010/07/28 16:57:22 | 000,000,000 | ---D | C] -- C:\Program Files\Cakewalk
[2010/07/28 16:57:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Cakewalk
[2010/07/28 15:27:05 | 000,000,000 | ---D | C] -- C:\Program Files\Dacris Software
[2010/07/28 15:08:38 | 000,000,000 | ---D | C] -- C:\symcache
[2010/07/28 15:07:27 | 000,000,000 | ---D | C] -- C:\Program Files\DebugDiag
[2010/07/28 14:45:01 | 000,360,580 | ---- | C] (eSellerate Inc.) -- C:\WINDOWS\eSellerateEngine.dll
[2010/07/28 14:45:01 | 000,000,000 | ---D | C] -- C:\Program Files\Hot CPU Tester Pro 4 LE
[2010/07/28 13:43:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\atitray
[2010/07/28 13:43:19 | 000,000,000 | ---D | C] -- C:\Program Files\Ray Adams
[2010/07/28 10:36:28 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2010/07/26 18:54:10 | 000,000,000 | ---D | C] -- C:\Program Files\Hard Disk Sentinel
[2010/07/26 09:37:42 | 000,000,000 | ---D | C] -- C:\Program Files\Recuva
[2010/07/26 09:27:03 | 000,000,000 | ---D | C] -- C:\Program Files\Phoenix Technologies
[2010/07/26 09:12:28 | 000,000,000 | ---D | C] -- C:\Program Files\2BrightSparks
[2010/07/26 08:08:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\Xobni
[2010/07/26 08:07:54 | 000,000,000 | ---D | C] -- C:\Program Files\Xobni
[2010/07/24 23:24:45 | 000,027,136 | ---- | C] (CPUID) -- C:\WINDOWS\System32\PCWizard.cpl
[2010/07/24 23:24:44 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID
[2010/07/24 00:06:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\F-Secure
[2010/07/22 17:19:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\MozSwing
[2010/07/22 17:17:23 | 000,000,000 | ---D | C] -- C:\Program Files\SEO PowerSuite
[2010/07/22 09:09:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\GoodSync
[2010/07/22 09:09:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\GoodSync
[2010/07/22 00:49:45 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2010/07/21 23:50:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\My Documents\Sysinternals Autoruns
[2010/07/21 23:21:07 | 000,161,296 | ---- | C] (Trend Micro Inc.) -- C:\WINDOWS\System32\drivers\tmcomm.sys
[2010/07/21 23:21:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\log
[2010/07/21 23:13:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2010/07/21 23:11:13 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010/07/20 10:27:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2010/07/20 09:59:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google
[2010/07/20 09:31:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\Options
[2010/07/20 09:06:25 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\David Daniels\Recent
[2010/07/19 18:35:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\MxBoost
[2010/07/19 18:35:41 | 000,000,000 | ---D | C] -- C:\Program Files\Maxthon2
[2010/07/18 22:46:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\Intuit
[2010/07/18 22:45:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Intuit
[2010/07/18 22:41:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\supportsoft
[2010/07/18 22:41:27 | 001,843,200 | ---- | C] (Apache Software Foundation) -- C:\WINDOWS\System32\acXMLParser.dll
[2010/07/18 22:41:26 | 003,833,856 | ---- | C] (Amyuni Technologies
http://www.amyuni.com) -- C:\WINDOWS\System32\cdintf300.dll
[2010/07/18 22:36:22 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intuit
[2010/07/18 22:36:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\Intuit
[2010/07/18 22:36:21 | 000,000,000 | ---D | C] -- C:\Program Files\Intuit
[2010/07/18 22:36:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Intuit
[2010/07/18 22:34:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SQL Anywhere 10
[2010/07/18 22:34:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\COMMON FILES
[2010/07/18 14:40:55 | 000,000,000 | ---D | C] -- C:\Program Files\SpeedFan
[2010/07/18 14:00:16 | 000,000,000 | ---D | C] -- C:\Program Files\UPHClean
[2010/07/18 01:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Creative
[2010/07/18 00:46:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\PunkBuster
[2010/07/18 00:46:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2010/07/18 00:34:15 | 000,000,000 | ---D | C] -- C:\VST Plugins
[2010/07/17 23:59:30 | 000,000,000 | ---D | C] -- C:\Program Files\Activision
[2010/07/17 23:58:08 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache
[2010/07/17 19:12:36 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2010/07/17 19:12:19 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2010/07/17 19:11:59 | 000,153,376 | ---- | C] (Oracle) -- C:\WINDOWS\System32\javaws.exe
[2010/07/17 19:11:59 | 000,145,184 | ---- | C] (Oracle) -- C:\WINDOWS\System32\javaw.exe
[2010/07/17 19:11:59 | 000,145,184 | ---- | C] (Oracle) -- C:\WINDOWS\System32\java.exe
[2010/07/16 19:06:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2010/07/16 19:06:21 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2010/07/16 19:06:15 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010/07/16 10:23:49 | 000,120,832 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\BrWia04b.dll
[2010/07/16 10:23:49 | 000,037,888 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\BrUSi04b.dll
[2010/07/16 10:23:49 | 000,011,904 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\drivers\BrUsbSer.sys
[2010/07/16 10:23:48 | 000,053,248 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\drivers\BrSerIf.sys
[2010/07/16 10:23:48 | 000,015,295 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\drivers\BrScnUsb.sys
[2010/07/16 10:23:45 | 000,073,728 | ---- | C] (Brother Industries Ltd) -- C:\WINDOWS\System32\brrbtool.exe
[2010/07/16 10:23:45 | 000,024,223 | ---- | C] (brother Industries Ltd) -- C:\WINDOWS\System32\brlm03a.dll
[2010/07/16 10:23:44 | 000,188,416 | ---- | C] (brother) -- C:\WINDOWS\System32\PDRVINST.DLL
[2010/07/16 10:23:44 | 000,081,920 | ---- | C] (brother) -- C:\WINDOWS\System32\BrWebIns.dll
[2010/07/16 10:23:44 | 000,065,536 | ---- | C] (brother) -- C:\WINDOWS\System32\BRWEBUP.EXE
[2010/07/16 10:23:40 | 000,122,880 | ---- | C] (Brother Industries,LTD) -- C:\WINDOWS\System32\BrfxD04a.dll
[2010/07/16 10:23:39 | 000,000,000 | ---D | C] -- C:\Program Files\Brother
[2010/07/16 09:47:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Color
[2010/07/16 09:44:40 | 000,000,000 | ---D | C] -- C:\Program Files\QuantumDigital
[2010/07/16 09:35:03 | 000,000,000 | -H-D | C] -- C:\$AVG
[2010/07/14 21:38:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2010/07/14 21:38:04 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2010/07/14 20:49:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\My Documents\My Notebook
[2010/07/14 20:20:58 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\David Daniels\IECompatCache
[2010/07/14 20:19:44 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\David Daniels\PrivacIE
[2010/07/14 20:18:38 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\David Daniels\IETldCache
[2010/07/14 20:15:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2010/07/14 20:12:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2010/07/14 20:11:03 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2010/07/14 11:01:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\System
[2010/07/14 11:01:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\Personal
[2010/07/14 11:01:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\Office Programs
[2010/07/14 11:01:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\Music Programs
[2010/07/14 11:01:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\Other Links
[2010/07/14 11:01:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\Internet
[2010/07/14 11:00:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\Graphics
[2010/07/14 11:00:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\Games
[2010/07/14 11:00:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop\Favorites
[2010/07/14 10:59:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\Temp
[2010/07/14 10:37:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\AVG Security Toolbar
[2010/07/14 10:22:59 | 000,012,536 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\avgrsstx.dll
[2010/07/14 10:22:56 | 000,243,024 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgtdix.sys
[2010/07/14 10:22:55 | 000,216,400 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgldx86.sys
[2010/07/14 10:22:53 | 000,029,584 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgmfx86.sys
[2010/07/14 10:22:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\Avg
[2010/07/14 10:22:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar
[2010/07/14 10:19:14 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2010/07/14 10:18:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\avg9
[2010/07/14 10:04:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Corel
[2010/07/14 10:01:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\InstallShield
[2010/07/14 09:59:32 | 000,000,000 | ---D | C] -- C:\Program Files\Corel
[2010/07/14 09:59:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Corel
[2010/07/14 09:08:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2010/07/14 09:05:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2010/07/14 09:05:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sun
[2010/07/14 09:05:05 | 000,423,656 | ---- | C] (Oracle) -- C:\WINDOWS\System32\deployJava1.dll
[2010/07/14 09:05:05 | 000,073,728 | ---- | C] (Oracle) -- C:\WINDOWS\System32\javacpl.cpl
[2010/07/14 09:04:54 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2010/07/14 09:04:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Sun
[2010/07/14 08:49:19 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\WINDOWS\System32\CSVer.dll
[2010/07/14 08:49:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2010/07/14 08:49:01 | 000,000,000 | ---D | C] -- C:\Intel
[2010/07/14 08:10:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\My Documents\Registry Backups
[2010/07/14 06:40:48 | 000,051,712 | ---- | C] (Brother Industries,Ltd.) -- C:\WINDOWS\System32\brinsstr.dll
[2010/07/14 06:40:34 | 000,000,000 | ---D | C] -- C:\Brother
[2010/07/14 06:40:28 | 000,147,456 | ---- | C] (Brother Industries,Ltd.) -- C:\WINDOWS\brunin03.dll
[2010/07/14 06:39:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Brother
[2010/07/14 05:54:56 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Creative Labs Shared
[2010/07/14 05:54:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Creative
[2010/07/14 05:54:47 | 000,000,000 | ---D | C] -- C:\Program Files\Creative
[2010/07/14 05:54:10 | 000,000,000 | ---D | C] -- C:\Program Files\OpenAL
[2010/07/14 05:53:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Data
[2010/07/14 05:50:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\My Documents\Downloads
[2010/07/14 05:30:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\Mozilla
[2010/07/14 05:30:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Mozilla
[2010/07/14 05:30:49 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010/07/14 05:24:59 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2010/07/14 05:03:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2010/07/14 04:54:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2010/07/14 04:50:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\Google
[2010/07/14 04:50:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Google
[2010/07/14 04:38:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Macromedia
[2010/07/14 04:38:17 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2010/07/14 04:38:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NOS
[2010/07/14 04:36:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Serif
[2010/07/14 04:24:22 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft ActiveSync
[2010/07/14 04:24:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2010/07/14 04:23:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\SHELLNEW
[2010/07/14 04:22:50 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2010/07/14 04:21:47 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2010/07/14 04:06:43 | 000,000,000 | ---D | C] -- C:\Program Files\Serif
[2010/07/14 03:57:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\ATI
[2010/07/14 03:57:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\ATI
[2010/07/14 03:19:30 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2010/07/14 03:19:03 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2010/07/14 03:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2010/07/14 03:02:29 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2010/07/14 03:02:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2010/07/14 02:57:39 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010/07/14 02:56:45 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip
[2010/07/14 02:54:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\RoboForm
[2010/07/14 02:53:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\My Documents\My RoboForm Data
[2010/07/14 02:53:12 | 000,000,000 | ---D | C] -- C:\Program Files\Siber Systems
[2010/07/14 02:51:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\Adobe
[2010/07/14 02:51:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Adobe
[2010/07/14 02:49:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Leadertech
[2010/07/14 02:49:14 | 000,016,400 | ---- | C] (Logitech, Inc.) -- C:\WINDOWS\System32\drivers\LNonPnP.sys
[2010/07/14 02:48:50 | 000,010,448 | ---- | C] (Logitech, Inc.) -- C:\WINDOWS\System32\drivers\LBeepKE.sys
[2010/07/14 02:48:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Logishrd
[2010/07/14 02:48:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\LogiShrd
[2010/07/14 02:48:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Logitech
[2010/07/14 02:48:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Logishrd
[2010/07/14 02:47:51 | 000,000,000 | ---D | C] -- C:\Program Files\Notepad++
[2010/07/14 02:47:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Notepad++
[2010/07/14 02:45:44 | 000,000,000 | R--D | C] -- C:\Documents and Settings\David Daniels\My Documents\My Videos
[2010/07/14 02:44:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2010/07/14 02:40:26 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010/07/14 02:40:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\GlarySoft
[2010/07/14 02:38:08 | 000,000,000 | ---D | C] -- C:\Program Files\Glary Utilities
[2010/07/14 02:36:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2010/07/14 02:36:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010/07/14 02:36:07 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010/07/14 02:23:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2010/07/14 02:21:48 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\David Daniels\UserData
[2010/07/14 02:03:40 | 000,000,000 | ---D | C] -- C:\ATI
[2010/07/14 02:00:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010/07/14 01:56:22 | 000,627,200 | ---- | C] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\sprc0419.dll
[2010/07/14 01:56:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2010/07/14 01:56:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010/07/14 01:56:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2010/07/14 01:56:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2010/07/14 01:56:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010/07/14 01:55:32 | 000,029,184 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll
[2010/07/14 01:55:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2010/07/14 01:54:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2010/07/14 01:53:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2010/07/14 01:51:27 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010/07/14 01:47:15 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010/07/14 01:47:06 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010/07/14 01:45:55 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2010/07/13 12:27:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Application Data\Identities
[2010/07/13 12:27:45 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2010/07/13 12:27:43 | 000,000,000 | R--D | C] -- C:\Documents and Settings\David Daniels\My Documents\My Pictures
[2010/07/13 12:27:43 | 000,000,000 | R--D | C] -- C:\Documents and Settings\David Daniels\My Documents\My Music
[2010/07/13 12:27:40 | 000,000,000 | --SD | C] -- C:\Documents and Settings\David Daniels\Application Data\Microsoft
[2010/07/13 12:27:40 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\David Daniels\SendTo
[2010/07/13 12:27:40 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\David Daniels\Application Data
[2010/07/13 12:27:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\David Daniels\Start Menu
[2010/07/13 12:27:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\David Daniels\My Documents
[2010/07/13 12:27:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\David Daniels\Favorites
[2010/07/13 12:27:40 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\David Daniels\Cookies
[2010/07/13 12:27:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\David Daniels\Templates
[2010/07/13 12:27:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\David Daniels\PrintHood
[2010/07/13 12:27:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\David Daniels\NetHood
[2010/07/13 12:27:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\David Daniels\Local Settings
[2010/07/13 12:27:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\Microsoft
[2010/07/13 12:27:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\David Daniels\Desktop
[2010/07/13 12:26:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2010/07/13 12:26:48 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2010/07/13 12:26:47 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2010/07/13 12:26:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2010/07/13 12:26:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2010/07/13 12:26:30 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2010/07/13 12:25:23 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010/07/13 12:25:23 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010/07/13 12:24:31 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010/07/13 12:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2010/07/13 12:24:08 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2010/07/13 12:24:08 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2010/07/13 12:23:04 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2010/07/13 12:22:56 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2010/07/13 12:22:56 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2010/07/13 12:22:46 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2010/07/13 12:22:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2010/07/13 12:22:04 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2010/07/13 12:22:02 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2010/07/13 12:22:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2010/07/13 12:21:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2010/07/13 12:21:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2010/07/13 12:21:51 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2010/07/13 12:21:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2010/07/13 12:21:41 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2010/07/13 12:21:39 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2010/07/13 12:21:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2010/07/13 12:21:33 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2010/07/13 12:21:32 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Pictures
[2010/07/13 12:21:03 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2010/07/13 12:20:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2010/07/13 12:20:51 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Music
[2010/07/13 12:20:51 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2010/07/13 12:20:51 | 000,000,000 | ---D | C] -- C:\Program Files\Online Services
[2010/07/13 12:20:46 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2010/07/13 12:20:43 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2010/07/13 12:20:11 | 000,000,000 | ---D | C] -- C:\Program Files\MSN
[2010/07/13 12:20:10 | 000,281,088 | ---- | C] (Cinematronics) -- C:\WINDOWS\System32\dllcache\pinball.exe
[2010/07/13 12:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2010/07/13 12:20:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2010/07/13 12:20:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[2010/07/13 12:19:49 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Videos
[2010/07/13 04:53:08 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2010/07/13 04:53:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2010/07/13 04:53:03 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2010/07/13 04:53:03 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2010/07/13 04:53:02 | 000,000,000 | ---D | C] -- C:\Program Files
[2010/07/13 04:53:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2010/07/13 04:52:33 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu
[2010/07/13 04:52:33 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents
[2010/07/13 04:52:33 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Templates
[2010/07/13 04:52:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
[2010/07/13 04:52:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Desktop
[2010/07/13 04:52:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2010/07/13 04:52:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2010/07/13 04:52:16 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2010/07/13 04:52:16 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data
[2010/07/13 04:51:50 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010/07/13 04:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2010/07/13 04:46:57 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2010/07/13 04:46:57 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2010/07/13 04:46:57 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2010/07/13 04:46:57 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\ehome
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2010/07/13 04:46:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025

========== Files - Modified Within 90 Days ==========

[2010/08/12 10:01:00 | 000,000,250 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2010/08/12 09:54:13 | 009,175,040 | ---- | M] () -- C:\Documents and Settings\David Daniels\NTUSER.DAT
[2010/08/12 09:48:18 | 000,000,328 | ---- | M] () -- C:\WINDOWS\tasks\GlaryInitialize.job
[2010/08/12 09:48:14 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/08/12 09:48:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/08/12 09:46:44 | 000,064,756 | ---- | M] () -- C:\WINDOWS\System32\DVCState-{00000002-00000000-00000004-00001102-00000005-00211102}.rfx
[2010/08/12 09:46:44 | 000,054,984 | ---- | M] () -- C:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000004-00001102-00000005-00211102}.rfx
[2010/08/12 09:46:44 | 000,054,984 | ---- | M] () -- C:\WINDOWS\System32\BMXState-{00000002-00000000-00000004-00001102-00000005-00211102}.rfx
[2010/08/12 09:46:44 | 000,001,080 | ---- | M] () -- C:\WINDOWS\System32\settingsbkup.sfm
[2010/08/12 09:46:44 | 000,001,080 | ---- | M] () -- C:\WINDOWS\System32\settings.sfm
[2010/08/12 09:46:20 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\David Daniels\ntuser.ini
[2010/08/12 09:20:56 | 063,318,828 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2010/08/12 08:16:41 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\prvlcl.dat
[2010/08/12 08:00:42 | 168,484,864 | ---- | M] () -- C:\WINDOWS\MEMORY.DMP
[2010/08/12 07:52:47 | 000,000,050 | ---- | M] () -- C:\WINDOWS\brmx2001.ini
[2010/08/12 06:18:41 | 000,493,864 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/08/12 03:27:21 | 000,141,824 | ---- | M] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010/08/12 03:07:17 | 000,000,952 | -HS- | M] () -- C:\WINDOWS\System32\KGyGaAvL.sys
[2010/08/11 22:40:55 | 001,582,318 | -H-- | M] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\IconCache.db
[2010/08/11 17:07:29 | 000,137,464 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010/08/11 17:07:16 | 000,214,520 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010/08/11 08:41:56 | 000,016,400 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\System32\drivers\LNonPnP.sys
[2010/08/11 07:17:37 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Microsoft Office Outlook.lnk
[2010/08/11 07:17:30 | 000,601,294 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/08/11 07:17:30 | 000,503,846 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/08/11 07:17:30 | 000,087,796 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/08/11 07:12:03 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/08/11 07:11:46 | 000,000,573 | ---- | M] () -- C:\WINDOWS\win.ini
[2010/08/10 07:47:35 | 000,030,720 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\AaronEmails.doc
[2010/08/09 11:47:09 | 000,062,700 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\QD-85x11 Template.ppp
[2010/08/09 06:13:46 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/08/08 05:14:47 | 000,821,694 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\ChildSupportInfo.pdf
[2010/08/08 00:02:40 | 000,000,010 | ---- | M] () -- C:\WINDOWS\WININIT.INI
[2010/08/07 07:22:42 | 000,000,917 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Revo Uninstaller.lnk
[2010/08/07 06:53:44 | 000,000,136 | ---- | M] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\fusioncache.dat
[2010/08/06 15:49:28 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2010/08/06 15:49:27 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010/08/05 16:14:53 | 000,001,663 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\FileZilla Client.lnk
[2010/08/05 16:12:06 | 000,012,800 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Settings.cfg
[2010/08/05 16:04:46 | 000,000,904 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\AceFTP 3 Freeware.lnk
[2010/08/05 15:08:42 | 000,000,115 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Zoom Webhost.url
[2010/08/05 10:55:01 | 000,020,480 | ---- | M] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/30 19:30:13 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat
[2010/07/29 21:10:52 | 000,000,090 | ---- | M] () -- C:\WINDOWS\QBChanUtil_Trigger.ini
[2010/07/29 07:01:20 | 000,000,152 | ---- | M] () -- C:\WINDOWS\CoolPlay.ini
[2010/07/29 06:55:00 | 000,000,183 | ---- | M] () -- C:\WINDOWS\setuplog
[2010/07/28 14:45:02 | 000,001,725 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Hot CPU Tester Pro.lnk
[2010/07/28 10:36:39 | 000,001,775 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Play The Lord of the Rings Online™ - FREE for 10 Days!.lnk
[2010/07/26 18:54:15 | 000,000,708 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Hard Disk Sentinel.lnk
[2010/07/26 18:54:15 | 000,000,690 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Hard Disk Sentinel.lnk
[2010/07/26 18:28:53 | 000,033,226 | ---- | M] () -- C:\FTYMAIN
[2010/07/26 09:12:30 | 000,000,746 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\SyncBack.lnk
[2010/07/24 23:24:45 | 000,000,737 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\PC Wizard 2010.lnk
[2010/07/24 17:38:25 | 007,077,888 | -H-- | M] () -- C:\Documents and Settings\David Daniels\NTUSER.DAT.gbck
[2010/07/24 17:06:03 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\cid_store.dat
[2010/07/22 17:45:03 | 000,461,544 | ---- | M] () -- C:\Documents and Settings\David Daniels\.spyglass.properties
[2010/07/22 17:23:39 | 000,452,017 | ---- | M] () -- C:\Documents and Settings\David Daniels\.linkassistant.properties
[2010/07/22 17:22:51 | 002,754,682 | ---- | M] () -- C:\Documents and Settings\David Daniels\.websiteauditor.properties
[2010/07/22 17:20:38 | 000,382,903 | ---- | M] () -- C:\Documents and Settings\David Daniels\.ranktracker.properties
[2010/07/22 17:18:01 | 000,001,931 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\LinkAssistant.lnk
[2010/07/22 17:17:51 | 000,001,960 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\WebSite Auditor.lnk
[2010/07/22 17:17:43 | 000,001,906 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Rank Tracker.lnk
[2010/07/22 17:17:34 | 000,001,906 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\SEO SpyGlass.lnk
[2010/07/22 09:09:37 | 000,001,738 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\GoodSync.lnk
[2010/07/22 00:52:58 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/07/21 23:51:16 | 001,222,558 | ---- | M] () -- C:\Documents and Settings\David Daniels\My Documents\AutoRuns072210.arn
[2010/07/21 23:21:07 | 000,161,296 | ---- | M] (Trend Micro Inc.) -- C:\WINDOWS\System32\drivers\tmcomm.sys
[2010/07/21 23:04:21 | 000,000,036 | ---- | M] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\housecall.guid.cache
[2010/07/19 18:35:44 | 000,000,693 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Maxthon2.lnk
[2010/07/19 18:35:44 | 000,000,675 | R--- | M] () -- C:\Documents and Settings\All Users\Desktop\Maxthon2.lnk
[2010/07/19 09:50:16 | 000,000,113 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\iGoogle.url
[2010/07/18 22:43:53 | 000,262,144 | ---- | M] () -- C:\WINDOWS\System32\default_user_class.dat
[2010/07/18 22:41:15 | 000,001,836 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\QuickBooks Pro 2009.lnk
[2010/07/18 14:40:55 | 000,000,045 | ---- | M] () -- C:\WINDOWS\System32\initdebug.nfo
[2010/07/18 00:17:46 | 000,000,287 | ---- | M] () -- C:\WINDOWS\game.ini
[2010/07/16 10:53:00 | 000,000,040 | ---- | M] () -- C:\WINDOWS\opt_2460.ini
[2010/07/16 10:24:55 | 000,000,410 | ---- | M] () -- C:\WINDOWS\brwmark.ini
[2010/07/16 10:24:55 | 000,000,065 | ---- | M] () -- C:\WINDOWS\System32\BD7420.dat
[2010/07/16 10:24:18 | 000,000,209 | ---- | M] () -- C:\WINDOWS\Brpfx04a.ini
[2010/07/16 10:24:18 | 000,000,092 | ---- | M] () -- C:\WINDOWS\brpcfx.ini
[2010/07/16 09:47:57 | 000,000,051 | ---- | M] () -- C:\WINDOWS\QuantumDigital Home.URL
[2010/07/14 10:23:01 | 000,113,461 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\iavichjw.avm
[2010/07/14 10:23:01 | 000,012,536 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\avgrsstx.dll
[2010/07/14 10:22:59 | 000,243,024 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgtdix.sys
[2010/07/14 10:22:56 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgldx86.sys
[2010/07/14 10:22:55 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgmfx86.sys
[2010/07/14 09:38:41 | 000,001,795 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Serif WebPlus X4.lnk
[2010/07/14 06:41:05 | 000,000,052 | ---- | M] () -- C:\WINDOWS\BRPP2KA.INI
[2010/07/14 05:35:30 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2010/07/14 05:30:57 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010/07/14 05:30:51 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2010/07/14 05:30:51 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2010/07/14 04:26:17 | 000,000,376 | ---- | M] () -- C:\WINDOWS\ODBC.INI
[2010/07/14 04:07:11 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Serif PagePlus X4.lnk
[2010/07/14 03:06:28 | 000,411,890 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010/07/14 03:00:45 | 000,072,748 | ---- | M] (Jordan Russell) -- C:\WINDOWS\unins000.exe
[2010/07/14 03:00:45 | 000,000,664 | ---- | M] () -- C:\WINDOWS\unins000.dat
[2010/07/14 02:49:14 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2010/07/14 02:47:52 | 000,000,720 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Notepad++.lnk
[2010/07/14 02:45:38 | 000,000,804 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2010/07/14 02:44:33 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2010/07/14 02:44:33 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2010/07/14 02:44:20 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010/07/14 02:10:55 | 000,000,375 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
[2010/07/14 02:06:55 | 000,000,000 | ---- | M] () -- C:\WINDOWS\ativpsrm.bin
[2010/07/14 01:54:06 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2010/07/13 12:27:53 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2010/07/13 12:25:50 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010/07/13 12:23:53 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010/07/13 12:23:53 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010/07/13 12:23:53 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/07/13 12:23:53 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2010/07/13 12:23:53 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010/07/13 12:23:53 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010/07/13 12:23:40 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2010/07/13 12:22:56 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010/07/13 12:22:56 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010/07/13 12:21:11 | 000,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010/07/13 12:21:01 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2010/07/13 12:21:01 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2010/07/10 13:14:39 | 000,911,747 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Onebox_OLM_User_Guide.pdf
[2010/07/10 12:11:14 | 000,073,101 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\BOE-LegalDeptAttyTeleRefList.pdf
[2010/07/10 12:07:27 | 000,414,325 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\BOE Re-Determination.pdf
[2010/07/07 14:26:26 | 000,601,493 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Open House - Just another WordPress site BLUE.jpg
[2010/07/07 14:25:44 | 000,594,308 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Open House - Just another WordPress site BROWN.jpg
[2010/07/07 14:25:02 | 000,595,935 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Open House - Just another WordPress site.jpg
[2010/06/28 11:18:27 | 000,000,108 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\Who Is.url
[2010/06/25 06:10:58 | 000,000,249 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\FTY CPanel.url
[2010/06/22 04:36:38 | 000,153,376 | ---- | M] (Oracle) -- C:\WINDOWS\System32\javaws.exe
[2010/06/22 04:36:37 | 000,145,184 | ---- | M] (Oracle) -- C:\WINDOWS\System32\javaw.exe
[2010/06/22 04:36:36 | 000,145,184 | ---- | M] (Oracle) -- C:\WINDOWS\System32\java.exe
[2010/06/22 04:36:29 | 000,423,656 | ---- | M] (Oracle) -- C:\WINDOWS\System32\deployJava1.dll
[2010/06/22 02:24:28 | 000,073,728 | ---- | M] (Oracle) -- C:\WINDOWS\System32\javacpl.cpl
[2010/06/15 14:05:49 | 000,000,116 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\FTY WHM.url
[2010/06/10 12:34:25 | 000,000,181 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\edline.net.url
[2010/05/21 06:16:49 | 000,082,598 | ---- | M] () -- C:\Documents and Settings\David Daniels\Desktop\PricingAddendum[1].pdf

========== Files Created - No Company Name ==========

[2010/08/11 07:00:44 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2010/08/10 07:47:35 | 000,030,720 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\AaronEmails.doc
[2010/08/08 05:14:47 | 000,821,694 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\ChildSupportInfo.pdf
[2010/08/08 00:47:38 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2010/08/07 23:57:02 | 000,000,323 | ---- | C] () -- C:\Documents and Settings\David Daniels\CCCInstall_201008072357023437.log
[2010/08/07 07:22:42 | 000,000,917 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Revo Uninstaller.lnk
[2010/08/07 06:53:44 | 000,000,136 | ---- | C] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\fusioncache.dat
[2010/08/06 18:48:41 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2010/08/06 18:48:41 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisdecd.dll
[2010/08/06 18:48:41 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\psisrndr.ax
[2010/08/06 18:48:41 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisrndr.ax
[2010/08/06 18:48:40 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\msdvbnp.ax
[2010/08/06 18:48:40 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdvbnp.ax
[2010/08/06 18:45:25 | 001,114,674 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativcaxx.cpa
[2010/08/06 18:45:25 | 000,058,560 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativckxx.vp
[2010/08/06 18:45:25 | 000,025,424 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativvpxx.vp
[2010/08/06 18:45:25 | 000,000,929 | R--- | C] () -- C:\WINDOWS\System32\drivers\ativcaxx.vp
[2010/08/06 07:39:02 | 000,160,217 | ---- | C] () -- C:\WINDOWS\System32\PowerToysLicense.rtf
[2010/08/05 16:14:53 | 000,001,663 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\FileZilla Client.lnk
[2010/08/05 16:04:46 | 000,000,904 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\AceFTP 3 Freeware.lnk
[2010/08/05 15:08:13 | 000,000,115 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Zoom Webhost.url
[2010/08/02 13:52:48 | 000,001,904 | ---- | C] () -- C:\WINDOWS\System32\SetupBD.din
[2010/07/30 19:34:57 | 000,347,952 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1214440339-573735546-725345543-1003-0.dat
[2010/07/30 19:34:56 | 000,347,952 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
[2010/07/30 19:34:56 | 000,308,144 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2010/07/30 19:30:13 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2010/07/30 00:04:50 | 000,087,552 | ---- | C] () -- C:\WINDOWS\System32\cpwmon2k.dll
[2010/07/30 00:04:39 | 000,000,250 | ---- | C] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2010/07/29 07:17:15 | 000,001,080 | ---- | C] () -- C:\WINDOWS\System32\settingsbkup.sfm
[2010/07/29 07:17:15 | 000,001,080 | ---- | C] () -- C:\WINDOWS\System32\settings.sfm
[2010/07/29 07:01:20 | 000,000,152 | ---- | C] () -- C:\WINDOWS\CoolPlay.ini
[2010/07/29 06:54:51 | 000,000,183 | ---- | C] () -- C:\WINDOWS\setuplog
[2010/07/29 06:52:01 | 000,064,756 | ---- | C] () -- C:\WINDOWS\System32\DVCState-{00000002-00000000-00000004-00001102-00000005-00211102}.rfx
[2010/07/29 06:52:01 | 000,054,984 | ---- | C] () -- C:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000004-00001102-00000005-00211102}.rfx
[2010/07/29 06:52:01 | 000,054,984 | ---- | C] () -- C:\WINDOWS\System32\BMXState-{00000002-00000000-00000004-00001102-00000005-00211102}.rfx
[2010/07/29 06:49:51 | 007,572,224 | ---- | C] () -- C:\WINDOWS\System32\CT8MGM.SF2
[2010/07/29 06:49:49 | 004,174,814 | ---- | C] () -- C:\WINDOWS\System32\CT4MGM.SF2
[2010/07/29 06:29:45 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xrxftplt.exe
[2010/07/29 06:29:45 | 000,018,944 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xrxscnui.dll
[2010/07/29 06:23:46 | 000,165,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt53.dll
[2010/07/29 06:23:45 | 000,101,376 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt34.dll
[2010/07/29 06:23:45 | 000,093,696 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt42.dll
[2010/07/29 06:23:44 | 000,089,088 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt33.dll
[2010/07/29 06:23:43 | 000,083,968 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt21.dll
[2010/07/29 06:22:39 | 000,029,768 | ---- | C] () -- C:\WINDOWS\System32\dllcache\divasu.dll
[2010/07/29 06:22:38 | 000,037,962 | ---- | C] () -- C:\WINDOWS\System32\dllcache\divaprop.dll
[2010/07/29 06:22:38 | 000,006,216 | ---- | C] () -- C:\WINDOWS\System32\dllcache\divaci.dll
[2010/07/29 06:20:58 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ativxbar.sys
[2010/07/29 06:20:58 | 000,023,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atixbar.sys
[2010/07/29 06:20:56 | 000,019,456 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ativttxx.sys
[2010/07/29 06:20:55 | 000,017,152 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atitvsnd.sys
[2010/07/29 06:20:55 | 000,009,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ativmdcd.sys
[2010/07/29 06:20:54 | 000,026,880 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atirtsnd.sys
[2010/07/29 06:20:54 | 000,017,152 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atitunep.sys
[2010/07/29 06:20:53 | 000,049,920 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atirtcap.sys
[2010/07/29 06:20:52 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atipcxxx.sys
[2010/07/29 06:20:49 | 000,046,464 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atibt829.sys
[2010/07/28 14:45:02 | 000,001,725 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Hot CPU Tester Pro.lnk
[2010/07/28 10:36:39 | 000,001,775 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Play The Lord of the Rings Online™ - FREE for 10 Days!.lnk
[2010/07/26 18:54:15 | 000,000,708 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Hard Disk Sentinel.lnk
[2010/07/26 18:54:15 | 000,000,690 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Hard Disk Sentinel.lnk
[2010/07/26 18:28:51 | 000,033,226 | ---- | C] () -- C:\FTYMAIN
[2010/07/26 09:12:30 | 000,000,746 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\SyncBack.lnk
[2010/07/26 08:08:13 | 000,000,106 | ---- | C] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\xobni_installer_updater.log
[2010/07/24 23:24:45 | 000,000,737 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\PC Wizard 2010.lnk
[2010/07/24 17:06:03 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\cid_store.dat
[2010/07/22 17:23:36 | 000,452,017 | ---- | C] () -- C:\Documents and Settings\David Daniels\.linkassistant.properties
[2010/07/22 17:22:48 | 002,754,682 | ---- | C] () -- C:\Documents and Settings\David Daniels\.websiteauditor.properties
[2010/07/22 17:21:43 | 000,461,544 | ---- | C] () -- C:\Documents and Settings\David Daniels\.spyglass.properties
[2010/07/22 17:20:32 | 000,382,903 | ---- | C] () -- C:\Documents and Settings\David Daniels\.ranktracker.properties
[2010/07/22 17:18:01 | 000,001,931 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\LinkAssistant.lnk
[2010/07/22 17:17:51 | 000,001,960 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\WebSite Auditor.lnk
[2010/07/22 17:17:43 | 000,001,906 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Rank Tracker.lnk
[2010/07/22 17:17:34 | 000,001,906 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\SEO SpyGlass.lnk
[2010/07/22 09:09:37 | 000,001,738 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\GoodSync.lnk
[2010/07/21 23:51:15 | 001,222,558 | ---- | C] () -- C:\Documents and Settings\David Daniels\My Documents\AutoRuns072210.arn
[2010/07/21 23:04:21 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\housecall.guid.cache
[2010/07/19 18:35:44 | 000,000,693 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Maxthon2.lnk
[2010/07/19 18:35:44 | 000,000,675 | R--- | C] () -- C:\Documents and Settings\All Users\Desktop\Maxthon2.lnk
[2010/07/19 09:50:05 | 000,000,113 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\iGoogle.url
[2010/07/19 00:46:28 | 000,000,010 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2010/07/18 22:43:53 | 000,262,144 | ---- | C] () -- C:\WINDOWS\System32\default_user_class.dat
[2010/07/18 22:41:15 | 000,001,836 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\QuickBooks Pro 2009.lnk
[2010/07/18 22:34:27 | 000,000,090 | ---- | C] () -- C:\WINDOWS\QBChanUtil_Trigger.ini
[2010/07/18 14:40:54 | 000,000,045 | ---- | C] () -- C:\WINDOWS\System32\initdebug.nfo
[2010/07/18 00:46:18 | 000,137,464 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010/07/18 00:46:09 | 000,214,520 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010/07/18 00:46:09 | 000,214,520 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010/07/18 00:46:04 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010/07/18 00:17:46 | 000,000,287 | ---- | C] () -- C:\WINDOWS\game.ini
[2010/07/16 10:53:00 | 000,000,050 | ---- | C] () -- C:\WINDOWS\brmx2001.ini
[2010/07/16 10:53:00 | 000,000,040 | ---- | C] () -- C:\WINDOWS\opt_2460.ini
[2010/07/16 10:23:45 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\BROSNMP.DLL
[2010/07/16 10:23:42 | 000,006,224 | ---- | C] () -- C:\WINDOWS\CVRPAGE.BMP
[2010/07/16 10:23:40 | 000,000,000 | ---- | C] () -- C:\WINDOWS\brdfxspd.dat
[2010/07/16 09:47:57 | 000,000,051 | ---- | C] () -- C:\WINDOWS\QuantumDigital Home.URL
[2010/07/15 11:40:17 | 000,012,800 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Settings.cfg
[2010/07/14 20:59:09 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\prvlcl.dat
[2010/07/14 11:00:43 | 004,006,026 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\SignMaterials.PDF
[2010/07/14 11:00:43 | 000,015,510 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\QD-85x55 Postcard.ppp
[2010/07/14 11:00:43 | 000,008,704 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\TabMaker.wpp
[2010/07/14 11:00:43 | 000,000,840 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Quantum Digital Flyer CPT.lnk
[2010/07/14 11:00:43 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\sALLYS eXISTING sITE.url
[2010/07/14 11:00:43 | 000,000,108 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Who Is.url
[2010/07/14 11:00:42 | 000,601,493 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Open House - Just another WordPress site BLUE.jpg
[2010/07/14 11:00:42 | 000,595,935 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Open House - Just another WordPress site.jpg
[2010/07/14 11:00:42 | 000,594,308 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Open House - Just another WordPress site BROWN.jpg
[2010/07/14 11:00:42 | 000,082,598 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\PricingAddendum[1].pdf
[2010/07/14 11:00:42 | 000,062,700 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\QD-85x11 Template.ppp
[2010/07/14 11:00:42 | 000,015,670 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\QD-11x17 Template.ppp
[2010/07/14 11:00:42 | 000,001,001 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Photo Paint.lnk
[2010/07/14 11:00:42 | 000,000,840 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Outlook 2003.lnk
[2010/07/14 11:00:41 | 000,911,747 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Onebox_OLM_User_Guide.pdf
[2010/07/14 11:00:41 | 000,000,840 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\One Note.lnk
[2010/07/14 11:00:41 | 000,000,745 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Internet Explorer.lnk
[2010/07/14 11:00:40 | 002,067,655 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\GotPrintPriceList.pdf
[2010/07/14 11:00:40 | 000,215,352 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\FTYfaxcover.ppp
[2010/07/14 11:00:40 | 000,073,101 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\BOE-LegalDeptAttyTeleRefList.pdf
[2010/07/14 11:00:40 | 000,025,761 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Dartmouth School Calendar.pdf
[2010/07/14 11:00:40 | 000,000,529 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\Explorer.lnk
[2010/07/14 11:00:40 | 000,000,249 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\FTY CPanel.url
[2010/07/14 11:00:40 | 000,000,181 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\edline.net.url
[2010/07/14 11:00:40 | 000,000,116 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\FTY WHM.url
[2010/07/14 11:00:39 | 000,414,325 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\BOE Re-Determination.pdf
[2010/07/14 11:00:39 | 000,000,155 | ---- | C] () -- C:\Documents and Settings\David Daniels\Desktop\AuthorizeNET Home.url
[2010/07/14 10:23:01 | 000,113,461 | ---- | C] () -- C:\WINDOWS\System32\drivers\Avg\iavichjw.avm
[2010/07/14 10:22:51 | 063,318,828 | ---- | C] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2010/07/14 10:04:59 | 000,000,952 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
[2010/07/14 09:38:41 | 000,001,795 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Serif WebPlus X4.lnk
[2010/07/14 06:41:05 | 000,000,410 | ---- | C] () -- C:\WINDOWS\brwmark.ini
[2010/07/14 06:41:05 | 000,000,209 | ---- | C] () -- C:\WINDOWS\Brpfx04a.ini
[2010/07/14 06:41:05 | 000,000,092 | ---- | C] () -- C:\WINDOWS\brpcfx.ini
[2010/07/14 06:41:05 | 000,000,065 | ---- | C] () -- C:\WINDOWS\System32\BD7420.dat
[2010/07/14 06:41:05 | 000,000,052 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2010/07/14 05:55:06 | 000,007,062 | ---- | C] () -- C:\WINDOWS\System32\audiopid.vxd
[2010/07/14 05:30:57 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/07/14 05:30:51 | 000,001,620 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2010/07/14 05:30:51 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2010/07/14 04:43:37 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Microsoft Office Outlook.lnk
[2010/07/14 04:25:06 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2010/07/14 04:07:11 | 000,001,813 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Serif PagePlus X4.lnk
[2010/07/14 03:57:51 | 000,076,277 | ---- | C] () -- C:\Documents and Settings\David Daniels\CCCInstall_201007140357517343.log
[2010/07/14 03:06:28 | 000,000,734 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts.20100714-030628.backup
[2010/07/14 03:00:45 | 000,000,664 | ---- | C] () -- C:\WINDOWS\unins000.dat
[2010/07/14 02:49:14 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2010/07/14 02:47:52 | 000,000,720 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Notepad++.lnk
[2010/07/14 02:45:38 | 000,000,804 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2010/07/14 02:38:12 | 000,000,328 | ---- | C] () -- C:\WINDOWS\tasks\GlaryInitialize.job
[2010/07/14 02:36:14 | 000,001,729 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2010/07/14 02:10:35 | 000,000,375 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
[2010/07/14 02:06:55 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2010/07/14 01:56:29 | 000,613,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2010/07/14 01:56:29 | 000,067,374 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2010/07/14 01:56:29 | 000,023,195 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2010/07/14 01:56:29 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2010/07/14 01:56:29 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2010/07/14 01:56:29 | 000,000,855 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2010/07/14 01:56:29 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2010/07/14 01:56:28 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2010/07/14 01:56:28 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2010/07/14 01:56:28 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2010/07/14 01:56:28 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2010/07/14 01:56:28 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2010/07/14 01:56:28 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2010/07/14 01:56:28 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2010/07/14 01:56:28 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2010/07/14 01:56:28 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2010/07/14 01:56:28 | 000,029,070 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2010/07/14 01:56:28 | 000,017,272 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2010/07/14 01:56:28 | 000,006,769 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2010/07/14 01:56:27 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2010/07/14 01:56:27 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2010/07/14 01:56:27 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2010/07/14 01:56:27 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
[2010/07/14 01:56:27 | 000,077,307 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2010/07/14 01:56:27 | 000,066,725 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2010/07/14 01:56:27 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2010/07/14 01:56:27 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2010/07/14 01:56:27 | 000,018,286 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2010/07/14 01:56:27 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2010/07/14 01:56:27 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2010/07/14 01:56:27 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2010/07/14 01:56:27 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2010/07/14 01:56:27 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2010/07/14 01:56:27 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2010/07/14 01:56:27 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2010/07/14 01:56:27 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2010/07/14 01:56:27 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2010/07/14 01:56:27 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2010/07/14 01:56:27 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2010/07/14 01:56:27 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2010/07/14 01:56:27 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2010/07/14 01:56:27 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2010/07/14 01:56:27 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2010/07/14 01:56:27 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2010/07/14 01:56:27 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2010/07/14 01:56:27 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2010/07/14 01:56:27 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
[2010/07/14 01:56:27 | 000,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2010/07/14 01:56:27 | 000,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2010/07/14 01:56:27 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2010/07/14 01:56:27 | 000,001,451 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2010/07/14 01:56:27 | 000,001,448 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2010/07/14 01:56:27 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2010/07/14 01:56:27 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2010/07/14 01:56:27 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2010/07/14 01:56:27 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2010/07/14 01:56:27 | 000,001,250 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2010/07/14 01:56:27 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2010/07/14 01:56:27 | 000,001,049 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2010/07/14 01:56:27 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2010/07/14 01:56:27 | 000,001,036 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2010/07/14 01:56:27 | 000,000,908 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2010/07/14 01:56:27 | 000,000,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2010/07/14 01:56:27 | 000,000,787 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2010/07/14 01:56:27 | 000,000,784 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2010/07/14 01:56:27 | 000,000,783 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2010/07/14 01:56:27 | 000,000,775 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2010/07/14 01:56:27 | 000,000,733 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2010/07/14 01:56:27 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2010/07/14 01:56:26 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2010/07/14 01:56:26 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2010/07/14 01:56:26 | 000,184,959 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2010/07/14 01:56:26 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2010/07/14 01:56:26 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2010/07/14 01:56:26 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2010/07/14 01:56:26 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2010/07/14 01:56:26 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2010/07/14 01:56:26 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2010/07/14 01:56:26 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2010/07/14 01:56:26 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2010/07/14 01:56:26 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2010/07/14 01:56:26 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2010/07/14 01:56:13 | 000,072,387 | ---- | C] () -- C:\WINDOWS\System32\dllcache\archvapp.inf
[2010/07/14 01:54:15 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2010/07/14 01:54:14 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2010/07/14 01:54:14 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2010/07/14 01:47:32 | 000,000,364 | ---- | C] () -- C:\Documents and Settings\David Daniels\results.txt
[2010/07/14 01:43:17 | 000,020,480 | ---- | C] () -- C:\Documents and Settings\David Daniels\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/13 12:27:53 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2010/07/13 12:27:45 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\David Daniels\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/07/13 12:27:41 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\David Daniels\ntuser.dat.LOG
[2010/07/13 12:27:41 | 000,000,278 | -HS- | C] () -- C:\Documents and Settings\David Daniels\ntuser.ini
[2010/07/13 12:27:40 | 009,175,040 | ---- | C] () -- C:\Documents and Settings\David Daniels\NTUSER.DAT
[2010/07/13 12:27:40 | 007,077,888 | -H-- | C] () -- C:\Documents and Settings\David Daniels\NTUSER.DAT.gbck
[2010/07/13 12:25:50 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010/07/13 12:25:41 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010/07/13 12:25:20 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010/07/13 12:25:20 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010/07/13 12:25:19 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010/07/13 12:25:06 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010/07/13 12:25:06 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010/07/13 12:25:00 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2010/07/13 12:24:59 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2010/07/13 12:24:58 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2010/07/13 12:24:49 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010/07/13 12:24:45 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2010/07/13 12:24:33 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2010/07/13 12:24:30 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010/07/13 12:24:30 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010/07/13 12:24:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010/07/13 12:24:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010/07/13 12:24:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010/07/13 12:24:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010/07/13 12:24:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010/07/13 12:24:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010/07/13 12:24:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010/07/13 12:24:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010/07/13 12:24:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010/07/13 12:24:29 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010/07/13 12:24:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010/07/13 12:24:28 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010/07/13 12:24:28 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010/07/13 12:24:28 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010/07/13 12:24:28 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010/07/13 12:24:28 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010/07/13 12:24:28 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010/07/13 12:24:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010/07/13 12:24:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010/07/13 12:24:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010/07/13 12:24:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010/07/13 12:24:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010/07/13 12:24:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010/07/13 12:24:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010/07/13 12:24:27 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010/07/13 12:24:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010/07/13 12:24:26 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010/07/13 12:24:26 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010/07/13 12:24:26 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010/07/13 12:24:26 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010/07/13 12:24:26 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010/07/13 12:24:26 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010/07/13 12:24:26 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010/07/13 12:24:25 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010/07/13 12:24:25 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010/07/13 12:23:53 | 000,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2010/07/13 12:23:53 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010/07/13 12:23:53 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2010/07/13 12:23:53 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2010/07/13 12:23:53 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2010/07/13 12:23:50 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2010/07/13 12:23:50 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2010/07/13 12:23:49 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2010/07/13 12:22:56 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010/07/13 12:22:56 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010/07/13 12:22:50 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010/07/13 12:22:36 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2010/07/13 12:22:11 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2010/07/13 12:22:11 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2010/07/13 12:22:06 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2010/07/13 12:21:46 | 000,376,832 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msinfo.dll
[2010/07/13 12:21:11 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010/07/13 12:20:31 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
[2010/07/13 12:20:31 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
[2010/07/13 12:20:31 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
[2010/07/13 12:20:31 | 000,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
[2010/07/13 12:20:31 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
[2010/07/13 12:20:31 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
[2010/07/13 12:20:31 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
[2010/07/13 12:20:31 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
[2010/07/13 12:20:31 | 000,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
[2010/07/13 12:20:31 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2010/07/13 12:20:31 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
[2010/07/13 12:20:30 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2010/07/13 12:20:30 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2010/07/13 12:20:30 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2010/07/13 12:20:30 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2010/07/13 12:20:30 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2010/07/13 12:20:30 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2010/07/13 12:20:30 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2010/07/13 12:20:30 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2010/07/13 12:20:28 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2010/07/13 12:20:28 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2010/07/13 12:20:27 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2010/07/13 12:20:22 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2010/07/13 04:53:05 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2010/07/13 04:53:05 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2010/07/13 04:53:04 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010/07/13 04:53:03 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010/07/13 04:53:01 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2010/07/13 04:53:01 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2010/07/13 04:52:59 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2010/07/13 04:52:59 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2010/07/13 04:52:59 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2010/07/13 04:52:59 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2010/07/13 04:52:59 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2010/07/13 04:52:59 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2010/07/13 04:52:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2010/07/13 04:52:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2010/07/13 04:52:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2010/07/13 04:52:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2010/07/13 04:52:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2010/07/13 04:52:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2010/07/13 04:52:53 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2010/07/13 04:52:53 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2010/07/13 04:52:53 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2010/07/13 04:52:53 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2010/07/13 04:52:53 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2010/07/13 04:52:53 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2010/07/13 04:52:53 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2010/07/13 04:52:53 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2010/07/13 04:52:53 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2010/07/13 04:52:53 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2010/07/13 04:52:51 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2010/07/13 04:52:51 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2010/07/13 04:52:51 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2010/07/13 04:52:51 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2010/07/13 04:52:51 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2010/07/13 04:52:51 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2010/07/13 04:52:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_852.nls
[2010/07/13 04:52:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_852.nls
[2010/07/13 04:52:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2010/07/13 04:52:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2010/07/13 04:52:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2010/07/13 04:52:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2010/07/13 04:52:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2010/07/13 04:52:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2010/07/13 04:52:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2010/07/13 04:52:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2010/07/13 04:52:42 | 000,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2010/07/13 04:52:33 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010/07/13 04:52:33 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010/07/13 04:52:33 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010/07/13 04:52:33 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010/07/13 04:52:33 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010/07/13 04:52:33 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010/07/13 04:52:33 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010/07/13 04:52:32 | 001,042,903 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2010/07/13 04:51:49 | 000,493,864 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/07/13 04:51:01 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2010/07/13 04:50:58 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2010/07/13 04:46:56 | 168,484,864 | ---- | C] () -- C:\WINDOWS\MEMORY.DMP
[2010/02/08 07:33:04 | 000,359,320 | ---- | C] () -- C:\WINDOWS\System32\vfprintpthelper.dll
[2009/06/04 00:55:20 | 000,003,072 | ---- | C] () -- C:\WINDOWS\CTXFIRES.DLL
[2009/06/04 00:55:20 | 000,002,560 | ---- | C] () -- C:\WINDOWS\System32\CtxfiRes.dll
[2006/07/21 15:50:34 | 000,066,048 | ---- | C] () -- C:\WINDOWS\System32\hcwXDS.dll
[2005/10/29 05:12:05 | 000,068,336 | ---- | C] () -- C:\WINDOWS\System32\instwdm.ini
[2005/10/29 05:12:04 | 000,000,054 | ---- | C] () -- C:\WINDOWS\System32\ctzapxx.ini
[2005/10/29 04:43:54 | 000,038,400 | ---- | C] () -- C:\WINDOWS\System32\CTBurst.dll
[2005/06/07 06:10:49 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\CTMMACTL.DLL
[2003/03/21 02:56:11 | 000,000,194 | ---- | C] () -- C:\WINDOWS\System32\KILL.INI
[2003/01/07 15:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
[1996/04/03 12:33:26 | 000,005,248 | ---- | C] () -- C:\WINDOWS\System32\giveio.sys

========== LOP Check ==========

[2010/07/14 20:19:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG Security Toolbar
[2010/07/14 10:19:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9
[2010/07/28 17:08:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Cakewalk
[2010/07/18 22:34:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\COMMON FILES
[2010/08/05 16:04:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EmailNotifier
[2010/07/24 00:06:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\F-Secure
[2010/07/22 09:09:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GoodSync
[2010/08/02 13:42:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2010/08/02 22:42:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PCPitstop
[2010/07/14 02:54:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RoboForm
[2010/07/18 23:02:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SQL Anywhere 10
[2010/07/28 17:12:43 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{4CE04D88-061C-4755-BC63-CF32D41615A4}
[2010/07/28 17:12:56 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{97E08DC0-965D-4C12-A6C3-4FD1BA922ABC}
[2010/07/28 17:33:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Blue Cat Audio
[2010/07/28 17:13:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Cakewalk
[2010/08/05 16:04:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Dynamic
[2010/08/05 16:04:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\EmailNotifier
[2010/08/11 11:37:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\FileZilla
[2010/08/11 00:45:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\FreeStone Group
[2010/07/14 20:39:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\GlarySoft
[2010/07/26 09:01:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\GoodSync
[2010/07/14 02:49:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Leadertech
[2010/08/12 09:50:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\MxBoost
[2010/07/14 10:36:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Notepad++
[2010/07/14 04:36:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Serif
[2010/08/05 16:04:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\SiteClasses
[2010/08/05 16:07:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\Sites
[2010/08/11 16:26:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\vmntoolbar
[2010/07/30 11:26:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\David Daniels\Application Data\WinBatch
[2010/08/12 09:48:18 | 000,000,328 | ---- | M] () -- C:\WINDOWS\Tasks\GlaryInitialize.job
[2010/08/12 10:01:00 | 000,000,250 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job

========== Purity Check ==========



========== Custom Scans ==========


< %systemroot%\system32\*.dll /lockedfiles >
[2010/02/10 21:46:14 | 000,442,368 | ---- | M] (Advanced Micro Devices, Inc.) Unable to obtain MD5 -- C:\WINDOWS\system32\ATIDEMGX.dll
[2008/04/14 05:41:52 | 001,267,200 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\comsvcs.dll
[2009/03/08 04:31:44 | 000,348,160 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\dxtmsft.dll
[2009/03/08 04:31:38 | 000,216,064 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\dxtrans.dll
[2010/06/24 05:21:58 | 000,184,320 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\iepeers.dll

< %systemroot%\system32\*.sys /90 >
[2010/08/12 03:07:17 | 000,000,952 | -HS- | M] () -- C:\WINDOWS\system32\KGyGaAvL.sys
[2010/06/23 06:44:04 | 001,851,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\win32k.sys

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2010/07/13 04:51:00 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2010/07/13 04:51:00 | 000,659,456 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2010/07/13 04:51:00 | 000,897,024 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

< %SYSTEMDRIVE%\*.* >
[2010/07/13 12:23:53 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010/08/06 15:49:28 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2010/07/13 12:23:53 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010/07/24 17:18:14 | 000,424,262 | ---- | M] () -- C:\CTSUFile.txt
[2010/07/26 18:28:53 | 000,033,226 | ---- | M] () -- C:\FTYMAIN
[2010/08/03 00:31:51 | 000,015,429 | ---- | M] () -- C:\HCT.Log
[2010/07/13 12:23:53 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/07/13 12:23:53 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2004/08/03 18:07:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010/07/14 01:54:06 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2010/08/12 09:47:51 | 2147,483,648 | -HS- | M] () -- C:\pagefile.sys
[2010/07/28 17:28:01 | 000,001,396 | ---- | M] () -- C:\SpnrLE.txt

< %systemroot%\system32\Spool\prtprocs\w32x86\*.dll >
[2008/07/06 05:06:10 | 000,089,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
[2007/04/09 13:23:54 | 000,028,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\mdippr.dll

< %systemroot%\*. /mp /s >


< MD5 for: AGP440.SYS >
[2004/08/03 18:07:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\dllcache\agp440.sys
[2008/04/14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

< MD5 for: ATAPI.SYS >
[2004/08/03 18:07:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008/04/14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008/04/14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
[2008/04/14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys
[2004/08/03 18:07:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: EVENTLOG.DLL >
[2008/04/14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\dllcache\eventlog.dll
[2008/04/14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2004/08/03 18:07:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: NETLOGON.DLL >
[2008/04/14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\dllcache\netlogon.dll
[2008/04/14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2004/08/03 18:07:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004/08/03 18:07:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008/04/14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: USER32.DLL >
[2008/04/13 17:12:10 | 000,578,560 | ---- | M] (Microsoft Corporation) MD5=B26B135FF1B9F60C9388B4A7D16F600B -- C:\symcache\user32.dll\4802A11B91000\user32.dll
[2008/04/14 05:42:10 | 000,578,560 | ---- | M] (Microsoft Corporation) MD5=B26B135FF1B9F60C9388B4A7D16F600B -- C:\WINDOWS\ServicePackFiles\i386\user32.dll
[2008/04/14 05:42:10 | 000,578,560 | ---- | M] (Microsoft Corporation) MD5=B26B135FF1B9F60C9388B4A7D16F600B -- C:\WINDOWS\system32\dllcache\user32.dll
[2008/04/14 05:42:10 | 000,578,560 | ---- | M] (Microsoft Corporation) MD5=B26B135FF1B9F60C9388B4A7D16F600B -- C:\WINDOWS\system32\user32.dll
[2004/08/03 18:07:00 | 000,577,024 | ---- | M] (Microsoft Corporation) MD5=C72661F8552ACE7C5C85E16A3CF505C4 -- C:\WINDOWS\$NtServicePackUninstall$\user32.dll

< MD5 for: WS2_32.DLL >
[2008/04/14 05:42:12 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=2CCC474EB85CEAA3E1FA1726580A3E5A -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008/04/14 05:42:12 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=2CCC474EB85CEAA3E1FA1726580A3E5A -- C:\WINDOWS\system32\dllcache\ws2_32.dll
[2008/04/14 05:42:12 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=2CCC474EB85CEAA3E1FA1726580A3E5A -- C:\WINDOWS\system32\ws2_32.dll
[2004/08/03 18:07:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=2ED0B7F12A60F90092081C50FA0EC2B2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll

< %systemroot%\*. /mp /s >

< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

< >

========== Alternate Data Streams ==========

@Alternate Data Stream - 452 bytes -> C:\Documents and Settings\David Daniels\Desktop\QD-85x11 Template.ppp:SummaryInformation
< End of report >

Extras Report

OTL Extras logfile created on: 8/12/2010 10:22:54 AM - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = L:\Downloads\Programs\System\SYSTEM DIAGNOSTICS\OldTimerGeekstogo
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 75.00% Memory free
5.00 Gb Paging File | 4.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): C:\pagefile.sys 2048 2048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232.88 Gb Total Space | 195.19 Gb Free Space | 83.82% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 143.30 Gb Total Space | 48.53 Gb Free Space | 33.87% Space Free | Partition Type: NTFS
Drive F: | 5.69 Gb Total Space | 1.75 Gb Free Space | 30.85% Space Free | Partition Type: FAT32
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive K: | 465.75 Gb Total Space | 295.79 Gb Free Space | 63.51% Space Free | Partition Type: NTFS
Drive L: | 298.09 Gb Total Space | 142.65 Gb Free Space | 47.85% Space Free | Partition Type: NTFS

Computer Name: FTYMAIN
Current User Name: David Daniels
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Standard
Quick Scan

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url [@ = InternetShortcut] -- C:\Program Files\Maxthon2\Maxthon.exe (Maxthon International ltd.)

[HKEY_USERS\S-1-5-21-1214440339-573735546-725345543-1003\SOFTWARE\Classes\<extension>]
.html [@ = Max2.Association.HTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Program Files\Maxthon2\Maxthon.exe" "%1" (Maxthon International ltd.)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\AVG\AVG9\avgupd.exe" = C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe -- (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG9\avgnsx.exe" = C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe -- (AVG Technologies CZ, s.r.o.)
"C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe" = C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s -- ()
"C:\Program Files\Intuit\QuickBooks 2009\QBDBMgrN.exe" = C:\Program Files\Intuit\QuickBooks 2009\QBDBMgrN.exe:*:Enabled:QuickBooks 2009 Data Manager -- (Intuit, Inc.)
"C:\Program Files\Maxthon2\Modules\MxDownloader\MxDownloadServer.exe" = C:\Program Files\Maxthon2\Modules\MxDownloader\MxDownloadServer.exe:*:Enabled:MxDownloadServer -- (Maxthon International ltd.)
"C:\Program Files\Serif\WebPlus\X4\Program\WebPlus.exe" = C:\Program Files\Serif\WebPlus\X4\Program\WebPlus.exe:*:Enabled:Serif WebPlus X4 -- (Serif (Europe) Ltd)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{03ADC8AB-C130-0C3D-1FF9-2C385DF25689}" = CCC Help Czech
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{06E6E30D-B498-442F-A943-07DE41D7F785}" = Microsoft Search Enhancement Pack
"{07021185-008D-ABF9-7716-475AC035F8B3}" = CCC Help Spanish
"{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = MSN Toolbar
"{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Windows Live ID Sign-in Assistant
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}" = Native Instruments Service Center
"{0F8D0406-7755-AC37-6529-73AD649DBE32}" = Catalyst Control Center Graphics Previews Common
"{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}" = Sound Blaster X-Fi
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{22072CC8-7230-96F8-52F4-05EAF3F906B6}" = CCC Help Polish
"{2368ADBD-6FDF-4B9F-FE41-E20B4D78E79E}" = CCC Help Chinese Standard
"{25EF0DC4-B072-2E04-4581-A13C91423CE6}" = CCC Help Portuguese
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java™ 6 Update 21
"{26F7855C-443B-00A6-F7B8-A97A5403F617}" = CCC Help Danish
"{2CB4A925-48A7-DA65-DCEE-D4DE224B7D84}" = CCC Help English
"{2DC240EA-51B1-4CC4-A0E5-4E4399CD7302}" = Serif PagePlus X4
"{2E0C1913-886B-4C5C-8DAF-D1E649CE5FCC}" = Creative MediaSource
"{306D75B9-7FFF-FF65-0C76-57F2FE4FE1D6}" = Catalyst Control Center Core Implementation
"{32A72502-BC2C-4C39-ACEA-BC3D463F0697}" = EN
"{32B12FE4-5A51-751A-1FB6-A14E97EBDD5C}" = CCC Help German
"{33691AFF-9ABF-4278-BDB6-902EE07D9237}" = Native Instruments Guitar Rig 3
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{351512E5-01BD-E878-6F57-AA3E517D9ECE}" = Skins
"{354A387E-0374-21A3-6832-335674A6D7D1}" = CCC Help French
"{370187B9-6964-38D0-851F-6C4898B0C2B1}" = Microsoft Visual C++ Compilers 2010 Standard - enu - x86
"{388E4B09-3E71-4649-8921-F44A3A2954A7}" = Microsoft Visual Studio 2005 Tools for Office Runtime
"{39556553-8C77-4C5E-8F30-4083274948A2}" = Application Verifier
"{3B78B379-C0E7-4FBF-9FD9-04FB6E05E60F}" = Debug Diagnostics Tool 1.1 (x86)
"{3C00BEE9-26D0-D9E0-A2D1-62F70D412A12}" = CCC Help Turkish
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{4346F7AA-3D56-0941-424C-4454E04D37F6}" = CCC Help Italian
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{47C39E4A-28F2-33B1-B9B7-97F24E52D917}" = Microsoft Help Viewer 1.0
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CAE2F2C-75CD-A0DE-7520-449BCBBCC833}" = CCC Help Korean
"{4E98F23B-1328-4322-A6EC-2EDC8FC3A4FE}" = FontNav
"{55485AA6-B3C8-4FEF-9A1E-09B7DE3DB589}" = Serif WebPlus X4 Bonus Content Pack
"{57F7F0A5-8F22-8E63-E819-803B5C9CA3A5}" = CCC Help Dutch
"{59996900-0E6C-45B7-8C39-C64CB98462E4}" = Microsoft Web Platform Installer 2.0
"{5A39D5C2-A28B-421D-925A-0390FD1E5529}_is1" = Hot CPU Tester Pro 4.4.1
"{5A3F6A80-7913-475E-8B96-477A952CFA43}" = SupportSoft Assisted Service
"{5EA437D2-7A57-B60E-E8F2-76BFAC0895A5}" = CCC Help Chinese Traditional
"{61AF4E75-050E-0304-3417-8BC16417FEB1}" = CCC Help Greek
"{61BEA823-ECAF-49F1-8378-A59B3B8AD247}" = Microsoft Default Manager
"{632005DA-C291-5275-284C-5EE96B05C714}" = Catalyst Control Center HydraVision Full
"{6C72BE0C-3E25-CACD-0070-2FD9C02ABA14}" = ccc-core-preinstall
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7B4A5C13-069F-4AFE-AE57-C497B4E33C7E}" = Call of Duty® 2 Patch 1.3
"{7C5123A9-30A8-4C44-89CA-A8C87A1FCC91}" = CorelDRAW Graphics Suite X3
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{85BC39D3-0778-49C9-9AFE-0240D055C284}" = Adobe PDF JobReady Client
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{880BB617-914E-17E8-D877-A96BAC5794D2}" = Catalyst Control Center Graphics Full New
"{8897CF22-DB6C-8248-895C-12BFA2677F51}" = CCC Help Hungarian
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8D7133DE-27D2-47E5-B248-4180278D32AA}" = Catalyst Control Center - Branding
"{8DC069E7-893C-41E1-9442-DE89FEC33371}" = Xobni Core
"{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90A10409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office OneNote 2003
"{91490409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office 2003 Primary Interop Assemblies
"{96CFF0DB-C3C3-44B8-930C-1121EC68A3BF}" = Serif WebPlus X4 Resources
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A2F0810-3622-4E86-9072-973FBE1679C5}" = QuickBooks Pro 2009
"{9A2F0810-369F-4E86-9072-973FBE1679C5}" = QuickBooks
"{9ADA45A0-8043-470A-8E8B-02EA7D95F896}" = Serif WebPlus X4
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A528737A-DF4D-4EF0-A7EA-A98E6D774467}" = Dacris Benchmarks
"{A65F7CF8-6F76-40CE-B44D-D5A89D9881C7}" = MSN Toolbar Platform
"{A93EC091-461F-46EE-BAE1-327EB608AA60}" = Serif PagePlus X4 Resources
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.3
"{AF710FDE-2815-8C8D-5281-8004C2654AA6}" = CCC Help Russian
"{AFF2D965-C6F2-A210-FBF7-532612AA1D23}" = CCC Help Swedish
"{B21336EE-4AEF-9940-4AC7-EDB89854B8D3}" = CCC Help Thai
"{B26B00DA-2E5D-4CF2-83C5-911198C0F009}" = GoodSync
"{B7472414-5A3A-4540-8F93-C3028DEB2AB9}" = QuantumDigital PrintReady 1.1 for QuantumDigital
"{BBA69346-61A1-BD34-E75A-4D81232DB1FE}" = Catalyst Control Center Localization All
"{BFD5ED08-F066-92D5-BE67-3B9AE5DCFF0C}" = CCC Help Japanese
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C4609F15-FB3C-D97E-BAA1-4F10815039C2}" = Catalyst Control Center Graphics Full Existing
"{C94E45B0-6AA6-4FB9-9AAE-22085F631880}" = VBA
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack
"{D01FAC3D-86B4-3A19-9D10-9156A0EB3EBE}" = CCC Help Finnish
"{D09605BE-5587-4B0C-86C8-69B5092CB80F}" = Debugging Tools for Windows (x86)
"{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty® 2
"{D73722C8-3F65-C75B-A631-5D36894DAB92}" = ccc-core-static
"{D83BD5E2-5AF4-49F6-B5C1-484A9760E73D}" = Brother MFL-Pro Suite
"{DDAD33B6-8C00-428D-087B-A7088355B9BE}" = Catalyst Control Center Graphics Light
"{DE34C2C0-2830-4D6E-A633-F0D50C0424F2}_is1" = Agares RackA3 v1.0
"{DEEECCDA-D9BB-4DDC-9CA8-2A6ECC49131C}" = Intel® Network Connections 15.4.89.0
"{DF2035BE-5820-4965-BD97-7FAF8D4A7879}" = Microsoft_VC90_CRT_x86
"{E333F074-FC7F-596D-3D61-44F0EC28E8C0}" = ccc-utility
"{E7F9E526-2324-437B-A609-E8C5309465CB}" = Microsoft Windows Performance Toolkit
"{F428D0FB-765D-40EB-BDD8-A1E7F5C597FA}" = Update Manager
"{F7FC9307-374E-4017-8E9D-DE1154780480}" = System Requirements Lab for Intel
"{FA38F9E4-BED7-E021-B660-8FDFF7EC6E1A}" = CCC Help Norwegian
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"{FF77941A-2BFA-4A18-BE2E-69B9498E4D55}" = User Profile Hive Cleanup Service
"7-Zip" = 7-Zip 4.65
"AceFTP 3 Freeware" = AceFTP 3 Freeware
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AI RoboForm" = AI RoboForm (All Users)
"All ATI Software" = ATI - Software Uninstall Utility
"ATI Display Driver" = ATI Display Driver
"AudioCreator_is1" = Audio Creator LE 1.5
"AVG9Uninstall" = AVG Free 9.0
"AxCrypt" = AxCrypt (Remove Only)
"CA_VMN_antispyware" = CA VMN Anti-Spyware (remove only)
"Cakewalk Studio Instruments_is1" = Studio Instruments 1.0
"CCleaner" = CCleaner
"Console Launcher" = Creative Console Launcher
"Creative Media Toolbox" = Creative Media Toolbox
"CutePDF Writer Installation" = CutePDF Writer 2.8
"Display Tuner_is1" = Display Tuner v1.7
"FileZilla Client" = FileZilla Client 3.3.3
"Glary Utilities_is1" = Glary Utilities 2.27.0.982
"GuitarTracksPro4_is1" = Guitar Tracks Pro 4.0
"Hard Disk Sentinel_is1" = Hard Disk Sentinel PRO
"Icon Restore_is1" = Icon Restore 1.0
"ie8" = Windows Internet Explorer 8
"InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty® 2
"Maxthon2" = Maxthon2
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft Help Viewer 1.0" = Microsoft Help Viewer 1.0
"Microsoft Visual Studio 2005 Tools for Office Runtime" = Visual Studio 2005 Tools for Office Second Edition Runtime
"Mozilla Firefox (3.6.8)" = Mozilla Firefox (3.6.8)
"Native Instruments Guitar Rig 3" = Native Instruments Guitar Rig 3
"Native Instruments Service Center" = Native Instruments Service Center
"Notepad++" = Notepad++
"OpenAL" = OpenAL
"PC Pitstop Driver Alert2_is1" = PC Pitstop Driver Alert2 2.0.0.0
"PC Wizard 2010_is1" = PC Wizard 2010.1.94
"Recuva" = Recuva
"Revo Uninstaller" = Revo Uninstaller 1.89
"seopowersuite" = SEO PowerSuite
"SP6" = Logitech SetPoint 6.15
"SpeedFan" = SpeedFan (remove only)
"SyncBack_is1" = SyncBack
"SysInfo" = Creative System Information
"Tweak UI 2.10" = Tweak UI
"UndeletePlus™_is1" = UndeletePlus™ 3.0.0.602
"Video Card Stability Test" = Video Card Stability Test
"vmntoolbar" = VMN Toolbar
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"Windows XP Service Pack" = Windows XP Service Pack 3
"XobniMain" = Xobni

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 8/9/2010 9:45:48 AM | Computer Name = FTYMAIN | Source = QuickBooks | ID = 4
Description = An unexpected error has occured in "QuickBooks": Returning NULL QBWinInstance
Hand

Error - 8/9/2010 9:46:11 AM | Computer Name = FTYMAIN | Source = QuickBooks | ID = 4
Description = An unexpected error has occured in "QuickBooks Pro 2009": Connection
Error:Invalid user ID or passwo

Error - 8/9/2010 9:46:11 AM | Computer Name = FTYMAIN | Source = QuickBooks | ID = 4
Description = An unexpected error has occured in "QuickBooks Pro 2009": Connection
String:CON=QBConnectionPool-Probe-QB_data_engine_19; ;DBF=E:\FTY Documents\Quickbooks
Files\FlyersToYou.QBW;ENG=QB_data_engine_19;DBN=2f5f10de31814562b93ee1155e4876

Error - 8/9/2010 9:46:11 AM | Computer Name = FTYMAIN | Source = QuickBooks | ID = 4
Description = An unexpected error has occured in "QuickBooks Pro 2009": DBConnPool::HandleConnectionError
errorCode:-6069, dbCode:-103 from file:'.\.\src\ConnPool.cpp' at line 1003 from
function:'DBMgr::DBConnPool::ini

Error - 8/11/2010 4:27:39 AM | Computer Name = FTYMAIN | Source = Application Hang | ID = 1002
Description = Hanging application Maxthon.exe, version 2.5.14.277, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.

Error - 8/11/2010 10:16:33 AM | Computer Name = FTYMAIN | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

Error - 8/11/2010 2:41:48 PM | Computer Name = FTYMAIN | Source = Application Hang | ID = 1002
Description = Hanging application WebPlus.exe, version 12.0.3.29, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.

Error - 8/12/2010 4:06:07 AM | Computer Name = FTYMAIN | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

Error - 8/12/2010 6:23:28 AM | Computer Name = FTYMAIN | Source = Application Hang | ID = 1002
Description = Hanging application WebPlus.exe, version 12.0.3.29, hang module hungapp,
version 0.0.0.0, hang address 0x00000000.

Error - 8/12/2010 8:56:17 AM | Computer Name = FTYMAIN | Source = Application Hang | ID = 1002
Description = Hanging application OUTLOOK.EXE, version 11.0.8325.0, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.

[ System Events ]
Error - 8/11/2010 8:04:53 PM | Computer Name = FTYMAIN | Source = Service Control Manager | ID = 7023
Description = The Uninterruptible Power Supply service terminated with the following
error: %%2481

Error - 8/11/2010 8:07:14 PM | Computer Name = FTYMAIN | Source = Service Control Manager | ID = 7034
Description = The XobniService service terminated unexpectedly. It has done this
1 time(s).

Error - 8/11/2010 8:07:14 PM | Computer Name = FTYMAIN | Source = Service Control Manager | ID = 7034
Description = The User Profile Hive Cleanup service terminated unexpectedly. It
has done this 1 time(s).

Error - 8/11/2010 8:07:14 PM | Computer Name = FTYMAIN | Source = Service Control Manager | ID = 7034
Description = The QBCFMonitorService service terminated unexpectedly. It has done
this 1 time(s).

Error - 8/11/2010 8:07:14 PM | Computer Name = FTYMAIN | Source = Service Control Manager | ID = 7034
Description = The Debug Diagnostic Service service terminated unexpectedly. It
has done this 1 time(s).

Error - 8/11/2010 10:41:49 PM | Computer Name = FTYMAIN | Source = UPS | ID = 2481
Description = The UPS service is not configured correctly.

Error - 8/11/2010 10:41:50 PM | Computer Name = FTYMAIN | Source = Service Control Manager | ID = 7023
Description = The Uninterruptible Power Supply service terminated with the following
error: %%2481

Error - 8/12/2010 2:08:18 AM | Computer Name = FTYMAIN | Source = UPS | ID = 2481
Description = The UPS service is not configured correctly.

Error - 8/12/2010 2:08:19 AM | Computer Name = FTYMAIN | Source = Service Control Manager | ID = 7023
Description = The Uninterruptible Power Supply service terminated with the following
error: %%2481

Error - 8/12/2010 12:34:07 PM | Computer Name = FTYMAIN | Source = System Error | ID = 1003
Description = Error code 0000009c, parameter1 00000000, parameter2 ba33c050, parameter3
b2000000, parameter4 1040080f.


< End of report >

Edited by boopme, 12 August 2010 - 02:08 PM.


BC AdBot (Login to Remove)

 


#2 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,779 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:11:24 PM

Posted 19 August 2010 - 06:41 AM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

Please include a clear description of the problems you're having, along with any steps you may have performed so far.

Please refrain from running tools or applying updates other than those we suggest while we are cleaning up your computer. The reason for this is so we know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.

Even if you have already provided information about your PC, we need a new log to see what has changed since you originally posted your problem.
We need to create an OTL Report
  1. Please download OTL from one of the following mirrors:
  2. Save it to your desktop.
  3. Double click on the icon on your desktop.
  4. Click the "Scan All Users" checkbox.
  5. In the custom scan box paste the following:
    CODE
    msconfig
    safebootminimal
    activex
    drivers32
    netsvcs
    %SYSTEMDRIVE%\*.exe
    /md5start
    eventlog.dll
    scecli.dll
    netlogon.dll
    cngaudit.dll
    sceclt.dll
    ntelogon.dll
    logevent.dll
    iaStor.sys
    nvstor.sys
    atapi.sys
    IdeChnDr.sys
    viasraid.sys
    AGP440.sys
    vaxscsi.sys
    nvatabus.sys
    viamraid.sys
    nvata.sys
    nvgts.sys
    iastorv.sys
    ViPrt.sys
    eNetHook.dll
    ahcix86.sys
    KR10N.sys
    nvstor32.sys
    ahcix86s.sys
    nvrd32.sys
    symmpi.sys
    adp3132.sys
    mv61xx.sys
    nvraid.sys
    /md5stop
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\drivers\*.sys /90
  6. Push the button.
  7. Two reports will open, copy and paste them in a reply here:
    • OTL.txt <-- Will be opened
    • Extra.txt<--Will be minimized

In the upper right hand corner of the topic you will see a button called Options. If you click on this in the drop-down menu you can choose Track this topic. I suggest you do this and select Immediate E-Mail notification and click on Proceed. This way you will be advised when we respond to your topic and facilitate the cleaning of your machine.

After 5 days if a topic is not replied to we assume it has been abandoned and it is closed.

regards myrti

is that a bird?  a plane? nooo it's the flying blueberry!

If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!

 

Follow BleepingComputer on: Facebook | Twitter | Google+


#3 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,779 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:11:24 PM

Posted 25 August 2010 - 08:48 AM

Due to lack of feedback, this topic is now Closed

If you need this topic reopened, please send me a PM.
Please include the address of this thread in your request.
This applies only to the original topic starter.

Everyone else please start a new topic.

With Regards,
myrti

is that a bird?  a plane? nooo it's the flying blueberry!

If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!

 

Follow BleepingComputer on: Facebook | Twitter | Google+


#4 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,779 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:11:24 PM

Posted 28 August 2010 - 03:03 PM

Topic reopened, please post your logs.

regarfds myrti

is that a bird?  a plane? nooo it's the flying blueberry!

If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!

 

Follow BleepingComputer on: Facebook | Twitter | Google+


#5 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,779 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:11:24 PM

Posted 07 September 2010 - 05:10 AM

Due to lack of feedback, this topic is now Closed

If you need this topic reopened, please send me a PM.
Please include the address of this thread in your request.
This applies only to the original topic starter.

Everyone else please start a new topic.

With Regards,
myrti

is that a bird?  a plane? nooo it's the flying blueberry!

If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!

 

Follow BleepingComputer on: Facebook | Twitter | Google+





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users