So far, things appear to be fine.
Here's my OTL log:
OTL logfile created on: 4/2/2011 7:02:19 PM - Run 2
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\johnp\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18999)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 51.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 72.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 141.69 Gb Total Space | 33.15 Gb Free Space | 23.40% Space Free | Partition Type: NTFS
Drive D: | 67.13 Gb Total Space | 53.00 Gb Free Space | 78.95% Space Free | Partition Type: NTFS
Computer Name: ACER1 | User Name: johnp | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - [2011/04/02 09:43:04 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\johnp\Desktop\OTL.exe
PRC - [2011/03/24 18:14:23 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/01/27 08:51:05 | 002,253,688 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
PRC - [2010/11/30 14:20:36 | 000,997,408 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2010/11/11 13:26:40 | 000,011,736 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
PRC - [2010/09/22 18:06:40 | 004,137,688 | ---- | M] () -- C:\Program Files\Conference Recording Service\ConferenceRS.exe
PRC - [2010/08/29 21:32:06 | 000,047,432 | ---- | M] (Mobile Stream) -- C:\Program Files\Mobile Stream\EasyTether\easytthr.exe
PRC - [2010/05/07 18:47:32 | 000,162,648 | ---- | M] (Logitech Inc.) -- C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe
PRC - [2010/05/07 18:35:22 | 000,165,208 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe
PRC - [2010/01/15 05:49:20 | 000,255,536 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
PRC - [2009/07/20 12:30:50 | 000,813,584 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPoint\SetPoint.exe
PRC - [2009/07/10 12:42:32 | 000,055,824 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
PRC - [2009/04/10 23:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/03/06 13:59:12 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) -- C:\Windows\System32\atashost.exe
PRC - [2008/05/20 18:50:50 | 000,269,448 | ---- | M] (CyberLink) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
PRC - [2008/05/20 03:06:00 | 006,144,000 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2007/12/11 20:15:04 | 000,012,800 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe
PRC - [2007/12/10 15:55:26 | 000,323,584 | ---- | M] (PixArt Imaging Incorporation) -- C:\Windows\Pixart\Pac7302\Monitor.exe
PRC - [2004/03/30 10:33:58 | 000,106,496 | ---- | M] (Dev1) -- C:\Program Files\RSI Saver\nhc.exe
========== Modules (SafeList) ========== MOD - [2011/04/02 09:43:04 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\johnp\Desktop\OTL.exe
MOD - [2010/08/31 08:43:52 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll
MOD - [2010/07/26 19:00:37 | 000,632,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4053_none_d08d7da0442a985d\msvcr80.dll
MOD - [2009/07/20 12:29:06 | 000,045,584 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPoint\lgscroll.dll
========== Win32 Services (SafeList) ========== SRV - File not found [Unknown | Stopped] -- -- (getPlusHelper) getPlus®
SRV - [2011/01/27 08:51:05 | 002,253,688 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2010/11/11 13:26:42 | 000,206,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe -- (NisSrv)
SRV - [2010/11/11 13:26:40 | 000,011,736 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -- (MsMpSvc)
SRV - [2010/05/07 18:47:32 | 000,162,648 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv)
SRV - [2010/01/15 05:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
SRV - [2009/09/09 18:02:01 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/07/20 12:28:10 | 000,121,360 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2009/03/06 13:59:12 | 000,020,376 | ---- | M] (WebEx Communications, Inc.) [Auto | Running] -- C:\Windows\System32\atashost.exe -- (atashost)
SRV - [2008/08/19 15:27:22 | 000,024,576 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Acer\Empowering Technology\Service\ETService.exe -- (ETService)
SRV - [2008/07/29 18:53:00 | 000,500,784 | ---- | M] (Egis Incorporated) [Disabled | Stopped] -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe -- (eDataSecurity Service)
SRV - [2008/05/20 18:50:50 | 000,269,448 | ---- | M] (CyberLink) [Auto | Running] -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe -- (Acer HomeMedia Connect Service)
SRV - [2008/01/20 19:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/12/11 20:15:04 | 000,012,800 | ---- | M] (Agere Systems) [Auto | Running] -- C:\Windows\System32\agrsmsvc.exe -- (AgereModemAudio)
========== Driver Services (SafeList) ========== DRV - [2010/10/24 22:25:38 | 000,054,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2010/10/24 22:25:38 | 000,043,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\MpNWMon.sys -- (MpNWMon)
DRV - [2010/08/29 19:18:06 | 000,017,232 | ---- | M] (Mobile Stream) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\easytthr.sys -- (easytether)
DRV - [2010/07/27 01:14:58 | 006,842,464 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lvuvc.sys -- (LVUVC) Logitech Webcam 300(UVC)
DRV - [2010/07/27 01:12:50 | 000,282,336 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lvrs.sys -- (LVRS)
DRV - [2010/07/27 01:12:26 | 000,114,784 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lvpopflt.sys -- (lvpopflt)
DRV - [2010/05/25 00:59:24 | 000,121,576 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm)
DRV - [2010/05/25 00:59:24 | 000,096,488 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus) SAMSUNG Android USB Composite Device driver (WDM)
DRV - [2010/05/25 00:59:24 | 000,030,312 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadadb.sys -- (androidusb)
DRV - [2010/05/25 00:59:24 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl) SAMSUNG Android USB Modem (Filter)
DRV - [2010/05/07 18:43:30 | 000,025,824 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LVPr2Mon.sys -- (LVPr2Mon)
DRV - [2009/06/17 09:56:24 | 000,079,248 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LMouKE.Sys -- (LMouKE)
DRV - [2009/06/17 09:56:16 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2009/06/17 09:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2009/06/17 09:55:26 | 000,063,248 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\L8042mou.Sys -- (L8042mou)
DRV - [2009/06/17 09:55:18 | 000,020,240 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\L8042Kbd.sys -- (L8042Kbd)
DRV - [2009/05/10 10:46:02 | 000,041,216 | ---- | M] (Gbridge LLC) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\gbridge.sys -- (gbridge)
DRV - [2008/11/02 01:44:10 | 000,056,572 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2008/08/19 15:23:00 | 000,015,392 | ---- | M] (Acer, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\int15.sys -- (int15)
DRV - [2008/07/29 04:45:00 | 000,904,192 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athrusb.sys -- (athrusb)
DRV - [2008/04/01 21:40:48 | 000,175,632 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\ahcix86s.sys -- (ahcix86s)
DRV - [2008/03/09 07:58:42 | 003,533,824 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
DRV - [2008/03/05 22:10:54 | 001,203,808 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2007/04/20 21:31:14 | 000,870,400 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\athru6.sys -- (athrusb6)
DRV - [2006/10/29 20:23:12 | 000,007,680 | ---- | M] (ATI Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\AtiPcie.sys -- (AtiPcie) ATI PCI Express (3GIO)
DRV - [2004/11/19 11:13:02 | 000,018,848 | ---- | M] (KONICA MINOLTA BUSINESS TECHNOLOGIES, INC.) [Kernel | Auto | Stopped] -- C:\Windows\System32\MLPTDR_Q.SYS -- (MLPTDR_Q)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://homepage.acer.com/rdr.aspx?b=ACAW&l=0409&s=1&o=vp32&d=0509&m=aspire_m1202 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
http://global.acer.com [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://whatismyipaddress.com/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local;*.local
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 96.9.164.140:3128
========== FireFox ========== FF - HKLM\software\mozilla\Firefox\Extensions\\{22119944-ED35-4ab1-910B-E619EA06A115}: C:\Program Files\Siber Systems\AI RoboForm\Firefox [2009/09/07 22:35:47 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/04/02 11:52:00 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/04/02 18:54:21 | 000,000,000 | ---D | M]
[2010/08/17 03:47:18 | 000,000,000 | ---D | M] (No name found) -- C:\Users\johnp\AppData\Roaming\Mozilla\Extensions
[2009/10/27 02:14:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\johnp\AppData\Roaming\Mozilla\Extensions\{ea278cf8-93cd-484f-b951-57360482d33a}
[2010/08/17 03:47:18 | 000,000,000 | ---D | M] (No name found) -- C:\Users\johnp\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org
[2011/03/31 23:19:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\00x2orcu.default\extensions
[2011/04/02 19:00:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\xpvd2f97.default\extensions
[2010/08/04 19:37:51 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\xpvd2f97.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/09/06 20:46:58 | 000,000,000 | ---D | M] (Password Exporter) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\xpvd2f97.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}
[2011/04/02 17:22:22 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\xpvd2f97.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011/02/03 19:36:53 | 000,000,000 | ---D | M] (SearchStatus) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\xpvd2f97.default\extensions\{d57c9ff1-6389-48fc-b770-f78bd89b6e8a}
[2011/03/20 11:34:12 | 000,000,000 | ---D | M] (DownThemAll!) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\xpvd2f97.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}
[2011/03/20 11:34:05 | 000,000,000 | ---D | M] (Ant Video Downloader) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\xpvd2f97.default\extensions\anttoolbar@ant.com
[2011/03/30 18:18:08 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\johnp\AppData\Roaming\Mozilla\Firefox\Profiles\xpvd2f97.default\extensions\engine@conduit.com
[2011/04/02 19:00:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/09/25 09:02:31 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2011/04/02 18:54:23 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/04/02 18:54:09 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010/08/12 10:49:53 | 000,075,208 | ---- | M] (Foxit Software Company) -- C:\Program Files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll
O1 HOSTS File: ([2011/04/02 13:22:28 | 000,000,098 | ---- | M]) - C:\Windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (ShowBarObj Class) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll (Egis)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.)
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKCU\..\Toolbar\ShellBrowser: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.)
O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O4 - HKLM..\Run: [Acer Assist Launcher] C:\Program Files\Acer\Acer Assist\launcher.exe ()
O4 - HKLM..\Run: [Acer Product Registration] C:\Program Files\Acer\Acer Registration\ACE1.exe (Leader Technologies)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [DNS7reminder] D:\Program Files\Nuance\NaturallySpeaking10\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [LWS] C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [PAC7302_Monitor] C:\Windows\Pixart\Pac7302\Monitor.exe (PixArt Imaging Incorporation)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [EasyTether] C:\Program Files\Mobile Stream\EasyTether\easytthr.exe (Mobile Stream)
O4 - Startup: C:\Users\johnp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RSI Saver.lnk = C:\Program Files\RSI Saver\nhc.exe (Dev1)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Customize Menu - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: Fill Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKCU\..Trusted Domains: taxsoftware.com ([]* in Trusted sites)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.10.1
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - Reg Error: Key error. File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 14:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lameacm - C:\Windows\System32\LameACM.acm (
http://www.mp3dev.org/)
Drivers32: MSVideo - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\divx.dll (DivXNetworks, Inc.)
Drivers32: vidc.i420 - C:\Windows\System32\i420vfw.dll (www.helixcommunity.org)
Drivers32: vidc.xvid - C:\Windows\System32\xvid.dll ()
Drivers32: vidc.yv12 - C:\Windows\System32\yv12vfw.dll (www.helixcommunity.org)
========== Files/Folders - Created Within 30 Days ========== [2011/04/02 18:59:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/04/02 17:26:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011/04/02 17:21:25 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee Security Scan
[2011/04/02 17:21:25 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2011/04/02 17:21:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
[2011/04/02 17:21:22 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan
[2011/04/02 15:23:32 | 000,000,000 | ---D | C] -- C:\Users\johnp\AppData\Roaming\uTorrent
[2011/04/02 13:44:12 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2011/04/02 13:10:02 | 000,000,000 | ---D | C] -- C:\_OTL
[2011/04/02 11:54:15 | 000,000,000 | ---D | C] -- C:\Users\johnp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2011/04/02 09:54:35 | 096,028,024 | ---- | C] ( ) -- C:\Users\johnp\Desktop\setup_9.0.0.722_02.04.2011_18-23.exe
[2011/04/02 09:43:16 | 001,377,112 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\johnp\Desktop\TDSSKiller.exe
[2011/04/02 09:42:58 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\johnp\Desktop\OTL.exe
[2011/03/31 16:05:43 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011/03/31 16:05:43 | 000,000,000 | ---D | C] -- C:\Users\johnp\AppData\Local\temp
[2011/03/31 16:03:01 | 000,000,000 | ---D | C] -- C:\$RECYCLE.BIN
[2011/03/31 13:30:18 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2011/03/31 10:57:55 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/03/31 10:57:55 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/03/31 10:57:55 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/03/31 10:57:30 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/03/31 10:28:48 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/03/31 09:17:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011/03/15 01:42:12 | 000,000,000 | ---D | C] -- C:\btax
[2011/03/12 17:46:21 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2011/03/12 17:41:51 | 000,000,000 | ---D | C] -- C:\ProgramData\JohnPBackup
[2009/01/20 16:10:11 | 000,049,152 | R--- | C] ( ) -- C:\Windows\Interop.IWshRuntimeLibrary.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2011/04/02 18:57:04 | 000,000,916 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2187111495-2872751517-3570867934-1000UA.job
[2011/04/02 18:45:37 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/04/02 18:45:37 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/04/02 18:45:11 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/04/02 18:45:08 | 1878,188,032 | -HS- | M] () -- C:\hiberfil.sys
[2011/04/02 18:45:07 | 000,000,000 | ---- | M] () -- C:\Windows\System32\drivers\lvuvc.hs
[2011/04/02 17:26:34 | 000,001,856 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011/04/02 17:21:22 | 000,001,719 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
[2011/04/02 17:21:22 | 000,001,717 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
[2011/04/02 17:02:34 | 000,034,398 | ---- | M] () -- C:\Users\johnp\Desktop\bookmarks-2011-04-02.json
[2011/04/02 17:02:30 | 000,067,611 | ---- | M] () -- C:\Users\johnp\Desktop\bookmarks.html
[2011/04/02 16:48:08 | 000,879,081 | ---- | M] () -- C:\Users\johnp\Desktop\SecurityCheck.exe
[2011/04/02 16:02:55 | 000,021,504 | ---- | M] () -- C:\Users\johnp\Documents\real estate investing.msam
[2011/04/02 16:02:11 | 000,169,500 | -H-- | M] () -- C:\Windows\System32\mlfcache.dat
[2011/04/02 15:27:05 | 000,000,740 | ---- | M] () -- C:\Users\johnp\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2011/04/02 15:27:05 | 000,000,716 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk
[2011/04/02 15:26:02 | 000,608,464 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/04/02 15:26:02 | 000,105,818 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/04/02 13:22:28 | 000,000,098 | ---- | M] () -- C:\Windows\System32\drivers\etc\Hosts
[2011/04/02 11:58:21 | 000,000,864 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2187111495-2872751517-3570867934-1000Core.job
[2011/04/02 11:54:24 | 000,097,384 | ---- | M] () -- C:\Users\johnp\Desktop\RICHTX32.zip
[2011/04/02 11:54:20 | 000,002,056 | ---- | M] () -- C:\Users\johnp\Desktop\Google Chrome.lnk
[2011/04/02 11:54:20 | 000,002,018 | ---- | M] () -- C:\Users\johnp\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/04/02 10:30:46 | 096,028,024 | ---- | M] ( ) -- C:\Users\johnp\Desktop\setup_9.0.0.722_02.04.2011_18-23.exe
[2011/04/02 09:43:12 | 001,263,721 | ---- | M] () -- C:\Users\johnp\Desktop\tdsskiller.zip
[2011/04/02 09:43:04 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\johnp\Desktop\OTL.exe
[2011/04/01 00:11:41 | 000,000,000 | ---- | M] () -- C:\Users\johnp\defogger_reenable
[2011/03/31 23:03:14 | 001,743,424 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/03/31 22:52:14 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011/03/31 22:52:14 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2011/03/31 22:06:21 | 000,050,477 | ---- | M] () -- C:\Users\johnp\Desktop\Defogger.exe
[2011/03/31 21:13:30 | 000,625,664 | ---- | M] () -- C:\Users\johnp\Desktop\dds.scr
[2011/03/29 03:00:37 | 000,000,518 | ---- | M] () -- C:\Windows\tasks\NatSpeak Periodic Language Model Optimization.job
[2011/03/28 16:28:10 | 000,023,126 | ---- | M] () -- C:\Users\johnp\.recently-used.xbel
[2011/03/28 02:00:39 | 000,000,494 | ---- | M] () -- C:\Windows\tasks\NatSpeak Periodic Acoustic Optimization.job
[2011/03/24 07:27:18 | 000,000,680 | ---- | M] () -- C:\Users\johnp\AppData\Local\d3d9caps.dat
[2011/03/21 15:03:39 | 000,091,648 | ---- | M] () -- C:\Users\johnp\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/03/20 17:07:56 | 000,301,568 | ---- | M] () -- C:\Users\johnp\Desktop\gmer.exe
[2011/03/19 07:53:15 | 000,002,056 | ---- | M] () -- C:\Users\johnp\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome (2).lnk
[2011/03/13 18:41:30 | 000,005,950 | ---- | M] () -- C:\Windows\seRapid.INI
[2011/03/12 09:13:20 | 002,506,171 | ---- | M] () -- C:\Users\johnp\Desktop\SCAE_Inside_Web_final_sp11_jan (2).pdf
[2011/03/10 12:27:50 | 001,377,112 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\johnp\Desktop\TDSSKiller.exe
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ========== [2011/04/02 17:26:34 | 000,001,856 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2011/04/02 17:26:34 | 000,001,804 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2011/04/02 17:21:22 | 000,001,719 | ---- | C] () -- C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
[2011/04/02 17:21:22 | 000,001,717 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
[2011/04/02 17:02:33 | 000,034,398 | ---- | C] () -- C:\Users\johnp\Desktop\bookmarks-2011-04-02.json
[2011/04/02 17:02:30 | 000,067,611 | ---- | C] () -- C:\Users\johnp\Desktop\bookmarks.html
[2011/04/02 16:48:03 | 000,879,081 | ---- | C] () -- C:\Users\johnp\Desktop\SecurityCheck.exe
[2011/04/02 16:01:41 | 000,021,504 | ---- | C] () -- C:\Users\johnp\Documents\real estate investing.msam
[2011/04/02 15:24:31 | 000,000,740 | ---- | C] () -- C:\Users\johnp\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2011/04/02 15:24:31 | 000,000,716 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk
[2011/04/02 11:54:20 | 000,002,056 | ---- | C] () -- C:\Users\johnp\Desktop\Google Chrome.lnk
[2011/04/02 11:54:20 | 000,002,018 | ---- | C] () -- C:\Users\johnp\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/04/02 11:54:12 | 000,097,384 | ---- | C] () -- C:\Users\johnp\Desktop\RICHTX32.zip
[2011/04/02 11:52:21 | 000,000,916 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2187111495-2872751517-3570867934-1000UA.job
[2011/04/02 11:52:21 | 000,000,864 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2187111495-2872751517-3570867934-1000Core.job
[2011/04/02 09:42:45 | 001,263,721 | ---- | C] () -- C:\Users\johnp\Desktop\tdsskiller.zip
[2011/04/01 00:11:41 | 000,000,000 | ---- | C] () -- C:\Users\johnp\defogger_reenable
[2011/03/31 22:52:14 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2011/03/31 22:52:14 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2011/03/31 22:07:12 | 000,050,477 | ---- | C] () -- C:\Users\johnp\Desktop\Defogger.exe
[2011/03/31 21:13:46 | 000,301,568 | ---- | C] () -- C:\Users\johnp\Desktop\gmer.exe
[2011/03/31 21:13:38 | 000,625,664 | ---- | C] () -- C:\Users\johnp\Desktop\dds.scr
[2011/03/31 20:59:16 | 1878,188,032 | -HS- | C] () -- C:\hiberfil.sys
[2011/03/31 10:57:56 | 000,089,088 | ---- | C] () -- C:\Windows\MBR.exe
[2011/03/31 10:57:55 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2011/03/31 10:57:55 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/03/31 10:57:55 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/03/31 10:57:55 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/03/28 16:28:10 | 000,023,126 | ---- | C] () -- C:\Users\johnp\.recently-used.xbel
[2011/03/19 07:53:15 | 000,002,056 | ---- | C] () -- C:\Users\johnp\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome (2).lnk
[2010/12/19 19:27:55 | 000,239,074 | ---- | C] () -- C:\Users\johnp\AppData\Local\adCenterExcelAddinV5.5_External.config
[2010/12/15 01:26:31 | 001,456,268 | ---- | C] () -- C:\Program Files\FSResizer30.zip
[2010/11/04 07:10:15 | 000,000,680 | ---- | C] () -- C:\Users\johnp\AppData\Local\d3d9caps.dat
[2010/10/02 12:10:24 | 000,091,648 | ---- | C] () -- C:\Users\johnp\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/09/29 23:21:22 | 000,313,344 | ---- | C] () -- C:\Program Files\hjsplit.exe
[2010/09/28 19:50:05 | 013,348,864 | ---- | C] () -- C:\Users\johnp\AppData\Roaming\places.sqlite
[2010/09/23 00:02:16 | 000,165,376 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2010/09/22 23:55:13 | 000,047,104 | ---- | C] () -- C:\Windows\AKDeInstall.exe
[2010/08/30 22:16:33 | 000,000,096 | ---- | C] () -- C:\Windows\System32\detbpi2x.dll
[2010/08/08 16:12:23 | 000,004,143 | ---- | C] () -- C:\ProgramData\igtxgpmi.mtl
[2010/08/08 11:55:48 | 000,057,016 | ---- | C] () -- C:\Windows\System32\imsys.dll
[2010/08/08 11:55:25 | 000,343,224 | ---- | C] () -- C:\Windows\System32\iimds.dll
[2010/08/08 11:55:25 | 000,014,848 | ---- | C] () -- C:\Windows\System32\iimir.dll
[2010/08/08 11:55:24 | 000,233,144 | ---- | C] () -- C:\Windows\System32\IMImage.dll
[2010/08/07 18:07:06 | 000,000,250 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2010/07/27 01:03:20 | 010,829,656 | ---- | C] () -- C:\Windows\System32\LogiDPP.dll
[2010/07/27 01:03:20 | 000,102,744 | ---- | C] () -- C:\Windows\System32\LogiDPPApp.exe
[2010/07/27 01:03:18 | 000,290,648 | ---- | C] () -- C:\Windows\System32\DevManagerCore.dll
[2010/07/27 00:56:04 | 000,090,411 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
[2010/06/21 00:00:04 | 000,000,680 | ---- | C] () -- C:\Users\johnp\AppData\Roaming\coreavc.ini
[2010/05/07 18:46:36 | 000,014,168 | ---- | C] () -- C:\Windows\System32\drivers\iKeyLFT2.dll
[2010/05/07 18:43:30 | 000,025,824 | ---- | C] () -- C:\Windows\System32\drivers\LVPr2Mon.sys
[2009/11/28 18:55:39 | 008,892,928 | ---- | C] () -- C:\ProgramData\atscie.msi
[2009/11/20 20:58:54 | 000,169,500 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2009/11/17 10:39:02 | 000,004,110 | ---- | C] () -- C:\ProgramData\vsrenaae.pyv
[2009/09/22 22:30:14 | 000,005,950 | ---- | C] () -- C:\Windows\seRapid.INI
[2009/09/17 10:05:07 | 000,027,648 | ---- | C] () -- C:\Windows\System32\AVSredirect.dll
[2009/09/16 16:27:35 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2009/09/16 16:27:34 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009/09/14 11:38:11 | 000,002,274 | ---- | C] () -- C:\Users\johnp\AppData\Roaming\SAS7_000.DAT
[2009/09/07 23:31:20 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2009/09/07 22:32:03 | 000,000,000 | ---- | C] () -- C:\Users\johnp\AppData\Roaming\wklnhst.dat
[2009/09/07 21:48:03 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2009/09/07 21:25:48 | 000,024,576 | ---- | C] () -- C:\Windows\System32\ZyDelReg.exe
[2009/09/07 21:25:47 | 000,028,672 | ---- | C] () -- C:\Windows\System32\InsDrvZD.dll
[2009/09/07 21:25:47 | 000,015,872 | ---- | C] () -- C:\Windows\System32\InsDrvZD64.DLL
[2009/05/14 12:46:09 | 000,000,044 | ---- | C] () -- C:\Windows\Acer(Normal).ini
[2009/05/14 12:46:09 | 000,000,042 | ---- | C] () -- C:\Windows\Acer(Wide).ini
[2009/05/14 12:40:59 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2009/01/20 17:44:53 | 000,487,424 | ---- | C] () -- C:\Windows\System32\INT15.dll
[2009/01/20 16:56:27 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009/01/20 16:08:48 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
[2009/01/20 16:08:48 | 000,168,886 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2009/01/20 16:08:48 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2009/01/20 16:08:47 | 000,090,112 | ---- | C] () -- C:\Windows\System32\atibrtmon.exe
[2006/11/02 05:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 05:47:37 | 001,743,424 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 05:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 03:33:01 | 000,608,464 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 03:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 03:33:01 | 000,105,818 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 03:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 03:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 01:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 01:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 00:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 00:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2004/11/19 11:10:42 | 000,011,521 | ---- | C] () -- C:\Windows\MSUMLT_Q.INI
[2002/05/13 02:16:19 | 000,356,352 | ---- | C] () -- C:\Windows\System32\xvid.dll
========== LOP Check ========== [2010/08/10 18:47:38 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\.kde
[2009/09/07 12:20:34 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Acer
[2009/05/14 12:42:12 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Acer GameZone Console
[2010/08/03 22:13:09 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Artisteer
[2011/03/31 23:18:41 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Asterisks Password Viewer
[2011/01/31 16:03:48 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\atunes
[2009/09/26 00:10:09 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Audacity
[2009/09/09 00:58:51 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Bullzip
[2009/10/12 15:36:18 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2011/04/02 18:30:53 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\FileZilla
[2009/11/06 21:26:29 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Foxit
[2010/08/12 10:50:15 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Foxit Software
[2011/03/31 22:41:51 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\GoodSync
[2011/03/28 16:30:25 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\gtk-2.0
[2010/01/19 01:32:44 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\JGsoft
[2009/11/05 08:59:10 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\JonDo
[2010/08/10 18:13:13 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\KDE
[2009/09/20 17:01:41 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Kingsoft
[2009/09/28 00:17:48 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\kompozer.net
[2009/09/07 12:20:29 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Leadertech
[2011/02/17 19:32:29 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\LinkWheelData
[2010/08/21 17:13:20 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\main
[2010/01/23 03:32:37 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Mobipocket
[2009/10/26 18:06:13 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\MP3SkypeRecorder
[2011/02/12 11:46:42 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\mstech
[2010/08/22 08:12:01 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\MySQL
[2011/03/31 10:13:23 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Notepad++
[2009/09/14 09:45:49 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Nuance
[2009/09/09 21:22:08 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\OpenOffice.org
[2009/09/21 23:47:13 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Opera
[2009/10/05 00:36:49 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\RenamerNG
[2010/08/11 10:08:09 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\SharePod
[2011/02/16 00:08:30 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\TeamViewer
[2009/09/07 22:32:06 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Template
[2009/10/29 19:26:21 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\Thunderbird
[2010/07/25 21:34:41 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\VitySoft
[2010/08/17 06:03:19 | 000,000,000 | ---D | M] -- C:\Users\johnp\AppData\Roaming\WinBatch
[2011/03/28 02:00:39 | 000,000,494 | ---- | M] () -- C:\Windows\Tasks\NatSpeak Periodic Acoustic Optimization.job
[2011/03/29 03:00:37 | 000,000,518 | ---- | M] () -- C:\Windows\Tasks\NatSpeak Periodic Language Model Optimization.job
[2011/04/02 18:34:29 | 000,032,656 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ========== ========== Custom Scans ========== < %USERPROFILE%\AppData\Local\Google\Chrome\User Data\*.* /s >[2011/04/02 19:01:49 | 000,000,004 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt
[2011/04/02 19:01:48 | 000,001,766 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Local State
[2011/04/02 18:55:17 | 007,067,932 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom
[2011/04/02 18:55:18 | 002,076,165 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Filter 2
[2011/04/02 11:54:22 | 000,053,248 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Archived History
[2011/04/02 13:41:02 | 000,000,755 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Bookmarks
[2011/04/02 13:41:02 | 000,000,755 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak
[2011/04/02 18:55:35 | 000,022,528 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cookies
[2011/04/02 19:01:49 | 000,000,965 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Current Session
[2011/04/02 19:01:48 | 000,000,523 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
[2011/04/02 18:48:52 | 000,022,528 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Favicons
[2011/04/02 19:01:48 | 000,122,880 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\History
[2011/04/02 18:50:45 | 000,434,176 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\History Index 2011-04
[2011/04/02 18:50:08 | 000,005,371 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Last Session
[2011/04/02 18:50:07 | 000,002,212 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Last Tabs
[2011/04/02 13:40:50 | 000,012,288 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Login Data
[2011/04/02 19:01:49 | 000,003,223 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Preferences
[2011/04/02 18:50:50 | 000,032,768 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Top Sites
[2011/04/02 13:27:12 | 000,000,008 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity
[2011/04/02 18:50:08 | 000,131,072 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Visited Links
[2011/04/02 18:50:33 | 000,061,440 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Web Data
[2011/04/02 18:50:08 | 000,045,056 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0
[2011/04/02 19:01:49 | 000,794,624 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1
[2011/04/02 18:50:08 | 001,056,768 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2
[2011/04/02 18:50:08 | 004,202,496 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3
[2011/04/02 13:27:24 | 000,090,032 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000001
[2011/04/02 13:27:26 | 000,026,133 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002
[2011/04/02 13:27:27 | 000,019,231 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003
[2011/04/02 13:40:30 | 000,017,608 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004
[2011/04/02 13:40:32 | 000,065,167 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005
[2011/04/02 13:40:35 | 000,024,262 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006
[2011/04/02 13:40:50 | 000,031,334 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007
[2011/04/02 13:40:51 | 000,031,858 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008
[2011/04/02 13:40:52 | 000,065,167 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009
[2011/04/02 13:40:53 | 000,040,214 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000a
[2011/04/02 13:40:57 | 000,017,265 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000b
[2011/04/02 13:40:57 | 000,078,601 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000c
[2011/04/02 13:40:58 | 000,039,802 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000d
[2011/04/02 13:40:58 | 000,033,981 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000e
[2011/04/02 13:40:58 | 000,038,404 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000f
[2011/04/02 13:40:58 | 000,120,220 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000010
[2011/04/02 13:40:58 | 000,109,976 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000011
[2011/04/02 13:41:00 | 000,206,981 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000012
[2011/04/02 13:46:07 | 000,016,582 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000013
[2011/04/02 13:46:08 | 000,035,733 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000014
[2011/04/02 13:46:08 | 000,025,120 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000015
[2011/04/02 13:46:11 | 000,050,286 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000016
[2011/04/02 13:46:14 | 000,054,211 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000017
[2011/04/02 13:46:15 | 000,018,631 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000018
[2011/04/02 13:46:16 | 000,024,113 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000019
[2011/04/02 13:46:17 | 000,034,811 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001a
[2011/04/02 13:46:17 | 000,016,615 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001b
[2011/04/02 13:46:18 | 000,028,874 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001c
[2011/04/02 13:46:19 | 000,034,645 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001d
[2011/04/02 13:46:19 | 000,548,874 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001e
[2011/04/02 13:46:21 | 000,026,948 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001f
[2011/04/02 13:46:42 | 000,054,211 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000020
[2011/04/02 13:46:46 | 000,039,307 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000021
[2011/04/02 13:46:46 | 000,021,506 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000022
[2011/04/02 13:47:22 | 000,054,211 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000023
[2011/04/02 13:47:23 | 000,018,631 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000024
[2011/04/02 13:47:24 | 000,040,651 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000025
[2011/04/02 13:47:25 | 000,050,358 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000026
[2011/04/02 13:48:30 | 000,066,907 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000027
[2011/04/02 13:48:31 | 000,018,277 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000028
[2011/04/02 13:48:31 | 000,022,864 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000029
[2011/04/02 13:48:31 | 000,017,134 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002a
[2011/04/02 13:48:31 | 000,168,327 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002b
[2011/04/02 13:48:32 | 000,134,297 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002c
[2011/04/02 13:48:37 | 000,023,658 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002d
[2011/04/02 13:48:39 | 000,180,300 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002e
[2011/04/02 13:48:40 | 000,022,735 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002f
[2011/04/02 13:54:11 | 000,042,128 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000030
[2011/04/02 13:54:14 | 000,025,756 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000031
[2011/04/02 13:54:15 | 000,032,278 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000032
[2011/04/02 13:54:15 | 000,019,670 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000033
[2011/04/02 13:54:15 | 000,019,638 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000034
[2011/04/02 13:56:02 | 000,047,703 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000035
[2011/04/02 13:56:02 | 000,089,763 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000036
[2011/04/02 13:56:03 | 000,206,617 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000037
[2011/04/02 13:58:35 | 000,020,030 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000038
[2011/04/02 14:01:10 | 000,035,735 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000039
[2011/04/02 16:28:14 | 000,104,203 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003a
[2011/04/02 16:28:15 | 000,018,151 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003b
[2011/04/02 16:28:17 | 000,049,786 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003c
[2011/04/02 16:28:18 | 000,036,707 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003d
[2011/04/02 16:28:18 | 000,038,096 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003e
[2011/04/02 16:28:18 | 000,030,840 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003f
[2011/04/02 16:28:18 | 000,045,003 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000040
[2011/04/02 16:28:19 | 000,030,970 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000041
[2011/04/02 16:28:19 | 000,027,397 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000042
[2011/04/02 16:28:19 | 000,060,655 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000043
[2011/04/02 16:28:19 | 000,047,262 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000044
[2011/04/02 16:28:20 | 000,228,825 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000045
[2011/04/02 16:28:20 | 000,127,158 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000046
[2011/04/02 16:28:21 | 000,115,846 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000047
[2011/04/02 16:28:21 | 000,017,542 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000048
[2011/04/02 16:31:47 | 041,939,143 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000049
[2011/04/02 16:33:57 | 000,078,963 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00004a
[2011/04/02 16:33:59 | 000,075,920 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00004b
[2011/04/02 17:39:09 | 000,032,835 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00004d
[2011/04/02 17:39:11 | 000,031,032 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00004e
[2011/04/02 17:39:11 | 000,078,620 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00004f
[2011/04/02 18:09:58 | 000,031,279 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00005e
[2011/04/02 18:48:36 | 000,033,382 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00005f
[2011/04/02 18:48:37 | 000,018,684 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000060
[2011/04/02 18:48:38 | 000,016,669 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000061
[2011/04/02 18:48:56 | 000,884,512 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000062
[2011/04/02 13:27:17 | 000,524,656 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Cache\index
[2011/04/02 11:54:36 | 000,017,408 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Plugin Data\Google Gears\localserver.db
[2011/04/02 11:54:36 | 000,019,456 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\Plugin Data\Google Gears\permissions.db
[2011/04/02 11:54:31 | 000,000,000 | ---- | M] () -- C:\Users\johnp\AppData\Local\Google\Chrome\User Data\Default\User StyleSheets\Custom.css
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU > < HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-01-23 20:25:38
========== Alternate Data Streams ========== @Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:F35A93AD
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:4D066AD2
< End of report >