1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Solved Trojan. AV security. Need assistance removing it.

Discussion in 'Malware and Virus Removal Archive' started by rpicon, 2010/06/29.

  1. 2010/07/01
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    so far AWSOME! :)

    However, combofix will not uninstall. Instead it scans and runs. I haven't yet download it OTL.

    Any thoughts or suggestions?
     
  2. 2010/07/01
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    I'm glad to hear good news :)

    Delete Combofix manually....
    Delete Combofix, Qoobox folders,and Combofix.txt file from C:
    Delete broni.com from your desktop
     

  3. to hide this advert.

  4. 2010/07/02
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    OTL Extras logfile created on: 2010-07-02 10:38:44 - Run 1
    OTL by OldTimer - Version 3.2.7.0 Folder = C:\Documents and Settings\Rick Picon\Desktop
    Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 7.0.5730.13)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: yyyy-MM-dd

    2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 73.00% Memory free
    4.00 Gb Paging File | 4.00 Gb Available in Paging File | 91.00% Paging File free
    Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 108.59 Gb Total Space | 40.24 Gb Free Space | 37.06% Space Free | Partition Type: NTFS
    Drive D: | 36.96 Gb Total Space | 6.03 Gb Free Space | 16.33% Space Free | Partition Type: NTFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded
    Drive P: | 136.02 Gb Total Space | 60.20 Gb Free Space | 44.26% Space Free | Partition Type: NTFS
    Drive T: | 136.02 Gb Total Space | 60.20 Gb Free Space | 44.26% Space Free | Partition Type: NTFS

    Computer Name: GLB-RPICON-02
    Current User Name: rpicon
    Logged in as Administrator.

    Current Boot Mode: Normal
    Scan Mode: Current user
    Company Name Whitelist: On
    Skip Microsoft Files: On
    File Age = 90 Days
    Output = Standard
    Quick Scan

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

    [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
    .html [@ = htmlfile] -- Reg Error: Key error. File not found

    ========== Shell Spawning ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1 "
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~4\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
    Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
    Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
    Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

    ========== Security Center Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "FirstRunDisabled" = 1
    "FirewallOverride" = 0
    "AntiVirusDisableNotify" = 0
    "FirewallDisableNotify" = 0
    "UpdatesDisableNotify" = 0

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "EnableFirewall" = 0
    "DoNotAllowExceptions" = 0
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
    "139:TCP" = 139:TCP:*:Enabled:mad:xpsp2res.dll,-22004
    "445:TCP" = 445:TCP:*:Enabled:mad:xpsp2res.dll,-22005
    "137:UDP" = 137:UDP:*:Enabled:mad:xpsp2res.dll,-22001
    "138:UDP" = 138:UDP:*:Enabled:mad:xpsp2res.dll,-22002
    "3389:TCP" = 3389:TCP:*:Enabled:mad:xpsp2res.dll,-22009
    "26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
    "3393:TCP" = 3393:TCP:*:Enabled:RDP
    "135:TCP" = 135:TCP:*:Enabled:DCOM
    "17450:TCP" = 17450:TCP:*:Enabled:BitComet 17450 TCP
    "17450:UDP" = 17450:UDP:*:Enabled:BitComet 17450 UDP
    "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22007
    "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22008

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "EnableFirewall" = 1
    "DoNotAllowExceptions" = 0
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
    "139:TCP" = 139:TCP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22004
    "445:TCP" = 445:TCP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22005
    "137:UDP" = 137:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22001
    "138:UDP" = 138:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22002
    "135:TCP" = 135:TCP:*:Enabled:DCOM
    "3389:TCP" = 3389:TCP:*:Enabled:mad:xpsp2res.dll,-22009
    "3393:TCP" = 3393:TCP:*:Enabled:RD-Rick
    "26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
    "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22007
    "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22008

    ========== Authorized Applications List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
    "C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe" = C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe:*:Enabled:AOL -- File not found
    "C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" = C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL -- File not found
    "C:\Program Files\America Online 9.0\waol.exe" = C:\Program Files\America Online 9.0\waol.exe:*:Enabled:AOL -- File not found
    "C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
    "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
    "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
    "C:\Program Files\MSN Messenger\livecall.exe" = C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) -- (Microsoft Corporation)
    "C:\Program Files\Network Assistant\Nassi.exe" = C:\Program Files\Network Assistant\Nassi.exe:*:Enabled:Network Assistant (Nassi) -- (Gracebyte Software)
    "C:\Program Files\LimeWire\LimeWire.exe" = C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire -- File not found
    "C:\Program Files\Schwab Performance Technologies\PortfolioCenter\SPTServer.exe" = C:\Program Files\Schwab Performance Technologies\PortfolioCenter\SPTServer.exe:*:Enabled:SPTServer.exe -- (Schwab Performance Technologies)
    "C:\Program Files\Schwab Performance Technologies\PortfolioCenter\PortfolioCenter.exe" = C:\Program Files\Schwab Performance Technologies\PortfolioCenter\PortfolioCenter.exe:*:Enabled:portfolioCenter -- (Schwab Performance Technologies, Inc.,)
    "C:\Program Files\BitTorrent\bittorrent.exe" = C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:bittorrent -- File not found
    "C:\Program Files\BitComet\BitComet.exe" = C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client -- File not found
    "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
    "C:\Program Files\utorrent\utorrent.exe" = C:\Program Files\utorrent\utorrent.exe:*:Enabled:µTorrent -- ()
    "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger -- (Yahoo! Inc.)
    "C:\Program Files\Yahoo! Games\Yahoo! Pin High Country Club Golf\Course1.exe" = C:\Program Files\Yahoo! Games\Yahoo! Pin High Country Club Golf\Course1.exe:*:Enabled:Skyworks Pin High Country Club Golf -- File not found
    "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
    "C:\Program Files\Real\RealPlayer\realplay.exe" = C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer -- (RealNetworks, Inc.)
    "C:\Program Files\GameTop.com\Extreme Racers\Extreme Racers.exe" = C:\Program Files\GameTop.com\Extreme Racers\Extreme Racers.exe:*:Enabled:Cipher Game Engine -- File not found
    "C:\Program Files\SkillGround\Games\UTG\Main.exe" = C:\Program Files\SkillGround\Games\UTG\Main.exe:*:Enabled:UTG -- ()
    "C:\Program Files\AVG\AVG8\avgupd.exe" = C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe -- File not found
    "C:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
    "C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "C:\Program Files\Common Files\AOL\Loader\aolload.exe" = C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader -- (America Online, Inc.)
    "C:\Program Files\Common Files\AOL\1144767884\ee\aolsoftware.exe" = C:\Program Files\Common Files\AOL\1144767884\ee\aolsoftware.exe:*:Enabled:AOL Services -- (America Online, Inc.)
    "C:\Program Files\Common Files\AOL\1144767884\ee\aim6.exe" = C:\Program Files\Common Files\AOL\1144767884\ee\aim6.exe:*:Enabled:AIM -- (America Online, Inc.)
    "C:\Program Files\Network Assistant\Nassi.exe" = C:\Program Files\Network Assistant\Nassi.exe:*:Enabled:Network Assistant (Nassi) -- (Gracebyte Software)
    "C:\Program Files\Schwab Performance Technologies\PortfolioCenter\SPTServer.exe" = C:\Program Files\Schwab Performance Technologies\PortfolioCenter\SPTServer.exe:*:Enabled:SPTServer.exe -- (Schwab Performance Technologies)
    "C:\Program Files\Schwab Performance Technologies\PortfolioCenter\PortfolioCenter.exe" = C:\Program Files\Schwab Performance Technologies\PortfolioCenter\PortfolioCenter.exe:*:Enabled:portfolioCenter -- (Schwab Performance Technologies, Inc.,)
    "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger -- (Yahoo! Inc.)
    "C:\Program Files\Yahoo!\Messenger\YServer.exe" = C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server -- (Yahoo! Inc.)
    "C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
    "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
    "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
    "C:\Program Files\Intuit\QuickBooks 2006\QBDBMgrN.exe" = C:\Program Files\Intuit\QuickBooks 2006\QBDBMgrN.exe:*:Enabled:QuickBooks 2006 Data Manager -- (Intuit, Inc.)
    "C:\StubInstaller.exe" = C:\StubInstaller.exe:*:Enabled:LimeWire swarmed installer -- (LimeWire)
    "C:\Program Files\Real\RealPlayer\realplay.exe" = C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer -- (RealNetworks, Inc.)
    "C:\Program Files\Xolox\mldonkey\mlnet.exe" = C:\Program Files\Xolox\mldonkey\mlnet.exe:*:Enabled:MLdonkey - multiuser P2P daemon -- ()
    "C:\Program Files\Xolox\XoloxEXE.exe" = C:\Program Files\Xolox\XoloxEXE.exe:*:Enabled:Xolox -- (Streamcast)
    "C:\Program Files\MSN Messenger\livecall.exe" = C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) -- (Microsoft Corporation)
    "C:\Program Files\AIM\AIM Pro\aimpro.exe" = C:\Program Files\AIM\AIM Pro\aimpro.exe:*:Enabled:AIM Pro -- (WebEx)
    "C:\Program Files\FrostWire\FrostWire.exe" = C:\Program Files\FrostWire\FrostWire.exe:*:Enabled:LimeWire -- (FrostWire Group)
    "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)


    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{0456ebd7-5f67-4ab6-852e-63781e3f389c}" = Macromedia Flash Player
    "{075473F5-846A-448B-BCB3-104AA1760205}" = Roxio RecordNow Data
    "{08094E03-AFE4-4853-9D31-6D0743DF5328}" = QuickTime
    "{0E81279D-CC2B-4FE6-B103-8A1B948AFED2}" = PortfolioCenter
    "{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}" = Microsoft Plus! Photo Story 2 LE
    "{0F756CD9-4A1E-409B-B101-601DDC4C03AA}" = Qualxserve Service Agreement
    "{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}" = Roxio DLA
    "{14374619-0900-4056-BA06-C87C900AF9E6}" = QuickBooks Simple Start Special Edition
    "{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
    "{1A655D51-1423-48A3-B748-8F5A0BE294C8}" = Microsoft Visual J# .NET Redistributable Package 1.1
    "{21657574-BD54-48A2-9450-EB03B2C7FC29}" = Roxio MyDVD LE
    "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
    "{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 14
    "{2CCBABCB-6427-4A55-B091-49864623C43F}" = Google Toolbar for Firefox
    "{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}" = Logitech SetPoint
    "{33BB4982-DC52-4886-A03B-F4C5C80BEE89}" = Windows Media Player 10
    "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
    "{3592F5CB-B524-43AA-92F2-2377268199CC}" = iTunes
    "{3ACF7A26-1743-4A84-85F1-2450B35925E4}" = Classic Menu for Office
    "{3D8EB268-2B1D-48E7-8BA3-59A20545E459}" = RSSRadio
    "{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}" = URL Assistant
    "{43CAC9A1-1993-4F65-9096-7C9AFC2BBF54}" = Dell CinePlayer
    "{47D0C5E6-9FBA-49DB-8F88-BFAA5BA38646}" = Microsoft Math Add-in for Word 2007
    "{4CEA6811-DFAD-4892-828D-49941FE3B779}" = Intel(R) PROSet for Wired Connections
    "{50120000-1105-0000-0000-0000000FF1CE}" = Microsoft Office 2007 Primary Interop Assemblies
    "{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
    "{548EEA8E-8299-497F-8057-811D2D7097DC}" = Dell Support 3.1
    "{571700F0-DB9D-4B3A-B03D-35A14BB5939F}" = Windows Live Messenger
    "{5905F42D-3F5F-4916-ADA6-94A3646AEE76}" = Dell Driver Reset Tool
    "{5A847475-157F-45AD-9919-CD40D344B8B1}" = QBFC3.0
    "{67E158AF-8856-4337-B483-EA21930786AF}" = GameTap
    "{68A35043-C55A-4237-88C9-37EE1C63ED71}" = Microsoft Visual J# 2.0 Redistributable Package
    "{698AC01B-DF0C-4BCE-940C-EB29AD23A560}" = Stamps.com
    "{69B02159-7622-4DBB-B9EE-F933039830AD}" = QuickBooks Pro 2006
    "{6C2ADBE2-429C-42CA-AA13-9557EFF62D0B}" = PortfolioCenter Management Console
    "{6E45BA47-383C-4C1E-8ED0-0D4845C293D7}" = Microsoft Plus! Digital Media Edition Installer
    "{74F7662C-B1DB-489E-A8AC-07A06B24978B}" = Dell System Restore
    "{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
    "{812A8682-4387-11D7-B10D-0001022C9950}" = TD AMERITRADE Statements/Confirmations Manager
    "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
    "{85D3CC30-8859-481A-9654-FD9B74310BEF}" = Musicmatch® Jukebox
    "{8921F70E-C2D6-4FEB-8BD5-EFB1F862BC2B}" = LogMeIn
    "{8984E374-6C93-427C-A3B9-AD92472FDCA0}" = Windows Live Sign-in Assistant
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
    "{8C4C5D78-B60F-448C-96FC-440EAE5C8680}" = NaviPlan Standard Offline 11.0.2.0
    "{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
    "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
    "{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0015-0409-0000-0000000FF1CE}_PROR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
    "{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0016-0409-0000-0000000FF1CE}_PROR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
    "{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0018-0409-0000-0000000FF1CE}_PROR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
    "{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0019-0409-0000-0000000FF1CE}_PROR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
    "{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001A-0409-0000-0000000FF1CE}_PROR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
    "{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001B-0409-0000-0000000FF1CE}_PROR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
    "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001F-0409-0000-0000000FF1CE}_PROR_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
    "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{430971B1-C31E-45DA-81E0-72C095BAB72C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001F-040C-0000-0000000FF1CE}_PROR_{430971B1-C31E-45DA-81E0-72C095BAB72C}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
    "{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{F7A31780-33C4-4E39-951A-5EC9B91D7BF1}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-001F-0C0A-0000-0000000FF1CE}_PROR_{F7A31780-33C4-4E39-951A-5EC9B91D7BF1}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
    "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
    "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{17591192-46BD-4038-8D12-4B2B8CAFAC27}" =
    "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
    "{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
    "{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-006E-0409-0000-0000000FF1CE}_PROR_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
    "{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-00B2-0409-0000-0000000FF1CE}" = Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs
    "{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
    "{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
    "{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
    "{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0115-0409-0000-0000000FF1CE}_PROR_{FAD8A83E-9BAC-4179-9268-A35948034D85}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
    "{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{90120000-0117-0409-0000-0000000FF1CE}_PROR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{901C0409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Access 2003 Runtime
    "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel Matrix Storage Manager
    "{91120000-0014-0000-0000-0000000FF1CE}" = Microsoft Office Professional 2007
    "{91120000-0014-0000-0000-0000000FF1CE}_PROR_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
    "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    "{A260B422-70E1-41E2-957D-F76FA21266D5}" = Apple Software Update
    "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
    "{AB708C9B-97C8-4AC9-899B-DBF226AC9382}" = Roxio RecordNow Audio
    "{AC76BA86-1033-F400-7760-000000000003}" = Adobe Acrobat 8 Professional - English, Français, Deutsch
    "{B12665F4-4E93-4AB4-B7FC-37053B524629}" = Roxio RecordNow Copy
    "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
    "{B208806F-A231-4FA0-AB3F-5C1B8979223E}" = Microsoft ActiveSync 4.0
    "{B702CCCE-3176-4DBF-B932-D1B8F402F330}" = Digital Content Portal
    "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
    "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
    "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
    "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
    "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
    "{CE4C9170-F517-42EB-A5CB-F16DE610315A}" = Stamps.com Application Support for Microsoft Outlook 2000, 2002, 2003
    "{D2988E9B-C73F-422C-AD4B-A66EBE257120}" = MCU
    "{D3A04D2F-28C4-4D9C-8487-DAB75992AE09}" = AIM Pro
    "{D61C1058-EDC7-48D0-85B2-B322BE385059}" = Stamps.com Address Book Support for Microsoft Outlook 97-2007
    "{DAD4DE93-9438-4823-AE5E-93A1BE846FE0}" = Stamps.com Application Support for Microsoft Word 2000, 2002, 2003
    "{DBEA1034-5882-4A88-8033-81C4EF0CFA29}" = Google Toolbar for Internet Explorer
    "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
    "{DF6A589A-7A1A-430C-9FF2-A0BDB42669DC}" = Google
    "{E93E5EF6-D361-481E-849D-F16EF5C78EBC}" = Musicmatch for Windows Media Player
    "{EE7B9A8D-19F0-450D-8E94-3E391E6044CD}" = KhalSetup
    "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
    "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
    "{FCAB7B54-ED8D-4D6D-A5FA-F7A21F3B2176}" = Relationship Manager
    "Ad-Aware" = Ad-Aware
    "Ad-Aware SE Personal" = Ad-Aware SE Personal
    "Adobe Acrobat 8 Professional - English, Français, Deutsch" = Adobe Acrobat 8.1.0 Professional
    "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
    "Adobe Shockwave Player" = Adobe Shockwave Player 11.5
    "AOL Uninstaller" = AOL Uninstaller (Choose which Products to Remove)
    "Dell Digital Jukebox Driver" = Dell Digital Jukebox Driver
    "DivX Content Uploader" = DivX Content Uploader
    "ENTERPRISE" = Microsoft Office Enterprise 2007
    "FrostWire" = FrostWire 4.13.1.6 BETA
    "Google Desktop" = Google Desktop
    "Google Updater" = Google Updater
    "HijackThis" = HijackThis 2.0.2
    "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
    "ie7" = Windows Internet Explorer 7
    "InstallShield_{0E81279D-CC2B-4FE6-B103-8A1B948AFED2}" = PortfolioCenter
    "InstallShield_{6C2ADBE2-429C-42CA-AA13-9557EFF62D0B}" = PortfolioCenter Management Console
    "InstallShield_{FCAB7B54-ED8D-4D6D-A5FA-F7A21F3B2176}" = Relationship Manager
    "IrfanView" = IrfanView (remove only)
    "Lavasoft VX2 Cleaner" = Lavasoft VX2 Cleaner
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
    "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
    "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
    "Microsoft Visual J# 2.0 Redistributable Package" = Microsoft Visual J# 2.0 Redistributable Package
    "Mozilla Firefox (3.0.8)" = Mozilla Firefox (3.0.8)
    "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
    "MSNINST" = MSN
    "Network Assistant_is1" = Network Assistant
    "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
    "NVIDIA Drivers" = NVIDIA Drivers
    "Plaxo" = Plaxo Toolbar for Windows
    "PokerStars" = PokerStars
    "PokerStars.net" = PokerStars.net
    "PROR" = Microsoft Office Professional 2007
    "PROSet" = Intel(R) PRO Network Connections Drivers
    "RealPlayer 6.0" = RealPlayer Basic
    "SkillGround" = SkillGround Game Manager
    "ST6UNST #1" = RetCalc 2.0
    "Stamps.com" = Stamps.com
    "Stamps.com support for Microsoft Outlook 2000-2007" = Stamps.com support for Microsoft Outlook 2000-2007
    "Stamps.com support for Microsoft Outlook 97-2007" = Stamps.com support for Microsoft Outlook 97-2007
    "Stamps.com support for Microsoft Word 2000-2007" = Stamps.com support for Microsoft Word 2000-2007
    "Total Access Memo 2003 Runtime" = Total Access Memo 2003 Runtime
    "UnHackMe_is1" = UnHackMe 5.00 release
    "ViewpointMediaPlayer" = Viewpoint Media Player
    "VLC media player" = VLC media player 1.0.2
    "WGA" = Windows Genuine Advantage Validation Tool
    "WIC" = Windows Imaging Component
    "Windows Media Format Runtime" = Windows Media Format 11 runtime
    "Windows Media Player" = Windows Media Player 11
    "WinRAR archiver" = WinRAR archiver
    "WMFDist11" = Windows Media Format 11 runtime
    "wmp11" = Windows Media Player 11
    "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
    "Yahoo! Messenger" = Yahoo! Messenger

    ========== HKEY_CURRENT_USER Uninstall List ==========

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "Move Networks Player - IE" = Move Networks Media Player for Internet Explorer
    "Octoshape add-in for Adobe Flash Player" = Octoshape add-in for Adobe Flash Player

    ========== Last 10 Event Log Errors ==========

    [ Application Events ]
    Error - 2010-07-01 22:18:50 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1097
    Description = Windows cannot find the machine account, The logon attempt failed
    .

    Error - 2010-07-01 22:18:50 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1030
    Description = Windows cannot query for the list of Group Policy objects. A message
    that describes the reason for this was previously logged by the policy engine.

    Error - 2010-07-01 23:49:44 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1097
    Description = Windows cannot find the machine account, The logon attempt failed
    .

    Error - 2010-07-01 23:49:44 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1030
    Description = Windows cannot query for the list of Group Policy objects. A message
    that describes the reason for this was previously logged by the policy engine.

    Error - 2010-07-02 01:25:34 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1097
    Description = Windows cannot find the machine account, The logon attempt failed
    .

    Error - 2010-07-02 01:25:34 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1030
    Description = Windows cannot query for the list of Group Policy objects. A message
    that describes the reason for this was previously logged by the policy engine.

    Error - 2010-07-02 03:40:39 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1030
    Description = Windows cannot query for the list of Group Policy objects. A message
    that describes the reason for this was previously logged by the policy engine.

    Error - 2010-07-02 05:25:42 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1030
    Description = Windows cannot query for the list of Group Policy objects. A message
    that describes the reason for this was previously logged by the policy engine.

    Error - 2010-07-02 07:15:45 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1030
    Description = Windows cannot query for the list of Group Policy objects. A message
    that describes the reason for this was previously logged by the policy engine.

    Error - 2010-07-02 09:10:17 | Computer Name = GLB-RPICON-02 | Source = Userenv | ID = 1030
    Description = Windows cannot query for the list of Group Policy objects. A message
    that describes the reason for this was previously logged by the policy engine.

    [ OSession Events ]
    Error - 2009-10-19 12:15:02 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6014.5000, Microsoft Office Version: 12.0.4518.1014. This session lasted 338668
    seconds with 3120 seconds of active time. This session ended with a crash.

    Error - 2009-12-08 15:38:13 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6212.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 4905
    seconds with 600 seconds of active time. This session ended with a crash.

    Error - 2009-12-22 12:23:35 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6212.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 43
    seconds with 0 seconds of active time. This session ended with a crash.

    Error - 2009-12-23 12:15:58 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6212.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 85938
    seconds with 1680 seconds of active time. This session ended with a crash.

    Error - 2010-01-22 00:25:13 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6212.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 109637
    seconds with 2100 seconds of active time. This session ended with a crash.

    Error - 2010-02-19 11:33:50 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6212.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 80587
    seconds with 4680 seconds of active time. This session ended with a crash.

    Error - 2010-03-01 11:27:51 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6212.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 863623
    seconds with 19500 seconds of active time. This session ended with a crash.

    Error - 2010-03-16 11:32:16 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
    12.0.6211.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 429521
    seconds with 5220 seconds of active time. This session ended with a crash.

    Error - 2010-04-06 10:53:24 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6212.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 72861
    seconds with 1920 seconds of active time. This session ended with a crash.

    Error - 2010-04-17 05:59:47 | Computer Name = GLB-RPICON-02 | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
    12.0.6212.1000, Microsoft Office Version: 12.0.6215.1000. This session lasted 932770
    seconds with 18660 seconds of active time. This session ended with a crash.

    [ System Events ]
    Error - 2010-06-30 12:17:49 | Computer Name = GLB-RPICON-02 | Source = DCOM | ID = 10005
    Description = DCOM got error "%1084" attempting to start the service EventSystem
    with arguments " " in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

    Error - 2010-06-30 12:29:37 | Computer Name = GLB-RPICON-02 | Source = Service Control Manager | ID = 7026
    Description = The following boot-start or system-start driver(s) failed to load:
    AvgLdx86 AvgMfx86 Fips intelppm NetworkX SASDIFSV SASKUTIL sptd

    Error - 2010-06-30 12:30:11 | Computer Name = GLB-RPICON-02 | Source = DCOM | ID = 10005
    Description = DCOM got error "%1084" attempting to start the service EventSystem
    with arguments " " in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

    Error - 2010-06-30 12:49:38 | Computer Name = GLB-RPICON-02 | Source = BROWSER | ID = 8032
    Description = The browser service has failed to retrieve the backup list too many
    times on transport \Device\NetBT_Tcpip_{849CB337-DE20-421B-AC9E-B4F750CB1F7B}. The
    backup browser is stopping.

    Error - 2010-06-30 12:58:00 | Computer Name = GLB-RPICON-02 | Source = System Error | ID = 1003
    Description = Error code 10000050, parameter1 e5495000, parameter2 00000000, parameter3
    a621ac3e, parameter4 00000001.

    Error - 2010-06-30 14:27:56 | Computer Name = GLB-RPICON-02 | Source = Service Control Manager | ID = 7026
    Description = The following boot-start or system-start driver(s) failed to load:
    AvgLdx86 AvgMfx86 Fips intelppm NetworkX SASDIFSV SASKUTIL sptd

    Error - 2010-06-30 14:28:27 | Computer Name = GLB-RPICON-02 | Source = DCOM | ID = 10005
    Description = DCOM got error "%1084" attempting to start the service EventSystem
    with arguments " " in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

    Error - 2010-06-30 14:29:31 | Computer Name = GLB-RPICON-02 | Source = Service Control Manager | ID = 7011
    Description = Timeout (30000 milliseconds) waiting for a transaction response from
    the Lavasoft Ad-Aware Service service.

    Error - 2010-06-30 14:30:02 | Computer Name = GLB-RPICON-02 | Source = Service Control Manager | ID = 7011
    Description = Timeout (30000 milliseconds) waiting for a transaction response from
    the service.

    Error - 2010-07-01 10:33:35 | Computer Name = GLB-RPICON-02 | Source = Service Control Manager | ID = 7031
    Description = The AVG Free WatchDog service terminated unexpectedly. It has done
    this 1 time(s). The following corrective action will be taken in 0 milliseconds:
    Restart the service.


    < End of report >
     
  5. 2010/07/02
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    OTL logfile created on: 2010-07-02 10:38:44 - Run 1
    OTL by OldTimer - Version 3.2.7.0 Folder = C:\Documents and Settings\Rick Picon\Desktop
    Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 7.0.5730.13)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: yyyy-MM-dd

    2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 73.00% Memory free
    4.00 Gb Paging File | 4.00 Gb Available in Paging File | 91.00% Paging File free
    Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 108.59 Gb Total Space | 40.24 Gb Free Space | 37.06% Space Free | Partition Type: NTFS
    Drive D: | 36.96 Gb Total Space | 6.03 Gb Free Space | 16.33% Space Free | Partition Type: NTFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded
    Drive P: | 136.02 Gb Total Space | 60.20 Gb Free Space | 44.26% Space Free | Partition Type: NTFS
    Drive T: | 136.02 Gb Total Space | 60.20 Gb Free Space | 44.26% Space Free | Partition Type: NTFS

    Computer Name: GLB-RPICON-02
    Current User Name: rpicon
    Logged in as Administrator.

    Current Boot Mode: Normal
    Scan Mode: Current user
    Company Name Whitelist: On
    Skip Microsoft Files: On
    File Age = 90 Days
    Output = Standard
    Quick Scan

    ========== Processes (SafeList) ==========

    PRC - [2010-07-02 10:37:40 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rick Picon\Desktop\OTL.exe
    PRC - [2010-03-01 18:49:25 | 000,524,632 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
    PRC - [2010-03-01 18:49:24 | 001,029,456 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
    PRC - [2009-10-01 14:30:35 | 000,116,032 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\ramaint.exe
    PRC - [2009-10-01 14:30:10 | 000,378,176 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LMIGuardian.exe
    PRC - [2009-04-06 17:05:21 | 000,307,704 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
    PRC - [2007-04-17 14:03:50 | 000,063,040 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LogMeIn.exe
    PRC - [2005-06-17 09:55:58 | 000,086,140 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
    PRC - [2005-04-01 21:51:48 | 000,217,600 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
    PRC - [2004-08-04 07:00:00 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


    ========== Modules (SafeList) ==========

    MOD - [2010-07-02 10:37:40 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rick Picon\Desktop\OTL.exe
    MOD - [2006-08-25 11:45:55 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    MOD - [2004-08-04 07:00:00 | 000,102,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx


    ========== Win32 Services (SafeList) ==========

    SRV - [2010-03-01 18:49:24 | 001,029,456 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
    SRV - [2009-10-01 14:30:35 | 000,116,032 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\RaMaint.exe -- (LMIMaint)
    SRV - [2007-05-23 14:29:36 | 000,122,880 | ---- | M] (CrypKey (Canada) Ltd.) [Disabled | Stopped] -- C:\WINDOWS\System32\Crypserv.exe -- (Crypkey License)
    SRV - [2007-04-17 14:03:50 | 000,063,040 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\LogMeIn.exe -- (LogMeIn)
    SRV - [2007-03-28 12:12:34 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
    SRV - [2007-01-19 13:54:14 | 000,097,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\MSN Messenger\usnsvc.exe -- (usnjsvc)
    SRV - [2005-06-17 09:55:58 | 000,086,140 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe -- (IAANTMon) Intel(R)
    SRV - [2005-04-01 21:51:48 | 000,217,600 | ---- | M] (Rocket Division Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe -- (StarWindService)


    ========== Driver Services (SafeList) ==========

    DRV - File not found [Kernel | On_Demand | Running] -- -- (catchme)
    DRV - [2009-10-01 14:30:14 | 000,083,288 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\WINDOWS\system32\LMIRfsClientNP.dll -- (LMIRfsClientNP)
    DRV - [2009-09-25 17:44:49 | 000,074,480 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
    DRV - [2009-06-23 11:01:42 | 000,007,408 | R--- | M] ( SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | On_Demand | Stopped] -- C:\Program Files\SUPERAntiSpyware\SASENUM.SYS -- (SASENUM)
    DRV - [2009-06-23 11:01:40 | 000,009,968 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
    DRV - [2009-05-04 17:51:02 | 000,064,160 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd)
    DRV - [2009-02-17 13:40:24 | 000,034,760 | ---- | M] (Greatis Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Partizan.sys -- (Partizan)
    DRV - [2008-10-17 10:25:11 | 000,047,640 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\LMIRfsDriver.sys -- (LMIRfsDriver)
    DRV - [2008-02-28 15:31:50 | 000,012,856 | ---- | M] (LogMeIn, Inc.) [Kernel | Auto | Running] -- C:\Program Files\LogMeIn\x86\rainfo.sys -- (LMIInfo)
    DRV - [2007-05-01 17:15:54 | 000,016,896 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\ckldrv.sys -- (NetworkX)
    DRV - [2007-01-30 12:36:42 | 000,223,128 | ---- | M] (Alcohol Soft Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\vaxscsi.sys -- (vaxscsi)
    DRV - [2007-01-30 12:26:47 | 000,643,072 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
    DRV - [2006-12-29 12:30:25 | 000,076,560 | ---- | M] (Trend Micro Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\tmcomm.sys -- (tmcomm)
    DRV - [2006-11-07 06:48:44 | 000,023,040 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\GameTap\bin\release\X4HSX32.sys -- (X4HSX32)
    DRV - [2006-06-30 00:53:44 | 000,003,712 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
    DRV - [2006-05-10 09:56:54 | 000,027,264 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LHidKE.Sys -- (LHidKe)
    DRV - [2006-05-10 09:56:50 | 000,071,680 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LMouKE.Sys -- (LMouKE)
    DRV - [2006-03-07 09:07:09 | 000,008,552 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\asctrm.sys -- (ASCTRM)
    DRV - [2005-11-16 23:36:00 | 001,047,816 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
    DRV - [2005-09-12 05:30:00 | 000,089,264 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\DRVMCDB.SYS -- (DRVMCDB)
    DRV - [2005-09-08 07:20:00 | 000,094,332 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDFAM.SYS -- (DLAUDFAM)
    DRV - [2005-09-08 07:20:00 | 000,087,036 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDF_M.SYS -- (DLAUDF_M)
    DRV - [2005-09-08 07:20:00 | 000,086,524 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAIFS_M.SYS -- (DLAIFS_M)
    DRV - [2005-09-08 07:20:00 | 000,025,628 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLABOIOM.SYS -- (DLABOIOM)
    DRV - [2005-09-08 07:20:00 | 000,014,684 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAOPIOM.SYS -- (DLAOPIOM)
    DRV - [2005-09-08 07:20:00 | 000,006,364 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAPoolM.SYS -- (DLAPoolM)
    DRV - [2005-09-08 07:20:00 | 000,002,496 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLADResN.SYS -- (DLADResN)
    DRV - [2005-08-25 21:05:24 | 000,176,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\e1e5132.sys -- (e1express) Intel(R)
    DRV - [2005-08-25 14:16:52 | 000,005,628 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS -- (DLACDBHM)
    DRV - [2005-08-25 14:16:16 | 000,022,684 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLARTL_N.SYS -- (DLARTL_N)
    DRV - [2005-08-12 07:20:00 | 000,040,544 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DRVNDDM.SYS -- (DRVNDDM)
    DRV - [2005-07-09 01:57:00 | 003,198,304 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
    DRV - [2005-06-17 14:33:40 | 000,872,064 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\iastor.sys -- (iastor)
    DRV - [2004-08-12 19:45:54 | 000,137,728 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Hdaudbus.sys -- (HDAudBus)
    DRV - [2004-08-04 01:07:44 | 000,043,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\amdagp.sys -- (amdagp)
    DRV - [2004-08-04 01:07:44 | 000,041,088 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sisagp.sys -- (sisagp)
    DRV - [2001-08-17 16:07:44 | 000,019,072 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sparrow.sys -- (Sparrow)
    DRV - [2001-08-17 16:07:42 | 000,030,688 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys -- (sym_u3)
    DRV - [2001-08-17 16:07:40 | 000,028,384 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys -- (sym_hi)
    DRV - [2001-08-17 16:07:36 | 000,032,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys -- (symc8xx)
    DRV - [2001-08-17 16:07:34 | 000,016,256 | ---- | M] (Symbios Logic Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc810.sys -- (symc810)
    DRV - [2001-08-17 15:52:22 | 000,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ultra.sys -- (ultra)
    DRV - [2001-08-17 15:52:20 | 000,045,312 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql12160.sys -- (ql12160)
    DRV - [2001-08-17 15:52:20 | 000,040,320 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql1080.sys -- (ql1080)
    DRV - [2001-08-17 15:52:18 | 000,049,024 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql1280.sys -- (ql1280)
    DRV - [2001-08-17 15:52:16 | 000,179,584 | ---- | M] (Mylex Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys -- (dac2w2k)
    DRV - [2001-08-17 15:52:12 | 000,017,280 | ---- | M] (American Megatrends Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys -- (mraid35x)
    DRV - [2001-08-17 15:52:00 | 000,026,496 | ---- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\asc.sys -- (asc)
    DRV - [2001-08-17 15:51:58 | 000,014,848 | ---- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\asc3550.sys -- (asc3550)
    DRV - [2001-08-17 15:51:56 | 000,005,248 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\aliide.sys -- (AliIde)
    DRV - [2001-08-17 15:51:54 | 000,006,656 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\cmdide.sys -- (CmdIde)
    DRV - [2001-08-17 13:58:00 | 000,019,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hidbatt.sys -- (HidBatt)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com/ig/dell?hl=en&client=dell

    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

    ========== FireFox ==========

    FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search "
    FF - prefs.js..browser.search.defaulturl: "http://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q= "
    FF - prefs.js..browser.search.order.1: "Ask "
    FF - prefs.js..browser.search.param.yahoo-fr: "megaup "
    FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "megaup "
    FF - prefs.js..browser.search.selectedEngine: "Yahoo! Search "
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "http://finance.yahoo.com/ "
    FF - prefs.js..extensions.enabledItems: {E9A1DEE0-C623-4439-8932-001E7D17607D}:2.1.0.3
    FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
    FF - prefs.js..keyword.URL: "http://toolbar.ask.com/toolbarv/askRedirect?o=13149&gct=&gc=1&q= "

    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009-04-22 17:44:57 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009-08-18 10:47:12 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

    [2009-10-28 11:06:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Extensions
    [2009-10-28 11:06:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Extensions\mozswing@mozswing.org
    [2010-07-01 17:10:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Firefox\Profiles\coh2bzuj.default\extensions
    [2007-06-22 11:44:07 | 000,000,000 | ---D | M] (FlashGot) -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Firefox\Profiles\coh2bzuj.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
    [2007-09-24 15:50:01 | 000,000,000 | ---D | M] (Megaupload Toolbar) -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Firefox\Profiles\coh2bzuj.default\extensions\{991A772A-BA13-4c1d-A9EF-F897F31DEC7D}
    [2009-04-22 17:44:57 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Firefox\Profiles\coh2bzuj.default\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
    [2010-07-01 17:10:31 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
    [2006-11-16 12:22:26 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
    [2008-03-12 13:04:10 | 000,086,016 | ---- | M] (SpiralFrog Inc.) -- C:\Program Files\Mozilla Firefox\plugins\NPSFDMGR.dll

    O1 HOSTS File: ([2010-07-01 13:00:07 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
    O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
    O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
    O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
    O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\Program Files\GoogleAFE\GoogleAE.dll (Google)
    O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
    O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O3 - HKCU\..\Toolbar\ShellBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
    O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
    O4 - HKLM..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft)
    O4 - HKLM..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE (Sonic Solutions)
    O4 - HKLM..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe ()
    O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe ()
    O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
    O4 - HKLM..\Run: [Logitech Hardware Abstraction Layer] C:\WINDOWS\KHALMNPR.Exe (Logitech Inc.)
    O4 - HKLM..\Run: [LogMeIn GUI] C:\Program Files\LogMeIn\x86\LogMeInSystray.exe (LogMeIn, Inc.)
    O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
    O4 - HKCU..\Run: [AdobeUpdater] C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe (Adobe Systems Incorporated)
    O4 - HKCU..\Run: [H/PC Connection Agent] C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
    O4 - HKCU..\Run: [PlaxoSysTray] C:\Program Files\Plaxo\3.23.0.11\plaxosystray.exe (Plaxo, Inc.)
    O4 - HKCU..\Run: [PlaxoUpdate] C:\Program Files\Plaxo\3.23.0.11\PlaxoHelper_en.exe (Plaxo, Inc.)
    O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
    O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil10b.exe (Adobe Systems, Inc.)
    O4 - Startup: C:\Documents and Settings\Rick Picon\Start Menu\Programs\Startup\Microsoft Office Groove.lnk = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE (Microsoft Corporation)
    O4 - Startup: C:\Documents and Settings\Rick Picon\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
    O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
    O8 - Extra context menu item: Append to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert link target to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert selected links to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert selected links to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert selection to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert selection to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
    O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
    O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
    O9 - Extra Button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
    O9 - Extra 'Tools' menuitem : Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
    O9 - Extra Button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe (PokerStars)
    O15 - HKLM\..Trusted Domains: musicmatch.com ([online] https in Trusted sites)
    O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://go.microsoft.com/fwlink/?linkid=67633 (Office Genuine Advantage Validation Tool)
    O16 - DPF: {0F733F27-5BBB-4D03-8D6B-19E2143880BF} http://www1.skillground.com/cab1831/SkillGround.cab (SkillGround Game Manager)
    O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
    O16 - DPF: {1A1F56AA-3401-46F9-B277-D57F3421F821} http://aol.worldwinner.com/games/v47/shared/FunGamesLoader.cab (FunGamesLoader Object)
    O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
    O16 - DPF: {25D9AA40-ED39-11D2-A038-009027078284} https://b1-www.advisorservices.com/advisorweb/file/urldownloader.cab (UrlDownloader Class)
    O16 - DPF: {3107C2A8-9F0B-4404-A58B-21BD85268FBC} http://www.pogo.com/cdl/launcher/PogoWebLauncherInstaller.CAB (PogoWebLauncher Control)
    O16 - DPF: {493ACF15-5CD9-4474-82A6-91670C3DD66E} http://www.linkedin.com/cab/LinkedInContactFinderControl.cab (LinkedIn ContactFinderControl)
    O16 - DPF: {556EEC63-31E2-47C3-BF29-DFF799D2FE04} https://secure.logmein.com/activex/RACtrl.cab (Remote Access ActiveX Client)
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1249928285454 (WUWebControl Class)
    O16 - DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C} http://www.facebook.com/controls/contactx.dll (ContactExtractor Class)
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1260546108330 (MUWebControl Class)
    O16 - DPF: {7E980B9B-8AE5-466A-B6D6-DA8CF814E78A} http://clubgames.pogo.com/online2/pogop/luxor_2/mjolauncher.cab (MJLauncherCtrl Class)
    O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} http://www.worldwinner.com/games/shared/wwlaunch.cab (Wwlaunch Control)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
    O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
    O16 - DPF: {95A311CD-EC8E-452A-BCEC-B844EB616D03} http://www.worldwinner.com/games/v51/bejeweledtwist/bejeweledtwist.cab (BejeweledTwist Control)
    O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
    O16 - DPF: {CF969D51-F764-4FBF-9E90-475248601C8A} http://www.worldwinner.com/games/v47/familyfeud/familyfeud.cab (FamilyFeud Control)
    O16 - DPF: {D1548A26-B8F6-4E86-AE74-E7062CCC2E2A} http://www.miniclip.com/igloader/igloader.CAB (igLoader Content on Demand)
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
    O16 - DPF: {DC4B2445-4A2C-46FF-BAAE-C0FBB45D866D} https://www.laserapp.com/dev/detect/lavdetect.ocx (LASDetectX Control)
    O16 - DPF: {E12EB891-D000-421B-A8ED-EDE1BDCA14A0} http://www.worldwinner.com/games/v44/golfsol/golfsol.cab (GolfSol Control)
    O16 - DPF: {E70E3E64-2793-4AEF-8CC8-F1606BE563B0} http://www.worldwinner.com/games/v54/wwspades/wwspades.cab (WWSpades Control)
    O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logmein.com/activex/RACtrl.cab (Performance Viewer Activex Control)
    O16 - DPF: {FF0F7B6E-D733-11D7-8088-0001024743E4} https://vex.advisorservices.com/Views/VeoExpress/AdoView/Pages/veoExpress.CAB (veoExpress.ctlVeoExpress)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.113
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = aribaglb.local
    O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
    O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
    O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)
    O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
    O20 - Winlogon\Notify\LMIinit: DllName - LMIinit.dll - C:\WINDOWS\System32\LMIinit.dll (LogMeIn, Inc.)
    O24 - Desktop WallPaper: C:\WINDOWS\Dell.bmp
    O24 - Desktop BackupWallPaper: C:\WINDOWS\Dell.bmp
    O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
    O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
    O32 - HKLM CDRom: AutoRun - 1
    O34 - HKLM BootExecute: (autocheck autochk *) - File not found
    O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
    O34 - HKLM BootExecute: (Partizan) - C:\WINDOWS\System32\Partizan.exe (Greatis Software)
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = ComFile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*

    NetSvcs: 6to4 - File not found
    NetSvcs: Ias - C:\WINDOWS\system32\ias [2004-08-11 19:02:12 | 000,000,000 | ---D | M]
    NetSvcs: Iprip - File not found
    NetSvcs: Irmon - File not found
    NetSvcs: NWCWorkstation - File not found
    NetSvcs: Nwsapagent - File not found
    NetSvcs: WmdmPmSp - File not found

    Drivers32: midi - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
    Drivers32: midimapper - C:\WINDOWS\System32\midimap.dll (Microsoft Corporation)
    Drivers32: mixer - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
    Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
    Drivers32: msacm.imaadpcm - C:\WINDOWS\System32\imaadp32.acm (Microsoft Corporation)
    Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
    Drivers32: msacm.msadpcm - C:\WINDOWS\System32\msadp32.acm (Microsoft Corporation)
    Drivers32: msacm.msaudio1 - C:\WINDOWS\System32\msaud32.acm (Microsoft Corporation)
    Drivers32: msacm.msg711 - C:\WINDOWS\System32\msg711.acm (Microsoft Corporation)
    Drivers32: msacm.msg723 - C:\WINDOWS\System32\msg723.acm (Microsoft Corporation)
    Drivers32: msacm.msgsm610 - C:\WINDOWS\System32\msgsm32.acm (Microsoft Corporation)
    Drivers32: msacm.siren - C:\WINDOWS\System32\sirenacm.dll (Microsoft Corp.)
    Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
    Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
    Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
    Drivers32: vidc.DIVX - C:\WINDOWS\System32\DivX.dll (DivX, Inc.)
    Drivers32: vidc.I420 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
    Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
    Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
    Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
    Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
    Drivers32: vidc.iyuv - C:\WINDOWS\System32\iyuv_32.dll (Microsoft Corporation)
    Drivers32: vidc.M261 - C:\WINDOWS\System32\msh261.drv (Microsoft Corporation)
    Drivers32: vidc.M263 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
    Drivers32: vidc.mrle - C:\WINDOWS\System32\msrle32.dll (Microsoft Corporation)
    Drivers32: vidc.msvc - C:\WINDOWS\System32\msvidc32.dll (Microsoft Corporation)
    Drivers32: vidc.tscc - C:\WINDOWS\System32\tsccvid.dll (TechSmith Corporation)
    Drivers32: vidc.uyvy - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
    Drivers32: vidc.yuy2 - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
    Drivers32: vidc.yv12 - C:\WINDOWS\System32\DivX.dll (DivX, Inc.)
    Drivers32: vidc.yvu9 - C:\WINDOWS\System32\tsbyuv.dll (Microsoft Corporation)
    Drivers32: vidc.yvyu - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
    Drivers32: wave - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
    Drivers32: wavemapper - C:\WINDOWS\System32\msacm32.drv (Microsoft Corporation)

    CREATERESTOREPOINT
    Restore point Set: OTL Restore Point (54619756233228288)

    ========== Files/Folders - Created Within 90 Days ==========

    [2010-07-02 10:37:41 | 000,574,464 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Rick Picon\Desktop\OTL.exe
    [2010-07-02 10:33:35 | 000,000,000 | -HSD | C] -- C:\RECYCLER
    [2010-07-01 10:41:24 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
    [2010-07-01 10:41:24 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
    [2010-07-01 10:41:24 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
    [2010-07-01 10:41:24 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
    [2010-06-30 13:18:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rick Picon\Desktop\2020insight
    [2010-06-30 10:39:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rick Picon\Desktop\desk top
    [2010-06-30 10:37:44 | 006,153,352 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Rick Picon\Desktop\mbam-setup-1.46.exe
    [2010-06-29 04:55:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Adobe
    [2010-06-29 04:55:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Sun
    [2010-06-25 13:25:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rick Picon\Desktop\Meeting minutes
    [2010-06-08 13:30:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rick Picon\Desktop\June event
    [2003-12-09 13:16:52 | 000,442,368 | ---- | C] ( ) -- C:\WINDOWS\System32\comintfs.dll
    [2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [12 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
    [1 C:\*.tmp files -> C:\*.tmp -> ]

    ========== Files - Modified Within 90 Days ==========

    [2010-07-02 10:37:40 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rick Picon\Desktop\OTL.exe
    [2010-07-01 16:58:18 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
    [2010-07-01 16:56:25 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
    [2010-07-01 16:48:32 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
    [2010-07-01 16:48:08 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
    [2010-07-01 16:47:35 | 2145,546,240 | -HS- | M] () -- C:\hiberfil.sys
    [2010-07-01 16:46:43 | 010,747,904 | ---- | M] () -- C:\Documents and Settings\Rick Picon\ntuser.dat
    [2010-07-01 16:46:43 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\Rick Picon\ntuser.ini
    [2010-07-01 16:45:22 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt13.sqm
    [2010-07-01 16:45:22 | 000,000,232 | -H-- | M] () -- C:\sqmdata13.sqm
    [2010-07-01 16:44:51 | 000,000,268 | -H-- | M] () -- C:\sqmdata12.sqm
    [2010-07-01 16:44:51 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt12.sqm
    [2010-07-01 16:44:16 | 000,029,204 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
    [2010-07-01 16:12:38 | 000,001,304 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\godkensells.ord
    [2010-07-01 13:00:07 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
    [2010-07-01 12:19:24 | 000,004,981 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\TDA 3rdQ2010 fees.mgt
    [2010-07-01 11:59:58 | 000,000,578 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partII.MFA
    [2010-07-01 11:48:16 | 000,000,838 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partI.MFA
    [2010-07-01 10:38:29 | 000,000,268 | -H-- | M] () -- C:\sqmdata11.sqm
    [2010-07-01 10:38:29 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt11.sqm
    [2010-07-01 10:29:19 | 000,294,400 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\exeHelper.com
    [2010-07-01 10:27:59 | 000,363,520 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\rkill.exe
    [2010-06-30 17:49:41 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
    [2010-06-30 13:00:37 | 000,000,268 | -H-- | M] () -- C:\sqmdata10.sqm
    [2010-06-30 13:00:37 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt10.sqm
    [2010-06-30 12:59:02 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\~$. Taylor.docx
    [2010-06-30 11:42:35 | 000,010,302 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\Mr. Taylor.docx
    [2010-06-30 11:08:00 | 000,293,376 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\dm6vzk6m.exe
    [2010-06-30 11:06:48 | 000,000,268 | -H-- | M] () -- C:\sqmdata09.sqm
    [2010-06-30 11:06:48 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt09.sqm
    [2010-06-30 10:37:42 | 006,153,352 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Rick Picon\Desktop\mbam-setup-1.46.exe
    [2010-06-29 13:26:16 | 000,000,268 | -H-- | M] () -- C:\sqmdata08.sqm
    [2010-06-29 13:26:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt08.sqm
    [2010-06-29 13:16:58 | 000,525,824 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\dds(2).scr
    [2010-06-29 13:14:14 | 000,525,824 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\dds.scr
    [2010-06-29 11:10:16 | 000,000,268 | -H-- | M] () -- C:\sqmdata07.sqm
    [2010-06-29 11:10:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt07.sqm
    [2010-06-29 10:54:24 | 000,000,268 | -H-- | M] () -- C:\sqmdata06.sqm
    [2010-06-29 10:54:23 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt06.sqm
    [2010-06-29 10:49:01 | 000,000,268 | -H-- | M] () -- C:\sqmdata05.sqm
    [2010-06-29 10:49:01 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt05.sqm
    [2010-06-29 04:55:14 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
    [2010-06-28 15:14:42 | 000,000,268 | -H-- | M] () -- C:\sqmdata04.sqm
    [2010-06-28 15:14:41 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt04.sqm
    [2010-06-28 10:18:31 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt03.sqm
    [2010-06-28 10:18:31 | 000,000,232 | -H-- | M] () -- C:\sqmdata03.sqm
    [2010-06-28 10:18:17 | 000,000,268 | -H-- | M] () -- C:\sqmdata02.sqm
    [2010-06-28 10:18:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt02.sqm
    [2010-06-23 11:15:13 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\~$ry Garner's Possibilities 2010.docx
    [2010-06-22 13:33:19 | 000,200,192 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2010-06-08 17:17:23 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt01.sqm
    [2010-06-08 17:17:23 | 000,000,232 | -H-- | M] () -- C:\sqmdata01.sqm
    [2010-06-04 12:51:16 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
    [2010-05-28 12:57:59 | 000,000,268 | -H-- | M] () -- C:\sqmdata00.sqm
    [2010-05-28 12:57:59 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt00.sqm
    [2010-05-18 17:20:26 | 000,000,268 | -H-- | M] () -- C:\sqmdata19.sqm
    [2010-05-18 17:20:26 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt19.sqm
    [2010-05-17 11:41:58 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\~$delity to TDA.docx
    [2010-04-29 15:44:20 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt18.sqm
    [2010-04-29 15:44:20 | 000,000,232 | -H-- | M] () -- C:\sqmdata18.sqm
    [2010-04-29 15:43:22 | 000,000,268 | -H-- | M] () -- C:\sqmdata17.sqm
    [2010-04-29 15:43:21 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt17.sqm
    [2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
    [2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
    [2010-04-26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe
    [2010-04-20 12:10:34 | 000,000,268 | -H-- | M] () -- C:\sqmdata16.sqm
    [2010-04-20 12:10:34 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt16.sqm
    [2010-04-16 13:29:26 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for
    [2010-04-05 14:40:32 | 000,000,268 | -H-- | M] () -- C:\sqmdata15.sqm
    [2010-04-05 14:40:32 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt15.sqm
    [2010-04-05 11:17:55 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt14.sqm
    [2010-04-05 11:17:55 | 000,000,232 | -H-- | M] () -- C:\sqmdata14.sqm
    [2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [12 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
    [1 C:\*.tmp files -> C:\*.tmp -> ]
     
  6. 2010/07/02
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    ========== Files Created - No Company Name ==========

    [2010-07-01 16:12:38 | 000,001,304 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\godkensells.ord
    [2010-07-01 12:19:24 | 000,004,981 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\TDA 3rdQ2010 fees.mgt
    [2010-07-01 11:59:58 | 000,000,578 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partII.MFA
    [2010-07-01 11:48:16 | 000,000,838 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partI.MFA
    [2010-07-01 10:41:24 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
    [2010-07-01 10:41:24 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
    [2010-07-01 10:41:24 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
    [2010-07-01 10:41:24 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
    [2010-07-01 10:41:24 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
    [2010-07-01 10:29:21 | 000,294,400 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\exeHelper.com
    [2010-07-01 10:28:01 | 000,363,520 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\rkill.exe
    [2010-06-30 15:15:13 | 2145,546,240 | -HS- | C] () -- C:\hiberfil.sys
    [2010-06-30 12:59:02 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$. Taylor.docx
    [2010-06-30 11:42:35 | 000,010,302 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\Mr. Taylor.docx
    [2010-06-30 11:08:06 | 000,293,376 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dm6vzk6m.exe
    [2010-06-29 13:17:05 | 000,525,824 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dds(2).scr
    [2010-06-29 13:14:23 | 000,525,824 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dds.scr
    [2010-06-23 11:15:13 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$ry Garner's Possibilities 2010.docx
    [2010-05-17 11:41:58 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$delity to TDA.docx
    [2010-04-16 13:29:26 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
    [2010-04-16 13:29:26 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
    [2010-01-20 18:36:30 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
    [2010-01-20 18:36:30 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll
    [2010-01-20 18:36:30 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
    [2010-01-20 18:36:30 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll
    [2009-11-05 13:04:51 | 000,691,592 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.DLL
    [2009-09-25 17:43:13 | 000,019,469 | ---- | C] () -- C:\WINDOWS\System32\aveda.dll
    [2009-09-25 17:43:13 | 000,013,702 | ---- | C] () -- C:\WINDOWS\ehubanowo.sys
    [2009-04-13 17:28:30 | 000,000,134 | ---- | C] () -- C:\WINDOWS\rootkitno.ini
    [2008-11-21 09:21:16 | 000,032,256 | ---- | C] () -- C:\WINDOWS\System32\_regtlb.dll
    [2007-09-25 12:29:25 | 000,000,064 | ---- | C] () -- C:\WINDOWS\Crypkey.ini
    [2007-09-25 12:29:18 | 000,018,432 | ---- | C] () -- C:\WINDOWS\Setup_ck.dll
    [2007-09-25 12:29:18 | 000,016,896 | ---- | C] () -- C:\WINDOWS\System32\Ckldrv.sys
    [2006-12-29 12:30:26 | 000,002,154 | ---- | C] () -- C:\WINDOWS\System32\tmmute.ini
    [2006-12-15 11:05:40 | 000,000,030 | ---- | C] () -- C:\WINDOWS\xoloxexe.INI
    [2006-10-12 18:18:56 | 000,462,848 | ---- | C] () -- C:\WINDOWS\System32\ractrlkeyhook.dll
    [2006-10-11 09:55:04 | 000,000,033 | ---- | C] () -- C:\WINDOWS\schwabcd.ini
    [2006-07-27 13:28:42 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
    [2006-07-11 18:33:49 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\DivXWMPExtType.dll
    [2006-04-30 00:34:04 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\WbxRMenu.dll
    [2006-04-17 14:07:45 | 000,003,350 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
    [2006-04-13 23:18:24 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\atonres.dll
    [2006-04-13 23:18:24 | 000,131,072 | ---- | C] () -- C:\WINDOWS\System32\WbxMSAI.dll
    [2006-04-13 23:18:24 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\atonecli.dll
    [2006-04-11 11:03:49 | 000,000,028 | ---- | C] () -- C:\WINDOWS\atid.ini
    [2006-04-11 09:55:58 | 000,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
    [2006-03-31 14:24:58 | 000,000,550 | ---- | C] () -- C:\WINDOWS\ODBC.INI
    [2006-03-07 09:18:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
    [2006-03-07 09:14:39 | 000,000,126 | ---- | C] () -- C:\WINDOWS\wininit.ini
    [2006-03-07 09:11:00 | 000,712,704 | ---- | C] () -- C:\WINDOWS\System32\DellSystemRestore.dll
    [2006-03-07 08:44:46 | 000,000,393 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
    [2005-11-10 10:56:34 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
    [2004-08-11 19:24:19 | 000,000,791 | ---- | C] () -- C:\WINDOWS\orun32.ini
    [2004-08-11 19:11:31 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
    [2004-08-11 19:00:30 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys

    ========== LOP Check ==========

    [2006-09-18 11:50:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Centric Services
    [2009-12-07 17:24:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
    [2009-10-01 13:35:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FunGames
    [2007-09-11 13:48:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Grisoft
    [2009-02-03 14:23:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iWin Games
    [2008-11-28 12:27:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LogMeIn
    [2006-10-09 16:28:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Money Tree Software
    [2008-01-16 17:10:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MumboJumbo
    [2007-03-14 15:34:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayFirst
    [2006-09-13 14:18:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayTime
    [2006-12-15 13:54:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap
    [2009-06-08 15:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Schwab Performance Technologies
    [2010-01-20 18:36:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Simply Super Software
    [2007-03-14 15:12:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SonyPicturesGames
    [2010-07-01 16:27:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
    [2008-07-22 14:04:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\UTour Golf
    [2007-03-12 22:01:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
    [2010-03-26 14:38:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WildTangent
    [2009-04-22 17:48:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
    [2008-12-01 16:18:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8737778F-82C6-4680-A660-E8B2B8C8C22B}
    [2008-12-01 16:18:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{B0AFCE64-DF3F-4824-8985-B21DB0EEE07B}
    [2008-12-01 16:19:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{D9AA4D17-9292-410D-9AA5-84526D062900}
    [2008-12-01 16:16:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{FBB5C4A9-4848-46A0-8863-C359F08D7728}
    [2006-04-11 11:05:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\acccore
    [2006-11-01 09:49:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\AIM
    [2006-11-01 09:49:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\AIMPro
    [2007-06-22 11:26:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\BitTorrent
    [2007-04-10 13:06:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\FrostWire
    [2006-04-11 11:30:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Gracebyte Software
    [2007-01-30 12:24:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Leadertech
    [2007-03-08 17:54:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\LinkedIn
    [2007-09-24 16:00:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\MegauploadToolbar
    [2006-10-13 11:44:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Money Tree Software
    [2007-03-14 15:34:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\PlayFirst
    [2009-01-23 18:18:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\PowerChallenge
    [2007-11-16 13:47:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\RSSRadio
    [2007-11-16 13:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\RSSRadio.local
    [2009-11-04 15:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Serif
    [2008-01-18 14:37:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Sigaba
    [2009-01-21 16:56:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Simply Super Software
    [2008-05-08 14:39:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\SmartDraw
    [2008-12-01 16:20:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Stamps.com Internet Postage
    [2007-03-02 15:13:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\System Restore
    [2007-06-28 14:37:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\uTorrent
    [2007-03-12 14:39:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Viewpoint
    [2010-06-30 17:49:41 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

    ========== Purity Check ==========



    ========== Custom Scans ==========


    < %SYSTEMDRIVE%\*.* >
    [2006-11-03 13:35:37 | 000,001,024 | ---- | M] () -- C:\.rnd
    [2009-04-23 10:45:02 | 000,000,049 | ---- | M] () -- C:\a0LpMh.txt
    [2009-05-12 12:45:20 | 000,000,050 | ---- | M] () -- C:\a0mB.txt
    [2009-05-21 22:06:06 | 000,000,050 | ---- | M] () -- C:\a0RX.txt
    [2009-05-07 16:45:05 | 000,000,050 | ---- | M] () -- C:\a5Oa7.txt
    [2009-05-18 16:04:07 | 000,000,051 | ---- | M] () -- C:\a5Uu.txt
    [2009-05-08 07:15:10 | 000,000,051 | ---- | M] () -- C:\A5Uz.txt
    [2009-06-18 19:39:07 | 000,000,053 | ---- | M] () -- C:\A6k.txt
    [2009-05-12 13:45:19 | 000,000,051 | ---- | M] () -- C:\aaj9eb.txt
    [2010-07-01 16:47:32 | 000,008,211 | ---- | M] () -- C:\aaw7boot.log
    [2009-05-04 12:45:03 | 000,000,053 | ---- | M] () -- C:\aBysYs.txt
    [2009-06-18 19:07:07 | 000,000,048 | ---- | M] () -- C:\aCTvZg.txt
    [2009-06-22 15:17:06 | 000,000,051 | ---- | M] () -- C:\Acw.txt
    [2009-06-09 11:48:06 | 000,000,048 | ---- | M] () -- C:\aeG.txt
    [2009-05-12 01:15:20 | 000,000,048 | ---- | M] () -- C:\aGA.txt
    [2009-06-26 15:34:08 | 000,000,049 | ---- | M] () -- C:\AHMK.txt
    [2009-05-01 20:00:08 | 000,000,050 | ---- | M] () -- C:\Ahvag.txt
    [2009-05-08 11:00:07 | 000,000,049 | ---- | M] () -- C:\AiFqE.txt
    [2009-05-22 07:23:07 | 000,000,050 | ---- | M] () -- C:\AIG1KRM.txt
    [2009-04-22 17:30:04 | 000,000,048 | ---- | M] () -- C:\Aip.txt
    [2009-05-22 01:42:29 | 000,000,052 | ---- | M] () -- C:\AISkCzV.txt
    [2009-07-07 11:55:13 | 000,000,050 | ---- | M] () -- C:\AJYa.txt
    [2009-05-08 14:00:11 | 000,000,050 | ---- | M] () -- C:\aMb.txt
    [2009-05-12 13:15:21 | 000,000,048 | ---- | M] () -- C:\aNfvqCts.txt
    [2009-05-04 13:30:02 | 000,000,050 | ---- | M] () -- C:\aNLNogy7.txt
    [2009-06-11 10:36:06 | 000,000,050 | ---- | M] () -- C:\aPkW.txt
    [2009-05-22 08:57:09 | 000,000,051 | ---- | M] () -- C:\aqUi0c.txt
    [2009-05-21 17:23:07 | 000,000,048 | ---- | M] () -- C:\aQWw5.txt
    [2006-11-13 12:55:17 | 000,000,584 | ---- | M] () -- C:\AribaGLBletterhead.LNK
    [2009-05-12 12:45:20 | 000,000,050 | ---- | M] () -- C:\asbIYvx.txt
    [2009-05-18 13:04:13 | 000,000,051 | ---- | M] () -- C:\atGY1O7.txt
    [2009-06-26 16:54:06 | 000,000,051 | ---- | M] () -- C:\AVU.txt
    [2009-05-18 15:00:06 | 000,000,048 | ---- | M] () -- C:\AWAzUEo.txt
    [2009-04-23 15:15:24 | 000,000,053 | ---- | M] () -- C:\AXe5870E.txt
    [2009-05-21 18:41:06 | 000,000,051 | ---- | M] () -- C:\AzU.txt
    [2009-05-08 21:00:06 | 000,000,050 | ---- | M] () -- C:\b1FMO0.txt
    [2009-05-21 17:30:06 | 000,000,051 | ---- | M] () -- C:\B1v.txt
    [2009-06-26 12:01:06 | 000,000,052 | ---- | M] () -- C:\b4W1y2.txt
    [2009-06-22 15:15:08 | 000,000,052 | ---- | M] () -- C:\B8PYqtfO.txt
    [2009-05-01 15:00:02 | 000,000,052 | ---- | M] () -- C:\bAR7d.txt
    [2009-05-22 07:08:12 | 000,000,049 | ---- | M] () -- C:\bAv.txt
    [2009-04-24 12:45:03 | 000,000,052 | ---- | M] () -- C:\bbhJEySo.txt
    [2009-05-21 17:57:09 | 000,000,052 | ---- | M] () -- C:\BCg.txt
    [2009-06-22 18:24:08 | 000,000,048 | ---- | M] () -- C:\Bda.txt
    [2009-06-09 12:35:08 | 000,000,048 | ---- | M] () -- C:\Bdb.txt
    [2009-05-27 15:00:09 | 000,000,050 | ---- | M] () -- C:\bg5kd.txt
    [2009-06-18 20:00:06 | 000,000,049 | ---- | M] () -- C:\Bgks.txt
    [2009-05-01 11:45:02 | 000,000,052 | ---- | M] () -- C:\bgR.txt
    [2009-05-08 04:00:11 | 000,000,050 | ---- | M] () -- C:\bGx.txt
    [2009-05-08 16:00:06 | 000,000,048 | ---- | M] () -- C:\BH3x.txt
    [2009-05-01 14:45:02 | 000,000,053 | ---- | M] () -- C:\Bi5.txt
    [2009-05-21 16:01:05 | 000,000,053 | ---- | M] () -- C:\bKKgsf.txt
    [2009-05-22 00:32:16 | 000,000,048 | ---- | M] () -- C:\BKxCL.txt
    [2006-03-31 13:54:51 | 000,000,211 | ---- | M] () -- C:\Boot.bak
    [2009-01-22 14:30:36 | 000,000,281 | RHS- | M] () -- C:\boot.ini
    [2009-06-18 17:20:07 | 000,000,052 | ---- | M] () -- C:\bqlOdI7.txt
    [2009-05-22 17:05:06 | 000,000,052 | ---- | M] () -- C:\bqt5cqJI.txt
    [2009-06-17 20:29:09 | 000,000,048 | ---- | M] () -- C:\BRCtKy.txt
    [2009-05-27 13:44:06 | 000,000,053 | ---- | M] () -- C:\Brh0.txt
    [2009-04-24 18:00:04 | 000,000,052 | ---- | M] () -- C:\btzneidJ.txt
    [2009-05-08 20:15:06 | 000,000,052 | ---- | M] () -- C:\bvbQCfR.txt
    [2009-06-18 18:01:07 | 000,000,052 | ---- | M] () -- C:\bVuQ6.txt
    [2009-05-31 20:04:06 | 000,000,053 | ---- | M] () -- C:\bWEEdX2.txt
    [2009-06-09 12:30:10 | 000,000,048 | ---- | M] () -- C:\BxBGEeX.txt
    [2009-06-18 12:59:12 | 000,000,049 | ---- | M] () -- C:\BxDMO4B.txt
    [2009-05-22 02:26:56 | 000,000,052 | ---- | M] () -- C:\BxEaxsB5.txt
    [2009-04-22 17:15:05 | 000,000,052 | ---- | M] () -- C:\bxOCCHrM.txt
    [2009-05-08 13:15:08 | 000,000,049 | ---- | M] () -- C:\bzG.txt
    [2009-05-22 17:04:06 | 000,000,048 | ---- | M] () -- C:\BzZ3.txt
    [2009-06-17 19:55:06 | 000,000,052 | ---- | M] () -- C:\C153.txt
    [2009-06-18 11:05:17 | 000,000,053 | ---- | M] () -- C:\c5W1w0r.txt
    [2009-06-22 18:59:06 | 000,000,049 | ---- | M] () -- C:\c7gtx.txt
    [2009-05-18 16:47:07 | 000,000,050 | ---- | M] () -- C:\C7w.txt
    [2009-06-18 16:25:07 | 000,000,049 | ---- | M] () -- C:\ca1.txt
    [2009-05-08 07:45:10 | 000,000,052 | ---- | M] () -- C:\caC.txt
    [2009-06-19 12:08:10 | 000,000,048 | ---- | M] () -- C:\cAUOSrc.txt
    [2009-04-22 15:30:16 | 000,000,050 | ---- | M] () -- C:\cbi3p.txt
    [2009-04-22 16:00:21 | 000,000,051 | ---- | M] () -- C:\cCn.txt
    [2009-06-17 11:56:09 | 000,000,051 | ---- | M] () -- C:\CD26.txt
    [2009-05-12 16:00:17 | 000,000,052 | ---- | M] () -- C:\Ce8hoG5y.txt
    [2009-06-18 15:19:15 | 000,000,051 | ---- | M] () -- C:\cFBcv.txt
    [2009-05-07 19:30:03 | 000,000,050 | ---- | M] () -- C:\CgCSMcb.txt
    [2009-06-18 17:04:06 | 000,000,052 | ---- | M] () -- C:\CMk3z.txt
    [2004-08-04 00:00:00 | 000,260,272 | ---- | M] () -- C:\cmldr
    [2009-06-17 19:05:06 | 000,000,049 | ---- | M] () -- C:\cN8ufx.txt
    [2009-05-08 06:00:07 | 000,000,053 | ---- | M] () -- C:\cNqAJ2x.txt
    [2009-06-22 16:35:06 | 000,000,051 | ---- | M] () -- C:\cocqGE.txt
    [2004-08-11 19:15:00 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
    [2008-11-18 18:58:15 | 000,210,508 | ---- | M] () -- C:\coreuninstall.log
    [2009-05-08 12:00:09 | 000,000,050 | ---- | M] () -- C:\cQr.txt
    [2009-05-08 11:31:10 | 000,000,052 | ---- | M] () -- C:\Cr351AzS.txt
    [2009-06-22 18:51:06 | 000,000,048 | ---- | M] () -- C:\CvG96f1.txt
    [2009-05-27 13:50:06 | 000,000,053 | ---- | M] () -- C:\CWY.txt
    [2009-05-11 18:45:09 | 000,000,049 | ---- | M] () -- C:\CX6UNlfS.txt
    [2009-05-18 12:57:10 | 000,000,049 | ---- | M] () -- C:\cxb6.txt
    [2009-05-08 17:30:05 | 000,000,051 | ---- | M] () -- C:\CXs.txt
    [2009-05-12 02:45:22 | 000,000,053 | ---- | M] () -- C:\CYl.txt
    [2009-05-22 05:34:13 | 000,000,053 | ---- | M] () -- C:\Cz1k.txt
    [2009-05-12 11:00:06 | 000,000,053 | ---- | M] () -- C:\D0TQIY.txt
    [2009-06-18 11:33:06 | 000,000,049 | ---- | M] () -- C:\d2w.txt
    [2009-06-09 12:01:10 | 000,000,049 | ---- | M] () -- C:\D39.txt
    [2009-06-18 14:55:05 | 000,000,048 | ---- | M] () -- C:\d5RJk.txt
    [2009-05-07 18:00:03 | 000,000,051 | ---- | M] () -- C:\D6MM24.txt
    [2009-05-08 08:15:14 | 000,000,049 | ---- | M] () -- C:\D8HZsrQ1.txt
    [2009-06-18 15:54:06 | 000,000,048 | ---- | M] () -- C:\dBbDbg.txt
    [2009-04-24 17:15:04 | 000,000,053 | ---- | M] () -- C:\DBhYAdKy.txt
    [2009-06-22 16:47:06 | 000,000,051 | ---- | M] () -- C:\dCaXKH.txt
    [2009-05-21 15:58:06 | 000,000,051 | ---- | M] () -- C:\DcdmSq.txt
    [2009-04-23 10:45:06 | 000,000,053 | ---- | M] () -- C:\ddKRVg.txt
    [2009-05-27 15:15:10 | 000,000,051 | ---- | M] () -- C:\ddykzQ4.txt
    [2006-03-07 08:50:18 | 000,006,370 | RH-- | M] () -- C:\dell.sdr
    [2009-05-22 16:27:05 | 000,000,053 | ---- | M] () -- C:\dELPpWl.txt
    [2009-05-21 20:47:06 | 000,000,050 | ---- | M] () -- C:\dgH.txt
    [2009-06-22 19:40:07 | 000,000,051 | ---- | M] () -- C:\dGmY9sB.txt
    [2009-06-22 13:15:04 | 000,000,053 | ---- | M] () -- C:\dHbRTa.txt
    [2009-05-21 19:34:07 | 000,000,051 | ---- | M] () -- C:\dIdiRCd.txt
    [2009-04-28 11:00:04 | 000,000,052 | ---- | M] () -- C:\dIpM.txt
    [2009-06-17 11:51:07 | 000,000,051 | ---- | M] () -- C:\dJK.txt
    [2009-05-01 16:00:02 | 000,000,052 | ---- | M] () -- C:\dkewJjO.txt
    [2009-05-14 15:51:04 | 000,000,052 | ---- | M] () -- C:\Dkj4.txt
    [2009-05-18 13:21:10 | 000,000,048 | ---- | M] () -- C:\DlPO.txt
    [2009-06-18 11:42:08 | 000,000,053 | ---- | M] () -- C:\dMF1bHuV.txt
    [2009-06-29 12:05:08 | 000,000,051 | ---- | M] () -- C:\Dnsp.txt
    [2009-04-23 14:15:04 | 000,000,048 | ---- | M] () -- C:\Dnx5Tn.txt
    [2009-06-11 10:30:10 | 000,000,051 | ---- | M] () -- C:\dO2S.txt
    [2009-06-17 18:44:06 | 000,000,052 | ---- | M] () -- C:\dO3GqGK.txt
    [2009-05-11 15:45:09 | 000,000,052 | ---- | M] () -- C:\DoddJUb.txt
    [2009-05-12 03:00:25 | 000,000,052 | ---- | M] () -- C:\dokI8GQ.txt
    [2009-06-22 19:32:06 | 000,000,053 | ---- | M] () -- C:\dPRGu.txt
    [2009-05-28 11:03:10 | 000,000,052 | ---- | M] () -- C:\dPv.txt
    [2009-05-08 13:30:11 | 000,000,048 | ---- | M] () -- C:\Dq3.txt
    [2009-06-17 14:08:05 | 000,000,049 | ---- | M] () -- C:\DqRd.txt
    [2009-06-16 17:20:04 | 000,000,050 | ---- | M] () -- C:\DR2OyP.txt
    [2009-05-08 15:30:06 | 000,000,053 | ---- | M] () -- C:\DSWVS.txt
    [2009-05-01 17:15:02 | 000,000,048 | ---- | M] () -- C:\DvGl.txt
    [2009-05-08 05:30:11 | 000,000,053 | ---- | M] () -- C:\dWa6b.txt
    [2009-04-22 14:15:35 | 000,000,048 | ---- | M] () -- C:\dww.txt
    [2009-06-26 12:07:07 | 000,000,051 | ---- | M] () -- C:\E0VR.txt
    [2009-05-18 16:58:06 | 000,000,048 | ---- | M] () -- C:\e5Ok.txt
    [2009-05-27 14:22:06 | 000,000,048 | ---- | M] () -- C:\E62FF5.txt
    [2009-05-01 12:00:02 | 000,000,048 | ---- | M] () -- C:\e6uWFeM.txt
    [2009-05-22 07:41:06 | 000,000,051 | ---- | M] () -- C:\ebqd2gg.txt
    [2009-05-01 11:30:06 | 000,000,052 | ---- | M] () -- C:\ebT.txt
    [2009-06-19 12:41:07 | 000,000,051 | ---- | M] () -- C:\EDGjl.txt
    [2009-05-11 23:00:18 | 000,000,050 | ---- | M] () -- C:\EDiD.txt
    [2009-04-24 12:30:02 | 000,000,049 | ---- | M] () -- C:\eHWET3dR.txt
    [2009-04-28 10:45:09 | 000,000,052 | ---- | M] () -- C:\eIgG2f.txt
    [2009-06-18 13:38:10 | 000,000,050 | ---- | M] () -- C:\EjR8G.txt
    [2009-06-19 12:29:07 | 000,000,051 | ---- | M] () -- C:\EmvL57.txt
    [2009-05-11 21:45:17 | 000,000,049 | ---- | M] () -- C:\eMYdeARJ.txt
    [2009-06-17 14:29:06 | 000,000,049 | ---- | M] () -- C:\enuc.txt
    [2009-05-15 17:37:04 | 000,000,051 | ---- | M] () -- C:\EoCjcK.txt
    [2009-05-27 17:24:09 | 000,000,050 | ---- | M] () -- C:\eP9CBu6.txt
    [2009-04-24 17:30:04 | 000,000,051 | ---- | M] () -- C:\epRCf.txt
    [2009-05-21 16:25:06 | 000,000,049 | ---- | M] () -- C:\erHvGNNP.txt
    [2009-05-01 17:45:03 | 000,000,049 | ---- | M] () -- C:\eRwdIP.txt
    [2009-06-22 18:42:06 | 000,000,053 | ---- | M] () -- C:\EThA.txt
    [2009-05-27 13:47:07 | 000,000,052 | ---- | M] () -- C:\EVc.txt
    [2009-05-08 05:15:08 | 000,000,050 | ---- | M] () -- C:\EvHVD1.txt
    [2009-05-11 16:00:10 | 000,000,051 | ---- | M] () -- C:\EvTBNb.txt
    [2009-05-22 15:57:05 | 000,000,053 | ---- | M] () -- C:\eXKd.txt
    [2009-05-27 15:05:10 | 000,000,048 | ---- | M] () -- C:\ez8s2m.txt
    [2009-05-21 23:30:10 | 000,000,052 | ---- | M] () -- C:\f0F9j.txt
    [2009-05-12 13:00:22 | 000,000,051 | ---- | M] () -- C:\f1UPJA.txt
    [2009-05-22 00:22:12 | 000,000,051 | ---- | M] () -- C:\f27beHR.txt
    [2009-05-08 14:30:09 | 000,000,048 | ---- | M] () -- C:\f3h3qjxc.txt
    [2009-06-09 10:39:09 | 000,000,048 | ---- | M] () -- C:\f4xYXq.txt
    [2009-05-21 16:38:06 | 000,000,049 | ---- | M] () -- C:\F6ajG.txt
    [2009-05-12 13:30:17 | 000,000,052 | ---- | M] () -- C:\F6KwZZ.txt
    [2009-05-11 23:45:15 | 000,000,051 | ---- | M] () -- C:\F7x37.txt
    [2009-05-27 17:30:07 | 000,000,050 | ---- | M] () -- C:\fBiIo.txt
    [2009-05-18 14:44:07 | 000,000,052 | ---- | M] () -- C:\fc5Zs.txt
    [2009-04-22 13:45:05 | 000,000,048 | ---- | M] () -- C:\FcivR.txt
    [2009-06-08 16:42:04 | 000,000,053 | ---- | M] () -- C:\fEG3a8.txt
    [2009-05-18 16:31:06 | 000,000,049 | ---- | M] () -- C:\FF9J.txt
    [2009-05-11 20:30:12 | 000,000,052 | ---- | M] () -- C:\ffO4.txt
    [2009-05-08 18:15:06 | 000,000,049 | ---- | M] () -- C:\fGEaDj0.txt
    [2009-05-22 01:00:33 | 000,000,048 | ---- | M] () -- C:\FHz.txt
    [2009-05-04 12:30:03 | 000,000,052 | ---- | M] () -- C:\fjMg8Fk.txt
    [2009-05-22 03:58:18 | 000,000,048 | ---- | M] () -- C:\fjqtcDv0.txt
    [2009-05-18 15:25:09 | 000,000,052 | ---- | M] () -- C:\fMAYvJ.txt
    [2009-05-08 04:45:09 | 000,000,051 | ---- | M] () -- C:\FMum.txt
    [2009-04-22 14:30:15 | 000,000,050 | ---- | M] () -- C:\fMW.txt
    [2009-06-17 13:25:06 | 000,000,052 | ---- | M] () -- C:\FnhwPYGU.txt
    [2009-05-27 15:31:06 | 000,000,048 | ---- | M] () -- C:\fNw6M8t.txt
    [2009-06-26 12:16:06 | 000,000,050 | ---- | M] () -- C:\Fo8.txt
    [2009-06-09 10:50:09 | 000,000,052 | ---- | M] () -- C:\FOrAuf.txt
    [2009-05-08 04:30:06 | 000,000,052 | ---- | M] () -- C:\FOuQlM.txt
    [2009-05-21 17:25:09 | 000,000,048 | ---- | M] () -- C:\FQ3.txt
    [2009-05-08 12:45:09 | 000,000,053 | ---- | M] () -- C:\FR6rrIi.txt
    [2009-05-14 17:08:05 | 000,000,053 | ---- | M] () -- C:\Fsi0MNJa.txt
    [2009-05-21 21:19:11 | 000,000,053 | ---- | M] () -- C:\FsQVz.txt
    [2009-06-18 15:41:08 | 000,000,052 | ---- | M] () -- C:\ft10.txt
    [2009-06-17 15:50:07 | 000,000,053 | ---- | M] () -- C:\fu1vpU.txt
    [2009-05-21 19:54:06 | 000,000,050 | ---- | M] () -- C:\fuzZ9F.txt
    [2009-05-11 22:00:16 | 000,000,051 | ---- | M] () -- C:\FWE7.txt
    [2009-06-17 10:59:04 | 000,000,049 | ---- | M] () -- C:\fwlHO.txt
    [2009-05-22 01:56:06 | 000,000,053 | ---- | M] () -- C:\FYJkv.txt
    [2009-05-27 16:26:18 | 000,000,051 | ---- | M] () -- C:\FyP6.txt
    [2009-05-11 15:15:08 | 000,000,052 | ---- | M] () -- C:\FytR3.txt
    [2009-04-23 17:30:04 | 000,000,052 | ---- | M] () -- C:\FYVEfz.txt
    [2009-06-22 16:39:06 | 000,000,050 | ---- | M] () -- C:\fZ1RwhP6.txt
    [2009-05-11 16:30:07 | 000,000,048 | ---- | M] () -- C:\FZg2eNZ.txt
    [2009-05-01 17:00:03 | 000,000,050 | ---- | M] () -- C:\G1OY.txt
    [2009-06-17 17:32:06 | 000,000,050 | ---- | M] () -- C:\g1xXVau.txt
    [2009-06-18 11:26:07 | 000,000,048 | ---- | M] () -- C:\G3f.txt
    [2009-04-23 14:30:04 | 000,000,050 | ---- | M] () -- C:\G624p.txt
    [2009-05-01 13:15:02 | 000,000,051 | ---- | M] () -- C:\g6RxZ.txt
    [2009-05-27 15:56:11 | 000,000,052 | ---- | M] () -- C:\g77e.txt
    [2009-05-11 20:45:13 | 000,000,050 | ---- | M] () -- C:\G81Tu3B.txt
    [2009-05-21 22:18:06 | 000,000,051 | ---- | M] () -- C:\gAtUf.txt
    [2009-05-21 17:09:06 | 000,000,049 | ---- | M] () -- C:\GBx.txt
    [2009-05-08 02:00:06 | 000,000,052 | ---- | M] () -- C:\gClHn.txt
    [2009-06-17 17:59:07 | 000,000,051 | ---- | M] () -- C:\Ggc.txt
    [2009-04-24 16:00:18 | 000,000,053 | ---- | M] () -- C:\GGek.txt
    [2009-05-26 13:51:09 | 000,000,052 | ---- | M] () -- C:\Ghm6.txt
    [2009-05-22 07:55:06 | 000,000,050 | ---- | M] () -- C:\GJ2sCNGj.txt
    [2009-06-19 11:56:09 | 000,000,053 | ---- | M] () -- C:\GjX.txt
    [2009-06-26 12:36:09 | 000,000,050 | ---- | M] () -- C:\GKcD.txt
    [2006-11-13 12:55:17 | 000,000,419 | ---- | M] () -- C:\GLB.LNK
    [2009-05-21 21:41:06 | 000,000,048 | ---- | M] () -- C:\gllt7j.txt
    [2009-06-17 11:47:06 | 000,000,050 | ---- | M] () -- C:\GnmTzir.txt
    [2009-06-22 17:27:12 | 000,000,053 | ---- | M] () -- C:\GOeH.txt
    [2009-06-17 12:44:09 | 000,000,053 | ---- | M] () -- C:\gOkYzagN.txt
    [2009-06-26 15:22:13 | 000,000,049 | ---- | M] () -- C:\GpiY.txt
    [2009-07-07 12:03:05 | 000,000,051 | ---- | M] () -- C:\gqEaDn.txt
    [2009-06-18 12:09:06 | 000,000,053 | ---- | M] () -- C:\gsOMO.txt
    [2009-05-11 17:30:09 | 000,000,051 | ---- | M] () -- C:\gtBnMm.txt
    [2009-05-18 12:38:04 | 000,000,052 | ---- | M] () -- C:\gTwZ.txt
    [2009-04-28 12:15:06 | 000,000,050 | ---- | M] () -- C:\gUEF3Oj.txt
    [2009-05-01 16:15:02 | 000,000,051 | ---- | M] () -- C:\GVjkj4X.txt
    [2009-06-17 15:32:07 | 000,000,050 | ---- | M] () -- C:\GwzjkwJw.txt
    [2009-06-17 12:25:06 | 000,000,053 | ---- | M] () -- C:\H23MnKDR.txt
    [2009-05-27 14:58:06 | 000,000,051 | ---- | M] () -- C:\H61Bk.txt
    [2009-05-26 13:49:09 | 000,000,049 | ---- | M] () -- C:\h83kk.txt
    [2009-04-27 12:00:02 | 000,000,051 | ---- | M] () -- C:\hA5.txt
    [2009-06-17 13:36:09 | 000,000,050 | ---- | M] () -- C:\hbhyxjs.txt
    [2009-06-18 10:37:07 | 000,000,048 | ---- | M] () -- C:\hExuo0qS.txt
    [2009-05-21 20:46:09 | 000,000,053 | ---- | M] () -- C:\Heyvc.txt
    [2009-05-12 11:30:07 | 000,000,051 | ---- | M] () -- C:\HGM.txt
    [2009-06-26 16:03:05 | 000,000,052 | ---- | M] () -- C:\hI29L3.txt
    [2010-07-01 16:47:35 | 2145,546,240 | -HS- | M] () -- C:\hiberfil.sys
    [2009-05-21 16:29:06 | 000,000,052 | ---- | M] () -- C:\hIMeS7ZQ.txt
    [2009-06-17 21:19:07 | 000,000,050 | ---- | M] () -- C:\hiX.txt
    [2009-05-18 15:09:09 | 000,000,049 | ---- | M] () -- C:\HixcfIU.txt
    [2009-06-18 19:08:06 | 000,000,048 | ---- | M] () -- C:\hkJUR.txt
    [2009-05-01 20:15:13 | 000,000,048 | ---- | M] () -- C:\hkxmKTF.txt
    [2009-05-22 07:28:07 | 000,000,052 | ---- | M] () -- C:\hP9Ji.txt
    [2009-05-11 22:15:14 | 000,000,049 | ---- | M] () -- C:\hQ0uzK5.txt
    [2009-05-21 23:05:07 | 000,000,048 | ---- | M] () -- C:\HtBk7c.txt
    [2009-05-08 13:45:10 | 000,000,052 | ---- | M] () -- C:\hu9C.txt
    [2009-05-22 05:58:07 | 000,000,049 | ---- | M] () -- C:\HwHTDsJO.txt
    [2009-04-24 17:45:04 | 000,000,049 | ---- | M] () -- C:\HySc9ih.txt
    [2009-05-08 07:00:10 | 000,000,048 | ---- | M] () -- C:\HZ1q.txt
    [2009-05-08 03:15:20 | 000,000,050 | ---- | M] () -- C:\I01xFOl.txt
    [2009-06-18 19:07:06 | 000,000,048 | ---- | M] () -- C:\i1eW.txt
    [2009-05-07 16:15:06 | 000,000,051 | ---- | M] () -- C:\i2r1.txt
    [2009-05-18 17:08:11 | 000,000,051 | ---- | M] () -- C:\I3wbrk.txt
    [2009-05-27 12:25:09 | 000,000,052 | ---- | M] () -- C:\i5c2wMG.txt
    [2009-05-22 08:27:09 | 000,000,051 | ---- | M] () -- C:\I6jDwoR.txt
    [2009-05-12 10:45:12 | 000,000,052 | ---- | M] () -- C:\I7Z.txt
    [2009-05-01 13:00:02 | 000,000,052 | ---- | M] () -- C:\IBifhB0.txt
    [2009-06-26 17:06:05 | 000,000,051 | ---- | M] () -- C:\ICD.txt
    [2009-06-22 16:04:06 | 000,000,053 | ---- | M] () -- C:\iDiby.txt
    [2009-06-26 16:06:06 | 000,000,049 | ---- | M] () -- C:\idR5Wymo.txt
    [2009-05-11 19:30:08 | 000,000,050 | ---- | M] () -- C:\Idxi.txt
    [2009-05-12 14:00:20 | 000,000,048 | ---- | M] () -- C:\iE6.txt
    [2009-05-12 16:31:41 | 000,000,050 | ---- | M] () -- C:\iEXZrc.txt
    [2009-05-12 10:45:12 | 000,000,051 | ---- | M] () -- C:\IFc.txt
    [2009-05-22 16:02:06 | 000,000,050 | ---- | M] () -- C:\IfOlVxW.txt
    [2009-04-28 11:30:06 | 000,000,049 | ---- | M] () -- C:\IgD9RKs.txt
    [2009-05-15 17:34:04 | 000,000,048 | ---- | M] () -- C:\iGzOQ.txt
    [2009-05-26 13:37:10 | 000,000,053 | ---- | M] () -- C:\ihAMRhW.txt
    [2009-05-27 17:44:08 | 000,000,052 | ---- | M] () -- C:\IHWuupd.txt
    [2009-05-12 00:30:19 | 000,000,052 | ---- | M] () -- C:\IiAtp.txt
    [2009-05-08 21:30:08 | 000,000,053 | ---- | M] () -- C:\iJ4.txt
    [2009-06-08 17:41:07 | 000,000,052 | ---- | M] () -- C:\ijILc.txt
    [2009-04-24 14:15:11 | 000,000,050 | ---- | M] () -- C:\IjWQw.txt
    [2009-04-22 15:45:20 | 000,000,051 | ---- | M] () -- C:\IKueNOZ.txt
    [2009-06-22 17:36:07 | 000,000,051 | ---- | M] () -- C:\ilbw.txt
    [2009-05-12 14:15:16 | 000,000,053 | ---- | M] () -- C:\Im6mzRL.txt
    [2009-05-27 16:42:06 | 000,000,052 | ---- | M] () -- C:\INA.txt
    [2006-04-04 13:32:01 | 000,004,128 | ---- | M] () -- C:\INFCACHE.1
    [2004-08-11 19:15:00 | 000,000,000 | -H-- | M] () -- C:\IO.SYS
    [2009-05-22 06:19:07 | 000,000,052 | ---- | M] () -- C:\iOh8F.txt
    [2009-04-23 13:45:05 | 000,000,049 | ---- | M] () -- C:\Ip9kxH.txt
    [2009-06-17 19:47:06 | 000,000,049 | ---- | M] () -- C:\ipYmfG.txt
    [2009-04-22 17:00:06 | 000,000,051 | ---- | M] () -- C:\IQwY.txt
    [2009-05-07 17:45:03 | 000,000,050 | ---- | M] () -- C:\isOTv.txt
    [2009-05-12 10:30:08 | 000,000,051 | ---- | M] () -- C:\iw4ugm.txt
    [2009-05-01 14:30:02 | 000,000,053 | ---- | M] () -- C:\iwYV.txt
    [2009-06-16 17:05:04 | 000,000,050 | ---- | M] () -- C:\iXn4OIan.txt
    [2009-05-27 16:07:17 | 000,000,049 | ---- | M] () -- C:\IZJApO.txt
    [2009-06-18 11:56:09 | 000,000,053 | ---- | M] () -- C:\iZZImJx.txt
    [2009-05-12 15:15:21 | 000,000,048 | ---- | M] () -- C:\j05AKOy.txt
    [2009-05-14 17:02:03 | 000,000,053 | ---- | M] () -- C:\j1pcs.txt
    [2009-05-04 13:00:02 | 000,000,048 | ---- | M] () -- C:\j3f.txt
    [2009-05-18 13:16:13 | 000,000,050 | ---- | M] () -- C:\j5IqP.txt
    [2009-04-22 16:45:04 | 000,000,049 | ---- | M] () -- C:\j5qRb.txt
    [2009-05-12 02:15:22 | 000,000,048 | ---- | M] () -- C:\J6J.txt
    [2009-05-07 18:45:05 | 000,000,052 | ---- | M] () -- C:\jAPBX0P.txt
    [2009-07-17 14:39:13 | 000,009,368 | ---- | M] () -- C:\JavaRa.log
    [2009-05-27 15:03:06 | 000,000,049 | ---- | M] () -- C:\jaZK3o.txt
    [2009-04-24 11:30:02 | 000,000,053 | ---- | M] () -- C:\jEo.txt
    [2009-06-24 14:18:06 | 000,000,052 | ---- | M] () -- C:\JF4izqk.txt
    [2009-04-22 16:45:13 | 000,099,912 | ---- | M] () -- C:\jGrg.exe
    [2009-06-17 09:39:15 | 000,000,049 | ---- | M] () -- C:\JIfICGaT.txt
    [2009-05-11 17:00:09 | 000,000,049 | ---- | M] () -- C:\jk4bmO.txt
    [2009-05-08 03:45:12 | 000,000,052 | ---- | M] () -- C:\JKgvZU.txt
    [2009-05-14 15:15:04 | 000,000,050 | ---- | M] () -- C:\Jknsfk.txt
    [2009-05-22 06:23:14 | 000,000,052 | ---- | M] () -- C:\JL48JaH.txt
    [2009-05-12 02:00:17 | 000,000,048 | ---- | M] () -- C:\jle.txt
    [2009-05-21 21:44:07 | 000,000,051 | ---- | M] () -- C:\jMdy.txt
    [2009-04-24 11:00:03 | 000,000,053 | ---- | M] () -- C:\Jnk0CuU.txt
    [2009-05-11 15:30:10 | 000,000,051 | ---- | M] () -- C:\JoM9.txt
    [2009-06-26 12:23:09 | 000,000,049 | ---- | M] () -- C:\JouKe.txt
    [2009-05-12 03:15:17 | 000,000,053 | ---- | M] () -- C:\jpqfVSo.txt
    [2009-05-22 07:52:10 | 000,000,050 | ---- | M] () -- C:\JpSWl.txt
    [2009-05-04 14:30:03 | 000,000,052 | ---- | M] () -- C:\jq0HeFB.txt
    [2009-05-21 23:36:12 | 000,000,049 | ---- | M] () -- C:\jQbsrW.txt
    [2009-05-22 05:08:33 | 000,000,053 | ---- | M] () -- C:\JqwLO3Y.txt
    [2009-05-01 18:30:02 | 000,000,050 | ---- | M] () -- C:\jR1j.txt
    [2009-05-28 11:42:08 | 000,000,051 | ---- | M] () -- C:\jrGC.txt
    [2009-05-04 13:45:02 | 000,000,048 | ---- | M] () -- C:\JUl9zli.txt
    [2009-05-04 14:15:05 | 000,000,048 | ---- | M] () -- C:\jwSGTkw.txt
    [2009-05-22 16:35:06 | 000,000,048 | ---- | M] () -- C:\jXD0Q.txt
    [2009-06-17 10:59:08 | 000,000,052 | ---- | M] () -- C:\JYKeu.txt
    [2009-05-21 22:53:06 | 000,000,048 | ---- | M] () -- C:\K4er9.txt
    [2009-04-24 13:00:02 | 000,000,050 | ---- | M] () -- C:\K53u.txt
    [2009-05-08 21:15:06 | 000,000,049 | ---- | M] () -- C:\K75m0.txt
    [2009-04-28 11:15:03 | 000,000,048 | ---- | M] () -- C:\K7Qpc22a.txt
    [2009-05-07 18:15:05 | 000,000,051 | ---- | M] () -- C:\K8l1R.txt
    [2009-05-22 04:19:11 | 000,000,051 | ---- | M] () -- C:\KAs9t.txt
    [2009-05-21 23:48:08 | 000,000,052 | ---- | M] () -- C:\kaw9W9j.txt
    [2009-05-22 04:08:20 | 000,000,053 | ---- | M] () -- C:\KBmc.txt
    [2009-05-01 19:30:05 | 000,000,050 | ---- | M] () -- C:\kbMu6.txt
    [2009-05-21 20:20:06 | 000,000,052 | ---- | M] () -- C:\KBQg.txt
    [2009-05-01 19:15:05 | 000,000,053 | ---- | M] () -- C:\kbV.txt
    [2009-05-08 10:30:13 | 000,000,048 | ---- | M] () -- C:\kccgh.txt
    [2009-06-18 19:28:08 | 000,000,052 | ---- | M] () -- C:\KfjR5D.txt
    [2009-05-08 17:15:07 | 000,000,052 | ---- | M] () -- C:\Kft5CiFF.txt
    [2009-05-01 20:45:17 | 000,000,049 | ---- | M] () -- C:\Kha.txt
    [2009-05-08 13:00:11 | 000,000,053 | ---- | M] () -- C:\kHo.txt
    [2009-04-23 16:15:03 | 000,000,053 | ---- | M] () -- C:\kJ2nZ3t.txt
    [2009-06-18 13:04:07 | 000,000,053 | ---- | M] () -- C:\kJTeqGF.txt
    [2009-05-08 14:45:06 | 000,000,052 | ---- | M] () -- C:\kjz.txt
    [2009-04-24 17:00:04 | 000,000,049 | ---- | M] () -- C:\kkty2.txt
    [2009-06-18 14:41:11 | 000,000,053 | ---- | M] () -- C:\KKugD07.txt
    [2009-05-11 21:00:10 | 000,000,052 | ---- | M] () -- C:\KLa5P8.txt
    [2009-06-22 16:59:07 | 000,000,048 | ---- | M] () -- C:\kMN62d.txt
    [2009-04-24 16:45:04 | 000,000,049 | ---- | M] () -- C:\Kpp759.txt
    [2009-06-08 17:56:06 | 000,000,052 | ---- | M] () -- C:\kS4T7wh.txt
    [2009-06-19 12:33:07 | 000,000,050 | ---- | M] () -- C:\kUeo.txt
    [2009-05-01 18:00:04 | 000,000,053 | ---- | M] () -- C:\KuwQXez.txt
    [2009-05-27 14:23:06 | 000,000,052 | ---- | M] () -- C:\kvTv.txt
    [2009-05-22 07:59:19 | 000,000,053 | ---- | M] () -- C:\kY31.txt
    [2009-06-17 12:02:04 | 000,000,049 | ---- | M] () -- C:\Kz5.txt
    [2009-04-24 16:15:16 | 000,000,053 | ---- | M] () -- C:\l07fJsI.txt
    [2009-05-12 15:00:11 | 000,000,053 | ---- | M] () -- C:\L0vxckYn.txt
    [2009-05-14 16:54:03 | 000,000,051 | ---- | M] () -- C:\l1TXCIg.txt
    [2009-05-11 19:00:10 | 000,000,052 | ---- | M] () -- C:\laUsPM.txt
    [2009-05-11 16:45:07 | 000,000,051 | ---- | M] () -- C:\LBjrKE.txt
    [2009-06-22 15:21:04 | 000,000,052 | ---- | M] () -- C:\lCJU9F3.txt
    [2009-05-08 17:45:05 | 000,000,053 | ---- | M] () -- C:\ldjfF.txt
    [2009-06-26 17:22:05 | 000,000,050 | ---- | M] () -- C:\LeFal4z.txt
    [2009-05-21 19:08:08 | 000,000,053 | ---- | M] () -- C:\LeLkHOp.txt
    [2009-05-01 21:15:05 | 000,000,052 | ---- | M] () -- C:\lg4Dg.txt
    [2009-04-24 10:45:06 | 000,000,051 | ---- | M] () -- C:\lGj0HU.txt
    [2009-05-11 21:15:18 | 000,000,049 | ---- | M] () -- C:\lGZfwN.txt
    [2009-06-26 15:57:06 | 000,000,053 | ---- | M] () -- C:\lhkBj27.txt
    [2009-06-25 18:09:03 | 000,000,048 | ---- | M] () -- C:\LjtSSAoq.txt
    [2009-04-23 13:45:05 | 000,000,048 | ---- | M] () -- C:\LKJHK3AF.txt
    [2009-05-27 14:08:12 | 000,000,053 | ---- | M] () -- C:\lkl.txt
    [2009-04-22 13:45:05 | 000,000,052 | ---- | M] () -- C:\LKMlHi.txt
    [2009-05-01 16:30:04 | 000,000,051 | ---- | M] () -- C:\Lo3iWQl.txt
    [2009-06-26 13:22:06 | 000,000,050 | ---- | M] () -- C:\lRXIO.txt
    [2009-06-18 17:55:06 | 000,000,053 | ---- | M] () -- C:\ls81C1sb.txt
    [2009-05-22 03:34:12 | 000,000,051 | ---- | M] () -- C:\LsBAzi.txt
    [2009-06-22 19:29:06 | 000,000,049 | ---- | M] () -- C:\LSKqUcn.txt
    [2009-05-22 08:08:14 | 000,000,048 | ---- | M] () -- C:\ltbRieJ.txt
    [2009-05-07 18:30:03 | 000,000,051 | ---- | M] () -- C:\lTmOOB.txt
    [2009-05-12 13:30:18 | 000,000,052 | ---- | M] () -- C:\Lu1Yj.txt
    [2009-04-22 14:45:15 | 000,000,050 | ---- | M] () -- C:\lUS.txt
    [2009-05-22 04:34:10 | 000,000,049 | ---- | M] () -- C:\lWm0msQ5.txt
    [2009-05-21 22:22:15 | 000,000,052 | ---- | M] () -- C:\LXNVQULX.txt
    [2009-06-18 20:06:06 | 000,000,049 | ---- | M] () -- C:\LyYqF027.txt
    [2009-06-22 17:58:06 | 000,000,050 | ---- | M] () -- C:\m02V86sg.txt
    [2009-05-04 12:00:16 | 000,000,049 | ---- | M] () -- C:\M1dmMwHu.txt
    [2009-05-08 06:30:09 | 000,000,052 | ---- | M] () -- C:\M1r2kU.txt
    [2009-05-22 06:59:11 | 000,000,048 | ---- | M] () -- C:\M5Dk.txt
    [2009-06-09 11:19:06 | 000,000,050 | ---- | M] () -- C:\M5rdFd.txt
    [2009-05-01 15:30:02 | 000,000,053 | ---- | M] () -- C:\m6rvUXwi.txt
    [2009-04-23 11:45:14 | 000,000,051 | ---- | M] () -- C:\M7PZqN4.txt
    [2009-06-18 16:50:06 | 000,000,048 | ---- | M] () -- C:\maBuptKl.txt
    [2009-05-18 15:24:06 | 000,000,053 | ---- | M] () -- C:\mATrL.txt
    [2009-04-22 16:15:04 | 000,000,052 | ---- | M] () -- C:\mbE.txt
    [2009-05-01 15:45:02 | 000,000,049 | ---- | M] () -- C:\mbT.txt
    [2009-05-22 03:24:11 | 000,000,050 | ---- | M] () -- C:\McqhXV.txt
    [2009-05-08 01:45:08 | 000,000,050 | ---- | M] () -- C:\MdJRyceo.txt
    [2009-05-01 18:45:02 | 000,000,051 | ---- | M] () -- C:\mDs.txt
    [2009-05-22 05:19:14 | 000,000,049 | ---- | M] () -- C:\mFn.txt
    [2009-05-18 15:55:08 | 000,000,050 | ---- | M] () -- C:\mFwTd.txt
    [2009-04-23 11:45:10 | 000,000,051 | ---- | M] () -- C:\MiGeN2.txt
    [2009-06-22 17:08:06 | 000,000,048 | ---- | M] () -- C:\MJU.txt
    [2009-06-09 12:53:06 | 000,000,048 | ---- | M] () -- C:\Mk7Oagq.txt
    [2009-05-22 11:20:03 | 000,000,052 | ---- | M] () -- C:\MLDBoT.txt
    [2009-05-11 17:45:10 | 000,000,053 | ---- | M] () -- C:\MMjCdz.txt
    [2009-06-09 11:17:06 | 000,000,049 | ---- | M] () -- C:\MMqcg4.txt
    [2009-06-17 16:24:06 | 000,000,053 | ---- | M] () -- C:\MorXr.txt
    [2009-06-18 11:04:16 | 000,000,052 | ---- | M] () -- C:\MOVjd6Oi.txt
    [2009-06-17 17:05:08 | 000,000,048 | ---- | M] () -- C:\MpgEtKgD.txt
    [2009-06-22 15:44:05 | 000,000,053 | ---- | M] () -- C:\MQqKQv1d.txt
    [2009-05-08 20:00:07 | 000,000,050 | ---- | M] () -- C:\mQTjlYo.txt
    [2004-08-11 19:15:00 | 000,000,000 | -H-- | M] () -- C:\MSDOS.SYS
    [2009-05-12 01:45:19 | 000,000,052 | ---- | M] () -- C:\mtN82Yd.txt
    [2009-06-26 16:27:05 | 000,000,050 | ---- | M] () -- C:\MtrF.txt
    [2009-06-17 13:02:06 | 000,000,049 | ---- | M] () -- C:\mtWKK.txt
    [2009-06-22 13:05:08 | 000,000,051 | ---- | M] () -- C:\mVgRjC.txt
    [2009-06-26 14:29:07 | 000,000,053 | ---- | M] () -- C:\mVUb4.txt
    [2009-06-18 14:18:09 | 000,000,050 | ---- | M] () -- C:\mWfxp9al.txt
    [2009-05-22 02:28:13 | 000,000,052 | ---- | M] () -- C:\MYfkyL.txt
    [2009-06-17 11:55:06 | 000,000,051 | ---- | M] () -- C:\myly.txt
    [2009-05-27 16:09:07 | 000,000,051 | ---- | M] () -- C:\MyMeaY3.txt
    [2009-06-11 11:25:07 | 000,000,050 | ---- | M] () -- C:\MZ3lkaIa.txt
    [2009-06-17 15:06:07 | 000,000,053 | ---- | M] () -- C:\N3zD.txt
    [2009-05-12 13:45:21 | 000,000,052 | ---- | M] () -- C:\n6aT21o.txt
    [2009-05-08 20:45:06 | 000,000,053 | ---- | M] () -- C:\n8dW.txt
    [2009-05-11 17:15:12 | 000,000,051 | ---- | M] () -- C:\NcFPlzA.txt
    [2009-06-26 16:01:05 | 000,000,050 | ---- | M] () -- C:\NEbKyk.txt
    [2009-06-11 10:18:08 | 000,000,051 | ---- | M] () -- C:\NF2KV8aP.txt
    [2009-06-08 17:19:05 | 000,000,049 | ---- | M] () -- C:\NgSq.txt
    [2009-04-23 13:30:15 | 000,000,050 | ---- | M] () -- C:\NgYp.txt
    [2009-06-22 16:19:06 | 000,000,052 | ---- | M] () -- C:\NIb.txt
    [2009-06-18 12:32:07 | 000,000,053 | ---- | M] () -- C:\nJKW.txt
    [2009-06-17 10:05:05 | 000,000,049 | ---- | M] () -- C:\Nkkf.txt
    [2009-05-21 20:06:06 | 000,000,050 | ---- | M] () -- C:\nLKE3M.txt
    [2009-05-18 15:50:10 | 000,000,048 | ---- | M] () -- C:\nMwl.txt
    [2009-05-21 21:37:06 | 000,000,049 | ---- | M] () -- C:\NMYl.txt
    [2009-06-17 19:37:06 | 000,000,051 | ---- | M] () -- C:\npPpg.txt
    [2009-06-18 12:37:08 | 000,000,049 | ---- | M] () -- C:\NPUKpW.txt
    [2004-08-04 07:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
    [2004-08-04 07:00:00 | 000,250,032 | RHS- | M] () -- C:\ntldr
    [2009-05-18 13:23:07 | 000,000,050 | ---- | M] () -- C:\Nvr0.txt
    [2009-06-09 11:05:13 | 000,000,053 | ---- | M] () -- C:\nwHdz7NX.txt
    [2009-06-27 11:07:09 | 000,000,048 | ---- | M] () -- C:\NWopq9.txt
    [2009-05-04 14:45:02 | 000,000,052 | ---- | M] () -- C:\nwyc38U.txt
    [2009-05-22 15:20:04 | 000,000,051 | ---- | M] () -- C:\nx51.txt
    [2009-04-24 12:00:02 | 000,000,052 | ---- | M] () -- C:\nxRUBQl.txt
    [2009-05-07 19:15:05 | 000,000,051 | ---- | M] () -- C:\NY3.txt
    [2009-04-28 10:45:06 | 000,000,052 | ---- | M] () -- C:\NYkKV2.txt
    [2009-05-21 20:54:10 | 000,000,052 | ---- | M] () -- C:\nz5N0q.txt
    [2009-06-18 15:59:07 | 000,000,049 | ---- | M] () -- C:\NzYk3W0F.txt
    [2009-06-17 15:59:10 | 000,000,051 | ---- | M] () -- C:\o2M6oD9.txt
    [2009-05-21 19:22:06 | 000,000,048 | ---- | M] () -- C:\o55mZ.txt
    [2009-05-22 02:43:10 | 000,000,053 | ---- | M] () -- C:\O90.txt
    [2009-05-12 14:15:16 | 000,000,050 | ---- | M] () -- C:\o95UF.txt
    [2009-05-21 18:09:09 | 000,000,053 | ---- | M] () -- C:\Oa965.txt
    [2009-05-11 20:15:13 | 000,000,052 | ---- | M] () -- C:\OanSW.txt
    [2009-05-22 02:01:06 | 000,000,051 | ---- | M] () -- C:\oC2h6Q.txt
    [2009-05-11 20:00:13 | 000,000,052 | ---- | M] () -- C:\ODJjK.txt
    [2009-04-23 14:00:05 | 000,000,050 | ---- | M] () -- C:\oDQ4hY.txt
    [2009-06-26 15:02:06 | 000,000,052 | ---- | M] () -- C:\odSbeKM.txt
    [2009-06-22 15:47:09 | 000,000,051 | ---- | M] () -- C:\oe4.txt
    [2009-06-17 20:39:06 | 000,000,049 | ---- | M] () -- C:\oH64Y.txt
    [2009-05-08 18:45:05 | 000,000,053 | ---- | M] () -- C:\ohHhcKM.txt
    [2009-05-04 15:00:03 | 000,000,050 | ---- | M] () -- C:\OkWYjnD.txt
    [2009-06-08 18:02:06 | 000,000,051 | ---- | M] () -- C:\OoxE.txt
    [2009-05-21 22:27:11 | 000,000,053 | ---- | M] () -- C:\opuAoO.txt
    [2009-05-22 08:22:06 | 000,000,051 | ---- | M] () -- C:\OPz11t.txt
    [2009-05-08 06:15:09 | 000,000,049 | ---- | M] () -- C:\oSgJaeoG.txt
    [2009-06-19 11:05:07 | 000,000,053 | ---- | M] () -- C:\OSpC.txt
    [2009-05-01 14:15:02 | 000,000,049 | ---- | M] () -- C:\oua.txt
    [2009-05-21 17:07:09 | 000,000,049 | ---- | M] () -- C:\oWe.txt
    [2009-04-22 15:15:16 | 000,000,052 | ---- | M] () -- C:\OwgzWgMV.txt
    [2009-04-23 14:00:04 | 000,000,050 | ---- | M] () -- C:\owND.txt
    [2009-05-12 14:00:19 | 000,000,050 | ---- | M] () -- C:\OXQSR.txt
    [2009-04-24 12:15:02 | 000,000,050 | ---- | M] () -- C:\OYyDBNt.txt
    [2009-05-12 10:30:09 | 000,000,052 | ---- | M] () -- C:\OZYhA.txt
    [2009-05-08 09:15:09 | 000,000,052 | ---- | M] () -- C:\p1iJ.txt
    [2009-05-08 01:30:06 | 000,000,048 | ---- | M] () -- C:\P2V1hqoi.txt
    [2009-05-22 15:39:06 | 000,000,049 | ---- | M] () -- C:\p3KShg.txt
    [2009-06-09 10:19:24 | 000,000,053 | ---- | M] () -- C:\p4m.txt
    [2009-05-12 14:45:12 | 000,000,048 | ---- | M] () -- C:\p5ExeW.txt
    [2009-06-16 14:51:03 | 000,000,048 | ---- | M] () -- C:\P7pBB2B.txt
    [2010-07-01 16:47:32 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
    [2009-05-08 06:45:07 | 000,000,053 | ---- | M] () -- C:\paT6yl.txt
    [2009-05-27 17:06:10 | 000,000,049 | ---- | M] () -- C:\pBKxKyT.txt
    [2009-06-18 16:39:06 | 000,000,048 | ---- | M] () -- C:\pc8A.txt
    [2009-06-22 16:02:06 | 000,000,053 | ---- | M] () -- C:\PDVhd.txt
    [2009-05-22 15:58:06 | 000,000,050 | ---- | M] () -- C:\pEv.txt
    [2009-06-26 17:00:06 | 000,000,053 | ---- | M] () -- C:\pfCJJaS.txt
    [2009-06-22 17:01:06 | 000,000,053 | ---- | M] () -- C:\PfDdJSiK.txt
    [2009-05-11 21:30:16 | 000,000,052 | ---- | M] () -- C:\PG5itpm.txt
    [2009-05-18 13:07:14 | 000,000,052 | ---- | M] () -- C:\PJwnnRm.txt
    [2009-04-23 15:30:04 | 000,000,051 | ---- | M] () -- C:\PJyk.txt
    [2009-04-23 13:30:19 | 000,000,048 | ---- | M] () -- C:\pKV5mOIS.txt
    [2007-03-14 16:10:08 | 000,065,894 | ---- | M] () -- C:\playground.log
    [2009-05-27 13:08:42 | 000,000,052 | ---- | M] () -- C:\PmQmotm.txt
    [2009-04-22 16:30:04 | 000,000,053 | ---- | M] () -- C:\PooW.txt
    [2009-05-08 19:00:06 | 000,000,051 | ---- | M] () -- C:\pOozV.txt
    [2006-11-27 11:46:50 | 000,001,089 | ---- | M] () -- C:\PortfolioCenter Relationship Manager.LNK
     
  7. 2010/07/02
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    ========== Files Created - No Company Name ==========

    [2010-07-01 16:12:38 | 000,001,304 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\godkensells.ord
    [2010-07-01 12:19:24 | 000,004,981 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\TDA 3rdQ2010 fees.mgt
    [2010-07-01 11:59:58 | 000,000,578 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partII.MFA
    [2010-07-01 11:48:16 | 000,000,838 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partI.MFA
    [2010-07-01 10:41:24 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
    [2010-07-01 10:41:24 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
    [2010-07-01 10:41:24 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
    [2010-07-01 10:41:24 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
    [2010-07-01 10:41:24 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
    [2010-07-01 10:29:21 | 000,294,400 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\exeHelper.com
    [2010-07-01 10:28:01 | 000,363,520 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\rkill.exe
    [2010-06-30 15:15:13 | 2145,546,240 | -HS- | C] () -- C:\hiberfil.sys
    [2010-06-30 12:59:02 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$. Taylor.docx
    [2010-06-30 11:42:35 | 000,010,302 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\Mr. Taylor.docx
    [2010-06-30 11:08:06 | 000,293,376 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dm6vzk6m.exe
    [2010-06-29 13:17:05 | 000,525,824 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dds(2).scr
    [2010-06-29 13:14:23 | 000,525,824 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dds.scr
    [2010-06-23 11:15:13 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$ry Garner's Possibilities 2010.docx
    [2010-05-17 11:41:58 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$delity to TDA.docx
    [2010-04-16 13:29:26 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
    [2010-04-16 13:29:26 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
    [2010-01-20 18:36:30 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
    [2010-01-20 18:36:30 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll
    [2010-01-20 18:36:30 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
    [2010-01-20 18:36:30 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll
    [2009-11-05 13:04:51 | 000,691,592 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.DLL
    [2009-09-25 17:43:13 | 000,019,469 | ---- | C] () -- C:\WINDOWS\System32\aveda.dll
    [2009-09-25 17:43:13 | 000,013,702 | ---- | C] () -- C:\WINDOWS\ehubanowo.sys
    [2009-04-13 17:28:30 | 000,000,134 | ---- | C] () -- C:\WINDOWS\rootkitno.ini
    [2008-11-21 09:21:16 | 000,032,256 | ---- | C] () -- C:\WINDOWS\System32\_regtlb.dll
    [2007-09-25 12:29:25 | 000,000,064 | ---- | C] () -- C:\WINDOWS\Crypkey.ini
    [2007-09-25 12:29:18 | 000,018,432 | ---- | C] () -- C:\WINDOWS\Setup_ck.dll
    [2007-09-25 12:29:18 | 000,016,896 | ---- | C] () -- C:\WINDOWS\System32\Ckldrv.sys
    [2006-12-29 12:30:26 | 000,002,154 | ---- | C] () -- C:\WINDOWS\System32\tmmute.ini
    [2006-12-15 11:05:40 | 000,000,030 | ---- | C] () -- C:\WINDOWS\xoloxexe.INI
    [2006-10-12 18:18:56 | 000,462,848 | ---- | C] () -- C:\WINDOWS\System32\ractrlkeyhook.dll
    [2006-10-11 09:55:04 | 000,000,033 | ---- | C] () -- C:\WINDOWS\schwabcd.ini
    [2006-07-27 13:28:42 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
    [2006-07-11 18:33:49 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\DivXWMPExtType.dll
    [2006-04-30 00:34:04 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\WbxRMenu.dll
    [2006-04-17 14:07:45 | 000,003,350 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
    [2006-04-13 23:18:24 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\atonres.dll
    [2006-04-13 23:18:24 | 000,131,072 | ---- | C] () -- C:\WINDOWS\System32\WbxMSAI.dll
    [2006-04-13 23:18:24 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\atonecli.dll
    [2006-04-11 11:03:49 | 000,000,028 | ---- | C] () -- C:\WINDOWS\atid.ini
    [2006-04-11 09:55:58 | 000,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
    [2006-03-31 14:24:58 | 000,000,550 | ---- | C] () -- C:\WINDOWS\ODBC.INI
    [2006-03-07 09:18:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
    [2006-03-07 09:14:39 | 000,000,126 | ---- | C] () -- C:\WINDOWS\wininit.ini
    [2006-03-07 09:11:00 | 000,712,704 | ---- | C] () -- C:\WINDOWS\System32\DellSystemRestore.dll
    [2006-03-07 08:44:46 | 000,000,393 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
    [2005-11-10 10:56:34 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
    [2004-08-11 19:24:19 | 000,000,791 | ---- | C] () -- C:\WINDOWS\orun32.ini
    [2004-08-11 19:11:31 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
    [2004-08-11 19:00:30 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys

    ========== LOP Check ==========

    [2006-09-18 11:50:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Centric Services
    [2009-12-07 17:24:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
    [2009-10-01 13:35:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FunGames
    [2007-09-11 13:48:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Grisoft
    [2009-02-03 14:23:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iWin Games
    [2008-11-28 12:27:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LogMeIn
    [2006-10-09 16:28:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Money Tree Software
    [2008-01-16 17:10:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MumboJumbo
    [2007-03-14 15:34:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayFirst
    [2006-09-13 14:18:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayTime
    [2006-12-15 13:54:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap
    [2009-06-08 15:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Schwab Performance Technologies
    [2010-01-20 18:36:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Simply Super Software
    [2007-03-14 15:12:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SonyPicturesGames
    [2010-07-01 16:27:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
    [2008-07-22 14:04:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\UTour Golf
    [2007-03-12 22:01:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
    [2010-03-26 14:38:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WildTangent
    [2009-04-22 17:48:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
    [2008-12-01 16:18:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8737778F-82C6-4680-A660-E8B2B8C8C22B}
    [2008-12-01 16:18:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{B0AFCE64-DF3F-4824-8985-B21DB0EEE07B}
    [2008-12-01 16:19:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{D9AA4D17-9292-410D-9AA5-84526D062900}
    [2008-12-01 16:16:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{FBB5C4A9-4848-46A0-8863-C359F08D7728}
    [2006-04-11 11:05:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\acccore
    [2006-11-01 09:49:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\AIM
    [2006-11-01 09:49:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\AIMPro
    [2007-06-22 11:26:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\BitTorrent
    [2007-04-10 13:06:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\FrostWire
    [2006-04-11 11:30:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Gracebyte Software
    [2007-01-30 12:24:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Leadertech
    [2007-03-08 17:54:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\LinkedIn
    [2007-09-24 16:00:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\MegauploadToolbar
    [2006-10-13 11:44:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Money Tree Software
    [2007-03-14 15:34:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\PlayFirst
    [2009-01-23 18:18:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\PowerChallenge
    [2007-11-16 13:47:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\RSSRadio
    [2007-11-16 13:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\RSSRadio.local
    [2009-11-04 15:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Serif
    [2008-01-18 14:37:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Sigaba
    [2009-01-21 16:56:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Simply Super Software
    [2008-05-08 14:39:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\SmartDraw
    [2008-12-01 16:20:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Stamps.com Internet Postage
    [2007-03-02 15:13:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\System Restore
    [2007-06-28 14:37:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\uTorrent
    [2007-03-12 14:39:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Viewpoint
    [2010-06-30 17:49:41 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

    ========== Purity Check ==========



    ========== Custom Scans ==========


    < %SYSTEMDRIVE%\*.* >
    [2006-11-03 13:35:37 | 000,001,024 | ---- | M] () -- C:\.rnd
    [2009-04-23 10:45:02 | 000,000,049 | ---- | M] () -- C:\a0LpMh.txt
    [2009-05-12 12:45:20 | 000,000,050 | ---- | M] () -- C:\a0mB.txt
    [2009-05-21 22:06:06 | 000,000,050 | ---- | M] () -- C:\a0RX.txt
    [2009-05-07 16:45:05 | 000,000,050 | ---- | M] () -- C:\a5Oa7.txt
    [2009-05-18 16:04:07 | 000,000,051 | ---- | M] () -- C:\a5Uu.txt
    [2009-05-08 07:15:10 | 000,000,051 | ---- | M] () -- C:\A5Uz.txt
    [2009-06-18 19:39:07 | 000,000,053 | ---- | M] () -- C:\A6k.txt
    [2009-05-12 13:45:19 | 000,000,051 | ---- | M] () -- C:\aaj9eb.txt
    [2010-07-01 16:47:32 | 000,008,211 | ---- | M] () -- C:\aaw7boot.log
    [2009-05-04 12:45:03 | 000,000,053 | ---- | M] () -- C:\aBysYs.txt
    [2009-06-18 19:07:07 | 000,000,048 | ---- | M] () -- C:\aCTvZg.txt
    [2009-06-22 15:17:06 | 000,000,051 | ---- | M] () -- C:\Acw.txt
    [2009-06-09 11:48:06 | 000,000,048 | ---- | M] () -- C:\aeG.txt
    [2009-05-12 01:15:20 | 000,000,048 | ---- | M] () -- C:\aGA.txt
    [2009-06-26 15:34:08 | 000,000,049 | ---- | M] () -- C:\AHMK.txt
    [2009-05-01 20:00:08 | 000,000,050 | ---- | M] () -- C:\Ahvag.txt
    [2009-05-08 11:00:07 | 000,000,049 | ---- | M] () -- C:\AiFqE.txt
    [2009-05-22 07:23:07 | 000,000,050 | ---- | M] () -- C:\AIG1KRM.txt
    [2009-04-22 17:30:04 | 000,000,048 | ---- | M] () -- C:\Aip.txt
    [2009-05-22 01:42:29 | 000,000,052 | ---- | M] () -- C:\AISkCzV.txt
    [2009-07-07 11:55:13 | 000,000,050 | ---- | M] () -- C:\AJYa.txt
    [2009-05-08 14:00:11 | 000,000,050 | ---- | M] () -- C:\aMb.txt
    [2009-05-12 13:15:21 | 000,000,048 | ---- | M] () -- C:\aNfvqCts.txt
    [2009-05-04 13:30:02 | 000,000,050 | ---- | M] () -- C:\aNLNogy7.txt
    [2009-06-11 10:36:06 | 000,000,050 | ---- | M] () -- C:\aPkW.txt
    [2009-05-22 08:57:09 | 000,000,051 | ---- | M] () -- C:\aqUi0c.txt
    [2009-05-21 17:23:07 | 000,000,048 | ---- | M] () -- C:\aQWw5.txt
    [2006-11-13 12:55:17 | 000,000,584 | ---- | M] () -- C:\AribaGLBletterhead.LNK
    [2009-05-12 12:45:20 | 000,000,050 | ---- | M] () -- C:\asbIYvx.txt
    [2009-05-18 13:04:13 | 000,000,051 | ---- | M] () -- C:\atGY1O7.txt
    [2009-06-26 16:54:06 | 000,000,051 | ---- | M] () -- C:\AVU.txt
    [2009-05-18 15:00:06 | 000,000,048 | ---- | M] () -- C:\AWAzUEo.txt
    [2009-04-23 15:15:24 | 000,000,053 | ---- | M] () -- C:\AXe5870E.txt
    [2009-05-21 18:41:06 | 000,000,051 | ---- | M] () -- C:\AzU.txt
    [2009-05-08 21:00:06 | 000,000,050 | ---- | M] () -- C:\b1FMO0.txt
    [2009-05-21 17:30:06 | 000,000,051 | ---- | M] () -- C:\B1v.txt
    [2009-06-26 12:01:06 | 000,000,052 | ---- | M] () -- C:\b4W1y2.txt
    [2009-06-22 15:15:08 | 000,000,052 | ---- | M] () -- C:\B8PYqtfO.txt
    [2009-05-01 15:00:02 | 000,000,052 | ---- | M] () -- C:\bAR7d.txt
    [2009-05-22 07:08:12 | 000,000,049 | ---- | M] () -- C:\bAv.txt
    [2009-04-24 12:45:03 | 000,000,052 | ---- | M] () -- C:\bbhJEySo.txt
    [2009-05-21 17:57:09 | 000,000,052 | ---- | M] () -- C:\BCg.txt
    [2009-06-22 18:24:08 | 000,000,048 | ---- | M] () -- C:\Bda.txt
    [2009-06-09 12:35:08 | 000,000,048 | ---- | M] () -- C:\Bdb.txt
    [2009-05-27 15:00:09 | 000,000,050 | ---- | M] () -- C:\bg5kd.txt
    [2009-06-18 20:00:06 | 000,000,049 | ---- | M] () -- C:\Bgks.txt
    [2009-05-01 11:45:02 | 000,000,052 | ---- | M] () -- C:\bgR.txt
    [2009-05-08 04:00:11 | 000,000,050 | ---- | M] () -- C:\bGx.txt
    [2009-05-08 16:00:06 | 000,000,048 | ---- | M] () -- C:\BH3x.txt
    [2009-05-01 14:45:02 | 000,000,053 | ---- | M] () -- C:\Bi5.txt
    [2009-05-21 16:01:05 | 000,000,053 | ---- | M] () -- C:\bKKgsf.txt
    [2009-05-22 00:32:16 | 000,000,048 | ---- | M] () -- C:\BKxCL.txt
    [2006-03-31 13:54:51 | 000,000,211 | ---- | M] () -- C:\Boot.bak
    [2009-01-22 14:30:36 | 000,000,281 | RHS- | M] () -- C:\boot.ini
    [2009-06-18 17:20:07 | 000,000,052 | ---- | M] () -- C:\bqlOdI7.txt
    [2009-05-22 17:05:06 | 000,000,052 | ---- | M] () -- C:\bqt5cqJI.txt
    [2009-06-17 20:29:09 | 000,000,048 | ---- | M] () -- C:\BRCtKy.txt
    [2009-05-27 13:44:06 | 000,000,053 | ---- | M] () -- C:\Brh0.txt
    [2009-04-24 18:00:04 | 000,000,052 | ---- | M] () -- C:\btzneidJ.txt
    [2009-05-08 20:15:06 | 000,000,052 | ---- | M] () -- C:\bvbQCfR.txt
    [2009-06-18 18:01:07 | 000,000,052 | ---- | M] () -- C:\bVuQ6.txt
    [2009-05-31 20:04:06 | 000,000,053 | ---- | M] () -- C:\bWEEdX2.txt
    [2009-06-09 12:30:10 | 000,000,048 | ---- | M] () -- C:\BxBGEeX.txt
    [2009-06-18 12:59:12 | 000,000,049 | ---- | M] () -- C:\BxDMO4B.txt
    [2009-05-22 02:26:56 | 000,000,052 | ---- | M] () -- C:\BxEaxsB5.txt
    [2009-04-22 17:15:05 | 000,000,052 | ---- | M] () -- C:\bxOCCHrM.txt
    [2009-05-08 13:15:08 | 000,000,049 | ---- | M] () -- C:\bzG.txt
    [2009-05-22 17:04:06 | 000,000,048 | ---- | M] () -- C:\BzZ3.txt
    [2009-06-17 19:55:06 | 000,000,052 | ---- | M] () -- C:\C153.txt
    [2009-06-18 11:05:17 | 000,000,053 | ---- | M] () -- C:\c5W1w0r.txt
    [2009-06-22 18:59:06 | 000,000,049 | ---- | M] () -- C:\c7gtx.txt
    [2009-05-18 16:47:07 | 000,000,050 | ---- | M] () -- C:\C7w.txt
    [2009-06-18 16:25:07 | 000,000,049 | ---- | M] () -- C:\ca1.txt
    [2009-05-08 07:45:10 | 000,000,052 | ---- | M] () -- C:\caC.txt
    [2009-06-19 12:08:10 | 000,000,048 | ---- | M] () -- C:\cAUOSrc.txt
    [2009-04-22 15:30:16 | 000,000,050 | ---- | M] () -- C:\cbi3p.txt
    [2009-04-22 16:00:21 | 000,000,051 | ---- | M] () -- C:\cCn.txt
    [2009-06-17 11:56:09 | 000,000,051 | ---- | M] () -- C:\CD26.txt
    [2009-05-12 16:00:17 | 000,000,052 | ---- | M] () -- C:\Ce8hoG5y.txt
    [2009-06-18 15:19:15 | 000,000,051 | ---- | M] () -- C:\cFBcv.txt
    [2009-05-07 19:30:03 | 000,000,050 | ---- | M] () -- C:\CgCSMcb.txt
    [2009-06-18 17:04:06 | 000,000,052 | ---- | M] () -- C:\CMk3z.txt
    [2004-08-04 00:00:00 | 000,260,272 | ---- | M] () -- C:\cmldr
    [2009-06-17 19:05:06 | 000,000,049 | ---- | M] () -- C:\cN8ufx.txt
    [2009-05-08 06:00:07 | 000,000,053 | ---- | M] () -- C:\cNqAJ2x.txt
    [2009-06-22 16:35:06 | 000,000,051 | ---- | M] () -- C:\cocqGE.txt
    [2004-08-11 19:15:00 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
    [2008-11-18 18:58:15 | 000,210,508 | ---- | M] () -- C:\coreuninstall.log
    [2009-05-08 12:00:09 | 000,000,050 | ---- | M] () -- C:\cQr.txt
    [2009-05-08 11:31:10 | 000,000,052 | ---- | M] () -- C:\Cr351AzS.txt
    [2009-06-22 18:51:06 | 000,000,048 | ---- | M] () -- C:\CvG96f1.txt
    [2009-05-27 13:50:06 | 000,000,053 | ---- | M] () -- C:\CWY.txt
    [2009-05-11 18:45:09 | 000,000,049 | ---- | M] () -- C:\CX6UNlfS.txt
    [2009-05-18 12:57:10 | 000,000,049 | ---- | M] () -- C:\cxb6.txt
    [2009-05-08 17:30:05 | 000,000,051 | ---- | M] () -- C:\CXs.txt
    [2009-05-12 02:45:22 | 000,000,053 | ---- | M] () -- C:\CYl.txt
    [2009-05-22 05:34:13 | 000,000,053 | ---- | M] () -- C:\Cz1k.txt
    [2009-05-12 11:00:06 | 000,000,053 | ---- | M] () -- C:\D0TQIY.txt
    [2009-06-18 11:33:06 | 000,000,049 | ---- | M] () -- C:\d2w.txt
    [2009-06-09 12:01:10 | 000,000,049 | ---- | M] () -- C:\D39.txt
    [2009-06-18 14:55:05 | 000,000,048 | ---- | M] () -- C:\d5RJk.txt
    [2009-05-07 18:00:03 | 000,000,051 | ---- | M] () -- C:\D6MM24.txt
    [2009-05-08 08:15:14 | 000,000,049 | ---- | M] () -- C:\D8HZsrQ1.txt
    [2009-06-18 15:54:06 | 000,000,048 | ---- | M] () -- C:\dBbDbg.txt
    [2009-04-24 17:15:04 | 000,000,053 | ---- | M] () -- C:\DBhYAdKy.txt
    [2009-06-22 16:47:06 | 000,000,051 | ---- | M] () -- C:\dCaXKH.txt
    [2009-05-21 15:58:06 | 000,000,051 | ---- | M] () -- C:\DcdmSq.txt
    [2009-04-23 10:45:06 | 000,000,053 | ---- | M] () -- C:\ddKRVg.txt
    [2009-05-27 15:15:10 | 000,000,051 | ---- | M] () -- C:\ddykzQ4.txt
    [2006-03-07 08:50:18 | 000,006,370 | RH-- | M] () -- C:\dell.sdr
    [2009-05-22 16:27:05 | 000,000,053 | ---- | M] () -- C:\dELPpWl.txt
    [2009-05-21 20:47:06 | 000,000,050 | ---- | M] () -- C:\dgH.txt
    [2009-06-22 19:40:07 | 000,000,051 | ---- | M] () -- C:\dGmY9sB.txt
    [2009-06-22 13:15:04 | 000,000,053 | ---- | M] () -- C:\dHbRTa.txt
    [2009-05-21 19:34:07 | 000,000,051 | ---- | M] () -- C:\dIdiRCd.txt
    [2009-04-28 11:00:04 | 000,000,052 | ---- | M] () -- C:\dIpM.txt
    [2009-06-17 11:51:07 | 000,000,051 | ---- | M] () -- C:\dJK.txt
    [2009-05-01 16:00:02 | 000,000,052 | ---- | M] () -- C:\dkewJjO.txt
    [2009-05-14 15:51:04 | 000,000,052 | ---- | M] () -- C:\Dkj4.txt
    [2009-05-18 13:21:10 | 000,000,048 | ---- | M] () -- C:\DlPO.txt
    [2009-06-18 11:42:08 | 000,000,053 | ---- | M] () -- C:\dMF1bHuV.txt
    [2009-06-29 12:05:08 | 000,000,051 | ---- | M] () -- C:\Dnsp.txt
    [2009-04-23 14:15:04 | 000,000,048 | ---- | M] () -- C:\Dnx5Tn.txt
    [2009-06-11 10:30:10 | 000,000,051 | ---- | M] () -- C:\dO2S.txt
    [2009-06-17 18:44:06 | 000,000,052 | ---- | M] () -- C:\dO3GqGK.txt
    [2009-05-11 15:45:09 | 000,000,052 | ---- | M] () -- C:\DoddJUb.txt
    [2009-05-12 03:00:25 | 000,000,052 | ---- | M] () -- C:\dokI8GQ.txt
    [2009-06-22 19:32:06 | 000,000,053 | ---- | M] () -- C:\dPRGu.txt
    [2009-05-28 11:03:10 | 000,000,052 | ---- | M] () -- C:\dPv.txt
    [2009-05-08 13:30:11 | 000,000,048 | ---- | M] () -- C:\Dq3.txt
    [2009-06-17 14:08:05 | 000,000,049 | ---- | M] () -- C:\DqRd.txt
    [2009-06-16 17:20:04 | 000,000,050 | ---- | M] () -- C:\DR2OyP.txt
    [2009-05-08 15:30:06 | 000,000,053 | ---- | M] () -- C:\DSWVS.txt
    [2009-05-01 17:15:02 | 000,000,048 | ---- | M] () -- C:\DvGl.txt
    [2009-05-08 05:30:11 | 000,000,053 | ---- | M] () -- C:\dWa6b.txt
    [2009-04-22 14:15:35 | 000,000,048 | ---- | M] () -- C:\dww.txt
    [2009-06-26 12:07:07 | 000,000,051 | ---- | M] () -- C:\E0VR.txt
    [2009-05-18 16:58:06 | 000,000,048 | ---- | M] () -- C:\e5Ok.txt
    [2009-05-27 14:22:06 | 000,000,048 | ---- | M] () -- C:\E62FF5.txt
    [2009-05-01 12:00:02 | 000,000,048 | ---- | M] () -- C:\e6uWFeM.txt
    [2009-05-22 07:41:06 | 000,000,051 | ---- | M] () -- C:\ebqd2gg.txt
    [2009-05-01 11:30:06 | 000,000,052 | ---- | M] () -- C:\ebT.txt
    [2009-06-19 12:41:07 | 000,000,051 | ---- | M] () -- C:\EDGjl.txt
    [2009-05-11 23:00:18 | 000,000,050 | ---- | M] () -- C:\EDiD.txt
    [2009-04-24 12:30:02 | 000,000,049 | ---- | M] () -- C:\eHWET3dR.txt
    [2009-04-28 10:45:09 | 000,000,052 | ---- | M] () -- C:\eIgG2f.txt
    [2009-06-18 13:38:10 | 000,000,050 | ---- | M] () -- C:\EjR8G.txt
    [2009-06-19 12:29:07 | 000,000,051 | ---- | M] () -- C:\EmvL57.txt
    [2009-05-11 21:45:17 | 000,000,049 | ---- | M] () -- C:\eMYdeARJ.txt
    [2009-06-17 14:29:06 | 000,000,049 | ---- | M] () -- C:\enuc.txt
    [2009-05-15 17:37:04 | 000,000,051 | ---- | M] () -- C:\EoCjcK.txt
    [2009-05-27 17:24:09 | 000,000,050 | ---- | M] () -- C:\eP9CBu6.txt
    [2009-04-24 17:30:04 | 000,000,051 | ---- | M] () -- C:\epRCf.txt
    [2009-05-21 16:25:06 | 000,000,049 | ---- | M] () -- C:\erHvGNNP.txt
    [2009-05-01 17:45:03 | 000,000,049 | ---- | M] () -- C:\eRwdIP.txt
    [2009-06-22 18:42:06 | 000,000,053 | ---- | M] () -- C:\EThA.txt
    [2009-05-27 13:47:07 | 000,000,052 | ---- | M] () -- C:\EVc.txt
    [2009-05-08 05:15:08 | 000,000,050 | ---- | M] () -- C:\EvHVD1.txt
    [2009-05-11 16:00:10 | 000,000,051 | ---- | M] () -- C:\EvTBNb.txt
    [2009-05-22 15:57:05 | 000,000,053 | ---- | M] () -- C:\eXKd.txt
    [2009-05-27 15:05:10 | 000,000,048 | ---- | M] () -- C:\ez8s2m.txt
    [2009-05-21 23:30:10 | 000,000,052 | ---- | M] () -- C:\f0F9j.txt
    [2009-05-12 13:00:22 | 000,000,051 | ---- | M] () -- C:\f1UPJA.txt
    [2009-05-22 00:22:12 | 000,000,051 | ---- | M] () -- C:\f27beHR.txt
    [2009-05-08 14:30:09 | 000,000,048 | ---- | M] () -- C:\f3h3qjxc.txt
    [2009-06-09 10:39:09 | 000,000,048 | ---- | M] () -- C:\f4xYXq.txt
    [2009-05-21 16:38:06 | 000,000,049 | ---- | M] () -- C:\F6ajG.txt
    [2009-05-12 13:30:17 | 000,000,052 | ---- | M] () -- C:\F6KwZZ.txt
    [2009-05-11 23:45:15 | 000,000,051 | ---- | M] () -- C:\F7x37.txt
    [2009-05-27 17:30:07 | 000,000,050 | ---- | M] () -- C:\fBiIo.txt
    [2009-05-18 14:44:07 | 000,000,052 | ---- | M] () -- C:\fc5Zs.txt
    [2009-04-22 13:45:05 | 000,000,048 | ---- | M] () -- C:\FcivR.txt
    [2009-06-08 16:42:04 | 000,000,053 | ---- | M] () -- C:\fEG3a8.txt
    [2009-05-18 16:31:06 | 000,000,049 | ---- | M] () -- C:\FF9J.txt
    [2009-05-11 20:30:12 | 000,000,052 | ---- | M] () -- C:\ffO4.txt
    [2009-05-08 18:15:06 | 000,000,049 | ---- | M] () -- C:\fGEaDj0.txt
    [2009-05-22 01:00:33 | 000,000,048 | ---- | M] () -- C:\FHz.txt
    [2009-05-04 12:30:03 | 000,000,052 | ---- | M] () -- C:\fjMg8Fk.txt
    [2009-05-22 03:58:18 | 000,000,048 | ---- | M] () -- C:\fjqtcDv0.txt
    [2009-05-18 15:25:09 | 000,000,052 | ---- | M] () -- C:\fMAYvJ.txt
    [2009-05-08 04:45:09 | 000,000,051 | ---- | M] () -- C:\FMum.txt
    [2009-04-22 14:30:15 | 000,000,050 | ---- | M] () -- C:\fMW.txt
    [2009-06-17 13:25:06 | 000,000,052 | ---- | M] () -- C:\FnhwPYGU.txt
    [2009-05-27 15:31:06 | 000,000,048 | ---- | M] () -- C:\fNw6M8t.txt
    [2009-06-26 12:16:06 | 000,000,050 | ---- | M] () -- C:\Fo8.txt
    [2009-06-09 10:50:09 | 000,000,052 | ---- | M] () -- C:\FOrAuf.txt
    [2009-05-08 04:30:06 | 000,000,052 | ---- | M] () -- C:\FOuQlM.txt
    [2009-05-21 17:25:09 | 000,000,048 | ---- | M] () -- C:\FQ3.txt
    [2009-05-08 12:45:09 | 000,000,053 | ---- | M] () -- C:\FR6rrIi.txt
    [2009-05-14 17:08:05 | 000,000,053 | ---- | M] () -- C:\Fsi0MNJa.txt
    [2009-05-21 21:19:11 | 000,000,053 | ---- | M] () -- C:\FsQVz.txt
    [2009-06-18 15:41:08 | 000,000,052 | ---- | M] () -- C:\ft10.txt
    [2009-06-17 15:50:07 | 000,000,053 | ---- | M] () -- C:\fu1vpU.txt
    [2009-05-21 19:54:06 | 000,000,050 | ---- | M] () -- C:\fuzZ9F.txt
    [2009-05-11 22:00:16 | 000,000,051 | ---- | M] () -- C:\FWE7.txt
    [2009-06-17 10:59:04 | 000,000,049 | ---- | M] () -- C:\fwlHO.txt
    [2009-05-22 01:56:06 | 000,000,053 | ---- | M] () -- C:\FYJkv.txt
    [2009-05-27 16:26:18 | 000,000,051 | ---- | M] () -- C:\FyP6.txt
    [2009-05-11 15:15:08 | 000,000,052 | ---- | M] () -- C:\FytR3.txt
    [2009-04-23 17:30:04 | 000,000,052 | ---- | M] () -- C:\FYVEfz.txt
    [2009-06-22 16:39:06 | 000,000,050 | ---- | M] () -- C:\fZ1RwhP6.txt
    [2009-05-11 16:30:07 | 000,000,048 | ---- | M] () -- C:\FZg2eNZ.txt
    [2009-05-01 17:00:03 | 000,000,050 | ---- | M] () -- C:\G1OY.txt
    [2009-06-17 17:32:06 | 000,000,050 | ---- | M] () -- C:\g1xXVau.txt
    [2009-06-18 11:26:07 | 000,000,048 | ---- | M] () -- C:\G3f.txt
    [2009-04-23 14:30:04 | 000,000,050 | ---- | M] () -- C:\G624p.txt
    [2009-05-01 13:15:02 | 000,000,051 | ---- | M] () -- C:\g6RxZ.txt
    [2009-05-27 15:56:11 | 000,000,052 | ---- | M] () -- C:\g77e.txt
    [2009-05-11 20:45:13 | 000,000,050 | ---- | M] () -- C:\G81Tu3B.txt
    [2009-05-21 22:18:06 | 000,000,051 | ---- | M] () -- C:\gAtUf.txt
    [2009-05-21 17:09:06 | 000,000,049 | ---- | M] () -- C:\GBx.txt
    [2009-05-08 02:00:06 | 000,000,052 | ---- | M] () -- C:\gClHn.txt
    [2009-06-17 17:59:07 | 000,000,051 | ---- | M] () -- C:\Ggc.txt
    [2009-04-24 16:00:18 | 000,000,053 | ---- | M] () -- C:\GGek.txt
    [2009-05-26 13:51:09 | 000,000,052 | ---- | M] () -- C:\Ghm6.txt
    [2009-05-22 07:55:06 | 000,000,050 | ---- | M] () -- C:\GJ2sCNGj.txt
    [2009-06-19 11:56:09 | 000,000,053 | ---- | M] () -- C:\GjX.txt
    [2009-06-26 12:36:09 | 000,000,050 | ---- | M] () -- C:\GKcD.txt
    [2006-11-13 12:55:17 | 000,000,419 | ---- | M] () -- C:\GLB.LNK
    [2009-05-21 21:41:06 | 000,000,048 | ---- | M] () -- C:\gllt7j.txt
    [2009-06-17 11:47:06 | 000,000,050 | ---- | M] () -- C:\GnmTzir.txt
    [2009-06-22 17:27:12 | 000,000,053 | ---- | M] () -- C:\GOeH.txt
    [2009-06-17 12:44:09 | 000,000,053 | ---- | M] () -- C:\gOkYzagN.txt
    [2009-06-26 15:22:13 | 000,000,049 | ---- | M] () -- C:\GpiY.txt
    [2009-07-07 12:03:05 | 000,000,051 | ---- | M] () -- C:\gqEaDn.txt
    [2009-06-18 12:09:06 | 000,000,053 | ---- | M] () -- C:\gsOMO.txt
    [2009-05-11 17:30:09 | 000,000,051 | ---- | M] () -- C:\gtBnMm.txt
    [2009-05-18 12:38:04 | 000,000,052 | ---- | M] () -- C:\gTwZ.txt
    [2009-04-28 12:15:06 | 000,000,050 | ---- | M] () -- C:\gUEF3Oj.txt
    [2009-05-01 16:15:02 | 000,000,051 | ---- | M] () -- C:\GVjkj4X.txt
    [2009-06-17 15:32:07 | 000,000,050 | ---- | M] () -- C:\GwzjkwJw.txt
    [2009-06-17 12:25:06 | 000,000,053 | ---- | M] () -- C:\H23MnKDR.txt
    [2009-05-27 14:58:06 | 000,000,051 | ---- | M] () -- C:\H61Bk.txt
    [2009-05-26 13:49:09 | 000,000,049 | ---- | M] () -- C:\h83kk.txt
    [2009-04-27 12:00:02 | 000,000,051 | ---- | M] () -- C:\hA5.txt
    [2009-06-17 13:36:09 | 000,000,050 | ---- | M] () -- C:\hbhyxjs.txt
    [2009-06-18 10:37:07 | 000,000,048 | ---- | M] () -- C:\hExuo0qS.txt
    [2009-05-21 20:46:09 | 000,000,053 | ---- | M] () -- C:\Heyvc.txt
    [2009-05-12 11:30:07 | 000,000,051 | ---- | M] () -- C:\HGM.txt
    [2009-06-26 16:03:05 | 000,000,052 | ---- | M] () -- C:\hI29L3.txt
    [2010-07-01 16:47:35 | 2145,546,240 | -HS- | M] () -- C:\hiberfil.sys
    [2009-05-21 16:29:06 | 000,000,052 | ---- | M] () -- C:\hIMeS7ZQ.txt
    [2009-06-17 21:19:07 | 000,000,050 | ---- | M] () -- C:\hiX.txt
    [2009-05-18 15:09:09 | 000,000,049 | ---- | M] () -- C:\HixcfIU.txt
    [2009-06-18 19:08:06 | 000,000,048 | ---- | M] () -- C:\hkJUR.txt
    [2009-05-01 20:15:13 | 000,000,048 | ---- | M] () -- C:\hkxmKTF.txt
    [2009-05-22 07:28:07 | 000,000,052 | ---- | M] () -- C:\hP9Ji.txt
    [2009-05-11 22:15:14 | 000,000,049 | ---- | M] () -- C:\hQ0uzK5.txt
    [2009-05-21 23:05:07 | 000,000,048 | ---- | M] () -- C:\HtBk7c.txt
    [2009-05-08 13:45:10 | 000,000,052 | ---- | M] () -- C:\hu9C.txt
    [2009-05-22 05:58:07 | 000,000,049 | ---- | M] () -- C:\HwHTDsJO.txt
    [2009-04-24 17:45:04 | 000,000,049 | ---- | M] () -- C:\HySc9ih.txt
    [2009-05-08 07:00:10 | 000,000,048 | ---- | M] () -- C:\HZ1q.txt
    [2009-05-08 03:15:20 | 000,000,050 | ---- | M] () -- C:\I01xFOl.txt
    [2009-06-18 19:07:06 | 000,000,048 | ---- | M] () -- C:\i1eW.txt
    [2009-05-07 16:15:06 | 000,000,051 | ---- | M] () -- C:\i2r1.txt
    [2009-05-18 17:08:11 | 000,000,051 | ---- | M] () -- C:\I3wbrk.txt
    [2009-05-27 12:25:09 | 000,000,052 | ---- | M] () -- C:\i5c2wMG.txt
    [2009-05-22 08:27:09 | 000,000,051 | ---- | M] () -- C:\I6jDwoR.txt
    [2009-05-12 10:45:12 | 000,000,052 | ---- | M] () -- C:\I7Z.txt
    [2009-05-01 13:00:02 | 000,000,052 | ---- | M] () -- C:\IBifhB0.txt
    [2009-06-26 17:06:05 | 000,000,051 | ---- | M] () -- C:\ICD.txt
    [2009-06-22 16:04:06 | 000,000,053 | ---- | M] () -- C:\iDiby.txt
    [2009-06-26 16:06:06 | 000,000,049 | ---- | M] () -- C:\idR5Wymo.txt
    [2009-05-11 19:30:08 | 000,000,050 | ---- | M] () -- C:\Idxi.txt
    [2009-05-12 14:00:20 | 000,000,048 | ---- | M] () -- C:\iE6.txt
    [2009-05-12 16:31:41 | 000,000,050 | ---- | M] () -- C:\iEXZrc.txt
    [2009-05-12 10:45:12 | 000,000,051 | ---- | M] () -- C:\IFc.txt
    [2009-05-22 16:02:06 | 000,000,050 | ---- | M] () -- C:\IfOlVxW.txt
    [2009-04-28 11:30:06 | 000,000,049 | ---- | M] () -- C:\IgD9RKs.txt
    [2009-05-15 17:34:04 | 000,000,048 | ---- | M] () -- C:\iGzOQ.txt
    [2009-05-26 13:37:10 | 000,000,053 | ---- | M] () -- C:\ihAMRhW.txt
    [2009-05-27 17:44:08 | 000,000,052 | ---- | M] () -- C:\IHWuupd.txt
    [2009-05-12 00:30:19 | 000,000,052 | ---- | M] () -- C:\IiAtp.txt
    [2009-05-08 21:30:08 | 000,000,053 | ---- | M] () -- C:\iJ4.txt
    [2009-06-08 17:41:07 | 000,000,052 | ---- | M] () -- C:\ijILc.txt
    [2009-04-24 14:15:11 | 000,000,050 | ---- | M] () -- C:\IjWQw.txt
    [2009-04-22 15:45:20 | 000,000,051 | ---- | M] () -- C:\IKueNOZ.txt
    [2009-06-22 17:36:07 | 000,000,051 | ---- | M] () -- C:\ilbw.txt
    [2009-05-12 14:15:16 | 000,000,053 | ---- | M] () -- C:\Im6mzRL.txt
    [2009-05-27 16:42:06 | 000,000,052 | ---- | M] () -- C:\INA.txt
    [2006-04-04 13:32:01 | 000,004,128 | ---- | M] () -- C:\INFCACHE.1
    [2004-08-11 19:15:00 | 000,000,000 | -H-- | M] () -- C:\IO.SYS
    [2009-05-22 06:19:07 | 000,000,052 | ---- | M] () -- C:\iOh8F.txt
    [2009-04-23 13:45:05 | 000,000,049 | ---- | M] () -- C:\Ip9kxH.txt
    [2009-06-17 19:47:06 | 000,000,049 | ---- | M] () -- C:\ipYmfG.txt
    [2009-04-22 17:00:06 | 000,000,051 | ---- | M] () -- C:\IQwY.txt
    [2009-05-07 17:45:03 | 000,000,050 | ---- | M] () -- C:\isOTv.txt
    [2009-05-12 10:30:08 | 000,000,051 | ---- | M] () -- C:\iw4ugm.txt
    [2009-05-01 14:30:02 | 000,000,053 | ---- | M] () -- C:\iwYV.txt
    [2009-06-16 17:05:04 | 000,000,050 | ---- | M] () -- C:\iXn4OIan.txt
    [2009-05-27 16:07:17 | 000,000,049 | ---- | M] () -- C:\IZJApO.txt
    [2009-06-18 11:56:09 | 000,000,053 | ---- | M] () -- C:\iZZImJx.txt
    [2009-05-12 15:15:21 | 000,000,048 | ---- | M] () -- C:\j05AKOy.txt
    [2009-05-14 17:02:03 | 000,000,053 | ---- | M] () -- C:\j1pcs.txt
    [2009-05-04 13:00:02 | 000,000,048 | ---- | M] () -- C:\j3f.txt
    [2009-05-18 13:16:13 | 000,000,050 | ---- | M] () -- C:\j5IqP.txt
    [2009-04-22 16:45:04 | 000,000,049 | ---- | M] () -- C:\j5qRb.txt
    [2009-05-12 02:15:22 | 000,000,048 | ---- | M] () -- C:\J6J.txt
    [2009-05-07 18:45:05 | 000,000,052 | ---- | M] () -- C:\jAPBX0P.txt
    [2009-07-17 14:39:13 | 000,009,368 | ---- | M] () -- C:\JavaRa.log
    [2009-05-27 15:03:06 | 000,000,049 | ---- | M] () -- C:\jaZK3o.txt
    [2009-04-24 11:30:02 | 000,000,053 | ---- | M] () -- C:\jEo.txt
    [2009-06-24 14:18:06 | 000,000,052 | ---- | M] () -- C:\JF4izqk.txt
    [2009-04-22 16:45:13 | 000,099,912 | ---- | M] () -- C:\jGrg.exe
    [2009-06-17 09:39:15 | 000,000,049 | ---- | M] () -- C:\JIfICGaT.txt
    [2009-05-11 17:00:09 | 000,000,049 | ---- | M] () -- C:\jk4bmO.txt
    [2009-05-08 03:45:12 | 000,000,052 | ---- | M] () -- C:\JKgvZU.txt
    [2009-05-14 15:15:04 | 000,000,050 | ---- | M] () -- C:\Jknsfk.txt
    [2009-05-22 06:23:14 | 000,000,052 | ---- | M] () -- C:\JL48JaH.txt
    [2009-05-12 02:00:17 | 000,000,048 | ---- | M] () -- C:\jle.txt
    [2009-05-21 21:44:07 | 000,000,051 | ---- | M] () -- C:\jMdy.txt
    [2009-04-24 11:00:03 | 000,000,053 | ---- | M] () -- C:\Jnk0CuU.txt
    [2009-05-11 15:30:10 | 000,000,051 | ---- | M] () -- C:\JoM9.txt
    [2009-06-26 12:23:09 | 000,000,049 | ---- | M] () -- C:\JouKe.txt
    [2009-05-12 03:15:17 | 000,000,053 | ---- | M] () -- C:\jpqfVSo.txt
    [2009-05-22 07:52:10 | 000,000,050 | ---- | M] () -- C:\JpSWl.txt
    [2009-05-04 14:30:03 | 000,000,052 | ---- | M] () -- C:\jq0HeFB.txt
    [2009-05-21 23:36:12 | 000,000,049 | ---- | M] () -- C:\jQbsrW.txt
    [2009-05-22 05:08:33 | 000,000,053 | ---- | M] () -- C:\JqwLO3Y.txt
    [2009-05-01 18:30:02 | 000,000,050 | ---- | M] () -- C:\jR1j.txt
    [2009-05-28 11:42:08 | 000,000,051 | ---- | M] () -- C:\jrGC.txt
    [2009-05-04 13:45:02 | 000,000,048 | ---- | M] () -- C:\JUl9zli.txt
    [2009-05-04 14:15:05 | 000,000,048 | ---- | M] () -- C:\jwSGTkw.txt
    [2009-05-22 16:35:06 | 000,000,048 | ---- | M] () -- C:\jXD0Q.txt
    [2009-06-17 10:59:08 | 000,000,052 | ---- | M] () -- C:\JYKeu.txt
    [2009-05-21 22:53:06 | 000,000,048 | ---- | M] () -- C:\K4er9.txt
    [2009-04-24 13:00:02 | 000,000,050 | ---- | M] () -- C:\K53u.txt
    [2009-05-08 21:15:06 | 000,000,049 | ---- | M] () -- C:\K75m0.txt
    [2009-04-28 11:15:03 | 000,000,048 | ---- | M] () -- C:\K7Qpc22a.txt
    [2009-05-07 18:15:05 | 000,000,051 | ---- | M] () -- C:\K8l1R.txt
    [2009-05-22 04:19:11 | 000,000,051 | ---- | M] () -- C:\KAs9t.txt
    [2009-05-21 23:48:08 | 000,000,052 | ---- | M] () -- C:\kaw9W9j.txt
    [2009-05-22 04:08:20 | 000,000,053 | ---- | M] () -- C:\KBmc.txt
    [2009-05-01 19:30:05 | 000,000,050 | ---- | M] () -- C:\kbMu6.txt
    [2009-05-21 20:20:06 | 000,000,052 | ---- | M] () -- C:\KBQg.txt
    [2009-05-01 19:15:05 | 000,000,053 | ---- | M] () -- C:\kbV.txt
    [2009-05-08 10:30:13 | 000,000,048 | ---- | M] () -- C:\kccgh.txt
    [2009-06-18 19:28:08 | 000,000,052 | ---- | M] () -- C:\KfjR5D.txt
    [2009-05-08 17:15:07 | 000,000,052 | ---- | M] () -- C:\Kft5CiFF.txt
    [2009-05-01 20:45:17 | 000,000,049 | ---- | M] () -- C:\Kha.txt
    [2009-05-08 13:00:11 | 000,000,053 | ---- | M] () -- C:\kHo.txt
    [2009-04-23 16:15:03 | 000,000,053 | ---- | M] () -- C:\kJ2nZ3t.txt
    [2009-06-18 13:04:07 | 000,000,053 | ---- | M] () -- C:\kJTeqGF.txt
    [2009-05-08 14:45:06 | 000,000,052 | ---- | M] () -- C:\kjz.txt
    [2009-04-24 17:00:04 | 000,000,049 | ---- | M] () -- C:\kkty2.txt
    [2009-06-18 14:41:11 | 000,000,053 | ---- | M] () -- C:\KKugD07.txt
    [2009-05-11 21:00:10 | 000,000,052 | ---- | M] () -- C:\KLa5P8.txt
    [2009-06-22 16:59:07 | 000,000,048 | ---- | M] () -- C:\kMN62d.txt
    [2009-04-24 16:45:04 | 000,000,049 | ---- | M] () -- C:\Kpp759.txt
    [2009-06-08 17:56:06 | 000,000,052 | ---- | M] () -- C:\kS4T7wh.txt
    [2009-06-19 12:33:07 | 000,000,050 | ---- | M] () -- C:\kUeo.txt
    [2009-05-01 18:00:04 | 000,000,053 | ---- | M] () -- C:\KuwQXez.txt
    [2009-05-27 14:23:06 | 000,000,052 | ---- | M] () -- C:\kvTv.txt
    [2009-05-22 07:59:19 | 000,000,053 | ---- | M] () -- C:\kY31.txt
    [2009-06-17 12:02:04 | 000,000,049 | ---- | M] () -- C:\Kz5.txt
    [2009-04-24 16:15:16 | 000,000,053 | ---- | M] () -- C:\l07fJsI.txt
    [2009-05-12 15:00:11 | 000,000,053 | ---- | M] () -- C:\L0vxckYn.txt
    [2009-05-14 16:54:03 | 000,000,051 | ---- | M] () -- C:\l1TXCIg.txt
    [2009-05-11 19:00:10 | 000,000,052 | ---- | M] () -- C:\laUsPM.txt
    [2009-05-11 16:45:07 | 000,000,051 | ---- | M] () -- C:\LBjrKE.txt
    [2009-06-22 15:21:04 | 000,000,052 | ---- | M] () -- C:\lCJU9F3.txt
    [2009-05-08 17:45:05 | 000,000,053 | ---- | M] () -- C:\ldjfF.txt
    [2009-06-26 17:22:05 | 000,000,050 | ---- | M] () -- C:\LeFal4z.txt
    [2009-05-21 19:08:08 | 000,000,053 | ---- | M] () -- C:\LeLkHOp.txt
    [2009-05-01 21:15:05 | 000,000,052 | ---- | M] () -- C:\lg4Dg.txt
    [2009-04-24 10:45:06 | 000,000,051 | ---- | M] () -- C:\lGj0HU.txt
    [2009-05-11 21:15:18 | 000,000,049 | ---- | M] () -- C:\lGZfwN.txt
    [2009-06-26 15:57:06 | 000,000,053 | ---- | M] () -- C:\lhkBj27.txt
    [2009-06-25 18:09:03 | 000,000,048 | ---- | M] () -- C:\LjtSSAoq.txt
    [2009-04-23 13:45:05 | 000,000,048 | ---- | M] () -- C:\LKJHK3AF.txt
    [2009-05-27 14:08:12 | 000,000,053 | ---- | M] () -- C:\lkl.txt
    [2009-04-22 13:45:05 | 000,000,052 | ---- | M] () -- C:\LKMlHi.txt
    [2009-05-01 16:30:04 | 000,000,051 | ---- | M] () -- C:\Lo3iWQl.txt
    [2009-06-26 13:22:06 | 000,000,050 | ---- | M] () -- C:\lRXIO.txt
    [2009-06-18 17:55:06 | 000,000,053 | ---- | M] () -- C:\ls81C1sb.txt
    [2009-05-22 03:34:12 | 000,000,051 | ---- | M] () -- C:\LsBAzi.txt
    [2009-06-22 19:29:06 | 000,000,049 | ---- | M] () -- C:\LSKqUcn.txt
    [2009-05-22 08:08:14 | 000,000,048 | ---- | M] () -- C:\ltbRieJ.txt
    [2009-05-07 18:30:03 | 000,000,051 | ---- | M] () -- C:\lTmOOB.txt
    [2009-05-12 13:30:18 | 000,000,052 | ---- | M] () -- C:\Lu1Yj.txt
    [2009-04-22 14:45:15 | 000,000,050 | ---- | M] () -- C:\lUS.txt
    [2009-05-22 04:34:10 | 000,000,049 | ---- | M] () -- C:\lWm0msQ5.txt
    [2009-05-21 22:22:15 | 000,000,052 | ---- | M] () -- C:\LXNVQULX.txt
    [2009-06-18 20:06:06 | 000,000,049 | ---- | M] () -- C:\LyYqF027.txt
    [2009-06-22 17:58:06 | 000,000,050 | ---- | M] () -- C:\m02V86sg.txt
    [2009-05-04 12:00:16 | 000,000,049 | ---- | M] () -- C:\M1dmMwHu.txt
    [2009-05-08 06:30:09 | 000,000,052 | ---- | M] () -- C:\M1r2kU.txt
    [2009-05-22 06:59:11 | 000,000,048 | ---- | M] () -- C:\M5Dk.txt
    [2009-06-09 11:19:06 | 000,000,050 | ---- | M] () -- C:\M5rdFd.txt
    [2009-05-01 15:30:02 | 000,000,053 | ---- | M] () -- C:\m6rvUXwi.txt
    [2009-04-23 11:45:14 | 000,000,051 | ---- | M] () -- C:\M7PZqN4.txt
    [2009-06-18 16:50:06 | 000,000,048 | ---- | M] () -- C:\maBuptKl.txt
    [2009-05-18 15:24:06 | 000,000,053 | ---- | M] () -- C:\mATrL.txt
    [2009-04-22 16:15:04 | 000,000,052 | ---- | M] () -- C:\mbE.txt
    [2009-05-01 15:45:02 | 000,000,049 | ---- | M] () -- C:\mbT.txt
    [2009-05-22 03:24:11 | 000,000,050 | ---- | M] () -- C:\McqhXV.txt
    [2009-05-08 01:45:08 | 000,000,050 | ---- | M] () -- C:\MdJRyceo.txt
    [2009-05-01 18:45:02 | 000,000,051 | ---- | M] () -- C:\mDs.txt
    [2009-05-22 05:19:14 | 000,000,049 | ---- | M] () -- C:\mFn.txt
    [2009-05-18 15:55:08 | 000,000,050 | ---- | M] () -- C:\mFwTd.txt
    [2009-04-23 11:45:10 | 000,000,051 | ---- | M] () -- C:\MiGeN2.txt
    [2009-06-22 17:08:06 | 000,000,048 | ---- | M] () -- C:\MJU.txt
    [2009-06-09 12:53:06 | 000,000,048 | ---- | M] () -- C:\Mk7Oagq.txt
    [2009-05-22 11:20:03 | 000,000,052 | ---- | M] () -- C:\MLDBoT.txt
    [2009-05-11 17:45:10 | 000,000,053 | ---- | M] () -- C:\MMjCdz.txt
    [2009-06-09 11:17:06 | 000,000,049 | ---- | M] () -- C:\MMqcg4.txt
    [2009-06-17 16:24:06 | 000,000,053 | ---- | M] () -- C:\MorXr.txt
    [2009-06-18 11:04:16 | 000,000,052 | ---- | M] () -- C:\MOVjd6Oi.txt
    [2009-06-17 17:05:08 | 000,000,048 | ---- | M] () -- C:\MpgEtKgD.txt
    [2009-06-22 15:44:05 | 000,000,053 | ---- | M] () -- C:\MQqKQv1d.txt
    [2009-05-08 20:00:07 | 000,000,050 | ---- | M] () -- C:\mQTjlYo.txt
    [2004-08-11 19:15:00 | 000,000,000 | -H-- | M] () -- C:\MSDOS.SYS
    [2009-05-12 01:45:19 | 000,000,052 | ---- | M] () -- C:\mtN82Yd.txt
    [2009-06-26 16:27:05 | 000,000,050 | ---- | M] () -- C:\MtrF.txt
    [2009-06-17 13:02:06 | 000,000,049 | ---- | M] () -- C:\mtWKK.txt
    [2009-06-22 13:05:08 | 000,000,051 | ---- | M] () -- C:\mVgRjC.txt
    [2009-06-26 14:29:07 | 000,000,053 | ---- | M] () -- C:\mVUb4.txt
    [2009-06-18 14:18:09 | 000,000,050 | ---- | M] () -- C:\mWfxp9al.txt
    [2009-05-22 02:28:13 | 000,000,052 | ---- | M] () -- C:\MYfkyL.txt
    [2009-06-17 11:55:06 | 000,000,051 | ---- | M] () -- C:\myly.txt
    [2009-05-27 16:09:07 | 000,000,051 | ---- | M] () -- C:\MyMeaY3.txt
    [2009-06-11 11:25:07 | 000,000,050 | ---- | M] () -- C:\MZ3lkaIa.txt
    [2009-06-17 15:06:07 | 000,000,053 | ---- | M] () -- C:\N3zD.txt
    [2009-05-12 13:45:21 | 000,000,052 | ---- | M] () -- C:\n6aT21o.txt
    [2009-05-08 20:45:06 | 000,000,053 | ---- | M] () -- C:\n8dW.txt
    [2009-05-11 17:15:12 | 000,000,051 | ---- | M] () -- C:\NcFPlzA.txt
    [2009-06-26 16:01:05 | 000,000,050 | ---- | M] () -- C:\NEbKyk.txt
    [2009-06-11 10:18:08 | 000,000,051 | ---- | M] () -- C:\NF2KV8aP.txt
    [2009-06-08 17:19:05 | 000,000,049 | ---- | M] () -- C:\NgSq.txt
    [2009-04-23 13:30:15 | 000,000,050 | ---- | M] () -- C:\NgYp.txt
    [2009-06-22 16:19:06 | 000,000,052 | ---- | M] () -- C:\NIb.txt
    [2009-06-18 12:32:07 | 000,000,053 | ---- | M] () -- C:\nJKW.txt
    [2009-06-17 10:05:05 | 000,000,049 | ---- | M] () -- C:\Nkkf.txt
    [2009-05-21 20:06:06 | 000,000,050 | ---- | M] () -- C:\nLKE3M.txt
    [2009-05-18 15:50:10 | 000,000,048 | ---- | M] () -- C:\nMwl.txt
    [2009-05-21 21:37:06 | 000,000,049 | ---- | M] () -- C:\NMYl.txt
    [2009-06-17 19:37:06 | 000,000,051 | ---- | M] () -- C:\npPpg.txt
    [2009-06-18 12:37:08 | 000,000,049 | ---- | M] () -- C:\NPUKpW.txt
    [2004-08-04 07:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
    [2004-08-04 07:00:00 | 000,250,032 | RHS- | M] () -- C:\ntldr
    [2009-05-18 13:23:07 | 000,000,050 | ---- | M] () -- C:\Nvr0.txt
    [2009-06-09 11:05:13 | 000,000,053 | ---- | M] () -- C:\nwHdz7NX.txt
    [2009-06-27 11:07:09 | 000,000,048 | ---- | M] () -- C:\NWopq9.txt
    [2009-05-04 14:45:02 | 000,000,052 | ---- | M] () -- C:\nwyc38U.txt
    [2009-05-22 15:20:04 | 000,000,051 | ---- | M] () -- C:\nx51.txt
    [2009-04-24 12:00:02 | 000,000,052 | ---- | M] () -- C:\nxRUBQl.txt
    [2009-05-07 19:15:05 | 000,000,051 | ---- | M] () -- C:\NY3.txt
    [2009-04-28 10:45:06 | 000,000,052 | ---- | M] () -- C:\NYkKV2.txt
    [2009-05-21 20:54:10 | 000,000,052 | ---- | M] () -- C:\nz5N0q.txt
    [2009-06-18 15:59:07 | 000,000,049 | ---- | M] () -- C:\NzYk3W0F.txt
    [2009-06-17 15:59:10 | 000,000,051 | ---- | M] () -- C:\o2M6oD9.txt
    [2009-05-21 19:22:06 | 000,000,048 | ---- | M] () -- C:\o55mZ.txt
    [2009-05-22 02:43:10 | 000,000,053 | ---- | M] () -- C:\O90.txt
    [2009-05-12 14:15:16 | 000,000,050 | ---- | M] () -- C:\o95UF.txt
    [2009-05-21 18:09:09 | 000,000,053 | ---- | M] () -- C:\Oa965.txt
    [2009-05-11 20:15:13 | 000,000,052 | ---- | M] () -- C:\OanSW.txt
    [2009-05-22 02:01:06 | 000,000,051 | ---- | M] () -- C:\oC2h6Q.txt
    [2009-05-11 20:00:13 | 000,000,052 | ---- | M] () -- C:\ODJjK.txt
    [2009-04-23 14:00:05 | 000,000,050 | ---- | M] () -- C:\oDQ4hY.txt
    [2009-06-26 15:02:06 | 000,000,052 | ---- | M] () -- C:\odSbeKM.txt
    [2009-06-22 15:47:09 | 000,000,051 | ---- | M] () -- C:\oe4.txt
    [2009-06-17 20:39:06 | 000,000,049 | ---- | M] () -- C:\oH64Y.txt
    [2009-05-08 18:45:05 | 000,000,053 | ---- | M] () -- C:\ohHhcKM.txt
    [2009-05-04 15:00:03 | 000,000,050 | ---- | M] () -- C:\OkWYjnD.txt
    [2009-06-08 18:02:06 | 000,000,051 | ---- | M] () -- C:\OoxE.txt
    [2009-05-21 22:27:11 | 000,000,053 | ---- | M] () -- C:\opuAoO.txt
    [2009-05-22 08:22:06 | 000,000,051 | ---- | M] () -- C:\OPz11t.txt
    [2009-05-08 06:15:09 | 000,000,049 | ---- | M] () -- C:\oSgJaeoG.txt
    [2009-06-19 11:05:07 | 000,000,053 | ---- | M] () -- C:\OSpC.txt
    [2009-05-01 14:15:02 | 000,000,049 | ---- | M] () -- C:\oua.txt
    [2009-05-21 17:07:09 | 000,000,049 | ---- | M] () -- C:\oWe.txt
    [2009-04-22 15:15:16 | 000,000,052 | ---- | M] () -- C:\OwgzWgMV.txt
    [2009-04-23 14:00:04 | 000,000,050 | ---- | M] () -- C:\owND.txt
    [2009-05-12 14:00:19 | 000,000,050 | ---- | M] () -- C:\OXQSR.txt
    [2009-04-24 12:15:02 | 000,000,050 | ---- | M] () -- C:\OYyDBNt.txt
    [2009-05-12 10:30:09 | 000,000,052 | ---- | M] () -- C:\OZYhA.txt
    [2009-05-08 09:15:09 | 000,000,052 | ---- | M] () -- C:\p1iJ.txt
    [2009-05-08 01:30:06 | 000,000,048 | ---- | M] () -- C:\P2V1hqoi.txt
    [2009-05-22 15:39:06 | 000,000,049 | ---- | M] () -- C:\p3KShg.txt
    [2009-06-09 10:19:24 | 000,000,053 | ---- | M] () -- C:\p4m.txt
    [2009-05-12 14:45:12 | 000,000,048 | ---- | M] () -- C:\p5ExeW.txt
    [2009-06-16 14:51:03 | 000,000,048 | ---- | M] () -- C:\P7pBB2B.txt
    [2010-07-01 16:47:32 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
    [2009-05-08 06:45:07 | 000,000,053 | ---- | M] () -- C:\paT6yl.txt
    [2009-05-27 17:06:10 | 000,000,049 | ---- | M] () -- C:\pBKxKyT.txt
    [2009-06-18 16:39:06 | 000,000,048 | ---- | M] () -- C:\pc8A.txt
    [2009-06-22 16:02:06 | 000,000,053 | ---- | M] () -- C:\PDVhd.txt
    [2009-05-22 15:58:06 | 000,000,050 | ---- | M] () -- C:\pEv.txt
    [2009-06-26 17:00:06 | 000,000,053 | ---- | M] () -- C:\pfCJJaS.txt
    [2009-06-22 17:01:06 | 000,000,053 | ---- | M] () -- C:\PfDdJSiK.txt
    [2009-05-11 21:30:16 | 000,000,052 | ---- | M] () -- C:\PG5itpm.txt
    [2009-05-18 13:07:14 | 000,000,052 | ---- | M] () -- C:\PJwnnRm.txt
    [2009-04-23 15:30:04 | 000,000,051 | ---- | M] () -- C:\PJyk.txt
    [2009-04-23 13:30:19 | 000,000,048 | ---- | M] () -- C:\pKV5mOIS.txt
    [2007-03-14 16:10:08 | 000,065,894 | ---- | M] () -- C:\playground.log
    [2009-05-27 13:08:42 | 000,000,052 | ---- | M] () -- C:\PmQmotm.txt
    [2009-04-22 16:30:04 | 000,000,053 | ---- | M] () -- C:\PooW.txt
    [2009-05-08 19:00:06 | 000,000,051 | ---- | M] () -- C:\pOozV.txt
    [2006-11-27 11:46:50 | 000,001,089 | ---- | M] () -- C:\PortfolioCenter Relationship Manager.LNK
     
  8. 2010/07/02
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    [2009-06-22 19:39:06 | 000,000,048 | ---- | M] () -- C:\PS7zg.txt
    [2009-05-12 00:00:19 | 000,000,052 | ---- | M] () -- C:\Pst5jZnU.txt
    [2009-05-12 14:30:14 | 000,000,052 | ---- | M] () -- C:\puybt.txt
    [2009-05-27 15:43:07 | 000,000,049 | ---- | M] () -- C:\pvKsWC.txt
    [2009-05-27 12:47:11 | 000,000,052 | ---- | M] () -- C:\Pwmg.txt
    [2009-06-22 18:29:09 | 000,000,053 | ---- | M] () -- C:\Pwt.txt
    [2009-05-21 22:41:08 | 000,000,048 | ---- | M] () -- C:\PXyCnc.txt
    [2009-05-12 11:00:28 | 000,000,049 | ---- | M] () -- C:\q0UAE2.txt
    [2009-05-01 12:15:02 | 000,000,053 | ---- | M] () -- C:\Q6D9K.txt
    [2009-06-17 15:31:09 | 000,000,048 | ---- | M] () -- C:\Q98WM3q.txt
    [2009-05-18 14:19:06 | 000,000,049 | ---- | M] () -- C:\Q9qeNHB2.txt
    [2009-06-18 11:37:09 | 000,000,049 | ---- | M] () -- C:\QdQTO.txt
    [2009-05-27 13:20:06 | 000,000,053 | ---- | M] () -- C:\qEKwZ.txt
    [2009-05-12 00:15:15 | 000,000,049 | ---- | M] () -- C:\qIhoC.txt
    [2009-05-18 14:04:15 | 000,000,052 | ---- | M] () -- C:\QIx4.txt
    [2009-05-08 13:30:13 | 000,000,052 | ---- | M] () -- C:\qj59AQx.txt
    [2009-05-27 15:39:07 | 000,000,050 | ---- | M] () -- C:\qlz.txt
    [2009-05-08 08:30:13 | 000,000,053 | ---- | M] () -- C:\qNaN3ZYb.txt
    [2009-05-27 16:46:06 | 000,000,051 | ---- | M] () -- C:\QoI2p91z.txt
    [2009-05-22 06:43:10 | 000,000,051 | ---- | M] () -- C:\QPEB1.txt
    [2009-05-21 17:54:06 | 000,000,053 | ---- | M] () -- C:\qpt.txt
    [2009-06-22 13:33:04 | 000,000,050 | ---- | M] () -- C:\qqrucR0p.txt
    [2009-05-18 16:21:07 | 000,000,052 | ---- | M] () -- C:\QQWp9D.txt
    [2009-06-08 16:51:04 | 000,000,051 | ---- | M] () -- C:\qRFCmu3.txt
    [2009-04-23 15:00:04 | 000,000,051 | ---- | M] () -- C:\qstp.txt
    [2009-05-08 19:15:06 | 000,000,051 | ---- | M] () -- C:\qSZ.txt
    [2009-05-12 11:45:06 | 000,000,048 | ---- | M] () -- C:\QT3WqP.txt
    [2009-05-08 03:00:06 | 000,000,053 | ---- | M] () -- C:\QTL.txt
    [2009-05-14 17:00:05 | 000,000,048 | ---- | M] () -- C:\QtUvuj0.txt
    [2009-06-17 20:17:06 | 000,000,053 | ---- | M] () -- C:\QU72lBcH.txt
    [2009-05-22 04:58:10 | 000,000,049 | ---- | M] () -- C:\qUe8j.txt
    [2009-05-12 11:15:05 | 000,000,051 | ---- | M] () -- C:\qugeiNW.txt
    [2009-05-08 02:45:05 | 000,000,053 | ---- | M] () -- C:\qXvC.txt
    [2009-05-27 16:59:43 | 000,000,053 | ---- | M] () -- C:\QZYizYsN.txt
    [2009-05-04 14:00:03 | 000,000,053 | ---- | M] () -- C:\r4Mk.txt
    [2009-04-28 11:45:06 | 000,000,052 | ---- | M] () -- C:\R7BfQ5n.txt
    [2009-06-17 21:35:11 | 000,000,053 | ---- | M] () -- C:\R95.txt
    [2009-05-27 12:42:09 | 000,000,048 | ---- | M] () -- C:\rBfZZiMa.txt
    [2009-05-22 02:40:10 | 000,000,051 | ---- | M] () -- C:\rcMt.txt
    [2009-05-22 08:28:08 | 000,000,050 | ---- | M] () -- C:\Rd2AJ.txt
    [2009-05-08 12:15:09 | 000,000,053 | ---- | M] () -- C:\Re7.txt
    [2009-06-22 19:07:07 | 000,000,048 | ---- | M] () -- C:\ReIxWB.txt
    [2009-04-13 17:28:27 | 000,000,212 | ---- | M] () -- C:\Reslog.txt
    [2009-05-22 08:38:06 | 000,000,053 | ---- | M] () -- C:\RfXt2.txt
    [2009-06-11 11:06:15 | 000,000,048 | ---- | M] () -- C:\rHQhls3.txt
    [2009-05-08 13:45:10 | 000,000,051 | ---- | M] () -- C:\rIEu.txt
    [2009-06-08 17:08:08 | 000,000,053 | ---- | M] () -- C:\Rka.txt
    [2010-07-01 10:29:12 | 000,000,375 | ---- | M] () -- C:\rkill.log
    [2009-05-27 16:37:06 | 000,000,052 | ---- | M] () -- C:\rKz.txt
    [2009-05-08 05:00:14 | 000,000,050 | ---- | M] () -- C:\RmAVWe.txt
    [2009-05-22 08:30:06 | 000,000,051 | ---- | M] () -- C:\RnrW.txt
    [2009-06-26 11:47:04 | 000,000,052 | ---- | M] () -- C:\rp4daQ.txt
    [2009-05-28 10:54:14 | 000,000,052 | ---- | M] () -- C:\RPkN.txt
    [2009-05-08 11:45:12 | 000,000,052 | ---- | M] () -- C:\RQ4.txt
    [2009-05-22 00:07:06 | 000,000,052 | ---- | M] () -- C:\RQla.txt
    [2009-05-22 08:41:06 | 000,000,053 | ---- | M] () -- C:\rQpM.txt
    [2009-05-12 13:15:20 | 000,000,053 | ---- | M] () -- C:\rR1JI.txt
    [2009-04-27 16:30:03 | 000,000,053 | ---- | M] () -- C:\RsUF658.txt
    [2009-05-21 19:21:07 | 000,000,048 | ---- | M] () -- C:\rU8zl.txt
    [2009-05-08 19:30:06 | 000,000,052 | ---- | M] () -- C:\RuohO4z1.txt
    [2009-05-22 15:24:04 | 000,000,049 | ---- | M] () -- C:\RVcDF.txt
    [2009-05-08 13:15:08 | 000,000,048 | ---- | M] () -- C:\RvK4CvsL.txt
    [2009-05-14 15:44:06 | 000,000,053 | ---- | M] () -- C:\rvq.txt
    [2009-05-08 16:30:06 | 000,000,050 | ---- | M] () -- C:\rWaz.txt
    [2009-05-07 16:30:04 | 000,000,052 | ---- | M] () -- C:\rzN.txt
    [2009-06-18 11:09:07 | 000,000,050 | ---- | M] () -- C:\S2PrWN.txt
    [2009-05-27 17:09:07 | 000,000,053 | ---- | M] () -- C:\S5CL.txt
    [2009-04-23 14:15:04 | 000,000,053 | ---- | M] () -- C:\S6X.txt
    [2009-05-18 14:59:12 | 000,000,052 | ---- | M] () -- C:\S751.txt
    [2009-06-17 20:50:06 | 000,000,048 | ---- | M] () -- C:\sA382.txt
    [2009-05-07 19:00:05 | 000,000,053 | ---- | M] () -- C:\sAFB.txt
    [2009-05-21 18:04:09 | 000,000,052 | ---- | M] () -- C:\SahcX.txt
    [2009-06-18 15:36:09 | 000,000,051 | ---- | M] () -- C:\sbk.txt
    [2009-05-08 10:45:07 | 000,000,048 | ---- | M] () -- C:\Sbl.txt
    [2009-04-23 10:15:09 | 000,000,049 | ---- | M] () -- C:\sC48.txt
    [2009-06-17 14:55:07 | 000,000,053 | ---- | M] () -- C:\sCaD85TU.txt
    [2009-05-22 02:09:10 | 000,000,051 | ---- | M] () -- C:\Sdpn1A1S.txt
    [2009-06-09 11:08:20 | 000,000,053 | ---- | M] () -- C:\sE8cHJ.txt
    [2009-04-22 15:30:16 | 000,000,051 | ---- | M] () -- C:\SeI5.txt
    [2009-04-23 14:45:04 | 000,000,052 | ---- | M] () -- C:\seX4jo.txt
    [2009-06-17 17:28:06 | 000,000,049 | ---- | M] () -- C:\sF6.txt
    [2009-05-08 22:15:11 | 000,000,050 | ---- | M] () -- C:\Sgd5.txt
    [2009-05-21 17:01:06 | 000,000,053 | ---- | M] () -- C:\sMm.txt
    [2009-05-22 06:09:14 | 000,000,053 | ---- | M] () -- C:\Smo7.txt
    [2009-05-01 15:15:03 | 000,000,051 | ---- | M] () -- C:\smooDh.txt
    [2009-04-23 16:30:04 | 000,000,053 | ---- | M] () -- C:\Snc8uf3.txt
    [2009-04-23 13:45:05 | 000,000,052 | ---- | M] () -- C:\soAZ.txt
    [2009-05-22 01:59:08 | 000,000,052 | ---- | M] () -- C:\spjBdu.txt
    [2010-05-28 12:57:59 | 000,000,268 | -H-- | M] () -- C:\sqmdata00.sqm
    [2010-06-08 17:17:23 | 000,000,232 | -H-- | M] () -- C:\sqmdata01.sqm
    [2010-06-28 10:18:17 | 000,000,268 | -H-- | M] () -- C:\sqmdata02.sqm
    [2010-06-28 10:18:31 | 000,000,232 | -H-- | M] () -- C:\sqmdata03.sqm
    [2010-06-28 15:14:42 | 000,000,268 | -H-- | M] () -- C:\sqmdata04.sqm
    [2010-06-29 10:49:01 | 000,000,268 | -H-- | M] () -- C:\sqmdata05.sqm
    [2010-06-29 10:54:24 | 000,000,268 | -H-- | M] () -- C:\sqmdata06.sqm
    [2010-06-29 11:10:16 | 000,000,268 | -H-- | M] () -- C:\sqmdata07.sqm
    [2010-06-29 13:26:16 | 000,000,268 | -H-- | M] () -- C:\sqmdata08.sqm
    [2010-06-30 11:06:48 | 000,000,268 | -H-- | M] () -- C:\sqmdata09.sqm
    [2010-06-30 13:00:37 | 000,000,268 | -H-- | M] () -- C:\sqmdata10.sqm
    [2010-07-01 10:38:29 | 000,000,268 | -H-- | M] () -- C:\sqmdata11.sqm
    [2010-07-01 16:44:51 | 000,000,268 | -H-- | M] () -- C:\sqmdata12.sqm
    [2010-07-01 16:45:22 | 000,000,232 | -H-- | M] () -- C:\sqmdata13.sqm
    [2010-04-05 11:17:55 | 000,000,232 | -H-- | M] () -- C:\sqmdata14.sqm
    [2010-04-05 14:40:32 | 000,000,268 | -H-- | M] () -- C:\sqmdata15.sqm
    [2010-04-20 12:10:34 | 000,000,268 | -H-- | M] () -- C:\sqmdata16.sqm
    [2010-04-29 15:43:22 | 000,000,268 | -H-- | M] () -- C:\sqmdata17.sqm
    [2010-04-29 15:44:20 | 000,000,232 | -H-- | M] () -- C:\sqmdata18.sqm
    [2010-05-18 17:20:26 | 000,000,268 | -H-- | M] () -- C:\sqmdata19.sqm
    [2010-05-28 12:57:59 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt00.sqm
    [2010-06-08 17:17:23 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt01.sqm
    [2010-06-28 10:18:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt02.sqm
    [2010-06-28 10:18:31 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt03.sqm
    [2010-06-28 15:14:41 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt04.sqm
    [2010-06-29 10:49:01 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt05.sqm
    [2010-06-29 10:54:23 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt06.sqm
    [2010-06-29 11:10:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt07.sqm
    [2010-06-29 13:26:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt08.sqm
    [2010-06-30 11:06:48 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt09.sqm
    [2010-06-30 13:00:37 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt10.sqm
    [2010-07-01 10:38:29 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt11.sqm
    [2010-07-01 16:44:51 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt12.sqm
    [2010-07-01 16:45:22 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt13.sqm
    [2010-04-05 11:17:55 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt14.sqm
    [2010-04-05 14:40:32 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt15.sqm
    [2010-04-20 12:10:34 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt16.sqm
    [2010-04-29 15:43:21 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt17.sqm
    [2010-04-29 15:44:20 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt18.sqm
    [2010-05-18 17:20:26 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt19.sqm
    [2009-05-11 18:30:09 | 000,000,049 | ---- | M] () -- C:\sSlpHA.txt
    [2009-04-28 11:00:04 | 000,000,050 | ---- | M] () -- C:\sTO.txt
    [2009-05-01 19:00:02 | 000,000,052 | ---- | M] () -- C:\stTMN.txt
    [2005-10-31 11:56:00 | 000,700,416 | ---- | M] (LimeWire) -- C:\StubInstaller.exe
    [2009-05-21 18:57:05 | 000,000,048 | ---- | M] () -- C:\SuxRtt7Z.txt
    [2009-06-11 11:09:11 | 000,000,048 | ---- | M] () -- C:\suyWFc.txt
    [2009-06-18 13:23:10 | 000,000,048 | ---- | M] () -- C:\SvCP.txt
    [2009-05-27 14:37:06 | 000,000,048 | ---- | M] () -- C:\SWuoOM3.txt
    [2006-03-07 09:07:29 | 000,000,087 | ---- | M] () -- C:\SystemInfo.ini
    [2009-06-22 13:35:04 | 000,000,052 | ---- | M] () -- C:\SYt2D.txt
    [2009-05-21 20:40:09 | 000,000,048 | ---- | M] () -- C:\t1BAhbhL.txt
    [2009-05-14 16:43:03 | 000,000,050 | ---- | M] () -- C:\T1Xp.txt
    [2009-05-04 12:00:15 | 000,000,049 | ---- | M] () -- C:\T2a88G.txt
    [2009-06-17 18:28:06 | 000,000,051 | ---- | M] () -- C:\t3gkYvw.txt
    [2009-04-22 16:00:21 | 000,000,050 | ---- | M] () -- C:\t3gpE.txt
    [2008-07-30 10:54:21 | 001,981,268 | ---- | M] () -- C:\t3_us_standard.zip
    [2009-06-17 16:05:06 | 000,000,050 | ---- | M] () -- C:\t8nY7.txt
    [2009-06-26 12:04:08 | 000,000,053 | ---- | M] () -- C:\TaLkA.txt
    [2009-05-08 00:00:04 | 000,000,052 | ---- | M] () -- C:\tBjYLa.txt
    [2009-06-11 10:05:10 | 000,000,053 | ---- | M] () -- C:\TcO.txt
    [2009-06-11 10:23:05 | 000,000,048 | ---- | M] () -- C:\td8T.txt
    [2009-05-22 01:25:06 | 000,000,050 | ---- | M] () -- C:\TFel.txt
    [2009-05-12 01:30:21 | 000,000,052 | ---- | M] () -- C:\tMClLtIW.txt
    [2009-06-29 11:20:05 | 000,000,049 | ---- | M] () -- C:\tovN.txt
    [2009-05-12 01:00:18 | 000,000,053 | ---- | M] () -- C:\tPJ1P.txt
    [2009-04-23 14:00:05 | 000,000,052 | ---- | M] () -- C:\tPMX3i.txt
    [2009-05-14 16:28:04 | 000,000,048 | ---- | M] () -- C:\Tqkhuw.txt
    [2009-05-21 18:26:06 | 000,000,048 | ---- | M] () -- C:\Trx6.txt
    [2009-05-21 18:02:08 | 000,000,052 | ---- | M] () -- C:\TSiJ.txt
    [2009-05-08 09:00:10 | 000,000,048 | ---- | M] () -- C:\tsnmtrc.txt
    [2009-05-21 17:20:05 | 000,000,048 | ---- | M] () -- C:\tT3A.txt
    [2009-05-07 16:00:09 | 000,000,050 | ---- | M] () -- C:\tUN2WmJb.txt
    [2009-06-26 16:09:06 | 000,000,051 | ---- | M] () -- C:\tvB5G7w7.txt
    [2009-05-21 23:29:08 | 000,000,053 | ---- | M] () -- C:\TVFY.txt
    [2009-05-22 15:42:06 | 000,000,052 | ---- | M] () -- C:\TWyu.txt
    [2009-06-29 11:35:04 | 000,000,049 | ---- | M] () -- C:\Tx6I.txt
    [2009-04-28 12:00:04 | 000,000,049 | ---- | M] () -- C:\tXQ6YQ.txt
    [2009-05-27 12:09:07 | 000,000,049 | ---- | M] () -- C:\txVd.txt
    [2009-05-01 20:30:10 | 000,000,050 | ---- | M] () -- C:\tYg00G7.txt
    [2009-06-17 19:26:07 | 000,000,049 | ---- | M] () -- C:\tyLx.txt
    [2009-06-16 17:04:03 | 000,000,049 | ---- | M] () -- C:\u33dkii.txt
    [2009-05-18 12:44:09 | 000,000,053 | ---- | M] () -- C:\u4FAHkX.txt
    [2009-05-21 16:56:09 | 000,000,051 | ---- | M] () -- C:\U9fWDjic.txt
    [2009-06-26 16:19:05 | 000,000,052 | ---- | M] () -- C:\UAB.txt
    [2009-05-12 10:45:16 | 000,000,053 | ---- | M] () -- C:\uaDF8.txt
    [2009-06-17 21:29:06 | 000,000,049 | ---- | M] () -- C:\ubwMhP.txt
    [2009-05-21 21:26:08 | 000,000,053 | ---- | M] () -- C:\uBZ2c.txt
    [2009-05-11 18:00:11 | 000,000,051 | ---- | M] () -- C:\uDdb.txt
    [2009-05-27 17:08:14 | 000,000,048 | ---- | M] () -- C:\UdNM7j.txt
    [2009-06-26 11:50:08 | 000,000,053 | ---- | M] () -- C:\UGYXa.txt
    [2009-05-07 17:15:06 | 000,000,053 | ---- | M] () -- C:\UH51.txt
    [2009-06-18 19:57:06 | 000,000,052 | ---- | M] () -- C:\ui9M.txt
    [2009-05-21 21:51:06 | 000,000,048 | ---- | M] () -- C:\Ujl.txt
    [2009-06-18 18:56:06 | 000,000,052 | ---- | M] () -- C:\UjP.txt
    [2009-05-22 03:05:06 | 000,000,052 | ---- | M] () -- C:\uKOSF.txt
    [2009-05-07 17:30:03 | 000,000,053 | ---- | M] () -- C:\UMVSAK.txt
    [2009-04-23 15:45:04 | 000,000,053 | ---- | M] () -- C:\UNqWMX.txt
    [2009-05-18 13:56:11 | 000,000,048 | ---- | M] () -- C:\UnV.txt
    [2009-05-22 16:49:05 | 000,000,048 | ---- | M] () -- C:\UpBFsgD.txt
    [2009-06-18 20:25:07 | 000,000,051 | ---- | M] () -- C:\UPSiwjtO.txt
    [2009-06-26 14:45:34 | 000,000,053 | ---- | M] () -- C:\urdCgpsE.txt
    [2009-06-17 12:20:07 | 000,000,050 | ---- | M] () -- C:\uRxeo.txt
    [2009-06-09 12:46:07 | 000,000,048 | ---- | M] () -- C:\UStO2.txt
    [2009-04-22 15:15:16 | 000,000,049 | ---- | M] () -- C:\UTK.txt
    [2009-05-21 17:43:07 | 000,000,052 | ---- | M] () -- C:\uu6qJcGZ.txt
    [2009-05-01 13:30:03 | 000,000,050 | ---- | M] () -- C:\UUCskz.txt
    [2009-04-22 17:45:04 | 000,000,048 | ---- | M] () -- C:\UX1.txt
    [2009-04-28 10:45:06 | 000,000,053 | ---- | M] () -- C:\uYk.txt
    [2009-05-22 00:56:07 | 000,000,048 | ---- | M] () -- C:\v0JH.txt
    [2009-06-17 13:51:07 | 000,000,052 | ---- | M] () -- C:\V2RuSM.txt
    [2009-05-27 13:19:09 | 000,000,053 | ---- | M] () -- C:\V4i6.txt
    [2009-05-12 02:30:21 | 000,000,052 | ---- | M] () -- C:\v9OB.txt
    [2009-06-11 10:53:09 | 000,000,051 | ---- | M] () -- C:\VBD4c2.txt
    [2009-06-25 17:52:04 | 000,000,049 | ---- | M] () -- C:\VBdvTc4G.txt
    [2009-04-24 11:45:02 | 000,000,052 | ---- | M] () -- C:\vcFCUP.txt
    [2009-05-08 10:00:10 | 000,000,051 | ---- | M] () -- C:\Vci8EO0.txt
    [2009-06-22 18:47:06 | 000,000,051 | ---- | M] () -- C:\VCMKvpP.txt
    [2009-05-12 13:00:21 | 000,000,052 | ---- | M] () -- C:\Vcr61.txt
    [2009-06-26 12:34:06 | 000,000,053 | ---- | M] () -- C:\vcxwyBiT.txt
    [2009-05-11 19:15:10 | 000,000,049 | ---- | M] () -- C:\vCY4Ok.txt
    [2009-06-26 14:08:06 | 000,000,051 | ---- | M] () -- C:\VFB5Vs.txt
    [2009-05-08 21:45:15 | 000,000,051 | ---- | M] () -- C:\vhPdI.txt
    [2009-05-08 16:45:09 | 000,000,049 | ---- | M] () -- C:\vL7.txt
    [2009-06-26 14:01:06 | 000,000,052 | ---- | M] () -- C:\vmDi.txt
    [2009-04-22 14:45:15 | 000,000,052 | ---- | M] () -- C:\vmlNw.txt
    [2009-05-14 15:30:06 | 000,000,052 | ---- | M] () -- C:\VN7mkhN.txt
    [2009-05-08 19:45:05 | 000,000,048 | ---- | M] () -- C:\vNWPRXQ.txt
    [2009-06-09 13:09:07 | 000,000,050 | ---- | M] () -- C:\VPqwWxG.txt
    [2009-04-27 11:45:05 | 000,000,053 | ---- | M] () -- C:\Vr96SW8.txt
    [2009-06-29 11:58:20 | 000,000,053 | ---- | M] () -- C:\vsCg8F.txt
    [2009-05-14 16:01:06 | 000,000,052 | ---- | M] () -- C:\VsdbgluO.txt
    [2008-06-06 11:17:40 | 000,004,096 | -HS- | M] () -- C:\VSNAP.IDX
    [2006-12-29 14:35:51 | 000,000,220 | ---- | M] () -- C:\VundoFix.txt
    [2009-05-27 13:49:06 | 000,000,051 | ---- | M] () -- C:\vv4wDhaQ.txt
    [2009-06-09 10:25:07 | 000,000,053 | ---- | M] () -- C:\VVZ5cd.txt
    [2009-06-17 09:53:06 | 000,000,048 | ---- | M] () -- C:\vXXW4b.txt
    [2009-05-11 22:30:14 | 000,000,050 | ---- | M] () -- C:\W1h1an.txt
    [2009-05-01 18:15:02 | 000,000,048 | ---- | M] () -- C:\w5r.txt
    [2009-05-18 16:40:06 | 000,000,050 | ---- | M] () -- C:\w9P.txt
    [2009-05-08 02:30:07 | 000,000,051 | ---- | M] () -- C:\wAt.txt
    [2009-06-26 16:32:06 | 000,000,049 | ---- | M] () -- C:\WAvLv.txt
    [2009-05-27 14:56:07 | 000,000,051 | ---- | M] () -- C:\wcznxn.txt
    [2009-06-22 16:25:06 | 000,000,053 | ---- | M] () -- C:\WcZs64qL.txt
    [2009-05-11 19:45:12 | 000,000,048 | ---- | M] () -- C:\WdF.txt
    [2009-05-08 04:15:12 | 000,000,048 | ---- | M] () -- C:\wdQS.txt
    [2009-05-08 05:45:09 | 000,000,050 | ---- | M] () -- C:\whPT.txt
    [2009-04-23 10:30:06 | 000,000,052 | ---- | M] () -- C:\WISG.txt
    [2009-06-17 21:05:06 | 000,000,048 | ---- | M] () -- C:\WiTiwA0.txt
    [2009-05-08 02:15:08 | 000,000,049 | ---- | M] () -- C:\WLUBpu.txt
    [2009-05-18 13:33:10 | 000,000,052 | ---- | M] () -- C:\wOTnQ.txt
    [2009-05-08 18:30:06 | 000,000,052 | ---- | M] () -- C:\wPs7.txt
    [2009-05-27 12:30:11 | 000,000,051 | ---- | M] () -- C:\WPUIq.txt
    [2009-04-23 16:00:04 | 000,000,048 | ---- | M] () -- C:\wQ5.txt
    [2009-04-30 13:00:05 | 000,000,077 | ---- | M] () -- C:\wQhQdk8.txt
    [2009-05-08 09:45:12 | 000,000,053 | ---- | M] () -- C:\wrDS.txt
    [2009-06-17 16:30:06 | 000,000,050 | ---- | M] () -- C:\wSp0Pkch.txt
    [2009-05-12 14:30:14 | 000,000,052 | ---- | M] () -- C:\wteVYcUl.txt
    [2009-04-24 14:30:09 | 000,000,049 | ---- | M] () -- C:\WtkSk.txt
    [2009-05-18 14:09:06 | 000,000,053 | ---- | M] () -- C:\wtv.txt
    [2009-05-27 15:09:10 | 000,000,051 | ---- | M] () -- C:\Wu8x4xzn.txt
    [2009-05-08 08:00:30 | 000,000,048 | ---- | M] () -- C:\wUi.txt
    [2009-05-27 14:17:06 | 000,000,053 | ---- | M] () -- C:\WuY4G.txt
    [2009-05-12 15:30:08 | 000,000,050 | ---- | M] () -- C:\wv3.txt
    [2009-05-18 16:53:06 | 000,000,052 | ---- | M] () -- C:\WVtQrFN.txt
    [2009-05-01 17:30:02 | 000,000,053 | ---- | M] () -- C:\wWFFy1N.txt
    [2009-05-22 00:36:06 | 000,000,053 | ---- | M] () -- C:\wyADENqI.txt
    [2009-06-22 17:55:06 | 000,000,052 | ---- | M] () -- C:\WZIQoTIX.txt
    [2009-05-08 20:30:06 | 000,000,052 | ---- | M] () -- C:\x0zSuTR7.txt
    [2009-05-01 16:45:03 | 000,000,051 | ---- | M] () -- C:\X1cV.txt
    [2009-05-08 17:00:11 | 000,000,052 | ---- | M] () -- C:\X2aem.txt
    [2009-05-08 22:00:09 | 000,000,049 | ---- | M] () -- C:\X37oJI.txt
    [2009-05-08 13:00:11 | 000,000,050 | ---- | M] () -- C:\x3GMW4i.txt
    [2009-05-14 15:56:04 | 000,000,051 | ---- | M] () -- C:\x3tU4.txt
    [2009-05-04 12:15:03 | 000,000,049 | ---- | M] () -- C:\X5zaYueB.txt
    [2009-05-18 13:42:09 | 000,000,053 | ---- | M] () -- C:\x6T.txt
    [2009-05-18 16:57:06 | 000,000,051 | ---- | M] () -- C:\x73.txt
    [2009-05-11 22:45:18 | 000,000,053 | ---- | M] () -- C:\xbO1TZ.txt
    [2009-04-23 13:30:13 | 000,000,053 | ---- | M] () -- C:\xcoZV.txt
    [2009-05-08 12:30:09 | 000,000,050 | ---- | M] () -- C:\XCVhjq.txt
    [2009-05-22 07:25:07 | 000,000,048 | ---- | M] () -- C:\XdSgD.txt
    [2009-04-23 11:45:14 | 000,000,053 | ---- | M] () -- C:\xfjJvS.txt
    [2009-06-18 12:26:06 | 000,000,052 | ---- | M] () -- C:\XfoIMs.txt
    [2009-05-01 12:45:03 | 000,000,049 | ---- | M] () -- C:\XH3.txt
    [2009-05-01 19:45:13 | 000,000,052 | ---- | M] () -- C:\Xhce3.txt
    [2009-05-01 21:00:26 | 000,000,052 | ---- | M] () -- C:\xihI.txt
    [2009-05-08 00:15:04 | 000,000,051 | ---- | M] () -- C:\xIj.txt
    [2009-05-08 11:15:11 | 000,000,048 | ---- | M] () -- C:\xIOPd7.txt
    [2009-05-08 15:45:07 | 000,000,053 | ---- | M] () -- C:\XjJUrMl.txt
    [2009-05-08 10:15:15 | 000,000,048 | ---- | M] () -- C:\XkP.txt
    [2009-05-08 07:30:11 | 000,000,048 | ---- | M] () -- C:\XLW2xHYO.txt
    [2009-04-22 15:45:20 | 000,000,051 | ---- | M] () -- C:\XmZCCiJ.txt
    [2008-07-30 19:31:13 | 003,188,440 | ---- | M] (ParetoLogic Inc.) -- C:\XoftSpySE_Setup_RW.exe
    [2009-05-08 18:00:06 | 000,000,048 | ---- | M] () -- C:\XqdidOKk.txt
    [2009-06-17 20:03:06 | 000,000,050 | ---- | M] () -- C:\XrG.txt
    [2009-04-27 12:15:03 | 000,000,052 | ---- | M] () -- C:\XUFTOzCL.txt
    [2009-05-08 03:30:11 | 000,000,048 | ---- | M] () -- C:\y16vtNz0.txt
    [2009-06-26 16:39:06 | 000,000,048 | ---- | M] () -- C:\Y2T8T4W.txt
    [2009-05-01 14:00:03 | 000,000,048 | ---- | M] () -- C:\Y66ago.txt
    [2009-06-22 17:15:07 | 000,000,048 | ---- | M] () -- C:\Y8rwH.txt
    [2009-05-11 23:30:16 | 000,000,053 | ---- | M] () -- C:\Y8ycqus.txt
    [2009-05-21 21:09:07 | 000,000,052 | ---- | M] () -- C:\YEPfu8.txt
    [2009-05-22 01:09:06 | 000,000,048 | ---- | M] () -- C:\YeZGYGE.txt
    [2009-06-22 18:03:07 | 000,000,049 | ---- | M] () -- C:\Yfe.txt
    [2009-05-07 17:00:05 | 000,000,048 | ---- | M] () -- C:\yHqlt.txt
    [2009-04-22 18:00:21 | 000,000,048 | ---- | M] () -- C:\yJ2HOCq.txt
    [2009-05-18 17:25:08 | 000,000,052 | ---- | M] () -- C:\YLL.txt
    [2009-04-23 10:15:09 | 000,000,052 | ---- | M] () -- C:\ymGZs.txt
    [2009-05-15 17:38:04 | 000,000,049 | ---- | M] () -- C:\YMhV.txt
    [2009-04-22 14:15:30 | 000,000,049 | ---- | M] () -- C:\yNB6.txt
    [2009-06-25 17:39:04 | 000,000,053 | ---- | M] () -- C:\YnXoBR7m.txt
    [2009-05-11 18:15:13 | 000,000,051 | ---- | M] () -- C:\YoTHn.txt
    [2009-05-08 15:15:06 | 000,000,048 | ---- | M] () -- C:\yOtIUKN.txt
    [2009-06-17 15:18:07 | 000,000,051 | ---- | M] () -- C:\yRmJjR.txt
    [2006-05-01 11:10:11 | 000,000,158 | ---- | M] () -- C:\YServer.txt
    [2009-05-08 15:00:06 | 000,000,050 | ---- | M] () -- C:\YSOAbfH.txt
    [2009-05-28 11:29:10 | 000,000,050 | ---- | M] () -- C:\Ysu.txt
    [2009-05-12 00:45:21 | 000,000,052 | ---- | M] () -- C:\yvt.txt
    [2009-05-08 08:45:13 | 000,000,052 | ---- | M] () -- C:\YXMDgjp.txt
    [2009-05-08 01:15:09 | 000,000,051 | ---- | M] () -- C:\yYeUvoP.txt
    [2009-04-24 14:30:08 | 000,000,052 | ---- | M] () -- C:\yzcRk.txt
    [2009-05-12 15:45:10 | 000,000,053 | ---- | M] () -- C:\Z3Srma.txt
    [2009-05-12 10:30:08 | 000,000,051 | ---- | M] () -- C:\zAB.txt
    [2009-05-08 00:30:08 | 000,000,049 | ---- | M] () -- C:\ZCRtR1O.txt
    [2009-05-11 23:15:17 | 000,000,052 | ---- | M] () -- C:\ZdrIq.txt
    [2009-05-15 16:46:06 | 000,000,053 | ---- | M] () -- C:\zECH.txt
    [2009-05-01 12:30:02 | 000,000,050 | ---- | M] () -- C:\ZfEs.txt
    [2009-04-23 17:45:04 | 000,000,051 | ---- | M] () -- C:\Zfs3Zd5.txt
    [2009-05-22 01:15:08 | 000,000,051 | ---- | M] () -- C:\ZgCda2ra.txt
    [2009-05-15 17:29:03 | 000,000,052 | ---- | M] () -- C:\ZH93h5d1.txt
    [2009-05-21 18:22:10 | 000,000,052 | ---- | M] () -- C:\ZhFhX.txt
    [2009-06-22 16:16:09 | 000,000,048 | ---- | M] () -- C:\ZHHoWk.txt
    [2009-06-18 17:41:06 | 000,000,051 | ---- | M] () -- C:\ZhMNS.txt
    [2009-06-18 13:41:06 | 000,000,050 | ---- | M] () -- C:\ZhpFw.txt
    [2009-05-08 01:00:10 | 000,000,049 | ---- | M] () -- C:\ziX.txt
    [2009-06-09 11:31:11 | 000,000,051 | ---- | M] () -- C:\ZLa3.txt
    [2009-05-22 08:52:07 | 000,000,051 | ---- | M] () -- C:\zmnnF.txt
    [2009-06-17 16:47:06 | 000,000,051 | ---- | M] () -- C:\ZNrQU.txt
    [2009-05-22 02:50:07 | 000,000,052 | ---- | M] () -- C:\ZQwqSIr.txt
    [2009-05-08 09:30:10 | 000,000,053 | ---- | M] () -- C:\zrFVCcm.txt
    [2009-05-08 16:15:07 | 000,000,048 | ---- | M] () -- C:\zSRzg.txt
    [2009-05-26 10:42:06 | 000,000,052 | ---- | M] () -- C:\ztgnCRhC.txt
    [2009-06-22 15:40:04 | 000,000,048 | ---- | M] () -- C:\zu3.txt
    [2009-05-11 16:15:08 | 000,000,048 | ---- | M] () -- C:\ZvUJ.txt
    [2009-05-22 16:56:09 | 000,000,052 | ---- | M] () -- C:\Zx4S.txt
    [2009-05-08 00:45:06 | 000,000,052 | ---- | M] () -- C:\zYfuT70.txt
    [2009-05-12 11:00:16 | 000,000,048 | ---- | M] () -- C:\zyljL.txt
    [1 C:\*.tmp files -> C:\*.tmp -> ]

    < %systemroot%\system32\Spool\prtprocs\w32x86\*.dll >
    [2008-07-06 08:06:10 | 000,089,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
    [2009-10-01 14:30:14 | 000,047,416 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\LMIproc.dll
    [2004-03-22 16:17:08 | 000,025,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\mdippr.dll
    [2006-10-26 20:56:12 | 000,033,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll

    < %systemroot%\*. /mp /s >

    < %systemroot%\system32\*.dll /lockedfiles >
    [12 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

    < %systemroot%\Tasks\*.job /lockedfiles >

    < %systemroot%\System32\config\*.sav >
    [2004-08-11 19:06:14 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
    [2004-08-11 19:06:14 | 000,659,456 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
    [2004-08-11 19:06:14 | 000,876,544 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

    < %systemroot%\system32\user32.dll /md5 >
    [2007-03-08 11:36:28 | 000,577,536 | ---- | M] (Microsoft Corporation) MD5=B409909F6E2E8A7067076ED748ABF1E7 -- C:\WINDOWS\system32\user32.dll
    [12 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

    < %systemroot%\system32\ws2_32.dll /md5 >
    [2004-08-04 07:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=2ED0B7F12A60F90092081C50FA0EC2B2 -- C:\WINDOWS\system32\ws2_32.dll
    [12 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

    < HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 171 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D282699C
    @Alternate Data Stream - 155 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
    @Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:77CF9481
    @Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A8ADE5D8
    @Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CB0AACC9
    < End of report >
     
  9. 2010/07/02
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    I thought, you had AVG as your antivirus program, but I don't see it now running. What happened?

    Do you have any idea what are all those .txt files in your drive C?

    =================================================================

    Update your Java version here: http://www.java.com/en/download/installed.jsp
    Uninstall all previous Java versions, through Add\Remove (Programs & Features in Vista/7).

    ============================================================

    Run OTL
    • Under the [color= "#0000FF"]Custom Scans/Fixes[/color] box at the bottom, paste in the following

      Code:
      :OTL
      DRV - File not found [Kernel | On_Demand | Running] -- -- (catchme)
      O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get.../ultrashim.cab  (Reg Error: Key error.)
      [2007-03-12 14:39:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Viewpoint
      @Alternate Data Stream - 171 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D282699C
      @Alternate Data Stream - 155 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
      @Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:77CF9481
      @Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A8ADE5D8
      @Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CB0AACC9
      
      :Services
      
      :Reg
      
      :Files
      
      :Commands
      [purity]
      [emptytemp]
      [emptyflash]
      [resethosts]
      [Reboot]
    • Then click the [color= "#FF0000"]Run Fix[/color] button at the top
    • Let the program run unhindered, reboot the PC when it is done
    • You will get a log that shows the results of the fix. Please post it.
    • Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.
     
  10. 2010/07/06
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    I havent a clue where all those txt are or came from. the all have the same message:

    qqq
    123456
    bin
    get calc.exe c:\KJeQ.exe
    bye
     
  11. 2010/07/06
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    All processes killed
    ========== OTL ==========
    Service catchme stopped successfully!
    Service catchme deleted successfully!
    Starting removal of ActiveX control {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
    C:\WINDOWS\Downloaded Program Files\erma.inf not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
    C:\Documents and Settings\Rick Picon\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03 folder moved successfully.
    C:\Documents and Settings\Rick Picon\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02 folder moved successfully.
    C:\Documents and Settings\Rick Picon\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_01 folder moved successfully.
    C:\Documents and Settings\Rick Picon\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00 folder moved successfully.
    C:\Documents and Settings\Rick Picon\Application Data\Viewpoint\Viewpoint Experience Technology\Resources folder moved successfully.
    C:\Documents and Settings\Rick Picon\Application Data\Viewpoint\Viewpoint Experience Technology folder moved successfully.
    C:\Documents and Settings\Rick Picon\Application Data\Viewpoint folder moved successfully.
    ADS C:\Documents and Settings\All Users\Application Data\TEMP:D282699C deleted successfully.
    ADS C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2 deleted successfully.
    ADS C:\Documents and Settings\All Users\Application Data\TEMP:77CF9481 deleted successfully.
    ADS C:\Documents and Settings\All Users\Application Data\TEMP:A8ADE5D8 deleted successfully.
    ADS C:\Documents and Settings\All Users\Application Data\TEMP:CB0AACC9 deleted successfully.
    ========== SERVICES/DRIVERS ==========
    ========== REGISTRY ==========
    ========== FILES ==========
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: Administrator
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes

    User: All Users

    User: Copy of Rick Picon

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 32902 bytes

    User: dfederman
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes
    ->Java cache emptied: 2129950 bytes
    ->Flash cache emptied: 3277 bytes

    User: LocalService
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 147590 bytes

    User: NetworkService
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 1114246 bytes
    ->Java cache emptied: 13 bytes
    ->Flash cache emptied: 25587 bytes

    User: pwalsh
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes
    ->Flash cache emptied: 562 bytes

    User: Rick Picon
    ->Temp folder emptied: 6313620 bytes
    ->Temporary Internet Files folder emptied: 445967891 bytes
    ->Java cache emptied: 78681832 bytes
    ->FireFox cache emptied: 47871367 bytes
    ->Flash cache emptied: 2263676 bytes

    %systemdrive% .tmp files removed: 19270 bytes
    %systemroot% .tmp files removed: 945 bytes
    %systemroot%\System32 .tmp files removed: 23334929 bytes
    %systemroot%\System32\dllcache .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 1416 bytes
    %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
    %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 50189 bytes
    RecycleBin emptied: 5645857 bytes

    Total Files Cleaned = 585.00 mb


    [EMPTYFLASH]

    User: Administrator

    User: All Users

    User: Copy of Rick Picon

    User: Default User

    User: dfederman
    ->Flash cache emptied: 0 bytes

    User: LocalService

    User: NetworkService
    ->Flash cache emptied: 0 bytes

    User: pwalsh
    ->Flash cache emptied: 0 bytes

    User: Rick Picon
    ->Flash cache emptied: 0 bytes

    Total Flash Files Cleaned = 0.00 mb

    C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
    HOSTS file reset successfully

    OTL by OldTimer - Version 3.2.7.0 log created on 07062010_125944

    Files\Folders moved on Reboot...

    Registry entries deleted on Reboot...
     
  12. 2010/07/06
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    i dont see AVG.

    Should I install AVG again?
     
  13. 2010/07/06
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Text files are not dangerous, but if you don't know them, get rid of them.

    I have no idea what happened to AVG, so yes, please reinstall it.
    ...and you forgot:
     
  14. 2010/07/07
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    OTL logfile created on: 2010-07-07 10:55:50 - Run 2
    OTL by OldTimer - Version 3.2.7.0 Folder = C:\Documents and Settings\Rick Picon\Desktop
    Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 7.0.5730.13)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: yyyy-MM-dd

    2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 67.00% Memory free
    4.00 Gb Paging File | 3.00 Gb Available in Paging File | 88.00% Paging File free
    Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 108.59 Gb Total Space | 40.78 Gb Free Space | 37.56% Space Free | Partition Type: NTFS
    Drive D: | 36.96 Gb Total Space | 6.03 Gb Free Space | 16.33% Space Free | Partition Type: NTFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    Drive G: | 916.60 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
    Drive H: | 1.92 Gb Total Space | 1.83 Gb Free Space | 95.26% Space Free | Partition Type: FAT
    I: Drive not present or media not loaded
    Drive P: | 136.02 Gb Total Space | 60.19 Gb Free Space | 44.25% Space Free | Partition Type: NTFS
    Drive T: | 136.02 Gb Total Space | 60.19 Gb Free Space | 44.25% Space Free | Partition Type: NTFS

    Computer Name: GLB-RPICON-02
    Current User Name: rpicon
    Logged in as Administrator.

    Current Boot Mode: Normal
    Scan Mode: Current user
    Company Name Whitelist: On
    Skip Microsoft Files: On
    File Age = 90 Days
    Output = Standard
    Quick Scan

    ========== Processes (SafeList) ==========

    PRC - [2010-07-02 10:37:40 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rick Picon\Desktop\OTL.exe
    PRC - [2009-10-01 14:30:35 | 000,116,032 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\ramaint.exe
    PRC - [2009-10-01 14:30:10 | 000,378,176 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LMIGuardian.exe
    PRC - [2009-10-01 10:53:04 | 000,403,015 | ---- | M] (Plaxo, Inc.) -- C:\Program Files\Plaxo\3.23.0.11\PlaxoHelper_en.exe
    PRC - [2009-05-30 15:00:24 | 007,573,504 | ---- | M] (Gracebyte Software) -- C:\Program Files\Network Assistant\Nassi.exe
    PRC - [2009-04-06 17:05:21 | 000,307,704 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
    PRC - [2007-10-05 21:37:38 | 017,927,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\EXCEL.EXE
    PRC - [2007-09-06 19:01:10 | 012,836,728 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
    PRC - [2007-05-10 22:46:20 | 000,624,248 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
    PRC - [2007-04-17 14:03:50 | 000,063,048 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
    PRC - [2007-04-17 14:03:50 | 000,063,040 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn\x86\LogMeIn.exe
    PRC - [2007-03-28 12:12:34 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    PRC - [2006-06-20 22:36:22 | 001,207,080 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft ActiveSync\wcescomm.exe
    PRC - [2006-06-20 22:36:00 | 000,187,176 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft ActiveSync\rapimgr.exe
    PRC - [2005-10-05 05:12:00 | 000,094,208 | ---- | M] () -- C:\Program Files\Dell\Media Experience\DMXLauncher.exe
    PRC - [2005-09-08 07:20:00 | 000,122,940 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\system32\DLA\DLACTRLW.EXE
    PRC - [2005-06-17 09:56:14 | 000,139,264 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    PRC - [2005-06-17 09:55:58 | 000,086,140 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
    PRC - [2005-04-01 21:51:48 | 000,217,600 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
    PRC - [2004-08-04 07:00:00 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


    ========== Modules (SafeList) ==========

    MOD - [2010-07-02 10:37:40 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rick Picon\Desktop\OTL.exe
    MOD - [2009-10-01 10:49:26 | 000,043,585 | ---- | M] (Plaxo, Inc.) -- C:\Program Files\Plaxo\3.23.0.11\plx_hook.dll
    MOD - [2006-08-25 11:45:55 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    MOD - [2004-08-04 07:00:00 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcp60.dll
    MOD - [2004-08-04 07:00:00 | 000,102,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
    MOD - [2000-12-27 18:40:58 | 000,043,008 | ---- | M] () -- C:\Program Files\Network Assistant\hooks.dll


    ========== Win32 Services (SafeList) ==========

    SRV - [2010-03-01 18:49:24 | 001,029,456 | ---- | M] (Lavasoft) [Auto | Stopped] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
    SRV - [2009-10-01 14:30:35 | 000,116,032 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\RaMaint.exe -- (LMIMaint)
    SRV - [2007-05-23 14:29:36 | 000,122,880 | ---- | M] (CrypKey (Canada) Ltd.) [Disabled | Stopped] -- C:\WINDOWS\System32\Crypserv.exe -- (Crypkey License)
    SRV - [2007-04-17 14:03:50 | 000,063,040 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn\x86\LogMeIn.exe -- (LogMeIn)
    SRV - [2007-03-28 12:12:34 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Running] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
    SRV - [2007-01-19 13:54:14 | 000,097,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\MSN Messenger\usnsvc.exe -- (usnjsvc)
    SRV - [2005-06-17 09:55:58 | 000,086,140 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe -- (IAANTMon) Intel(R)
    SRV - [2005-04-01 21:51:48 | 000,217,600 | ---- | M] (Rocket Division Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe -- (StarWindService)


    ========== Driver Services (SafeList) ==========

    DRV - [2009-10-01 14:30:14 | 000,083,288 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\WINDOWS\system32\LMIRfsClientNP.dll -- (LMIRfsClientNP)
    DRV - [2009-09-25 17:44:49 | 000,074,480 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
    DRV - [2009-06-23 11:01:42 | 000,007,408 | R--- | M] ( SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | On_Demand | Stopped] -- C:\Program Files\SUPERAntiSpyware\SASENUM.SYS -- (SASENUM)
    DRV - [2009-06-23 11:01:40 | 000,009,968 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
    DRV - [2009-05-04 17:51:02 | 000,064,160 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd)
    DRV - [2009-02-17 13:40:24 | 000,034,760 | ---- | M] (Greatis Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Partizan.sys -- (Partizan)
    DRV - [2008-10-17 10:25:11 | 000,047,640 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\LMIRfsDriver.sys -- (LMIRfsDriver)
    DRV - [2008-02-28 15:31:50 | 000,012,856 | ---- | M] (LogMeIn, Inc.) [Kernel | Auto | Running] -- C:\Program Files\LogMeIn\x86\rainfo.sys -- (LMIInfo)
    DRV - [2007-05-01 17:15:54 | 000,016,896 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\ckldrv.sys -- (NetworkX)
    DRV - [2007-01-30 12:36:42 | 000,223,128 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\vaxscsi.sys -- (vaxscsi)
    DRV - [2007-01-30 12:26:47 | 000,643,072 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
    DRV - [2006-12-29 12:30:25 | 000,076,560 | ---- | M] (Trend Micro Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\tmcomm.sys -- (tmcomm)
    DRV - [2006-11-07 06:48:44 | 000,023,040 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\GameTap\bin\release\X4HSX32.sys -- (X4HSX32)
    DRV - [2006-06-30 00:53:44 | 000,003,712 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
    DRV - [2006-05-10 09:56:54 | 000,027,264 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LHidKE.Sys -- (LHidKe)
    DRV - [2006-05-10 09:56:50 | 000,071,680 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LMouKE.Sys -- (LMouKE)
    DRV - [2006-03-07 09:07:09 | 000,008,552 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\asctrm.sys -- (ASCTRM)
    DRV - [2005-11-16 23:36:00 | 001,047,816 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
    DRV - [2005-09-12 05:30:00 | 000,089,264 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\DRVMCDB.SYS -- (DRVMCDB)
    DRV - [2005-09-08 07:20:00 | 000,094,332 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDFAM.SYS -- (DLAUDFAM)
    DRV - [2005-09-08 07:20:00 | 000,087,036 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDF_M.SYS -- (DLAUDF_M)
    DRV - [2005-09-08 07:20:00 | 000,086,524 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAIFS_M.SYS -- (DLAIFS_M)
    DRV - [2005-09-08 07:20:00 | 000,025,628 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLABOIOM.SYS -- (DLABOIOM)
    DRV - [2005-09-08 07:20:00 | 000,014,684 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAOPIOM.SYS -- (DLAOPIOM)
    DRV - [2005-09-08 07:20:00 | 000,006,364 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAPoolM.SYS -- (DLAPoolM)
    DRV - [2005-09-08 07:20:00 | 000,002,496 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLADResN.SYS -- (DLADResN)
    DRV - [2005-08-25 21:05:24 | 000,176,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\e1e5132.sys -- (e1express) Intel(R)
    DRV - [2005-08-25 14:16:52 | 000,005,628 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS -- (DLACDBHM)
    DRV - [2005-08-25 14:16:16 | 000,022,684 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLARTL_N.SYS -- (DLARTL_N)
    DRV - [2005-08-12 07:20:00 | 000,040,544 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\DRVNDDM.SYS -- (DRVNDDM)
    DRV - [2005-07-09 01:57:00 | 003,198,304 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
    DRV - [2005-06-17 14:33:40 | 000,872,064 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\iastor.sys -- (iastor)
    DRV - [2004-08-12 19:45:54 | 000,137,728 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Hdaudbus.sys -- (HDAudBus)
    DRV - [2004-08-04 01:07:44 | 000,043,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\amdagp.sys -- (amdagp)
    DRV - [2004-08-04 01:07:44 | 000,041,088 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sisagp.sys -- (sisagp)
    DRV - [2001-08-17 16:07:44 | 000,019,072 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sparrow.sys -- (Sparrow)
    DRV - [2001-08-17 16:07:42 | 000,030,688 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys -- (sym_u3)
    DRV - [2001-08-17 16:07:40 | 000,028,384 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys -- (sym_hi)
    DRV - [2001-08-17 16:07:36 | 000,032,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys -- (symc8xx)
    DRV - [2001-08-17 16:07:34 | 000,016,256 | ---- | M] (Symbios Logic Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc810.sys -- (symc810)
    DRV - [2001-08-17 15:52:22 | 000,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ultra.sys -- (ultra)
    DRV - [2001-08-17 15:52:20 | 000,045,312 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql12160.sys -- (ql12160)
    DRV - [2001-08-17 15:52:20 | 000,040,320 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql1080.sys -- (ql1080)
    DRV - [2001-08-17 15:52:18 | 000,049,024 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql1280.sys -- (ql1280)
    DRV - [2001-08-17 15:52:16 | 000,179,584 | ---- | M] (Mylex Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys -- (dac2w2k)
    DRV - [2001-08-17 15:52:12 | 000,017,280 | ---- | M] (American Megatrends Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys -- (mraid35x)
    DRV - [2001-08-17 15:52:00 | 000,026,496 | ---- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\asc.sys -- (asc)
    DRV - [2001-08-17 15:51:58 | 000,014,848 | ---- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\asc3550.sys -- (asc3550)
    DRV - [2001-08-17 15:51:56 | 000,005,248 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\aliide.sys -- (AliIde)
    DRV - [2001-08-17 15:51:54 | 000,006,656 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\cmdide.sys -- (CmdIde)
    DRV - [2001-08-17 13:58:00 | 000,019,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hidbatt.sys -- (HidBatt)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com/ig/dell?hl=en&client=dell

    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

    ========== FireFox ==========

    FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search "
    FF - prefs.js..browser.search.defaulturl: "http://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q= "
    FF - prefs.js..browser.search.order.1: "Ask "
    FF - prefs.js..browser.search.param.yahoo-fr: "megaup "
    FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "megaup "
    FF - prefs.js..browser.search.selectedEngine: "Yahoo! Search "
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "http://finance.yahoo.com/ "
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
    FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
    FF - prefs.js..keyword.URL: "http://toolbar.ask.com/toolbarv/askRedirect?o=13149&gct=&gc=1&q= "

    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009-04-22 17:44:57 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-07-06 12:58:15 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

    [2009-10-28 11:06:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Extensions
    [2009-10-28 11:06:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Extensions\mozswing@mozswing.org
    [2010-07-06 13:04:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Firefox\Profiles\coh2bzuj.default\extensions
    [2007-06-22 11:44:07 | 000,000,000 | ---D | M] (FlashGot) -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Firefox\Profiles\coh2bzuj.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
    [2007-09-24 15:50:01 | 000,000,000 | ---D | M] (Megaupload Toolbar) -- C:\Documents and Settings\Rick Picon\Application Data\Mozilla\Firefox\Profiles\coh2bzuj.default\extensions\{991A772A-BA13-4c1d-A9EF-F897F31DEC7D}
    [2010-07-06 13:04:56 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
    [2006-11-16 12:22:26 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
    [2010-07-06 12:58:16 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
    [2010-04-12 17:29:19 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
    [2008-03-12 13:04:10 | 000,086,016 | ---- | M] (SpiralFrog Inc.) -- C:\Program Files\Mozilla Firefox\plugins\NPSFDMGR.dll

    O1 HOSTS File: ([2010-07-06 13:01:28 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
    O1 - Hosts: 127.0.0.1 localhost
    O1 - Hosts: ::1 localhost
    O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
    O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
    O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
    O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
    O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\Program Files\GoogleAFE\GoogleAE.dll (Google)
    O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
    O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O3 - HKCU\..\Toolbar\ShellBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar2.dll (Google Inc.)
    O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
    O4 - HKLM..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft)
    O4 - HKLM..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE (Sonic Solutions)
    O4 - HKLM..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe ()
    O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe ()
    O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
    O4 - HKLM..\Run: [Logitech Hardware Abstraction Layer] C:\WINDOWS\KHALMNPR.Exe (Logitech Inc.)
    O4 - HKLM..\Run: [LogMeIn GUI] C:\Program Files\LogMeIn\x86\LogMeInSystray.exe (LogMeIn, Inc.)
    O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
    O4 - HKCU..\Run: [AdobeUpdater] C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe (Adobe Systems Incorporated)
    O4 - HKCU..\Run: [H/PC Connection Agent] C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
    O4 - HKCU..\Run: [PlaxoSysTray] C:\Program Files\Plaxo\3.23.0.11\plaxosystray.exe (Plaxo, Inc.)
    O4 - HKCU..\Run: [PlaxoUpdate] C:\Program Files\Plaxo\3.23.0.11\PlaxoHelper_en.exe (Plaxo, Inc.)
    O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
    O4 - Startup: C:\Documents and Settings\Rick Picon\Start Menu\Programs\Startup\Microsoft Office Groove.lnk = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE (Microsoft Corporation)
    O4 - Startup: C:\Documents and Settings\Rick Picon\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
    O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
    O8 - Extra context menu item: Append to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert link target to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert selected links to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert selected links to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert selection to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert selection to existing PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
    O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
    O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
    O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
    O9 - Extra Button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
    O9 - Extra 'Tools' menuitem : Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
    O9 - Extra Button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe (PokerStars)
    O15 - HKLM\..Trusted Domains: musicmatch.com ([online] https in Trusted sites)
    O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://go.microsoft.com/fwlink/?linkid=67633 (Office Genuine Advantage Validation Tool)
    O16 - DPF: {0F733F27-5BBB-4D03-8D6B-19E2143880BF} http://www1.skillground.com/cab1831/SkillGround.cab (SkillGround Game Manager)
    O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
    O16 - DPF: {1A1F56AA-3401-46F9-B277-D57F3421F821} http://aol.worldwinner.com/games/v47/shared/FunGamesLoader.cab (FunGamesLoader Object)
    O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
    O16 - DPF: {25D9AA40-ED39-11D2-A038-009027078284} https://b1-www.advisorservices.com/advisorweb/file/urldownloader.cab (UrlDownloader Class)
    O16 - DPF: {3107C2A8-9F0B-4404-A58B-21BD85268FBC} http://www.pogo.com/cdl/launcher/PogoWebLauncherInstaller.CAB (PogoWebLauncher Control)
    O16 - DPF: {493ACF15-5CD9-4474-82A6-91670C3DD66E} http://www.linkedin.com/cab/LinkedInContactFinderControl.cab (LinkedIn ContactFinderControl)
    O16 - DPF: {556EEC63-31E2-47C3-BF29-DFF799D2FE04} https://secure.logmein.com/activex/RACtrl.cab (Remote Access ActiveX Client)
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1249928285454 (WUWebControl Class)
    O16 - DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C} http://www.facebook.com/controls/contactx.dll (ContactExtractor Class)
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1260546108330 (MUWebControl Class)
    O16 - DPF: {7E980B9B-8AE5-466A-B6D6-DA8CF814E78A} http://clubgames.pogo.com/online2/pogop/luxor_2/mjolauncher.cab (MJLauncherCtrl Class)
    O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} http://www.worldwinner.com/games/shared/wwlaunch.cab (Wwlaunch Control)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
    O16 - DPF: {95A311CD-EC8E-452A-BCEC-B844EB616D03} http://www.worldwinner.com/games/v51/bejeweledtwist/bejeweledtwist.cab (BejeweledTwist Control)
    O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
    O16 - DPF: {CF969D51-F764-4FBF-9E90-475248601C8A} http://www.worldwinner.com/games/v47/familyfeud/familyfeud.cab (FamilyFeud Control)
    O16 - DPF: {D1548A26-B8F6-4E86-AE74-E7062CCC2E2A} http://www.miniclip.com/igloader/igloader.CAB (igLoader Content on Demand)
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
    O16 - DPF: {DC4B2445-4A2C-46FF-BAAE-C0FBB45D866D} https://www.laserapp.com/dev/detect/lavdetect.ocx (LASDetectX Control)
    O16 - DPF: {E12EB891-D000-421B-A8ED-EDE1BDCA14A0} http://www.worldwinner.com/games/v44/golfsol/golfsol.cab (GolfSol Control)
    O16 - DPF: {E70E3E64-2793-4AEF-8CC8-F1606BE563B0} http://www.worldwinner.com/games/v54/wwspades/wwspades.cab (WWSpades Control)
    O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logmein.com/activex/RACtrl.cab (Performance Viewer Activex Control)
    O16 - DPF: {FF0F7B6E-D733-11D7-8088-0001024743E4} https://vex.advisorservices.com/Views/VeoExpress/AdoView/Pages/veoExpress.CAB (veoExpress.ctlVeoExpress)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.113
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = aribaglb.local
    O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
    O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
    O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)
    O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
    O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll ()
    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
    O20 - Winlogon\Notify\LMIinit: DllName - LMIinit.dll - C:\WINDOWS\System32\LMIinit.dll (LogMeIn, Inc.)
    O24 - Desktop WallPaper: C:\WINDOWS\Dell.bmp
    O24 - Desktop BackupWallPaper: C:\WINDOWS\Dell.bmp
    O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
    O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2006-10-23 08:20:07 | 000,000,057 | R--- | M] () - G:\AUTORUN.INF -- [ CDFS ]
    O34 - HKLM BootExecute: (autocheck autochk *) - File not found
    O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()
    O34 - HKLM BootExecute: (Partizan) - C:\WINDOWS\System32\Partizan.exe (Greatis Software)
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = ComFile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*

    ========== Files/Folders - Created Within 90 Days ==========

    [2010-07-06 12:59:44 | 000,000,000 | ---D | C] -- C:\_OTL
    [2010-07-06 12:58:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sun
    [2010-07-02 10:37:41 | 000,574,464 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Rick Picon\Desktop\OTL.exe
    [2010-07-02 10:33:35 | 000,000,000 | -HSD | C] -- C:\RECYCLER
    [2010-07-01 10:41:24 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
    [2010-07-01 10:41:24 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
    [2010-07-01 10:41:24 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
    [2010-07-01 10:41:24 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
    [2010-06-30 13:18:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rick Picon\Desktop\2020insight
    [2010-06-30 10:39:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rick Picon\Desktop\desk top
    [2010-06-30 10:37:44 | 006,153,352 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Rick Picon\Desktop\mbam-setup-1.46.exe
    [2010-06-29 04:55:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Adobe
    [2010-06-29 04:55:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Sun
    [2010-06-25 13:25:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rick Picon\Desktop\Meeting minutes
    [2010-06-08 13:30:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rick Picon\Desktop\June event
    [2003-12-09 13:16:52 | 000,442,368 | ---- | C] ( ) -- C:\WINDOWS\System32\comintfs.dll

    ========== Files - Modified Within 90 Days ==========

    [2010-07-07 10:54:40 | 003,728,027 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\ComboFix.exe
    [2010-07-07 10:53:11 | 000,363,520 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\rkill.com
    [2010-07-06 20:30:31 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
    [2010-07-06 14:34:33 | 010,747,904 | ---- | M] () -- C:\Documents and Settings\Rick Picon\ntuser.dat
    [2010-07-06 13:03:49 | 000,029,204 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
    [2010-07-06 13:03:36 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
    [2010-07-06 13:02:50 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
    [2010-07-06 13:02:46 | 2145,546,240 | -HS- | M] () -- C:\hiberfil.sys
    [2010-07-06 13:01:36 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\Rick Picon\ntuser.ini
    [2010-07-06 13:01:28 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
    [2010-07-06 12:15:37 | 000,000,638 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partIII.MFA
    [2010-07-05 20:29:40 | 000,066,048 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\Stephen.doc
    [2010-07-05 17:49:27 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
    [2010-07-02 10:37:40 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rick Picon\Desktop\OTL.exe
    [2010-07-01 16:56:25 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
    [2010-07-01 16:45:22 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt13.sqm
    [2010-07-01 16:45:22 | 000,000,232 | -H-- | M] () -- C:\sqmdata13.sqm
    [2010-07-01 16:44:51 | 000,000,268 | -H-- | M] () -- C:\sqmdata12.sqm
    [2010-07-01 16:44:51 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt12.sqm
    [2010-07-01 16:12:38 | 000,001,304 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\godkensells.ord
    [2010-07-01 12:19:24 | 000,004,981 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\TDA 3rdQ2010 fees.mgt
    [2010-07-01 11:59:58 | 000,000,578 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partII.MFA
    [2010-07-01 11:48:16 | 000,000,838 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partI.MFA
    [2010-07-01 10:38:29 | 000,000,268 | -H-- | M] () -- C:\sqmdata11.sqm
    [2010-07-01 10:38:29 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt11.sqm
    [2010-07-01 10:29:19 | 000,294,400 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\exeHelper.com
    [2010-07-01 10:27:59 | 000,363,520 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\rkill.exe
    [2010-06-30 13:00:37 | 000,000,268 | -H-- | M] () -- C:\sqmdata10.sqm
    [2010-06-30 13:00:37 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt10.sqm
    [2010-06-30 12:59:02 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\~$. Taylor.docx
    [2010-06-30 11:42:35 | 000,010,302 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\Mr. Taylor.docx
    [2010-06-30 11:08:00 | 000,293,376 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\dm6vzk6m.exe
    [2010-06-30 11:06:48 | 000,000,268 | -H-- | M] () -- C:\sqmdata09.sqm
    [2010-06-30 11:06:48 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt09.sqm
    [2010-06-30 10:37:42 | 006,153,352 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Rick Picon\Desktop\mbam-setup-1.46.exe
    [2010-06-29 13:26:16 | 000,000,268 | -H-- | M] () -- C:\sqmdata08.sqm
    [2010-06-29 13:26:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt08.sqm
    [2010-06-29 13:16:58 | 000,525,824 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\dds(2).scr
    [2010-06-29 13:14:14 | 000,525,824 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\dds.scr
    [2010-06-29 11:10:16 | 000,000,268 | -H-- | M] () -- C:\sqmdata07.sqm
    [2010-06-29 11:10:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt07.sqm
    [2010-06-29 10:54:24 | 000,000,268 | -H-- | M] () -- C:\sqmdata06.sqm
    [2010-06-29 10:54:23 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt06.sqm
    [2010-06-29 10:49:01 | 000,000,268 | -H-- | M] () -- C:\sqmdata05.sqm
    [2010-06-29 10:49:01 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt05.sqm
    [2010-06-29 04:55:14 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
    [2010-06-28 15:14:42 | 000,000,268 | -H-- | M] () -- C:\sqmdata04.sqm
    [2010-06-28 15:14:41 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt04.sqm
    [2010-06-28 10:18:31 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt03.sqm
    [2010-06-28 10:18:31 | 000,000,232 | -H-- | M] () -- C:\sqmdata03.sqm
    [2010-06-28 10:18:17 | 000,000,268 | -H-- | M] () -- C:\sqmdata02.sqm
    [2010-06-28 10:18:16 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt02.sqm
    [2010-06-23 11:15:13 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\~$ry Garner's Possibilities 2010.docx
    [2010-06-22 13:33:19 | 000,200,192 | ---- | M] () -- C:\Documents and Settings\Rick Picon\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2010-06-08 17:17:23 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt01.sqm
    [2010-06-08 17:17:23 | 000,000,232 | -H-- | M] () -- C:\sqmdata01.sqm
    [2010-06-04 12:51:16 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
    [2010-05-28 12:57:59 | 000,000,268 | -H-- | M] () -- C:\sqmdata00.sqm
    [2010-05-28 12:57:59 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt00.sqm
    [2010-05-18 17:20:26 | 000,000,268 | -H-- | M] () -- C:\sqmdata19.sqm
    [2010-05-18 17:20:26 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt19.sqm
    [2010-05-17 11:41:58 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Rick Picon\Desktop\~$delity to TDA.docx
    [2010-04-29 15:44:20 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt18.sqm
    [2010-04-29 15:44:20 | 000,000,232 | -H-- | M] () -- C:\sqmdata18.sqm
    [2010-04-29 15:43:22 | 000,000,268 | -H-- | M] () -- C:\sqmdata17.sqm
    [2010-04-29 15:43:21 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt17.sqm
    [2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
    [2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
    [2010-04-26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe
    [2010-04-20 12:10:34 | 000,000,268 | -H-- | M] () -- C:\sqmdata16.sqm
    [2010-04-20 12:10:34 | 000,000,244 | -H-- | M] () -- C:\sqmnoopt16.sqm
    [2010-04-16 13:29:26 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for

    ========== Files Created - No Company Name ==========

    [2010-07-07 10:54:42 | 003,728,027 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\ComboFix.exe
    [2010-07-07 10:53:13 | 000,363,520 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\rkill.com
    [2010-07-06 12:15:37 | 000,000,638 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partIII.MFA
    [2010-07-05 20:29:40 | 000,066,048 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\Stephen.doc
    [2010-07-01 16:12:38 | 000,001,304 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\godkensells.ord
    [2010-07-01 12:19:24 | 000,004,981 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\TDA 3rdQ2010 fees.mgt
    [2010-07-01 11:59:58 | 000,000,578 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partII.MFA
    [2010-07-01 11:48:16 | 000,000,838 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\3rdQ2010Schwabfee partI.MFA
    [2010-07-01 10:41:24 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
    [2010-07-01 10:41:24 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
    [2010-07-01 10:41:24 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
    [2010-07-01 10:41:24 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
    [2010-07-01 10:41:24 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
    [2010-07-01 10:29:21 | 000,294,400 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\exeHelper.com
    [2010-07-01 10:28:01 | 000,363,520 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\rkill.exe
    [2010-06-30 15:15:13 | 2145,546,240 | -HS- | C] () -- C:\hiberfil.sys
    [2010-06-30 12:59:02 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$. Taylor.docx
    [2010-06-30 11:42:35 | 000,010,302 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\Mr. Taylor.docx
    [2010-06-30 11:08:06 | 000,293,376 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dm6vzk6m.exe
    [2010-06-29 13:17:05 | 000,525,824 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dds(2).scr
    [2010-06-29 13:14:23 | 000,525,824 | ---- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\dds.scr
    [2010-06-23 11:15:13 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$ry Garner's Possibilities 2010.docx
    [2010-05-17 11:41:58 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Rick Picon\Desktop\~$delity to TDA.docx
    [2010-04-16 13:29:26 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
    [2010-04-16 13:29:26 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
    [2010-01-20 18:36:30 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
    [2010-01-20 18:36:30 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll
    [2010-01-20 18:36:30 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
    [2010-01-20 18:36:30 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll
    [2009-11-05 13:04:51 | 000,691,592 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.DLL
    [2009-09-25 17:43:13 | 000,019,469 | ---- | C] () -- C:\WINDOWS\System32\aveda.dll
    [2009-09-25 17:43:13 | 000,013,702 | ---- | C] () -- C:\WINDOWS\ehubanowo.sys
    [2009-04-13 17:28:30 | 000,000,134 | ---- | C] () -- C:\WINDOWS\rootkitno.ini
    [2008-11-21 09:21:16 | 000,032,256 | ---- | C] () -- C:\WINDOWS\System32\_regtlb.dll
    [2007-09-25 12:29:25 | 000,000,064 | ---- | C] () -- C:\WINDOWS\Crypkey.ini
    [2007-09-25 12:29:18 | 000,018,432 | ---- | C] () -- C:\WINDOWS\Setup_ck.dll
    [2007-09-25 12:29:18 | 000,016,896 | ---- | C] () -- C:\WINDOWS\System32\Ckldrv.sys
    [2007-01-30 12:36:42 | 000,223,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\vaxscsi.sys
    [2007-01-30 12:26:47 | 000,643,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
    [2007-01-30 12:26:47 | 000,096,256 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd3197.sys
    [2006-12-29 12:30:26 | 000,002,154 | ---- | C] () -- C:\WINDOWS\System32\tmmute.ini
    [2006-12-15 11:05:40 | 000,000,030 | ---- | C] () -- C:\WINDOWS\xoloxexe.INI
    [2006-10-12 18:18:56 | 000,462,848 | ---- | C] () -- C:\WINDOWS\System32\ractrlkeyhook.dll
    [2006-10-11 09:55:04 | 000,000,033 | ---- | C] () -- C:\WINDOWS\schwabcd.ini
    [2006-07-27 13:28:42 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
    [2006-07-11 18:33:49 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\DivXWMPExtType.dll
    [2006-04-30 00:34:04 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\WbxRMenu.dll
    [2006-04-17 14:07:45 | 000,003,350 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
    [2006-04-13 23:18:24 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\atonres.dll
    [2006-04-13 23:18:24 | 000,131,072 | ---- | C] () -- C:\WINDOWS\System32\WbxMSAI.dll
    [2006-04-13 23:18:24 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\atonecli.dll
    [2006-04-11 11:03:49 | 000,000,028 | ---- | C] () -- C:\WINDOWS\atid.ini
    [2006-04-11 09:55:58 | 000,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
    [2006-03-31 14:24:58 | 000,000,550 | ---- | C] () -- C:\WINDOWS\ODBC.INI
    [2006-03-07 09:18:17 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
    [2006-03-07 09:14:39 | 000,000,126 | ---- | C] () -- C:\WINDOWS\wininit.ini
    [2006-03-07 09:11:00 | 000,712,704 | ---- | C] () -- C:\WINDOWS\System32\DellSystemRestore.dll
    [2006-03-07 08:44:46 | 000,000,393 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
    [2005-11-10 10:56:34 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
    [2004-08-11 19:24:19 | 000,000,791 | ---- | C] () -- C:\WINDOWS\orun32.ini
    [2004-08-11 19:11:31 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
    [2004-08-11 19:00:30 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys

    ========== LOP Check ==========

    [2006-09-18 11:50:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Centric Services
    [2009-12-07 17:24:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
    [2009-10-01 13:35:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FunGames
    [2007-09-11 13:48:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Grisoft
    [2009-02-03 14:23:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iWin Games
    [2008-11-28 12:27:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LogMeIn
    [2006-10-09 16:28:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Money Tree Software
    [2008-01-16 17:10:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MumboJumbo
    [2007-03-14 15:34:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayFirst
    [2006-09-13 14:18:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayTime
    [2006-12-15 13:54:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap
    [2009-06-08 15:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Schwab Performance Technologies
    [2010-01-20 18:36:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Simply Super Software
    [2007-03-14 15:12:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SonyPicturesGames
    [2010-07-06 14:10:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
    [2008-07-22 14:04:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\UTour Golf
    [2007-03-12 22:01:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
    [2010-03-26 14:38:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WildTangent
    [2009-04-22 17:48:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
    [2008-12-01 16:18:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8737778F-82C6-4680-A660-E8B2B8C8C22B}
    [2008-12-01 16:18:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{B0AFCE64-DF3F-4824-8985-B21DB0EEE07B}
    [2008-12-01 16:19:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{D9AA4D17-9292-410D-9AA5-84526D062900}
    [2008-12-01 16:16:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{FBB5C4A9-4848-46A0-8863-C359F08D7728}
    [2006-04-11 11:05:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\acccore
    [2006-11-01 09:49:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\AIM
    [2006-11-01 09:49:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\AIMPro
    [2007-06-22 11:26:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\BitTorrent
    [2007-04-10 13:06:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\FrostWire
    [2006-04-11 11:30:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Gracebyte Software
    [2007-01-30 12:24:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Leadertech
    [2007-03-08 17:54:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\LinkedIn
    [2007-09-24 16:00:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\MegauploadToolbar
    [2006-10-13 11:44:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Money Tree Software
    [2007-03-14 15:34:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\PlayFirst
    [2009-01-23 18:18:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\PowerChallenge
    [2007-11-16 13:47:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\RSSRadio
    [2007-11-16 13:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\RSSRadio.local
    [2009-11-04 15:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Serif
    [2008-01-18 14:37:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Sigaba
    [2009-01-21 16:56:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Simply Super Software
    [2008-05-08 14:39:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\SmartDraw
    [2008-12-01 16:20:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\Stamps.com Internet Postage
    [2007-03-02 15:13:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\System Restore
    [2007-06-28 14:37:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rick Picon\Application Data\uTorrent
    [2010-07-05 17:49:27 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

    ========== Purity Check ==========



    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 198 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D282699C
    < End of report >
     
  15. 2010/07/07
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    I still don't see any AV program running.

    1. Download Temp File Cleaner (TFC)
    Double click on TFC.exe to run the program.
    Click on Start button to begin cleaning process.
    TFC will close all running programs, and it may ask you to restart computer.


    2. Go to Kaspersky website and perform an online antivirus scan.

    1. Disable your active antivirus program.
    2. Read through the requirements and privacy statement and click on Accept button.
    3. It will start downloading and installing the scanner and virus definitions. You will be prompted to install an application from Kaspersky. Click Run.
    4. When the downloads have finished, click on Settings.
    5. Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:

    • Spyware, Adware, Dialers, and other potentially dangerous programs
      [*] Archives
      [*] Mail databases
    6. Click on My Computer under Scan.
    7. Once the scan is complete, it will display the results. Click on View Scan Report.
    8. You will see a list of infected items there. Click on Save Report As....
    9. Save this report to a convenient place. Change the Files of type to Text file (.txt) before clicking on the Save button. Then post it here.
     
  16. 2010/07/12
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    ok will do
     
    Last edited: 2010/07/12
  17. 2010/07/12
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    I think what ever virus i had here has somehow infected my laptop as well. Perhaps via email. I don't use my laptop all that much but I noticed the same issues.
     
  18. 2010/07/12
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    One thing at a time.
    Regarding laptop, you'll have to start new topic.
     
  19. 2010/07/13
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    --------------------------------------------------------------------------------
    KASPERSKY ONLINE SCANNER 7.0: scan report
    Tuesday, July 13, 2010
    Operating system: Microsoft Windows XP Professional Service Pack 2 (build 2600)
    Kaspersky Online Scanner version: 7.0.26.13
    Last database update: Monday, July 12, 2010 17:59:53
    Records in database: 4228700
    --------------------------------------------------------------------------------

    Scan settings:
    scan using the following database: extended
    Scan archives: yes
    Scan e-mail databases: yes

    Scan area - My Computer:
    C:\
    D:\
    E:\
    F:\
    G:\
    P:\
    T:\

    Scan statistics:
    Objects scanned: 287687
    Threats found: 3
    Infected objects found: 5
    Suspicious objects found: 6
    Scan duration: 10:37:37


    File name / Threat / Threats count
    C:\Documents and Settings\Rick Picon\Desktop\desk top\outlookbackup.pst Infected: Trojan-Downloader.Win32.Bagle.f 1
    C:\Documents and Settings\Rick Picon\Desktop\STUFF\backup.pst Suspicious: Exploit.HTML.Iframe.FileDownload 2
    P:\JohnBackup\documents\Local Settings\Temp\Acr48DD.tmp Infected: Exploit.JS.Pdfka.dp 1
    P:\RPBackup\outlookbackup.pst Infected: Trojan-Downloader.Win32.Bagle.f 1
    T:\JohnBackup\documents\Local Settings\Temp\Acr48DD.tmp Infected: Exploit.JS.Pdfka.dp 1
    T:\RPBackup\outlookbackup.pst Infected: Trojan-Downloader.Win32.Bagle.f 1
    T:\RPBackup\outlookbackup.pst Suspicious: Exploit.HTML.Iframe.FileDownload 4

    Selected area has been scanned.
     
  20. 2010/07/13
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Please, go through Kaspersky's list.
    All bad files are located in all kind of backups and email backups and I don't want to delete something, you may need.
    Let me know, what your decision is.
     
  21. 2010/07/14
    rpicon

    rpicon Inactive Thread Starter

    Joined:
    2006/12/29
    Messages:
    198
    Likes Received:
    0
    lets just get rid of it. I rather no have it.



    Thx
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.