Here is the OTL quick scan log;
OTL logfile created on: 2/10/2012 9:59:48 AM - Run 2
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\dad\Desktop
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
511.48 Mb Total Physical Memory | 303.54 Mb Available Physical Memory | 59.35% Memory free
1.22 Gb Paging File | 1.08 Gb Available in Paging File | 89.00% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74.51 Gb Total Space | 58.13 Gb Free Space | 78.02% Space Free | Partition Type: FAT32
Computer Name: PREFERRE-406GQB | User Name: dad | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/02/09 22:13:30 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dad\Desktop\OTL.exe
PRC - [2005/04/27 14:59:24 | 000,241,725 | ---- | M] (Microsoft Corporation) -- C:\Program Files\UPHClean\UPHCLEAN.EXE
PRC - [2004/08/04 00:56:50 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE
PRC - [2001/10/26 22:32:54 | 000,270,336 | ---- | M] (ATI Technologies, Inc.) -- C:\WINDOWS\system32\atiptaxx.exe
PRC - [2001/08/17 22:36:42 | 000,024,064 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\devldr32.exe
========== Modules (No Company Name) ==========
MOD - [2001/12/05 11:52:38 | 000,045,056 | ---- | M] () -- C:\WINDOWS\system32\NavLogon.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- -- (Spooler)
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- -- (getPlus(R) Helper) getPlus(R)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - File not found [On_Demand | Stopped] -- -- (ACDaemon)
SRV - [2005/04/27 14:59:24 | 000,241,725 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\UPHClean\UPHCLEAN.EXE -- (UPHClean)
========== Driver Services (SafeList) ==========
DRV - [2011/11/12 11:18:20 | 000,018,560 | ---- | M] (LeapFrog) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\FlyUsb.sys -- (FlyUsb)
DRV - [2010/06/13 17:32:54 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2010/04/26 19:25:20 | 000,132,424 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdmdm.sys -- (sscdmdm)
DRV - [2010/04/26 19:25:20 | 000,110,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdserd.sys -- (sscdserd) SAMSUNG Mobile Modem Diagnostic Serial Port (WDM)
DRV - [2010/04/26 19:25:20 | 000,104,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdbus.sys -- (sscdbus) SAMSUNG USB Composite Device driver (WDM)
DRV - [2010/04/26 19:25:20 | 000,014,920 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV - [2007/07/26 13:24:32 | 000,003,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\qv2kux.sys -- (QV2KUX)
DRV - [2006/11/10 15:05:00 | 000,018,688 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afc.sys -- (Afc)
DRV - [2004/08/03 23:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004/08/03 22:31:32 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rtl8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2003/10/28 14:55:38 | 000,029,744 | ---- | M] (Service & Quality Technology.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SQCaptur.sys -- (DCamUSBSQTECH) Dual-Mode DSC(2770)
DRV - [2003/03/14 13:18:30 | 000,004,228 | ---- | M] (PowerQuest Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\PQNTDRV.sys -- (PQNTDrv)
DRV - [2003/01/10 13:13:04 | 000,033,588 | R--- | M] (America Online, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wanatw4.sys -- (wanatw) WAN Miniport (ATW)
DRV - [2002/03/22 09:50:00 | 000,068,190 | ---- | M] (Logitech) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LMouFlt2.sys -- (LMouFlt2)
DRV - [2002/03/22 09:50:00 | 000,022,654 | ---- | M] (Logitech) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LHidFlt2.sys -- (LHidFlt2)
DRV - [2002/03/22 09:50:00 | 000,005,838 | ---- | M] (Logitech) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LKbdFlt2.sys -- (LKbdFlt2)
DRV - [2001/12/12 10:27:34 | 000,111,024 | ---- | M] (ZSMC) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbcam.sys -- (USBZC0301)
DRV - [2001/10/26 22:47:14 | 000,349,184 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2001/10/26 20:50:02 | 000,032,752 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atinxsxx.sys -- (ATIXSAudio)
DRV - [2001/10/26 20:49:38 | 000,011,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atinpdxx.sys -- (PCDCODEC)
DRV - [2001/10/26 20:49:30 | 000,011,280 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atinmdxx.sys -- (MVDCODEC)
DRV - [2001/10/26 20:49:22 | 000,032,848 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\atinraxx.sys -- (ativraxx)
DRV - [2001/10/26 20:47:30 | 000,065,024 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\atinrvxx.sys -- (atinrvxx)
DRV - [2001/10/26 20:46:22 | 000,035,952 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atintuxx.sys -- (ATITUNEP)
DRV - [2001/10/18 14:00:00 | 000,006,144 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\viaidexp.sys -- (ViaIde)
DRV - [2001/09/10 02:30:00 | 000,042,880 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\viaudio.sys -- (VIAudio) VIA AC'97 Enhanced Audio Controller (WDM)
DRV - [2001/08/17 14:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001/08/17 13:52:24 | 000,038,144 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\hpt3xx.sys -- (hpt3xx)
DRV - [2001/08/17 13:28:12 | 000,488,383 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hsf_v124.sys -- (V124)
DRV - [2001/08/17 13:28:12 | 000,050,751 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hsf_tone.sys -- (Tones)
DRV - [2001/08/17 13:28:10 | 000,542,879 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hsf_msft.sys -- (hsf_msft)
DRV - [2001/08/17 13:28:10 | 000,057,471 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hsf_samp.sys -- (Rksample)
DRV - [2001/08/17 13:28:08 | 000,391,199 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hsf_k56k.sys -- (K56)
DRV - [2001/08/17 13:28:06 | 000,289,887 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hsf_fall.sys -- (Fallback)
DRV - [2001/08/17 13:28:06 | 000,199,711 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hsf_faxx.sys -- (SoftFax)
DRV - [2001/08/17 13:28:06 | 000,115,807 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hsf_fsks.sys -- (Fsks)
DRV - [2001/08/17 13:28:04 | 000,067,167 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hsf_bsc2.sys -- (basic2)
DRV - [2001/08/17 12:48:52 | 000,281,856 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ati2mpaa.sys -- (ati2mpaa)
DRV - [2001/08/17 12:19:34 | 000,036,480 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sfmanm.sys -- (sfman) Creative SoundFont Manager Driver (WDM)
DRV - [2001/08/17 12:19:28 | 000,006,912 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctlfacem.sys -- (emu10k1) Creative Interface Manager Driver (WDM)
DRV - [2001/08/17 12:19:26 | 000,283,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emu10k1m.sys -- (emu10k) Creative SB Live! (WDM)
DRV - [2001/08/17 12:19:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk)
DRV - [1999/12/17 01:00:00 | 000,006,752 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\PfModNT.sys -- (PfModNT)
DRV - [1997/12/22 18:02:46 | 000,023,936 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\aspi32.sys -- (Aspi32)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapps.yahoo.com/cus.../*http://www.yahoo.com/ext/search/search.html
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch =
http://rd.yahoo.com/customize/ymsgr/defaults/cs/*http://www.yahoo.com/ext/search/search.html
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Search
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL =
http://www.Google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore =
http://www.google.com/
IE - HKCU\Software\Microsoft\Internet Explorer\SearchURL\w, =
http://www.Google.com/
IE - HKCU\..\URLSearchHook: - No CLSID value found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..network.proxy.no_proxies_on: "localhost,127.0.0.1"
FF - prefs.js..network.proxy.type: 0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/02/08 22:04:42 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/11/14 22:48:16 | 000,000,000 | ---D | M]
[2009/11/16 15:16:06 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\dad\Application Data\Mozilla\Extensions
[2012/02/08 22:04:42 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012/02/08 22:06:22 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/05/04 04:52:24 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011/12/20 20:30:42 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/12/20 20:30:42 | 000,002,040 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
========== Chrome ==========
O1 HOSTS File: ([2006/06/16 13:03:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O4 - HKLM..\Run: [AtiPTA] C:\WINDOWS\System32\atiptaxx.exe (ATI Technologies, Inc.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKCU..\Run: [ATI Launchpad] C:\Program Files\ATI Multimedia\main\launchPd.EXE (ATI Technologies Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: =
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O9 - Extra Button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\TV\EXPLBAR.DLL (ATI Technologies Inc.)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.microsoft.com/downl...-4505-8fb8-d0d2d160e512/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {2EB1E425-74DC-4DC0-A9E1-03A4C852E1F2}
http://download.games.yahoo.com/games/web_games/playfirst/trijinx/TriJinx.1.0.0.55.cab (CPlayFirstTriJinxControl Object)
O16 - DPF: {352797A0-EFD0-4FA6-B229-145120EA4B8A}
https://disneyblast.go.com/v3/setup/activex/DIGHardwareControl.cab (Walt Disney Internet Group Hardware Control)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537}
http://by18fd.bay18.hotmail.msn.com/resources/MsnPUpld.cab (MSN Photo Upload Tool)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://v5.windowsupdate.microsoft.c...ls/en/x86/client/wuweb_site.cab?1096269113559 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1228966146143 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A}
http://web1.shutterfly.com/downloads/Uploader.cab (Shutterfly Picture Upload Plugin)
O16 - DPF: {C4925E65-7A1E-11D2-8BB4-00A0C9CC72C3}
http://a532.g.akamai.net/f/532/6712...amai.com/6712/player/install3.0/installer.exe (Virtools WebPlayer Class)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {D54160C3-DB7B-4534-9B65-190EE4A9C7F7}
http://download.games.yahoo.com/games/web_games/gamehouse/frenzy/SproutLauncher.cab (SproutLauncherCtrl Class)
O16 - DPF: {D77EF652-9A6B-40C8-A4B9-1C0697C6CF41}
http://download.games.yahoo.com/games/web_games/tikgames/cinematycoon/cinematycoon.cab (TikGames Online Control)
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003}
http://upload.mediamax.com/Upload/XUpload.ocx (Persits Software XUpload)
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D}
http://by20fd.bay20.hotmail.msn.com/activex/HMAtchmt.ocx (Hotmail Attachments Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 75.75.75.75 75.75.76.76
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D229562C-C39E-4C3A-970D-7703A5D09C4D}: DhcpNameServer = 75.75.75.75 75.75.76.76
O18 - Protocol\Handler\vsharechrome {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - C:\Program Files\vShare\vshare_toolbar.dll File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - File not found
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\NavLogon: DllName - (C:\WINDOWS\System32\NavLogon.dll) - C:\WINDOWS\system32\NavLogon.dll ()
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2001/10/02 13:32:22 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O33 - MountPoints2\{573dd560-f035-11e0-b0ac-00e07dd1e1a3}\Shell\AutoRun\command - "" = G:\Setup_FlipShare.exe
O33 - MountPoints2\{573dd560-f035-11e0-b0ac-00e07dd1e1a3}\Shell\Setup FlipShare\command - "" = G:\Setup_FlipShare.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2100/02/08 16:03:54 | 000,053,248 | ---- | C] (Silitek Corp.) -- C:\Program Files\ACMonitor_X73.exe
[2012/02/10 09:45:23 | 000,000,000 | ---D | C] -- C:\_OTL
[2012/02/09 22:13:34 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\dad\Desktop\OTL.exe
[2012/02/09 17:17:44 | 000,000,000 | --SD | C] -- C:\ComboFix
[2012/02/08 17:50:58 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2012/02/08 17:48:00 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2012/02/08 17:48:00 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2012/02/08 17:48:00 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2012/02/08 17:48:00 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2012/02/08 17:47:50 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/02/08 17:28:29 | 004,399,064 | R--- | C] (Swearware) -- C:\Documents and Settings\dad\Desktop\ComboFix.exe
[2012/02/08 14:33:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dad\Desktop\GETxPUD
[2012/02/08 13:24:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dad\Desktop\bootkit_remover
[2012/02/08 13:08:31 | 004,733,440 | ---- | C] (AVAST Software) -- C:\Documents and Settings\dad\Desktop\aswMBR.exe
[2012/02/01 14:05:18 | 000,607,260 | R--- | C] (Swearware) -- C:\Documents and Settings\dad\Desktop\dds.scr
[2012/02/01 12:36:16 | 000,000,000 | R--D | C] -- C:\Documents and Settings\dad\My Documents\My Music
[2012/01/31 09:42:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot_bak
[2012/01/27 16:20:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dad\Application Data\Malwarebytes
[2012/01/27 16:19:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/01/27 16:19:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2012/01/27 16:19:37 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/01/27 12:33:55 | 004,763,456 | ---- | C] (Sysinternals -
www.sysinternals.com) -- C:\Documents and Settings\dad\My Documents\procexp.exe
[2012/01/26 11:44:58 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2012/01/25 16:37:48 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\dad\Recent
[2005/12/09 16:09:01 | 000,774,144 | ---- | C] (RealNetworks, Inc.) -- C:\Program Files\RngInterstitial.dll
[2002/03/08 16:57:12 | 000,018,024 | ---- | C] ( ) -- C:\WINDOWS\System32\drivers\LXARScan.sys
========== Files - Modified Within 30 Days ==========
[2099/01/01 12:00:00 | 000,000,000 | ---- | M] () -- C:\WINDOWS\lpt8.vak
[2012/02/10 09:58:14 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/02/10 09:57:50 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/02/09 22:15:08 | 000,000,202 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2012/02/09 22:13:30 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dad\Desktop\OTL.exe
[2012/02/08 22:04:44 | 000,000,646 | ---- | M] () -- C:\Documents and Settings\dad\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2012/02/08 22:04:44 | 000,000,628 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2012/02/08 17:51:02 | 000,000,327 | RHS- | M] () -- C:\boot.ini
[2012/02/08 17:28:36 | 004,399,064 | R--- | M] (Swearware) -- C:\Documents and Settings\dad\Desktop\ComboFix.exe
[2012/02/08 16:44:50 | 000,000,707 | ---- | M] () -- C:\Documents and Settings\dad\Desktop\Internet Explorer.lnk
[2012/02/08 15:54:12 | 000,000,512 | ---- | M] () -- C:\Documents and Settings\dad\Desktop\MBR.dat
[2012/02/08 13:54:56 | 000,497,272 | ---- | M] () -- C:\Documents and Settings\dad\Desktop\GETxPUD.exe
[2012/02/08 13:39:54 | 000,303,403 | ---- | M] () -- C:\Documents and Settings\dad\Desktop\ListParts.exe
[2012/02/08 13:23:36 | 000,044,607 | ---- | M] () -- C:\Documents and Settings\dad\Desktop\bootkit_remover.zip
[2012/02/08 13:08:32 | 004,733,440 | ---- | M] (AVAST Software) -- C:\Documents and Settings\dad\Desktop\aswMBR.exe
[2012/02/06 15:46:16 | 000,000,000 | ---- | M] () -- C:\WINDOWS\MEMORY.DMP
[2012/02/06 11:48:48 | 000,595,864 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/02/06 11:48:48 | 000,112,260 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/02/05 16:48:46 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2012/02/04 12:23:54 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/02/01 14:04:48 | 000,607,260 | R--- | M] (Swearware) -- C:\Documents and Settings\dad\Desktop\dds.scr
[2012/02/01 10:50:40 | 000,000,688 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012/01/27 17:26:06 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\dad\Desktop\9q91w9sv.exe
[2012/01/27 12:34:00 | 004,763,456 | ---- | M] (Sysinternals -
www.sysinternals.com) -- C:\Documents and Settings\dad\My Documents\procexp.exe
[2012/01/27 11:55:30 | 000,000,042 | ---- | M] () -- C:\Documents and Settings\dad\My Documents\Default.PLS
[2012/01/12 20:19:12 | 000,001,633 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
========== Files Created - No Company Name ==========
[2099/01/01 12:00:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\lpt8.vak
[2012/02/08 22:04:42 | 000,000,634 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnk
[2012/02/08 22:04:42 | 000,000,628 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2012/02/08 17:51:00 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2012/02/08 17:50:59 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2012/02/08 17:48:00 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2012/02/08 17:48:00 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2012/02/08 17:48:00 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2012/02/08 17:48:00 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2012/02/08 17:48:00 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2012/02/08 16:44:49 | 000,000,707 | ---- | C] () -- C:\Documents and Settings\dad\Desktop\Internet Explorer.lnk
[2012/02/08 15:54:11 | 000,000,512 | ---- | C] () -- C:\Documents and Settings\dad\Desktop\MBR.dat
[2012/02/08 13:49:19 | 000,497,272 | ---- | C] () -- C:\Documents and Settings\dad\Desktop\GETxPUD.exe
[2012/02/08 13:39:51 | 000,303,403 | ---- | C] () -- C:\Documents and Settings\dad\Desktop\ListParts.exe
[2012/02/08 13:23:35 | 000,044,607 | ---- | C] () -- C:\Documents and Settings\dad\Desktop\bootkit_remover.zip
[2012/02/05 14:10:17 | 000,000,000 | ---- | C] () -- C:\WINDOWS\MEMORY.DMP
[2012/01/30 16:45:35 | 000,000,646 | ---- | C] () -- C:\Documents and Settings\dad\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2012/01/27 17:26:24 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\dad\Desktop\9q91w9sv.exe
[2012/01/27 16:19:55 | 000,000,688 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012/01/12 20:19:11 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader 9.lnk
[2012/01/12 20:19:11 | 000,001,633 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2011/09/30 10:55:04 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\HydraFra.dll
[2011/09/30 10:55:04 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\HydraEsp.dll
[2011/09/30 10:55:04 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\HydraPtb.dll
[2011/09/30 10:55:04 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\HydraNln.dll
[2011/09/30 10:55:04 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\HydraIta.dll
[2011/09/30 10:55:04 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\HydraSvs.dll
[2011/09/30 10:55:04 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\HydraNon.dll
[2011/09/30 10:55:04 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\HydraFif.dll
[2011/09/30 10:55:04 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\HydraDad.dll
[2011/09/30 10:55:04 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\HydraJan.dll
[2011/09/30 10:55:04 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\HydraKor.dll
[2011/09/30 10:55:04 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\HydraZht.dll
[2011/09/30 10:55:04 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\HydraZhs.dll
[2011/09/30 10:55:04 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\ViewHook.dll
[2011/04/11 09:46:21 | 000,819,200 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2011/04/11 09:46:21 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2011/04/07 12:09:10 | 000,000,613 | ---- | C] () -- C:\Documents and Settings\dad\Application Data\AutoGK.ini
[2010/09/20 10:06:25 | 000,048,612 | ---- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2010/09/06 18:55:57 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll
[2010/09/06 18:55:57 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys
[2010/09/06 18:55:48 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\dad\Application Data\$_hpcst$.hpc
[2010/07/10 16:05:18 | 000,103,511 | ---- | C] () -- C:\WINDOWS\hpoins04.dat
[2010/07/10 16:05:18 | 000,017,176 | ---- | C] () -- C:\WINDOWS\hpomdl04.dat
[2010/07/10 15:55:31 | 000,103,509 | ---- | C] () -- C:\WINDOWS\hpoins04.dat.temp
[2010/07/10 15:55:31 | 000,017,176 | ---- | C] () -- C:\WINDOWS\hpomdl04.dat.temp
[2010/05/14 14:02:08 | 000,000,107 | ---- | C] () -- C:\WINDOWS\VobEdit.INI
[2009/12/01 13:36:26 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\dad\Local Settings\Application Data\prvlcl.dat
[2009/11/23 20:54:29 | 000,262,144 | ---- | C] () -- C:\WINDOWS\System32\default_user_class.dat
[2009/10/27 21:58:16 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\dad\Local Settings\Application Data\housecall.guid.cache
[2009/08/21 16:58:40 | 000,122,880 | ---- | C] () -- C:\WINDOWS\System32\AitVirtualComInstall.exe
[2009/07/20 20:10:48 | 000,307,200 | ---- | C] () -- C:\WINDOWS\System32\InstallVCOM.exe
[2008/12/14 00:12:24 | 000,027,114 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2008/10/30 13:11:04 | 000,000,000 | ---- | C] () -- C:\WINDOWS\bbcauto.INI
[2008/07/08 13:07:31 | 000,004,096 | ---- | C] () -- C:\WINDOWS\System32\drivers\symlcbrd.sys
[2008/06/04 08:42:42 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ATIMMC.INI
[2008/05/12 09:42:53 | 000,000,035 | ---- | C] () -- C:\WINDOWS\FW_DN.INI
[2008/05/04 17:39:34 | 000,002,560 | ---- | C] () -- C:\WINDOWS\System32\ViaClassCoInstaller.dll_rename
[2007/10/25 17:26:10 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2007/09/12 12:35:51 | 000,000,257 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2007/08/03 20:03:10 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2007/08/01 10:53:18 | 000,000,011 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.ini
[2007/08/01 10:53:14 | 000,066,560 | ---- | C] () -- C:\WINDOWS\System32\atiyuv12.dll
[2006/10/08 01:42:01 | 000,001,053 | ---- | C] () -- C:\WINDOWS\yahtzee.ini
[2006/09/12 19:05:08 | 000,000,008 | ---- | C] () -- C:\Documents and Settings\dad\Application Data\NMM-MetaData.db
[2006/06/16 11:15:09 | 000,000,000 | ---- | C] () -- C:\WINDOWS\keyboard1.dat
[2006/05/27 17:44:06 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ITNetUtils.dll
[2006/05/27 17:44:05 | 000,149,504 | ---- | C] () -- C:\WINDOWS\System32\Unwise32.exe
[2006/05/27 17:44:05 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\diffiedll.dll
[2006/05/24 11:06:52 | 000,000,053 | ---- | C] () -- C:\WINDOWS\nbblwo.dat
[2006/05/22 10:44:52 | 000,000,335 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2006/05/22 10:43:39 | 000,000,024 | ---- | C] () -- C:\WINDOWS\atid.ini
[2006/05/06 23:06:03 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\Iyvu9_32.dll
[2006/03/14 07:49:54 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/01/13 17:22:28 | 000,000,202 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2006/01/07 21:09:00 | 000,000,658 | ---- | C] () -- C:\WINDOWS\IfoEdit.INI
[2005/10/03 19:39:49 | 000,000,040 | ---- | C] () -- C:\WINDOWS\RSoftInfo.dat
[2005/04/29 01:58:35 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI
[2005/04/01 01:45:08 | 000,000,359 | ---- | C] () -- C:\WINDOWS\morphstb.ini
[2005/03/27 14:56:40 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ump.INI
[2004/12/13 04:47:18 | 000,000,045 | ---- | C] () -- C:\WINDOWS\EIEEKNLJ.ini
[2004/10/12 01:24:12 | 000,009,136 | ---- | C] () -- C:\WINDOWS\System32\INETWH16.DLL
[2004/09/28 01:27:45 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/09/27 01:42:35 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat
[2004/03/17 07:57:33 | 000,000,013 | ---- | C] () -- C:\WINDOWS\edialer.ini
[2004/01/25 13:02:44 | 000,000,400 | ---- | C] () -- C:\WINDOWS\Belt.ini
[2004/01/06 14:03:05 | 000,000,020 | ---- | C] () -- C:\WINDOWS\usage.dat
[2003/12/14 12:36:20 | 001,048,576 | ---- | C] () -- C:\WINDOWS\System32\sfman.dat
[2003/11/29 13:07:49 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\HLINKPRX.DLL
[2003/10/20 18:20:38 | 000,000,431 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2003/10/09 18:38:50 | 000,647,168 | ---- | C] () -- C:\WINDOWS\System32\scorillont.dll
[2003/10/09 18:38:50 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\scorsock.dll
[2003/10/07 15:45:37 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\xmlparse.dll
[2003/09/28 20:14:08 | 000,000,000 | ---- | C] () -- C:\WINDOWS\MSREGUSR.INI
[2003/08/07 15:01:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll
[2003/07/27 18:31:07 | 000,000,095 | ---- | C] () -- C:\WINDOWS\pcconfig.dat
[2003/05/19 23:18:21 | 000,030,486 | ---- | C] () -- C:\WINDOWS\msview.ini
[2003/04/20 15:58:17 | 000,001,110 | ---- | C] () -- C:\WINDOWS\photoimpression.ini
[2003/04/20 15:58:17 | 000,000,332 | ---- | C] () -- C:\WINDOWS\videoimp.ini
[2003/04/17 18:04:28 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OPPRIN~1.INI
[2003/03/13 21:47:14 | 000,000,034 | ---- | C] () -- C:\WINDOWS\phone_var.ini
[2003/03/13 21:47:13 | 000,051,942 | ---- | C] () -- C:\WINDOWS\name_gender.ini
[2003/03/13 21:47:13 | 000,000,212 | ---- | C] () -- C:\WINDOWS\states.ini
[2003/03/13 21:47:13 | 000,000,069 | ---- | C] () -- C:\WINDOWS\zip_var.ini
[2003/03/13 21:47:12 | 000,000,058 | ---- | C] () -- C:\WINDOWS\birth_var.ini
[2003/03/13 21:47:12 | 000,000,037 | ---- | C] () -- C:\WINDOWS\name_var.ini
[2003/03/13 21:47:12 | 000,000,016 | ---- | C] () -- C:\WINDOWS\addr_var.ini
[2003/03/13 21:47:12 | 000,000,011 | ---- | C] () -- C:\WINDOWS\city_var.ini
[2003/01/11 17:14:06 | 000,000,045 | ---- | C] () -- C:\WINDOWS\Beatles.ini
[2003/01/11 16:49:32 | 000,016,384 | ---- | C] () -- C:\WINDOWS\System32\FileOps.exe
[2003/01/07 15:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
[2002/11/20 23:11:48 | 000,000,000 | ---- | C] () -- C:\WINDOWS\TEXTART.INI
[2002/11/12 19:37:14 | 000,007,880 | ---- | C] () -- C:\WINDOWS\JAMMERW.INI
[2002/11/04 05:11:16 | 000,000,028 | ---- | C] () -- C:\WINDOWS\OZPlay3.INI
[2002/11/02 09:49:15 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2002/10/27 16:39:48 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2002/10/24 03:07:39 | 000,000,068 | ---- | C] () -- C:\WINDOWS\hdkctnts.ini
[2002/10/15 15:54:04 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2002/10/11 14:23:46 | 000,001,100 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2002/10/09 06:40:10 | 000,014,336 | ---- | C] () -- C:\Documents and Settings\dad\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2002/10/03 22:06:04 | 000,129,024 | ---- | C] () -- C:\WINDOWS\UNWISE.EXE
[2002/09/28 14:43:42 | 000,000,004 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2002/09/28 14:36:38 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2002/09/27 13:12:49 | 000,029,803 | ---- | C] () -- C:\WINDOWS\afsdcell.ini
[2002/09/27 12:52:14 | 000,001,065 | ---- | C] () -- C:\WINDOWS\Winamp.ini
[2002/09/27 06:04:05 | 000,010,191 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2002/09/17 15:15:17 | 000,000,036 | ---- | C] () -- C:\WINDOWS\plugSpk.INI
[2002/09/17 14:46:52 | 000,000,132 | ---- | C] () -- C:\WINDOWS\SBWIN.INI
[2002/09/15 21:45:04 | 000,000,078 | ---- | C] () -- C:\WINDOWS\psuite.ini
[2002/09/15 20:54:15 | 000,061,678 | ---- | C] () -- C:\Documents and Settings\dad\Application Data\PFP100JPR.{PB
[2002/09/15 20:54:15 | 000,012,358 | ---- | C] () -- C:\Documents and Settings\dad\Application Data\PFP100JCM.{PB
[2002/08/19 21:05:25 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2002/04/23 14:47:33 | 000,000,052 | ---- | C] () -- C:\WINDOWS\intuprof.ini
[2002/04/23 14:47:32 | 000,000,639 | ---- | C] () -- C:\WINDOWS\QUICKEN.INI
[2002/04/15 10:43:50 | 000,000,208 | ---- | C] () -- C:\WINDOWS\PowerReg.dat
[2002/04/15 10:23:10 | 000,000,219 | ---- | C] () -- C:\WINDOWS\dgnsetup.ini
[2001/12/05 11:52:38 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\NavLogon.dll
[2001/10/26 20:50:02 | 000,032,752 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinxsxx.sys
[2001/10/26 20:49:46 | 000,020,960 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinttxx.sys
[2001/10/26 20:49:38 | 000,011,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinpdxx.sys
[2001/10/26 20:49:30 | 000,011,280 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinmdxx.sys
[2001/10/26 20:49:22 | 000,032,848 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinraxx.sys
[2001/10/26 20:48:52 | 000,060,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinbtxx.sys
[2001/10/26 20:47:30 | 000,065,024 | ---- | C] () -- C:\WINDOWS\System32\drivers\atinrvxx.sys
[2001/10/26 20:46:22 | 000,035,952 | ---- | C] () -- C:\WINDOWS\System32\drivers\atintuxx.sys
[2001/10/15 13:47:00 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\ati2evxx.exe
[2001/10/12 03:42:49 | 000,000,643 | ---- | C] () -- C:\WINDOWS\LEXSTAT.INI
[2001/10/02 14:15:53 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2001/10/02 14:05:04 | 000,000,887 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2001/10/02 13:36:00 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2001/10/02 13:28:50 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2001/10/02 13:21:39 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2001/10/02 13:20:38 | 000,220,040 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2001/10/02 13:14:44 | 000,595,864 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2001/10/02 13:14:44 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2001/10/02 13:14:44 | 000,112,260 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2001/10/02 13:14:44 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2001/10/02 13:14:36 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2001/10/02 13:14:25 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2001/10/02 13:14:25 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2001/10/02 13:14:13 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2001/09/27 17:17:40 | 000,028,160 | ---- | C] () -- C:\WINDOWS\System32\regcodec.exe
[2001/07/20 10:48:06 | 000,008,116 | ---- | C] () -- C:\Program Files\OSLO3071b2.USB
[2001/01/18 15:55:22 | 000,131,584 | ---- | C] () -- C:\WINDOWS\System32\Ptlic32.exe
[2000/12/05 15:56:34 | 000,114,688 | ---- | C] () -- C:\Program Files\lxarscan.dll
[2000/04/25 13:58:08 | 000,047,104 | ---- | C] () -- C:\WINDOWS\System32\Wrkgadm.exe
[2000/03/29 22:00:00 | 000,125,440 | ---- | C] () -- C:\WINDOWS\System32\UNZDLL.DLL
[2000/01/11 12:50:48 | 000,000,047 | ---- | C] () -- C:\Program Files\ACMonitor_X73.ini
[1999/08/11 15:28:02 | 000,101,888 | ---- | C] () -- C:\WINDOWS\System32\LIBBZ2.DLL
[1999/05/21 21:10:00 | 000,129,024 | ---- | C] () -- C:\WINDOWS\System32\ZIPDLL.DLL
[1999/04/20 03:15:00 | 000,022,016 | ---- | C] () -- C:\WINDOWS\unvise32.dll
[1998/01/28 00:06:04 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\UNACE.DLL
[1997/04/01 00:00:00 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\docobj.dll
[1980/01/01 00:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\OEMBIOS.BIN
[1980/01/01 00:00:00 | 002,931,304 | ---- | C] () -- C:\WINDOWS\Q317277.EXE
[1980/01/01 00:00:00 | 002,041,960 | ---- | C] () -- C:\WINDOWS\Q309521.EXE
[1980/01/01 00:00:00 | 000,641,640 | ---- | C] () -- C:\WINDOWS\Q318138.EXE
[1980/01/01 00:00:00 | 000,621,672 | ---- | C] () -- C:\WINDOWS\Q316134.EXE
[1980/01/01 00:00:00 | 000,599,144 | ---- | C] () -- C:\WINDOWS\Q315000.EXE
[1980/01/01 00:00:00 | 000,458,344 | ---- | C] () -- C:\WINDOWS\Q308677.EXE
[1980/01/01 00:00:00 | 000,359,016 | ---- | C] () -- C:\WINDOWS\Q308402.EXE
[1980/01/01 00:00:00 | 000,325,224 | ---- | C] () -- C:\WINDOWS\Q308678.EXE
[1980/01/01 00:00:00 | 000,311,912 | ---- | C] () -- C:\WINDOWS\Q320174.EXE
[1980/01/01 00:00:00 | 000,302,696 | ---- | C] () -- C:\WINDOWS\Q312370.EXE
[1980/01/01 00:00:00 | 000,292,968 | ---- | C] () -- C:\WINDOWS\Q309691.EXE
[1980/01/01 00:00:00 | 000,290,920 | ---- | C] () -- C:\WINDOWS\Q311889.EXE
[1980/01/01 00:00:00 | 000,234,088 | ---- | C] () -- C:\WINDOWS\Q314147.EXE
[1980/01/01 00:00:00 | 000,004,975 | ---- | C] () -- C:\WINDOWS\System32\OEMBIOS.DAT
[1980/01/01 00:00:00 | 000,000,503 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
========== LOP Check ==========
[2012/01/26 11:45:00 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2005/12/22 19:46:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap
[2006/04/22 03:03:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2007/01/16 00:05:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Winferno
[2008/05/02 15:31:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009/09/11 11:55:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DriverCure
[2009/09/11 11:55:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ParetoLogic
[2009/10/30 11:17:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}
[2010/07/14 22:20:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LightScribe
[2010/09/12 13:02:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2010/09/17 17:17:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Samsung
[2010/10/02 14:23:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2011/05/17 23:27:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IM
[2011/05/17 23:27:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IncrediMail
[2011/10/06 21:46:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Flip Video
[2011/10/23 12:03:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Tarma Installer
[2011/10/29 18:03:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fighters
[2012/01/09 19:05:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Leapfrog
[2003/10/08 02:02:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\Lycos
[2005/12/09 04:55:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\DownloadManager
[2006/01/13 18:29:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\Snapfish
[2006/02/12 04:22:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\PC Suite
[2006/05/03 22:23:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\Nokia Multimedia Player
[2006/05/24 11:39:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\wsInspector
[2006/12/22 10:52:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\Walgreens
[2007/04/16 09:59:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\Pegasys Inc
[2007/04/16 13:07:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\LEAPS
[2009/08/07 13:44:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010/11/15 14:20:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\playitall
[2010/12/14 10:25:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\Azureus
[2010/12/19 12:30:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\uTorrent
[2011/10/30 10:22:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\Fighters
[2011/11/10 13:21:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dad\Application Data\Leadertech
[2011/07/10 02:59:02 | 000,000,354 | ---- | M] () -- C:\WINDOWS\Tasks\Driver Robot.job
========== Purity Check ==========
< End of report >