Here is the OTL log file:
-----------------------------------------------------------------------------------------------------------------------------------------------------------------
OTL logfile created on: 11/8/2012 11:23:17 AM - Run
OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE
Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 82.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 95.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232.88 Gb Total Space | 200.25 Gb Free Space | 85.99% Space Free | Partition Type: NTFS
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
Using ControlSet: ControlSet003
========== Win32 Services (SafeList) ==========
SRV - [2012/10/24 05:54:35 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/07/17 11:02:11 | 000,148,520 | ---- | M] (McAfee, Inc.) [Auto] -- C:\WINDOWS\System32\mfevtps.exe -- (mfevtp)
SRV - [2012/07/17 11:02:10 | 000,166,024 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe -- (McShield)
SRV - [2012/05/08 13:03:31 | 000,090,112 | ---- | M] (Scalable Software, Inc.) [Auto] -- C:\Program Files\Scalable Software\Survey\SSI Survey Client\surveyclientnt.exe -- (SSI Survey Client)
SRV - [2012/05/08 12:59:09 | 000,512,000 | ---- | M] (Scalable Software, Inc.) [On_Demand] -- C:\WINDOWS\system32\SCInstallerNT.exe -- (SSI Client Installer)
SRV - [2011/11/15 16:06:00 | 000,132,672 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\McAfee\Common Framework\FrameworkService.exe -- (McAfeeFramework)
SRV - [2011/09/14 20:08:00 | 000,209,760 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe -- (McTaskManager)
SRV - [2010/07/19 13:27:36 | 000,068,160 | ---- | M] () [Auto] -- C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe -- (Power Manager DBC Service)
SRV - [2010/04/07 11:12:04 | 000,241,688 | ---- | M] (DameWare Development LLC) [Auto] -- C:\WINDOWS\System32\DWRCS.EXE -- (DWMRCS)
SRV - [2010/01/12 10:07:44 | 000,033,792 | ---- | M] (Palm) [Auto] -- C:\Program Files\Palm, Inc\novacom\x86\novacomd.exe -- (NovacomD)
SRV - [2009/12/14 17:28:42 | 000,222,528 | ---- | M] (McAfee, Inc.) [Auto] -- C:\Program Files\McAfee\SiteAdvisor Enterprise\McSACore.exe -- (McAfee SiteAdvisor Enterprise Service)
SRV - [2009/09/18 04:00:00 | 000,764,768 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\CCM\CcmExec.exe -- (CcmExec)
SRV - [2009/09/18 04:00:00 | 000,246,624 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\System32\CCM\TSManager.exe -- (smstsmgr)
SRV - [2009/06/12 10:55:48 | 000,028,672 | ---- | M] (Lenovo Group Limited) [Auto] -- C:\Program Files\Lenovo\System Update\SUService.exe -- (SUService)
SRV - [2008/07/21 15:46:28 | 002,054,680 | ---- | M] (Intel Corporation) [Auto] -- C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe -- (UNS) Intel(R)
SRV - [2008/07/21 15:46:16 | 000,174,616 | ---- | M] (Intel Corporation) [Auto] -- C:\Program Files\Intel\AMT\LMS.exe -- (LMS) Intel(R)
SRV - [2007/09/26 17:34:46 | 000,644,408 | ---- | M] (Lenovo Group Limited) [Auto] -- C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe -- (ThinkVantage Registry Monitor Service)
SRV - [2005/02/15 17:24:42 | 000,058,672 | ---- | M] (NetManage Incorporated) [Auto] -- C:\WINDOWS\system32\wdnpsvc.exe -- (Wdworkstation)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand] -- -- (USBAAPL)
DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP)
DRV - File not found [Kernel | System] -- -- (PCIDump)
DRV - File not found [Kernel | System] -- -- (mferkdk)
DRV - File not found [Kernel | On_Demand] -- -- (mfeavfk01)
DRV - File not found [Kernel | System] -- -- (lbrtfdc)
DRV - File not found [Kernel | System] -- -- (i2omgmt)
DRV - File not found [Kernel | System] -- -- (Changer)
DRV - [2012/07/17 11:02:11 | 000,461,864 | ---- | M] (McAfee, Inc.) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2012/07/17 11:02:11 | 000,089,624 | ---- | M] (McAfee, Inc.) [Kernel | System] -- C:\WINDOWS\system32\drivers\mfetdi2k.sys -- (mfetdi2k)
DRV - [2012/07/17 11:02:11 | 000,087,808 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\mferkdet.sys -- (mferkdet)
DRV - [2012/07/17 11:02:10 | 000,180,072 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk)
DRV - [2012/07/17 11:02:10 | 000,119,968 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\mfeapfk.sys -- (mfeapfk)
DRV - [2012/07/17 11:02:10 | 000,059,288 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk)
DRV - [2012/01/13 09:45:36 | 000,047,176 | R--- | M] (Silicon Laboratories) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\silabenm.sys -- (silabenm)
DRV - [2012/01/13 09:45:35 | 000,058,112 | R--- | M] (Silicon Laboratories) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\silabser.sys -- (silabser)
DRV - [2011/02/21 17:37:45 | 000,229,208 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\VMM.sys -- (vmm)
DRV - [2009/09/18 04:00:00 | 000,020,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\CCM\PrepDrv.sys -- (prepdrvr)
DRV - [2009/04/22 17:04:18 | 000,008,704 | ---- | M] (Analog Devices, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2009/04/20 16:36:18 | 000,327,192 | ---- | M] (Intel Corporation) [Kernel | Boot] -- C:\WINDOWS\System32\drivers\iastor86.sys -- (iastor86)
DRV - [2008/10/24 10:32:24 | 000,149,600 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\e1k5132.sys -- (e1kexpress) Intel(R)
DRV - [2008/10/20 20:08:06 | 000,012,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\smsmdm.sys -- (smsmdd)
DRV - [2008/10/07 23:23:04 | 000,030,816 | ---- | M] (Intel Corporation ) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\iqvw32.sys -- (NAL)
DRV - [2008/03/28 12:42:12 | 000,040,832 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\HECI.sys -- (HECI) Intel(R)
DRV - [2008/02/10 17:49:10 | 000,018,048 | ---- | M] (Winbond Electronics Corp.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\tpm.sys -- (TPM)
DRV - [2007/02/19 00:56:46 | 000,021,376 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\psadd.sys -- (psadd)
DRV - [2007/02/15 06:00:00 | 000,026,624 | ---- | M] (DameWare) [Kernel | System] -- C:\WINDOWS\system32\drivers\dwvkbd.sys -- (dwvkbd)
DRV - [2007/02/07 06:00:00 | 000,003,712 | ---- | M] (DameWare Development, LLC) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\DamewareMini.sys -- (DwMirror)
DRV - [2007/01/29 07:20:34 | 000,059,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\VMNetSrv.sys -- (VPCNetS2)
DRV - [2006/11/02 07:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
DRV - [2006/10/14 09:56:46 | 000,014,592 | ---- | M] (Primax Electronics Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\PELUSBLF.SYS -- (pelusblf)
DRV - [2006/09/14 10:48:58 | 000,016,768 | ---- | M] (Primax Electronics Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\PELMOUSE.SYS -- (pelmouse)
DRV - [2005/02/15 17:49:18 | 000,004,784 | ---- | M] (NetManage Incorporated) [Kernel | Auto] -- C:\WINDOWS\System32\drivers\WDHLLKNL.SYS -- (WDHLLKNL)
DRV - [2005/02/15 17:38:28 | 000,026,964 | ---- | M] (NetManage Incorporated) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\TwxWD.sys -- (TWXWD)
DRV - [2005/02/15 17:24:40 | 000,267,056 | ---- | M] (NetManage Incorporated) [File_System | On_Demand] -- C:\WINDOWS\System32\drivers\mrxwdnp.sys -- (MRXWDRDR)
DRV - [2005/02/15 16:57:50 | 000,018,424 | ---- | M] (NetManage Incorporated) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\coax.sys -- (COAX)
DRV - [2005/02/15 16:54:06 | 000,017,828 | ---- | M] (NetManage Incorporated) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\rmbs.sys -- (RMBS)
DRV - [2001/08/17 12:11:02 | 000,153,631 | ---- | M] (3Com Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\el90xnd5.sys -- (EL90X)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Administrator.039-PC1160_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\Administrator.039-PC1160_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = cx039a.na.sysco.net:80
IE - HKU\awat6898_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\ctdrk039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\ctdrk039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\ctdrk039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\ctdrk039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\ctdrk039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\ctmaj039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\ctmaj039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\ctmaj039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\ctmaj039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\ctmaj039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\icymm039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\icymm039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\icymm039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\icymm039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\icymm039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\iscrs039_ON_C\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
http://encrypted.google.com/ [binary data]
IE - HKU\iscrs039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\iscrs039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\iscrs039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\iscrs039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\ismjj039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\ismjj039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\ismjj039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\ismjj039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\jcoll4511_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\jcoll4511_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\jcoll4511_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\jcoll4511_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\jcoll4511_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\LocalService_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\mbas9764_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\mbas9764_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\mbas9764_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\mbas9764_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\NetworkService_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\rhud2803_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\rhud2803_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\rhud2803_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\rhud2803_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\rhud2803_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\svc_iowa_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\svc_iowa_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\svc_iowa_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\svc_iowa_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\svc_iowa_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\trjlk039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\trjlk039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
IE - HKU\trjlk039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\trjlk039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\trjlk039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\trjmg039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\trjmg039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\trjmg039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\trjmg039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\trjmg039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\trjrh039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\trjrh039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\trjrh039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\trjrh039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\trjrh039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\whbab039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\whbab039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\whbab039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\whbab039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\whbab039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\whdjg039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\whdjg039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\whdjg039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\whdjg039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\whdjg039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\whjxp039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\whjxp039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\whjxp039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\whjxp039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\whjxp039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\whlat039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\whlat039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\whlat039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\whlat039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\whlat039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\whlmd039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\whlmd039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\whlmd039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\whlmd039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\whlmd039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
IE - HKU\whtss039_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://intranet.sysco.com
IE - HKU\whtss039_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page =
http://intranet.sysco.com
IE - HKU\whtss039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\whtss039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 10.*;*.sysco.net;dw.sysco.com;go.sysco.com;vpn.sysco.com;etools.sysco.com;ecmcs.*;ecm.*;myoffice.*;mysysco.*;ms247*;update.nai.com;vpncc.sysco.com;gotest.sysco.com;marketmover.sysco.com;<local>
IE - HKU\whtss039_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=cx039a.na.sysco.net:80;https=cx039a.na.sysco.net:80;ftp=cx039a.na.sysco.net:80
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\
google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor Enterprise\ [2011/09/30 10:00:49 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{D19CA586-DD6C-4a0a-96F8-14644F340D60}: C:\Program Files\Common Files\McAfee\SystemCore [2012/11/02 12:26:27 | 000,000,000 | ---D | M]
O1 HOSTS File: ([2004/08/04 06:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20120717110310.dll (McAfee, Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll (Google Inc.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll (McAfee, Inc.)
O4 - HKLM..\Run: [McAfeeUpdaterUI] C:\Program Files\McAfee\Common Framework\udaterui.exe (McAfee, Inc.)
O4 - HKLM..\Run: [Mouse Suite 98 Daemon] C:\WINDOWS\System32\ico.exe (TPMX Electronics Ltd.)
O4 - HKLM..\Run: [PostCopy] C:\WINDOWS\system32\BELKIN\F5D5050\PostCopy.exe ()
O4 - HKLM..\Run: [PWRAGD] C:\Program Files\ThinkPad\Utilities\DPMHost.EXE ()
O4 - HKLM..\Run: [PWRMGRTR] C:\Program Files\ThinkPad\Utilities\PWRMGRTR.DLL (Lenovo Group Limited)
O4 - HKLM..\Run: [ShStatEXE] C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE (McAfee, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] File not found
O4 - HKLM..\Run: [VMM Mode Selection] C:\Program Files\HTC\ModeSelection\VMMModeSelection.exe ()
O4 - HKU\.DEFAULT..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\Communicator.exe (Microsoft Corporation)
O4 - HKU\iscrs039_ON_C..\Run: [TouchFreeze] C:\Program Files\TouchFreeze\TouchFreeze.exe ()
O4 - HKU\LocalService_ON_C..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\Communicator.exe (Microsoft Corporation)
O4 - HKU\NetworkService_ON_C..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\Communicator.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Administrator.039-PC1160_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\awat6898_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\ctdrk039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\ctmaj039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\icymm039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\iscrs039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\ismjj039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\jcoll4511_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\LocalService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\mbas9764_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\rhud2803_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\svc_iowa_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\trjlk039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\trjmg039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\trjrh039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\whbab039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\whdjg039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\whjxp039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\whlat039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\whlmd039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\whtss039_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089}
http://office.microsoft.com/sites/production/ieawsdc32.cab (Microsoft Office Template and Media Control)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {3D3B42C2-11BF-4732-A304-A01384B70D68}
http://picasaweb.google.com/s/v/70.11/uploader2.cab (UploadListView Class)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967}
http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.7.cab (DLM Control)
O16 - DPF: {57F867E0-774E-488B-A93C-856BEA66668F}
https://www.xatanet.net/XataNet/XATA XML Core.cab (XataXMLCore.XMLCore)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1279203156799 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1279203116892 (MUWebControl Class)
O16 - DPF: {82774781-8F4E-11D1-AB1C-0000F8773BF0}
https://transfers.ds.microsoft.com/FTM/TransferSource/grTransferCtrl.cab (DLC Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {8EC5D5F5-4D7D-435F-A578-A08B2F47A8D3}
https://www.xatanet.net/XataNet/XATA Trip Control.cab (XataClientCacheVer Class)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {B8B4778E-2B10-44BE-A9BB-F20EDC5C48C8}
http://survey.na.sysco.net/SSISurvey/applet/SSIWrapper.cab (Grid Class)
O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.39.64.201 10.201.19.179
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = na.sysco.net
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll (McAfee, Inc.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/04/21 09:33:45 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2006/03/24 06:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012/11/08 07:53:24 | 000,000,000 | ---D | C] -- C:\FRST
[2012/10/25 17:16:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\whjxp039\Start Menu\Programs\CleanUp!
[2012/10/25 17:16:39 | 000,000,000 | ---D | C] -- C:\Program Files\CleanUp!
[2010/09/10 13:24:27 | 000,004,096 | ---- | C] ( ) -- C:\WINDOWS\System32\IGFXDEVLib.dll
[49 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[34 C:\WINDOWS\System32\dllcache\*.tmp files -> C:\WINDOWS\System32\dllcache\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/11/06 10:04:02 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/11/05 06:49:00 | 000,000,428 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{FCAF0E76-02E6-4990-8072-D7632F31EE30}.job
[2012/11/05 06:48:59 | 000,001,848 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SSIHistory.dat
[2012/11/05 06:48:51 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2012/11/05 06:48:31 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cd0764c7317587.job
[2012/11/05 06:48:10 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/11/05 03:36:51 | 000,000,245 | RHS- | M] () -- C:\boot.ini
[2012/11/02 13:32:08 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1cd0764c73d6112.job
[2012/11/02 13:27:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012/11/02 12:29:58 | 000,514,364 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/11/02 12:29:58 | 000,092,940 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/11/02 12:29:22 | 000,002,521 | ---- | M] () -- C:\Documents and Settings\rhud2803\Desktop\Microsoft Office Outlook 2003.lnk
[2012/11/02 12:26:50 | 000,000,463 | ---- | M] () -- C:\WINDOWS\smscfg.ini
[2012/11/02 05:52:05 | 000,009,422 | RHS- | M] () -- C:\Documents and Settings\rhud2803\ntuser.pol
[2012/10/26 05:48:11 | 000,002,272 | ---- | M] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2012/10/25 05:59:46 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2012/10/16 15:07:36 | 000,009,422 | RHS- | M] () -- C:\Documents and Settings\whjxp039\ntuser.pol
[49 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[34 C:\WINDOWS\System32\dllcache\*.tmp files -> C:\WINDOWS\System32\dllcache\*.tmp -> ]