NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
Drivers32: msacm.clmp3enc - C:\Program Files\Lenovo\Power2Go\CLMP3Enc.ACM (CyberLink Corp.)
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\Windows\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv50 - C:\Windows\System32\ir50_32.dll (Intel Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011-09-30 11:50:55 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011-09-30 11:50:53 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011-09-30 11:49:26 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\Desktop\sid
[2011-09-30 11:25:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2011-09-30 11:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2011-09-30 11:17:58 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011-09-29 21:05:54 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011-09-28 17:59:33 | 000,150,392 | ---- | C] (Sysinternals -
www.sysinternals.com) -- C:\Windows\junction.exe
[2011-09-26 18:53:25 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011-09-26 18:53:25 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011-09-26 18:53:25 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011-09-26 18:53:10 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011-09-26 18:53:01 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011-09-25 23:53:18 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2011-09-25 17:43:53 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\AppData\Roaming\Malwarebytes
[2011-09-25 17:43:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011-09-25 17:43:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011-09-25 17:43:00 | 000,022,216 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011-09-25 17:43:00 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011-09-25 16:45:29 | 000,000,000 | ---D | C] -- C:\ProgramData\XoftSpySE
[2011-09-25 13:18:16 | 000,000,000 | ---D | C] -- C:\Windows\Internet Logs
[2011-09-25 02:37:36 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2011-09-25 02:36:23 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\AppData\Roaming\SUPERAntiSpyware.com
[2011-09-25 02:36:23 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2011-09-25 02:19:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XoftSpy
[2011-09-25 02:19:13 | 000,000,000 | ---D | C] -- C:\Program Files\XoftSpy
[2011-09-25 01:49:21 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\AppData\Local\Mozilla
[2011-09-25 01:48:17 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2011-09-25 00:46:00 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\Documents\ForceField Shared Files
[2011-09-25 00:45:58 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\AppData\Roaming\CheckPoint
[2011-09-25 00:45:26 | 000,000,000 | ---D | C] -- C:\Program Files\CheckPoint
[2011-09-25 00:41:52 | 000,000,000 | ---D | C] -- C:\ProgramData\CheckPoint
[2011-09-24 23:46:46 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2011-09-24 23:41:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2011-09-24 23:41:15 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2011-09-24 22:42:26 | 008,393,472 | ---- | C] (Safer Networking Limited ) -- C:\Users\Jagdish\Desktop\spybotsd162.exe
[2011-09-15 09:31:29 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\AppData\Roaming\Mozilla
[2011-09-04 23:25:19 | 000,000,000 | -HSD | C] -- C:\Users\Jagdish\Network
[2011-09-03 16:23:28 | 000,000,000 | ---D | C] -- C:\Users\Jagdish\Desktop\asdf
========== Files - Modified Within 30 Days ==========
[2011-10-02 11:43:00 | 000,000,916 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2690704196-4028234597-4272532801-1004UA1cb6e4f8556f760.job
[2011-10-02 11:43:00 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011-10-02 11:35:13 | 000,000,916 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2690704196-4028234597-4272532801-1004UA.job
[2011-10-02 11:34:42 | 000,002,014 | ---- | M] () -- C:\Users\Jagdish\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011-10-02 11:34:41 | 000,002,052 | ---- | M] () -- C:\Users\Jagdish\Desktop\Google Chrome.lnk
[2011-10-02 09:59:48 | 000,049,965 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2011-10-02 09:59:48 | 000,049,965 | ---- | M] () -- C:\ProgramData\nvModes.001
[2011-10-02 09:55:01 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011-10-02 09:54:37 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011-10-02 09:54:37 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011-10-02 09:54:31 | 000,000,066 | -HS- | M] () -- C:\_PartitionInfo
[2011-10-02 09:54:29 | 000,065,536 | ---- | M] () -- C:\Windows\System32\Ikeext.etl
[2011-10-02 09:54:25 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-10-01 16:33:00 | 000,000,864 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2690704196-4028234597-4272532801-1004Core.job
[2011-10-01 15:55:36 | 000,033,280 | ---- | M] () -- C:\Users\Jagdish\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-10-01 11:26:13 | 000,051,186 | ---- | M] () -- C:\Users\Jagdish\AppData\Roaming\room_v3.dat
[2011-09-30 15:57:58 | 000,000,052 | ---- | M] () -- C:\Windows\System32\ashttpstats.csv
[2011-09-30 15:57:33 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2011-09-30 11:50:55 | 000,001,630 | ---- | M] () -- C:\Users\Jagdish\Desktop\CCleaner.lnk
[2011-09-30 11:25:06 | 000,001,838 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
[2011-09-29 21:43:00 | 000,000,864 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2690704196-4028234597-4272532801-1004Core1cb6e4f8169deb0.job
[2011-09-29 07:21:01 | 000,662,950 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011-09-29 07:21:01 | 000,128,982 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011-09-27 21:14:50 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2011-09-26 18:04:46 | 000,000,512 | ---- | M] () -- C:\Users\Jagdish\Documents\MBR.dat
[2011-09-25 23:56:10 | 000,000,355 | ---- | M] () -- C:\Users\Jagdish\Desktop\Documents - Shortcut.lnk
[2011-09-25 17:43:08 | 000,000,778 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011-09-25 12:53:54 | 000,000,000 | ---- | M] () -- C:\Users\Jagdish\AppData\Local\{D4C067A0-90A6-454C-89D4-9DAF23E90A7C}
[2011-09-25 12:51:11 | 000,000,000 | ---- | M] () -- C:\Users\Jagdish\AppData\Local\{51AED1C3-F61B-4EB3-9E20-0B063DA7EB2A}
[2011-09-25 01:48:47 | 000,000,830 | ---- | M] () -- C:\Users\Jagdish\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011-09-25 01:48:47 | 000,000,806 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011-09-24 22:53:54 | 008,393,472 | ---- | M] (Safer Networking Limited ) -- C:\Users\Jagdish\Desktop\spybotsd162.exe
[2011-09-20 21:30:02 | 009,880,498 | ---- | M] () -- C:\Users\Jagdish\Desktop\Akcent - Stay With Me.mp3
[2011-09-15 03:06:31 | 000,000,118 | ---- | M] () -- C:\Windows\System32\MRT.INI
[2011-09-03 16:23:03 | 000,056,763 | ---- | M] () -- C:\Users\Jagdish\Desktop\WarKey64_EN.rar
========== Files Created - No Company Name ==========
[2011-09-30 11:50:55 | 000,001,630 | ---- | C] () -- C:\Users\Jagdish\Desktop\CCleaner.lnk
[2011-09-30 11:25:06 | 000,001,838 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
[2011-09-26 18:53:25 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011-09-26 18:53:25 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011-09-26 18:53:25 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011-09-26 18:53:25 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011-09-26 18:53:25 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011-09-26 18:04:46 | 000,000,512 | ---- | C] () -- C:\Users\Jagdish\Documents\MBR.dat
[2011-09-25 23:56:10 | 000,000,355 | ---- | C] () -- C:\Users\Jagdish\Desktop\Documents - Shortcut.lnk
[2011-09-25 17:43:08 | 000,000,778 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011-09-25 12:53:54 | 000,000,000 | ---- | C] () -- C:\Users\Jagdish\AppData\Local\{D4C067A0-90A6-454C-89D4-9DAF23E90A7C}
[2011-09-25 12:51:11 | 000,000,000 | ---- | C] () -- C:\Users\Jagdish\AppData\Local\{51AED1C3-F61B-4EB3-9E20-0B063DA7EB2A}
[2011-09-25 01:48:47 | 000,000,830 | ---- | C] () -- C:\Users\Jagdish\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011-09-25 01:48:47 | 000,000,818 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011-09-25 01:48:47 | 000,000,806 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011-09-20 21:27:04 | 009,880,498 | ---- | C] () -- C:\Users\Jagdish\Desktop\Akcent - Stay With Me.mp3
[2011-09-15 03:06:31 | 000,000,118 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2011-09-03 16:23:03 | 000,056,763 | ---- | C] () -- C:\Users\Jagdish\Desktop\WarKey64_EN.rar
[2011-08-22 12:10:57 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2011-07-03 19:26:46 | 000,000,000 | ---- | C] () -- C:\Users\Jagdish\AppData\Roaming\Application.set
[2011-06-08 14:30:34 | 000,051,186 | ---- | C] () -- C:\Users\Jagdish\AppData\Roaming\room_v3.dat
[2011-04-28 02:45:43 | 000,000,000 | ---- | C] () -- C:\Windows\YAHELITE_cookie.INI
[2011-04-02 10:34:55 | 000,004,096 | -H-- | C] () -- C:\Users\Jagdish\AppData\Local\keyfile3.drm
[2011-03-08 14:41:06 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2011-03-08 14:41:04 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll
[2011-03-08 14:41:04 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll
[2011-03-08 14:41:04 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll
[2011-03-08 14:41:04 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll
[2011-02-18 16:22:39 | 000,024,206 | ---- | C] () -- C:\Users\Jagdish\AppData\Roaming\UserTile.png
[2010-12-11 23:21:45 | 000,000,400 | ---- | C] () -- C:\Windows\g_iclink399.ini
[2010-12-11 23:21:45 | 000,000,400 | ---- | C] () -- C:\Windows\System32\drivers\bcompbg936.dat
[2010-11-18 17:12:06 | 000,000,025 | ---- | C] () -- C:\Users\Jagdish\AppData\Roaming\bdfvconp.ini
[2010-10-27 03:23:38 | 000,200,704 | ---- | C] () -- C:\Windows\System32\BongoSDK.10.v40.dll
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\wsbl.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\phar_unmip.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\phar_histprot.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_white.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_summ.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\ph_black.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pcwords2.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pcwords.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_webproxy.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_video.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_tabloids.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_socialnetworks.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_searchengines.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_regionaltlds.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_pornography.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlineshop.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlinepay.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlinedating.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_news.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_im.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_illegal.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_hate.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_games.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_gambling.dat
[2010-10-19 18:33:56 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_drugs.dat
[2010-10-18 03:11:05 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010-10-09 11:17:14 | 000,000,016 | ---- | C] () -- C:\Windows\System32\asdict.dat
[2010-10-09 11:17:14 | 000,000,004 | ---- | C] () -- C:\Windows\System32\aspdict-en.dat
[2010-10-08 22:31:39 | 000,001,356 | ---- | C] () -- C:\Users\Jagdish\AppData\Local\d3d9caps.dat
[2010-10-07 00:46:09 | 000,000,132 | ---- | C] () -- C:\Windows\System32\rezumatenoi.dat
[2010-09-09 12:39:29 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010-09-09 12:39:29 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010-09-09 12:38:51 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2010-08-29 15:50:38 | 000,033,280 | ---- | C] () -- C:\Users\Jagdish\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-01-15 12:45:34 | 000,181,248 | ---- | C] () -- C:\Windows\System32\txmlutil.dll
[2008-09-05 09:22:03 | 000,049,965 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2008-09-05 09:22:03 | 000,049,965 | ---- | C] () -- C:\ProgramData\nvModes.001
[2008-09-05 09:09:52 | 009,338,880 | ---- | C] () -- C:\Windows\System32\Facev.dll
[2008-09-05 09:09:52 | 000,491,520 | ---- | C] () -- C:\Windows\System32\picn.dll
[2008-09-05 09:09:52 | 000,208,896 | ---- | C] () -- C:\Windows\System32\image.dll
[2008-09-05 09:09:51 | 000,655,360 | ---- | C] () -- C:\Windows\System32\EncIcons.dll
[2008-09-05 09:09:51 | 000,507,904 | ---- | C] () -- C:\Windows\System32\SimpleExt.dll
[2008-09-05 09:09:51 | 000,241,752 | ---- | C] () -- C:\Windows\System32\IcnOvrly.dll
[2008-09-05 09:09:51 | 000,053,248 | ---- | C] () -- C:\Windows\System32\FunFrm.dll
[2008-09-05 09:09:50 | 009,502,720 | ---- | C] () -- C:\Windows\System32\FaceVerify.dll
[2008-09-05 09:09:50 | 001,974,272 | ---- | C] () -- C:\Windows\System32\Imagereog.dll
[2008-09-05 09:09:50 | 001,564,672 | ---- | C] () -- C:\Windows\System32\MainOp.dll
[2008-09-05 09:09:50 | 000,581,632 | ---- | C] () -- C:\Windows\System32\PicNotify.dll
[2008-09-05 09:09:50 | 000,442,368 | ---- | C] () -- C:\Windows\System32\Apblend.dll
[2008-09-05 09:09:50 | 000,221,184 | ---- | C] () -- C:\Windows\System32\SetDev.dll
[2008-09-05 09:09:50 | 000,126,976 | ---- | C] () -- C:\Windows\System32\VideoOp.dll
[2008-09-05 09:09:50 | 000,094,208 | ---- | C] () -- C:\Windows\System32\Momo.dll
[2008-09-05 09:09:50 | 000,049,152 | ---- | C] () -- C:\Windows\System32\DevFilt.dll
[2008-09-05 09:09:05 | 000,057,344 | ---- | C] () -- C:\Windows\AsfHelper.dll
[2008-09-05 09:09:05 | 000,044,544 | ---- | C] () -- C:\Windows\System32\drivers\funfrm.sys
[2008-09-05 09:08:38 | 000,241,664 | ---- | C] () -- C:\Windows\System32\3DImageRenderer.dll
[2008-09-05 08:29:58 | 000,015,190 | ---- | C] () -- C:\Windows\M3000Twn.ini
[2008-09-05 08:28:00 | 000,266,240 | ---- | C] () -- C:\Windows\System32\EMSC.DLL
[2008-09-05 07:28:28 | 000,000,012 | ---- | C] () -- C:\Windows\bthservsdp.dat
[2008-08-05 08:24:45 | 000,002,144 | ---- | C] () -- C:\Windows\System32\drivers\CDConfig.bin
[2008-07-30 05:09:22 | 000,036,864 | ---- | C] () -- C:\Windows\sWelCntr.exe
[2008-06-06 10:48:31 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2008-05-22 03:34:04 | 000,008,832 | ---- | C] () -- C:\Windows\System32\drivers\Wdkbdmou.sys
[2007-04-16 15:54:16 | 000,023,752 | ---- | C] () -- C:\Windows\System32\providers.bin
[2007-01-31 13:50:32 | 000,913,408 | ---- | C] () -- C:\Windows\System32\xreglib.dll
[2006-11-02 18:27:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006-11-02 18:17:37 | 001,893,968 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006-11-02 18:05:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006-11-02 16:03:01 | 000,662,950 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006-11-02 16:03:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006-11-02 16:03:01 | 000,128,982 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006-11-02 16:03:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006-11-02 15:53:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006-11-02 14:28:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006-11-02 13:49:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006-11-02 13:10:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006-11-02 12:55:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2003-01-03 02:04:00 | 000,000,745 | ---- | C] () -- C:\Windows\System32\drivers\fcompbg361.sys
[2002-02-06 04:08:00 | 000,000,745 | ---- | C] () -- C:\Windows\f_iclink365.ini
[2001-11-15 02:26:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll
[2001-03-09 06:12:00 | 000,000,745 | ---- | C] () -- C:\Windows\System32\g_iecdi32_404.dll
[2000-04-12 08:16:00 | 000,000,745 | ---- | C] () -- C:\Windows\System32\drivers\caxext_149.sys
[1999-05-15 10:20:00 | 000,000,745 | ---- | C] () -- C:\Windows\System32\d_comsvrb_196.dll
[1998-06-18 12:24:00 | 000,000,745 | ---- | C] () -- C:\Windows\System32\aghrtg188.dat
========== LOP Check ==========
[2010-10-18 03:11:49 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\acccore
[2010-08-29 18:20:22 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\ApexDC++
[2011-02-16 00:00:19 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\Autodesk
[2010-10-07 00:30:48 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\BitDefender
[2011-06-27 15:20:15 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\Camfrog
[2011-09-25 00:45:58 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\CheckPoint
[2011-01-27 19:58:40 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\DAEMON Tools Pro
[2010-08-28 19:43:11 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\Lenovo
[2011-06-27 17:24:09 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\ManyCam
[2010-12-11 23:31:53 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\McNeel
[2011-02-18 16:05:35 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\MessengerGadget
[2010-11-28 22:01:50 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\mkvtoolnix
[2011-05-25 10:41:34 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\Opera
[2011-04-22 06:47:12 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\Samsung
[2011-05-13 18:01:20 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\TeraCopy
[2011-09-22 17:04:41 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\Thinstall
[2011-10-02 09:59:43 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\uTorrent
[2011-07-10 10:00:05 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\VitySoft
[2011-05-02 20:37:32 | 000,000,000 | ---D | M] -- C:\Users\Jagdish\AppData\Roaming\Xilisoft
[2011-09-30 15:57:36 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Custom Scans ==========
< %SYSTEMDRIVE%\*.* >
[2011-02-15 23:36:16 | 000,175,114 | ---- | M] () -- C:\acadminidump.dmp
[2006-09-19 03:13:36 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2011-09-16 16:23:04 | 000,037,339 | ---- | M] () -- C:\bdlog.txt
[2009-04-11 12:06:36 | 000,333,257 | RHS- | M] () -- C:\bootmgr
[2008-02-04 03:04:03 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2011-09-29 21:07:29 | 000,024,529 | ---- | M] () -- C:\ComboFix.txt
[2006-09-19 03:13:37 | 000,000,010 | ---- | M] () -- C:\config.sys
[2011-10-02 09:55:35 | 001,270,061 | ---- | M] () -- C:\FaceProv.log
[2011-09-25 00:28:22 | 000,000,180 | ---- | M] () -- C:\INSTALL.LOG
[2010-12-11 23:29:19 | 000,000,030 | ---- | M] () -- C:\installer_utilities_log.txt
[2010-09-09 11:09:26 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-10-18 03:02:41 | 000,000,375 | -H-- | M] () -- C:\IPH.PH
[2010-09-09 11:09:26 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011-10-02 09:54:17 | 2447,228,928 | -HS- | M] () -- C:\pagefile.sys
[2011-10-02 11:43:00 | 013,068,063 | ---- | M] () -- C:\sysiclog.txt
[2011-04-14 01:22:36 | 026,714,775 | ---- | M] () -- C:\sysiclog.txt.bak
[2005-07-06 11:14:10 | 000,000,496 | ---- | M] () -- C:\sysprep
[2011-10-02 09:54:31 | 000,000,066 | -HS- | M] () -- C:\_PartitionInfo
< %systemroot%\Fonts\*.com >
[2006-11-02 18:07:12 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006-11-02 18:07:12 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006-11-02 18:07:12 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
[2011-03-09 01:02:34 | 000,037,665 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2006-09-19 03:07:34 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2006-11-02 18:05:48 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\jnwppr.dll
[2006-10-26 19:56:12 | 000,033,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\msonpppr.dll
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2008-01-21 08:13:21 | 000,000,174 | -HS- | M] () -- C:\Program Files\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< %systemroot%\System32\config\*.sav >
[2008-01-21 08:44:18 | 016,846,848 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
[2008-01-21 08:44:08 | 000,106,496 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
[2008-01-21 08:44:18 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
[2006-11-02 16:04:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
[2006-11-02 16:04:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2011-07-12 15:51:49 | 000,000,286 | -HS- | M] () -- C:\Users\Jagdish\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
< %USERPROFILE%\Desktop\*.exe >
[2011-07-17 10:40:24 | 012,336,856 | ---- | M] () -- C:\Users\Jagdish\Desktop\Garena_setup.exe
[2011-04-22 01:48:12 | 027,552,104 | ---- | M] () -- C:\Users\Jagdish\Desktop\ICM_110405_Setup.exe
[2011-09-24 22:53:54 | 008,393,472 | ---- | M] (Safer Networking Limited ) -- C:\Users\Jagdish\Desktop\spybotsd162.exe
[2011-08-23 22:24:49 | 012,553,219 | ---- | M] () -- C:\Users\Jagdish\Desktop\Warkeys-1.19.3.0b.exe
[2011-05-29 10:38:51 | 001,286,504 | ---- | M] (Microsoft Corporation) -- C:\Users\Jagdish\Desktop\wlsetup-web.exe
[2011-05-13 23:40:01 | 001,364,704 | ---- | M] (Acesoft ) -- C:\Users\Jagdish\Desktop\wssetup.exe
< %PROGRAMFILES%\Common Files\*.* >
< %systemroot%\*.src >
[2011-04-07 00:59:07 | 000,013,449 | ---- | M] () -- C:\Windows\M3000Twn.src
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >
< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >
< %PROGRAMFILES%\Internet Explorer\*.tmp >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %USERPROFILE%\My Documents\*.exe >
< %USERPROFILE%\*.exe >
< %systemroot%\ADDINS\*.* >
< %systemroot%\assembly\*.bak2 >
< %systemroot%\Config\*.* >
< %systemroot%\REPAIR\*.bak2 >
< %systemroot%\SECURITY\Database\*.sdb /x >
< %systemroot%\SYSTEM\*.bak2 >
< %systemroot%\Web\*.bak2 >
< %systemroot%\Driver Cache\*.* >
< %PROGRAMFILES%\Mozilla Firefox\0*.exe >
< %ProgramFiles%\Microsoft Common\*.* >
< %ProgramFiles%\TinyProxy. >
< %USERPROFILE%\Favorites\*.url /x >
[2010-08-28 19:42:29 | 000,000,402 | -HS- | M] () -- C:\Users\Jagdish\Favorites\desktop.ini
< %systemroot%\system32\*.bk >
< %systemroot%\*.te >
< %systemroot%\system32\system32\*.* >
< %ALLUSERSPROFILE%\*.dat /x >
[2011-08-22 12:10:57 | 000,000,258 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2011-10-02 09:59:48 | 000,049,965 | ---- | M] () -- C:\ProgramData\nvModes.001
< %systemroot%\system32\drivers\*.rmv >
< dir /b "%systemroot%\system32\*.exe" | find /i " " /c >
< dir /b "%systemroot%\*.exe" | find /i " " /c >
< %PROGRAMFILES%\Microsoft\*.* >
< %systemroot%\System32\Wbem\proquota.exe >
< %PROGRAMFILES%\Mozilla Firefox\*.dat >
< %USERPROFILE%\Cookies\*.txt /x >
< %SystemRoot%\system32\fonts\*.* >
< %systemroot%\system32\winlog\*.* >
< %systemroot%\system32\Language\*.* >
< %systemroot%\system32\Settings\*.* >
< %systemroot%\system32\*.quo >
< %SYSTEMROOT%\AppPatch\*.exe >
< %SYSTEMROOT%\inf\*.exe >
< %SYSTEMROOT%\Installer\*.exe >
< %systemroot%\system32\config\*.bak2 >
< %systemroot%\system32\Computers\*.* >
< %SystemRoot%\system32\Sound\*.* >
< %SystemRoot%\system32\SpecialImg\*.* >
< %SystemRoot%\system32\code\*.* >
< %SystemRoot%\system32\draft\*.* >
< %SystemRoot%\system32\MSSSys\*.* >
< %ProgramFiles%\Javascript\*.* >
< %systemroot%\pchealth\helpctr\System\*.exe /s >
< %systemroot%\Web\*.exe >
< %systemroot%\system32\msn\*.* >
< %systemroot%\system32\*.tro >
< %AppData%\Microsoft\Installer\msupdates\*.* >
< %ProgramFiles%\Messenger\*.* >
< %systemroot%\system32\systhem32\*.* >
< %systemroot%\system\*.exe >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\ Auto Update\Results\Install|LastSuccessTime /rs >
========== Alternate Data Streams ==========
@Alternate Data Stream - 905267 bytes -> C:\Users\Jagdish\AppData\Roaming\desktop.ini:init
@Alternate Data Stream - 157 bytes -> C:\ProgramData\TEMP
FC5A2B2
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:A8ADE5D8
< End of report >